ere partie
Rapport de ZHPDiag v1.31.13 par Nicolas Coolman, Update du 31/07/2012
Run by pflieger at 10/08/2012 21:56:24
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Version à jour.
---\\ Web Browser
MSIE: Internet Explorer v
---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 2BT4J
Windows License : OK
~ Windows Remaining Initializations Number : 4
Software Protection Service (Protection logicielle) : KO
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ System Information
~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3036 MB (61% free)
System Restore: Inconnu (Unknown)
System drive C: has 106 GB (75%) free of 141 GB
---\\ Logged in mode
~ Computer Name: FAMILLE
~ User Name: pflieger
~ All Users Names: pflieger, HomeGroupUser$, filles, claude, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator
---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\pflieger\AppData\Roaming\
~ %Desktop% : C:\Users\pflieger\Desktop\
~ %Favorites% : C:\Users\pflieger\Favorites\
~ %LocalAppData% : C:\Users\pflieger\AppData\Local\
~ %StartMenu% : C:\Users\pflieger\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 106 Go of 141 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 40 Go of 141 Go)
E:\ CD-ROM drive (Not Inserted)
---\\ Security Center & Tools Informations
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
~ Scan Security Center in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.8E87270C4704CF2951E1E7820D6C8A2B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.02/06/2012 - 09:25:08.) -- C:\Windows\System32\wininet.dll [1129472]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.20/11/2010 - 13:17:54.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 13:21:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.9EBBBA55060F786F0FCAA3893BFA2806] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.25/04/2011 - 03:18:03.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 09:38:10.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 09:42:32.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 10:59:29.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 09:39:44.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.81189C3D7763838E55C397759D49007A] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.11/03/2011 - 06:39:00.) -- C:\Windows\system32\Drivers\ntfs.sys [1211264]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 09:39:17.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 13:30:16.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Scan Generic Processes in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 2/27
~ Mes musiques (My Musics) : 1/14
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 1/51
~ Mes Documents (My Documents) : 1/9
~ Mon Bureau (My Desktop) : 1/12
~ Menu demarrer (Programs) : 1/28
~ Scan Hidden Files in 00mn 00s
---\\ Processus lancés
[MD5.1BD009E6194578BC4F054A2166C4E3E4] - (.TuneUp Software - TuneUp Utilities.) -- C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe [1212224] [PID.2680]
[MD5.93190A2F166DB15FF8A9D7C260F2806F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7744032] [PID.3096]
[MD5.934DE0EDBED59940A2725050DA13A066] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1541416] [PID.3120]
[MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768] [PID.3156]
[MD5.DF22B0593DAA2B2EFAC69A2E5318B5A1] - (.{StringFileInfo_CompanyName} - {StringFileInfo_FileDescription}.) -- C:\Program Files\Ask.com\Updater\Updater.exe [888488] [PID.3164]
[MD5.1AF481FD411221752AA10DAC1A01E5A3] - (.Pas de propriétaire - VProtect Application.) -- C:\Program Files\AVG Secure Search\vprot.exe [1107552] [PID.3200]
[MD5.982C048CF2B5828F93592BA7C07593EC] - (.SweetIM Technologies Ltd. - SweetIM Instant Messenger Enhancer.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe [114992] [PID.3476]
[MD5.45945F39F2F6D08A0FAEC275E68FFC5A] - (.SweetIM Technologies Ltd. - Update Manager for SweetPacks.) -- C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe [295728] [PID.3492]
[MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.]
[MD5.8661E483B7D11A941E9912C14651246F] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [553021] [PID.3580]
[MD5.9BFE78B0C2AB6B7EA2188812886C0216] - (.Broadcom Corporation. - Bluetooth Stack COM Server.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe [1400916] [PID.3404]
[MD5.A63DC5C2EA944E6657203E0C8EDEAF61] - (.Microsoft Corporation - COM Surrogate.) -- C:\windows\system32\DllHost.exe [7168] [PID.3212]
[MD5.C21E4E3F5B525AD786CAE4F87DA9B014] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\windows\system32\Macromed\Flash\FlashUtil32_11_3_300_270_ActiveX.exe [686792] [PID.3008]
[MD5.34B01BBD8F00B6B9C9248DC4F1E3CD01] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [748664] [PID.5628]
[MD5.7A6DFCE4B8033CCD303918FACCCA9588] - (.Google Inc. - Google Toolbar Broker.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe [307824] [PID.1580]
[MD5.FCB13D9E3D55075C8FACA9CA3C55B263] - (...) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [3763200] [PID.5876]
~ Scan Processes Running in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\pflieger\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preference [User Data\Default] http://www.google.com
G1 - GCS: Preference [User Data\Default] http://isearch.avg.com
G0 - GCSP: Preference [User Data\Default][HomePage] http://home.sweetim.com
G0 - GCSP: Preference [User Data\Default] http://www.google.com
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.14 (Activé)
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.6.1.3 (Activé)
~ Scan Google Browser in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Hôte de la fenêtre de la console.) (No version) -- (.not file.)
~ Scan IE Browser in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s
---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] ~"C:\Program Files\Windows Live\Messenger\msnmsgr.exe (.not file.)
O4 - HKUS\S-1-5-21-771618654-3341757510-301361698-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-771618654-3341757510-301361698-1000\..\Run: [msnmsgr] ~"C:\Program Files\Windows Live\Messenger\msnmsgr.exe (.not file.)
~ Scan Application in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\pflieger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\pflieger\Desktop\CyberLink YouCam.lnk . (.CyberLink Corp..) -- C:\Program Files\CyberLink\YouCam\YouCam.exe
O4 - Global Startup: C:\Users\pflieger\Desktop\Favoris Bluetooth - Raccourci.lnk - Clé orpheline
O4 - Global Startup: C:\Users\pflieger\Desktop\FLV-Media Player.lnk . (.HYBRIDWEB.) -- C:\Program Files\FLV-Media Player\FLV-Media.exe
O4 - Global Startup: C:\Users\pflieger\Desktop\les-pages.com.lnk - Clé orpheline
O4 - Global Startup: C:\Users\pflieger\Desktop\SweetPcFix.url . (...) -- C:\Users\pflieger\Desktop\SweetPcFix.url
O4 - Global Startup: C:\Users\pflieger\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\pflieger\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\pflieger\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\les-pages.com.lnk - Clé orpheline
~ Scan Global Startup in 00mn 10s
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\Program Files\MICROS~2\Office12\EXCEL.exe
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... . (...) -- C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
~ Scan IE Menu Contextuel in 00mn 00s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Adobe Flash Player Updater.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[MD5.B8E421C0890356CD4A793D8A346D9096] [APT] [Adobe Reader and Acrobat Manager] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[MD5.167F9E5AF87B57763DAAA27D3144C2A0] [APT] [advSRS4] (.SEC.) -- C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe
[MD5.1BA4331122570A23452E8BA06F7C1672] [APT] [BatteryLifeExtender] (.Samsung Electronics. Co. Ltd..) -- C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe
[MD5.6E8A4256CEC328029C0D923EADA47F04] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe
[MD5.A765B211BD4CF9EA4049B2000B2B9316] [APT] [EasyDisplayMgr] (.Samsung Electronics Co., Ltd..) -- C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe
[MD5.B8E421C0890356CD4A793D8A346D9096] [APT] [Programme de mise … jour en ligne de Adobe] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[MD5.AC8A678DF2941F76D2E0794BF71688E3] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe
[MD5.00000000000000000000000000000000] [APT] [TuneUpUtilities_Task_BkGndMaintenance] (...) -- C:\Program Files\TuneUp Utilities 2010\OneClick.exe (.not file.)
[MD5.AE987003D94281405D53E47807CFA840] [APT] [TuneUpUtilities_Task_BkGndMaintenance2012] (.TuneUp Software.) -- C:\Program Files\TuneUp Utilities 2012\OneClick.exe
~ Scan Scheduled Task in 00mn 02s
---\\ Composants installés (ActiveSetup Installed Components) (O40) (None)
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 15/01/2011 - 15:04:13 - [118,664] ----D C:\Program Files\ABBYY FineReader 6.0 Sprint
O43 - CFD: 15/01/2012 - 20:34:24 - [109,775] ----D C:\Program Files\Adobe
O43 - CFD: 23/01/2011 - 18:24:32 - [117,518] ----D C:\Program Files\AGEIA Technologies
O43 - CFD: 09/01/2010 - 23:50:20 - [8,499] ----D C:\Program Files\AnyPC Client
O43 - CFD: 01/07/2012 - 22:11:34 - [3,721] ----D C:\Program Files\Ask.com
O43 - CFD: 22/09/2009 - 07:23:22 - [0,001] ----D C:\Program Files\Atheros Client Installation Program
O43 - CFD: 10/07/2012 - 12:40:10 - [22,058] ----D C:\Program Files\AVG Secure Search
O43 - CFD: 14/01/2011 - 15:09:02 - [190,644] ----D C:\Program Files\Avira
O43 - CFD: 29/06/2012 - 22:25:59 - [4,684] ----D C:\Program Files\CCleaner
O43 - CFD: 17/12/2011 - 15:08:58 - [439,943] ----D C:\Program Files\Common Files
O43 - CFD: 10/01/2010 - 00:06:55 - [77,322] ----D C:\Program Files\CyberLink
O43 - CFD: 18/07/2011 - 10:03:57 - [79,371] ----D C:\Program Files\DVD Maker
O43 - CFD: 15/01/2011 - 15:05:05 - [145,673] ----D C:\Program Files\epson
O43 - CFD: 06/08/2012 - 10:35:31 - [3,579] ----D C:\Program Files\FLV-Media Player
O43 - CFD: 14/01/2011 - 21:37:07 - [345,018] ----D C:\Program Files\Google
O43 - CFD: 24/01/2011 - 15:15:26 - [58,046] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 22/09/2009 - 07:19:57 - [4,811] ----D C:\Program Files\Intel
O43 - CFD: 11/07/2012 - 11:00:05 - [5,764] ----D C:\Program Files\Internet Explorer
O43 - CFD: 01/11/2011 - 12:02:19 - [6,209] ----D C:\Program Files\ma-config.com
O43 - CFD: 10/08/2012 - 16:44:04 - [11,837] ----D C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 14/02/2011 - 16:07:30 - [9,439] ----D C:\Program Files\McAfee Security Scan
O43 - CFD: 27/04/2012 - 15:01:15 - [0,502] ----D C:\Program Files\Microsoft
O43 - CFD: 22/09/2009 - 23:54:36 - [140,966] ----D C:\Program Files\Microsoft Games
O43 - CFD: 23/07/2011 - 12:25:47 - [543,077] ----D C:\Program Files\Microsoft Office
O43 - CFD: 09/01/2010 - 23:57:59 - [7,431] ----D C:\Program Files\Microsoft Office Suite Activation Assistant
O43 - CFD: 01/05/2012 - 19:04:57 - [20,059] ----D C:\Program Files\Microsoft Security Client
O43 - CFD: 26/05/2012 - 22:59:24 - [36,641] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 10/01/2010 - 00:01:24 - [30,792] ----D C:\Program Files\Microsoft Small Business
O43 - CFD: 13/04/2011 - 18:56:20 - [71,383] ----D C:\Program Files\Microsoft SQL Server
O43 - CFD: 10/01/2010 - 00:04:14 - [1,745] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 09/01/2010 - 23:56:32 - [0,014] ----D C:\Program Files\Microsoft Visual Studio
O43 - CFD: 31/01/2011 - 12:48:07 - [3,554] ----D C:\Program Files\Microsoft Works
O43 - CFD: 14/01/2011 - 21:45:22 - [9,258] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 14/07/2009 - 06:52:30 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 15/01/2012 - 21:38:32 - [17,414] ----D C:\Program Files\MyTomTom 3
O43 - CFD: 08/02/2011 - 18:16:13 - [7,257] ----D C:\Program Files\Orange
O43 - CFD: 23/07/2011 - 12:42:56 - [0,197] ----D C:\Program Files\PC Drivers HeadQuarters
O43 - CFD: 22/09/2009 - 07:21:26 - [15,736] ----D C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - 06:52:30 - [37,349] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 24/01/2011 - 15:15:28 - [488,649] ----D C:\Program Files\Samsung
O43 - CFD: 09/01/2010 - 23:53:16 - [187,081] ----D C:\Program Files\Samsung Casual Games
O43 - CFD: 06/08/2012 - 10:34:02 - [10,990] ----D C:\Program Files\SweetIM
O43 - CFD: 22/09/2009 - 07:23:35 - [25,429] ----D C:\Program Files\Synaptics
O43 - CFD: 16/08/2011 - 18:24:10 - [0] --H-D C:\Program Files\Temp
O43 - CFD: 11/09/2011 - 19:47:56 - [0,021] ----D C:\Program Files\TomTom International B.V
O43 - CFD: 17/12/2011 - 15:08:35 - [85,121] ----D C:\Program Files\TuneUp Utilities 2012
O43 - CFD: 14/07/2009 - 06:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 21/11/2011 - 12:50:25 - [11,964] ----D C:\Program Files\Universal Extractor
O43 - CFD: 10/08/2012 - 17:51:08 - [16,407] ----D C:\Program Files\WIDCOMM
O43 - CFD: 18/07/2011 - 10:03:51 - [2,909] ----D C:\Program Files\Windows Defender
O43 - CFD: 27/05/2012 - 09:06:47 - [6,689] ----D C:\Program Files\Windows Journal
O43 - CFD: 09/04/2012 - 09:42:15 - [148,698] ----D C:\Program Files\Windows Live
O43 - CFD: 18/07/2011 - 10:03:58 - [5,895] ----D C:\Program Files\Windows Mail
O43 - CFD: 18/07/2011 - 10:03:56 - [6,298] ----D C:\Program Files\Windows Media Player
O43 - CFD: 14/07/2009 - 06:52:30 - [11,632] ----D C:\Program Files\Windows NT
O43 - CFD: 18/07/2011 - 10:03:56 - [4,213] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 18/07/2011 - 10:03:57 - [0,181] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 22/07/2011 - 18:39:41 - [6,697] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 10/08/2012 - 21:56:36 - [12,789] ----D C:\Program Files\ZHPDiag
O43 - CFD: 15/01/2012 - 20:34:25 - [6,178] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 29/04/2012 - 18:25:22 - [29,376] ----D C:\Program Files\Common Files\AVG Secure Search
O43 - CFD: 09/01/2010 - 23:56:32 - [0,089] ----D C:\Program Files\Common Files\DESIGNER
O43 - CFD: 15/01/2011 - 15:08:11 - [7,085] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 13/02/2012 - 16:42:37 - [275,250] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 09/01/2010 - 23:50:34 - [0,197] ----D C:\Program Files\Common Files\Oberon Media
O43 - CFD: 22/09/2009 - 07:27:33 - [4,403] ----D C:\Program Files\Common Files\Samsung
O43 - CFD: 14/07/2009 - 04:37:05 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 14/07/2009 - 04:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 23/10/2011 - 18:28:34 - [0] ----D C:\Program Files\Common Files\SWF Studio
O43 - CFD: 13/11/2011 - 11:36:51 - [45,619] ----D C:\Program Files\Common Files\System
O43 - CFD: 10/01/2010 - 00:02:19 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 23/01/2011 - 18:24:13 - [32,544] ----D C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 06/08/2012 - 10:42:16 - [135,872] ----D C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 10/07/2012 - 12:39:53 - [2,163] ----D C:\ProgramData\AVG Secure Search
O43 - CFD: 04/09/2011 - 19:42:58 - [68,451] ----D C:\ProgramData\Avira
O43 - CFD: 17/12/2011 - 15:08:56 - [0,000] --H-D C:\ProgramData\Common Files
O43 - CFD: 14/01/2011 - 19:36:35 - [0,014] ----D C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 15/01/2011 - 14:59:26 - [0,384] ----D C:\ProgramData\EPSON
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 22/09/2009 - 07:44:24 - [0,514] ----D C:\ProgramData\Google
O43 - CFD: 25/07/2011 - 16:12:00 - [1,165] ----D C:\ProgramData\ma-config.com
O43 - CFD: 29/01/2011 - 18:57:04 - [16,664] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 13/02/2011 - 20:19:00 - [0,014] ----D C:\ProgramData\McAfee
O43 - CFD: 22/07/2011 - 18:39:40 - [0,001] ----D C:\ProgramData\McAfee Security Scan
O43 - CFD: 09/04/2012 - 10:36:14 - [42,436] -S--D C:\ProgramData\Microsoft
O43 - CFD: 11/07/2012 - 10:56:45 - [0,060] ----D C:\ProgramData\Microsoft Help
O43 - CFD: 20/11/2011 - 18:54:35 - [97,493] ----D C:\ProgramData\MumboJumbo
O43 - CFD: 22/09/2009 - 07:49:51 - [0,000] ----D C:\ProgramData\NVIDIA
O43 - CFD: 06/02/2011 - 18:05:39 - [0,001] ----D C:\ProgramData\Partner
O43 - CFD: 23/07/2011 - 12:43:33 - [0,000] ----D C:\ProgramData\PC Drivers HeadQuarters
O43 - CFD: 22/09/2009 - 07:45:55 - [0,516] ----D C:\ProgramData\SAMSUNG
O43 - CFD: 22/09/2009 - 07:43:04 - [0,000] ----D C:\ProgramData\SiteAdvisor
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 06/08/2012 - 10:34:02 - [0,522] ----D C:\ProgramData\SweetIM
O43 - CFD: 02/05/2012 - 18:51:42 - [0,035] ---AD C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 04/12/2011 - 17:40:46 - [10,763] ----D C:\ProgramData\TuneUp Software
O43 - CFD: 15/01/2011 - 15:06:12 - [0,003] ----D C:\ProgramData\UDL
O43 - CFD: 22/07/2011 - 18:39:40 - [14,970] ----D C:\ProgramData\WinClon
O43 - CFD: 04/12/2011 - 17:39:35 - [22,677] -SH-D C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
O43 - CFD: 23/01/2011 - 18:37:28 - [17,670] -SH-D C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
O43 - CFD: 23/10/2011 - 18:28:58 - [0] -SH-D C:\Users\pflieger\AppData\Roaming\.#
O43 - CFD: 14/01/2011 - 16:18:50 - [1,266] ----D C:\Users\pflieger\AppData\Roaming\Adobe
O43 - CFD: 14/01/2011 - 15:13:08 - [0] ----D C:\Users\pflieger\AppData\Roaming\Avira
O43 - CFD: 15/01/2011 - 20:19:01 - [0,000] ----D C:\Users\pflieger\AppData\Roaming\EPSON
O43 - CFD: 23/10/2011 - 18:28:42 - [0,015] ----D C:\Users\pflieger\AppData\Roaming\GameConsole
O43 - CFD: 14/01/2011 - 14:36:18 - [0,000] ----D C:\Users\pflieger\AppData\Roaming\Google
O43 - CFD: 21/01/2011 - 02:27:15 - [0,005] ----D C:\Users\pflieger\AppData\Roaming\Icones
O43 - CFD: 10/01/2010 - 00:07:35 - [0] ----D C:\Users\pflieger\AppData\Roaming\Identities
O43 - CFD: 15/01/2011 - 14:59:51 - [0] ----D C:\Users\pflieger\AppData\Roaming\InstallShield
O43 - CFD: 14/01/2011 - 15:03:30 - [2,701] ----D C:\Users\pflieger\AppData\Roaming\Macromedia
O43 - CFD: 29/01/2011 - 18:57:11 - [0,016] ----D C:\Users\pflieger\AppData\Roaming\Malwarebytes
O43 - CFD: 22/09/2009 - 23:54:35 - [0] ----D C:\Users\pflieger\AppData\Roaming\Media Center Programs
O43 - CFD: 10/08/2012 - 20:45:04 - [5,861] -S--D C:\Users\pflieger\AppData\Roaming\Microsoft
O43 - CFD: 04/12/2011 - 17:40:45 - [0,031] ----D C:\Users\pflieger\AppData\Roaming\TuneUp Software
O43 - CFD: 02/02/2011 - 19:29:49 - [0] ----D C:\Users\pflieger\AppData\Roaming\Windows Live Writer
O43 - CFD: 23/01/2011 - 18:09:03 - [0] ----D C:\Users\pflieger\AppData\Roaming\WinRAR
O43 - CFD: 17/01/2011 - 21:39:37 - [0,006] ----D C:\Users\pflieger\AppData\Local\ABBYY
O43 - CFD: 15/01/2012 - 20:34:07 - [0,171] ----D C:\Users\pflieger\AppData\Local\Adobe
O43 - CFD: 09/01/2010 - 23:48:52 - [0] ----D C:\Users\pflieger\AppData\Local\Application Data
O43 - CFD: 04/09/2011 - 19:42:40 - [5,916] ----D C:\Users\pflieger\AppData\Local\AskToolbar
O43 - CFD: 30/04/2012 - 14:25:56 - [1,253] ----D C:\Users\pflieger\AppData\Local\AVG Secure Search
O43 - CFD: 11/07/2012 - 11:06:17 - [0,075] ----D C:\Users\pflieger\AppData\Local\Diagnostics
O43 - CFD: 09/04/2012 - 10:18:32 - [0] ----D C:\Users\pflieger\AppData\Local\ElevatedDiagnostics
O43 - CFD: 06/04/2012 - 11:29:55 - [0,698] ----D C:\Users\pflieger\AppData\Local\Google
O43 - CFD: 09/01/2010 - 23:48:52 - [0] ----D C:\Users\pflieger\AppData\Local\Historique
O43 - CFD: 17/02/2012 - 14:40:17 - [0] ----D C:\Users\pflieger\AppData\Local\LogMeIn Rescue Applet
O43 - CFD: 22/07/2011 - 09:36:52 - [488,041] ----D C:\Users\pflieger\AppData\Local\Microsoft
O43 - CFD: 01/11/2011 - 11:35:45 - [0,848] ----D C:\Users\pflieger\AppData\Local\Microsoft Games
O43 - CFD: 02/06/2011 - 11:55:41 - [0,101] ----D C:\Users\pflieger\AppData\Local\Microsoft Help
O43 - CFD: 10/08/2012 - 21:56:05 - [62,846] ----D C:\Users\pflieger\AppData\Local\Temp
O43 - CFD: 09/01/2010 - 23:48:52 - [0] ----D C:\Users\pflieger\AppData\Local\Temporary Internet Files
O43 - CFD: 13/02/2012 - 16:31:51 - [1,696] ----D C:\Users\pflieger\AppData\Local\TomTom
O43 - CFD: 17/01/2011 - 21:39:20 - [0,063] ----D C:\Users\pflieger\AppData\Local\VirtualStore
O43 - CFD: 10/08/2012 - 16:28:25 - [0,055] ----D C:\Users\pflieger\AppData\Local\Windows Live