Forums Zebulon.fr: AIde pour un virus - Forums Zebulon.fr

Aller au contenu

  • (4 Pages)
  • +
  • 1
  • 2
  • 3
  • Dernière »
  • Vous ne pouvez pas commencer un sujet
  • Vous ne pouvez pas répondre à ce sujet

AIde pour un virus Euh... Noter : -----

#1 L'utilisateur est hors-ligne   bondioune 

  • Junior Member
  • Groupe : Membres
  • Messages : 18
  • Inscrit(e) : 16-janvier 12

Posté 16 janvier 2012 - 04:24

Bonjour à tous,


Voilà je me demandais si sur le forum, des gens pourraient m'aider à me débarrasser d'un virus ?
Car vous l'aurez compris j'en ai chopé un bien beau au vu des messages que je lis sur internet à son sujet.

Alors les caractéristiques:
- D'après l'antivirus en ce moment il est ici: c:\Windows\Assembly\GAC_MSI\desktop.ini mais au scan précédent il était dans nvidia et encore avant dans hotspotshield. Chaque fois que je le supprime il part ailleurs.
- Avast quand il le trouve me demande de redémarrer le pc et de faire un scan au démarrage qui ne sert à rien puisque le virus "bouge"
- Quand je branche une clé usb sur le pc, le virus et efface tous les fichiers présents et les remplace par des exe de même nom tous infectés. J'ai essayé de formaté mes clés mais quand je clic droit ça freeze.
- Il essaie de prendre le contrôle d'avast de temps en temps mais comme j'ai lui ai mis un mot de passe, il y arrive plus
- Je ne vais plus avec le Pc sur internet parce qu'jai vu que ça parlait dans MAM de keylogger, backdoor etc du coup je l'ai "isolé"
- Apparemment il essaye d'ouvrir MOzilla pour m'emmener sur un lecteur media Gino
- Ca fait gratter mon DD d'une drole de façon.
- J'ai essayé les basiques:
MAM, Adaware, spybot, AVG antirootkit (dépassé depuis 2 ans je crois arf), Scan au démarrage d'avast. mais j'ai l'impression d'attaquer un mammouth avec un matraque..
Tous mes utilitaires sont à jour du 11/01, date ou j'ai attraper la bête.

Est ce que faire un restauration pourrait marcher ? vu comme il a l'air efficace j'ai déjà l'impression que soit je pourrais pas, soit ça fera rien.
Est ce que quelqu'un pourrait m'aider ? :) ... parce que j'ai un peu zieuté sur Google mais y font des trucs de pro avec rogue et des rapports en veux tu en voila.. que je comprends rien.

Est ce que se connecter à internet avec ça dans le ventre est sans risque ? j'ai un peu peur qu'il ait chopé tous mes mots de passe, voire peut-être récupéré je sais pas comment un numéro de CB ?

Là je vais essayer avec norman et un autre que je me rappelle plus mais bon..

Merci de votre attention et aide éventuelle.

PS:
on peut pas éditer le titre du message?
0

PUBLICITÉ

  • Annonces Google

#2 L'utilisateur est hors-ligne   pear 

  • Devil Member !
  • Groupe : Equipe Sécurité
  • Messages : 16483
  • Inscrit(e) : 22-mars 05

Posté 16 janvier 2012 - 04:35

Bonjour,

Citation

on peut pas éditer le titre du message?


éditez l'en tête de votre premier message en choisissant l'option "utiliser l'éditeur complet"

Lancez cet outil de diagnostic:

Téléchargez ZhpDiag de Coolman
Double-cliquer sur ZHPDiag.exe pour installer l'outil
Sur le bureau ,il y aura 3 icônes
Image IPB

Sous XP, double clic sur l'icône ZhpDiag
Sous Vista/7, faire un clic droit et Exécuter en tant qu'administrateur
Image IPB
Cliquez sur le tournevis et choisissez Tous
En cas de blocage, sur O80 par exemple, cliquez sur le tournevis pour le décocher

Clic sur la Loupe pour lancer le scan
Postez le rapport ZhpDiag.txt qui apparait sur le bureau
Comment poster les rapports
Vous copiez/collez tout ou partie des rapports dans un ou plusieurs messages.
Autre solution:
Aller sur le site :Ci-JointImage IPB
Appuyez sur Parcourir et chercher les rapports sur le disque,
Ensuite appuyez sur Créer le lien CJoint,
>> dans la page suivante --> ,,
une adresse http//.. sera créée
Copier /coller cette adresse dans votre prochain message.


Si ce que tu as à dire ne vaut pas mieux que le silence, tais-toi (Confucius)
0

#3 L'utilisateur est hors-ligne   bondioune 

  • Junior Member
  • Groupe : Membres
  • Messages : 18
  • Inscrit(e) : 16-janvier 12

Posté 16 janvier 2012 - 07:26

Bonsoir et merci de m'avoir pris en main.... j'ai essayé cjoint mais j'ai des restes de comodo qui m'empéchent d'accéder au site. J'ai 79 pages de rapport alors c'est parti:

SI c'est plus simple j'ai aussi réussi à le mettre ici finalement: http://pjjoint.malek...6_d7y8d15p14c10




Rapport de ZHPDiag v1.28.311 par Nicolas Coolman, Update du 14/01/2012
Run by Ken Hutchinson at 16/01/2012 17:29:53
Web site : ZHPDiag Outil de diagnostic
Web site : Blog de NicolasCoolman - ZebHelpProcess - Skyrock.com
State : Problème connexion internet


---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.18702
MFIE: Mozilla Firefox 9.0.1 v9.0.1 (Defaut)
OPIE: Opera v11.60

---\\ Windows Product Information
~ Langage: Français
Windows XP Home Edition Service Pack 3 (Build 2600)
Windows Automatic Updates : OK
Windows Genuine Advantage : OK

---\\ System Information
~ Processor: x86 Family 15 Model 63 Stepping 2, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 2047 MB (69% free)
System Restore: Activé (Enable)
System drive C: has 18 GB (9%) free of 190 GB

---\\ Logged in mode
~ Computer Name: CHAZAL-EDBC611A
~ User Name: Ken Hutchinson
~ All Users Names: UpdatusUser, SUPPORT_388945a0, Session rapide, postgres, HelpAssistant, Ken Hutchinson, ASPNET, Administrateur,
~ Unselected Option: None
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Documents and Settings\Ken Hutchinson\Application Data\
~ %Desktop% : C:\Documents and Settings\Ken Hutchinson\Bureau\
~ %Favorites% : C:\Documents and Settings\Ken Hutchinson\Favoris\
~ %LocalAppData% : C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\
~ %StartMenu% : C:\Documents and Settings\Ken Hutchinson\Menu Démarrer\
~ %Windir% : C:\WINDOWS\
~ %System% : C:\WINDOWS\system32\

---\\ DOS/Devices
A:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
C:\ Hard drive, Flash drive, Thumb drive (Free 18 Go of 190 Go)
D:\ CD-ROM drive (Free 0 Go of 0 Go)
E:\ Floppy drive, Flash card reader, USB Key (Free 0 Go of 1 Go)
F:\ Hard drive, Flash drive, Thumb drive (Free 160 Go of 466 Go)
H:\ Floppy drive, Flash card reader, USB Key (Free 10 Go of 14 Go)
I:\ Hard drive, Flash drive, Thumb drive (Free 690 Go of 932 Go)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
~ Scan Security Center in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.13/04/2008 - 19:34:04.) -- C:\WINDOWS\Explorer.exe [1037824]
[MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) (.13/04/2008 - 19:34:22.) -- C:\WINDOWS\system32\rundll32.exe [33792]
[MD5.B0DF02C2326381D64149F3EEFAE5E09D] - (.Microsoft Corporation - Internet Extensions for Win32.) (.04/11/2011 - 20:13:29.) -- C:\WINDOWS\system32\wininet.dll [916992]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.13/04/2008 - 19:34:30.) -- C:\WINDOWS\system32\Winlogon.exe [512000]
[MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.17/08/2011 - 14:49:54.) -- C:\WINDOWS\system32\drivers\AFD.sys [138496]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 - 11:40:32.) -- C:\WINDOWS\system32\drivers\atapi.sys [96512]
[MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/04/2008 - 12:14:22.) -- C:\WINDOWS\system32\drivers\Cdfs.sys [63744]
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.13/04/2008 - 11:40:48.) -- C:\WINDOWS\system32\drivers\Cdrom.sys [62976]
[MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) (.13/04/2008 - 18:57:40.) -- C:\WINDOWS\system32\drivers\Fips.sys [44672]
[MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows ® Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) (.13/04/2008 - 09:36:06.) -- C:\WINDOWS\system32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) (.13/04/2008 - 19:00:54.) -- C:\WINDOWS\system32\drivers\i8042prt.sys [54144]
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) (.13/04/2008 - 11:41:00.) -- C:\WINDOWS\system32\drivers\Imapi.sys [42112]
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) (.13/04/2008 - 11:57:16.) -- C:\WINDOWS\system32\drivers\IpNat.sys [152832]
[MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) (.13/04/2008 - 12:19:44.) -- C:\WINDOWS\system32\drivers\IPSec.sys [75264]
[MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.15/07/2011 - 14:29:31.) -- C:\WINDOWS\system32\drivers\MRxSmb.sys [456320]
[MD5.05F5FBF6641FB23340DAD28A5C375CDA] - (....) (.13/04/2008 - 12:21:02.) -- C:\WINDOWS\system32\drivers\netBT.sys [162816]
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.13/04/2008 - 12:15:54.) -- C:\WINDOWS\system32\drivers\ntfs.sys [574976]
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) (.13/04/2008 - 19:09:42.) -- C:\WINDOWS\system32\drivers\Parport.sys [80384]
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.13/04/2008 - 12:19:44.) -- C:\WINDOWS\system32\drivers\Rasl2tp.sys [51328]
[MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.13/04/2008 - 11:32:52.) -- C:\WINDOWS\system32\drivers\rdpdr.sys [196224]
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) (.13/04/2008 - 18:57:36.) -- C:\WINDOWS\system32\drivers\redbook.sys [58752]
[MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.13/04/2008 - 18:56:06.) -- C:\WINDOWS\system32\drivers\volsnap.sys [53376]
~ Scan Generic Processes in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 65/5722
~ Mes musiques (My Musics) : 15/21
~ Mes Videos (My Videos) : 1/8
~ Mes Favoris (My Favorites) : 4/111
~ Mes Documents (My Documents) : 401/73406
~ Mon Bureau (My Desktop) : 8/8310
~ Menu demarrer (Programs) : 7/139
~ Scan Hidden Files in 01mn 47s



---\\ Processus lancés
[MD5.ED60FFD305AC0424920D146DB9F9ED78] - (.Lavasoft Limited - Ad-Aware Service Application.) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2152152] [PID.]
[MD5.996E6D052438E8D8DFD501F31560B2E0] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [44768] [PID.]
[MD5.941E435E5A903CC60E50E72037FA39D0] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [1466476] [PID.]
[MD5.D87ACAED61E417BBA546CED5E7E36D9C] - (.Microsoft Corporation - .NET Runtime Optimization Service.) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [69632] [PID.]
[MD5.19EF7FB809D3073EE60F85464E9C4C51] - (.Iomega Corporation - AppServices.) -- C:\PROGRA~1\Iomega\System32\AppServices.exe [73728] [PID.]
[MD5.381B25DC8E958D905B33130D500BBF29] - (.Sun Microsystems, Inc. - Java™ Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376] [PID.]
[MD5.11F714F85530A2BD134074DC30E99FCA] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [322120] [PID.]
[MD5.0573C75A2895D973EA6EF2495620BA49] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 285.5.) -- C:\WINDOWS\system32\nvsvc32.exe [298304] [PID.]
[MD5.DA345DE3B450E9E1691E7B9956D8FFC3] - (...) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112] [PID.]
[MD5.3A2BDD76E7D2A5F40A7174793D1BA794] - (...) -- C:\WINDOWS\system32\PnkBstrA.exe [75136] [PID.]
[MD5.DD0042F0C3B606A6A8B92D49AFB18AD6] - (.Yahoo! Inc. - AutoUpater Service Module.) -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [602392] [PID.]
[MD5.B624180218BB196AD9869D5D6B454318] - (.Iomega Corporation - Active Disk Service.) -- C:\Program Files\Iomega\AutoDisk\ADService.exe [151552] [PID.]
[MD5.6986302B57BFFC135414488FA67464F1] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [102503] [PID.]
[MD5.7FBEAD79082A406CA657B0BA5EC92F34] - (.Lavasoft Limited - Ad-Aware Tray Application.) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe [1191216] [PID.3864]
[MD5.3996AB635B3F87D708BC9DE4FE49ADEC] - (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\WINDOWS\SOUNDMAN.EXE [90112] [PID.380]
[MD5.ED42614423D852FA30460FBF17BF0561] - (.Creative Technology Ltd. - Live! Cam Console Auto Launcher.) -- C:\WINDOWS\V0230Mon.exe [32768] [PID.2172]
[MD5.4A2462FF36EF6A5BCE9611A41A2987DE] - (.Agere Systems - SoftModem Messaging Applet.) -- C:\WINDOWS\AGRSMMSG.exe [88365] [PID.2916]
[MD5.F7226AA410954185160067D5FA82F3F2] - (.AVAST Software - avast! Antivirus.) -- C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [3744552] [PID.3960]
[MD5.4DEEE0D77498D818B486E3172053BD03] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [315478] [PID.512]
[MD5.1E361F31E4C10AEFCAAE2643E01C26C4] - (.Sun Microsystems, Inc. - Java™ Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [252296] [PID.2648]
[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.2744]
[MD5.C25CA8B25132DAB46338C815C0F6ABCA] - (.Robert Misiak - ChronosXP.) -- C:\Program Files\ChronosXP\ChronosXP.exe [599040] [PID.1808]
[MD5.90C37384C41F486F19786BF420125966] - (...) -- C:\Documents and Settings\Ken Hutchinson\ciiteb.exe [266240] [PID.1868]
[MD5.AC684D0AC7A8F43E6081B203390E214B] - (.Realtek Semiconductor Corp. - RtWLan ( For WinXP/2003) Application.) -- C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe [1048576] [PID.3084]
[MD5.C9E27369BE36DE0BCDED061FA4A557F6] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [2210816] [PID.2780]
[MD5.9C84945FEEE40EA42D3BCA5C22250D47] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2253120] [PID.]
[MD5.5E9A6658A2A69AE7EB195113B7A2E7A9] - (.Microsoft Corporation - Application Layer Gateway Service.) -- C:\WINDOWS\System32\alg.exe [44544] [PID.]
~ Scan Processes Running in 00mn 02s



---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)
B0 - SPO: operaprefs.ini [Ken Hutchinson] Home URL=http://www.ecofree.org
P1 - OPN:Opera Plugin Navigator . (.The OpenSSL Project, OpenSSL: The Open Source toolkit for SSL/TLS - OpenSSL Shared Library.) -- C:\Program Files\Opera\Program\Plugins\libdivx.dll
P1 - OPN:Opera Plugin Navigator . (.Microsoft Corporation - Microsoft® C++ Runtime Library.) -- C:\Program Files\Opera\Program\Plugins\msvcp90.dll
P1 - OPN:Opera Plugin Navigator . (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Program Files\Opera\Program\Plugins\msvcr90.dll
P1 - OPN:Opera Plugin Navigator . (.DivX,Inc. - DivX Web Player version 1.5.0.52.) -- C:\Program Files\Opera\Program\Plugins\npdivx32.dll
P1 - OPN:Opera Plugin Navigator . (...) -- C:\Program Files\Opera\Program\Plugins\NPSibelius.dll
P1 - OPN:Opera Plugin Navigator . (.PDFTron Systems Inc. - PDFNet Dynamic Link Library for C/C++/JAVA.) -- C:\Program Files\Opera\Program\Plugins\PDFNetC.dll
P1 - OPN:Opera Plugin Navigator . (...) -- C:\Program Files\Opera\Program\Plugins\ScorchPDFWrapper.dll
P1 - OPN:Opera Plugin Navigator . (.The OpenSSL Project, OpenSSL: The Open Source toolkit for SSL/TLS - OpenSSL Shared Library.) -- C:\Program Files\Opera\Program\Plugins\ssldivx.dll
~ Scan Opera Browser in 00mn 00s



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\prefs.js
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\ecofreeorg---france.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-1.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-10.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-11.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-12.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-13.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-14.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-2.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-3.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-4.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-5.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-6.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-7.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-8.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-9.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\radioblogclub.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [Ken Hutchinson] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
M0 - MFSP: prefs.js [Ken Hutchinson - 63lyuoo9.default] EcoFree.org - Moteur de recherche écologique - Chaque geste compte
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\en-US@dictionaries.addons.mozilla.org] [] United States English Spellchecker v5.0.1 (.Giuliano Masseroni.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\externalip@erik.morlin] [] external IP v0.9.9.6 (.Erik Morlin.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\piclens@cooliris.com] [] Cooliris v1.12.3.55472 (.Cooliris Inc..)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}] [] Image Zoom v0.4.6 (.Jason Adams.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\{3d7eb24f-2740-49df-8937-200b1cc08f8a}] [] Flashblock v1.5.15.1 (.The Flashblock Team.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\{800b5000-a755-47e1-992b-48a1c1357f07}] [] ICQ Toolbar v1.5.15.1 (.The Flashblock Team.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\{ada4b710-8346-4b82-8199-5de2b400a6ae}] [] ReminderFox v1.9.9.4.3 (.Tom Mutdosch and Daniel Lee.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}] [] BitComet 视频下载器 v1.29 (.BitComet.)
M2 - MFEP: prefs.js [Ken Hutchinson - 63lyuoo9.default\{B5EDFBB0-9827-11DA-A72B-0800200C9A66}] [] Forecastfox l10n v0.7.2008093001 (.Thomas Bertels.)
P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 10.2.) -- C:\Program Files\Mozilla Firefox\Plugins\np32dsw.dll
P2 - FPN:Firefox Plugin Navigator . (.BitComet - BitCometAgent v1.27 for Firefox.) -- C:\Program Files\Mozilla Firefox\Plugins\npBitCometAgent.dll
P2 - FPN:Firefox Plugin Navigator . (.DivX, Inc - npdivxplayerplugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npDivxPlayerPlugin.dll
P2 - FPN:Firefox Plugin Navigator . (...) -- C:\Program Files\Mozilla Firefox\Plugins\npGoogleGadgetPluginFirefoxWin.dll
P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.2.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer™ LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 6.0.12.448.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll
P2 - FPN:Firefox Plugin Navigator . (...) -- C:\Program Files\Mozilla Firefox\Plugins\NPSibelius.dll
P2 - FPN:Firefox Plugin Navigator . (.PDFTron Systems Inc. - PDFNet Dynamic Link Library for C/C++/JAVA.) -- C:\Program Files\Mozilla Firefox\Plugins\PDFNetC.dll
P2 - FPN:Firefox Plugin Navigator . (...) -- C:\Program Files\Mozilla Firefox\Plugins\ScorchPDFWrapper.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@bittorrent.com/BitTorrentDNA] - (.BitTorrent, Inc. - Delivery Network Acceleration by BitTorrent™.) -- C:\Program Files\DNA\plugins\npbtdna.dll
P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC. - CANON iMAGE GATEWAY Album Plugin Utility Module.) -- C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.2.1] - (.Oracle Corporation - NPRuntime Script Plug-in Library for Java™ Deploy.) -- C:\WINDOWS\system32\npdeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.2.1] - (.Oracle Corporation - Next Generation Java Plug-in 10.2.1 for Mozilla browsers.) -- C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\new_plugin\npjp2.dll
P2 - FPN: [HKLM] [@ma-config.com/HardwareDetection] - (.Cybelsoft - Plugin NPAPI Ma-Config.com # win # 5.2.2.0.) -- C:\Program Files\ma-config.com\nphardwaredetection.dll
P2 - FPN: [HKLM] [@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6] - (.Yahoo! Inc. - Yahoo Application State Plugin version 1.0.0.7.) -- C:\Program Files\Yahoo!\Shared\npYState.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60831.0.) -- C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.3] - (.Microsoft Corp. - Office Live Update v1.3.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=14.0.8117.0416] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@playstation.com/PsndlCheck,version=1.00] - (.Sony Computer Entertainment Inc. - PlayStation®Network Downloader Check Plug-in.) -- C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.448] - (.RealNetworks, Inc. - RealPlayer™ LiveConnect-Enabled Plug-In.) -- C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=1.0.3.448] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.448] - (.RealNetworks, Inc. - 6.0.12.448.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
P2 - FPN: [HKLM] [@SonyCreativeSoftware.com/Media Go,version=1.0] - (.Sony Network Entertainment International LL - 2.0.) -- C:\Program Files\Sony\Media Go\npmediago.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.7] - (.the VideoLAN Team - Version 1.1.7, copyright 1996-2011 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [Adobe Acrobat] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.2.) -- C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 3.3.0f4.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll
~ Scan Firefox Browser in 00mn 03s



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Search
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Search Microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = roonic.com
R3 - URLSearchHook: (no name) - . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {CA3EB689-8F09-4026-AA10-B9534C691CE0} . (...) (No version) -- (.not file.)
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 1
~ Scan IE Browser in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
~ Scan Proxy management in 00mn 00s



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
~ Scan Keys in 00mn 00s



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 01s
~ Nombre de lignes (Lines number): 15310



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} . (.BitComet - BitCometBHO.) -- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Click to Call with Skype for Internet Explo.) -- C:\Program Files\Skype\toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java™ Platform SE binary.) -- C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java™ Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: TBSB07458 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} . (.Pas de propriétaire - IE Toolbar Engine.) -- C:\Program Files\Sony Ericsson PC Suite 6.009.00\mybarnsq102.tmp\tbcore3.dll
~ Scan BHO in 00mn 01s



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} . (...) -- (.not file.)
O3 - Toolbar: (no name) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (...) -- (.not file.)
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.)
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O3 - Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} . (...) -- (.not file.)
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Free software Gooofull toolbar - {C86FF9FA-AEED-451B-A9CC-39A53173AE2E} . (.Pas de propriétaire - IE Toolbar Engine.) -- C:\Program Files\Sony Ericsson PC Suite 6.009.00\mybarnsq102.tmp\tbcore3.dll
~ Scan Toolbar in 00mn 00s



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\WINDOWS\soundman.exe
O4 - HKLM\..\Run: [V0230Mon.exe] . (.Creative Technology Ltd. - Live! Cam Console Auto Launcher.) -- C:\WINDOWS\V0230Mon.exe
O4 - HKLM\..\Run: [AGRSMMSG] . (.Agere Systems - SoftModem Messaging Applet.) -- C:\WINDOWS\AGRSMMSG.exe
O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
O4 - HKLM\..\Run: [BtTray] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java™ Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\nvcpl.dll
O4 - HKLM\..\Run: [NvMediaCenter] . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\WINDOWS\system32\nvmctray.dll
O4 - HKLM\..\Run: [nwiz] . (...) -- C:\Program Files\NVIDIA Corporation\nView\nwiz.exe
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ChronosXP] . (.Robert Misiak - ChronosXP.) -- C:\Program Files\ChronosXP\ChronosXP.exe
O4 - HKCU\..\Run: [ciiteb] . (...) -- C:\Documents and Settings\Ken Hutchinson\ciiteb.exe
O4 - HKCU\..\Run: [Camfrog] C:\Program Files\Camfrog\Camfrog Video Chat\CamfrogNet.exe (.not file.)
O4 - HKCU\..\Run: [CANON_SC] . (...) -- E:\CANON_SC.exe
O4 - HKUS\S-1-5-21-1229272821-1220945662-725345543-1013-1229272821-1220945662-725345543-1004\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1229272821-1220945662-725345543-1013-1229272821-1220945662-725345543-1004\..\Run: [SpybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-21-1229272821-1220945662-725345543-1013-1229272821-1220945662-725345543-1004\..\Run: [ChronosXP] . (.Robert Misiak - ChronosXP.) -- C:\Program Files\ChronosXP\ChronosXP.exe
O4 - HKUS\S-1-5-21-1229272821-1220945662-725345543-1013-1229272821-1220945662-725345543-1004\..\Run: [ciiteb] . (...) -- C:\Documents and Settings\Ken Hutchinson\ciiteb.exe
O4 - HKUS\S-1-5-21-1229272821-1220945662-725345543-1013-1229272821-1220945662-725345543-1004\..\Run: [Camfrog] C:\Program Files\Camfrog\Camfrog Video Chat\CamfrogNet.exe (.not file.)
O4 - HKUS\S-1-5-21-1229272821-1220945662-725345543-1013-1229272821-1220945662-725345543-1004\..\Run: [CANON_SC] . (...) -- E:\CANON_SC.exe
~ Scan Application in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Acrobat Distiller X.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-1033-F400-7760-000000000005}\_SC_Distiller.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Acrobat X Pro.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-1033-F400-7760-000000000005}\_SC_Acrobat.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 7.0.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-A71000000002}\SC_Reader_PM.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation.) -- C:\Program Files\Microsoft Works\MSWorks.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Access.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\accicons.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Excel.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\xlicons.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft FrontPage.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\misc.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Office PowerPoint Viewer 2003.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\PowerPoint Viewer\PPTVIEW.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Outlook.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\outicon.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft PowerPoint.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\pptico.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Word.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\wordicon.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MSN Reaper.lnk . (...) -- C:\Program Files\MSN Reaper\MSNReapr.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MSN.lnk . (.Microsoft Corporation.) -- C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Opera.lnk . (.Opera Software.) -- C:\Program Files\Opera\opera.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\UltraMon.lnk . (...) -- C:\WINDOWS\Installer\{B49673F8-7AB6-4A14-8213-C8A7BE370010}\IcoUltraMon.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe
O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe
O4 - Global Startup: C:\Documents And Settings\postgres\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\postgres\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\ANPSEDIC.lnk . (.Sébastien Bourgasser.) -- C:\Program Files\ANPSEDIC\ANPSEDIC.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Chess+.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Chess+\Chess+.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Facebook widget.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Facebook widget\Facebook widget.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Friday countdown.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Friday countdown\Friday countdown.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Golden Coin.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Golden Coin\Golden Coin.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Google Translator.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Google Translator\Google Translator.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\multiWeather.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\multiWeather\multiWeather.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\MyCamera.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\MyCamera\MyCamera.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\O-Knife.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\O-Knife\O-Knife.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\OMG_Opera Mouse Gestures.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\OMG_Opera Mouse Gestures\OMG_Opera Mou
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Penalty.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Penalty\Penalty.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\SimAquarium.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\SimAquarium\SimAquarium.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Wasserkuppe Germany.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Wasserkuppe Germany\Wasserkuppe Germany.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\????.??.lnk - Clé orpheline
O4 - Global Startup: C:\Documents And Settings\Administrateur\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\Administrateur\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Acrobat Distiller X.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-1033-F400-7760-000000000005}\_SC_Distiller.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Acrobat X Pro.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-1033-F400-7760-000000000005}\_SC_Acrobat.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 7.0.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-A71000000002}\SC_Reader_PM.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation.) -- C:\Program Files\Microsoft Works\MSWorks.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Access.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\accicons.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Excel.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\xlicons.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft FrontPage.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\misc.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Office PowerPoint Viewer 2003.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\PowerPoint Viewer\PPTVIEW.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Outlook.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\outicon.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft PowerPoint.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\pptico.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Word.lnk . (...) -- C:\WINDOWS\Installer\{9028040C-6000-11D3-8CFE-0050048383C9}\wordicon.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MSN Reaper.lnk . (...) -- C:\Program Files\MSN Reaper\MSNReapr.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MSN.lnk . (.Microsoft Corporation.) -- C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Opera.lnk . (.Opera Software.) -- C:\Program Files\Opera\opera.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\UltraMon.lnk . (...) -- C:\WINDOWS\Installer\{B49673F8-7AB6-4A14-8213-C8A7BE370010}\IcoUltraMon.ico
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe
O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Session rapide\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe
O4 - Global Startup: C:\Documents And Settings\postgres\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\postgres\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\ANPSEDIC.lnk . (.Sébastien Bourgasser.) -- C:\Program Files\ANPSEDIC\ANPSEDIC.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Chess+.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Chess+\Chess+.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Facebook widget.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Facebook widget\Facebook widget.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Friday countdown.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Friday countdown\Friday countdown.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Golden Coin.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Golden Coin\Golden Coin.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Google Translator.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Google Translator\Google Translator.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\multiWeather.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\multiWeather\multiWeather.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\MyCamera.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\MyCamera\MyCamera.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\O-Knife.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\O-Knife\O-Knife.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\OMG_Opera Mouse Gestures.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\OMG_Opera Mouse Gestures\OMG_Opera Mou
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Penalty.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Penalty\Penalty.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\SimAquarium.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\SimAquarium\SimAquarium.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\Wasserkuppe Germany.lnk . (.Opera Software.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Wasserkuppe Germany\Wasserkuppe Germany.exe
O4 - Global Startup: C:\Documents And Settings\Ken Hutchinson\Menu Démarrer\Programmes\????.??.lnk - Clé orpheline
O4 - Global Startup: C:\Documents And Settings\Administrateur\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\Administrateur\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
~ Scan Global Startup in 00mn 04s



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: Ajouter la cible du lien à un fichier PDF existant . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O8 - Extra context menu item: Ajouter à un fichier PDF existant . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir au format Adobe PDF . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O8 - Extra context menu item: Convertir la cible du lien au format Adobe PDF . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O8 - Extra context menu item: Tout télécharger avec BitComet . (.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe
O8 - Extra context menu item: Télécharger avec BitComet . (.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe
~ Scan IE Menu Contextuel in 00mn 00s



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: PMU Poker - {06568ceb-5721-47d4-9d93-7e604fcbaeab} . (...) -- C:\Program Files\PMUPoker\Images\ppicon.ico
O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\toolbars\Internet Explorer\icon.ico
O9 - Extra button: Click to call with Skype - {90EAE591-7E7E-434a-8E28-ECFD00071806} . (...) -- C:\Program Files\Skype\toolbars\Internet Explorer\icon.ico
O9 - Extra button: Free software Gooofull toolbar - {C86FF9FA-AEED-451B-A9CC-39A53173AE2E} . (...) -- C:\Program Files\Sony Ericsson PC Suite 6.009.00\mybarnsq102.tmp\favicon.ico
O9 - Extra button: Free software Gooofull toolbar - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} . (.BitComet - BitCometBHO.) -- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll
O9 - Extra button: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} . (.BitComet - BitCometBHO.) -- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll
O9 - Extra button: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (.BitComet - BitCometBHO.) -- C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} . (.ICQ, LLC. - ICQ.) -- C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe
~ Scan IE Extra Buttons in 00mn 00s



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - Broken Internet access because of LSP provider (.not file.) -- mswsock.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
~ Scan Winsock in 00mn 00s



---\\ Onglet supplémentaire dans les options avancées d'Internet Explorer (O11)
O11 - Options group: [java_sun] Java (Oracle). (.Oracle Corporation - Java™ Deployment Library .) - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\deploy.dll
~ Scan IE Plugins in 00mn 00s



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: Microsoft XML Parser for Java - (Microsoft XML Parser for Java) - (.not file.) - C:\WINDOWS\Java\classes\xmldso.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zon...kr.cab56986.cab
O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} () - http://messenger.zon...S.cab109791.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail....es/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zon...1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefend...can8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...nt.cab31267.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zon...nt.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.m...ash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zon...er.cab56986.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15030/CTPID.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopet...v/GoPetsWeb.cab
~ Scan Objets ActiveX in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{574FFBEC-1063-4A2A-9B06-1A604B64986D}: NameServer = 84.103.237.142,86.64.145.142
O17 - HKLM\System\CS1\Services\Tcpip\..\{574FFBEC-1063-4A2A-9B06-1A604B64986D}: NameServer = 84.103.237.142,86.64.145.142
O17 - HKLM\System\CS2\Services\Tcpip\..\{574FFBEC-1063-4A2A-9B06-1A604B64986D}: NameServer = 194.117.200.10,194.117.200.15
O17 - HKLM\System\CS2\Services\Tcpip\..\{574FFBEC-1063-4A2A-9B06-1A604B64986D}: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Scan Domain in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll
O18 - Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} . (...) --
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\msitss.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll
O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\OWC10.dll
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll
O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Click to Call with Skype for Internet Explo.) -- C:\Program Files\Skype\toolbars\Internet Explorer\skypeieplugin.dll
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\WINDOWS\system32\skype4com.dll
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
~ Scan Protocole Additionnel in 00mn 02s



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: avgrsstarter . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Starter.) -- C:\WINDOWS\system32\avgrsstx.dll
O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\WINDOWS\system32\crypt32.dll
O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\WINDOWS\system32\cryptnet.dll
O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\WINDOWS\system32\cscdll.dll
O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\system32\dimsntfy.dll
O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\WINDOWS\system32\sclgntfy.dll
O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\WlNotify.dll
O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll
~ Scan Winlogon in 00mn 00s



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll
~ Scan SSODL in 00mn 00s



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll
~ Scan STS/SSO in 00mn 00s



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation - Bluetooth Application.) - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Iomega App Services (Iomega App Services) . (.Iomega Corporation - AppServices.) - C:\Program Files\Iomega\System32\AppServices.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java™ Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service (Lavasoft Ad-Aware Service) . (.Lavasoft Limited - Ad-Aware Service Application.) - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 285.5.) - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: Sony Ericsson OMSI download service (OMSI download service) . (...) - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
O23 - Service: PostgreSQL Database Server 8.3 (pgsql-8.3) . (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) - C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Yahoo! Updater (YahooAUService) . (.Yahoo! Inc. - AutoUpater Service Module.) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) . (.Iomega Corporation - Active Disk Service.) - C:\Program Files\Iomega\AutoDisk\ADService.exe
~ Scan Services in 00mn 00s



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe
~ Scan Desktop Component in 00mn 00s



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - File not found
O34 - HKLM BootExecute: (aswBoot.exe /M:3e2c57de7d) - File not found
~ Scan Keys in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GlaryInitialize.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
~ Scan Scheduled Task in 00mn 00s



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Mise à jour de la version d’Internet Explorer - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} . (.Microsoft Corporation - IE Per User Active Setup Uninstall Utility.) -- C:\WINDOWS\system32\ieudinit.exe
O40 - ASIC: Lecteur Windows Media - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d'installation du Lecteur Windows Media Microsoft.) -- C:\WINDOWS\inf\unregmp2.exe
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui
O40 - ASIC: Microsoft VM - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Microsoft Corporation - Microsoft® VM.) -- C:\WINDOWS\system32\msjava.dll
O40 - ASIC: LightScribe Control Panel - {10880D85-AAD9-4558-ABDC-2AB1552D831F} . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Fichiers communs\LightScribe\LSRunOnce.exe
O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} . (.Microsoft Corporation - Windows Media 6.4 Player Shim.) -- C:\WINDOWS\system32\wmpdxm.dll
O40 - ASIC: Lecteur Windows Media Microsoft 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media 6.4 Player Shim.) -- C:\WINDOWS\system32\wmpdxm.dll
O40 - ASIC: Adobe Shockwave Director 10.2 - {233C1507-6A77-46A4-9443-F871F945D258} . (.Adobe Systems, Inc. - Shockwave ActiveX Control.) -- C:\WINDOWS\system32\Macromed\Director\SwDir.dll
O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (...) -- C:\WINDOWS\INF\msnetmtg.inf
O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (...) -- C:\WINDOWS\INF\msmsgs.inf
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\WINDOWS\system32\msieftp.dll
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (...) -- C:\WINDOWS\INF\wmp.inf
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\WINDOWS\system32\mscories.dll
O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.3 r183.) -- C:\WINDOWS\system32\Macromed\Flash\Flash10v.ocx
~ Scan Active Setup in 00mn 00s



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys
O41 - Driver: (AmdK8) . (.Advanced Micro Devices - AMD Processor Driver.) - C:\WINDOWS\system32\DRIVERS\AmdK8.sys
O41 - Driver: (AvgArCln) . (.GRISOFT, s.r.o. - AVG7 Clean Driver.) - C:\WINDOWS\system32\DRIVERS\AvgArCln.sys
O41 - Driver: (AvgLdx86) . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) - C:\WINDOWS\system32\Drivers\avgldx86.sys
O41 - Driver: (AvgMfx86) . (.GRISOFT, s.r.o. - AVG Resident Shield Minifilter Driver.) - C:\WINDOWS\system32\Drivers\avgmfx86.sys
O41 - Driver: (Cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\WINDOWS\system32\DRIVERS\cdrom.sys
O41 - Driver: (EIO) . (.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) - C:\WINDOWS\system32\drivers\EIO.sys
O41 - Driver: (hidfltr) . (...) - C:\WINDOWS\system32\drivers\MWhid.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys
O41 - Driver: (Imapi) . (.Microsoft Corporation - IMAPI Kernel Driver.) - C:\WINDOWS\system32\DRIVERS\imapi.sys
O41 - Driver: (IPSec) . (.Microsoft Corporation - IPSec Driver.) - C:\WINDOWS\system32\DRIVERS\ipsec.sys
O41 - Driver: (Kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre souris HID.) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys
O41 - Driver: (Mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\WINDOWS\system32\DRIVERS\mouclass.sys
O41 - Driver: (MRxSmb) . (.Microsoft Corporation - Windows NT SMB Minirdr.) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\WINDOWS\system32\DRIVERS\netbios.sys
O41 - Driver: (NetBT) . (...) - C:\WINDOWS\system32\DRIVERS\netbt.sys
O41 - Driver: (Processor) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\WINDOWS\system32\DRIVERS\processr.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\WINDOWS\system32\DRIVERS\rasacd.sys
O41 - Driver: (Rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\WINDOWS\system32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
O41 - Driver: (redbook) . (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) - C:\WINDOWS\system32\DRIVERS\redbook.sys
O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\WINDOWS\system32\DRIVERS\serial.sys
O41 - Driver: (Tcpip) . (.Microsoft Corporation - TCP/IP Protocol Driver.) - C:\WINDOWS\system32\DRIVERS\tcpip.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\WINDOWS\system32\DRIVERS\termdd.sys
O41 - Driver: Carte vidéo VGA. (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys
O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (WS2IFSL) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\WINDOWS\system32\drivers\ws2ifsl.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys
~ Scan Drivers in 00mn 01s



---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 9.20 - (.Pas de propriétaire.) [HKLM] -- 7-Zip
O42 - Logiciel: AC3Filter (remove only) - (.Pas de propriétaire.) [HKLM] -- AC3Filter
O42 - Logiciel: ANPSEDIC - (.Sébastien Bourgasser.) [HKLM] -- {5A682D37-E093-40A0-BF74-A4A6D1861B92}
O42 - Logiciel: AVG Anti-Rootkit Free - (.GRISOFT.) [HKLM] -- AVGantiRootkit
O42 - Logiciel: Active Disk - (.Pas de propriétaire.) [HKLM] -- Active Disk
O42 - Logiciel: Ad-Aware - (.Lavasoft.) [HKLM] -- Ad-Aware
O42 - Logiciel: Ad-Aware - (.Lavasoft.) [HKLM] -- {DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
O42 - Logiciel: Adobe Acrobat X Pro - English, Français, Deutsch - (.Adobe Systems.) [HKLM] -- {AC76BA86-1033-F400-7760-000000000005}
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Reader 7.0.5 Language Support - (.Adobe Systems.) [HKLM] -- {AC76BA86-7AD7-5464-3428-7050000000A7}
O42 - Logiciel: Adobe Reader 7.1.0 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A71000000002}
O42 - Logiciel: Adobe Reader Japanese Fonts - (.Adobe Systems.) [HKLM] -- {AC76BA86-7AD7-5760-0000-705000000001}
O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Advanced Video FX Engine - (.Pas de propriétaire.) [HKLM] -- Advanced Video FX Engine
O42 - Logiciel: Age of Empires III - (.Microsoft Game Studios.) [HKLM] -- InstallShield_{485775E8-AEB8-46BD-922B-242879E03DD5}
O42 - Logiciel: Ancestrologie 2011 - (.PCM.) [HKLM] -- Ancestrologie_is1
O42 - Logiciel: Archiveur WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
O42 - Logiciel: Athlon 64 Processor Driver - (.Pas de propriétaire.) [HKLM] -- {C151CE54-E7EA-4804-854B-F515368B0798}
O42 - Logiciel: AutoCAD 2005 - English - (.Autodesk.) [HKLM] -- {5783F2D7-0301-0409-0002-0060B0CE6BBA}
O42 - Logiciel: Autodesk DWF Viewer - (.Autodesk, Inc..) [HKLM] -- Autodesk DWF Viewer
O42 - Logiciel: Autodesk Design Review 2009 - (.Autodesk, Inc..) [HKLM] -- Autodesk Design Review 2009
O42 - Logiciel: Avanquest update - (.Avanquest Software.) [HKLM] -- {76E41F43-59D2-4F30-BA42-9A762EE1E8DE}
O42 - Logiciel: BOINC - (.Space Sciences Laboratory, U.C. Berkeley.) [HKLM] -- {341E1C05-5091-418F-B862-C28253A99F25}
O42 - Logiciel: Best Hand Monitor 1.1 - (.eniksoft.) [HKLM] -- Best Hand Monitor
O42 - Logiciel: BitComet 1.29 - (.CometNetwork.) [HKLM] -- BitComet
O42 - Logiciel: Bluesoleil 5.4.277.0 - (.IVT Corporation.) [HKLM] -- {25887983-54F3-4F55-A7C5-91229AD67C16}
O42 - Logiciel: BroadJump Client Foundation - (.Pas de propriétaire.) [HKLM] -- BroadJump Client Foundation
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: CD-LabelPrint - (.Pas de propriétaire.) [HKLM] -- MediaNavigation.CDLabelPrint
O42 - Logiciel: CVitaeV4 - (.Pas de propriétaire.) [HKCU] -- CVitaeV4
O42 - Logiciel: Call of Duty® 4 - Modern Warfare™ - (.Activision.) [HKLM] -- InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}
O42 - Logiciel: Canon Easy-WebPrint EX - (.Pas de propriétaire.) [HKLM] -- Easy-WebPrint EX
O42 - Logiciel: Canon IJ Network Scan Utility - (.Pas de propriétaire.) [HKLM] -- Canon_IJ_Network_Scan_UTILITY
O42 - Logiciel: Canon IJ Network Tool - (.Pas de propriétaire.) [HKLM] -- Canon_IJ_Network_UTILITY
O42 - Logiciel: Canon MP Navigator EX 3.0 - (.Pas de propriétaire.) [HKLM] -- MP Navigator EX 3.0
O42 - Logiciel: Canon MP640 series MP Drivers - (.Pas de propriétaire.) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP640_series
O42 - Logiciel: Chess+ - (.Sven Vahar.) [HKCU] -- Chess+
O42 - Logiciel: ChronosXP (32-bit) - (.Robert Misiak.) [HKLM] -- {E2D2C0EE-64F6-4D64-A237-91B7D176395F}
O42 - Logiciel: Click to Call with Skype - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120}
O42 - Logiciel: Creative Live! Cam Center - (.Pas de propriétaire.) [HKLM] -- Creative Live! Cam Center
O42 - Logiciel: Creative Live! Cam Doodling - (.Pas de propriétaire.) [HKLM] -- Creative Live! Cam Doodling
O42 - Logiciel: Creative Live! Cam FX Creator - (.Pas de propriétaire.) [HKLM] -- Creative Live! Cam FX Creator
O42 - Logiciel: Creative Live! Cam Manager - (.Pas de propriétaire.) [HKLM] -- Creative Live! Cam Manager
O42 - Logiciel: Creative Live! Cam Video IM Pro Driver (1.02.02.1018) - (.Pas de propriétaire.) [HKLM] -- Creative VF0230
O42 - Logiciel: Creative Photo Calendar - (.Pas de propriétaire.) [HKLM] -- Creative Photo Calendar
O42 - Logiciel: Creative Photo Manager - (.Pas de propriétaire.) [HKLM] -- Creative Photo Manager
O42 - Logiciel: Creative Software AutoUpdate - (.Pas de propriétaire.) [HKLM] -- Creative Software AutoUpdate
O42 - Logiciel: Creative System Information - (.Pas de propriétaire.) [HKLM] -- SysInfo
O42 - Logiciel: DNA - (.BitTorrent Inc..) [HKCU] -- BitTorrent DNA
O42 - Logiciel: DesignPro 5 - (.Avery Dennison.) [HKLM] -- InstallShield_{F82C6574-AD88-4B40-A432-970BC77F1BD2}
O42 - Logiciel: Earth Alerts - (.South Wind Technologies.) [HKLM] -- {B12970A3-DBD3-4D2B-A7FB-952972311E17}
O42 - Logiciel: Empire of Sports - (.F4.) [HKLM] -- EoS-{5CCCD423-F673-4CD8-9464-9D950F49BBC3}
O42 - Logiciel: Enemy Territory - QUAKE Wars™ 1.2 Patch - (.Pas de propriétaire.) [HKLM] -- InstallShield_{2EC66D1C-4AF5-4811-BEDE-849D90461AF5}
O42 - Logiciel: Enemy Territory - QUAKE Wars™ Demo 1.1 Patch - (.Pas de propriétaire.) [HKLM] -- InstallShield_{B7B6C0BE-C919-425C-A493-DF9FF11249F5}
O42 - Logiciel: Enregistrement utilisateur de Canon MP640 series - (.Pas de propriétaire.) [HKLM] -- Enregistrement utilisateur de Canon MP640 series
O42 - Logiciel: EssentialPIM - (.Pas de propriétaire.) [HKLM] -- EssentialPIM
O42 - Logiciel: European Mappack Patch 1.1 - (.Pas de propriétaire.) [HKLM] -- European Mappack Patch 1.1
O42 - Logiciel: FUJIFILM USB Driver - (.Pas de propriétaire.) [HKLM] -- {5490882C-6961-11D5-BAE5-00E0188E010B}
O42 - Logiciel: Facebook widget - (.Opera Software.) [HKCU] -- Facebook widget
O42 - Logiciel: Far Cry - (.Nom de votre société.) [HKLM] -- InstallShield_{D6DBDC2A-E72C-4284-B6AD-6B3B61B4DABC}
O42 - Logiciel: FastStone Image Viewer 4.0 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer
O42 - Logiciel: FinePix Studio - (.Pas de propriétaire.) [HKLM] -- {E3B3AB03-8ABC-46CF-8CA9-DB5581E1F368}
O42 - Logiciel: FinePixViewer Resource - (.FUJIFILM Corporation.) [HKLM] -- {B44529FF-501E-47CD-A06D-223C161BE058}
O42 - Logiciel: FinePixViewer Ver.5.4 - (.FUJIFILM Corporation.) [HKLM] -- {24ED4D80-8294-11D5-96CD-0040266301AD}
O42 - Logiciel: Friday countdown - (.The 500 Widget Project.) [HKCU] -- Friday countdown
O42 - Logiciel: Future Pinball - (.Chris Leathley.) [HKLM] -- Future Pinball_is1
O42 - Logiciel: Futuremark SystemInfo - (.Futuremark Corporation.) [HKLM] -- {BEE64C14-BEF1-4610-8A68-A16EAA47B882}
O42 - Logiciel: GBoost - (.GZero.) [HKLM] -- {235B7B98-EAC3-4953-AE2C-EABCE1CD65C9}_is1
O42 - Logiciel: GIMP 2.6.8 - (.Pas de propriétaire.) [HKLM] -- WinGimp-2.0_is1
O42 - Logiciel: GPL MPEG-1/2 DirectShow Decoder Filter - (.Peter Wimmer.) [HKLM] -- {870815CA-6B60-47B6-88DD-A67F42D2F03E}
O42 - Logiciel: GTK+ 2.10.13 runtime environment - (.Tor Lillqvist.) [HKLM] -- WinGTK-2_is1
O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {1EE04769-91C4-4A06-92B7-FCAFE6BABDD9}
O42 - Logiciel: GameFace Messenger - (.AceGain, Inc..) [HKLM] -- GameFace_Messenger
O42 - Logiciel: Glary Utilities 2.40.0.1326 - (.Glarysoft Ltd.) [HKLM] -- Glary Utilities_is1
O42 - Logiciel: Golden Coin - (.grafio.) [HKCU] -- Golden Coin
O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop
O42 - Logiciel: Google Translator - (.Kyle Baker.) [HKCU] -- Google Translator
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}
O42 - Logiciel: Grisbi 0.5.9 - (.grisbi.org.) [HKLM] -- GRISBI
O42 - Logiciel: Holdem Manager - (.Pas de propriétaire.) [HKLM] -- HoldemManager
O42 - Logiciel: Horoscope & Thèmes Astral - (.Pas de propriétaire.) [HKLM] -- Horoscope & Thèmes Astral
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399
O42 - Logiciel: ICQ6.5 - (.ICQ.) [HKLM] -- {60DE4033-9503-48D1-A483-7846BD217CA9}
O42 - Logiciel: IP Camera - (.Pas de propriétaire.) [HKLM] -- IP Camera
O42 - Logiciel: Image Resizer Powertoy for Windows XP - (.Microsoft Corporation.) [HKLM] -- {1CB92574-96F2-467B-B793-5CEB35C40C29}
O42 - Logiciel: Indeo® Software - (.Pas de propriétaire.) [HKLM] -- Indeo® Software
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}
O42 - Logiciel: Installer Yahoo! Messenger - (.Pas de propriétaire.) [HKLM] -- Get Yahoo! Messenger
O42 - Logiciel: IomegaWare 4.0.2 - (.Pas de propriétaire.) [HKLM] -- IomegaWare
O42 - Logiciel: Java™ 6 Update 2 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160020}
O42 - Logiciel: Java™ 6 Update 29 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}
O42 - Logiciel: Java™ 6 Update 3 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160030}
O42 - Logiciel: Java™ 7 Update 2 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217002FF}
O42 - Logiciel: Java™ SE Runtime Environment 6 Update 1 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160010}
O42 - Logiciel: JavaFX 2.0.2 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-202328764D10}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}
O42 - Logiciel: LE COMPAGNON CLUB - (.Pas de propriétaire.) [HKLM] -- TONLFR.MCCInstall
O42 - Logiciel: Lanceur Club Internet v6 - (.Pas de propriétaire.) [HKLM] -- {DDB20844-4874-11D6-B55D-0050DA3C7AAA}
O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM] -- {6AFDE3BE-BC01-45A4-9D06-BBF5AD207313}
O42 - Logiciel: LightScribe Template Labeler - (.LightScribe.) [HKLM] -- {7FD71A9E-C4D3-42ED-A998-CDA8290C39A3}
O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM] -- LinuxLive USB Creator
O42 - Logiciel: Lock Folder XP - (.Everstrike Software.) [HKLM] -- {57CDBAE6-0896-4E78-88F0-C673E4BB44FD}
O42 - Logiciel: LockHunter version 1.0 beta 3, 32 bit edition - (.Crystal Rich, Ltd.) [HKLM] -- LockHunter_is1
O42 - Logiciel: MPEG4 NVR - (.Pas de propriétaire.) [HKLM] -- {8602E368-679B-4EFA-AD91-56F851032F57}
O42 - Logiciel: MSN Polygamy 8.1 - (.Pas de propriétaire.) [HKLM] -- {952DEE45-7C0B-4CDF-80B3-D14BE6B02678}
O42 - Logiciel: MSN Reaper - (.KoroSoft.) [HKLM] -- MSNReaper
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: MSXML 4.0 SP2 (KB927978) - (.Microsoft Corporation.) [HKLM] -- {37477865-A3F1-4772-AD43-AAFC6BCFF99F}
O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {1B19A54C-3692-4D12-BFD9-1362DD34CE78}
O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Manuel d'utilisation de Creative Live! Cam Video IM Pro (Français) - (.Pas de propriétaire.) [HKLM] -- Manuel d'utilisation de Creative Live! Cam Video IM Pro French
O42 - Logiciel: ManyCam 2.6.55 (remove only) - (.ManyCam LLC.) [HKLM] -- ManyCam
O42 - Logiciel: MapInfo Professional 8.0 Evaluation - (.MapInfo Corporation.) [HKLM] -- {309AFCC1-C343-40A0-B23A-568073036409}
O42 - Logiciel: Media Go - (.Sony.) [HKLM] -- {167A1F6A-9BF2-4B24-83DB-C6D659F680EA}
O42 - Logiciel: Media Go Video Playback Engine 1.84.109.07010 - (.Sony.) [HKLM] -- {34EF7358-ABC7-8469-5FB6-C5C0146F099E}
O42 - Logiciel: MegaStore Game Controller (Ver. 3.0) - (.Mega World Holdings Ltd..) [HKLM] -- InstallShield_{8A827E50-7DF0-4876-BB20-92549B117C99}
O42 - Logiciel: Messenger Plus! 5 - (.Yuna Software.) [HKLM] -- Messenger Plus!
O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Microsoft.) [HKLM] -- {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Pas de propriétaire.) [HKLM] -- Microsoft .NET Framework 1.1 (1033)
O42 - Logiciel: Microsoft .NET Framework 1.1 French Language Pack - (.Microsoft.) [HKLM] -- {9A394342-4A68-4EBA-85A6-55B559F4E700}
O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB2656353) - (.Pas de propriétaire.) [HKLM] -- M2656353
O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB979906) - (.Pas de propriétaire.) [HKLM] -- M979906
O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs - (.Microsoft Corporation.) [HKLM] -- IDNMitigationAPIs
O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping
O42 - Logiciel: Microsoft Office Live Add-in 1.3 - (.Microsoft Corporation.) [HKLM] -- {57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
O42 - Logiciel: Microsoft Office XP Professional avec FrontPage - (.Microsoft Corporation.) [HKLM] -- {9028040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5}
O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {A49F249F-0C91-497F-86DF-B2585E8E76B7}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Minilyrics(remove only) - (.Pas de propriétaire.) [HKLM] -- MiniLyrics
O42 - Logiciel: Mises à jour NVIDIA 1.5.20 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 2.0 Language Pack - FRA
O42 - Logiciel: Morgan Stream Switcher - (.Pas de propriétaire.) [HKLM] -- mmswitch
O42 - Logiciel: Moto Racer 3 - (.Pas de propriétaire.) [HKLM] -- {BA1FD8C5-0760-40F1-B3D8-DDDD8B55EEBB}
O42 - Logiciel: Mozilla Firefox 9.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 9.0.1 (x86 fr)
O42 - Logiciel: Mozilla Thunderbird (3.1.7) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird (3.1.7)
O42 - Logiciel: MpcStar 2.1 - (.www.mpcstar.com.) [HKLM] -- MpcStar
O42 - Logiciel: MyCamera - (.Giovanni Di Mingo.) [HKCU] -- MyCamera
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.11.0621 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}
O42 - Logiciel: NVIDIA Pilote graphique 285.58 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA nView 135.95 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView
O42 - Logiciel: NVIDIA nView Desktop Manager - (.NVIDIA Corporation.) [HKLM] -- NVIDIA nView Desktop Manager
O42 - Logiciel: Need For Speed™ World - (.Electronic Arts.) [HKLM] -- {7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1
O42 - Logiciel: Nero OEM - (.Pas de propriétaire.) [HKLM] -- Nero - Burning Rom!UninstallKey
O42 - Logiciel: Nero Suite - (.Pas de propriétaire.) [HKLM] -- NeroMultiInstaller!UninstallKey
O42 - Logiciel: Network Camera Recorder - (.Panasonic.) [HKLM] -- {8B0527BE-427B-459B-93B1-D30ED8CB4F93}
O42 - Logiciel: Neuratron PhotoScore Professional Demo - (.Neuratron Limited.) [HKLM] -- Neuratron PhotoScore Professional Demo
O42 - Logiciel: Noiseware Community Edition - (.Imagenomic.) [HKLM] -- {CB3B7C24-30A1-4961-8039-94919F5ED2EE}
O42 - Logiciel: Notebook Hardware Control 2.0 Pre-Release-06 Bugfix - (.Manfred Jaider.) [HKLM] -- Notebook Hardware Control
O42 - Logiciel: O-Knife - (.Brian Henk.) [HKCU] -- O-Knife
O42 - Logiciel: OLITEC PCI V92 V4 Modem - (.Pas de propriétaire.) [HKLM] -- Agere Systems Soft Modem
O42 - Logiciel: OMG:Opera Mouse Gestures - (.Albert Rosa.) [HKCU] -- OMG_Opera Mouse Gestures
O42 - Logiciel: OkMap - (.GianPaoloSaliola.) [HKLM] -- {36C2DF4B-B0EF-4C41-B6DC-B59CDEB4C3E6}
O42 - Logiciel: OpenAL - (.Pas de propriétaire.) [HKLM] -- OpenAL
O42 - Logiciel: Opera 11.60 - (.Opera Software ASA.) [HKLM] -- Opera 11.60.1185
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: Outils Club Internet - (.Pas de propriétaire.) [HKLM] -- OutilsCI
O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: PMU Poker - (.PMU.) [HKLM] -- PMUPoker
O42 - Logiciel: Panzer Elite Action - (.Nom de votre société.) [HKLM] -- {B75EF7C9-E289-4EEF-8676-B46349F210C2}
O42 - Logiciel: Panzer Elite Action - Dunes Of War - (.JoWooD.) [HKLM] -- {2F5C7A13-3B83-45A4-AAA8-ADE6497E1B42}
O42 - Logiciel: PeerGuardian 2.0 - (.Methlabs Productions.) [HKLM] -- PeerGuardian_is1
O42 - Logiciel: Penalty - (.mujtaba.) [HKCU] -- Penalty
O42 - Logiciel: PlayStation®Network Downloader - (.Sony Computer Entertainment Inc..) [HKLM] -- {B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}
O42 - Logiciel: PlayStation®Store - (.Sony Computer Entertainment Inc..) [HKLM] -- {0E532C84-4275-41B3-9D81-D4A1A20D8EE7}
O42 - Logiciel: PokerProba 0.2 - (.Xfou.com.) [HKLM] -- PokerProba
O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM] -- PokerStars.fr
O42 - Logiciel: PostgreSQL 8.3 - (.PostgreSQL Global Development Group.) [HKLM] -- {B823632F-3B72-4514-8861-B961CE263224}
O42 - Logiciel: Privoxy 3.0.6 - (.Pas de propriétaire.) [HKLM] -- Privoxy
O42 - Logiciel: QuickTime - (.Pas de propriétaire.) [HKLM] -- QuickTime
O42 - Logiciel: REALTEK Wireless LAN Driver and Utility - (.REALTEK Semiconductor Corp..) [HKLM] -- {9C049499-055C-4a0c-A916-1D8CA1FF45EB}
O42 - Logiciel: RFG 2008 - (.Pas de propriétaire.) [HKLM] -- RFG 2008
O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: Reason 3.0 - (.Propellerhead Software AB.) [HKLM] -- Reason_is1
O42 - Logiciel: Revo Uninstaller 1.93 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller
O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2657424
O42 - Logiciel: SecurityManager 99 - (.Pas de propriétaire.) [HKLM] -- SecurityManager 99
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
O42 - Logiciel: Shutdown-IT - (.Pas de propriétaire.) [HKLM] -- Shutdown-IT
O42 - Logiciel: Sibelius Scorch (Firefox, Opera, Netscape only) - (.Sibelius Software.) [HKLM] -- {10ABE49D-343A-463E-9753-C4C5A05ECEF9}
O42 - Logiciel: SightSpeed (remove only) - (.SightSpeed Inc..) [HKLM] -- SightSpeed
O42 - Logiciel: SimAquarium - (.grafio.) [HKCU] -- SimAquarium
O42 - Logiciel: Skype™ 5.5 - (.Skype Technologies S.A..) [HKLM] -- {AA59DDE4-B672-4621-A016-4C248204957A}
O42 - Logiciel: Sony Ericsson File Manager - (.Sony Ericsson.) [HKLM] -- {60E5B847-2353-4AE3-829E-685937EDDC40}
O42 - Logiciel: Sony Ericsson PC Companion 2.02.002 - (.Sony Ericsson.) [HKLM] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}
O42 - Logiciel: Sony Ericsson PC Suite 6.009.00 - (.Sony Ericsson.) [HKLM] -- {2FFE93F0-BB72-4E52-8761-354D1AAA9387}
O42 - Logiciel: SopCast 2.0.4 - (.SopCast.com.) [HKLM] -- SopCast
O42 - Logiciel: SpeedFan (remove only) - (.Pas de propriétaire.) [HKLM] -- SpeedFan
O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1
O42 - Logiciel: Spybot - Search & Destroy 1.5.2.20 - (.Safer Networking Ltd..) [HKLM] -- Spybot - Search & Destroy_is1
O42 - Logiciel: StuffPlug 3 - (.iAvatars.com.) [HKLM] -- StuffPlug3
O42 - Logiciel: System Requirements Lab - (.Pas de propriétaire.) [HKLM] -- SystemRequirementsLab
O42 - Logiciel: System Requirements Lab CYRI - (.Husdawg, LLC.) [HKLM] -- {1F77C418-2C90-459C-BD33-B56A4182B9FA}
O42 - Logiciel: TRENDnet TEW-648UB Wireless N USB Adapter - (.TRENDnet.) [HKLM] -- {74A8117D-07C6-4222-AFFD-51421B69DEF0}
O42 - Logiciel: TVAnts 1.0 - (.Pas de propriétaire.) [HKLM] -- TVAnts 1.0
O42 - Logiciel: TVUPlayer 2.4.7.2 - (.TVU networks.) [HKLM] -- TVUPlayer
O42 - Logiciel: TeLL me More - (.Pas de propriétaire.) [HKLM] -- TeLLmeMoreV40
O42 - Logiciel: TmNationsForever Update 2010-03-15 - (.Nadeo.) [HKLM] -- TmNationsForever_is1
O42 - Logiciel: Tor 0.2.0.34 - (.Pas de propriétaire.) [HKLM] -- Tor
O42 - Logiciel: TrackMania Nations ESWC 1.7.9 - (.Nadeo.) [HKLM] -- TmNations_is1
O42 - Logiciel: True Combat: Elite 0.49 - (.GrooveSix, TeamTerminator.) [HKLM] -- True Combat: Elite
O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM] -- {888F1505-C2B3-4FDE-835D-36353EBD4754}
O42 - Logiciel: UltraCover - (.Pas de propriétaire.) [HKCU] -- UltraCover
O42 - Logiciel: UltraMon - (.Realtime Soft Ltd.) [HKLM] -- {B49673F8-7AB6-4A14-8213-C8A7BE370010}
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: VLC media player 1.1.7 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: Vidalia 0.1.10 - (.Pas de propriétaire.) [HKLM] -- Vidalia
O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27}
O42 - Logiciel: Visual C++ 2008 x86 Runtime - v9.0.30729.01 - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01
O42 - Logiciel: Visual Install Pack - (.Phoenixx1771.) [HKLM] -- {4477B93C-01D3-48E7-AC38-8AD313F2A3C1}
O42 - Logiciel: Vodei Multimedia Processor 2.10 - (.S.V.R. Consulting Ltd..) [HKLM] -- Vodei Multimedia Processor
O42 - Logiciel: Wasserkuppe Germany - (.linuxhelp.) [HKCU] -- Wasserkuppe Germany
O42 - Logiciel: WebCam 5.00 - (.TrueTech Canada Inc.) [HKLM] -- WebCam_is1
O42 - Logiciel: Weezo - (.Peer 2 World.) [HKLM] -- Weezo_is1
O42 - Logiciel: Weezo DLL Pack - (.Pas de propriétaire.) [HKLM] -- ST6UNST #1
O42 - Logiciel: What Watch 3.6 - (.Robert Amlung.) [HKLM] -- What Watch_is1
O42 - Logiciel: WinPcap 3.1 - (.CACE Technologies.) [HKLM] -- WinPcapInst
O42 - Logiciel: WinStars 2.0 - (.Franck RICHARD.) [HKLM] -- WinStars 2.0_is1
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
O42 - Logiciel: Windows Live Contrôle parental - (.Microsoft Corporation.) [HKLM] -- {9FF9FDF7-F84A-4F99-B4BB-066B6F95F33D}
O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709-A7D3-468D-9167-A1780C1E766C}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {5DD76286-9BE7-4894-A990-E905E91AC818}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {4634B21A-CC07-4396-890C-2B8168661FEA}
O42 - Logiciel: Windows Media Encoder 9 Series - (.Microsoft Corporation.) [HKLM] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
O42 - Logiciel: Windows Media Encoder 9 Series - (.Pas de propriétaire.) [HKLM] -- Windows Media Encoder 9
O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11
O42 - Logiciel: Windows Media Format 11 runtime - (.Pas de propriétaire.) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM] -- {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
O42 - Logiciel: Windows XP Service Pack 3 - (.Microsoft Corporation.) [HKLM] -- Windows XP Service
O42 - Logiciel: Wise Disk Cleaner 6.22 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Disk Cleaner_is1
O42 - Logiciel: Wise Registry Cleaner 6.21 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Registry Cleaner_is1
O42 - Logiciel: Wolfenstein - Enemy Territory - (.Pas de propriétaire.) [HKLM] -- Wolfenstein - Enemy Territory
O42 - Logiciel: XviD 1.1 final uninstall - (.XviD team (Koepi).) [HKLM] -- XviD_is1
O42 - Logiciel: XviD MPEG4 Video Codec (remove only) - (.Pas de propriétaire.) [HKLM] -- XviD MPEG4 Video Codec
O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM] -- Yahoo! Messenger
O42 - Logiciel: Yahoo! Software Update - (.Pas de propriétaire.) [HKLM] -- Yahoo! Software Update
O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: eMule - (.Pas de propriétaire.) [HKLM] -- eMule
O42 - Logiciel: jv16 PowerTools 1.3 - (.Pas de propriétaire.) [HKLM] -- jv16 PowerTools_is1
O42 - Logiciel: multiWeather - (.Isidoro Russo.) [HKCU] -- multiWeather
O42 - Logiciel: muvee autoProducer 4.1 - (.muvee Technologies.) [HKLM] -- {76B78008-3832-42FD-AE55-C8F946ED3C7E}
O42 - Logiciel: nullDC 1.0.0 Public Beta 1 Setup - (.nullDC.) [HKLM] -- {C3FDA1E4-1E17-48D8-B4F0-C141E9FFB4BA}
O42 - Logiciel: scrabbleproB 1.1.2 - (.scrabblepro.) [HKLM] -- scrabbleproB_is1
O42 - Logiciel: winpcap-nmap 4.02 - (.Pas de propriétaire.) [HKLM] -- winpcap-nmap

---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\99fd74b2]
[HKCU\Software\AC3Filter]
[HKCU\Software\ALWIL Software]
[HKCU\Software\ASProtect]
[HKCU\Software\ASUS]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVS4YOU]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\AncestrArbres]
[HKCU\Software\AppDataLow\AskToolbarInfo]
[HKCU\Software\AppDataLow\F-Secure]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\{12DC4491-92E0-3A61-8205-B0C670EB295A}]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Applications WinDev]
[HKCU\Software\ArcSoft]
[HKCU\Software\Ask.com]
[HKCU\Software\Auralog]
[HKCU\Software\Autodesk, Inc.]
[HKCU\Software\Autodesk]
[HKCU\Software\Avery Dennison]
[HKCU\Software\Binary Noise]
[HKCU\Software\BitComet eMule plugin]
[HKCU\Software\BitComet]
[HKCU\Software\BitTorrent]
[HKCU\Software\CDDB]
[HKCU\Software\CToolbar]
[HKCU\Software\CanonBJ]
[HKCU\Software\Canon]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Club-Internet v5]
[HKCU\Software\CoreAAC]
[HKCU\Software\CoverSearch]
[HKCU\Software\Creative Tech]
[HKCU\Software\DameWare Development]
[HKCU\Software\Depicus]
[HKCU\Software\Digital River]
[HKCU\Software\DivXNetworks]
[HKCU\Software\DownloadManager]
[HKCU\Software\EasyBits]
[HKCU\Software\Eset]
[HKCU\Software\EyePower Games]
[HKCU\Software\F4]
[HKCU\Software\FC]
[HKCU\Software\FUJIFILM]
[HKCU\Software\FastReport]
[HKCU\Software\FlashFXP]
[HKCU\Software\Freeware]
[HKCU\Software\Future Pinball]
[HKCU\Software\Futuremark]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\GameSpy]
[HKCU\Software\Gameface]
[HKCU\Software\GlarySoft]
[HKCU\Software\Google]
[HKCU\Software\HoldemIndicator]
[HKCU\Software\HoldemManager]
[HKCU\Software\HookNetwork]
[HKCU\Software\IE]
[HKCU\Software\IGA]
[HKCU\Software\IM Providers]
[HKCU\Software\INCAInternet]
[HKCU\Software\Imagenomic]
[HKCU\Software\Intel]
[HKCU\Software\Iomega Corp]
[HKCU\Software\JEDI-VCL]
[HKCU\Software\JavaSoft]
[HKCU\Software\JoWooD]
[HKCU\Software\KasperskyLab]
[HKCU\Software\KoroSoft]
[HKCU\Software\LAVResearch]
[HKCU\Software\Lavalys]
[HKCU\Software\Lavasoft]
[HKCU\Software\Licenses]
[HKCU\Software\LightScribe]
[HKCU\Software\Ligos]
[HKCU\Software\LinuxLive]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\LockHunter]
[HKCU\Software\MGS]
[HKCU\Software\Macromedia]
[HKCU\Software\MadOnion.com]
[HKCU\Software\Malfador Machinations]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\ManyCam]
[HKCU\Software\MapInfo]
[HKCU\Software\MediaNavigation]
[HKCU\Software\Minilyrics]
[HKCU\Software\Mirabilis]
[HKCU\Software\Motive]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Nadeo]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\OfferBox]
[HKCU\Software\Opera Software]
[HKCU\Software\PC SOFT]
[HKCU\Software\PDFCreator]
[HKCU\Software\PMU]
[HKCU\Software\Panasonic]
[HKCU\Software\PartyGaming]
[HKCU\Software\PepiMK Software]
[HKCU\Software\Pinnacle Systems]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Privoxy]
[HKCU\Software\Propellerhead Software]
[HKCU\Software\Raxco]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtime Soft]
[HKCU\Software\Robert Misiak]
[HKCU\Software\SOFTWIN]
[HKCU\Software\Safer Networking Limited]
[HKCU\Software\SecuROM]
[HKCU\Software\Secway]
[HKCU\Software\SightSpeed Inc]
[HKCU\Software\Skyline]
[HKCU\Software\Skype]
[HKCU\Software\SoftLogica]
[HKCU\Software\Softonic]
[HKCU\Software\Sony Corporation]
[HKCU\Software\Sony Ericsson]
[HKCU\Software\South Wind Technologies]
[HKCU\Software\Space Sciences Laboratory, U.C. Berkeley]
[HKCU\Software\SpeedFan]
[HKCU\Software\Spointer]
[HKCU\Software\Sysinternals]
[HKCU\Software\System Requirements Lab]
[HKCU\Software\TBSB07458]
[HKCU\Software\TCP Optimizer]
[HKCU\Software\TVANTS]
[HKCU\Software\TVU networks]
[HKCU\Software\Tiny Software]
[HKCU\Software\Trolltech]
[HKCU\Software\Unity]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VOB]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Visual Pinball]
[HKCU\Software\Vodafone]
[HKCU\Software\WNR]
[HKCU\Software\WinRAR]
[HKCU\Software\WinStars2]
[HKCU\Software\Wise Solutions]
[HKCU\Software\Xenocode]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\Yuna Software]
[HKCU\Software\cybelsoft]
[HKCU\Software\eMule]
[HKCU\Software\etoro]
[HKCU\Software\muvee Technologies]
[HKCU\Software\techPowerUp]
[HKLM\Software\ACE Compression Software]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ALWIL Software]
[HKLM\Software\AMD]
[HKLM\Software\ANPSEDIC]
[HKLM\Software\ASIO]
[HKLM\Software\ASUS]
[HKLM\Software\AVAST Software]
[HKLM\Software\AVG]
[HKLM\Software\AVS4YOU]
[HKLM\Software\AceGain]
[HKLM\Software\Activision]
[HKLM\Software\Adaptec]
[HKLM\Software\Adobe]
[HKLM\Software\Agere]
[HKLM\Software\Ahead]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Autodesk]
[HKLM\Software\Avance]
[HKLM\Software\Avery Dennison]
[HKLM\Software\AviSynth]
[HKLM\Software\Avnex]
[HKLM\Software\BVRP Software]
[HKLM\Software\BroadJump]
[HKLM\Software\C07ft5Y]
[HKLM\Software\CToolbar]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Club-Internet V5]
[HKLM\Software\Creative Tech]
[HKLM\Software\Crytek]
[HKLM\Software\Debug]
[HKLM\Software\DelphineSoft]
[HKLM\Software\DivXNetworks]
[HKLM\Software\DivX]
[HKLM\Software\Electronic Arts]
[HKLM\Software\Ericsson]
[HKLM\Software\Even Balance]
[HKLM\Software\F4]
[HKLM\Software\FUJIFILM]
[HKLM\Software\FlashFXP]
[HKLM\Software\FullCircle]
[HKLM\Software\Futuremark]
[HKLM\Software\GNU]
[HKLM\Software\GTK]
[HKLM\Software\GZero]
[HKLM\Software\Gabest]
[HKLM\Software\Gemplus]
[HKLM\Software\GlarySoft]
[HKLM\Software\Google]
[HKLM\Software\Grisoft]
[HKLM\Software\HighCriteria]
[HKLM\Software\Hilchner]
[HKLM\Software\HoldemIndicator]
[HKLM\Software\IGG]
[HKLM\Software\IVT Corporation]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\InterVideo]
[HKLM\Software\Invictus-Games]
[HKLM\Software\Iomega Corp]
[HKLM\Software\JavaSoft]
[HKLM\Software\JoWooD]
[HKLM\Software\JreMetrics]
[HKLM\Software\KONAMIPES6]
[HKLM\Software\Khronos]
[HKLM\Software\L&H]
[HKLM\Software\Lavasoft]
[HKLM\Software\Licenses]
[HKLM\Software\LightScribeTemplateLabeler]
[HKLM\Software\LightScribe]
[HKLM\Software\Look@LAN]
[HKLM\Software\MAXSOFT-OCRON]
[HKLM\Software\MDC]
[HKLM\Software\Macromedia]
[HKLM\Software\MadOnion.com]
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Mapinfo]
[HKLM\Software\McAfee.com]
[HKLM\Software\MimarSinan]
[HKLM\Software\Mirabilis]
[HKLM\Software\Morgan]
[HKLM\Software\Motive]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Neodivx2006]
[HKLM\Software\Nero]
[HKLM\Software\Netscape]
[HKLM\Software\Neuratron]
[HKLM\Software\Notepad]
[HKLM\Software\ODBC]
[HKLM\Software\Opera Software]
[HKLM\Software\Oracle]
[HKLM\Software\PTECH]
[HKLM\Software\Panda Software]
[HKLM\Software\Phonemonitor]
[HKLM\Software\Piriform]
[HKLM\Software\PocketSoft]
[HKLM\Software\Policies]
[HKLM\Software\PostgreSQL]
[HKLM\Software\Program Groups]
[HKLM\Software\Propellerhead Software]
[HKLM\Software\QQcam]
[HKLM\Software\QTAlternative]
[HKLM\Software\RVG Software]
[HKLM\Software\Realtek]
[HKLM\Software\Realtime Soft]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\RichFX]
[HKLM\Software\Robert Misiak]
[HKLM\Software\RtWLan]
[HKLM\Software\S3R521]
[HKLM\Software\Safer Networking Limited]
[HKLM\Software\Schlumberger]
[HKLM\Software\Seagate Software]
[HKLM\Software\Secunia]
[HKLM\Software\Set8188SU]
[HKLM\Software\Set8191SU]
[HKLM\Software\Set8192GU]
[HKLM\Software\Set8192SU]
[HKLM\Software\Set8712]
[HKLM\Software\SightSpeed Inc]
[HKLM\Software\Skyline]
[HKLM\Software\Skype]
[HKLM\Software\SoftNyx]
[HKLM\Software\Sony Corporation]
[HKLM\Software\Sony Ericsson]
[HKLM\Software\Sony]
[HKLM\Software\Space Sciences Laboratory, U.C. Berkeley]
[HKLM\Software\Steinberg]
[HKLM\Software\Sunbelt Software]
[HKLM\Software\TROT-PEDIGREE]
[HKLM\Software\TVU networks]
[HKLM\Software\TeamTerminator]
[HKLM\Software\The Silicon Realms Toolworks]
[HKLM\Software\Thraex Software]
[HKLM\Software\Torquemada Games]
[HKLM\Software\Ubisoft]
[HKLM\Software\Uniblue]
[HKLM\Software\VideoLAN]
[HKLM\Software\VirtualDubMOD 1.5.10.2 b2540 Fr]
[HKLM\Software\Visicom Media]
[HKLM\Software\VodeiMPAVI]
[HKLM\Software\WexTech Systems]
[HKLM\Software\WinPcap]
[HKLM\Software\Windows 3.1 Migration Status]
[HKLM\Software\Wise Solutions]
[HKLM\Software\WiseCleaner]
[HKLM\Software\XHEO INC]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\Yahoo]
[HKLM\Software\Yuna Software]
[HKLM\Software\cameo]
[HKLM\Software\cybelsoft]
[HKLM\Software\iAvatars.com]
[HKLM\Software\illiminable]
[HKLM\Software\mozilla.org]
[HKLM\Software\muvee Technologies]
[HKLM\Software\pgAdmin III]
~ Scan Softwares in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 13/01/2012 - 19:28:02 - [0] ----D- C:\Program Files\50250
O43 - CFD: 05/01/2012 - 20:45:46 - [3,393] ----D- C:\Program Files\7-Zip
O43 - CFD: 29/04/2008 - 19:51:14 - [1,310] ----D- C:\Program Files\AC3Filter
O43 - CFD: 20/10/2011 - 23:34:44 - [-1814,216] ----D- C:\Program Files\Activision
O43 - CFD: 21/10/2010 - 00:39:30 - [0] ----D- C:\Program Files\Activision Value
O43 - CFD: 15/11/2008 - 20:16:28 - [2,080] ----D- C:\Program Files\Actual Moon 3D
O43 - CFD: 09/10/2011 - 13:18:12 - [1688,815] ----D- C:\Program Files\Adobe
O43 - CFD: 28/12/2006 - 14:58:40 - [190,233] ----D- C:\Program Files\Ahead
O43 - CFD: 31/07/2010 - 23:56:08 - [174,704] ----D- C:\Program Files\Alwil Software
O43 - CFD: 26/12/2006 - 17:25:18 - [0,119] ----D- C:\Program Files\AMD
O43 - CFD: 11/01/2012 - 17:43:14 - [48,118] ----D- C:\Program Files\Ancestrologie
O43 - CFD: 18/01/2010 - 18:37:18 - [3,274] ----D- C:\Program Files\ANPSEDIC
O43 - CFD: 14/03/2009 - 23:07:42 - [4,173] ----D- C:\Program Files\AnswerWorks 4.0
O43 - CFD: 14/03/2009 - 23:08:34 - [221,885] ----D- C:\Program Files\AutoCAD 2005
O43 - CFD: 16/04/2008 - 21:07:20 - [178,451] ----D- C:\Program Files\Autodesk
O43 - CFD: 23/12/2011 - 16:17:06 - [2,745] ----D- C:\Program Files\Avanquest update
O43 - CFD: 02/04/2010 - 02:18:04 - [12,527] ----D- C:\Program Files\Avery Dennison
O43 - CFD: 18/10/2011 - 13:42:10 - [0,138] ----D- C:\Program Files\AviSynth 2.5
O43 - CFD: 28/12/2006 - 12:15:48 - [5,226] ----D- C:\Program Files\AvRack
O43 - CFD: 15/10/2011 - 14:58:36 - [14,746] ----D- C:\Program Files\AVS4YOU
O43 - CFD: 30/12/2011 - 15:08:18 - [0,382] ----D- C:\Program Files\BestHandMonitor
O43 - CFD: 08/01/2012 - 22:13:56 - [40,022] ----D- C:\Program Files\BitComet
O43 - CFD: 17/03/2011 - 18:26:30 - [122,847] ----D- C:\Program Files\BitDefender
O43 - CFD: 09/09/2011 - 12:44:22 - [20,069] ----D- C:\Program Files\BOINC
O43 - CFD: 22/07/2010 - 18:10:40 - [4,694] ----D- C:\Program Files\BroadJump
O43 - CFD: 29/03/2010 - 19:29:58 - [342,067] ----D- C:\Program Files\Canon
O43 - CFD: 29/03/2010 - 19:04:20 - [15,233] --H-D- C:\Program Files\CanonBJ
O43 - CFD: 12/12/2011 - 19:08:16 - [4,885] ----D- C:\Program Files\CCleaner
O43 - CFD: 22/12/2011 - 20:32:10 - [6,027] ----D- C:\Program Files\chrome
O43 - CFD: 16/07/2011 - 00:04:16 - [1,336] ----D- C:\Program Files\ChronosXP
O43 - CFD: 27/12/2010 - 22:23:52 - [0,905] ----D- C:\Program Files\CHRYOPROD
O43 - CFD: 22/07/2010 - 18:29:28 - [32,112] ----D- C:\Program Files\Club-Internet
O43 - CFD: 22/07/2010 - 18:19:42 - [26,813] ----D- C:\Program Files\Common Files
O43 - CFD: 17/03/2011 - 15:15:42 - [0,000] ----D- C:\Program Files\COMODO
O43 - CFD: 22/12/2011 - 20:32:14 - [9,469] ----D- C:\Program Files\components
O43 - CFD: 23/07/2007 - 21:51:14 - [281,198] ----D- C:\Program Files\Creative
O43 - CFD: 20/10/2010 - 19:52:42 - [0,779] ----D- C:\Program Files\DAEMON Tools
O43 - CFD: 22/12/2011 - 20:32:14 - [0,059] ----D- C:\Program Files\defaults
O43 - CFD: 19/05/2007 - 13:09:44 - [532,337] ----D- C:\Program Files\DelphineSoft
O43 - CFD: 19/05/2007 - 15:36:50 - [0] ----D- C:\Program Files\directx
O43 - CFD: 15/10/2011 - 21:21:20 - [1,617] ----D- C:\Program Files\DivX
O43 - CFD: 12/01/2012 - 18:16:56 - [0,390] ----D- C:\Program Files\DNA
O43 - CFD: 26/11/2011 - 15:06:46 - [0,541] ----D- C:\Program Files\Download Manager
O43 - CFD: 23/09/2011 - 20:56:10 - [17,388] ----D- C:\Program Files\Earth Alerts
O43 - CFD: 03/05/2011 - 15:53:26 - [0,430] ----D- C:\Program Files\Earth Resource Mapping
O43 - CFD: 14/11/2010 - 22:40:40 - [0,150] ----D- C:\Program Files\eEye Digital Security
O43 - CFD: 23/07/2011 - 19:41:38 - [18,575] ----D- C:\Program Files\Electronic Arts
O43 - CFD: 14/04/2011 - 18:38:20 - [1700,236] ----D- C:\Program Files\Empire of Sports
O43 - CFD: 09/05/2010 - 13:29:40 - [-355,321] ----D- C:\Program Files\eMule
O43 - CFD: 05/12/2011 - 12:15:08 - [14,394] ----D- C:\Program Files\ESET
O43 - CFD: 18/01/2010 - 00:04:16 - [6,014] ----D- C:\Program Files\EssentialPIM
O43 - CFD: 10/02/2011 - 17:53:42 - [8,144] ----D- C:\Program Files\FastStone Image Viewer
O43 - CFD: 05/01/2012 - 20:40:56 - [1356,081] ----D- C:\Program Files\Fichiers communs
O43 - CFD: 26/11/2011 - 14:13:56 - [166,899] ----D- C:\Program Files\FinePixViewer
O43 - CFD: 03/01/2012 - 19:45:58 - [0] ----D- C:\Program Files\Futuremark
O43 - CFD: 20/01/2010 - 22:42:56 - [29,311] ----D- C:\Program Files\GameFace Messenger
O43 - CFD: 27/07/2011 - 17:57:42 - [1127,261] ----D- C:\Program Files\GAMIGO
O43 - CFD: 30/12/2011 - 13:39:36 - [1,639] ----D- C:\Program Files\GBoost
O43 - CFD: 11/10/2011 - 18:03:14 - [0] ----D- C:\Program Files\Ghostgum
O43 - CFD: 26/01/2010 - 00:41:48 - [95,431] ----D- C:\Program Files\GIMP-2.0
O43 - CFD: 12/12/2011 - 19:15:30 - [25,515] ----D- C:\Program Files\Glary Utilities
O43 - CFD: 20/11/2011 - 17:33:56 - [120,682] ----D- C:\Program Files\Google
O43 - CFD: 29/04/2008 - 19:51:08 - [0,264] ----D- C:\Program Files\GPL MPEG Decoder
O43 - CFD: 22/12/2011 - 20:32:14 - [0,082] ----D- C:\Program Files\greprefs
O43 - CFD: 14/01/2007 - 14:16:12 - [21,988] ----D- C:\Program Files\Grisbi
O43 - CFD: 13/01/2012 - 20:14:26 - [2,292] ----D- C:\Program Files\GRISOFT
O43 - CFD: 03/11/2010 - 02:47:58 - [10,341] ----D- C:\Program Files\i2p
O43 - CFD: 30/07/2009 - 18:49:38 - [16,046] ----D- C:\Program Files\ICQ6
O43 - CFD: 01/08/2009 - 09:21:26 - [36,776] ----D- C:\Program Files\ICQ6.5
O43 - CFD: 18/01/2010 - 14:23:00 - [1,607] ----D- C:\Program Files\Imagenomic
O43 - CFD: 16/09/2010 - 14:41:26 - [0,002] ----D- C:\Program Files\images
O43 - CFD: 03/01/2012 - 19:42:56 - [245,258] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 15/12/2011 - 15:03:00 - [5,191] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 01/02/2011 - 00:13:04 - [9,898] ----D- C:\Program Files\Iomega
O43 - CFD: 24/12/2011 - 12:30:18 - [6,256] ----D- C:\Program Files\IVT Corporation
O43 - CFD: 30/12/2011 - 20:59:18 - [375,829] ----D- C:\Program Files\Java
O43 - CFD: 03/07/2007 - 21:24:04 - [1615,326] ----D- C:\Program Files\JoWooD
O43 - CFD: 30/09/2009 - 21:48:00 - [23,739] ----D- C:\Program Files\JoyToKey
O43 - CFD: 12/01/2012 - 16:22:32 - [2,829] ----D- C:\Program Files\jv16 PowerTools
O43 - CFD: 14/12/2011 - 23:49:22 - [0] ----D- C:\Program Files\KONAMI
O43 - CFD: 02/11/2010 - 12:04:04 - [0,393] ----D- C:\Program Files\Language
O43 - CFD: 17/03/2011 - 18:04:12 - [94,684] ----D- C:\Program Files\Lavasoft
O43 - CFD: 18/03/2010 - 19:10:20 - [20,107] ----D- C:\Program Files\LightScribe Template Labeler
O43 - CFD: 19/05/2007 - 13:16:18 - [2,592] ----D- C:\Program Files\Ligos
O43 - CFD: 26/01/2011 - 12:20:42 - [5,768] ----D- C:\Program Files\LinuxLive USB Creator
O43 - CFD: 05/01/2012 - 20:41:04 - [3,729] ----D- C:\Program Files\Lock Folder XP
O43 - CFD: 05/08/2011 - 19:01:20 - [2,759] ----D- C:\Program Files\LockHunter
O43 - CFD: 13/01/2012 - 19:27:40 - [0,098] ----D- C:\Program Files\LP
O43 - CFD: 30/12/2011 - 19:18:40 - [6,206] ----D- C:\Program Files\ma-config.com
O43 - CFD: 13/01/2012 - 20:16:22 - [4,694] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 09/10/2011 - 19:42:12 - [12,814] ----D- C:\Program Files\ManyCam
O43 - CFD: 25/07/2010 - 16:31:28 - [125,049] ----D- C:\Program Files\MapInfo
O43 - CFD: 05/01/2012 - 00:11:26 - [1,982] ----D- C:\Program Files\MB Free Complete Numerology Software
O43 - CFD: 30/07/2007 - 18:56:52 - [4,125] ----D- C:\Program Files\Media Player Classic
O43 - CFD: 24/09/2007 - 20:53:56 - [3,008] ----D- C:\Program Files\MegaWorld
O43 - CFD: 12/02/2009 - 22:03:42 - [2,053] ----D- C:\Program Files\Messenger
O43 - CFD: 01/11/2010 - 19:50:40 - [12,546] ----D- C:\Program Files\Messenger Plus! Live
O43 - CFD: 18/09/2011 - 21:57:04 - [0,783] ----D- C:\Program Files\Microsoft
O43 - CFD: 26/12/2006 - 17:10:16 - [0] ----D- C:\Program Files\microsoft frontpage
O43 - CFD: 03/10/2007 - 21:33:12 - [-2016,805] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 24/09/2007 - 18:27:02 - [215,298] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 14/10/2011 - 12:15:26 - [36,633] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 16/09/2009 - 00:53:14 - [1,745] ----D- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 16/09/2009 - 00:54:16 - [2,087] ----D- C:\Program Files\Microsoft Sync Framework
O43 - CFD: 25/01/2007 - 21:55:30 - [0,014] ----D- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 15/10/2009 - 20:30:20 - [143,405] ----D- C:\Program Files\Microsoft Works
O43 - CFD: 14/12/2011 - 12:14:18 - [244,977] ----D- C:\Program Files\Mindscape
O43 - CFD: 28/08/2007 - 19:53:42 - [8,793] ----D- C:\Program Files\Minilyrics
O43 - CFD: 18/01/2010 - 17:47:40 - [1,944] ----D- C:\Program Files\MonProduit
O43 - CFD: 29/04/2008 - 21:54:06 - [0,092] ----D- C:\Program Files\Morgan
O43 - CFD: 22/07/2010 - 18:47:32 - [1,254] ----D- C:\Program Files\Motive
O43 - CFD: 06/09/2010 - 23:56:38 - [9,894] ----D- C:\Program Files\Movie Maker
O43 - CFD: 30/12/2011 - 21:34:08 - [277,009] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 30/09/2011 - 23:20:10 - [34,758] ----D- C:\Program Files\Mozilla Thunderbird
O43 - CFD: 13/01/2010 - 19:46:08 - [21,551] ----D- C:\Program Files\MpcStar
O43 - CFD: 20/10/2010 - 16:50:44 - [2,761] ----D- C:\Program Files\MPEG4 NVR
O43 - CFD: 30/08/2009 - 22:08:38 - [0,025] ----D- C:\Program Files\MSBuild
O43 - CFD: 30/01/2011 - 22:37:16 - [18,385] ----D- C:\Program Files\MSN
O43 - CFD: 15/12/2007 - 12:22:26 - [0,637] ----D- C:\Program Files\MSN Content Plus Inc
O43 - CFD: 26/12/2006 - 17:06:54 - [8,341] ----D- C:\Program Files\MSN Gaming Zone
O43 - CFD: 16/09/2009 - 00:52:16 - [5,411] ----D- C:\Program Files\MSN Messenger
O43 - CFD: 16/05/2009 - 16:35:58 - [0,164] ----D- C:\Program Files\MSN Reaper
O43 - CFD: 23/07/2007 - 21:16:48 - [17,303] ----D- C:\Program Files\muvee Technologies
O43 - CFD: 01/06/2008 - 00:01:40 - [0] ----D- C:\Program Files\My Company Name
O43 - CFD: 30/04/2008 - 17:49:08 - [5,436] ----D- C:\Program Files\neodivx2006
O43 - CFD: 12/02/2009 - 21:49:24 - [3,133] ----D- C:\Program Files\NetMeeting
O43 - CFD: 20/04/2008 - 18:39:34 - [10,376] ----D- C:\Program Files\Neuratron PhotoScore Demo
O43 - CFD: 23/09/2011 - 20:28:02 - [4,820] ----D- C:\Program Files\Notebook Hardware Control
O43 - CFD: 18/09/2007 - 19:39:32 - [7,358] ----D- C:\Program Files\nullDC
O43 - CFD: 30/12/2011 - 21:12:52 - [567,510] ----D- C:\Program Files\NVIDIA Corporation
O43 - CFD: 02/07/2011 - 00:11:36 - [3,139] ----D- C:\Program Files\OfferBox
O43 - CFD: 03/05/2011 - 15:53:26 - [73,684] ----D- C:\Program Files\OkMap
O43 - CFD: 26/12/2006 - 17:07:02 - [0,002] ----D- C:\Program Files\Online Services
O43 - CFD: 21/10/2010 - 23:19:46 - [0,746] ----D- C:\Program Files\OpenAL
O43 - CFD: 14/12/2011 - 00:31:54 - [56,601] ----D- C:\Program Files\Opera
O43 - CFD: 02/01/2012 - 21:41:26 - [29,288] ----D- C:\Program Files\Oracle
O43 - CFD: 27/12/2010 - 22:31:36 - [4,176] ----D- C:\Program Files\Outlook Express
O43 - CFD: 20/10/2010 - 17:08:04 - [17,360] ----D- C:\Program Files\Panasonic
O43 - CFD: 30/09/2007 - 20:52:32 - [-638,650] ----D- C:\Program Files\Panzer Elite Action
O43 - CFD: 20/04/2008 - 18:53:16 - [32,307] ----D- C:\Program Files\PDFCreator
O43 - CFD: 05/01/2012 - 00:04:46 - [-857,433] ----D- C:\Program Files\PeerGuardian2
O43 - CFD: 25/11/2009 - 18:19:08 - [1,984] ----D- C:\Program Files\Pinball
O43 - CFD: 14/07/2007 - 20:46:00 - [2,386] ----D- C:\Program Files\Pinnacle
O43 - CFD: 16/09/2010 - 14:41:28 - [3,654] ----D- C:\Program Files\plugins
O43 - CFD: 11/01/2012 - 22:19:58 - [33,546] ----D- C:\Program Files\PMUPoker
O43 - CFD: 08/01/2012 - 15:15:30 - [0] ----D- C:\Program Files\Poker Pro Labs
O43 - CFD: 16/12/2011 - 18:11:56 - [20,745] ----D- C:\Program Files\PokerProba
O43 - CFD: 13/01/2012 - 20:08:32 - [98,710] ----D- C:\Program Files\PokerStars.FR
O43 - CFD: 07/10/2010 - 19:10:20 - [-1717,668] ----D- C:\Program Files\PostgreSQL
O43 - CFD: 03/07/2007 - 19:20:44 - [1393,402] ----D- C:\Program Files\Propellerhead
O43 - CFD: 04/01/2012 - 19:00:00 - [0,518] ----D- C:\Program Files\PTS Software
O43 - CFD: 14/12/2011 - 13:43:26 - [9,277] ----D- C:\Program Files\QuickTime
O43 - CFD: 16/01/2010 - 19:59:30 - [107,724] ----D- C:\Program Files\Raxco
O43 - CFD: 13/01/2007 - 21:28:34 - [65,732] ----D- C:\Program Files\Real
O43 - CFD: 30/12/2011 - 20:26:56 - [9,577] ----D- C:\Program Files\REALTEK
O43 - CFD: 28/12/2006 - 12:15:46 - [37,960] ----D- C:\Program Files\Realtek AC97
O43 - CFD: 30/08/2009 - 22:08:28 - [34,715] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 24/04/2007 - 19:41:50 - [1,449] ----D- C:\Program Files\RegCleaner
O43 - CFD: 07/01/2010 - 14:15:32 - [0,051] ----D- C:\Program Files\REGSHAVE
O43 - CFD: 22/12/2011 - 20:32:24 - [0,355] ----D- C:\Program Files\res
O43 - CFD: 06/01/2008 - 00:50:40 - [8,957] ----D- C:\Program Files\RFG2008
O43 - CFD: 07/10/2010 - 20:19:16 - [108,271] ----D- C:\Program Files\RVG Software
O43 - CFD: 08/04/2010 - 19:31:54 - [6,785] ----D- C:\Program Files\scrabbleproB
O43 - CFD: 23/07/2010 - 21:19:08 - [3,026] ----D- C:\Program Files\scrabbleproB1.1
O43 - CFD: 25/07/2010 - 16:31:40 - [1,803] ----D- C:\Program Files\Seagate Software
O43 - CFD: 26/12/2006 - 17:08:50 - [0,001] ----D- C:\Program Files\Services en ligne
O43 - CFD: 01/07/2011 - 23:53:44 - [18,459] ----D- C:\Program Files\Sibelius Software
O43 - CFD: 23/07/2007 - 21:13:58 - [19,956] ----D- C:\Program Files\SightSpeed
O43 - CFD: 21/09/2007 - 21:50:42 - [24,597] ----D- C:\Program Files\Skyline
O43 - CFD: 27/08/2011 - 21:38:24 - [34,825] R---D- C:\Program Files\Skype
O43 - CFD: 31/12/2011 - 14:07:30 - [0,643] ----D- C:\Program Files\SmartUpgrader
O43 - CFD: 23/12/2011 - 16:40:06 - [105,326] ----D- C:\Program Files\Sony
O43 - CFD: 24/12/2011 - 14:20:34 - [121,854] ----D- C:\Program Files\Sony Ericsson
O43 - CFD: 24/12/2011 - 14:18:40 - [8,104] ----D- C:\Program Files\Sony Ericsson PC Suite 6.009.00
O43 - CFD: 23/12/2011 - 16:30:24 - [0,061] ----D- C:\Program Files\Sony Media Go Install
O43 - CFD: 31/08/2008 - 21:18:24 - [36,125] ----D- C:\Program Files\SopCast
O43 - CFD: 16/01/2012 - 00:11:56 - [5,593] ----D- C:\Program Files\SpeedFan
O43 - CFD: 01/12/2009 - 11:44:12 - [105,015] ----D- C:\Program Files\Spybot - Search & Destroy
O43 - CFD: 09/09/2007 - 21:10:38 - [0,016] ----D- C:\Program Files\Steinberg
O43 - CFD: 23/02/2010 - 14:17:24 - [1,931] ----D- C:\Program Files\StuffPlug3
O43 - CFD: 14/02/2009 - 21:51:04 - [1,252] ----D- C:\Program Files\SuperPI
O43 - CFD: 30/12/2011 - 19:41:40 - [2,501] ----D- C:\Program Files\SystemRequirementsLab
O43 - CFD: 26/07/2009 - 20:48:02 - [103,618] ----D- C:\Program Files\TeLLmeMore
O43 - CFD: 11/01/2012 - 20:35:30 - [0] ----D- C:\Program Files\Temp
O43 - CFD: 03/06/2010 - 16:45:58 - [713,534] ----D- C:\Program Files\TmNationsForever
O43 - CFD: 16/09/2010 - 14:40:02 - [19,544] ----D- C:\Program Files\tmpUpgrade
O43 - CFD: 19/10/2011 - 18:38:52 - [546,091] ----D- C:\Program Files\TrackMania Nations ESWC
O43 - CFD: 09/07/2010 - 17:58:46 - [10,115] ----D- C:\Program Files\TRENDnet
O43 - CFD: 01/02/2009 - 21:48:58 - [5,377] ----D- C:\Program Files\TVAnts
O43 - CFD: 14/03/2011 - 00:14:42 - [13,518] ----D- C:\Program Files\TVUPlayer
O43 - CFD: 21/10/2010 - 11:56:04 - [43,057] ----D- C:\Program Files\Ubisoft
O43 - CFD: 29/07/2010 - 13:49:58 - [1,516] ----D- C:\Program Files\UltraCover
O43 - CFD: 25/01/2011 - 19:27:30 - [2,648] ----D- C:\Program Files\UltraMon
O43 - CFD: 12/01/2012 - 15:54:28 - [0] ----D- C:\Program Files\Uniblue
O43 - CFD: 14/03/2009 - 22:55:02 - [0,000] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 10/04/2009 - 17:31:52 - [23,385] ----D- C:\Program Files\Vidalia Bundle
O43 - CFD: 08/01/2009 - 23:33:38 - [0,232] ----D- C:\Program Files\Video2Webcam
O43 - CFD: 16/01/2007 - 21:36:38 - [116,928] ----D- C:\Program Files\VideoLAN
O43 - CFD: 20/09/2007 - 20:35:20 - [3,669] ----D- C:\Program Files\Vodei
O43 - CFD: 03/11/2011 - 19:22:38 - [6,502] ----D- C:\Program Files\VS Revo Group
O43 - CFD: 04/01/2012 - 22:57:26 - [10,019] ----D- C:\Program Files\watch
O43 - CFD: 19/08/2011 - 23:48:26 - [1,942] ----D- C:\Program Files\WebCam
O43 - CFD: 08/11/2011 - 15:05:46 - [858,320] ----D- C:\Program Files\Weezo
O43 - CFD: 30/04/2008 - 17:41:50 - [0] ----D- C:\Program Files\WinASPI
O43 - CFD: 21/08/2011 - 13:45:12 - [132,487] ----D- C:\Program Files\Windows Live
O43 - CFD: 16/09/2009 - 00:51:08 - [0,234] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 12/05/2008 - 22:12:40 - [13,508] ----D- C:\Program Files\Windows Media Components
O43 - CFD: 08/11/2009 - 11:24:50 - [4,962] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 12/02/2009 - 21:49:22 - [3,760] ----D- C:\Program Files\Windows NT
O43 - CFD: 26/12/2006 - 17:08:54 - [0] --H-D- C:\Program Files\WindowsUpdate
O43 - CFD: 04/01/2012 - 19:25:12 - [0,396] ----D- C:\Program Files\WinPcap
O43 - CFD: 14/03/2009 - 19:25:20 - [4,766] ----D- C:\Program Files\WinRAR
O43 - CFD: 15/11/2008 - 20:50:58 - [58,971] ----D- C:\Program Files\WinStars2
O43 - CFD: 12/01/2012 - 19:18:02 - [3,291] ----D- C:\Program Files\Wise Disk Cleaner
O43 - CFD: 12/01/2012 - 19:16:36 - [2,878] ----D- C:\Program Files\Wise Registry Cleaner
O43 - CFD: 16/04/2011 - 13:18:30 - [-1436,640] ----D- C:\Program Files\Wolfenstein - Enemy Territory
O43 - CFD: 26/12/2006 - 17:10:16 - [0] ----D- C:\Program Files\xerox
O43 - CFD: 29/04/2008 - 21:53:36 - [0,730] ----D- C:\Program Files\XviD
O43 - CFD: 15/10/2011 - 14:45:46 - [39,638] ----D- C:\Program Files\Yahoo!
O43 - CFD: 24/03/2011 - 00:08:40 - [22,096] ----D- C:\Program Files\Yuna Software
O43 - CFD: 16/01/2012 - 17:31:54 - [10,093] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 30/04/2008 - 18:06:34 - [13,268] ----D- C:\Program Files\Common Files\INCA Shared
O43 - CFD: 22/07/2010 - 18:58:22 - [13,545] ----D- C:\Program Files\Common Files\Motive
O43 - CFD: 09/10/2011 - 18:41:42 - [114,832] ----D- C:\Program Files\Fichiers Communs\Adobe
O43 - CFD: 28/12/2006 - 14:56:12 - [28,536] ----D- C:\Program Files\Fichiers Communs\Ahead
O43 - CFD: 07/10/2010 - 01:18:26 - [0] ----D- C:\Program Files\Fichiers Communs\Auto
O43 - CFD: 14/03/2009 - 23:09:04 - [66,650] ----D- C:\Program Files\Fichiers Communs\Autodesk Shared
O43 - CFD: 20/08/2011 - 13:49:10 - [0] ----D- C:\Program Files\Fichiers Communs\AVSMedia
O43 - CFD: 17/03/2011 - 18:26:30 - [632,921] ----D- C:\Program Files\Fichiers Communs\BitDefender
O43 - CFD: 29/03/2010 - 19:10:28 - [0,001] ----D- C:\Program Files\Fichiers Communs\CANON
O43 - CFD: 14/03/2009 - 23:07:38 - [0,180] ----D- C:\Program Files\Fichiers Communs\Designer
O43 - CFD: 05/01/2012 - 20:40:56 - [0,004] ----D- C:\Program Files\Fichiers Communs\Everstrike Software
O43 - CFD: 25/03/2009 - 19:00:12 - [4,306] ----D- C:\Program Files\Fichiers Communs\Futuremark Shared
O43 - CFD: 18/07/2007 - 18:54:44 - [28,729] ----D- C:\Program Files\Fichiers Communs\GTK
O43 - CFD: 09/09/2007 - 20:23:44 - [24,818] ----D- C:\Program Files\Fichiers Communs\InstallShield
O43 - CFD: 30/12/2011 - 21:05:40 - [32,911] ----D- C:\Program Files\Fichiers Communs\Java
O43 - CFD: 18/03/2010 - 19:09:34 - [36,116] ----D- C:\Program Files\Fichiers Communs\LightScribe
O43 - CFD: 16/09/2009 - 00:51:16 - [256,157] ----D- C:\Program Files\Fichiers Communs\Microsoft Shared
O43 - CFD: 22/07/2010 - 18:58:20 - [0] ----D- C:\Program Files\Fichiers Communs\Motive
O43 - CFD: 26/12/2006 - 17:08:14 - [0,271] ----D- C:\Program Files\Fichiers Communs\MSSoap
O43 - CFD: 23/07/2007 - 21:16:56 - [13,637] ----D- C:\Program Files\Fichiers Communs\muvee Technologies
O43 - CFD: 28/12/2006 - 14:58:20 - [2,169] ----D- C:\Program Files\Fichiers Communs\Nero
O43 - CFD: 26/12/2006 - 17:36:12 - [0] ----D- C:\Program Files\Fichiers Communs\ODBC
O43 - CFD: 06/07/2007 - 16:47:30 - [0,215] ----D- C:\Program Files\Fichiers Communs\Palo Alto Software Inc
O43 - CFD: 25/01/2009 - 12:59:12 - [37,498] ----D- C:\Program Files\Fichiers Communs\PC SOFT
O43 - CFD: 06/10/2009 - 20:16:26 - [19,894] ----D- C:\Program Files\Fichiers Communs\Real
O43 - CFD: 25/01/2011 - 19:27:34 - [0,016] ----D- C:\Program Files\Fichiers Communs\Realtime Soft
O43 - CFD: 26/12/2006 - 17:08:16 - [0,008] ----D- C:\Program Files\Fichiers Communs\Services
O43 - CFD: 06/12/2009 - 21:49:30 - [13,185] ----D- C:\Program Files\Fichiers Communs\Softwin
O43 - CFD: 23/12/2011 - 19:10:24 - [20,404] ----D- C:\Program Files\Fichiers Communs\Sony Shared
O43 - CFD: 26/12/2006 - 17:36:08 - [3,612] ----D- C:\Program Files\Fichiers Communs\SpeechEngines
O43 - CFD: 12/02/2009 - 21:49:22 - [18,676] ----D- C:\Program Files\Fichiers Communs\System
O43 - CFD: 16/09/2009 - 00:46:30 - [0] ----D- C:\Program Files\Fichiers Communs\Windows Live
O43 - CFD: 06/10/2009 - 20:16:02 - [0,336] ----D- C:\Program Files\Fichiers Communs\xing shared
O43 - CFD: 14/01/2012 - 01:08:30 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\74050
O43 - CFD: 06/05/2011 - 14:45:44 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Active Disk
O43 - CFD: 22/12/2011 - 12:30:20 - [49,521] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Adobe
O43 - CFD: 30/11/2010 - 19:48:34 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\AdobeUM
O43 - CFD: 08/09/2007 - 12:26:44 - [0,068] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Ahead
O43 - CFD: 14/07/2010 - 23:40:12 - [3,491] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\AIMP
O43 - CFD: 10/07/2011 - 23:14:02 - [0,049] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Ancestrologie
O43 - CFD: 25/03/2009 - 19:20:22 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Apple Computer
O43 - CFD: 18/10/2010 - 22:15:40 - [1,281] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\ArcSoft
O43 - CFD: 12/02/2009 - 22:11:08 - [0,002] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Auslogics
O43 - CFD: 14/03/2009 - 22:50:52 - [4,673] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Autodesk
O43 - CFD: 24/11/2008 - 19:55:58 - [0,081] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\AVGTOOLBAR
O43 - CFD: 14/03/2009 - 23:26:40 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\AVS4YOU
O43 - CFD: 23/12/2011 - 21:29:46 - [0,481] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\BitComet
O43 - CFD: 17/03/2011 - 18:27:10 - [0,040] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\BitDefender
O43 - CFD: 27/07/2010 - 17:49:28 - [0,049] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Canon
O43 - CFD: 13/04/2010 - 10:30:56 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Canon Easy-WebPrint EX
O43 - CFD: 31/03/2010 - 09:54:52 - [0,052] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\CD-LabelPrint
O43 - CFD: 16/12/2007 - 20:00:38 - [0,002] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Classes de site
O43 - CFD: 30/03/2011 - 17:46:04 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\COWON
O43 - CFD: 23/07/2007 - 22:18:22 - [0,003] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Creative
O43 - CFD: 15/11/2010 - 23:36:56 - [1,721] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\CVitae
O43 - CFD: 05/06/2008 - 18:51:04 - [0,003] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\DameWare Development
O43 - CFD: 22/12/2011 - 10:50:36 - [19,794] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Delivery
O43 - CFD: 09/05/2010 - 13:57:24 - [0,265] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\DivX
O43 - CFD: 12/01/2012 - 19:53:40 - [0,014] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\DNA
O43 - CFD: 08/09/2010 - 19:33:36 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Download Manager
O43 - CFD: 05/10/2011 - 23:13:56 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\dvdcss
O43 - CFD: 16/12/2007 - 20:00:00 - [0,071] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Dynamique
O43 - CFD: 23/09/2011 - 20:56:08 - [0,080] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Earth Alerts
O43 - CFD: 18/01/2010 - 00:04:40 - [6,411] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\EssentialPIM
O43 - CFD: 27/05/2010 - 13:12:54 - [0,016] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\F4
O43 - CFD: 10/01/2010 - 13:47:12 - [14,705] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\FastStone
O43 - CFD: 21/12/2007 - 20:58:38 - [0,014] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\FileZilla
O43 - CFD: 25/01/2010 - 02:12:30 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\FreeAudioPack
O43 - CFD: 09/12/2009 - 00:12:02 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\FreeVideoConverter
O43 - CFD: 07/01/2010 - 14:25:24 - [0,135] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\FUJIFILM
O43 - CFD: 20/08/2011 - 15:03:34 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\GetRightToGo
O43 - CFD: 03/05/2011 - 15:55:10 - [12,281] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\GianPaoloSaliola
O43 - CFD: 12/02/2009 - 21:14:28 - [0,150] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\GlarySoft
O43 - CFD: 10/07/2007 - 18:27:32 - [0,021] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Google
O43 - CFD: 14/01/2007 - 14:15:36 - [0,004] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Grisbi
O43 - CFD: 20/09/2011 - 22:15:12 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\gtk-2.0
O43 - CFD: 30/12/2011 - 13:40:00 - [2,627] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\GZero
O43 - CFD: 25/07/2010 - 17:06:34 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Help
O43 - CFD: 08/10/2010 - 16:03:24 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\HEM Data
O43 - CFD: 15/09/2009 - 21:46:14 - [0,573] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\I2P
O43 - CFD: 08/07/2008 - 18:59:28 - [2,365] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\ICQ
O43 - CFD: 01/02/2007 - 22:12:46 - [0,039] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\ICQLite
O43 - CFD: 17/03/2011 - 18:47:18 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Identities
O43 - CFD: 13/01/2008 - 00:06:38 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\images
O43 - CFD: 23/09/2011 - 19:07:44 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\ImgBurn
O43 - CFD: 30/08/2007 - 19:30:20 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Lavasoft
O43 - CFD: 05/08/2011 - 19:02:08 - [0,003] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\LockHunter
O43 - CFD: 21/01/2008 - 19:04:50 - [5,066] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Macromedia
O43 - CFD: 26/11/2010 - 00:00:56 - [4,796] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Malwarebytes
O43 - CFD: 09/10/2011 - 19:42:38 - [7,984] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\ManyCam
O43 - CFD: 25/07/2010 - 16:41:24 - [1,142] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\MapInfo
O43 - CFD: 12/01/2012 - 19:38:04 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Media Player Classic
O43 - CFD: 22/12/2011 - 12:30:20 - [28,709] -S--D- C:\Documents and Settings\Ken Hutchinson\Application Data\Microsoft
O43 - CFD: 07/01/2012 - 15:00:52 - [2,817] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\MiniLyrics
O43 - CFD: 10/07/2010 - 21:28:40 - [0,564] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\moovida-1
O43 - CFD: 23/06/2010 - 15:46:00 - [93,625] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Mozilla
O43 - CFD: 23/07/2007 - 22:18:08 - [0,007] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\muvee Technologies
O43 - CFD: 23/07/2011 - 21:57:18 - [0,043] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Need for Speed World
O43 - CFD: 04/03/2007 - 22:53:12 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\NeroDCTemplates
O43 - CFD: 04/01/2012 - 22:57:58 - [0,050] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\NVIDIA
O43 - CFD: 20/09/2011 - 20:07:12 - [7,024] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Opera
O43 - CFD: 30/12/2011 - 21:00:36 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Oracle
O43 - CFD: 30/12/2011 - 17:29:00 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\PlayerPlug
O43 - CFD: 06/07/2007 - 17:01:14 - [0,017] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Propellerhead Software
O43 - CFD: 30/12/2011 - 17:29:00 - [0,000] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\PropMgrAsync
O43 - CFD: 06/10/2009 - 20:17:00 - [1,042] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Real
O43 - CFD: 25/01/2011 - 19:27:50 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Realtime Soft
O43 - CFD: 16/12/2007 - 20:00:18 - [0,196] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Sites
O43 - CFD: 05/01/2012 - 00:39:02 - [17,657] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Skype
O43 - CFD: 05/10/2011 - 19:51:38 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\skypePM
O43 - CFD: 23/12/2011 - 19:09:46 - [59,039] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Sony
O43 - CFD: 27/01/2008 - 21:27:04 - [0,159] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\SopCast
O43 - CFD: 14/07/2007 - 20:56:10 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Steinberg
O43 - CFD: 04/01/2007 - 22:24:18 - [70,977] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Sun
O43 - CFD: 01/10/2011 - 11:29:50 - [2,623] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\SystemRequirementsLab
O43 - CFD: 06/12/2007 - 20:49:28 - [0,007] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Talkback
O43 - CFD: 12/07/2007 - 19:07:22 - [0,006] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\teamspeak2
O43 - CFD: 24/09/2007 - 18:28:02 - [0,008] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Template
O43 - CFD: 31/01/2011 - 19:01:32 - [464,865] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Thunderbird
O43 - CFD: 24/12/2011 - 14:22:46 - [0,008] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Toolbar4
O43 - CFD: 11/04/2009 - 11:22:10 - [3,367] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\tor
O43 - CFD: 28/11/2008 - 20:12:10 - [10,646] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\TVU networks
O43 - CFD: 12/01/2012 - 15:33:34 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Uniblue
O43 - CFD: 22/03/2011 - 18:55:44 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Unity
O43 - CFD: 05/10/2011 - 18:38:08 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\uTorrent
O43 - CFD: 11/04/2009 - 11:22:10 - [0,171] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Vidalia
O43 - CFD: 25/12/2011 - 23:55:08 - [1,047] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\vlc
O43 - CFD: 16/09/2009 - 01:09:20 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Windows Live Writer
O43 - CFD: 30/04/2008 - 19:12:16 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\WinRAR
O43 - CFD: 12/01/2012 - 19:44:50 - [0,007] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Wise Disk Cleaner
O43 - CFD: 12/01/2012 - 19:49:16 - [0,098] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Wise Registry Cleaner
O43 - CFD: 06/01/2008 - 22:57:16 - [0,258] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\WNR
O43 - CFD: 15/10/2011 - 14:43:10 - [0,545] ----D- C:\Documents and Settings\Ken Hutchinson\Application Data\Yahoo!
O43 - CFD: 13/01/2012 - 19:28:10 - [0,057] -SH-D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\99fd74b2
O43 - CFD: 13/11/2008 - 13:43:52 - [24,745] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Adobe
O43 - CFD: 25/01/2007 - 20:22:16 - [1,860] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Ahead
O43 - CFD: 23/09/2010 - 22:10:30 - [0,000] --H-D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\AlterGeo
O43 - CFD: 25/03/2009 - 19:19:56 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Apple
O43 - CFD: 15/01/2007 - 22:49:12 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Apple Computer
O43 - CFD: 23/09/2011 - 19:33:42 - [0,016] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\ApplicationHistory
O43 - CFD: 07/07/2010 - 21:54:46 - [0,007] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\AskToolbar
O43 - CFD: 14/03/2009 - 22:53:42 - [14,906] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Autodesk
O43 - CFD: 24/12/2011 - 12:38:28 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\bluesoleil
O43 - CFD: 10/02/2011 - 17:49:10 - [0,083] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Canon Easy-PhotoPrint EX
O43 - CFD: 24/11/2010 - 21:08:32 - [0,945] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Chess+
O43 - CFD: 23/07/2010 - 00:33:02 - [0,038] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris
O43 - CFD: 29/09/2011 - 10:55:50 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\CrashRpt
O43 - CFD: 21/07/2011 - 23:41:46 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\DNA
O43 - CFD: 23/12/2011 - 16:38:36 - [19,649] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Downloaded Installations
O43 - CFD: 23/07/2011 - 19:42:34 - [0,003] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Electronic_Arts_Inc
O43 - CFD: 29/03/2011 - 18:31:56 - [166,802] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\F4
O43 - CFD: 24/11/2010 - 21:08:44 - [0,936] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Facebook widget
O43 - CFD: 24/11/2010 - 21:08:30 - [1,056] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Friday countdown
O43 - CFD: 03/05/2011 - 15:55:34 - [0,062] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\GianPaoloSaliola
O43 - CFD: 24/11/2010 - 21:08:42 - [1,093] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Golden Coin
O43 - CFD: 05/07/2010 - 15:49:02 - [370,955] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Google
O43 - CFD: 24/11/2010 - 21:08:38 - [0,926] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Google Translator
O43 - CFD: 30/12/2011 - 13:40:22 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\GZero
O43 - CFD: 29/12/2006 - 14:13:12 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Help
O43 - CFD: 01/04/2007 - 14:22:16 - [0,216] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Identities
O43 - CFD: 07/10/2010 - 21:07:04 - [0,180] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\In The Money
O43 - CFD: 07/10/2010 - 20:20:20 - [0,001] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\IsolatedStorage
O43 - CFD: 19/03/2007 - 22:26:52 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\LightScribe
O43 - CFD: 30/12/2011 - 18:31:18 - [0,034] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\LiveGBoost
O43 - CFD: 09/10/2011 - 19:42:36 - [1,700] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\ManyCam
O43 - CFD: 25/07/2010 - 16:41:24 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\MapInfo
O43 - CFD: 22/12/2011 - 12:30:20 - [645,707] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft
O43 - CFD: 10/07/2010 - 21:28:34 - [0,173] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\moovida Air
O43 - CFD: 13/01/2007 - 21:44:18 - [63,523] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla
O43 - CFD: 24/11/2010 - 21:08:50 - [1,360] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\multiWeather
O43 - CFD: 24/11/2010 - 21:08:52 - [0,839] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\MyCamera
O43 - CFD: 24/11/2010 - 21:09:14 - [0,876] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\O-Knife
O43 - CFD: 24/11/2010 - 21:09:10 - [1,347] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\OMG_Opera Mouse Gestures
O43 - CFD: 24/11/2010 - 21:09:14 - [6,033] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Opera
O43 - CFD: 12/01/2012 - 15:33:06 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\PackageAware
O43 - CFD: 31/12/2011 - 12:57:24 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\PCHealth
O43 - CFD: 24/11/2010 - 21:08:36 - [1,040] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Penalty
O43 - CFD: 08/01/2012 - 14:59:54 - [9,914] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Poker Pro Labs
O43 - CFD: 21/10/2011 - 00:19:08 - [0,921] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\PunkBuster
O43 - CFD: 05/10/2011 - 18:14:04 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\RevoUnistallerPro
O43 - CFD: 24/11/2010 - 21:08:24 - [2,424] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\SimAquarium
O43 - CFD: 23/12/2011 - 19:11:26 - [0,358] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Sony
O43 - CFD: 24/12/2011 - 13:56:40 - [0,091] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Sony Ericsson
O43 - CFD: 30/12/2011 - 21:25:20 - [0,076] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Sun
O43 - CFD: 30/09/2010 - 11:55:44 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Sunbelt Software
O43 - CFD: 22/12/2011 - 12:30:20 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Temp
O43 - CFD: 29/11/2007 - 22:06:44 - [3,832] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Thunderbird
O43 - CFD: 23/10/2008 - 19:45:48 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\TVU Networks
O43 - CFD: 22/03/2011 - 20:30:36 - [880,844] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Unity
O43 - CFD: 05/10/2011 - 18:54:52 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\VS Revo Group
O43 - CFD: 24/11/2010 - 21:08:58 - [0,836] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Wasserkuppe Germany
O43 - CFD: 16/09/2009 - 01:09:22 - [0,340] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Windows Live Writer
O43 - CFD: 22/12/2009 - 18:33:10 - [0] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 04/08/2010 - 16:40:54 - [0,264] ----D- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\Yahoo
O43 - CFD: 15/01/2012 - 14:30:34 - [0] RSHADC C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\????.??
~ Scan Program Folder in 01mn 53s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.92572C07C92017A8DA8D570AEEA0168F] - 16/01/2012 - 17:03:08 ---A- . (...) -- C:\RCX2F.tmp [262144]
O44 - LFC:[MD5.18BC0E6E0D9FB46D40FA4EEA83535C5A] - 16/01/2012 - 17:02:50 ---A- . (...) -- C:\RCX2D.tmp [266240]
O44 - LFC:[MD5.18BC0E6E0D9FB46D40FA4EEA83535C5A] - 16/01/2012 - 17:02:28 ---A- . (...) -- C:\RCX2C.tmp [266240]
O44 - LFC:[MD5.26865055A98E8B42C9ED57C44E526991] - 16/01/2012 - 17:01:49 ---A- . (...) -- C:\RCX2B.tmp [266240]
O44 - LFC:[MD5.26865055A98E8B42C9ED57C44E526991] - 16/01/2012 - 17:01:07 ---A- . (...) -- C:\RCX2A.tmp [266240]
O44 - LFC:[MD5.26865055A98E8B42C9ED57C44E526991] - 16/01/2012 - 17:00:30 ---A- . (...) -- C:\RCX29.tmp [266240]
O44 - LFC:[MD5.D5BEF6F45CE7D1194BC8BAD8840A5DA0] - 16/01/2012 - 16:53:58 ---A- . (...) -- C:\WINDOWS\setupapi.log [7714]
O44 - LFC:[MD5.F26D2D03BFEDD18F7DFB21C21E7D1AFC] - 16/01/2012 - 14:31:08 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [1951944]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 16/01/2012 - 14:30:54 ---A- . (...) -- C:\WINDOWS\0.log [0]
O44 - LFC:[MD5.0301A234C7BDCA63ED2BEB5D2DB63F01] - 16/01/2012 - 14:27:38 ---A- . (...) -- C:\WINDOWS\wiadebug.log [159]
O44 - LFC:[MD5.C00E85BE7056ECB527139AEAAD9475A3] - 16/01/2012 - 14:27:36 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50]
O44 - LFC:[MD5.E9DEE22A613BDBD76FBF1F4D5DA45D7B] - 16/01/2012 - 14:27:01 ---A- . (...) -- C:\WINDOWS\system32\bscs.ini [1036]
O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 16/01/2012 - 14:23:05 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 16/01/2012 - 14:23:02 ---A- . (...) -- C:\WINDOWS\MEMORY.DMP [0]
O44 - LFC:[MD5.10AD23149BC7262CB3DF45C951414532] - 16/01/2012 - 14:23:00 ---A- . (...) -- C:\aaw7boot.log [99737]
O44 - LFC:[MD5.18BC0E6E0D9FB46D40FA4EEA83535C5A] - 16/01/2012 - 14:21:51 ---A- . (...) -- C:\RCX34.tmp [266240]
O44 - LFC:[MD5.18BC0E6E0D9FB46D40FA4EEA83535C5A] - 16/01/2012 - 14:21:28 ---A- . (...) -- C:\RCX33.tmp [266240]
O44 - LFC:[MD5.18BC0E6E0D9FB46D40FA4EEA83535C5A] - 16/01/2012 - 14:21:10 ---A- . (...) -- C:\RCX32.tmp [266240]
O44 - LFC:[MD5.CB17A47D090938A02DACB066D6D5A124] - 16/01/2012 - 12:18:51 ---A- . (...) -- C:\WINDOWS\system32\rp_rules.dat [44]
O44 - LFC:[MD5.8A3D5B46FF8C9CED46304F1EBB5F9AFE] - 16/01/2012 - 12:18:51 ---A- . (...) -- C:\WINDOWS\system32\rp_stats.dat [64]
O44 - LFC:[MD5.AF8BDB7460655A7CCA45E124D1D54220] - 16/01/2012 - 12:18:35 ---A- . (...) -- C:\WINDOWS\system32\LOCALDEVICE.INI [107]
O44 - LFC:[MD5.CF0800A477B8A094D942F20C7E9D4C43] - 16/01/2012 - 12:18:35 ---A- . (...) -- C:\WINDOWS\system32\LOCALSERVICE.INI [5324]
O44 - LFC:[MD5.85DA006A105E4E6B9CBB98457C2CD94F] - 16/01/2012 - 01:11:10 ---A- . (...) -- C:\WINDOWS\system32\REMOTEDEVICE.INI [134]
O44 - LFC:[MD5.9BB67249AB98F34C838C024FD657E7A3] - 16/01/2012 - 00:22:50 ---A- . (...) -- C:\WINDOWS\system32\SHORTCUT.INI [4470]
O44 - LFC:[MD5.8B999E1D1CC22CFD2D3F3C8C9A0E26F2] - 16/01/2012 - 00:01:00 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32260]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 15/01/2012 - 12:23:45 -SHA- . (...) -- C:\WINDOWS\system32\dds_log_trash.cmd [0]
O44 - LFC:[MD5.D68E165C3123ABA3B1282EDDB4213BD8] - 13/01/2012 - 20:16:18 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys [38224]
O44 - LFC:[MD5.836E0E09CA9869BE7EB39EF2CF3602C7] - 13/01/2012 - 20:16:06 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20952]
O44 - LFC:[MD5.EC08D1625F5C6CF2A57B79EB35186F8C] - 13/01/2012 - 20:14:27 ---A- . (.GRISOFT, s.r.o. - AVG7 Clean Driver.) -- C:\WINDOWS\system32\drivers\AvgArCln.sys [3968]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 13/01/2012 - 20:02:49 ---A- . (...) -- C:\WINDOWS\RTacDbg.txt [0]
O44 - LFC:[MD5.5866F5AC5FA90002CC1275789B715A60] - 13/01/2012 - 16:19:24 ---A- . (...) -- C:\WINDOWS\NeroDigital.ini [116]
O44 - LFC:[MD5.8B664568604EAC9C0C2D70EE32353130] - 12/01/2012 - 18:15:13 ---A- . (...) -- C:\WINDOWS\system32\FNTCACHE.DAT [411880]
O44 - LFC:[MD5.52103D2D0B5ED539EDA6BE3F92BDC4B4] - 12/01/2012 - 13:44:03 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [13646]
O44 - LFC:[MD5.9501CE82389A3B51720E7B8A4B614216] - 09/01/2012 - 18:08:20 ---A- . (...) -- C:\WINDOWS\system32\CONFIG.NT [3121]
O44 - LFC:[MD5.6DBA8CA5D784A6D869DCBCD0E65A9C7C] - 06/01/2012 - 11:34:34 ---A- . (...) -- C:\WINDOWS\system32\d3d9caps.dat [664]
O44 - LFC:[MD5.F40CB663AB4584E2759C3A3BAE0986B1] - 05/01/2012 - 00:11:25 ---A- . (...) -- C:\WINDOWS\system32\comnum [34]
O44 - LFC:[MD5.7C1729EB259A4D908227C449F470F250] - 04/01/2012 - 19:17:42 ---A- . (...) -- C:\WINDOWS\Secman.ini [177]
O44 - LFC:[MD5.72827D5D38D38A46231CB38E1F3FC5E3] - 04/01/2012 - 18:59:26 ---A- . (.InstallShield Corporation, Inc. - InstallShield unInstaller.) -- C:\WINDOWS\uninst.exe [299520]
O44 - LFC:[MD5.D4761D8CDB9DEF6C39253C4166C610A7] - 04/01/2012 - 13:26:38 ---A- . (...) -- C:\WINDOWS\ODBC.INI [385]
O44 - LFC:[MD5.0650B2F7B1FCD731CC3EE0DFE2C1EDA2] - 02/01/2012 - 01:25:21 ---A- . (...) -- C:\WINDOWS\system32\PerfStringBackup.INI [1079890]
O44 - LFC:[MD5.FE47183E85AA55FAD919FAE706BE5EE5] - 02/01/2012 - 01:25:21 ---A- . (...) -- C:\WINDOWS\system32\perfc009.dat [71964]
O44 - LFC:[MD5.796361FAE6DF464142DF7CAD794430DD] - 02/01/2012 - 01:25:21 ---A- . (...) -- C:\WINDOWS\system32\perfc00C.dat [85568]
O44 - LFC:[MD5.8C14FCBFBBA8E6ABD4FF9F68DD91258C] - 02/01/2012 - 01:25:21 ---A- . (...) -- C:\WINDOWS\system32\perfh009.dat [442028]
O44 - LFC:[MD5.41335EDE69E0B305F7B6F33C6A93350B] - 02/01/2012 - 01:25:21 ---A- . (...) -- C:\WINDOWS\system32\perfh00C.dat [511528]
O44 - LFC:[MD5.A4001C78F2806662B3BD91ACB44E6330] - 30/12/2011 - 21:34:08 ---A- . (...) -- C:\WINDOWS\system32\initdebug.nfo [45]
O44 - LFC:[MD5.005A938091A35F9A158787B9D4BF74B6] - 30/12/2011 - 21:09:55 ---A- . (.NVIDIA Corporation - NVIDIA Chinese (Traditional) language resou.) -- C:\WINDOWS\system32\nvrszht.dll [126976]
O44 - LFC:[MD5.71F41A752821C5173F85E9B7388204EB] - 30/12/2011 - 21:09:55 ---A- . (.NVIDIA Corporation - NVIDIA Simplified Chinese language resource.) -- C:\WINDOWS\system32\nvrszhc.dll [229376]
O44 - LFC:[MD5.C67B96EF570F5A1B7CE034CF8445E77B] - 30/12/2011 - 21:09:55 ---A- . (.NVIDIA Corporation - NVIDIA Turkish language resource library.) -- C:\WINDOWS\system32\nvrstr.dll [258048]
O44 - LFC:[MD5.894CD4E1876D1995E653C0722F47859A] - 30/12/2011 - 21:09:54 ---A- . (.NVIDIA Corporation - NVIDIA Iberian Portuguese language resource.) -- C:\WINDOWS\system32\nvrspt.dll [274432]
O44 - LFC:[MD5.32F56F3E713EE66E927F2BC8C7D67A5F] - 30/12/2011 - 21:09:54 ---A- . (.NVIDIA Corporation - NVIDIA Portuguese (Brazilian) language reso.) -- C:\WINDOWS\system32\nvrsptb.dll [270336]
O44 - LFC:[MD5.5DE6C3ECC8FB2AECD064D96B659A8729] - 30/12/2011 - 21:09:54 ---A- . (.NVIDIA Corporation - NVIDIA Russian language resource library.) -- C:\WINDOWS\system32\nvrsru.dll [270336]
O44 - LFC:[MD5.11BC2649CC558ED5FFA511B71E20E9AD] - 30/12/2011 - 21:09:54 ---A- . (.NVIDIA Corporation - NVIDIA Slovak language resource library.) -- C:\WINDOWS\system32\nvrssk.dll [258048]
O44 - LFC:[MD5.2BF9D6B2F16A63760A12EBACDCA13EC7] - 30/12/2011 - 21:09:54 ---A- . (.NVIDIA Corporation - NVIDIA Slovenian language resource library.) -- C:\WINDOWS\system32\nvrssl.dll [258048]
O44 - LFC:[MD5.C417C36990AE30079743B92B631099CF] - 30/12/2011 - 21:09:54 ---A- . (.NVIDIA Corporation - NVIDIA Swedish language resource library.) -- C:\WINDOWS\system32\nvrssv.dll [253952]
O44 - LFC:[MD5.FBC7C83A4659C8BFA89EF59A3917D9AB] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Dutch language resource library.) -- C:\WINDOWS\system32\nvrsnl.dll [274432]
O44 - LFC:[MD5.A2F4DEEE637DBEEF23E06D06E8DED3A8] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Hungarian language resource library.) -- C:\WINDOWS\system32\nvrshu.dll [262144]
O44 - LFC:[MD5.333F6F9A6DB61B9CE4207F2EDADB2A22] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Italian language resource library.) -- C:\WINDOWS\system32\nvrsit.dll [282624]
O44 - LFC:[MD5.C97A47F3057EF80306C8D28B0A77A4F8] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Japanese language resource library.) -- C:\WINDOWS\system32\nvrsja.dll [270336]
O44 - LFC:[MD5.3A8B5C19A9730B5DFAEE3FBC08B35DA4] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Korean language resource library.) -- C:\WINDOWS\system32\nvrsko.dll [266240]
O44 - LFC:[MD5.AC1FDD8D540BBD960D91981AE962F0D1] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Norwegian language resource library.) -- C:\WINDOWS\system32\nvrsno.dll [253952]
O44 - LFC:[MD5.9D05638E50D4234959A6CF7EAFD92081] - 30/12/2011 - 21:09:53 ---A- . (.NVIDIA Corporation - NVIDIA Polish language resource library.) -- C:\WINDOWS\system32\nvrspl.dll [258048]
O44 - LFC:[MD5.ABE8DC279639C4C631B1E1EFF689E0A0] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Arabic language resource library.) -- C:\WINDOWS\system32\nvrsar.dll [335872]
O44 - LFC:[MD5.0B13FD431ED8AD66F4482B3D33F54986] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Czech language resource library.) -- C:\WINDOWS\system32\nvrscs.dll [249856]
O44 - LFC:[MD5.E2A8AFCA9EB4B16BBF85C2D321FB9F3C] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Danish language resource library.) -- C:\WINDOWS\system32\nvrsda.dll [253952]
O44 - LFC:[MD5.45E739265BB8BD06C82AC48E1724AC08] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Finnish language resource library.) -- C:\WINDOWS\system32\nvrsfi.dll [249856]
O44 - LFC:[MD5.3BE219C1796812EF3A95C7F737399A09] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA French language resource library.) -- C:\WINDOWS\system32\nvrsfr.dll [286720]
O44 - LFC:[MD5.D21F6D7A5646B7BEAB6052B3287E3AF8] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA German language resource library.) -- C:\WINDOWS\system32\nvrsde.dll [278528]
O44 - LFC:[MD5.872C1E08C7A5D383138D4C9516212BC9] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Greek language resource library.) -- C:\WINDOWS\system32\nvrsel.dll [282624]
O44 - LFC:[MD5.643483D27F1B4B3247F62D6F4AAABB02] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Hebrew language resource library.) -- C:\WINDOWS\system32\nvrshe.dll [331776]
O44 - LFC:[MD5.0AC66FC100AA1CD4A866EB204C311CC7] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Latin American Spanish language reso.) -- C:\WINDOWS\system32\nvrsesm.dll [274432]
O44 - LFC:[MD5.6F1015A010C6738C9A30E38441070777] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA Spanish language resource library.) -- C:\WINDOWS\system32\nvrses.dll [282624]
O44 - LFC:[MD5.02D76F02E48315B52C61DD0B450219F0] - 30/12/2011 - 21:09:52 ---A- . (.NVIDIA Corporation - NVIDIA UK English language resource library.) -- C:\WINDOWS\system32\nvrseng.dll [249856]
O44 - LFC:[MD5.1CE1460973F483DEF2EBA8D1E58D7072] - 30/12/2011 - 21:09:05 ---A- . (.NVIDIA Corporation - Easy daemon API.) -- C:\WINDOWS\system32\easyupdatusapiu.dll [602432]
O44 - LFC:[MD5.6D7BC2C1B77E77F6FF4A2A780E6FC317] - 30/12/2011 - 21:08:43 ---A- . (...) -- C:\WINDOWS\system32\nvdrsdb1.bin [285176]
O44 - LFC:[MD5.55A54008AD1BA589AA210D2629C1DF41] - 30/12/2011 - 21:08:43 ---A- . (...) -- C:\WINDOWS\system32\nvdrssel.bin [1]
O44 - LFC:[MD5.D72F22D380553E395C8D0D99C21948B1] - 30/12/2011 - 21:08:36 ---A- . (...) -- C:\WINDOWS\system32\nvdrsdb0.bin [285176]
O44 - LFC:[MD5.13CF5529FCE074A1E598585809A900A0] - 30/12/2011 - 21:00:08 ---A- . (.Oracle Corporation - Java™ Web Start Launcher.) -- C:\WINDOWS\system32\javaws.exe [223112]
O44 - LFC:[MD5.0E13AC887BFC49E1E2AE672D94E629C2] - 30/12/2011 - 21:00:08 ---A- . (.Oracle Corporation - NPRuntime Script Plug-in Library for Java(T.) -- C:\WINDOWS\system32\npdeployJava1.dll [637848]
O44 - LFC:[MD5.BDD6664E0D9D9A5550038F33637265EA] - 30/12/2011 - 20:59:35 ---A- . (.Oracle Corporation - Java™ Platform SE binary.) -- C:\WINDOWS\system32\javaw.exe [173960]
O44 - LFC:[MD5.078C041AC65593A812F5B2A10F53C4E8] - 30/12/2011 - 20:59:34 ---A- . (.Oracle Corporation - Java™ Platform SE binary.) -- C:\WINDOWS\system32\java.exe [173960]
O44 - LFC:[MD5.8F71A250C4A8257EE0CDA01F6791B3E9] - 30/12/2011 - 19:12:23 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl [414368]
O44 - LFC:[MD5.9C24ED831DDFA8319382B2BFD9691AA9] - 30/12/2011 - 17:13:15 ---A- . (.Creative Labs - OpenAL32.) -- C:\WINDOWS\system32\wrap_oal.dll [413696]
O44 - LFC:[MD5.CE0CDC5459EAA1D574AF781DDB8F2685] - 30/12/2011 - 17:13:15 ---A- . (.Portions © Creative Labs Inc. and NVIDIA - Standard OpenAL™ Implementation.) -- C:\WINDOWS\system32\OpenAL32.dll [110592]
O44 - LFC:[MD5.0C3B2A9C4BD2DD9A6C2E4084314DD719] - 29/12/2011 - 00:57:26 ---A- . (.AnchorFree Inc - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\system32\drivers\taphss.sys [32768]
O44 - LFC:[MD5.87E5AAE1AA9431EF1DDEDC46D2145BDB] - 24/12/2011 - 12:32:02 ---A- . (...) -- C:\WINDOWS\0 [32]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 24/12/2011 - 12:30:02 ---A- . (...) -- C:\WINDOWS\system32\0 [0]
O44 - LFC:[MD5.5B1078D9E27DF63656C39449492AE3E9] - 23/12/2011 - 16:22:36 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB Ethernet Emul.) -- C:\WINDOWS\system32\drivers\s0017cr.sys [10792]
O44 - LFC:[MD5.DF5E7360A0AFA5956BF75DA683D0679F] - 23/12/2011 - 16:22:35 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB Ethernet Emul.) -- C:\WINDOWS\system32\drivers\s0017unic.sys [109736]
O44 - LFC:[MD5.9814E6BACC06D2526CD52981C7EEEDF0] - 23/12/2011 - 16:22:34 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC Device Ma.) -- C:\WINDOWS\system32\drivers\s0017mgmt.sys [108328]
O44 - LFC:[MD5.F87C3422E84B2FB1B43E0A26247AD5A5] - 23/12/2011 - 16:22:34 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC OBEX Inte.) -- C:\WINDOWS\system32\drivers\s0017obex.sys [104616]
O44 - LFC:[MD5.2C62CD58225973F26682CD4F783DDEDE] - 23/12/2011 - 16:22:32 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB Ethernet Emul.) -- C:\WINDOWS\system32\drivers\s0017nd5.sys [26024]
O44 - LFC:[MD5.7258F550419D543BC5C8E80C578A5D54] - 23/12/2011 - 16:22:31 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC Modem Fil.) -- C:\WINDOWS\system32\drivers\s0017mdfl.sys [15016]
O44 - LFC:[MD5.1DE4F6607FEB17A15DBD4F1B139E6D2F] - 23/12/2011 - 16:22:31 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC Modem WDM.) -- C:\WINDOWS\system32\drivers\s0017mdm.sys [114600]
O44 - LFC:[MD5.3FA76516F21FC7CF04689834B2B7325E] - 23/12/2011 - 16:22:31 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017cm.sys [12200]
O44 - LFC:[MD5.3FA76516F21FC7CF04689834B2B7325E] - 23/12/2011 - 16:22:31 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017cmnt.sys [12200]
O44 - LFC:[MD5.594FF5620661D1386475406E78CB6F2F] - 23/12/2011 - 16:22:29 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 Driver.) -- C:\WINDOWS\system32\drivers\s0017bus.sys [86824]
O44 - LFC:[MD5.985E0A43CF844A573FF254C847AD0BA9] - 23/12/2011 - 16:22:29 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017wh.sys [12200]
O44 - LFC:[MD5.985E0A43CF844A573FF254C847AD0BA9] - 23/12/2011 - 16:22:29 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017whnt.sys [12200]
O44 - LFC:[MD5.93CAEC06D6F156AA28DE23465FB156FC] - 23/12/2011 - 13:22:51 ---A- . (.Realtek Semiconductor Corp. - ALCFDRTM.) -- C:\WINDOWS\ALCFDRTM.VER [60416]
O44 - LFC:[MD5.96A478EDFB1FBF1FC663BEB09B4175A8] - 19/12/2011 - 14:11:58 ---A- . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\system32\drivers\VBoxUSBMon.sys [91440]
O44 - LFC:[MD5.FA85E26C796C8B447B08848DB1CE8474] - 08/10/2011 - 05:50:00 ---A- . (...) -- C:\WINDOWS\system32\nvdata.data [2130002]
O44 - LFC:[MD5.15EE1D8DAE5DB9CEC3DA6DC28B503661] - 08/10/2011 - 05:50:00 ---A- . (...) -- C:\WINDOWS\system32\nvinfo.pb [3250]
O44 - LFC:[MD5.EDD400CC92C6D43F98D3D3AFC97C2559] - 01/12/2010 - 09:31:18 ---A- . (...) -- C:\WINDOWS\system32\ISSRemoveSP.exe [451072]
O44 - LFC:[MD5.E192F8DC396EF27E479A0476E4A38433] - 14/09/1999 - 14:21:00 ---A- . (...) -- C:\WINDOWS\system32\RegOnline-e.exe [175131]
O44 - LFC:[MD5.B9D7FADD5D36D1846045D5E850E5E43A] - 14/09/1999 - 14:21:00 ---A- . (...) -- C:\WINDOWS\system32\RegOnline.exe [156288]
O44 - LFC:[MD5.6497EA83E59C8A513DD09368DAC7BF7D] - 20/09/1999 - 09:43:58 ---A- . (...) -- C:\WINDOWS\system32\regonline.reg [150]
~ Scan Files in 00mn 13s



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.9FC3434BF3A882875E5DB51622A7429A] - 12/01/2012 - 18:20:52 ---A- - C:\WINDOWS\Prefetch\YAHOOMESSENGER.EXE-0613336C.pf
O45 - LFCP:[MD5.6ABDD83178DDD9660EC4912A58548E22] - 12/01/2012 - 20:24:59 ---A- - C:\WINDOWS\Prefetch\INITIALIZE.EXE-2316EC09.pf
O45 - LFCP:[MD5.33356296B34FCD5F34EB88224AFB5E00] - 12/01/2012 - 20:24:59 ---A- - C:\WINDOWS\Prefetch\USERINIT.EXE-0743FDA9.pf
O45 - LFCP:[MD5.25B296D360094D34228B32B33385D0D6] - 12/01/2012 - 20:25:00 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-5868764E.pf
O45 - LFCP:[MD5.0E46E70B24863859E5F8807BF19D4A7A] - 12/01/2012 - 20:26:11 ---A- - C:\WINDOWS\Prefetch\SF.BIN-1DD87B58.pf
O45 - LFCP:[MD5.27D834ACAFB719D769940BE124D0B9DF] - 12/01/2012 - 20:34:24 ---A- - C:\WINDOWS\Prefetch\REGSEEKER.EXE-1B858DD2.pf
O45 - LFCP:[MD5.6337C829F042251F1BD30941AB3210B4] - 13/01/2012 - 00:18:22 ---A- - C:\WINDOWS\Prefetch\MSNMSGR.EXE-0EBDBC56.pf
O45 - LFCP:[MD5.13C0BBAC9D7E41F450A05939A055D31E] - 13/01/2012 - 13:01:57 ---A- - C:\WINDOWS\Prefetch\JAVAWS.EXE-24608AEB.pf
O45 - LFCP:[MD5.5774F3DF33418677A4A0EC16F119D847] - 13/01/2012 - 13:02:18 ---A- - C:\WINDOWS\Prefetch\JAVAW.EXE-0D86ABB1.pf
O45 - LFCP:[MD5.0D504D90479EE200FA378A924D86E728] - 13/01/2012 - 15:48:10 ---A- - C:\WINDOWS\Prefetch\WISEREGCLEANER.EXE-26C9622F.pf
O45 - LFCP:[MD5.9789D6B08A311C36EAF6278D7526AC8D] - 13/01/2012 - 16:07:46 ---A- - C:\WINDOWS\Prefetch\MANYCAM.EXE-34847744.pf
O45 - LFCP:[MD5.02C886653BB1EDB0BFBB5FFDE9E28283] - 13/01/2012 - 16:07:50 ---A- - C:\WINDOWS\Prefetch\STARTFX.EXE-1F51B62D.pf
O45 - LFCP:[MD5.C30D8476ED08B1F77EBABDD79C41733B] - 13/01/2012 - 16:10:25 ---A- - C:\WINDOWS\Prefetch\LF30.EXE-00FD0143.pf
O45 - LFCP:[MD5.48FB18CF46FE119426BA2ECE270ED2AC] - 13/01/2012 - 16:10:38 ---A- - C:\WINDOWS\Prefetch\SF.BIN-0A384AE2.pf
O45 - LFCP:[MD5.BB70BDC9BC28CFC0518EC8E745946DD4] - 13/01/2012 - 16:10:56 ---A- - C:\WINDOWS\Prefetch\LFSERVICE.EXE-089E8645.pf
O45 - LFCP:[MD5.A12BE0055968B78D864EB957B09390AF] - 13/01/2012 - 16:19:40 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-66EC1293.pf
O45 - LFCP:[MD5.D965396D13F11195493E6535FD0AA783] - 13/01/2012 - 17:08:44 ---A- - C:\WINDOWS\Prefetch\PLUGIN-CONTAINER.EXE-0EB365FC.pf
O45 - LFCP:[MD5.C5DDACDBEC2A41F13F4F6A60F1DF2819] - 13/01/2012 - 18:27:43 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-5ACE91DC.pf
O45 - LFCP:[MD5.422A29A0F39D3295018803772C1944E8] - 13/01/2012 - 18:27:47 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-7183D8DA.pf
O45 - LFCP:[MD5.D130886B71DC26373A3C852A04C46EFA] - 13/01/2012 - 18:27:59 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-3B5E532E.pf
O45 - LFCP:[MD5.E1139F7A810A50A7DB9D96174447E0D0] - 13/01/2012 - 18:28:00 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4371932F.pf
O45 - LFCP:[MD5.07187EB19C5C9883DE8F0C7D3B14400C] - 13/01/2012 - 19:02:16 ---A- - C:\WINDOWS\Prefetch\Layout.ini
O45 - LFCP:[MD5.B40A52A988737FEA1D38B0B691DAD26F] - 13/01/2012 - 19:02:29 ---A- - C:\WINDOWS\Prefetch\DEFRAG.EXE-2858C7E2.pf
O45 - LFCP:[MD5.4D5A5B4F57C8289480532BC00A8ACB4E] - 13/01/2012 - 19:02:29 ---A- - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-38C3807C.pf
O45 - LFCP:[MD5.67CA1FAA9BBC4EC550C297A1029ADE75] - 13/01/2012 - 19:20:05 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-6D8B694E.pf
O45 - LFCP:[MD5.3A963087A1CE03F8C6A7C6C8B87B79B0] - 13/01/2012 - 19:20:55 ---A- - C:\WINDOWS\Prefetch\ACRORD32INFO.EXE-10255AA7.pf
O45 - LFCP:[MD5.47CCA771040727F2AD64F311D1A50BE1] - 13/01/2012 - 19:23:21 ---A- - C:\WINDOWS\Prefetch\ACROBAT.EXE-1E8129FA.pf
O45 - LFCP:[MD5.5D8C5D3CE4124238ACB6455257E2F209] - 13/01/2012 - 19:23:47 ---A- - C:\WINDOWS\Prefetch\PDAPP.EXE-1E507A1E.pf
O45 - LFCP:[MD5.245520D73112B6B27878889A3202B696] - 13/01/2012 - 19:24:11 ---A- - C:\WINDOWS\Prefetch\EMULE.EXE-01299854.pf
O45 - LFCP:[MD5.255F6C1A5C3914E98967FA7C5C4DF994] - 13/01/2012 - 19:25:53 ---A- - C:\WINDOWS\Prefetch\ACRORD32.EXE-1CE22EA3.pf
O45 - LFCP:[MD5.236D8514C160BA7F1A5C937022BD225E] - 13/01/2012 - 19:27:12 ---A- - C:\WINDOWS\Prefetch\MDDYASUPL1.EXE-2A1F10B9.pf
O45 - LFCP:[MD5.CED5A0C3111E0AEA4FA8A33EF5794162] - 13/01/2012 - 19:27:13 ---A- - C:\WINDOWS\Prefetch\ADOBE ACROBAT X PRO 10.0.0 KE-01801737.pf
O45 - LFCP:[MD5.5C3FE642D3C0A045664FD09A84AA159D] - 13/01/2012 - 19:27:31 ---A- - C:\WINDOWS\Prefetch\2EAJ.EXE-126A323B.pf
O45 - LFCP:[MD5.15E3EE100A015A5F3DE5041F407868F8] - 13/01/2012 - 19:28:11 ---A- - C:\WINDOWS\Prefetch\4EAJ.EXE-021C9032.pf
O45 - LFCP:[MD5.615261B59A4150F64B2A0502C4010AC3] - 13/01/2012 - 19:28:12 ---A- - C:\WINDOWS\Prefetch\3EAJ.EXE-15A693FF.pf
O45 - LFCP:[MD5.2B21D9CAED22A98A198687A3D6097CED] - 13/01/2012 - 20:02:29 ---A- - C:\WINDOWS\Prefetch\CUEGOJ.EXE-1411E6AA.pf
O45 - LFCP:[MD5.213E9CFFE291B58FA92DCD63B03D7259] - 13/01/2012 - 20:03:17 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-5F056E79.pf
O45 - LFCP:[MD5.69EC345157ADDE6781FCAA182F401CA3] - 13/01/2012 - 20:04:43 ---A- - C:\WINDOWS\Prefetch\B41NQ7F4.EXE-1A792A1D.pf
O45 - LFCP:[MD5.31498E4E7F064ED9E9A7690E5F4C8645] - 13/01/2012 - 20:04:44 ---A- - C:\WINDOWS\Prefetch\WOAXIL.COM-11F3F266.pf
O45 - LFCP:[MD5.AFE0CD45AA13435955331CA3362CB442] - 13/01/2012 - 20:04:56 ---A- - C:\WINDOWS\Prefetch\2BUJ.EXE-04DC7890.pf
O45 - LFCP:[MD5.A6285999B8E56FF9F40A9E905FC8CBCC] - 13/01/2012 - 20:04:59 ---A- - C:\WINDOWS\Prefetch\3BUJ.EXE-20426321.pf
O45 - LFCP:[MD5.0FE3A087DBD1DB607D4D37A5F45811A7] - 13/01/2012 - 20:05:04 ---A- - C:\WINDOWS\Prefetch\4BUJ.EXE-07CE6319.pf
O45 - LFCP:[MD5.A4DE984C21AE4D31E5477BE071855531] - 13/01/2012 - 20:05:04 ---A- - C:\WINDOWS\Prefetch\X-05CCB265.pf
O45 - LFCP:[MD5.CC0BEC118AE4E3E5C5B6D882AF89490D] - 13/01/2012 - 20:05:50 ---A- - C:\WINDOWS\Prefetch\SF.BIN-1FD21FD2.pf
O45 - LFCP:[MD5.595FD3A1E4F6609AD0109BEB602CEB2E] - 13/01/2012 - 20:06:04 ---A- - C:\WINDOWS\Prefetch\SDUPDATE.EXE-2A88E3BA.pf
O45 - LFCP:[MD5.4C0A3325C1F58BE069B7F6FC99D4A992] - 13/01/2012 - 20:07:25 ---A- - C:\WINDOWS\Prefetch\POKERSTARSUPDATE.EXE-2BF79298.pf
O45 - LFCP:[MD5.FB43674A8118D41D37F955C71AC6E9A3] - 13/01/2012 - 20:08:44 ---A- - C:\WINDOWS\Prefetch\POKERSTARS.EXE-31BF2E1E.pf
O45 - LFCP:[MD5.B9FF3FE518D5C43B635E13F6A2024E0E] - 13/01/2012 - 20:11:07 ---A- - C:\WINDOWS\Prefetch\FLASHGOT.EXE-36D2A312.pf
O45 - LFCP:[MD5.2DCF1180DAC87F329C5ABEFA7063FB2C] - 13/01/2012 - 20:14:25 ---A- - C:\WINDOWS\Prefetch\AVG-ANTI-ROOTKIT_AVG_ANTI-ROO-00E51C34.pf
O45 - LFCP:[MD5.278E56B84560224906FD8C8DB78185D6] - 13/01/2012 - 20:14:27 ---A- - C:\WINDOWS\Prefetch\HU6IOONS.EXE-1F7A5535.pf
O45 - LFCP:[MD5.4774C7FA63385FE7F59A6BF09B8F130F] - 13/01/2012 - 20:15:58 ---A- - C:\WINDOWS\Prefetch\MALWAREBYTES-ANTI-MALWARE_MAL-19CB31DE.pf
O45 - LFCP:[MD5.F1AC8007167C347C292B1777244C658E] - 13/01/2012 - 20:16:06 ---A- - C:\WINDOWS\Prefetch\MALWAREBYTES-ANTI-MALWARE_MAL-11BAF485.pf
O45 - LFCP:[MD5.721D6A164A2ED8291496BF79094AE76C] - 13/01/2012 - 20:16:11 ---A- - C:\WINDOWS\Prefetch\MBAMGUI.EXE-17BFFE8F.pf
O45 - LFCP:[MD5.E72D4B7BA22E138EF8F55238B83884F4] - 13/01/2012 - 20:16:56 ---A- - C:\WINDOWS\Prefetch\REGSVR32.EXE-396DEA2C.pf
O45 - LFCP:[MD5.CD1270BD73A78DE45396CF6BA5093A39] - 13/01/2012 - 20:23:33 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4C50DFCF.pf
O45 - LFCP:[MD5.46A13665A1FE25239C00E11D923A801E] - 13/01/2012 - 20:25:31 ---A- - C:\WINDOWS\Prefetch\AVAST.SETUP-1120D71A.pf
O45 - LFCP:[MD5.700BF5B613ACAE5F53896E9AE591C91A] - 13/01/2012 - 20:27:36 ---A- - C:\WINDOWS\Prefetch\4D1.EXE-2FD77DFE.pf
O45 - LFCP:[MD5.7BA23886CAD319D4871B859CD482E001] - 13/01/2012 - 20:28:34 ---A- - C:\WINDOWS\Prefetch\REGEDIT.EXE-2AE3423E.pf
O45 - LFCP:[MD5.EB3471392C6D97A1866E3A044CF5F876] - 13/01/2012 - 20:30:22 ---A- - C:\WINDOWS\Prefetch\WSCNTFY.EXE-0B14C27D.pf
O45 - LFCP:[MD5.7DBEFC0C9B6F721D8C5256811BBB2A7A] - 13/01/2012 - 20:38:08 ---A- - C:\WINDOWS\Prefetch\AVGARKT.EXE-11059116.pf
O45 - LFCP:[MD5.7119559CDEBF1B8D7461F5F0230ECE87] - 13/01/2012 - 20:47:41 ---A- - C:\WINDOWS\Prefetch\SPYBOTSD.EXE-1702AD5F.pf
O45 - LFCP:[MD5.9072070D7F6694D6445A3E5FFF25D4F5] - 14/01/2012 - 00:46:11 ---A- - C:\WINDOWS\Prefetch\MBAM.EXE-0D37CDF0.pf
O45 - LFCP:[MD5.A60FABF9EEE20EFA90CB5A002B18035D] - 14/01/2012 - 23:12:36 ---A- - C:\WINDOWS\Prefetch\REVOUNINSTALLER.EXE-1505313E.pf
O45 - LFCP:[MD5.921CE35267378EC0389D5C33F838F7EA] - 14/01/2012 - 23:14:15 ---A- - C:\WINDOWS\Prefetch\HSSSRV.EXE-23717768.pf
O45 - LFCP:[MD5.9A51189600D42F4F13564BC6DB1754B8] - 14/01/2012 - 23:15:13 ---A- - C:\WINDOWS\Prefetch\HSSWD.EXE-08D93BED.pf
O45 - LFCP:[MD5.B4A7668558CE115BD8796333A324EFA1] - 14/01/2012 - 23:15:15 ---A- - C:\WINDOWS\Prefetch\OPENVPNAS.EXE-389EC57D.pf
O45 - LFCP:[MD5.6549FDBAC590E4F0775453E29F87F1D9] - 14/01/2012 - 23:27:54 ---A- - C:\WINDOWS\Prefetch\JV16 POWERTOOLS.EXE-0547901D.pf
O45 - LFCP:[MD5.038B3FC6C388D49D13C8480F792C7A82] - 14/01/2012 - 23:36:56 ---A- - C:\WINDOWS\Prefetch\CCLEANER.EXE-09CFC2BC.pf
O45 - LFCP:[MD5.67EF70C27E77DDB35D0723582E69875C] - 16/01/2012 - 00:12:01 ---A- - C:\WINDOWS\Prefetch\SPEEDFAN.EXE-1CEF34A2.pf
O45 - LFCP:[MD5.0B3DD1838C4969B72DD65C0F309E6AF4] - 16/01/2012 - 01:16:17 ---A- - C:\WINDOWS\Prefetch\RTLDHCP.EXE-02AEA178.pf
O45 - LFCP:[MD5.410B271FDA7799F04DD831D7A766555F] - 16/01/2012 - 01:16:23 ---A- - C:\WINDOWS\Prefetch\LOGONUI.EXE-312BE1BF.pf
O45 - LFCP:[MD5.E1B01C6B9DB388024EA90BE1F89BF35C] - 16/01/2012 - 12:15:02 ---A- - C:\WINDOWS\Prefetch\JUSCHED.EXE-0E6FA1F7.pf
O45 - LFCP:[MD5.8B25FFBD2D272F9A4ED1CB2C524E814E] - 16/01/2012 - 12:19:37 ---A- - C:\WINDOWS\Prefetch\AAWSERVICE.EXE-1942D955.pf
O45 - LFCP:[MD5.609A66E53265350282EE6F811DC15766] - 16/01/2012 - 14:11:58 ---A- - C:\WINDOWS\Prefetch\AD-AWARE.EXE-02FDAFAE.pf
O45 - LFCP:[MD5.BDD202A2E59D75396F4A333324A2AD7C] - 16/01/2012 - 14:12:05 ---A- - C:\WINDOWS\Prefetch\AUTOLAUNCH.EXE-30046F7C.pf
O45 - LFCP:[MD5.FC1698240EBC3245195C59BC27E7FD66] - 16/01/2012 - 14:13:24 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-753F1DF3.pf
O45 - LFCP:[MD5.116D74D39C6342917376BB4948916ACB] - 16/01/2012 - 14:21:39 ---A- - C:\WINDOWS\Prefetch\EXPLORER.EXE-02121B1A.pf
O45 - LFCP:[MD5.0B8235F76EB07330677781750229DB98] - 16/01/2012 - 14:27:27 ---A- - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.E499035EE1C7598D9B7DED11300F8CDE] - 16/01/2012 - 14:27:27 ---A- - C:\WINDOWS\Prefetch\SPOOLSV.EXE-3A613CE3.pf
O45 - LFCP:[MD5.C0D675C086B73A62849B85F0EC434914] - 16/01/2012 - 14:27:28 ---A- - C:\WINDOWS\Prefetch\APPSERVICES.EXE-0AC659C8.pf
O45 - LFCP:[MD5.FD50374313F6AB0C9881CA9D23AE9AA5] - 16/01/2012 - 14:27:28 ---A- - C:\WINDOWS\Prefetch\BLUESOLEILCS.EXE-264A70E9.pf
O45 - LFCP:[MD5.75C4C42B9D8AC8709B1955CDC86A663A] - 16/01/2012 - 14:27:28 ---A- - C:\WINDOWS\Prefetch\NVSVC32.EXE-0756FC6B.pf
O45 - LFCP:[MD5.33E7F02EB0686F65A77E61A7AD17ABA7] - 16/01/2012 - 14:27:29 ---A- - C:\WINDOWS\Prefetch\JQS.EXE-31B60334.pf
O45 - LFCP:[MD5.D0B6295180B9B76DA1BDBF81C148A6C8] - 16/01/2012 - 14:27:29 ---A- - C:\WINDOWS\Prefetch\MDM.EXE-1C8F90CC.pf
O45 - LFCP:[MD5.8F11DCC244AF039F173EB667B8F01124] - 16/01/2012 - 14:27:29 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-41C4C933.pf
O45 - LFCP:[MD5.63F0FA47E5A58E98660EC4A33E1A51CC] - 16/01/2012 - 14:27:31 ---A- - C:\WINDOWS\Prefetch\DAEMONU.EXE-2E3B89ED.pf
O45 - LFCP:[MD5.EC10E79C86ADE7CAF55EF0CC203D62BC] - 16/01/2012 - 14:27:31 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-692A3348.pf
O45 - LFCP:[MD5.A22E179E6200AF82A2BE40DFAD71E28E] - 16/01/2012 - 14:27:31 ---A- - C:\WINDOWS\Prefetch\SUPSERV.EXE-3B914DB7.pf
O45 - LFCP:[MD5.3299860001838E85FD51E9394BFA2EBE] - 16/01/2012 - 14:27:35 ---A- - C:\WINDOWS\Prefetch\PG_CTL.EXE-15979D5F.pf
O45 - LFCP:[MD5.784A5E2B522362163E60A9F3A7BC4B56] - 16/01/2012 - 14:27:42 ---A- - C:\WINDOWS\Prefetch\PNKBSTRA.EXE-10E31BEE.pf
O45 - LFCP:[MD5.5504C32BB0844C5DBF8CF2B5387A9DBE] - 16/01/2012 - 14:27:43 ---A- - C:\WINDOWS\Prefetch\POSTGRES.EXE-12E9C268.pf
O45 - LFCP:[MD5.5E8DB6EC43DBA796516CECF0262C167B] - 16/01/2012 - 14:27:46 ---A- - C:\WINDOWS\Prefetch\YAHOOAUSERVICE.EXE-0228763B.pf
O45 - LFCP:[MD5.9A208C4215A5AC01B4498D93B849C252] - 16/01/2012 - 14:27:47 ---A- - C:\WINDOWS\Prefetch\ADSERVICE.EXE-20CF41FB.pf
O45 - LFCP:[MD5.021A685655E9365EE5DA0B6DB37B4A4C] - 16/01/2012 - 14:27:51 ---A- - C:\WINDOWS\Prefetch\WUAUCLT.EXE-1360D60A.pf
O45 - LFCP:[MD5.FE9968177259DB46B60E7390AD5D0D7C] - 16/01/2012 - 14:29:07 ---A- - C:\WINDOWS\Prefetch\COMUPDATUS.EXE-32769A2C.pf
O45 - LFCP:[MD5.2B899B66D48C9EA4A7A6C9652A79B316] - 16/01/2012 - 14:29:26 ---A- - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-0D449B4F.pf
O45 - LFCP:[MD5.9C98E3E100F4E53E435C81E69A892BEA] - 16/01/2012 - 14:30:03 ---A- - C:\WINDOWS\Prefetch\GOOGLECRASHHANDLER.EXE-34E8E471.pf
O45 - LFCP:[MD5.07211CF27984AE720E4274B170D247E4] - 16/01/2012 - 14:30:56 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-3F872CE5.pf
O45 - LFCP:[MD5.61D3E258FB91E96724E094A97D605F18] - 16/01/2012 - 14:30:59 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-5F120771.pf
O45 - LFCP:[MD5.150B6BBE1F9ACB510B58903F358684D5] - 16/01/2012 - 14:31:02 ---A- - C:\WINDOWS\Prefetch\WMIAPSRV.EXE-02740A4B.pf
O45 - LFCP:[MD5.69807AD53877C89D6BC302347765B35C] - 16/01/2012 - 14:31:04 ---A- - C:\WINDOWS\Prefetch\BSHELPCS.EXE-09AEE70F.pf
O45 - LFCP:[MD5.D5CF9B2A62BB739032234133E305837A] - 16/01/2012 - 14:31:05 ---A- - C:\WINDOWS\Prefetch\UNSECAPP.EXE-16EB9856.pf
O45 - LFCP:[MD5.8D4E1FA484E13AFFC8E3710B2906EF31] - 16/01/2012 - 14:31:14 ---A- - C:\WINDOWS\Prefetch\ALG.EXE-275708CF.pf
O45 - LFCP:[MD5.7C6ACDB2A9E0EAA40F926147B8FF8E11] - 16/01/2012 - 14:31:24 ---A- - C:\WINDOWS\Prefetch\AAWTRAY.EXE-20780BC6.pf
O45 - LFCP:[MD5.53E5D4311606C99BE5E676844D828936] - 16/01/2012 - 14:32:10 ---A- - C:\WINDOWS\Prefetch\AWSC.EXE-1F3072F8.pf
O45 - LFCP:[MD5.FBBD1E1A5347D28F12190A5FF61CB799] - 16/01/2012 - 14:32:22 ---A- - C:\WINDOWS\Prefetch\AD-AWAREADMIN.EXE-08F79ADD.pf
O45 - LFCP:[MD5.93A5BF20A6CF18EB0DE13A607B153356] - 16/01/2012 - 15:38:14 ---A- - C:\WINDOWS\Prefetch\SOUNDMAN.EXE-2979F3F4.pf
O45 - LFCP:[MD5.237C2A06545B15AEE14A9BB091D81AE7] - 16/01/2012 - 15:38:15 ---A- - C:\WINDOWS\Prefetch\AGRSMMSG.EXE-071EDC2A.pf
O45 - LFCP:[MD5.2023DC3957968284F5C91D65693AAE7E] - 16/01/2012 - 15:38:16 ---A- - C:\WINDOWS\Prefetch\V0230MON.EXE-1C6A8DD5.pf
O45 - LFCP:[MD5.7B54CA319A1F77ED5FE8D53453F131D8] - 16/01/2012 - 15:38:22 ---A- - C:\WINDOWS\Prefetch\BTTRAY.EXE-2E78B9D8.pf
O45 - LFCP:[MD5.85F433090F4270DE8316A41EF28F2715] - 16/01/2012 - 15:38:23 ---A- - C:\WINDOWS\Prefetch\NWIZ.EXE-15CFC77C.pf
O45 - LFCP:[MD5.3D0890655DE1A42385081C8252367466] - 16/01/2012 - 15:38:23 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-764DD81D.pf
O45 - LFCP:[MD5.42EB6A3D42B5A0D650D58D542F5869AB] - 16/01/2012 - 15:38:24 ---A- - C:\WINDOWS\Prefetch\AVASTUI.EXE-31808646.pf
O45 - LFCP:[MD5.14D7A8FA365B483A38428E2F74E79A52] - 16/01/2012 - 15:38:24 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-6ACD0C83.pf
O45 - LFCP:[MD5.CE466487D579FCF3094CA36584780913] - 16/01/2012 - 15:38:29 ---A- - C:\WINDOWS\Prefetch\CTFMON.EXE-05E57A5E.pf
O45 - LFCP:[MD5.A43172E7A89C097FC38B7D11D259F8A9] - 16/01/2012 - 15:38:31 ---A- - C:\WINDOWS\Prefetch\CIITEB.EXE-27943EA5.pf
O45 - LFCP:[MD5.34AF0E7E884AE84E547BC76D35757A10] - 16/01/2012 - 15:38:31 ---A- - C:\WINDOWS\Prefetch\TEATIMER.EXE-0390E8A7.pf
O45 - LFCP:[MD5.5144B707EB5B1AEFD6239393337B6D4F] - 16/01/2012 - 15:38:34 ---A- - C:\WINDOWS\Prefetch\CHRONOSXP.EXE-2E004263.pf
O45 - LFCP:[MD5.4CB223F6DBD9E50923C3A1BEC359BD01] - 16/01/2012 - 15:38:47 ---A- - C:\WINDOWS\Prefetch\RTWLAN.EXE-0E6FD18F.pf
O45 - LFCP:[MD5.43AD4956EC7365E317A757EB2DA8854C] - 16/01/2012 - 15:46:44 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4847B08D.pf
O45 - LFCP:[MD5.0E24A92362E12C2018EBBA7FA0F6DFCE] - 16/01/2012 - 16:08:05 ---A- - C:\WINDOWS\Prefetch\FIREFOX.EXE-06188867.pf
O45 - LFCP:[MD5.E542AAC66184697FAAC18D998A75A9EA] - 16/01/2012 - 17:07:38 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-6E8D4657.pf
O45 - LFCP:[MD5.DB552DD8D590C2BF90D97DA87F98E03E] - 16/01/2012 - 17:07:48 ---A- - C:\WINDOWS\Prefetch\IMAPI.EXE-201490BB.pf
O45 - LFCP:[MD5.95574885AEE0C03FC6F2EBA84D5CDD03] - 16/01/2012 - 17:18:29 ---A- - C:\WINDOWS\Prefetch\VERCLSID.EXE-28F52AD2.pf
O45 - LFCP:[MD5.759F877DC3609EE46AF7D8FA6264E3E6] - 16/01/2012 - 17:24:19 ---A- - C:\WINDOWS\Prefetch\MSCORSVW.EXE-310BC412.pf
O45 - LFCP:[MD5.DE93EBBA321C3E732C552A169B0CCB9C] - 16/01/2012 - 17:28:28 ---A- - C:\WINDOWS\Prefetch\TASKMGR.EXE-06144C13.pf
O45 - LFCP:[MD5.9AFB5DA55AC3564D07EDB2246879F4E2] - 16/01/2012 - 17:30:16 ---A- - C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-160E1F62.pf
O45 - LFCP:[MD5.C1C75C20F2C2056C1CA176CC7ECF327A] - 16/01/2012 - 17:32:06 ---A- - C:\WINDOWS\Prefetch\SF.BIN-054CBBDF.pf
O45 - LFCP:[MD5.FE14AA182D5076DE4B550B927F14230F] - 16/01/2012 - 17:32:08 ---A- - C:\WINDOWS\Prefetch\CMD.EXE-034B0549.pf
O45 - LFCP:[MD5.3A11E07A1661A7E9970769BE02047BD8] - 16/01/2012 - 17:32:14 ---A- - C:\WINDOWS\Prefetch\SVCHOST.EXE-2D5FBD18.pf
~ Scan Prefetcher in 00mn 02s



---\\ Export de clé d'application autorisée (O47)
O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export SP - "C:\Program Files\BitComet\BitComet.exe" [Enabled] .(.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe
O47 - AAKE:Key Export SP - "C:\Program Files\TrackMania Nations ESWC\TmNationsESWC.exe" [Enabled] .(...) -- C:\Program Files\TrackMania Nations ESWC\TmNationsESWC.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe" [Enabled] .(.Crytek - Far Cry.) -- C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft Games\Age of Empires III\age3.exe" [Enabled] .(.Ensemble Studios - Age of Empires 3.) -- C:\Program Files\Microsoft Games\Age of Empires III\age3.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Wolfenstein - Enemy Territory\ET.exe" [Enabled] .(...) -- C:\Program Files\Wolfenstein - Enemy Territory\ET.exe
O47 - AAKE:Key Export SP - "C:\Program Files\DelphineSoft\Moto Racer 3\MR3.EXE" [Disabled] .(.Delphine Software International - Moto Racer 3 PC.) -- C:\Program Files\DelphineSoft\Moto Racer 3\MR3.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\dpnsvr.exe" [Disabled] .(.Microsoft Corporation - Microsoft DirectPlay8 Server.) -- C:\WINDOWS\system32\dpnsvr.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\rtcshare.exe" [Enabled] .(.Microsoft Corporation - Partage de l'application RTC.) -- C:\WINDOWS\system32\rtcshare.exe
O47 - AAKE:Key Export SP - "C:\Program Files\NetMeeting\conf.exe" [Enabled] .(.Microsoft Corporation - Windows® NetMeeting®.) -- C:\Program Files\NetMeeting\conf.exe
O47 - AAKE:Key Export SP - "C:\Program Files\JoWooD\Panzer Elite Action - Dunes Of War\pea.exe" [Enabled] .(...) -- C:\Program Files\JoWooD\Panzer Elite Action - Dunes Of War\pea.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\PnkBstrA.exe" [Enabled] .(...) -- C:\WINDOWS\system32\PnkBstrA.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\PnkBstrB.exe" [Enabled] .(...) -- C:\WINDOWS\system32\PnkBstrB.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Panzer Elite Action\Panzer Elite Action\pea.exe" [Enabled] .(...) -- C:\Program Files\Panzer Elite Action\Panzer Elite Action\pea.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [Enabled] .(.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre1.6.0_03\bin\javaw.exe" [Disabled] .(.Sun Microsystems, Inc. - Java™ Platform SE binary.) -- C:\Program Files\Java\jre1.6.0_03\bin\javaw.exe
O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\SopCast.exe" [Enabled] .(.www.sopcast.com - SopCast Main Application.) -- C:\Program Files\SopCast\SopCast.exe
O47 - AAKE:Key Export SP - "C:\Program Files\TVAnts\Tvants.exe" [Enabled] .(.Zhejiang University - TVAnts.) -- C:\Program Files\TVAnts\Tvants.exe
O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\adv\SopAdver.exe" [Enabled] .(.www.sopcast.com - SopCast Adver.) -- C:\Program Files\SopCast\adv\SopAdver.exe
O47 - AAKE:Key Export SP - "C:\Program Files\SopCast\sopvod.exe" [Enabled] .(...) -- C:\Program Files\SopCast\sopvod.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Ahead\Nero ShowTime\ShowTime.exe" [Enabled] .(.Nero Software AG - Nero ShowTime.) -- C:\Program Files\Ahead\Nero ShowTime\ShowTime.exe
O47 - AAKE:Key Export SP - "C:\Program Files\SightSpeed\SightSpeed.exe" [Enabled] .(.SightSpeed Inc. - SightSpeed.) -- C:\Program Files\SightSpeed\SightSpeed.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Mozilla Firefox\firefox.exe" [Enabled] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O47 - AAKE:Key Export SP - "C:\Program Files\TmNationsForever\TmForever.exe" [Enabled] .(...) -- C:\Program Files\TmNationsForever\TmForever.exe
O47 - AAKE:Key Export SP - "C:\Program Files\TVUPlayer\TVUPlayer.exe" [Enabled] .(.TVU networks - TVUPlayer Component.) -- C:\Program Files\TVUPlayer\TVUPlayer.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Internet Explorer\iexplore.exe" [Enabled] .(.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Mozilla Thunderbird\thunderbird.exe" [Enabled] .(.Mozilla Messaging - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe
O47 - AAKE:Key Export SP - "C:\Program Files\ICQ6.5\ICQ.exe" [Enabled] .(.ICQ, LLC. - ICQ.) -- C:\Program Files\ICQ6.5\ICQ.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\bin\javaw.exe" [Enabled] .(.Sun Microsystems, Inc. - Java™ Platform SE binary.) -- C:\Program Files\Java\jre6\bin\javaw.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\java.exe" [Enabled] .(.Oracle Corporation - Java™ Platform SE binary.) -- C:\WINDOWS\system32\java.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Opera\opera.exe" [Enabled] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O47 - AAKE:Key Export SP - "C:\Program Files\eMule\emule.exe" [Enabled] .(.http://www.emule-project.net - eMule.) -- C:\Program Files\eMule\emule.exe
O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\IPCamera.exe" [Enabled] .(.Pas de propriétaire - IPCamera MFC Application.) -- C:\WINDOWS\system32\IPCamera.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" [Enabled] .(.Ubisoft - launcher Application.) -- C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
O47 - AAKE:Key Export SP - "E:\Netcam\Config.exe" [Enabled] .(...) -- E:\Netcam\Config.exe (.not file.)
O47 - AAKE:Key Export SP - "C:\Program Files\Google\Google Earth\plugin\geplugin.exe" [Enabled] .(.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\plugin\geplugin.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Google\Google Earth\client\googleearth.exe" [Enabled] .(.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" [Enabled] .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe
O47 - AAKE:Key Export SP - "C:\Program Files\VideoLAN\VLC\vlc.exe" [Enabled] .(...) -- C:\Program Files\VideoLAN\VLC\vlc.exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\F4\ClientUpdater\ClientUpdater.exe" [Enabled] .(.F4.) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\F4\ClientUpdater\Clie
O47 - AAKE:Key Export SP - "C:\Program Files\Empire of Sports\EmpireOfSports.exe" [Enabled] .(.Empire of Sports Developments Ltd - Empire of Sports.) -- C:\Program Files\Empire of Sports\EmpireOfSports.exe
O47 - AAKE:Key Export SP - "C:\Program Files\OkMap\bin\OkMap.exe" [Enabled] .(.GianPaoloSaliola - OkMap - Mapping software.) -- C:\Program Files\OkMap\bin\OkMap.exe
O47 - AAKE:Key Export SP - "C:\Program Files\DNA\btdna.exe" [Enabled] .(.BitTorrent, Inc. - DNA.) -- C:\Program Files\DNA\btdna.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Skype\Phone\Skype.exe" [Enabled] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe" [Enabled] .(...) -- C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Weezo\Apache\bin\weezoHttpd.exe" [Enabled] .(.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files\Weezo\Apache\bin\weezoHttpd.exe
O47 - AAKE:Key Export SP - "C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe" [Enabled] .(.IVT Corporation - Bluetooth Application.) -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\maconfservice.exe" [Enabled] .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\maconfservice.exe
O47 - AAKE:Key Export SP - "C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe" [Enabled] .(.Realtek Semiconductor Corp. - RtWLan ( For WinXP/2003) Application.) -- C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe
O47 - AAKE:Key Export SP - "C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RTLDHCP.exe" [Enabled] .(.Realtek - RtlDHCP.) -- C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RTLDHCP.exe
O47 - AAKE:Key Export SP - "C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe" [Enabled] .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" [Enabled] .(.Microsoft Corporation - Windows Live Sync.) -- C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe
~ Scan Keys in 00mn 08s



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Kerberos Security Package.) -- C:\WINDOWS\system32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\WINDOWS\system32\wdigest.dll
~ Scan Keys in 00mn 00s



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nm.sys . (...) -- C:\WINDOWS\system32\Drivers\nm.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)
~ Scan CSB in 00mn 00s



---\\ Image File Execution Options (IFEO) (O50)
O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d
~ Scan IFEO in 00mn 00s



---\\ MountPoints2 Shell Key (O51)
O51 - MPSK:{00fd8610-06bf-11e0-96a5-0014d16c7245}\AutoRun\command - Clé orpheline
O51 - MPSK:{026052c1-94ff-11db-a14a-806d6172696f}\AutoRun\command. (...) -- D:\ASUSACPI.exe (.not file.)
O51 - MPSK:{130e8e66-0168-11e0-96a3-0013d4bc8042}\AutoRun\command - Clé orpheline
~ Scan Keys in 00mn 00s



---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers\"MSVideo.V0230VFW"="V0230Vfw.drv" . (...) -- (.not file.)
O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech™ DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll
O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (.Ligos Corporation - Ligos Indeo® Video 3.2.) -- C:\WINDOWS\system32\ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (.Ligos Corporation - Ligos Indeo® Video 3.2.) -- C:\WINDOWS\system32\ir32_32.dll
O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax
O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Ligos Corporation - Ligos Indeo® Video 5.11.) -- C:\WINDOWS\system32\ir50_32.dll
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \Drivers32\"VIDC.I420"="i420vfw.dll" . (.www.helixcommunity.org - Helix I420 YUV Codec.) -- C:\WINDOWS\system32\i420vfw.dll
O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\WINDOWS\system32\xvidvfw.dll
O52 - TDSD: \Drivers32\"msacm.voxacm160"="vct3216.acm" . (.Voxware, Inc. - Voxware Audio Compression Manager Driver.) -- C:\WINDOWS\system32\vct3216.acm
O52 - TDSD: \Drivers32\"msacm.scg726"="scg726.acm" . (.SHARP Corporation - SHARP G.726 ACM Audio Decoder.) -- C:\WINDOWS\system32\Scg726.acm
O52 - TDSD: \Drivers32\"msacm.alf2cd"="alf2cd.acm" . (.NCT Company - NCT ALF2CD Audio CODEC.) -- C:\WINDOWS\system32\alf2cd.acm
O52 - TDSD: \Drivers32\"msacm.ac3acm"="AC3ACM.acm" . (.fccHandler - AC-3 ACM Decompressor.) -- C:\WINDOWS\system32\AC3ACM.acm
O52 - TDSD: \Drivers32\"vidc.dvsd"="mcdvd_32.dll" . (.MainConcept - MainConcept DV Codec.) -- C:\WINDOWS\system32\mcdvd_32.dll
O52 - TDSD: \Drivers32\"vidc.asv2"="asusasv2.dll" . (...) -- (.not file.)
O52 - TDSD: \Drivers32\"vidc.yv12"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\WINDOWS\system32\yv12vfw.dll
O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm
O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® Audio Software" . (.Ligos Corporation - Indeo® Audio Software.) -- C:\WINDOWS\system32\iac25_32.ax
O52 - TDSD: \drivers.desc\"ir50_32.dll"="Ligos Indeo® Video 5.11" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm
O52 - TDSD: \drivers.desc\"mpg4c32.dll"="MS MPEG-4 v1,2,3 driver 4.1.0.3927" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"ir41_32.ax"="Indeo® Video Interactive R4.5" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"iyvu9_32.dll"="Indeo® Video RAW YVU9" . (...) -- C:\WINDOWS\system32\iyvu9_32.dll
O52 - TDSD: \drivers.desc\"ir32_32.dll"="Indeo® Video R3.2" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\WINDOWS\system32\xvidvfw.dll
O52 - TDSD: \drivers.desc\"vct3216.acm"="Voxware Compression Toolkit" . (.Voxware, Inc. - Voxware Audio Compression Manager Driver.) -- C:\WINDOWS\system32\vct3216.acm
O52 - TDSD: \drivers.desc\"scg726.acm"="Sharp G.726 Audio Decoder" . (...) -- (.not file.)
O52 - TDSD: \drivers.desc\"alf2cd.acm"="alf2cd.acm" . (.NCT Company - NCT ALF2CD Audio CODEC.) -- C:\WINDOWS\system32\alf2cd.acm
O52 - TDSD: \drivers.desc\"AC3ACM.acm"="AC-3 ACM Decompressor" . (.fccHandler - AC-3 ACM Decompressor.) -- C:\WINDOWS\system32\AC3ACM.acm
O52 - TDSD: \drivers.desc\"mcdvd_32.dll"="mcdvd_32.dll" . (.MainConcept - MainConcept DV Codec.) -- C:\WINDOWS\system32\mcdvd_32.dll
O52 - TDSD: \drivers.desc\"asusasv2.dll"="ASUS ASV2 CODEC" . (...) -- (.not file.)
~ Scan Keys in 00mn 01s



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\AVFX Engine [Key] . (.Creative Technology Ltd. - Start Advanced Video FX Engine Application.) -- C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
O53 - SMSR:HKLM\...\startupreg\BJCFD [Key] . (...) -- C:\Program Files\BroadJump\Client Foundation\CFD.exe
O53 - SMSR:HKLM\...\startupreg\boincmgr [Key] . (.Space Sciences Laboratory - BOINC Manager for Windows.) -- C:\Program Files\BOINC\boincmgr.exe
O53 - SMSR:HKLM\...\startupreg\boinctray [Key] . (.Space Sciences Laboratory - BOINC System Tray for Windows.) -- C:\Program Files\BOINC\boinctray.exe
O53 - SMSR:HKLM\...\startupreg\CanonMyPrinter [Key] . (.CANON INC. - Canon My Printer.) -- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
O53 - SMSR:HKLM\...\startupreg\CanonSolutionMenu [Key] . (.CANON INC. - CNSLMAIN.) -- C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe
O53 - SMSR:HKLM\...\startupreg\Creative Live! Cam Manager [Key] . (.Creative Technology Ltd. - Live! Cam Manager Application.) -- C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools [Key] . (.DT Soft Ltd. - Virtual DAEMON Manager.) -- C:\Program Files\DAEMON Tools\daemon.exe
O53 - SMSR:HKLM\...\startupreg\EssentialPIM [Key] . (...) -- C:\Program Files\EssentialPIM\EssentialPIM.exe
O53 - SMSR:HKLM\...\startupreg\Google Desktop Search [Key] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O53 - SMSR:HKLM\...\startupreg\ICQ [Key] . (.ICQ, LLC. - ICQ.) -- C:\Program Files\ICQ6.5\ICQ.exe
O53 - SMSR:HKLM\...\startupreg\IJNetworkScanUtility [Key] . (.CANON INC. - Canon IJ Network Scan Utility.) -- C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
O53 - SMSR:HKLM\...\startupreg\LightScribe Control Panel [Key] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe
O53 - SMSR:HKLM\...\startupreg\Messenger (Yahoo!) [Key] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files\Yahoo!\MESSEN~1\YahooMessenger.exe
O53 - SMSR:HKLM\...\startupreg\Motive SmartBridge [Key] . (.Motive Communications, Inc. - Motive SmartBridge.) -- C:\Program Files\Club-Internet\Le Compagnon Club\SmartBridge\MotiveSB.exe
O53 - SMSR:HKLM\...\startupreg\MSMSGS [Key] . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe
O53 - SMSR:HKLM\...\startupreg\NeroFilterCheck [Key] . (.Ahead Software Gmbh - NeroCheck.) -- C:\WINDOWS\system32\NeroCheck.exe
O53 - SMSR:HKLM\...\startupreg\NotebookHardwareControl [Key] . (.http://www.pbus-167.com - Notebook Hardware Control.) -- C:\Program Files\Notebook Hardware Control\nhc.exe
O53 - SMSR:HKLM\...\startupreg\PeerGuardian [Key] . (.Methlabs - PeerGuardian 2.) -- C:\Program Files\PeerGuardian2\pg2.exe
O53 - SMSR:HKLM\...\startupreg\Sony Ericsson PC Suite [Key] . (.Sony Ericsson Mobile Communications AB - Sony Ericsson PC Suite.) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
O53 - SMSR:HKLM\...\startupreg\Vidalia [Key] . (...) -- C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe
O53 - SMSR:HKLM\...\startupreg\Yahoo! Pager [Key] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
~ Scan SMSR Keys in 00mn 02s



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
~ Scan Keys in 00mn 00s



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=157
O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1
~ Scan Keys in 00mn 00s



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.B6DE0336F9F4B687B4FF57939F7B657A] - 28/11/2011 - 18:48:49 ---A- . (.AVAST Software - avast! Base Kernel-Mode Device Driver for Windows NT/2000/XP.) -- C:\WINDOWS\system32\drivers\aavmker4.sys [30808]
O58 - SDL:[MD5.023867B6606FBABCDD52E089C4A507DA] - 09/07/2010 - 17:58:52 ---A- . (.Cisco Systems, Inc. - IEEE 802.1X Protocol Driver.) -- C:\WINDOWS\system32\drivers\AegisP.sys [21361]
O58 - SDL:[MD5.D9F2F301A6907C7C77EC4CC7E59C011F] - 07/06/2006 - 16:55:09 R--A- . (.Agere Systems - SoftModem Device Driver.) -- C:\WINDOWS\system32\drivers\AGRSM.sys [2410076]
O58 - SDL:[MD5.C881453898EEC64027274EBB3C8CBC0F] - 26/10/2005 - 09:08:26 R---- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\drivers\alcxwdm.sys [3786944]
O58 - SDL:[MD5.62271FF14BAA810323AC816C5D355BA9] - 09/03/2005 - 15:53:00 ---A- . (.Advanced Micro Devices - AMD Processor Driver.) -- C:\WINDOWS\system32\drivers\AmdK8.sys [43008]
O58 - SDL:[MD5.D48659BB24C48345D926ECB45C1EBDF5] - 13/08/2004 - 03:56:20 R--A- . (.Pas de propriétaire - ATK0110 ACPI Utility.) -- C:\WINDOWS\system32\drivers\ASACPI.sys [5810]
O58 - SDL:[MD5.B979979AB8027F7F53FB16EC4229B7DB] - 10/09/1999 - 11:06:00 ---A- . (.Adaptec - ASPI for WIN32 Kernel Driver.) -- C:\WINDOWS\system32\drivers\Aspi32.sys [25244]
O58 - SDL:[MD5.DE91D0D73C3E61E6826D98FAC2FAC729] - 29/03/2000 - 15:17:42 ---A- . (...) -- C:\WINDOWS\system32\drivers\ASUSHWIO.SYS [5824]
O58 - SDL:[MD5.94442E3029FF6C9F08140FE6718AF4FB] - 29/01/2007 - 16:12:52 ---A- . (.ASUSTeK COMPUTER INC. - AsusVRC.) -- C:\WINDOWS\system32\drivers\AsusVRC.sys [18432]
O58 - SDL:[MD5.054DF24C92B55427E0757CFFF160E4F2] - 28/11/2011 - 18:51:50 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys [20568]
O58 - SDL:[MD5.05A9CF1C69B553260C4927E33F0BF3EC] - 28/11/2011 - 18:51:59 ---A- . (.AVAST Software - avast! File System Filter Driver for Windows NT/2000.) -- C:\WINDOWS\system32\drivers\aswmon.sys [105176]
O58 - SDL:[MD5.EF0E9AD83380724BD6FBBB51D2D0F5B8] - 28/11/2011 - 18:52:02 ---A- . (.AVAST Software - avast! File System Filter Driver for Windows XP.) -- C:\WINDOWS\system32\drivers\aswmon2.sys [111320]
O58 - SDL:[MD5.352D5A48EBAB35A7693B048679304831] - 28/11/2011 - 18:52:19 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\WINDOWS\system32\drivers\aswRdr.sys [34392]
O58 - SDL:[MD5.8D34D2B24297E27D93E847319ABFDEC4] - 28/11/2011 - 18:53:53 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\system32\drivers\aswSnx.sys [435032]
O58 - SDL:[MD5.010012597333DA1F46C3243F33F8409E] - 28/11/2011 - 18:53:35 ---A- . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\system32\drivers\aswSP.sys [314456]
O58 - SDL:[MD5.F9F84364416658E9786235904D448D37] - 28/11/2011 - 18:52:16 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\WINDOWS\system32\drivers\aswTdi.sys [52952]
O58 - SDL:[MD5.5B80E84AF6B02ECAB72DAE9AFEE06309] - 30/09/2007 - 21:00:44 ---A- . (...) -- C:\WINDOWS\system32\drivers\atksgt.sys [165376]
O58 - SDL:[MD5.EC08D1625F5C6CF2A57B79EB35186F8C] - 18/01/2007 - 13:00:28 ---A- . (.GRISOFT, s.r.o. - AVG7 Clean Driver.) -- C:\WINDOWS\system32\drivers\AvgArCln.sys [3968]
O58 - SDL:[MD5.E8054A423E5D2BDAE6062BAB6DA159C4] - 31/01/2007 - 14:33:46 ---A- . (.GRISOFT, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\WINDOWS\system32\drivers\avgarkt.sys [5632]
O58 - SDL:[MD5.2903D25016F12415834D4EC88901D258] - 05/06/2009 - 12:00:59 ---A- . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\WINDOWS\system32\drivers\avgldx86.sys [96520]
O58 - SDL:[MD5.1068D68BB3180E16B32985E329E474CD] - 05/06/2009 - 12:00:59 ---A- . (.GRISOFT, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\WINDOWS\system32\drivers\avgmfx86.sys [26184]
O58 - SDL:[MD5.ECE6C4E9E241FA7849B88805F4359653] - 05/06/2009 - 12:00:59 ---A- . (.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) -- C:\WINDOWS\system32\drivers\avgtdix.sys [75272]
O58 - SDL:[MD5.B990976940E0E93B4932CCCB536F446D] - 19/03/2007 - 10:59:16 ---A- . (.Broadcom Corporation - USB Driver for Bluetooth Adapter.) -- C:\WINDOWS\system32\drivers\bcbthub.sys [148830]
O58 - SDL:[MD5.05C2204229CADC0A74553ED71A6E3E6F] - 17/06/2009 - 14:02:08 ---A- . (.IVT Corporation. - Bluelet Audio Driver.) -- C:\WINDOWS\system32\drivers\blueletaudio.sys [33800]
O58 - SDL:[MD5.61CC3E8FE7A041630EC8C701A2594A36] - 17/06/2009 - 14:02:16 ---A- . (.IVT Corporation. - Bluelet Audio Driver.) -- C:\WINDOWS\system32\drivers\BlueletSCOAudio.sys [27528]
O58 - SDL:[MD5.CD4113699CE34FE4B63C99AAA13F10C1] - 08/07/2009 - 10:17:36 ---A- . (.IVT Corporation. - Bluetooth USB Device Driver.) -- C:\WINDOWS\system32\drivers\btcusb.sys [39304]
O58 - SDL:[MD5.AC2E61482A57EA50730F8C2679F37040] - 17/06/2009 - 14:01:36 ---A- . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\WINDOWS\system32\drivers\BtHidBus.sys [20744]
O58 - SDL:[MD5.6783C5C81BFB640469468A80DFA1CCB3] - 17/06/2009 - 14:02:46 ---A- . (...) -- C:\WINDOWS\system32\drivers\btnetBus.sys [29192]
O58 - SDL:[MD5.43467DE7DB414AC70A88FC2FA0916EF3] - 17/06/2009 - 14:01:50 ---A- . (.IVT Corporation. - Bluetooth PAN Network Adapter Driver.) -- C:\WINDOWS\system32\drivers\btnetdrv.sys [14088]
O58 - SDL:[MD5.4F26303BECBB7CC5CA8FF39593124CF2] - 22/11/2006 - 13:41:18 ---A- . (.IVT Corporation. - Bluetooth Network Filter Driver.) -- C:\WINDOWS\system32\drivers\BTNetFilter.sys [22416]
O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 05/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys [262528]
O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 05/08/2004 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys [11776]
O58 - SDL:[MD5.097A0A4899B759A4F032BD464963B4BE] - 27/03/2009 - 01:16:28 ---A- . (.Windows ® Codename Longhorn DDK provider - CPUID Driver.) -- C:\WINDOWS\system32\drivers\cpuz132_x32.sys [12672]
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 29/01/2007 - 00:00:00 ---A- . (...) -- C:\WINDOWS\system32\drivers\dtscsi.sys [223128]
O58 - SDL:[MD5.0DAF3544804650526751C478AECCCE63] - 14/06/2006 - 12:44:30 ---A- . (.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) -- C:\WINDOWS\system32\drivers\EIO.sys [12288]
O58 - SDL:[MD5.1FF5CBB0147FBB2859AB3F505D220D79] - 31/01/2011 - 13:30:38 ---A- . (.Ekahau Inc. - Ekahau Protocol Driver for Windows XP.) -- C:\WINDOWS\system32\drivers\ekauio.sys [12800]
O58 - SDL:[MD5.16EBD8BF1D5090923694CC972C7CE1B4] - 17/09/2008 - 13:14:00 R--A- . (.EnTech Taiwan - Pas de description.) -- C:\WINDOWS\system32\drivers\Entech.sys [27672]
O58 - SDL:[MD5.4198F23618E7C8BCD24CC108C36F93A3] - 19/03/2007 - 10:59:18 ---A- . (.Broadcom - BBTFW_2_15_007.) -- C:\WINDOWS\system32\drivers\fw203x.sys [116021]
O58 - SDL:[MD5.0E4BB313310498015856F35473E119F7] - 18/11/2007 - 22:05:56 ---A- . (.GMER - GMER Driver http://www.gmer.net.) -- C:\WINDOWS\system32\drivers\gmer.sys [69905]
O58 - SDL:[MD5.01CBB39001AFDA1152F3FCE15AB646EA] - 17/06/2009 - 14:01:42 ---A- . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\WINDOWS\system32\drivers\IvtBtBus.sys [25480]
O58 - SDL:[MD5.B7C19EC8B0DD7EFA58AD41FFEB8B8CDA] - 12/08/2010 - 13:15:20 ---A- . (.Lavasoft AB - Boot Driver.) -- C:\WINDOWS\system32\drivers\Lbd.sys [64288]
O58 - SDL:[MD5.708AD0B2DB1E5869FB9EB4F682317E75] - 28/10/2011 - 11:49:20 ---A- . (.© Everstrike Software - Lock Folder XP Filter Driver.) -- C:\WINDOWS\system32\drivers\LFSys.sys [75096]
O58 - SDL:[MD5.975B6CF65F44E95883F3855BAE8CECAF] - 30/09/2007 - 21:00:43 ---A- . (...) -- C:\WINDOWS\system32\drivers\lirsgt.sys [18048]
O58 - SDL:[MD5.C6D085C7045200143528136A43A65FDE] - 14/01/2008 - 11:06:32 ---A- . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture Driver.) -- C:\WINDOWS\system32\drivers\ManyCam.sys [21632]
O58 - SDL:[MD5.836E0E09CA9869BE7EB39EF2CF3602C7] - 20/12/2010 - 18:08:40 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20952]
O58 - SDL:[MD5.D68E165C3123ABA3B1282EDDB4213BD8] - 20/12/2010 - 18:09:00 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys [38224]
O58 - SDL:[MD5.A9D90DA8C0033C34AE867A3378CB491B] - 03/11/2004 - 05:20:24 ---A- . (...) -- C:\WINDOWS\system32\drivers\MWhid.sys [13332]
O58 - SDL:[MD5.05F5FBF6641FB23340DAD28A5C375CDA] - 13/04/2008 - 12:21:02 ---A- . (...) -- C:\WINDOWS\system32\drivers\netbt.sys [162816]
O58 - SDL:[MD5.37260A293B6A89373AE76791E6CC5A12] - 23/09/2011 - 20:26:56 ---A- . (.pBUS-167 Software - Notebook Hardware Control (NHC) - Homepage, Downloads, Help, Docu, FAQ, News - www.NotebookHardwareControl.net - Notebook Hardware Control Device Driver.) -- C:\WINDOWS\system32\drivers\nhcDriver.sys [22528]
O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys [12032]
O58 - SDL:[MD5.6623E51595C0076755C29C00846C4EB2] - 01/06/2008 - 08:13:10 ---A- . (.CACE Technologies - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\system32\drivers\npf.sys [34064]
O58 - SDL:[MD5.4B54DCD6ADEE535DF80F07C59DDD8F14] - 08/10/2011 - 05:50:00 ---A- . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version 285.58.) -- C:\WINDOWS\system32\drivers\nv4_mini.sys [12791488]
O58 - SDL:[MD5.0344AA9113DC16EEC379F4652020849D] - 18/08/2005 - 10:52:06 R--A- . (.NVIDIA Corporation - NVIDIA® nForce™ IDE Performance Driver.) -- C:\WINDOWS\system32\drivers\nvata.sys [93568]
O58 - SDL:[MD5.720CC533EECB65553BD86B139CA04433] - 05/04/2005 - 20:22:28 R--A- . (.NVIDIA Corporation - NVIDIA Networking Function Driver..) -- C:\WINDOWS\system32\drivers\NVENETFD.sys [33536]
O58 - SDL:[MD5.5F9F545CC5904DD8765F84EE1D056406] - 05/04/2005 - 20:22:30 R--A- . (.NVIDIA Corporation - NVIDIA Networking Bus Driver..) -- C:\WINDOWS\system32\drivers\nvnetbus.sys [12928]
O58 - SDL:[MD5.F0C8AE1FEFB954367E2DA224AA97537D] - 05/04/2005 - 20:22:12 R--A- . (.NVIDIA Corporation - NVIDIA Network Resource Manager..) -- C:\WINDOWS\system32\drivers\nvnrm.sys [261888]
O58 - SDL:[MD5.3F7DF8E70889F74D0F8B5CAD7BC3BA45] - 05/04/2005 - 20:22:02 R--A- . (.NVIDIA Corporation - NVIDIA Networking Soft-NPU Driver..) -- C:\WINDOWS\system32\drivers\nvsnpu.sys [208256]
O58 - SDL:[MD5.6C1618A07B49E3873582B6449E744088] - 19/09/2003 - 14:45:48 ---A- . (.Padus, Inc. - Padus® ASPI Shell.) -- C:\WINDOWS\system32\drivers\pfc.sys [21248]
O58 - SDL:[MD5.FBB543EE813688A8FDD8EE6F0E947744] - 24/10/2011 - 17:16:16 ---A- . (...) -- C:\WINDOWS\system32\drivers\PnkBstrK.sys [138160]
O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 05/08/2004 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys [17792]
O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys [12032]
O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys [12032]
O58 - SDL:[MD5.B1DB1E76D94788B48D9C579F4439C71D] - 11/08/2011 - 13:46:46 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL8192S USB NDIS Driver.) -- C:\WINDOWS\system32\drivers\RTL8192su.sys [606440]
O58 - SDL:[MD5.594FF5620661D1386475406E78CB6F2F] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 Driver.) -- C:\WINDOWS\system32\drivers\s0017bus.sys [86824]
O58 - SDL:[MD5.3FA76516F21FC7CF04689834B2B7325E] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017cm.sys [12200]
O58 - SDL:[MD5.3FA76516F21FC7CF04689834B2B7325E] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017cmnt.sys [12200]
O58 - SDL:[MD5.5B1078D9E27DF63656C39449492AE3E9] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB Ethernet Emulation (WDM class reg.) -- C:\WINDOWS\system32\drivers\s0017cr.sys [10792]
O58 - SDL:[MD5.7258F550419D543BC5C8E80C578A5D54] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\s0017mdfl.sys [15016]
O58 - SDL:[MD5.1DE4F6607FEB17A15DBD4F1B139E6D2F] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\s0017mdm.sys [114600]
O58 - SDL:[MD5.9814E6BACC06D2526CD52981C7EEEDF0] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\s0017mgmt.sys [108328]
O58 - SDL:[MD5.2C62CD58225973F26682CD4F783DDEDE] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB Ethernet Emulation (NDIS 5 Minipo.) -- C:\WINDOWS\system32\drivers\s0017nd5.sys [26024]
O58 - SDL:[MD5.F87C3422E84B2FB1B43E0A26247AD5A5] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\s0017obex.sys [104616]
O58 - SDL:[MD5.DF5E7360A0AFA5956BF75DA683D0679F] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Sony Ericsson Device 0017 USB Ethernet Emulation.) -- C:\WINDOWS\system32\drivers\s0017unic.sys [109736]
O58 - SDL:[MD5.985E0A43CF844A573FF254C847AD0BA9] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017wh.sys [12200]
O58 - SDL:[MD5.985E0A43CF844A573FF254C847AD0BA9] - 21/10/2008 - 10:22:48 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0017whnt.sys [12200]
O58 - SDL:[MD5.AA786AD3A2684D39630744787B00E6F4] - 10/12/2007 - 14:22:14 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 Driver.) -- C:\WINDOWS\system32\drivers\s3017bus.sys [83880]
O58 - SDL:[MD5.9AC79D52487FF3B578CD5D914C49BF6F] - 10/12/2007 - 14:22:16 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s3017cm.sys [12200]
O58 - SDL:[MD5.9AC79D52487FF3B578CD5D914C49BF6F] - 10/12/2007 - 14:22:16 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s3017cmnt.sys [12200]
O58 - SDL:[MD5.C9C5D8BF5D9FDC8F80A5C7D8F545C02D] - 10/12/2007 - 14:22:16 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB Ethernet Emulation (WDM class reg.) -- C:\WINDOWS\system32\drivers\s3017cr.sys [10792]
O58 - SDL:[MD5.CBA4CA5BCE44084E98CE420FD6692D3A] - 10/12/2007 - 14:22:18 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\s3017mdfl.sys [15016]
O58 - SDL:[MD5.68036EFF647970D6C0399789C8707CAD] - 10/12/2007 - 14:22:18 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\s3017mdm.sys [110632]
O58 - SDL:[MD5.3672E7F9349BD98FD3F5AC33E7B2B1A6] - 10/12/2007 - 14:22:20 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\s3017mgmt.sys [104616]
O58 - SDL:[MD5.B1133B37EB184AEF81D56B4302DBAE9C] - 10/12/2007 - 14:22:20 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB Ethernet Emulation (NDIS 5 Minipo.) -- C:\WINDOWS\system32\drivers\s3017nd5.sys [25512]
O58 - SDL:[MD5.D81B1D504AA1426622E7EC09F25130A9] - 10/12/2007 - 14:22:22 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\s3017obex.sys [100648]
O58 - SDL:[MD5.7B95C53EA8BB585013767EEF2875C0A0] - 10/12/2007 - 14:22:22 ---A- . (.MCCI Corporation - Sony Ericsson Device 3017 USB Ethernet Emulation.) -- C:\WINDOWS\system32\drivers\s3017unic.sys [110120]
O58 - SDL:[MD5.C40B55BA0CA3FC298AFA628BEC2D06BD] - 10/12/2007 - 14:22:22 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s3017wh.sys [12200]
O58 - SDL:[MD5.C40B55BA0CA3FC298AFA628BEC2D06BD] - 10/12/2007 - 14:22:22 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s3017whnt.sys [12200]
O58 - SDL:[MD5.0505DA5D357F18A5D42FC5DEDE6BC9A0] - 30/06/2011 - 20:24:42 ---A- . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\WINDOWS\system32\drivers\SBREDrv.sys [101720]
O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 13/11/2007 - 11:25:54 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys [20480]
O58 - SDL:[MD5.E5B56569A9F79B70314FEDE6C953641E] - 09/01/2008 - 12:28:34 ---A- . (.Sony Ericsson Mobile Communications - seehcri Driver.) -- C:\WINDOWS\system32\drivers\seehcri.sys [27632]
O58 - SDL:[MD5.4C0D673281178CB496011A2E28571FC8] - 10/08/2005 - 13:44:04 ---A- . (.Protection Technology - StarForce Protection Environment Driver.) -- C:\WINDOWS\system32\drivers\sfdrv01.sys [50688]
O58 - SDL:[MD5.15BE2B5E4DC5B8623CF167720682ABC9] - 16/05/2005 - 14:20:39 ---A- . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\WINDOWS\system32\drivers\sfhlp02.sys [6656]
O58 - SDL:[MD5.D5A7E09D2C6A702809E49190D52ADC9F] - 03/11/2005 - 15:40:07 ---A- . (.Protection Technology - StarForce Protection VFS Driver.) -- C:\WINDOWS\system32\drivers\sfvfs02.sys [63488]
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/01/2007 - 00:00:00 ---A- . (...) -- C:\WINDOWS\system32\drivers\sptd.sys [664064]
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 12/02/2009 - 00:00:00 ---A- . (...) -- C:\WINDOWS\system32\drivers\sptd2365.sys [96384]
O58 - SDL:[MD5.16767DCE5814BC80AAA9B9C6CD2596A7] - 22/10/2002 - 12:58:06 R--A- . (.Susteen Inc. - USB-to-Serial Cable Driver.) -- C:\WINDOWS\system32\drivers\SUSCOM.SYS [40448]
O58 - SDL:[MD5.85557234B421D99C87D46E57248793F0] - 25/11/2002 - 03:46:16 ---A- . (.Syncrosoft GmbH - SynasUSB.sys.) -- C:\WINDOWS\system32\drivers\SynasUSB.sys [16896]
O58 - SDL:[MD5.0C3B2A9C4BD2DD9A6C2E4084314DD719] - 29/12/2011 - 00:57:26 ---A- . (.AnchorFree Inc - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\system32\drivers\taphss.sys [32768]
O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 05/08/2004 - 13:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys [21376]
O58 - SDL:[MD5.A0C643D5F8C60F12FAA6E3454DFE9C32] - 24/03/2006 - 00:00:00 ---A- . (.EyePower Games Pte. Ltd. - Advanced Video FX Filter Driver.) -- C:\WINDOWS\system32\drivers\V0230Vfx.sys [6272]
O58 - SDL:[MD5.5A2D30399A114FC4863539F02C484B11] - 20/11/2006 - 00:02:00 ---A- . (.Creative Technology Ltd. - Video Streaming and Capture Device Driver.) -- C:\WINDOWS\system32\drivers\V0230VID.sys [500608]
O58 - SDL:[MD5.34115E1AA46CC40D2AE127F7D4A3F13C] - 08/05/2008 - 17:32:48 ---A- . (...) -- C:\WINDOWS\system32\drivers\V2WCDRV.sys [1056984]
O58 - SDL:[MD5.96A478EDFB1FBF1FC663BEB09B4175A8] - 19/12/2011 - 14:11:58 ---A- . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\system32\drivers\VBoxUSBMon.sys [91440]
O58 - SDL:[MD5.025C2A8CBA0AB595D3461D278EFF5793] - 17/06/2009 - 14:01:04 ---A- . (.IVT Corporation. - Bluetooth Serial Port Driver.) -- C:\WINDOWS\system32\drivers\VComm.sys [14856]
O58 - SDL:[MD5.95DDF14292354887D7D8C8A0881C7485] - 17/06/2009 - 14:01:10 ---A- . (.IVT Corporation. - Bluetooth VcommMgr Driver.) -- C:\WINDOWS\system32\drivers\VcommMgr.sys [32392]
O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 05/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys [58112]
O58 - SDL:[MD5.87ABB3DE0A2D8936245579316C7BB87C] - 17/06/2009 - 14:01:18 ---A- . (.IVT Corporation. - Bluetooth HID Mini driver.) -- C:\WINDOWS\system32\drivers\VHIDMini.sys [17416]
O58 - SDL:[MD5.BB2C5A7A555B387B85481B8BDE5370D7] - 27/02/2008 - 09:54:00 ---A- . (.Pas de propriétaire - WLAN NDIS 5.0 User Mode Control Driver.) -- C:\WINDOWS\system32\drivers\WLNdis50.sys [20480]
O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\country.sys [27097]
O58 - SDL:[MD5.77EBF3E9386DAA51551AF429052D88D0] - 03/04/1996 - 20:33:26 ---A- . (...) -- C:\WINDOWS\system32\giveio.sys [5248]
O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\himem.sys [4912]
O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\key01.sys [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\keyboard.sys [42537]
O58 - SDL:[MD5.9131FE60ADFAB595C8DA53AD6A06AA31] - 01/01/2005 - 01:43:08 ---A- . (.INCA Internet Co., Ltd. - nProtect NPSC Kernel Mode Driver for NT.) -- C:\WINDOWS\system32\npptNT2.sys [4682]
O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos.sys [27916]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos404.sys [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos411.sys [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos412.sys [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos804.sys [29146]
O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio.sys [34000]
O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio404.sys [34560]
O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio411.sys [35648]
O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio412.sys [35424]
O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 05/08/2004 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio804.sys [34560]
O58 - SDL:[MD5.D74375BE63DCA31E6145248E4278893E] - 22/10/2003 - 09:54:14 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 4.0 Protocol Driver.) -- C:\WINDOWS\system32\Pcandis4.sys [16848]
O58 - SDL:[MD5.FC6BAFC20114160A6291C1C45545F137] - 22/10/2003 - 09:54:18 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\system32\Pcandis5.sys [17162]
O58 - SDL:[MD5.3FA2E254BFBCE52B3C6F1BF23AAB6911] - 18/03/2011 - 17:08:54 ---A- . (.Almico Software - SpeedFan x32 Driver.) -- C:\WINDOWS\system32\speedfan.sys [25240]
~ Scan Drivers in 00mn 10s



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\APPEND.EX_ [6905]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ARP.EX_ [7828]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\BCKGZM.EX_ [18419]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\BOOTOK.EX_ [1689]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\BOOTVRFY.EX_ [2111]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CALC.EX_ [41191]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CB32.EX_ [1321]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHANGE.EX_ [5193]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHARMAP.EX_ [36622]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHGLOGON.EX_ [7349]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHGPORT.EX_ [8778]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHGUSR.EX_ [7867]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHKDSK.EX_ [4977]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHKNTFS.EX_ [5000]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CHKRZM.EX_ [19107]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CIDAEMON.EX_ [4083]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CKCNV.EX_ [3536]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CLEANRI.EX_ [2078]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\COMEMPTY.DA_ [18429]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\COMP.EX_ [6969]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\COMPACT.EX_ [7128]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CONTROL.EX_ [3138]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CONVERT.EX_ [6454]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CPROFILE.EX_ [10055]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DEBUG.EX_ [14062]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DISKPERF.EX_ [7275]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DLLHST3G.EX_ [2103]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DOSKEY.EX_ [4957]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DRWATSON.EX_ [15627]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DRWTSN32.EX_ [19259]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DSSEC.DA_ [9162]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EDLIN.EX_ [8894]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ESENTUTL.EX_ [16365]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EVENTVWR.EX_ [3929]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EXE2BIN.EX_ [5690]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FASTOPEN.EX_ [483]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FC.EX_ [6855]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FILELIST.DA_ [34177]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FIND.EX_ [4361]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FINGER.EX_ [3825]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FIXMAPI.EX_ [1186]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FLATTEMP.EX_ [7795]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FONT.DA_ [459]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FREECELL.EX_ [27545]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FSUTIL.EX_ [17385]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FXSSEND.EX_ [5314]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\GDI.EX_ [10844]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HELPHOST.EX_ [43531]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HOSTNAME.EX_ [3249]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HRTZZM.EX_ [18841]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HYPERTRM.EX_ [15531]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ICWTUTOR.EX_ [39431]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IPSEC6.EX_ [21303]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ISIGNUP.EX_ [2366]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LABEL.EX_ [4318]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMEKRMIG.EX_ [24627]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMEPADSV.EX_ [103857]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPDADM.EX_ [20793]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPUEX.EX_ [12270]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMKRINST.EX_ [32633]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LIGHTS.EX_ [5727]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LNKSTUB.EX_ [10910]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LODCTR.EX_ [2247]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LOGOFF.EX_ [8205]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LPQ.EX_ [2668]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LPR.EX_ [3626]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MEM.EX_ [24718]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGISOL.EX_ [18326]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGPWD.EX_ [25873]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGWIZ_A.EX_ [67843]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MLANG.DA_ [111290]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MOUNTVOL.EX_ [3463]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MPNOTIFY.EX_ [11359]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MRINFO.EX_ [4877]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSCDEXNT.EX_ [447]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSG.EX_ [10316]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSHEARTS.EX_ [51953]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSINFO32.EX_ [18821]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSSWCHX.EX_ [2988]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSTSC.EX_ [117524]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NBTSTAT.EX_ [7796]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NLSFUNC.EX_ [4862]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NOISE.DA_ [494]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NOTIFLAG.EX_ [16663]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OEMBIOS.DA_ [4562]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OSCHOICE.EX_ [78317]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OSUNINST.EX_ [17877]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PATHPING.EX_ [9077]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PEER.EX_ [37147]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PENTNT.EX_ [4615]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFC009.DA_ [4931]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFC00C.DA_ [5601]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFD009.DA_ [4931]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFD00C.DA_ [5601]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFH009.DA_ [25761]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFH00C.DA_ [28987]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFI009.DA_ [25761]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFI00C.DA_ [28987]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PINBALL.DA_ [416896]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PING6.EX_ [17852]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PORTMON.EX_ [48780]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PRINT.EX_ [4088]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\QAPPSRV.EX_ [9174]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\QUERY.EX_ [5200]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\QUSER.EX_ [8984]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\QWINSTA.EX_ [10584]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RASAUTOU.EX_ [5649]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RASDIAL.EX_ [5698]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RECOVER.EX_ [3224]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REGEDT32.EX_ [1325]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REGINI.EX_ [16385]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REGISTER.EX_ [8019]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REGWIZ.EX_ [1877]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REPLACE.EX_ [5680]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RESET.EX_ [5190]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ROUTE.EX_ [7860]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ROUTEMON.EX_ [12991]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RSM.EX_ [14794]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RSMSINK.EX_ [11920]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RSMUI.EX_ [22650]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RSVP.EX_ [69403]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RUNAS.EX_ [7156]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RVSEZM.EX_ [18099]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RWINSTA.EX_ [8276]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SAPISVR.EX_ [15066]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SC.EX_ [11155]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETVER.EX_ [6123]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SFC.EX_ [4002]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SHADOW.EX_ [8013]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SHARE.EX_ [480]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SHVLZM.EX_ [18077]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SNDVOL32.EX_ [56645]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SOL.EX_ [26370]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SPRESTRT.EX_ [4865]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SRDIAG.EX_ [20509]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SUBST.EX_ [4120]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SYNCAPP.EX_ [21070]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SYSEDIT.EX_ [8686]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SYSKEY.EX_ [11707]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SYSTRAY.EX_ [1370]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TASKMAN.EX_ [7280]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TCMSETUP.EX_ [4947]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TCPSVCS.EX_ [10520]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TFTP.EX_ [7785]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TFTPD.EX_ [9338]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TOURP.EX_ [3100518]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TRACERT6.EX_ [17171]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TSCON.EX_ [8062]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TSCUPGRD.EX_ [20663]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TSDISCON.EX_ [7883]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TSKILL.EX_ [8661]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TSPROF.EX_ [7547]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TSSHUTDN.EX_ [8863]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TWUNK_16.EX_ [17001]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TWUNK_32.EX_ [10361]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UNLODCTR.EX_ [1663]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UNSECAPP.EX_ [9275]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\USER.EX_ [23407]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\VERIFIER.EX_ [32967]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\VSSADMIN.EX_ [13467]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\W32TM.EX_ [21516]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WATCHER.EX_ [18088]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WB32.EX_ [1581]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WCOM32.EX_ [34117]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINCHAT.EX_ [15768]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINHELP.EX_ [123100]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINHSTB.EX_ [3426]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINMGMT.EX_ [6166]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINMINE.EX_ [77990]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINMSD.EX_ [5349]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINSPOOL.EX_ [865]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WMPSTUB.EX_ [27756]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WOWDEB.EX_ [1237]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WOWEXEC.EX_ [5178]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WRITE.EX_ [2184]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WUPDMGR.EX_ [14490]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\XCCIHELP.EX_ [7203]
O61 - LFC:Last File Created 05/08/2004 - 13:00:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ZCLIENTM.EX_ [16951]
O61 - LFC:Last File Created 05/09/2001 - 04:24:02 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Petits utilitaires\ALC850_V5870_WHQL\ikernel.ex_ [344923]
O61 - LFC:Last File Created 06/06/2006 - 08:00:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\SESAER\Nouveau dossier (5)\philippe.chazal\Trouvé_sur_le_c_du_ panasonic\AEP ARCY\SOFREL\Sys_Install_FRA\disk1\_INST32I.EX_ [317092]
O61 - LFC:Last File Created 06/07/2002 - 09:22:28 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Décompressions\Horoscope et thème astral 1.01\_INST32I.EX_ [297989]
O61 - LFC:Last File Created 09/02/2007 - 10:27:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\SESAER\Nouveau dossier (5)\s_subventions\Doc_Pedago_Papyrus.ex_ [1323008]
O61 - LFC:Last File Created 13/01/2012 - 00:03:30 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\bookmarkbackups\bookmarks-2012-01-13.json [533288]
O61 - LFC:Last File Created 13/01/2012 - 00:18:23 ---A- C:\Documents And Settings\All Users\Application Data\Messenger Plus!\Promotions\Cache\p_199.dat [935]
O61 - LFC:Last File Created 13/01/2012 - 00:18:23 ---A- C:\Documents And Settings\All Users\Application Data\Messenger Plus!\Promotions\Cache\p_528.dat [1111]
O61 - LFC:Last File Created 13/01/2012 - 00:18:23 ---A- C:\Documents And Settings\All Users\Application Data\Messenger Plus!\Promotions\Cache\p_540.dat [1138]
O61 - LFC:Last File Created 13/01/2012 - 00:18:23 ---A- C:\Documents And Settings\All Users\Application Data\Messenger Plus!\Promotions\Listing.dat [2920]
O61 - LFC:Last File Created 13/01/2012 - 13:03:05 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4d2651a8 [20]
O61 - LFC:Last File Created 13/01/2012 - 13:03:05 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-4d2651a8.idx [487]
O61 - LFC:Last File Created 13/01/2012 - 13:03:05 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Sun\Java\Deployment\SystemCache\6.0\lastAccessed [1]
O61 - LFC:Last File Created 13/01/2012 - 13:07:14 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Adobe\Acrobat\7.0\UserCache.bin [92997]
O61 - LFC:Last File Created 13/01/2012 - 15:51:14 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Wise Registry Cleaner\Backup\2012-13-01 155114.reg [21659]
O61 - LFC:Last File Created 13/01/2012 - 15:55:52 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Wise Registry Cleaner\Backup\2012-13-01 155552.reg [427]
O61 - LFC:Last File Created 13/01/2012 - 16:02:28 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Wise Registry Cleaner\Backup\2012-13-01 160228.reg [18943]
O61 - LFC:Last File Created 13/01/2012 - 16:02:28 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Wise Registry Cleaner\Log.txt [1244]
O61 - LFC:Last File Created 13/01/2012 - 16:06:27 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Adobe\Flash Player\AssetCache\YDRBTNWQ\8F903698240FE799F61EEDA8595181137B996156.heu [149]
O61 - LFC:Last File Created 13/01/2012 - 16:06:29 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Adobe\Flash Player\AssetCache\YDRBTNWQ\8165D3AF89956F505BBF7B18667E0B2CCB9EC367.heu [148]
O61 - LFC:Last File Created 13/01/2012 - 16:06:30 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Adobe\Flash Player\AssetCache\YDRBTNWQ\5270C4CDF61AB3F586B06B3D5F3E87624A1D7223.heu [148]
O61 - LFC:Last File Created 13/01/2012 - 16:06:30 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Adobe\Flash Player\AssetCache\YDRBTNWQ\A61663F0EB79848070C225295C549D272D01B228.heu [148]
O61 - LFC:Last File Created 13/01/2012 - 16:06:30 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Adobe\Flash Player\AssetCache\YDRBTNWQ\B2302138B70206DAAF6737166713BEC5280D4A90.heu [148]
O61 - LFC:Last File Created 13/01/2012 - 17:01:21 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\adblockplus\cache.js [2354]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Avatars\Bear Mask.mce [182059]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Avatars\Cow Mask.mce [116641]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Avatars\Frog Mask.mce [165606]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Avatars\Rabbit Mask.mce [140218]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Avatars\Santa Mask.mce [182457]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Flags\Canadian Flag.mce [165891]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Flags\French Flag.mce [139185]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Flags\German Flag.mce [138619]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Flags\Italian Flag.mce [152862]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Flags\UK Flag.mce [302579]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Flags\USA Flag.mce [280846]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Fun\Ballon.mce [83659]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Fun\Be Right Back.mce [738913]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Fun\Frog.mce [84325]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Fun\Gun.mce [26872]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Fun\Hearts.mce [138793]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Fun\Sun.mce [96690]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Holidays\Bell.mce [72412]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Holidays\Candle.mce [181553]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Holidays\Candy Cane.mce [113940]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Holidays\Christmas Tree.mce [155707]
O61 - LFC:Last File Created 13/01/2012 - 17:04:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Effects\Objects\Holidays\Snow Man.mce [97213]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\Playlist.pst [488]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\Playlist.pst_files\thumbail0.png [34817]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistImages.pst [521]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistImages.pst_files\thumbail0.png [39889]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistMovies.pst [940]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistMovies.pst_files\thumbail0.png [30896]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistMovies.pst_files\thumbail1.png [31044]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistMovies.pst_files\thumbail2.png [30738]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\PlaylistSnapshots.pst [202]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Layer0\Profile.xml [875]
O61 - LFC:Last File Created 13/01/2012 - 17:04:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\ManyCam\Settings\Profile.xml [1907]
O61 - LFC:Last File Created 13/01/2012 - 17:10:23 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\ua\br_log.pb.1326471022515 [410]
O61 - LFC:Last File Created 13/01/2012 - 17:11:26 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\content-prefs.sqlite [10240]
O61 - LFC:Last File Created 13/01/2012 - 17:11:26 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\permissions.sqlite [1641472]
O61 - LFC:Last File Created 13/01/2012 - 19:23:23 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Adobe\Acrobat\10.0\Cache\AcLang_exlang32.fra [10515968]
O61 - LFC:Last File Created 13/01/2012 - 19:27:04 ---A- C:\Documents And Settings\Ken Hutchinson\MDdyAsuPL1.exe [262144]
O61 - LFC:Last File Created 13/01/2012 - 19:27:19 ---A- C:\Documents And Settings\Ken Hutchinson\3eaj.exe [289792]
O61 - LFC:Last File Created 13/01/2012 - 19:32:11 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\3-0-0000F491.lsf [5226]
O61 - LFC:Last File Created 13/01/2012 - 20:04:33 ---A- C:\Documents And Settings\Ken Hutchinson\woaxil.com [937984]
O61 - LFC:Last File Created 13/01/2012 - 20:04:34 ---A- C:\Documents And Settings\Ken Hutchinson\b41Nq7f4.exe [266240]
O61 - LFC:Last File Created 13/01/2012 - 20:04:47 ---A- C:\Documents And Settings\Ken Hutchinson\3buj.exe [289280]
O61 - LFC:Last File Created 13/01/2012 - 20:05:29 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\news.dat [728]
O61 - LFC:Last File Created 13/01/2012 - 20:06:13 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\UpdateDL.sbe [0]
O61 - LFC:Last File Created 13/01/2012 - 20:09:17 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000015 [3080]
O61 - LFC:Last File Created 13/01/2012 - 20:09:17 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000016 [3080]
O61 - LFC:Last File Created 13/01/2012 - 20:09:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000017 [13320]
O61 - LFC:Last File Created 13/01/2012 - 20:09:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000018 [23560]
O61 - LFC:Last File Created 13/01/2012 - 20:09:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000019 [16904]
O61 - LFC:Last File Created 13/01/2012 - 20:09:22 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\0000001A [3080]
O61 - LFC:Last File Created 13/01/2012 - 20:09:25 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\0000001B [45976]
O61 - LFC:Last File Created 13/01/2012 - 20:11:51 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\hf_config.pb [5674]
O61 - LFC:Last File Created 13/01/2012 - 20:11:51 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\prefs.sqlite [13312]
O61 - LFC:Last File Created 13/01/2012 - 20:12:38 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\search.sqlite [4096]
O61 - LFC:Last File Created 13/01/2012 - 20:12:38 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\icqplugin-1.xml [950]
O61 - LFC:Last File Created 13/01/2012 - 20:12:38 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\searchplugins\radioblogclub.xml [1918]
O61 - LFC:Last File Created 13/01/2012 - 20:13:39 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\ua\br_log.pb.1326482019437 [434]
O61 - LFC:Last File Created 13/01/2012 - 20:14:27 ---A- C:\Documents And Settings\All Users\Bureau\AVG Anti-Rootkit Free.lnk [828]
O61 - LFC:Last File Created 13/01/2012 - 20:14:27 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\AVG Anti-Rootkit Free\AVG Anti-Rootkit Free.lnk [840]
O61 - LFC:Last File Created 13/01/2012 - 20:16:18 ---A- C:\Documents And Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk [784]
O61 - LFC:Last File Created 13/01/2012 - 20:16:18 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Désinstaller Malwarebytes' Anti-Malware.lnk [820]
O61 - LFC:Last File Created 13/01/2012 - 20:16:18 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Malwarebytes' Anti-Malware Help.lnk [796]
O61 - LFC:Last File Created 13/01/2012 - 20:16:18 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Malwarebytes' Anti-Malware.lnk [796]
O61 - LFC:Last File Created 13/01/2012 - 20:16:18 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk [802]
O61 - LFC:Last File Created 13/01/2012 - 20:16:42 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\link.txt [115]
O61 - LFC:Last File Created 13/01/2012 - 20:16:42 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\news.txt [78]
O61 - LFC:Last File Created 13/01/2012 - 20:16:42 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [6221676]
O61 - LFC:Last File Created 13/01/2012 - 20:16:43 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\config.dat [778]
O61 - LFC:Last File Created 13/01/2012 - 20:16:43 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\local.dat [99]
O61 - LFC:Last File Created 13/01/2012 - 20:16:56 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\ignore.dat [0]
O61 - LFC:Last File Created 13/01/2012 - 20:20:07 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{3D0DE37D-9B4E-41D8-9A03-94C4AB608073}.suspic [2134]
O61 - LFC:Last File Created 13/01/2012 - 20:20:09 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences\prefs.js [1439]
O61 - LFC:Last File Created 13/01/2012 - 20:22:41 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{A3EAA794-2F79-41C5-B3DC-5C7B65E715E6}.suspic [4906]
O61 - LFC:Last File Created 13/01/2012 - 20:22:41 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{F1E625B6-9AEC-4742-B404-6B8418B46A76}.suspic [4894]
O61 - LFC:Last File Created 13/01/2012 - 20:22:42 ---A- C:\Documents And Settings\LocalService\Cookies\VUO0V8O0.txt [82]
O61 - LFC:Last File Created 13/01/2012 - 20:22:43 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{B89183C4-F7AF-44B4-9F07-326F11EF57AA}.suspic [4966]
O61 - LFC:Last File Created 13/01/2012 - 20:22:43 ---A- C:\Documents And Settings\LocalService\Cookies\F32P31A3.txt [155]
O61 - LFC:Last File Created 13/01/2012 - 20:22:44 ---A- C:\Documents And Settings\LocalService\Cookies\DG0RXIUB.txt [107]
O61 - LFC:Last File Created 13/01/2012 - 20:22:53 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{15C8DCFA-8711-471D-94E2-5902A02A99F4}.suspic [4882]
O61 - LFC:Last File Created 13/01/2012 - 20:22:53 ---A- C:\Documents And Settings\LocalService\Cookies\MDLKMZTU.txt [68]
O61 - LFC:Last File Created 13/01/2012 - 20:22:54 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{8DF6246B-3F93-4056-B370-2B3F046F1CA4}.suspic [4826]
O61 - LFC:Last File Created 13/01/2012 - 20:22:54 ---A- C:\Documents And Settings\LocalService\Cookies\0OXFAIAI.txt [69]
O61 - LFC:Last File Created 13/01/2012 - 20:22:54 ---A- C:\Documents And Settings\LocalService\Cookies\45WEZH6L.txt [70]
O61 - LFC:Last File Created 13/01/2012 - 20:22:54 ---A- C:\Documents And Settings\LocalService\Cookies\NRPWNQ6X.txt [70]
O61 - LFC:Last File Created 13/01/2012 - 20:22:55 ---A- C:\Documents And Settings\LocalService\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT [16384]
O61 - LFC:Last File Created 13/01/2012 - 20:22:57 ---A- C:\Documents And Settings\LocalService\Cookies\2Y7XJLDP.txt [179]
O61 - LFC:Last File Created 13/01/2012 - 20:23:00 ---A- C:\Documents And Settings\LocalService\Cookies\T4916365.txt [374]
O61 - LFC:Last File Created 13/01/2012 - 20:23:01 ---A- C:\Documents And Settings\LocalService\Cookies\6YPQJRI3.txt [367]
O61 - LFC:Last File Created 13/01/2012 - 20:23:01 ---A- C:\Documents And Settings\LocalService\Cookies\GJ2N6THP.txt [383]
O61 - LFC:Last File Created 13/01/2012 - 20:23:01 ---A- C:\Documents And Settings\LocalService\Cookies\PWST1LJ1.txt [388]
O61 - LFC:Last File Created 13/01/2012 - 20:23:02 ---A- C:\Documents And Settings\LocalService\Cookies\0A3PL68N.txt [394]
O61 - LFC:Last File Created 13/01/2012 - 20:23:03 ---A- C:\Documents And Settings\LocalService\Cookies\CT44H249.txt [397]
O61 - LFC:Last File Created 13/01/2012 - 20:23:05 ---A- C:\Documents And Settings\LocalService\Cookies\7CU0W8BO.txt [335]
O61 - LFC:Last File Created 13/01/2012 - 20:23:09 ---A- C:\Documents And Settings\LocalService\Cookies\HQX5W9LA.txt [346]
O61 - LFC:Last File Created 13/01/2012 - 20:23:10 ---A- C:\Documents And Settings\LocalService\Cookies\T6N36RB2.txt [99]
O61 - LFC:Last File Created 13/01/2012 - 20:23:13 ---A- C:\Documents And Settings\LocalService\Cookies\V22YJPST.txt [168]
O61 - LFC:Last File Created 13/01/2012 - 20:23:19 ---A- C:\Documents And Settings\LocalService\Cookies\PV3XLA23.txt [154]
O61 - LFC:Last File Created 13/01/2012 - 20:23:19 ---A- C:\Documents And Settings\LocalService\Cookies\YDUNS04V.txt [119]
O61 - LFC:Last File Created 13/01/2012 - 20:23:27 ---A- C:\Documents And Settings\LocalService\Cookies\8TYOX81N.txt [85]
O61 - LFC:Last File Created 13/01/2012 - 20:23:27 ---A- C:\Documents And Settings\LocalService\Cookies\VRR3B5HA.txt [111]
O61 - LFC:Last File Created 13/01/2012 - 20:23:32 ---A- C:\Documents And Settings\LocalService\Cookies\VBTB23PV.txt [103]
O61 - LFC:Last File Created 13/01/2012 - 20:23:33 ---A- C:\Documents And Settings\LocalService\Cookies\QYX89P1A.txt [93]
O61 - LFC:Last File Created 13/01/2012 - 20:23:34 ---A- C:\Documents And Settings\LocalService\Cookies\9QTX2FLY.txt [178]
O61 - LFC:Last File Created 13/01/2012 - 20:23:34 ---A- C:\Documents And Settings\LocalService\Cookies\DJNOS3A0.txt [270]
O61 - LFC:Last File Created 13/01/2012 - 20:23:34 ---A- C:\Documents And Settings\LocalService\Cookies\H9S49N50.txt [75]
O61 - LFC:Last File Created 13/01/2012 - 20:23:34 ---A- C:\Documents And Settings\LocalService\Cookies\XRIFV3B8.txt [97]
O61 - LFC:Last File Created 13/01/2012 - 20:23:36 ---A- C:\Documents And Settings\LocalService\Cookies\5SPS5FNA.txt [188]
O61 - LFC:Last File Created 13/01/2012 - 20:23:36 ---A- C:\Documents And Settings\LocalService\Cookies\SD9NCR91.txt [340]
O61 - LFC:Last File Created 13/01/2012 - 20:23:37 ---A- C:\Documents And Settings\LocalService\Cookies\NP7NASQP.txt [734]
O61 - LFC:Last File Created 13/01/2012 - 20:23:38 ---A- C:\Documents And Settings\LocalService\Cookies\31LJ9U5T.txt [983]
O61 - LFC:Last File Created 13/01/2012 - 20:23:38 ---A- C:\Documents And Settings\LocalService\Cookies\YGY7R4XS.txt [271]
O61 - LFC:Last File Created 13/01/2012 - 20:23:39 ---A- C:\Documents And Settings\LocalService\Cookies\883MA6VQ.txt [637]
O61 - LFC:Last File Created 13/01/2012 - 20:23:39 ---A- C:\Documents And Settings\LocalService\Cookies\GYKR19FU.txt [1022]
O61 - LFC:Last File Created 13/01/2012 - 20:23:44 ---A- C:\Documents And Settings\LocalService\Cookies\5DMRYY36.txt [586]
O61 - LFC:Last File Created 13/01/2012 - 20:23:44 ---A- C:\Documents And Settings\LocalService\Cookies\Z80EJZCP.txt [111]
O61 - LFC:Last File Created 13/01/2012 - 20:23:47 ---A- C:\Documents And Settings\LocalService\Cookies\L9GUIZL1.txt [112]
O61 - LFC:Last File Created 13/01/2012 - 20:23:51 ---A- C:\Documents And Settings\LocalService\Cookies\XD89ZU8D.txt [764]
O61 - LFC:Last File Created 13/01/2012 - 20:23:52 ---A- C:\Documents And Settings\LocalService\Cookies\IVYH6HYU.txt [100]
O61 - LFC:Last File Created 13/01/2012 - 20:23:59 ---A- C:\Documents And Settings\LocalService\Cookies\5LKPQ3SQ.txt [202]
O61 - LFC:Last File Created 13/01/2012 - 20:23:59 ---A- C:\Documents And Settings\LocalService\Cookies\SUT3M30B.txt [1025]
O61 - LFC:Last File Created 13/01/2012 - 20:24:03 ---A- C:\Documents And Settings\LocalService\Cookies\BXD7WQIE.txt [238]
O61 - LFC:Last File Created 13/01/2012 - 20:24:04 ---A- C:\Documents And Settings\LocalService\Cookies\A1AMJ3YM.txt [246]
O61 - LFC:Last File Created 13/01/2012 - 20:24:05 ---A- C:\Documents And Settings\LocalService\Cookies\X1CBF0C4.txt [108]
O61 - LFC:Last File Created 13/01/2012 - 20:24:07 ---A- C:\Documents And Settings\LocalService\Cookies\P8Y1KJJZ.txt [107]
O61 - LFC:Last File Created 13/01/2012 - 20:24:07 ---A- C:\Documents And Settings\LocalService\Cookies\XWO2CW6X.txt [453]
O61 - LFC:Last File Created 13/01/2012 - 20:24:08 ---A- C:\Documents And Settings\LocalService\Cookies\2J1DEIDE.txt [8582]
O61 - LFC:Last File Created 13/01/2012 - 20:24:09 ---A- C:\Documents And Settings\LocalService\Cookies\0HHPZHUJ.txt [111]
O61 - LFC:Last File Created 13/01/2012 - 20:24:10 ---A- C:\Documents And Settings\LocalService\Cookies\L0MRCC9A.txt [369]
O61 - LFC:Last File Created 13/01/2012 - 20:24:10 ---A- C:\Documents And Settings\LocalService\Cookies\W8XOM434.txt [393]
O61 - LFC:Last File Created 13/01/2012 - 20:24:36 ---A- C:\Documents And Settings\LocalService\Cookies\ZKDA6L2G.txt [230]
O61 - LFC:Last File Created 13/01/2012 - 20:24:52 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\0000001C [124424]
O61 - LFC:Last File Created 13/01/2012 - 20:28:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.22024 [100]
O61 - LFC:Last File Created 13/01/2012 - 20:28:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.63889 [80]
O61 - LFC:Last File Created 13/01/2012 - 20:28:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.71178 [83]
O61 - LFC:Last File Created 13/01/2012 - 20:28:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.22024 [122880]
O61 - LFC:Last File Created 13/01/2012 - 20:28:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.63889 [41984]
O61 - LFC:Last File Created 13/01/2012 - 20:28:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.71178 [5120]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.46140 [84]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP3.90164 [96]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP4.37834 [176]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP4.46743 [173]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP4.56669 [233]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.46140 [289792]
O61 - LFC:Last File Created 13/01/2012 - 20:28:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR3.90164 [156]
O61 - LFC:Last File Created 13/01/2012 - 20:28:39 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\log\unp201004719.tmp.mdmp [812011]
O61 - LFC:Last File Created 13/01/2012 - 20:28:45 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2012-01-13 (20-28-45).txt [2044]
O61 - LFC:Last File Created 13/01/2012 - 20:29:53 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\log\HtmlRemoteContent.old [680]
O61 - LFC:Last File Created 13/01/2012 - 20:30:38 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\rc.dat [9]
O61 - LFC:Last File Created 13/01/2012 - 20:51:32 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\ua\br_log.pb.1326484292109 [407]
O61 - LFC:Last File Created 13/01/2012 - 20:54:22 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{376BD499-2D1E-4231-9CA6-FAFD41DB7456}.suspic [163280]
O61 - LFC:Last File Created 13/01/2012 - 21:02:10 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\aswResp.dat [20]
O61 - LFC:Last File Created 13/01/2012 - 23:13:16 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\0000001D [135176]
O61 - LFC:Last File Created 13/01/2012 - 23:13:23 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\0000001E [124424]
O61 - LFC:Last File Created 13/01/2012 - 23:40:43 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\0000001F [25096]
O61 - LFC:Last File Created 13/04/2008 - 09:43:34 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\CPLEXE.EX_ [19783]
O61 - LFC:Last File Created 13/04/2008 - 09:43:38 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMSCINST.EX_ [28139]
O61 - LFC:Last File Created 13/04/2008 - 09:43:38 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\PINTLPHR.EX_ [34625]
O61 - LFC:Last File Created 13/04/2008 - 09:43:40 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\CINTSETP.EX_ [168685]
O61 - LFC:Last File Created 13/04/2008 - 09:43:46 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPDCT.EX_ [108552]
O61 - LFC:Last File Created 13/04/2008 - 09:43:48 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPDSVR.EX_ [57937]
O61 - LFC:Last File Created 13/04/2008 - 09:43:50 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPINST.EX_ [76627]
O61 - LFC:Last File Created 13/04/2008 - 09:43:52 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPMIG.EX_ [77896]
O61 - LFC:Last File Created 13/04/2008 - 09:43:52 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\TINTLPHR.EX_ [20507]
O61 - LFC:Last File Created 13/04/2008 - 09:43:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\TINTSETP.EX_ [9231]
O61 - LFC:Last File Created 13/04/2008 - 09:44:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPRW.EX_ [88015]
O61 - LFC:Last File Created 13/04/2008 - 09:44:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LANG\IMJPUTY.EX_ [90012]
O61 - LFC:Last File Created 13/04/2008 - 09:52:34 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REDIR.EX_ [1626]
O61 - LFC:Last File Created 13/04/2008 - 09:53:38 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\KRNL386.EX_ [55118]
O61 - LFC:Last File Created 13/04/2008 - 09:54:56 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DOSX.EX_ [12289]
O61 - LFC:Last File Created 13/04/2008 - 11:31:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OSLOADER.EX_ [115349]
O61 - LFC:Last File Created 13/04/2008 - 11:32:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETUPLDR.EX_ [118953]
O61 - LFC:Last File Created 13/04/2008 - 11:53:34 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\XPNETDG.EX_ [129842]
O61 - LFC:Last File Created 13/04/2008 - 19:07:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NTKRNLMP.EX_ [1045229]
O61 - LFC:Last File Created 13/04/2008 - 19:08:04 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NTOSKRNL.EX_ [1014771]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ACCWIZ.EX_ [47025]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ACTMOVIE.EX_ [1683]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\AGENTSVR.EX_ [102735]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\AHUI.EX_ [48821]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ALG.EX_ [17710]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\AT.EX_ [11601]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ATMADM.EX_ [4593]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ATTRIB.EX_ [5553]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\AUDITUSR.EX_ [6169]
O61 - LFC:Last File Created 13/04/2008 - 19:33:54 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\AUTOCONV.EX_ [191073]
O61 - LFC:Last File Created 13/04/2008 - 19:33:56 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\AUTOLFN.EX_ [5618]
O61 - LFC:Last File Created 13/04/2008 - 19:33:56 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\BLASTCLN.EX_ [34017]
O61 - LFC:Last File Created 13/04/2008 - 19:33:56 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CACLS.EX_ [9120]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CISVC.EX_ [2454]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CLEANMGR.EX_ [27261]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CLICONFG.EX_ [4167]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CLIPBRD.EX_ [42950]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CLIPSRV.EX_ [15850]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CMD.EX_ [93236]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CMDL32.EX_ [12783]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CMMON32.EX_ [17882]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CMSTP.EX_ [25584]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\COMREPL.EX_ [4640]
O61 - LFC:Last File Created 13/04/2008 - 19:33:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\COMREREG.EX_ [2613]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CONF.EX_ [260335]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CONIME.EX_ [13239]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CSCRIPT.EX_ [55062]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CSRSS.EX_ [2894]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\CTFMON.EX_ [8607]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DCOMCNFG.EX_ [2579]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DDESHARE.EX_ [11733]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DEFRAG.EX_ [11189]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DFRGFAT.EX_ [37596]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DFRGNTFS.EX_ [46883]
O61 - LFC:Last File Created 13/04/2008 - 19:34:00 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DIALER.EX_ [152243]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DIANTZ.EX_ [43151]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DISKPART.EX_ [67859]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DLIMPORT.EX_ [101413]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DLLHOST.EX_ [2522]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DMADMIN.EX_ [95584]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DMREMOTE.EX_ [5259]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DPLAYSVR.EX_ [16087]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DPNSVR.EX_ [9637]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DPVSETUP.EX_ [37563]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DUMPREP.EX_ [5052]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DVDUPGRD.EX_ [9717]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DWWIN.EX_ [87128]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DXDIAG.EX_ [229025]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EUDCEDIT.EX_ [75775]
O61 - LFC:Last File Created 13/04/2008 - 19:34:02 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EVNTCMD.EX_ [9322]
O61 - LFC:Last File Created 13/04/2008 - 19:34:04 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EVNTWIN.EX_ [34752]
O61 - LFC:Last File Created 13/04/2008 - 19:34:04 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EXPLORER.EX_ [351135]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\EXTRAC32.EX_ [12579]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FINDSTR.EX_ [13224]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FLTMC.EX_ [7254]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FONTVIEW.EX_ [10801]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FORCEDOS.EX_ [3263]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FSQUIRT.EX_ [43478]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FTP.EX_ [17132]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FXSCLNT.EX_ [56724]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FXSCOVER.EX_ [77977]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\FXSSVC.EX_ [109761]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\GRPCONV.EX_ [17192]
O61 - LFC:Last File Created 13/04/2008 - 19:34:06 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HELP.EX_ [5277]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HELPCTR.EX_ [266232]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HELPSVC.EX_ [237174]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HH.EX_ [3757]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\HSCUPD.EX_ [8723]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ICWCONN1.EX_ [57973]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ICWCONN2.EX_ [33847]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ICWRMIND.EX_ [6545]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IE4UINIT.EX_ [15139]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IEDW.EX_ [10487]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IEXPLORE.EX_ [37879]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IEXPRESS.EX_ [47791]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IMAPI.EX_ [69598]
O61 - LFC:Last File Created 13/04/2008 - 19:34:08 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\INETWIZ.EX_ [5174]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IPCONFIG.EX_ [19593]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IPV6.EX_ [26373]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\IPXROUTE.EX_ [8875]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LHMSTSC.EX_ [293694]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LOCATOR.EX_ [31126]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LOGAGENT.EX_ [48485]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LOGMAN.EX_ [23631]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LOGONUI.EX_ [128412]
O61 - LFC:Last File Created 13/04/2008 - 19:34:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\LSASS.EX_ [9344]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MAGNIFY.EX_ [31946]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MAKECAB.EX_ [27202]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGLOAD.EX_ [48628]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGRATE.EX_ [275370]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGREGDB.EX_ [3679]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGWIZ.EX_ [71237]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MIGWIZA.EX_ [70168]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MMC.EX_ [455994]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MMCPERF.EX_ [13866]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MNMSRVC.EX_ [11302]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MOBSYNC.EX_ [64832]
O61 - LFC:Last File Created 13/04/2008 - 19:34:12 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MOFCOMP.EX_ [7214]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MOVIEMK.EX_ [1244980]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MPLAY32.EX_ [52030]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MPLAYER2.EX_ [1281]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSCONFIG.EX_ [63773]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSDTC.EX_ [2416]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSHTA.EX_ [13874]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSIEXEC.EX_ [29304]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSIMN.EX_ [18910]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSIREGMV.EX_ [15077]
O61 - LFC:Last File Created 13/04/2008 - 19:34:14 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSOOBE.EX_ [13349]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSPAINT.EX_ [135988]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSTINIT.EX_ [5670]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MTSTOCOM.EX_ [45343]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NAPSTAT.EX_ [77298]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NARRATOR.EX_ [23747]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NDDEAPIR.EX_ [1721]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NET.EX_ [19708]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NET1.EX_ [55631]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NETDDE.EX_ [46761]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NETSH.EX_ [22590]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NETSTAT.EX_ [12320]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NMPGMGRP.EX_ [6113]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NOTEPAD.EX_ [33004]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NPPAGENT.EX_ [6581]
O61 - LFC:Last File Created 13/04/2008 - 19:34:16 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NSLOOKUP.EX_ [29507]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NTVDM.EX_ [198808]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ODBCAD32.EX_ [6683]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\ODBCCONF.EX_ [29269]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OEMIG50.EX_ [28680]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OOBEBALN.EX_ [23259]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\OSK.EX_ [59640]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PACKAGER.EX_ [26149]
O61 - LFC:Last File Created 13/04/2008 - 19:34:18 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PERFMON.EX_ [6708]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PINBALL.EX_ [112918]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PING.EX_ [7429]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\POWERCFG.EX_ [19965]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PROGMAN.EX_ [21332]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PROQUOTA.EX_ [26535]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\PROXYCFG.EX_ [3877]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\QPROCESS.EX_ [10747]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RASPHONE.EX_ [26233]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RCIMLBY.EX_ [15256]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RCP.EX_ [8298]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RDPCLIP.EX_ [27410]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RDSADDIN.EX_ [6673]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RDSHOST.EX_ [27750]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REG.EX_ [17274]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REGSVR32.EX_ [5447]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\REXEC.EX_ [5882]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RSH.EX_ [6094]
O61 - LFC:Last File Created 13/04/2008 - 19:34:20 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RSTRUI.EX_ [117439]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RTCSHARE.EX_ [43293]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RUNDLL32.EX_ [11905]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\RUNONCE.EX_ [7024]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SAVEDUMP.EX_ [6241]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SCARDSVR.EX_ [36767]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SCRCONS.EX_ [18610]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SDBINST.EX_ [35692]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SERVICES.EX_ [50053]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SESSMGR.EX_ [55266]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETHC.EX_ [15192]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETUP.EX_ [11984]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETUP50.EX_ [32760]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETUPN.EX_ [10183]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SETUP_WM.EX_ [212103]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SHMGRATE.EX_ [17893]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SHRPUBW.EX_ [19222]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SHUTDOWN.EX_ [9473]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SIGVERIF.EX_ [18285]
O61 - LFC:Last File Created 13/04/2008 - 19:34:22 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SKEYS.EX_ [12388]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SLRUNDLL.EX_ [10081]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SLSERV.EX_ [30501]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SMBINST.EX_ [3814]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SMI2SMIR.EX_ [80653]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SMLOGSVC.EX_ [40281]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SMSS.EX_ [24193]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SNDREC32.EX_ [57201]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SNMP.EX_ [16379]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SNMPTRAP.EX_ [4353]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SORT.EX_ [10201]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SPIDER.EX_ [258645]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SPOOLSV.EX_ [21956]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\STIMON.EX_ [4131]
O61 - LFC:Last File Created 13/04/2008 - 19:34:24 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SVCHOST.EX_ [7278]
O61 - LFC:Last File Created 13/04/2008 - 19:34:26 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\SYSOCMGR.EX_ [36303]
O61 - LFC:Last File Created 13/04/2008 - 19:34:26 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TASKMGR.EX_ [51838]
O61 - LFC:Last File Created 13/04/2008 - 19:34:26 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TOURSTRT.EX_ [98099]
O61 - LFC:Last File Created 13/04/2008 - 19:34:26 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TRACERT.EX_ [5430]
O61 - LFC:Last File Created 13/04/2008 - 19:34:26 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\TZCHANGE.EX_ [25019]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UNREGMP2.EX_ [60331]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UPLOADM.EX_ [60636]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UPNPCONT.EX_ [7265]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UPS.EX_ [7980]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\USERINIT.EX_ [11833]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\UTILMAN.EX_ [22600]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\VERCLSID.EX_ [15147]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\VSSVC.EX_ [85478]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WAB.EX_ [20546]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WABMIG.EX_ [14943]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WBEMTEST.EX_ [44789]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WEXTRACT.EX_ [28369]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WIAACMGR.EX_ [153379]
O61 - LFC:Last File Created 13/04/2008 - 19:34:28 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINHLP32.EX_ [131911]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINLOGON.EX_ [265687]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WINVER.EX_ [2329]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WMIADAP.EX_ [74636]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WMIAPSRV.EX_ [51029]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WMIPRVSE.EX_ [66945]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WMPLAYER.EX_ [28949]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WORDPAD.EX_ [78406]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WPABALN.EX_ [15354]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WPNPINST.EX_ [5525]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WSCNTFY.EX_ [6660]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WSCRIPT.EX_ [59804]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WUAUCLT.EX_ [48316]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\WUAUCLT1.EX_ [60453]
O61 - LFC:Last File Created 13/04/2008 - 19:34:30 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\XCOPY.EX_ [13364]
O61 - LFC:Last File Created 14/01/2012 - 00:35:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.19824 [142]
O61 - LFC:Last File Created 14/01/2012 - 00:35:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.80663 [147]
O61 - LFC:Last File Created 14/01/2012 - 00:35:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.83577 [144]
O61 - LFC:Last File Created 14/01/2012 - 00:35:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.19824 [193368]
O61 - LFC:Last File Created 14/01/2012 - 00:35:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.80663 [32768]
O61 - LFC:Last File Created 14/01/2012 - 00:35:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.83577 [1536]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.13660 [219]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.17843 [218]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.20157 [142]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.20650 [275]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.29027 [171]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.34166 [249]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.35726 [274]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.51580 [185]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.68998 [305]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP1.93889 [154]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\BACKUP4.70653 [233]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.13660 [58703]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.17843 [79360]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.20157 [193368]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.20650 [58703]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.29027 [463080]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.34166 [707072]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.35726 [79360]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.51580 [991711]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.68998 [707072]
O61 - LFC:Last File Created 14/01/2012 - 00:35:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\QUAR1.93889 [991711]
O61 - LFC:Last File Created 14/01/2012 - 00:37:34 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2012-01-14 (00-35-45).txt [5253]
O61 - LFC:Last File Created 14/01/2012 - 00:40:01 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\rp_rules.dat [2641]
O61 - LFC:Last File Created 14/01/2012 - 00:40:01 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\rp_stats.dat [3443]
O61 - LFC:Last File Created 14/01/2012 - 00:40:08 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\db1cba90fa05e0b34-ce42564.dat [1010472]
O61 - LFC:Last File Created 14/01/2012 - 00:45:02 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\RegGS1-Global.reg [1095]
O61 - LFC:Last File Created 14/01/2012 - 00:46:36 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{21D695D3-3BDD-475A-B4AD-162B2A226F9E}.suspic [630]
O61 - LFC:Last File Created 14/01/2012 - 00:46:49 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\RegUNTCVWL-Ken Hutchinson.reg [453]
O61 - LFC:Last File Created 14/01/2012 - 01:44:01 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\My Downloads\Poker\PTV3.rar [31123408]
O61 - LFC:Last File Created 14/01/2012 - 11:15:09 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{F6D90174-40FB-44D0-95DA-A75810BE5D5B}.suspic [630]
O61 - LFC:Last File Created 14/01/2012 - 23:04:41 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000020 [1466784]
O61 - LFC:Last File Created 14/01/2012 - 23:04:47 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\aswBoot.txt [16664]
O61 - LFC:Last File Created 14/01/2012 - 23:08:33 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\ScriptShield.txt [21425]
O61 - LFC:Last File Created 14/01/2012 - 23:10:21 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\RegGS1SM-Global.reg [315]
O61 - LFC:Last File Created 14/01/2012 - 23:11:53 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{DFDEC741-506F-479A-8480-F48878B41335}.suspic [630]
O61 - LFC:Last File Created 14/01/2012 - 23:14:58 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\HssInstaller\HssInstaller.txt [223]
O61 - LFC:Last File Created 14/01/2012 - 23:15:00 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\RegBHO-Global.reg [2237]
O61 - LFC:Last File Created 14/01/2012 - 23:16:46 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\ua\br_log.pb.1326579406593 [407]
O61 - LFC:Last File Created 14/01/2012 - 23:17:04 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\bookmarkbackups\bookmarks-2012-01-14.json [533552]
O61 - LFC:Last File Created 14/01/2012 - 23:21:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\cookies.sqlite [1572864]
O61 - LFC:Last File Created 14/01/2012 - 23:21:42 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\webappsstore.sqlite [460800]
O61 - LFC:Last File Created 14/01/2012 - 23:21:43 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [509]
O61 - LFC:Last File Created 14/01/2012 - 23:22:24 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\cc_20120114_232221.reg [2976]
O61 - LFC:Last File Created 14/01/2012 - 23:22:40 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\places.sqlite [10485760]
O61 - LFC:Last File Created 14/01/2012 - 23:26:11 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\~gu-ver.dat [0]
O61 - LFC:Last File Created 14/01/2012 - 23:27:32 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\GlarySoft\Glary Utilities\Backups\40922,9774631018 [905]
O61 - LFC:Last File Created 14/01/2012 - 23:34:25 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\1-7-0018771F.lsf [1819]
O61 - LFC:Last File Created 15/01/2012 - 12:27:29 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{DFBE2EF9-BB81-441C-85D3-341F60D0A923}.suspic [656]
O61 - LFC:Last File Created 15/01/2012 - 12:29:51 ---A- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\Cookies\index.dat [16384]
O61 - LFC:Last File Created 15/01/2012 - 12:29:51 ---A- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\Local Settings\Historique\History.IE5\index.dat [16384]
O61 - LFC:Last File Created 15/01/2012 - 12:57:01 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{ADE4420E-0880-4FD4-8093-F70F1E84D59C}.suspic [163280]
O61 - LFC:Last File Created 15/01/2012 - 13:44:01 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000021 [745]
O61 - LFC:Last File Created 15/01/2012 - 13:44:03 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{EAED9709-AE81-486B-932E-8D044C2E3A1D}.suspic [528]
O61 - LFC:Last File Created 15/01/2012 - 13:44:04 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{CA4EA936-1575-45C3-85E7-A3C624D4FF44}.suspic [267726]
O61 - LFC:Last File Created 16/01/2012 - 00:12:01 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\Perflib_Perfdata_ca4.dat [16384]
O61 - LFC:Last File Created 16/01/2012 - 00:12:32 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\sfareca00001.dll [172032]
O61 - LFC:Last File Created 16/01/2012 - 00:12:33 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\sfamcc00001.dll [192512]
O61 - LFC:Last File Created 16/01/2012 - 01:09:10 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Microsoft\Windows\Themes\Custom.theme [7808]
O61 - LFC:Last File Created 16/01/2012 - 01:14:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\A0550422.exe.86d0bc3c7b9a6962297d96f429e65e7.249b2cb84eb0d81f649227a439dec990.aawqff [79364]
O61 - LFC:Last File Created 16/01/2012 - 01:14:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\A0550425.exe.86d0bc3c7b9a6962297d96f429e65e7.f018843c6c6f91668034ef1fcf156a6.aawqff [463092]
O61 - LFC:Last File Created 16/01/2012 - 01:14:04 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\GetDataBack Data Recovery 3.3.exe.619598c7432d04c64cf59ee5b4d39a.75cf5a3bb93b7c6a128381d2a50da8f.aawqff [6316244]
O61 - LFC:Last File Created 16/01/2012 - 01:14:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Horoscope Explorer Pro 3.7.exe.115f1c84373a54b54c45f8ece0139ebe.bb8b55e98648cf21319093059e21a.aawqff [10940420]
O61 - LFC:Last File Created 16/01/2012 - 01:14:14 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\1-7-02C21B8C.lsf [4189]
O61 - LFC:Last File Created 16/01/2012 - 01:15:03 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000022 [25096]
O61 - LFC:Last File Created 16/01/2012 - 12:12:02 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\3-0-0000DFC1.lsf [9983]
O61 - LFC:Last File Created 16/01/2012 - 12:12:06 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\log\AshWebSv.ws.ori [8236]
O61 - LFC:Last File Created 16/01/2012 - 12:15:19 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{57EB97F3-C3CD-4BAA-813A-227574C6A43A}.suspic [594]
O61 - LFC:Last File Created 16/01/2012 - 12:18:33 ---A- C:\Documents And Settings\Ken Hutchinson\SendTo\Bluetooth\Autres dispositifs....lnk [1759]
O61 - LFC:Last File Created 16/01/2012 - 12:18:59 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Skype\shared_dynco\dc.db [1314816]
O61 - LFC:Last File Created 16/01/2012 - 12:19:00 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Skype\shared_dynco\dc.db-journal [4616]
O61 - LFC:Last File Created 16/01/2012 - 12:19:33 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\3-0-0007C4B5.lsf [1213]
O61 - LFC:Last File Created 16/01/2012 - 12:19:33 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Macromedia\Flash Player\#SharedObjects\Y2PPSASV\skype.com\#ui\preferences.sol [215]
O61 - LFC:Last File Created 16/01/2012 - 12:19:54 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\AAWQF20120116121954.aawqif [16052]
O61 - LFC:Last File Created 16/01/2012 - 12:27:20 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Logs\Run Entry History.txt [568]
O61 - LFC:Last File Created 16/01/2012 - 12:46:06 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{F02DE0B0-C578-48F2-99AF-263A55DF1306}.suspic [163280]
O61 - LFC:Last File Created 16/01/2012 - 14:07:36 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\whitelist.dat [9]
O61 - LFC:Last File Created 16/01/2012 - 14:07:37 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\quarantine.dat [72038]
O61 - LFC:Last File Created 16/01/2012 - 14:07:38 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\1-7-006AB7D3.lsf [2864]
O61 - LFC:Last File Created 16/01/2012 - 14:08:48 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000023 [479]
O61 - LFC:Last File Created 16/01/2012 - 14:08:49 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{4E63623A-8EFC-4FDE-B561-256944134C70}.suspic [528]
O61 - LFC:Last File Created 16/01/2012 - 14:08:49 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{83220B9F-C2D2-4959-8616-EEEC1831655E}.suspic [267726]
O61 - LFC:Last File Created 16/01/2012 - 14:15:54 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\1-7-00724AE9.lsf [1821]
O61 - LFC:Last File Created 16/01/2012 - 14:17:51 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000024 [793]
O61 - LFC:Last File Created 16/01/2012 - 14:18:01 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{EAD6CA19-ADB4-4304-839E-0CB6AAC0BC2E}.suspic [486]
O61 - LFC:Last File Created 16/01/2012 - 14:18:03 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{BEDB49CE-143A-46A6-9008-528436EC80E3}.suspic [526]
O61 - LFC:Last File Created 16/01/2012 - 14:20:09 ---A- C:\Documents And Settings\All Users\Application Data\NVIDIA\Updatus\updtclient.log.bak [3649]
O61 - LFC:Last File Created 16/01/2012 - 14:21:20 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000025 [793]
O61 - LFC:Last File Created 16/01/2012 - 14:21:26 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{605776E3-5E53-4861-8F35-ACBE87EFE020}.suspic [534]
O61 - LFC:Last File Created 16/01/2012 - 14:22:55 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\snx_lconfig.xml [446]
O61 - LFC:Last File Created 16/01/2012 - 14:23:08 ---A- C:\Documents And Settings\NetworkService\Local Settings\Temp\{E9C1E1AC-C9B2-4c85-94DE-9C1518918D02}.tlb [3596]
O61 - LFC:Last File Created 16/01/2012 - 14:23:12 ---A- C:\Documents And Settings\LocalService\Cookies\index.dat [49152]
O61 - LFC:Last File Created 16/01/2012 - 14:23:12 ---A- C:\Documents And Settings\LocalService\Local Settings\Historique\History.IE5\index.dat [32768]
O61 - LFC:Last File Created 16/01/2012 - 14:23:14 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\3-0-0000B507.lsf [5997]
O61 - LFC:Last File Created 16/01/2012 - 14:23:14 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics\3-0-0000B640.lsf [761]
O61 - LFC:Last File Created 16/01/2012 - 14:23:14 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\usage_statistics.dat [9]
O61 - LFC:Last File Created 16/01/2012 - 14:23:16 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\log\AshWebSv.ws [12354]
O61 - LFC:Last File Created 16/01/2012 - 14:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\EmailShield.txt [25531]
O61 - LFC:Last File Created 16/01/2012 - 14:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\IMShield.txt [25531]
O61 - LFC:Last File Created 16/01/2012 - 14:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\NetworkShield.txt [25531]
O61 - LFC:Last File Created 16/01/2012 - 14:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\P2PShield.txt [39470]
O61 - LFC:Last File Created 16/01/2012 - 14:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\WebShield.txt [25683]
O61 - LFC:Last File Created 16/01/2012 - 14:23:32 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\{E9C1E1AC-C9B2-4c85-94DE-9C1518918D02}.tlb [3596]
O61 - LFC:Last File Created 16/01/2012 - 14:26:37 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\FileInfo.db [17408]
O61 - LFC:Last File Created 16/01/2012 - 14:26:56 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{F0CC391A-7E96-4B3D-A1A2-BB926C1880F8}.suspic [594]
O61 - LFC:Last File Created 16/01/2012 - 14:27:21 ---A- C:\Documents And Settings\All Users\Application Data\NVIDIA\Updatus\journalBS.jour.dat [0]
O61 - LFC:Last File Created 16/01/2012 - 14:27:22 ---A- C:\Documents And Settings\UpdatusUser\Local Settings\Temp\{E9C1E1AC-C9B2-4c85-94DE-9C1518918D02}.tlb [3596]
O61 - LFC:Last File Created 16/01/2012 - 14:27:35 ---A- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\Local Settings\Temp\{E9C1E1AC-C9B2-4c85-94DE-9C1518918D02}.tlb [3596]
O61 - LFC:Last File Created 16/01/2012 - 14:30:51 ---A- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\ntuser.dat [4980736]
O61 - LFC:Last File Created 16/01/2012 - 14:30:56 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat [5580]
O61 - LFC:Last File Created 16/01/2012 - 14:30:56 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat [7120]
O61 - LFC:Last File Created 16/01/2012 - 14:31:06 ---A- C:\Documents And Settings\LocalService\Local Settings\Temp\{E9C1E1AC-C9B2-4c85-94DE-9C1518918D02}.tlb [3596]
O61 - LFC:Last File Created 16/01/2012 - 14:32:02 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Backup\backup.dat [614]
O61 - LFC:Last File Created 16/01/2012 - 14:32:02 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Backup\userinit.exe.117c65cb6109b4a65a5f9bcc2027c463.e74ddb12188c2ff57a78624dbf7332fc.aawbackup [26628]
O61 - LFC:Last File Created 16/01/2012 - 14:32:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\statistics.dat [664279]
O61 - LFC:Last File Created 16/01/2012 - 14:44:13 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{62E2C08D-67EA-47C9-9ECE-6FA98E562587}.suspic [163280]
O61 - LFC:Last File Created 16/01/2012 - 15:23:15 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\License\guid.dat [72]
O61 - LFC:Last File Created 16/01/2012 - 15:23:16 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\settings.dat [82409]
O61 - LFC:Last File Created 16/01/2012 - 15:37:54 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityCenterFirewallBypass.zip [757]
O61 - LFC:Last File Created 16/01/2012 - 15:37:54 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\MicrosoftWindowsSecurityInternetExplorer.zip [732]
O61 - LFC:Last File Created 16/01/2012 - 15:37:54 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Opera\Opera\profile\global.dat [0]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\Bots.sbe [101]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\Cookies.sbe [0]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\FileExt.sbe [0]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\Links.sbe [0]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\Single.sbe [0]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\SystemInternals.sbe [126]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes\WaitFor.sbe [0]
O61 - LFC:Last File Created 16/01/2012 - 15:37:58 ---A- C:\Documents And Settings\Invité\ntuser.dat [5767168]
O61 - LFC:Last File Created 16/01/2012 - 15:38:44 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\RegGS2-Global.reg [86]
O61 - LFC:Last File Created 16/01/2012 - 15:46:56 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\ZHPDiag2.exe [3900757]
O61 - LFC:Last File Created 16/01/2012 - 16:05:02 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\Windows Firewall-Global.reg [7252]
O61 - LFC:Last File Created 16/01/2012 - 16:08:11 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\extensions.sqlite [393216]
O61 - LFC:Last File Created 16/01/2012 - 16:08:22 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\search.json [15533]
O61 - LFC:Last File Created 16/01/2012 - 16:08:26 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\places.sqlite-shm [32768]
O61 - LFC:Last File Created 16/01/2012 - 16:08:26 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\urlclassifierkey3.txt [154]
O61 - LFC:Last File Created 16/01/2012 - 16:08:36 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\downloads.sqlite [65536]
O61 - LFC:Last File Created 16/01/2012 - 16:08:41 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\places.sqlite-wal [329632]
O61 - LFC:Last File Created 16/01/2012 - 16:08:56 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\urlclassifier.pset [1375034]
O61 - LFC:Last File Created 16/01/2012 - 16:08:56 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\urlclassifier3.sqlite [49262592]
O61 - LFC:Last File Created 16/01/2012 - 16:09:05 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\pluginreg.dat [18400]
O61 - LFC:Last File Created 16/01/2012 - 16:09:16 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\prefs.js [65578]
O61 - LFC:Last File Created 16/01/2012 - 16:09:23 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\sessionstore.js [484]
O61 - LFC:Last File Created 16/01/2012 - 16:09:23 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Cooliris\ac1d2fa0-23c7-074b-894a-682e7da28a07\ua\br_log.pb.1326726563515 [409]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\bookmarkbackups\bookmarks-2012-01-16.json [533552]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\cert8.db [360448]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\flashgot.log.bak [2155552]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\key3.db [16384]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\localstore.rdf [55287]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\Cache\_CACHE_001_ [16384]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\Cache\_CACHE_002_ [4096]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\Cache\_CACHE_003_ [1024]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\Cache\_CACHE_MAP_ [8468]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\OfflineCache\index.sqlite [262144]
O61 - LFC:Last File Created 16/01/2012 - 16:09:24 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\startupCache\startupCache.4.little [783155]
O61 - LFC:Last File Created 16/01/2012 - 16:15:01 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\Log.db [113664]
O61 - LFC:Last File Created 16/01/2012 - 16:22:59 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\db1cb3104944bbb94-c87c20d7.dat [1046952]
O61 - LFC:Last File Created 16/01/2012 - 16:27:30 ---A- C:\Documents And Settings\Ken Hutchinson\Recent\FixDwndp.log.lnk [1059]
O61 - LFC:Last File Created 16/01/2012 - 16:27:31 ---A- C:\Documents And Settings\Ken Hutchinson\Recent\Symantec removal tool.lnk [784]
O61 - LFC:Last File Created 16/01/2012 - 16:29:18 ----- C:\Documents And Settings\Ken Hutchinson\Local Settings\Historique\History.IE5\index.dat [327680]
O61 - LFC:Last File Created 16/01/2012 - 16:30:50 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{D3D4BC0C-4056-11E1-977A-0013D4BC8042}.dat [3584]
O61 - LFC:Last File Created 16/01/2012 - 16:30:50 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{1110C18E-4057-11E1-977A-0013D4BC8042}.dat [3584]
O61 - LFC:Last File Created 16/01/2012 - 16:30:50 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Last Active\{1110C18F-4057-11E1-977A-0013D4BC8042}.dat [4608]
O61 - LFC:Last File Created 16/01/2012 - 16:54:05 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\00000026 [793]
O61 - LFC:Last File Created 16/01/2012 - 16:54:05 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\chest\index.xml [14944]
O61 - LFC:Last File Created 16/01/2012 - 16:54:07 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{402A9F4A-1BEA-4A42-8042-FB4E964D03E2}.suspic [486]
O61 - LFC:Last File Created 16/01/2012 - 16:54:32 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\FileSystemShield.txt [32010]
O61 - LFC:Last File Created 16/01/2012 - 16:54:32 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\spool\suspic\{D17A65A6-1B13-47D9-9668-459DACB676DC}.suspic [526]
O61 - LFC:Last File Created 16/01/2012 - 17:00:51 ---A- C:\Documents And Settings\Ken Hutchinson\Recent\folder.png.lnk [706]
O61 - LFC:Last File Created 16/01/2012 - 17:00:51 ---A- C:\Documents And Settings\Ken Hutchinson\Recent\html.lnk [551]
O61 - LFC:Last File Created 16/01/2012 - 17:15:09 ---A- C:\Documents And Settings\Ken Hutchinson\Local Settings\Temp\lfcontext.txt [24]
O61 - LFC:Last File Created 16/01/2012 - 17:23:03 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\db1c72c2403c751ac-74050250.dat [8365920]
O61 - LFC:Last File Created 16/01/2012 - 17:28:28 ---A- C:\Documents And Settings\All Users\Bureau\MBRCheck.lnk [673]
O61 - LFC:Last File Created 16/01/2012 - 17:28:28 ---A- C:\Documents And Settings\All Users\Bureau\ZHPDiag.lnk [666]
O61 - LFC:Last File Created 16/01/2012 - 17:28:28 ---A- C:\Documents And Settings\All Users\Bureau\ZHPFix.lnk [661]
O61 - LFC:Last File Created 16/01/2012 - 17:28:28 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ZHP\ZHPDiag.lnk [678]
O61 - LFC:Last File Created 16/01/2012 - 17:28:33 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\URL.db [14029824]
O61 - LFC:Last File Created 16/01/2012 - 17:32:31 ---A- C:\Documents And Settings\All Users\Application Data\NVIDIA\Updatus\updtConfig.xml [2468]
O61 - LFC:Last File Created 16/01/2012 - 17:34:49 ---A- C:\Documents And Settings\All Users\Application Data\Alwil Software\Avast5\report\BehaviorShield.txt [68238450]
O61 - LFC:Last File Created 16/01/2012 - 17:36:40 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\ProcCache.sbc [31760]
O61 - LFC:Last File Created 16/01/2012 - 17:37:27 ---A- C:\Documents And Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2\RegUS1-Ken Hutchinson.reg [534]
O61 - LFC:Last File Created 16/06/2031 - 23:28:04 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\nag.ng [16]
O61 - LFC:Last File Created 16/06/2031 - 23:28:16 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\reminderfox\reminderfox.ics [985]
O61 - LFC:Last File Created 16/06/2031 - 23:28:16 ---A- C:\Documents And Settings\Ken Hutchinson\Application Data\Mozilla\Firefox\Profiles\63lyuoo9.default\reminderfox\reminderfox.ics.bak1 [985]
O61 - LFC:Last File Created 20/08/2008 - 14:58:56 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\NHELPER.EX_ [40653]
O61 - LFC:Last File Created 28/03/2007 - 06:08:58 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\DIGCORE.EX_ [842500]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\Netsetup\stub.ex_ [200704]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\Windows System Drivers\HP\FRA\NT_Win2000\HPLTLNK.EX_ [19541]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\Windows System Drivers\HP\FRA\NT_Win2000\hpltcol1.ex_ [52424]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\Windows System Drivers\HP\FRA\Win9X\HPLOTCHG.EX_ [19819]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\Windows System Drivers\HP\FRA\Win9X\HPLTLNK.EX_ [23294]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\support\aw\_inst32i.ex_ [290586]
O61 - LFC:Last File Created 30/10/2006 - 19:59:10 ---A- C:\Documents And Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\AUTOCAD\vve\_inst32i.ex_ [320411]
O61 - LFC:Last File Created 30/12/1899 - 12:29:51 -SHA- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\IETldCache\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 14:23:12 -SHA- C:\Documents And Settings\LocalService\IETldCache\index.dat [262144]
O61 - LFC:Last File Created 30/12/1899 - 14:23:20 -SHA- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft\Credentials\S-1-5-21-1229272821-1220945662-725345543-1004\Credentials [378]
O61 - LFC:Last File Created 30/12/1899 - 14:23:32 -SHA- C:\Documents And Settings\Ken Hutchinson\Local Settings\Historique\History.IE5\MSHist012012011620120117\index.dat [32768]
O61 - LFC:Last File Created 30/12/1899 - 14:26:58 -SHA- C:\Documents And Settings\LocalService\Local Settings\Temp\Cookies\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 14:26:58 -SHA- C:\Documents And Settings\LocalService\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\index.dat [32768]
O61 - LFC:Last File Created 30/12/1899 - 14:26:58 -SHA- C:\Documents And Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 14:30:51 --HA- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 14:30:51 --HA- C:\Documents And Settings\postgres.CHAZAL-EDBC611A\NtUser.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 14:31:24 --HA- C:\Documents And Settings\Administrateur\NtUser.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 14:31:24 --HA- C:\Documents And Settings\All Users\ntuser.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 14:31:24 --HA- C:\Documents And Settings\Invité\NtUser.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 14:31:24 --HA- C:\Documents And Settings\Session rapide\NtUser.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 14:31:24 --HA- C:\Documents And Settings\postgres\NtUser.dat.LOG [1024]
O61 - LFC:Last File Created 30/12/1899 - 15:37:58 --HA- C:\Documents And Settings\Administrateur\ntuser.dat [5242880]
O61 - LFC:Last File Created 30/12/1899 - 15:37:58 --HA- C:\Documents And Settings\Session rapide\NTUSER.DAT [5505024]
O61 - LFC:Last File Created 30/12/1899 - 16:29:16 -SHA- C:\Documents And Settings\Ken Hutchinson\IECompatCache\index.dat [884736]
O61 - LFC:Last File Created 30/12/1899 - 16:29:16 -SHA- C:\Documents And Settings\Ken Hutchinson\IETldCache\index.dat [262144]
O61 - LFC:Last File Created 30/12/1899 - 16:29:16 -SHA- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 16:29:16 -SHA- C:\Documents And Settings\Ken Hutchinson\PrivacIE\index.dat [1261568]
O61 - LFC:Last File Created 30/12/1899 - 16:29:18 -SHA- C:\Documents And Settings\Ken Hutchinson\Cookies\index.dat [49152]
O61 - LFC:Last File Created 30/12/1899 - 19:59:27 -SHA- C:\Documents And Settings\NetworkService\Cookies\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 19:59:27 -SHA- C:\Documents And Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 20:04:38 RSH-- C:\Documents And Settings\Ken Hutchinson\ciiteb.exe [266240]
O61 - LFC:Last File Created 30/12/1899 - 20:05:02 -SHA- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\99fd74b2\@ [2048]
O61 - LFC:Last File Created 30/12/1899 - 20:05:02 -SHA- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\99fd74b2\X [57344]
O61 - LFC:Last File Created 30/12/1899 - 20:14:13 -S-A- C:\Documents And Settings\Ken Hutchinson\Application Data\Microsoft\CryptnetUrlCache\Content\A8FABA189DB7D25FBA7CAC806625FD30 [96124]
O61 - LFC:Last File Created 30/12/1899 - 20:14:13 -S-A- C:\Documents And Settings\Ken Hutchinson\Application Data\Microsoft\CryptnetUrlCache\MetaData\A8FABA189DB7D25FBA7CAC806625FD30 [124]
O61 - LFC:Last File Created 30/12/1899 - 23:21:09 -SHA- C:\Documents And Settings\Ken Hutchinson\Application Data\Microsoft\Internet Explorer\UserData\index.dat [16384]
O61 - LFC:Last File Created 30/12/1899 - 23:21:09 -SHA- C:\Documents And Settings\Ken Hutchinson\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [16384]
O61 - LFC:Last File Created 30/12/2006 - 06:16:10 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSNCLI.EX_ [11058961]
O61 - LFC:Last File Created 30/12/2006 - 06:18:52 ---A- C:\Documents And Settings\Ken Hutchinson\Bureau\A ranger\win xp\I386\MSNSUSII.EX_ [865347]
~ Scan Files in 21mn 52s



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn 00s



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\Aavmker4.sys (Aavmker4) .(.AVAST Software - avast! Base Kernel-Mode Device Driver for W.) - LEGACY_AAVMKER4
O64 - Services: CurCS - 09/07/2010 - C:\WINDOWS\system32\DRIVERS\AegisP.sys (AegisP) .(.Cisco Systems, Inc. - IEEE 802.1X Protocol Driver.) - LEGACY_AEGISP
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswMon2.sys (aswMon2) .(.AVAST Software - avast! File System Filter Driver for Window.) - LEGACY_ASWMON2
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswRdr.sys (aswRdr) .(.AVAST Software - avast! TDI RDR Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 30/09/2007 - C:\WINDOWS\system32\DRIVERS\atksgt.sys - atksgt (atksgt) .(...) - LEGACY_ATKSGT
O64 - Services: CurCS - 14/03/2009 - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe (Autodesk Licensing Service) .(.Autodesk, Inc. - System Level Service Utility.) - LEGACY_AUTODESK_LICENSING_SERVICE
O64 - Services: CurCS - 28/11/2011 - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (avast! Antivirus) .(.AVAST Software - avast! Service.) - LEGACY_AVAST!_ANTIVIRUS
O64 - Services: CurCS - 18/01/2007 - C:\WINDOWS\system32\DRIVERS\AvgArCln.sys (AvgArCln) .(.GRISOFT, s.r.o. - AVG7 Clean Driver.) - LEGACY_AVGARCLN
O64 - Services: CurCS - 05/06/2009 - C:\WINDOWS\system32\Drivers\avgldx86.sys (AvgLdx86) .(.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) - LEGACY_AVGLDX86
O64 - Services: CurCS - 05/06/2009 - C:\WINDOWS\system32\Drivers\avgmfx86.sys (AvgMfx86) .(.GRISOFT, s.r.o. - AVG Resident Shield Minifilter Driver.) - LEGACY_AVGMFX86
O64 - Services: CurCS - 05/06/2009 - C:\WINDOWS\system32\Drivers\avgtdix.sys (AvgTdiX) .(.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) - LEGACY_AVGTDIX
O64 - Services: CurCS - 31/01/2007 - C:\WINDOWS\system32\DRIVERS\avgarkt.sys (AVG Anti-Rootkit) .(.GRISOFT, s.r.o. - AVG Anti-Rootkit Driver.) - LEGACY_AVG_ANTI-ROOTKIT
O64 - Services: CurCS - 02/09/2009 - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe (BlueSoleilCS) .(.IVT Corporation - Bluetooth Application.) - LEGACY_BLUESOLEILCS
O64 - Services: CurCS - 02/09/2009 - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe (BsHelpCS) .(.IVT Corporation - Bluetooth Application.) - LEGACY_BSHELPCS
O64 - Services: CurCS - 22/11/2006 - C:\Program Files\IVT Corporation\BlueSoleil\Device\Win2k\BTNetFilter.sys (BTNetFilter) .(.IVT Corporation. - Bluetooth Network Filter Driver.) - LEGACY_BTNETFILTER
O64 - Services: CurCS - ??\??\???? - (COMSysApp) .(. - .) - LEGACY_COMSYSAPP
O64 - Services: CurCS - 27/03/2009 - C:\WINDOWS\system32\drivers\cpuz132_x32.sys (cpuz132) .(.Windows ® Codename Longhorn DDK provider - CPUID Driver.) - LEGACY_CPUZ132
O64 - Services: CurCS - ??\??\???? - (DcomLaunch) .(. - .) - LEGACY_DCOMLAUNCH
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\dmadmin.exe (dmadmin) .(.Microsoft Corp., Veritas Software - Processus du service Gestionnaire de disque.) - LEGACY_DMADMIN
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT
O64 - Services: CurCS - 05/08/2004 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD
O64 - Services: CurCS - 21/07/2011 - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys (driverhardwarev2) .(.CybelSoft - Driver NT Ma-Config.com.) - LEGACY_DRIVERHARDWAREV2
O64 - Services: CurCS - 14/06/2006 - C:\WINDOWS\system32\drivers\EIO.sys (EIO) .(.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) - LEGACY_EIO
O64 - Services: CurCS - 17/09/2008 - C:\WINDOWS\system32\DRIVERS\ENTECH.sys (ENTECH) .(.EnTech Taiwan - Pas de description.) - LEGACY_ENTECH
O64 - Services: CurCS - 03/04/1996 - C:\WINDOWS\system32\giveio.sys - giveio (giveio) .(...) - LEGACY_GIVEIO
O64 - Services: CurCS - 18/11/2007 - C:\WINDOWS\system32\DRIVERS\gmer.sys (gmer) .(.GMER - GMER Driver http://www.gmer.net.) - LEGACY_GMER
O64 - Services: CurCS - 29/08/2008 - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (GoogleDesktopManager-061008-081103) .(.Google - Google Desktop.) - LEGACY_GOOGLEDESKTOPMANAGER-061008-081103
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\msgpc.sys (Gpc) .(.Microsoft Corporation - MS General Packet Classifier.) - LEGACY_GPC
O64 - Services: CurCS - 24/02/2010 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE
O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT
O64 - Services: CurCS - 04/09/2002 - C:\Program Files\Iomega\System32\AppServices.exe (Iomega App Services) .(.Iomega Corporation - AppServices.) - LEGACY_IOMEGA_APP_SERVICES
O64 - Services: CurCS - 03/10/2011 - C:\Program Files\Java\jre6\bin\jqs.exe (JavaQuickStarterService) .(.Sun Microsystems, Inc. - Java™ Quick Starter Service.) - LEGACY_JAVAQUICKSTARTERSERVICE
O64 - Services: CurCS - 02/09/2011 - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Ad-Aware Service) .(.Lavasoft Limited - Ad-Aware Service Application.) - LEGACY_LAVASOFT_AD-AWARE_SERVICE
O64 - Services: CurCS - 16/06/2011 - C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys - Lavasoft helper driver (Lavasoft Kernexplorer) .(...) - LEGACY_LAVASOFT_KERNEXPLORER
O64 - Services: CurCS - 12/08/2010 - C:\WINDOWS\system32\DRIVERS\Lbd.sys (Lbd) .(.Lavasoft AB - Boot Driver.) - LEGACY_LBD
O64 - Services: CurCS - 28/10/2011 - C:\WINDOWS\system32\Drivers\LFsys.sys (LFSys) .(.© Everstrike Software - Lock Folder XP Filter Driver.) - LEGACY_LFSYS
O64 - Services: CurCS - 22/02/2010 - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe (LightScribeService) .(.Hewlett-Packard Company - LightScribe Service.) - LEGACY_LIGHTSCRIBESERVICE
O64 - Services: CurCS - 30/09/2007 - C:\WINDOWS\system32\DRIVERS\lirsgt.sys - lirsgt (lirsgt) .(...) - LEGACY_LIRSGT
O64 - Services: CurCS - 25/11/2011 - C:\Program Files\ma-config.com\maconfservice.exe (maconfservice) .(.CybelSoft - Service de détection matériel.) - LEGACY_MACONFSERVICE
O64 - Services: CurCS - 22/11/2004 - C:\Program Files\COMMON~1\Motive\MRENDIS5.sys (MRENDIS5) .(.Motive, Inc. - Motive NDIS 5.0 Protocol Driver.) - LEGACY_MRENDIS5
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\DRIVERS\netbt.sys - NetBIOS sur TCP/IP (NetBT) .(...) - LEGACY_NETBT
O64 - Services: CurCS - 23/09/2011 - C:\WINDOWS\system32\drivers\nhcDriver.sys (nhcDriverDevice) .(.pBUS-167 Software - Notebook Hardware Control (NHC) - Homepage, Downloads, Help, Docu, FAQ, News - www.NotebookHardwareControl.net - Notebook Hardware Control Device Driver.) - LEGACY_NHCDRIVERDEVICE
O64 - Services: CurCS - 01/06/2008 - C:\WINDOWS\system32\drivers\npf.sys (NPF) .(.CACE Technologies - npf.sys (NT5/6 x86) Kernel Driver.) - LEGACY_NPF
O64 - Services: CurCS - 08/10/2011 - C:\WINDOWS\system32\nvsvc32.exe (NVSvc) .(.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 285.5.) - LEGACY_NVSVC
O64 - Services: CurCS - 08/10/2011 - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (nvUpdatusService) .(.NVIDIA Corporation - NVIDIA Settings Update Manager.) - LEGACY_NVUPDATUSSERVICE
O64 - Services: CurCS - 30/04/2009 - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe - Sony Ericsson OMSI download service (OMSI download service) .(...) - LEGACY_OMSI_DOWNLOAD_SERVICE
O64 - Services: CurCS - ??\??\???? - (pgsql-8.3) .(. - .) - LEGACY_PGSQL-8.3
O64 - Services: CurCS - 21/10/2011 - C:\WINDOWS\system32\PnkBstrA.exe - PnkBstrA (PnkBstrA) .(...) - LEGACY_PNKBSTRA
O64 - Services: CurCS - ??\??\???? - (RpcSs) .(. - .) - LEGACY_RPCSS
O64 - Services: CurCS - 13/04/2008 - C:\WINDOWS\system32\lsass.exe (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS
O64 - Services: CurCS - 13/11/2007 - C:\WINDOWS\system32\DRIVERS\secdrv.sys (Secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 10/08/2005 - C:\WINDOWS\system32\drivers\sfdrv01.sys (sfdrv01) .(.Protection Technology - StarForce Protection Environment Driver.) - LEGACY_SFDRV01
O64 - Services: CurCS - 16/05/2005 - C:\WINDOWS\system32\drivers\sfhlp02.sys (sfhlp02) .(.Protection Technology - StarForce Protection Helper Driver.) - LEGACY_SFHLP02
O64 - Services: CurCS - 03/11/2005 - C:\WINDOWS\system32\drivers\sfvfs02.sys (sfvfs02) .(.Protection Technology - StarForce Protection VFS Driver.) - LEGACY_SFVFS02
O64 - Services: CurCS - 29/06/2011 - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe (Sony Ericsson PCCompanion) .(.Avanquest Software - Sony Ericsson PCCompanion Service.) - LEGACY_SONY_ERICSSON_PCCOMPANION
O64 - Services: CurCS - 18/03/2011 - C:\WINDOWS\system32\speedfan.sys (speedfan) .(.Almico Software - SpeedFan x32 Driver.) - LEGACY_SPEEDFAN
O64 - Services: CurCS - ??\??\???? - C:\WINDOWS\system32\Drivers\sptd.sys - sptd (sptd) .(...) - LEGACY_SPTD
O64 - Services: CurCS - ??\??\???? - (TermService) .(. - .) - LEGACY_TERMSERVICE
O64 - Services: CurCS - 14/11/2008 - C:\Program Files\Fichiers communs\Realtime Soft\UltraMonMirrorDrv\x32\UltraMonUtility.sys (UltraMonUtility) .(.Realtime Soft Ltd - UltraMon Utility Driver.) - LEGACY_ULTRAMONUTILITY
O64 - Services: CurCS - 27/02/2008 - C:\WINDOWS\system32\DRIVERS\wlndis50.sys (WLNdis50) .(.Pas de propriétaire - WLAN NDIS 5.0 User Mode Control Driver.) - LEGACY_WLNDIS50
O64 - Services: CurCS - 11/02/2009 - C:\Program Files\TRENDnet\TEW-648UB\WLSVC.exe (WLSVC) .(.Pas de propriétaire - WlanSvc.) - LEGACY_WLSVC
O64 - Services: CurCS - 09/11/2008 - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe (YahooAUService) .(.Yahoo! Inc. - AutoUpater Service Module.) - LEGACY_YAHOOAUSERVICE
O64 - Services: CurCS - 24/09/2002 - C:\Program Files\Iomega\AutoDisk\ADService.exe (_IOMEGA_ACTIVE_DISK_SERVICE_) .(.Iomega Corporation - Active Disk Service.) - LEGACY__IOMEGA_ACTIVE_DISK_SERVICE_
~ Scan Services in 00mn 04s



---\\ Liste des fichiers non signés (O65)
O65 - LUF:27/02/2008 (.Pas de propriétaire - Windows ® DDK driver.) (1.0.0.50) - c:\windows\system32\drivers\WLNdis50.sys
~ Scan Sigcheck in 25mn 40s



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\PROGRAM FILES\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\PROGRAM FILES\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe
~ Scan Keys in 00mn 00s



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Opera.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\PROGRAM FILES\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Opera.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\PROGRAM FILES\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Opera.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\PROGRAM FILES\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Opera.exe
~ Scan Keys in 00mn 00s



---\\ Search Browser Infection (O69)
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.cbid", "HL");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.default-channel-url-mask", "http://www.ask.com/web?q={query}&o={o}&l={l}&qsrc={qsrc}");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.fresh-install", false);
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.l", "dis");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.last-config-req", "1278451219765");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.locale", "fr_FR");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.o", "15673");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.options-lang", "fr");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.options-locale", "UK");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.overlay-reloaded-using-restart", true);
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.qsrc", "2871");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.r", "4");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("extensions.asktb.search-suggestions-enabled", true);
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("surfcanyon.fractions", "0.0_0.0\r\n");
O69 - SBI: prefs.js [Ken Hutchinson - 63lyuoo9.default] user_pref("surfcanyon.last_checked_ts", "1267011995800");
O69 - SBI: SearchScopes [HKCU] {0633EE93-1111-472f-A0FF-E1416B8B2E3B} - (Google Customized Web Search) - Gooofullsearch.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - Bing
O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Bing) - Bing
O69 - SBI: SearchScopes [HKCU] {6552C7DD-90A4-4387-B795-F8F96747DE19} - (ICQ Search) - Download ICQ for mobile – Free SMS to your friends!
O69 - SBI: SearchScopes [HKCU] {7DBBEDD2-0FA8-421E-9CD2-4FED9984658B} - (Google) - Google
O69 - SBI: SearchScopes [HKCU] {A38C34D2-AF7B-4D75-BD55-9BA2CA830047} - (Wikipédia (fr)) - Wikipédia, l'encyclopédie libre
~ Scan Keys in 00mn 00s



---\\ Crack & Keygen Files (O82)
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.95ef6cc1e6e2f666c5cc3b534d75122c.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.e2ff16d1b13bcce72bfd442439bb2.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\Map info Professional v8.0 Cracked.rar
C:\Documents and Settings\Ken Hutchinson\Mes documents\Reason\Propellerheads - Reason 3.0 Keygenerator + REG Files (RISE).rar
C:\Program Files\eMule\Incoming\key pour covadis\Keygen COVADIS 10.rar
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\keygen texas calculatem crack(osloskop.net)(1).zip
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\SHSetup.exe
C:\Program Files\eMule\Incoming\WinACE WinRAR WinZip WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\Winzip Winiso Password & Cracker.rar
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.95ef6cc1e6e2f666c5cc3b534d75122c.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.e2ff16d1b13bcce72bfd442439bb2.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\Map info Professional v8.0 Cracked.rar
C:\Documents and Settings\Ken Hutchinson\Mes documents\Reason\Propellerheads - Reason 3.0 Keygenerator + REG Files (RISE).rar
C:\Program Files\eMule\Incoming\key pour covadis\Keygen COVADIS 10.rar
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\keygen texas calculatem crack(osloskop.net)(1).zip
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\SHSetup.exe
C:\Program Files\eMule\Incoming\WinACE WinRAR WinZip WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\Winzip Winiso Password & Cracker.rar
F:\Maxtor 500\Mes téléchargements_270909\Programmes\Gros Utilitaires\MapInfo 8.0\Map info Professional v8.0 Cracked.rar
F:\Maxtor 500\Mes téléchargements_270909\Programmes\Petits utilitaires\RARPAsswordCracker\rpc412_setup.exe
I:\Sauvegarde Maxtor 500 31122010\Maxtor 500\décompressions\Map info Professional v8.0 Cracked.rar
I:\Sauvegarde Maxtor 500 31122010\Maxtor 500\Mes téléchargements_270909\Programmes\Gros Utilitaires\MapInfo 8.0\Map info Professional v8.0 Cracked.rar
~ Scan Files in 05mn 24s



---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496]
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824]
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464]
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576]
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488]
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040]
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952]
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504]
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840]
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096]
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792]
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144]
O83 - Search Svchost Services: Nla (Nla) . (...) -- C:\WINDOWS\system32\mswsock.dll [247808]
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576]
O83 - Search Svchost Services: icm10blk (icm10blk) . (...) -- C:\WINDOWS\system32\PSSdk23.dll [0]
O83 - Search Svchost Services: ichaud (ichaud) . (.Iomega - Iomega® Active Disk™.) -- C:\WINDOWS\system32\rslinx.dll [5120]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248]
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\system32\seclogon.dll [18944]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\system32\ipnathlp.dll [332800]
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows™.) -- C:\WINDOWS\system32\tapisrv.dll [249856]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408]
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680]
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400]
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136]
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440]
~ Scan Services in 00mn 01s



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.BF791E4EF90D56028533B2A7627CB599] [SPRF][17/03/2011] (...) -- C:\Documents and Settings\All Users\Application Data\bdinstall.bin [1459819]
[MD5.5D913E5FD12E344EA0132358BDE24F59] [SPRF][06/02/2008] (...) -- C:\Documents and Settings\All Users\Application Data\ezsid.dat [32]
[MD5.CBF470B77B2DB2F25C56E05CE391F18A] [SPRF][24/12/2011] (.Avanquest Software - IElevator Class Container.) -- C:\Documents and Settings\All Users\Application Data\hpe106.dll [148736]
[MD5.E2791F044E9B77AB653160C63CF88034] [SPRF][25/01/2007] (...) -- C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\fusioncache.dat [138]
[MD5.A719B9EE6116B496F4000C0B1311EA13] [SPRF][20/10/2011] (...) -- C:\Documents and Settings\Ken Hutchinson\Application Data\PnkBstrK.sys [22328]
[MD5.914B2F4771AA209244625ED923CCAC9E] [SPRF][13/10/2009] (...) -- C:\Documents and Settings\Ken Hutchinson\Application Data\wklnhst.dat [972]
[MD5.BBF5B917B98607EBB0C688D2DAE07863] [SPRF][16/01/2012] (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Ken Hutchinson\Bureau\ZHPDiag2.exe [3900757]
[MD5.B2D0B3FE6F8958BC5C4D565FF9D93FD3] [SPRF][08/11/2011] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\AccessibleMarshal.dll [12288]
[MD5.B140014439012AF93613C1B2111ECDA3] [SPRF][08/11/2011] (.Pas de propriétaire - ArticleManager DLL.) -- C:\Program Files\ArticleManager.dll [37888]
[MD5.F776568714C3C7D1F0B6C91057320F8E] [SPRF][08/09/2010] (...) -- C:\Program Files\CleanUp.exe [110592]
[MD5.14866D7400BE01A08C0930229C5F6F84] [SPRF][08/11/2011] (.Pas de propriétaire - UCID DLL.) -- C:\Program Files\DID.dll [28672]
[MD5.0BE50B182522B79B83D765C15D261DD9] [SPRF][21/12/2011] (.Pas de propriétaire - DM DLL.) -- C:\Program Files\DM.dll [130560]
[MD5.47A07AF9B86BBF18D91749EA3023D4F8] [SPRF][08/11/2011] (.Mozilla Foundation - NSS freebl Library.) -- C:\Program Files\freebl3.dll [239616]
[MD5.B2EA0CDF32399C04240C31B195751E86] [SPRF][01/12/2010] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\gkgfx.dll [90112]
[MD5.61B9E78257B5B753EC86213075160DF2] [SPRF][08/11/2011] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\IA2Marshal.dll [27136]
[MD5.E810E5138DFC16F3C36DE49721BBEB8C] [SPRF][08/11/2011] (...) -- C:\Program Files\js3250.dll [842752]
[MD5.DD64C9008C440AF47C60863E249BEBFA] [SPRF][01/12/2010] (...) -- C:\Program Files\libeay32.dll [679936]
[MD5.B9030D821E099C79DE1C9125B790E2DA] [SPRF][01/12/2010] (.Microsoft Corporation - MFCDLL Shared Library - Retail Version.) -- C:\Program Files\mfc90u.dll [1162744]
[MD5.F3E555E877C942863E6DFC7EA6880E85] [SPRF][01/12/2010] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\mozz.dll [69632]
[MD5.17D9C1DB8FC4E195F5B4CA52C49C162B] [SPRF][23/06/2010] (.Sample Corporation - User-Generated Microsoft ® C/C++ Runtime Library.) -- C:\Program Files\MSLUP60.dll [393216]
[MD5.537BEC88BC9A1AFD4C1B73D21F552507] [SPRF][23/06/2010] (.Sample Corporation - User-Generated Microsoft ® C/C++ Runtime Library.) -- C:\Program Files\MSLURT.dll [237568]
[MD5.6DE5C66E434A9C1729575763D891C6C2] [SPRF][01/12/2010] (.Microsoft Corporation - Microsoft® C++ Runtime Library.) -- C:\Program Files\msvcp90.dll [568832]
[MD5.E7D91D008FE76423962B91C43C88E4EB] [SPRF][01/12/2010] (.Microsoft Corporation - Microsoft® C Runtime Library.) -- C:\Program Files\msvcr90.dll [655872]
[MD5.8DBBBCA8ECF227851266CD17E534EAE9] [SPRF][08/11/2011] (.Mozilla Foundation - NSPR Library.) -- C:\Program Files\nspr4.dll [154624]
[MD5.4EFED1B6E98454AFC773C9A84D26EA06] [SPRF][08/11/2011] (.Mozilla Foundation - NSS Base Library.) -- C:\Program Files\nss3.dll [625664]
[MD5.FDD239A85AD5738C4CD354DCFCA80F35] [SPRF][08/11/2011] (.Mozilla Foundation - NSS Builtin Trusted Root CAs.) -- C:\Program Files\nssckbi.dll [324608]
[MD5.2D5367A8D3AC6B16C330FF08DE59FB8D] [SPRF][08/11/2011] (.Mozilla Foundation - Legacy Database Driver.) -- C:\Program Files\nssdbm3.dll [88064]
[MD5.31AE5FC4E85A436A76377F5B1BF67317] [SPRF][08/11/2011] (.Mozilla Foundation - NSS Utility Library.) -- C:\Program Files\nssutil3.dll [67584]
[MD5.C0B9FC59475B295426A28C9D6E503D8B] [SPRF][16/11/2011] (.Pas de propriétaire - BrowserComponent DLL.) -- C:\Program Files\PGBrowser.dll [154624]
[MD5.0969E884ABBFC35A2645E2C0DBDF0970] [SPRF][08/11/2011] (...) -- C:\Program Files\PGDetector.exe [114688]
[MD5.C875A9819403F9440C6B03278AE58764] [SPRF][01/12/2010] (.Pas de propriétaire - CxImageDll DLL.) -- C:\Program Files\PGImageDll.dll [434176]
[MD5.F56AF40312C4734F3292E4F9E4044F60] [SPRF][08/11/2011] (.Pas de propriétaire - WMIRetriever DLL.) -- C:\Program Files\PGWMIRetriever.dll [33280]
[MD5.1CFB32490DEEB208C7769491715D621D] [SPRF][08/11/2011] (.Mozilla Foundation - PLC Library.) -- C:\Program Files\plc4.dll [14848]
[MD5.B337CB0ED3F15919F4CB77BDB3F8E875] [SPRF][08/11/2011] (.Mozilla Foundation - PLDS Library.) -- C:\Program Files\plds4.dll [11776]
[MD5.50A7896F3E84BC5AC359C4060C182BFC] [SPRF][08/11/2011] (.Mozilla Corporation - Plugin Container for Namoroka.) -- C:\Program Files\plugin-container.exe [9728]
[MD5.2B8D988ADA29EA548A43663FE783E65E] [SPRF][24/12/2011] (.Pas de propriétaire - PMU MFC Application.) -- C:\Program Files\PMU.exe [3046912]
[MD5.472F7225119ED7C6F34EA15CA445B80F] [SPRF][08/11/2011] (.Mozilla Foundation - NSS S/MIME Library.) -- C:\Program Files\smime3.dll [83968]
[MD5.48A9F478CFB3CDF13438483F849D30B3] [SPRF][08/11/2011] (.Mozilla Foundation - NSS PKCS #11 Library.) -- C:\Program Files\softokn3.dll [141312]
[MD5.8BEA6251A11D5E12FCA360B80FC5B9DB] [SPRF][08/11/2011] (.sqlite.org - SQLite Database Library.) -- C:\Program Files\sqlite3.dll [473600]
[MD5.6A48EF51893BC78A844A82B0381781B2] [SPRF][08/11/2011] (.Mozilla Foundation - NSS SSL Library.) -- C:\Program Files\ssl3.dll [122880]
[MD5.5EEA698C89F37158F4ABC0F5AE374953] [SPRF][01/12/2010] (...) -- C:\Program Files\ssleay32.dll [147456]
[MD5.677AB59EAC8EDA5027A8F437A216382B] [SPRF][08/11/2011] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\xpcom.dll [12800]
[MD5.CCD62573E6B21A9CC98ADF223AEB2CB5] [SPRF][01/12/2010] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\xpcom_compat.dll [81920]
[MD5.C49654BFB4CA2B59E4A707A29FE81AC2] [SPRF][01/12/2010] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\xpcom_core.dll [430080]
[MD5.AD0E4A13D41F0E488B799A9E6ECEA88A] [SPRF][08/11/2011] (.Mozilla Foundation - Pas de description.) -- C:\Program Files\xul.dll [10193920]
[MD5.B3FA3EE6218FFA2854202350E9A10D60] [SPRF][01/12/2010] (.Pas de propriétaire - zlib data compression library.) -- C:\Program Files\zlib1.dll [59904]
[MD5.18075B2C9F0F300BEE209744A8BEC353] [SPRF][07/12/2004] (...) -- C:\WINDOWS\Downloaded Program Files\bdcore.dll [32]
[MD5.298068536300DA6DC163E394797A7C50] [SPRF][25/05/2006] (...) -- C:\WINDOWS\Downloaded Program Files\bdupd.dll [118784]
[MD5.A9F8AB66D9D05A13843623EE6B92D259] [SPRF][13/04/2007] (.Microsoft - Uno Messenger.) -- C:\WINDOWS\Downloaded Program Files\GAME_UNO1.dll [382344]
[MD5.1CB82F147E9642F8058AF695DBA34125] [SPRF][05/03/2005] (.Autodesk, Inc. - Autodesk i-drop control.) -- C:\WINDOWS\Downloaded Program Files\IDropENU.dll [113784]
[MD5.8DA688046A13090E0ACD1366A5DEF0A6] [SPRF][07/03/2005] (.Autodesk, Inc. - Autodesk i-drop control.) -- C:\WINDOWS\Downloaded Program Files\IDropFRA.dll [114256]
[MD5.1CAB87DE6638846FBF51F32B5D95E482] [SPRF][25/05/2006] (...) -- C:\WINDOWS\Downloaded Program Files\ipsupd.dll [53248]
[MD5.18075B2C9F0F300BEE209744A8BEC353] [SPRF][07/12/2004] (...) -- C:\WINDOWS\Downloaded Program Files\libfn.dll [32]
[MD5.B069B555A00AA026F657AA4FD13AE154] [SPRF][29/05/2003] (.Microsoft Corporation - Zone.com Stats Client for MSN Messenger.) -- C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll [160864]
[MD5.8945CCA5FC4F25168E8B6F401EFAF51F] [SPRF][22/02/2007] (.Microsoft Corporation - Zone.com Stats Client for MSN Messenger.) -- C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll [304544]
[MD5.E661E91B5929632665683222D509D271] [SPRF][28/02/2007] (.Microsoft Corporation - Zone.com Minesweeper Flags for MSN Messenger.) -- C:\WINDOWS\Downloaded Program Files\MineSweeper.dll [130472]
[MD5.1E5CFDF9AEBDD84305A4C8154277A269] [SPRF][28/02/2007] (.Microsoft Corporation - Zone.com Checkers for MSN Messenger.) -- C:\WINDOWS\Downloaded Program Files\msgrchkr.dll [131472]
[MD5.D2FB109C3F0DAAAA4A73E5921656DB3E] [SPRF][20/06/2006] (.Microsoft® Corporation - MSN Photo Upload Tool.) -- C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll [379704]
[MD5.F06A42348DAFD569A82DF4A61F57B8E4] [SPRF][20/06/2006] (.Microsoft® Corporation - MSN Photo Upload Tool.) -- C:\WINDOWS\Downloaded Program Files\PURen-us.dll [117560]
[MD5.732CACA8E848F6E721B093E51FC50B1D] [SPRF][09/01/2007] (.Microsoft® Corporation - Outil MSN Téléchargement de photos.) -- C:\WINDOWS\Downloaded Program Files\PURfr-fr.dll [110592]
~ Scan Files in 00mn 10s



---\\ Scan Additionnel (O88)
Database Version : 8966 - (14/01/2012)
Clés trouvées (Keys found) : 87
Valeurs trouvées (Values found) : 4
Dossiers trouvés (Folders found) : 6
Fichiers trouvés (Files found) : 0

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]:Shell =>Hijack.Shell.Gen
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Toolbar.AskSBar
[HKLM\Software\Classes\AppID\TbCommonUtils.DLL] =>Toolbar.Agent
[HKLM\Software\Classes\AppID\TbHelper.EXE] =>Toolbar.Agent
[HKLM\Software\Classes\TbCommonUtils.CommonUtils] =>Toolbar.Agent
[HKLM\Software\Classes\TbCommonUtils.CommonUtils.1] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbDownloadManager] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbDownloadManager.1] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbPropertyManager] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbPropertyManager.1] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbRequest] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbRequest.1] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbTask] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.TbTask.1] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.ToolbarHelper] =>Toolbar.Agent
[HKLM\Software\Classes\TbHelper.ToolbarHelper.1] =>Toolbar.Agent
[HKLM\Software\Classes\Toolbar3.ContextMenuNotifier] =>Toolbar.Agent
[HKLM\Software\Classes\Toolbar3.ContextMenuNotifier.1] =>Toolbar.Agent
[HKLM\Software\Classes\Toolbar3.CustomInternetSecurityImpl] =>Toolbar.Agent
[HKLM\Software\Classes\Toolbar3.CustomInternetSecurityImpl.1] =>Toolbar.Agent
[HKLM\Software\Classes\Toolbar3.SearchProviderManager] =>Toolbar.Agent
[HKLM\Software\Classes\Toolbar3.SearchProviderManager.1] =>Toolbar.Agent
[HKLM\Software\Classes\URLSearchHook.ToolbarURLSearchHook] =>Toolbar.Agent
[HKLM\Software\Classes\urlsearchhook.toolbarurlsearchhook] =>Adware.Agent
[HKLM\Software\Classes\urlsearchhook.toolbarurlsearchhook.1] =>Adware.Agent
[HKLM\Software\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{0FA32667-9A8A-4E9C-902F-CA3323180003}] =>Adware.SocialSkinz
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{2a42d13c-d427-4787-821b-cf6973855778}] =>Adware.Agent
[HKLM\Software\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}] =>Adware.SocialSkinz
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37F4A335-D085-423e-A425-0370799166FB}] =>Toolbar.AskTBar
[HKLM\Software\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{3d8478aa-7b88-48a9-8bcb-b85d594411ec}] =>Adware.SocialSkinz
[HKLM\Software\Classes\TypeLib\{4509D3CC-B642-4745-B030-645B79522C6D}] =>Toolbar.Conduit
[HKLM\Software\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{4897bba6-48d9-468c-8efa-846275d7701b}] =>Adware.SocialSkinz
[HKLM\Software\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}] =>Adware.SocialSkinz
[HKLM\Software\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}] =>Adware.SocialSkinz
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{6B458F62-592F-4B25-8967-E6A350A59328}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}] =>Adware.SocialSkinz
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.AskSBar
[HKLM\Software\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}] =>Adware.SocialSkinz
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.AskSBar
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.AskSBar
[HKLM\Software\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}] =>Adware.SocialSkinz
[HKLM\Software\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}] =>Adware.SocialSkinz
[HKLM\Software\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}] =>Hijacker.Seeearch
[HKLM\Software\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}] =>Adware.SocialSkinz
[HKLM\Software\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}] =>Adware.SocialSkinz
[HKLM\Software\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}] =>Hijacker.Seeearch
[HKLM\Software\Classes\CLSID\{D433A9D0-8267-40CB-8AD5-24F22FA5373F}] =>Adware.SocialSkinz
[HKLM\Software\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}] =>Adware.SocialSkinz
[HKLM\Software\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}] =>Adware.SocialSkinz
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E2A7BD67-0EAF-497f-B05B-748D7BF3C421}] =>Adware.SPointer
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E2A7BD67-0EAF-497f-B05B-748D7BF3C421}] =>Adware.SPointer
[HKLM\Software\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}] =>Adware. BullseyeToolbar
[HKLM\Software\Classes\TypeLib\{EC4085F2-8DB3-45a6-AD0B-CA289F3C5D7E}] =>Adware.SocialSkinz
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}] =>Trojan.Adclicker
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}] =>Trojan.Adclicker
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}] =>Hijacker.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}] =>Hijacker.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}] =>Adware.SocialSkinz
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}] =>Adware.SocialSkinz
[HKLM\Software\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}] =>Adware.SocialSkinz
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}] =>Adware.SocialSkinz
[HKLM\Software\Classes\Interface\{FCC9CDD3-EFFF-11D1-A9F0-00A0244AC403}] =>Adware.SocialSkinz
[HKLM\Software\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom] =>PUP.OfferBox
[HKCU\Software\Ask.com] =>Toolbar.AskBar
[HKCU\Software\Ask.com] =>Toolbar.AskBarDis
[HKCU\Software\AppDataLow\AskToolbarInfo] =>Toolbar.AskTBar
[HKCU\Software\CToolbar] =>Toolbar.Crawler
[HKLM\Software\CToolbar] =>Toolbar.Crawler
[HKLM\Software\iavatars.com] =>Adware.BHO
[HKCU\Software\OfferBox] =>PUP.OfferBox
[HKCU\Software\PartyGaming] =>Casino.OnlineGames
[HKCU\Software\Spointer] =>Adware.SPointer
[HKLM\Software\Classes\CLSID\{8856F961-340A-11D0-A96B-00C04FD705A2}] =>Adware.Bandoo
[HKLM\SOFTWARE\Microsoft\RFC1156Agent] =>Adware.Bandoo
[HKLM\Software\Messenger Plus!\OpenCandy] =>Adware.OpenCandy
[HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks]:{CA3EB689-8F09-4026-AA10-B9534C691CE0} =>Adware.SocialSkinz
[HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.AskSBar
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.AskSBar
[HKLM\Software\Mozilla\Firefox\Extensions]:offerboxffx@offerbox.com =>PUP.OfferBox
C:\Program Files\OfferBox =>PUP.OfferBox
C:\Documents and Settings\Ken Hutchinson\Application Data\Toolbar4 =>Toolbar.Conduit
C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\AskToolbar =>Toolbar.AskTBar
C:\Documents and Settings\Ken Hutchinson\Local Settings\Application Data\moovida air =>Adware.SPointer
~ Scan Additionnel in 00mn 12s



---\\ Recherche détournement de DNS routeur (O89) (None)

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 14/03/2009 74360 | (Autodesk Licensing Service) . (.Autodesk, Inc..) - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
SR - | Auto 28/11/2011 44768 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
SR - | Auto 02/09/2009 1466476 | (BlueSoleilCS) . (.IVT Corporation.) - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
SR - | Demand 02/09/2009 102503 | (BsHelpCS) . (.IVT Corporation.) - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
SS - | Demand 13/04/2008 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\system32\dmadmin.exe
SS - | Demand 29/08/2008 29744 | Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) . (.Google.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
SS - | Auto 24/02/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 24/02/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/10/2004 73728 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
SR - | Auto 04/09/2002 73728 | (Iomega App Services) . (.Iomega Corporation.) - C:\Program Files\Iomega\System32\AppServices.exe
SR - | Auto 03/10/2011 153376 | (JavaQuickStarterService) . (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jqs.exe
SR - | Auto 02/09/2011 2152152 | (Lavasoft Ad-Aware Service) . (.Lavasoft Limited.) - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
SS - | Disabled 22/02/2010 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
SS - | Demand 25/11/2011 311928 | (maconfservice) . (.CybelSoft.) - C:\Program Files\ma-config.com\maconfservice.exe
SS - | Demand 12/01/2010 3461904 | (npggsvc) . (.INCA Internet Co., Ltd..) - C:\WINDOWS\system32\GameMon.des
SR - | Auto 08/10/2011 298304 | (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe
SR - | Auto 08/10/2011 2253120 | (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
SR - | Auto 90112 | (OMSI download service) . (...) - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe
SR - | Auto 75136 | (PnkBstrA) . (...) - C:\WINDOWS\system32\PnkBstrA.exe
SS - | Demand 01/06/2008 92792 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.CACE Technologies.) - C:\Program Files\WinPcap\rpcapd.exe
SS - | Demand 29/06/2011 155344 | (Sony Ericsson PCCompanion) . (.Avanquest Software.) - C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe
SS - | Disabled 167936 | (WLSVC) . (...) - C:\Program Files\TRENDnet\TEW-648UB\WLSVC.exe
SR - | Auto 09/11/2008 602392 | (YahooAUService) . (.Yahoo! Inc..) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
SR - | Auto 24/09/2002 151552 | (_IOMEGA_ACTIVE_DISK_SERVICE_) . (.Iomega Corporation.) - C:\Program Files\Iomega\AutoDisk\ADService.exe
~ Scan Services in 00mn 49s



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, GMER - Rootkit Detector and Remover
~ Scan MBR in 00mn 05s



---\\ Recherche Master Boot Record Infection (MBRCheck)(O80) (None)

---\\ Liste des émulateurs de CD/DVD (Hook du MBR)
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/01/2007 - 00:00:00 ---A- . (...) -- C:\WINDOWS\system32\drivers\sptd.sys [664064]
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 12/02/2009 - 00:00:00 ---A- . (...) -- C:\WINDOWS\system32\drivers\sptd2365.sys [96384]
~ Scan Emulateurs in 00mn 07s



End of the scan (3539 lines in 59mn 27s)(24)

Ce message a été modifié par bondioune - 16 janvier 2012 - 07:35 .

0

#4 L'utilisateur est hors-ligne   pear 

  • Devil Member !
  • Groupe : Equipe Sécurité
  • Messages : 16483
  • Inscrit(e) : 22-mars 05

Posté 16 janvier 2012 - 10:12

Bonsoir,

Télécharger AdwCleaner
Sous Vista et Windows 7-> Exécuter en tant qu'administrateur

Cliquez sur Recherche et postez le rapport généré C:\AdwCleaner[R1].txt
Image IPB

Nettoyage
Relancez AdwCleaner avec droits administrateur
Cliquez sur Suppression et postez le rapport C:\AdwCleaner[S1].txt

1)Télécharger Rogue Killer par Tigzy sur le bureau
Sous Vista/Seven , clic droit -> lancer en tant qu'administrateur
Si le programme bloque, cliquez droit sur le lien ci-dessus->Enregistrer sous..
Dans la fenêtre qui s'ouvre renommez Roguekiller ->Winlogon.exe

Quittez tous tes programmes en cours et lancez le
Image IPB
Quand on vous le demande, tapez 1 et valider
Un rapport (RKreport.txt) apparait sur le bureau
montrant les processus infectieux
Copier/Coller le contenu dans la réponse


2)Relancez Rogue Killer
Nettoyage du registre Passer en Mode 2




3)Téléchargez MBAM
ICI
ou LA
Avant de lancer Mbam
Vous devez d'abord désactiver vos protections mais vous ne savez pas comment faire
Cliquer ici
Branchez tous les supports amovibles avant de faire ce scan (clé usb/disque dur externe etc)
Exécuter avec droits d'administrateur.
Sous Vista , désactiver l'Uac

Double cliquez sur l'icône Download_mbam-setup.exe pour lancer le processus d'installation.
Enregistrez le sur le bureau .
Fermer toutes les fenêtres et programmes
Suivez les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet)
N'apportez aucune modification aux réglages par défaut et, en fin d'installation,
Vérifiez que les options Update et Launch soient cochées
MBAM démarrera automatiquement et enverra un message demandant de mettre à jour le programme avant de lancer une analyse.
cliquer sur OK pour fermer la boîte de dialogue..
Dans l'onglet "mise à jour", cliquez sur le bouton Recherche de mise à jour:
Image IPB
Si le pare-feu demande l'autorisation de connecter MBAM, acceptez.
Une fois la mise à jour terminée, allez dans l'onglet Recherche.
Sélectionnez "Exécuter un examen complet"
Cliquez sur "Rechercher"
.L' analyse prendra un certain temps, soyez patient !
A la fin , un message affichera :
L'examen s'est terminé normalement.
Et un fichier Mbam.log apparaitra



4)Nettoyage
Relancez Mbam(Malewares'Bytes)
Sélectionnez "Exécuter un examen complet"
Cliquez sur "Rechercher"
L' analyse prendra un certain temps, soyez patient !
A la fin , un message affichera :
L'examen s'est terminé normalement.
Sélectionnez tout et cliquez sur Supprimer la sélection ,
MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
puis ouvrir le Bloc-notes et y copier le rapport d'analyse qui peut être retrouvé sous l'onglet Rapports/logs.
Copiez-collez ce rapport dans la prochaine réponse.

Si ce que tu as à dire ne vaut pas mieux que le silence, tais-toi (Confucius)
0

#5 L'utilisateur est hors-ligne   bondioune 

  • Junior Member
  • Groupe : Membres
  • Messages : 18
  • Inscrit(e) : 16-janvier 12

Posté 17 janvier 2012 - 06:21

Bonsoir,

J'ai fait tourner Adwcleaner et Rogue et j'ai mis en route MbAM en pensant poster tous les rapports en même temps mais j'ai un petit souci.
MbAM est en train de tourner en rond sur une de mes clés USB. En effet je sais pas si ça vient du virus ou du contenu de départ de la clé mais dans la fenêtre de Mbam, quand je lis le fichier scanné en cours, j'ai:

H:\.disk\exemple.exe puis une dizaine de fichier sont passés en revue et ensuite je me retrouve avec
H:\.disk\.disk\exemple.exe .... et les mêmes fichiers sont scannés et on repart avec
H:\.disk\.disk\.disk\exemple.exe etc etc etc...

j'en suis à 20\.disk\ je pense que je vais débrancher la clé ?
Je n'ai pas eu ce problème avec la clé précédente (sur laquelle j'ai pu voir que mes fichiers originaux étaient toujours, puisque scanné, mais invisible avec l'explorateur windows et aussi que les faux fichiers implantés par le virus tous en .exe et faisant 260 Ko n'ont pas été détectés)

Donc je disais ça vient peut être du contenu de la clé: c'est une minilinuxlive

je crois un truc comme ça:http://www.toocharger.com/fiches/windows/lili-linux-live-usb-creator/39322.htm


Bon je débranche la clé.... si fallait pas, bah je referais.
0

#6 L'utilisateur est hors-ligne   bondioune 

  • Junior Member
  • Groupe : Membres
  • Messages : 18
  • Inscrit(e) : 16-janvier 12

Posté 17 janvier 2012 - 07:33

Alors finalement ma clé a été analysée le temps que je tape le message, voici les rapports:

Adwcleaner après suppression
http://pjjoint.malek...117_z7e10y6u5g7

RogueKiller après bouton 1:
http://pjjoint.malek...7_o12j12e5w11g7

RogueKiller après bouton 2:
http://pjjoint.malek..._h12t13s9l14t13

MbAM rapport après analyse:
http://pjjoint.malek...117_i8u7y8y9r15

MbAM rapport après supprimer:
http://pjjoint.malek...k11u12r11k15l12

Ce message a été modifié par bondioune - 17 janvier 2012 - 07:34 .

0

#7 L'utilisateur est hors-ligne   pear 

  • Devil Member !
  • Groupe : Equipe Sécurité
  • Messages : 16483
  • Inscrit(e) : 22-mars 05

Posté 18 janvier 2012 - 09:32

Vous avez des infections graves dont voici l'origine:

Citation

---\\ Crack & Keygen Files (O82)
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.95ef6cc1e6e2f666c5cc3b534d75122c.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.e2ff16d1b13bcce72bfd442439bb2.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\Map info Professional v8.0 Cracked.rar
C:\Documents and Settings\Ken Hutchinson\Mes documents\Reason\Propellerheads - Reason 3.0 Keygenerator + REG Files (RISE).rar
C:\Program Files\eMule\Incoming\key pour covadis\Keygen COVADIS 10.rar
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\keygen texas calculatem crack(osloskop.net)(1).zip
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\SHSetup.exe
C:\Program Files\eMule\Incoming\WinACE WinRAR WinZip WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\Winzip Winiso Password & Cracker.rar
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.95ef6cc1e6e2f666c5cc3b534d75122c.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Windows & Office XP Keygen & Activation Crack.zip.e2ff16d1b13bcce72bfd442439bb2.496c87dac0c3a729d0527462637066ba.aawqff
C:\Documents and Settings\Ken Hutchinson\Mes documents\Mes téléchargements\Programmes\Gros Utilitaires\Map info Professional v8.0 Cracked.rar
C:\Documents and Settings\Ken Hutchinson\Mes documents\Reason\Propellerheads - Reason 3.0 Keygenerator + REG Files (RISE).rar
C:\Program Files\eMule\Incoming\key pour covadis\Keygen COVADIS 10.rar
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\keygen texas calculatem crack(osloskop.net)(1).zip
C:\Program Files\eMule\Incoming\Keygen pour calculatem mais trouvé comme vmalware par comodo\SHSetup.exe
C:\Program Files\eMule\Incoming\WinACE WinRAR WinZip WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\WinISO + password & cracker.rar
C:\Program Files\eMule\Incoming\Winzip Winiso Password & Cracker.rar
F:\Maxtor 500\Mes téléchargements_270909\Programmes\Gros Utilitaires\MapInfo 8.0\Map info Professional v8.0 Cracked.rar
F:\Maxtor 500\Mes téléchargements_270909\Programmes\Petits utilitaires\RARPAsswordCracker\rpc412_setup.exe
I:\Sauvegarde Maxtor 500 31122010\Maxtor 500\décompressions\Map info Professional v8.0 Cracked.rar
I:\Sauvegarde Maxtor 500 31122010\Maxtor 500\Mes téléchargements_270909\Programmes\Gros Utilitaires\MapInfo 8.0\Map info Professional v8.0 Cracked.rar
~ Scan Files in 05mn 24s



Tout ce qu'on vous propose sera inutile si vous n'y mettez bon ordre.

Seulement sur système 32 bits:Remove "Rootkit.Win32.ZAccess.c" automatically par DRWeb
http://www.drwebhk.c....ZAccess.c.html

Télécharger Dr.Web CureIt! et l'enregistrer sur le bureau.
Télécharger Space Security Pro (32-bit)
ou Space Security Pro (64 bits), l'enregistrer dans bureau.
Redémarrez l'ordinateur en mode sans échec (appuyez sur F8 avant que le logo Microsoft apparaît).
DoubleClick "cureit.exe" sur le bureau, suivez les instructions à l'écran pour scanner le disque dur.
(Attendez patiemment, cela peut prendre 20-60 minutes pour effectuer un balayage express.)
Une fois la numérisation effectuée, sélectionnez tous les virus trouvés et choisissez «guérir».
(A défaut, choisissez "Quarantaine" ou "Supprimer".)
Lorsque tous les virus trouvés sont traités, redémarrez en mode normal.
Désinstaller votre anti-virus qui ne peut pas tuer le virus, puis redémarrer à nouveau.
Sur le bureau , double cliquez Sécurité Pro pour l'exécuter.

Pendant l'installation, choisir d'obtenir une clé de démonstration.
Dès la mise à jour, le scanner sera lancé à nouveau, quittez le scanner à ce point.
Terminez l'installation en redémarrant l'ordinateur.
Patientez le temps nécessaire(peut-être plusieurs heures), effectuez une analyse complète de Dr.Web scanner.

Relancez Rogue Killer

Pour corriger les Dns Passer en Mode 5

Si ce que tu as à dire ne vaut pas mieux que le silence, tais-toi (Confucius)
0

#8 L'utilisateur est hors-ligne   bondioune 

  • Junior Member
  • Groupe : Membres
  • Messages : 18
  • Inscrit(e) : 16-janvier 12

Posté 18 janvier 2012 - 04:05

Bonjour et toujours merci pour votre aide,

J'ai viré la liste (corbeille et vidage de corbeille) et j'ai lancé DrWEB Cureit en mode sans échec mais au bout de 5 mn, j'ai un message d'erreur qui me dit:

Une erreur système s'est produite au démarrage ou durant le scan
RC=0xC0000005

Les questions les plus fréquemment posées trouveront réponses sur notre site etc etc

J'ai essayé de jeter un oeil sur le forum de dr Web et j'ai trouvé 2 ou 3 trucs que j'ai réussi à traduire du russe en informatique et de l'informatique au français mais ça n'avance pas bien. Ils disent de passer en mode sans échec et j'y suis déjà.

Sinon j'ai vu que Adaware tournait toujours en mode sans échec alors ça pourrait venir de là(?) mais j'arrive pas à le stopper. Enfin, j'y arrive mais y se relance tout seul en 2 secondes.
J'ai lu aussi que cette erreur pouvait etre liée à des problème d'extinction de pc et effectivement quand j'éteinds ou redémarre mon pc, l'écran se mets bien en veille mais la tour ne s'arrete jamais depuis que j'ai le virus. Je suis toujours obligé de l'éteindre via le bouton en façade.

Voila voila.

Edit:

- sans ad aware, ça marche pas
- tout antivirus arrêtés en mode normal, même problème.

Ce message a été modifié par bondioune - 18 janvier 2012 - 05:02 .

0

#9 L'utilisateur est hors-ligne   pear 

  • Devil Member !
  • Groupe : Equipe Sécurité
  • Messages : 16483
  • Inscrit(e) : 22-mars 05

Posté 18 janvier 2012 - 06:05

Avez vous relancé Rogue killer option 5 comme demandé ?

Laissez tomber Dr web et tentez ceci:
Webroot ZeroAcces Remover.

Webroot a sorti un programme qui tue le malware et il fonctionne.
sur système 64 bits, il y a un doute
Si vous êtes dans ce cas, passez au point 3)

Télécharger AntiZeroAcces
Lancez le:
Répondre Yes (oui) à la question, en tapant sur Y puis Entrée

Si le fix trouve l’infection, des lignes rouges doivent apparaître.
Image IPB
Image IPB
Le fix vous informe qu’un des fichiers systèmes a été patché et vous propose de le nettoyer.
Tapez Y (oui) et Entrée pour lancer le nettoyage.
Si l’opération a réussi, vous devez avoir le message Cleaned en vert.
Image IPB
Appuyez sur une touche et redémarrer l’ordinateur.
Si ce que tu as à dire ne vaut pas mieux que le silence, tais-toi (Confucius)
0

#10 L'utilisateur est hors-ligne   bondioune 

  • Junior Member
  • Groupe : Membres
  • Messages : 18
  • Inscrit(e) : 16-janvier 12

Posté 18 janvier 2012 - 07:02

Alors alors

- Dans l'étape précedente: Dr Web, Space Security et RogueK.. comme Dr Web ne fonctionnait pas, je ne suis pas allé plus loin et je n'ai pas fait space security ni RogueK.

Dois je les executer ?


- Dans l'étape ZeroaccesRemover

Je lance l'outil et le résultat est (les lignes importantes):
Check Rootkit Device: Found !
...
System Disk class driver: Infected
...
Check file "dtscsi.sys" .. Error !
Check file "sptd.sys" .. Error !
Check file "sptd2365.sys" .. Error

Warning votre système est infecté
mais pas par zeroacces ni max++

Et comme c'est pas 0acces ni max++, y me propose pas de réparer.

Du coup je pige plus... Y me semble pas avoir un Windows 64 bits.... Sandra ou everest le dis ça ? C'est un Windows xp familial sp 3

Je vais essayer le space security et RK et faire un coup de MbAM voir si y me trouve toujours 0access.


Est ce qu'il faut laisser les clés USB branchées pendant tous ces scans (RK, dr Web, antizero etc etc) ?
Est ce que le "virus" a pu se loger dans une clé ? j'ai un processus bidon kooho.exe qui vient d'une de mes clés.


Edit:

Bon alors après m'etre battu avec mes clés USB, j'ai pas fait RK ni space security, j'ai refait plusieurs fois antizero et le log est toujours le même:


Webroot AntiZeroAccess 0.8 Log File
Execution time: 18/01/2012 - 18:42
Host operation System: Windows Xp X86 version 5.1.2600 Service Pack 3
18:42:57 - CheckSystem - Begin to check system...
18:42:57 - OpenRootDrive - Opening system root volume and physical drive....
18:42:57 - C Root Drive: Disk number: 1 Start sector: 0x0000003F Partition Size: 0x17BD13D8 sectors.
18:42:57 - PrevX Main driver extracted in "C:\WINDOWS\system32\drivers\ZeroAccess.sys".
18:42:57 - InstallAndStartDriver - Main driver was installed and now is running.
18:42:57 - CheckSystem - Warning! Disk class driver is INFECTED.
18:42:59 - CheckFile - Unable to read "dtscsi.sys" file. CreateFile last eror: 0x00000020.
18:43:03 - CheckFile - Unable to read "sptd.sys" file. CreateFile last eror: 0x00000020.
18:43:03 - CheckFile - Unable to read "sptd2365.sys" file. CreateFile last eror: 0x00000020.
18:43:04 - StopAndRemoveDriver - AntiZeroAccess Driver is stopped and removed.
18:43:04 - StopAndRemoveDriver - File "ZeroAccess.sys" was deleted!
18:43:04 - Execution Ended!


Webroot AntiZeroAccess 0.8 Log File
Execution time: 18/01/2012 - 18:43
Host operation System: Windows Xp X86 version 5.1.2600 Service Pack 3
18:44:00 - CheckSystem - Begin to check system...
18:44:00 - OpenRootDrive - Opening system root volume and physical drive....
18:44:00 - C Root Drive: Disk number: 1 Start sector: 0x0000003F Partition Size: 0x17BD13D8 sectors.
18:44:00 - PrevX Main driver extracted in "C:\WINDOWS\system32\drivers\ZeroAccess.sys".
18:44:00 - InstallAndStartDriver - Main driver was installed and now is running.
18:44:00 - CheckSystem - Warning! Disk class driver is INFECTED.
18:44:02 - CheckFile - Unable to read "dtscsi.sys" file. CreateFile last eror: 0x00000020.
18:44:04 - CheckFile - Unable to read "sptd.sys" file. CreateFile last eror: 0x00000020.
18:44:04 - CheckFile - Unable to read "sptd2365.sys" file. CreateFile last eror: 0x00000020.
18:44:05 - StopAndRemoveDriver - AntiZeroAccess Driver is stopped and removed.
18:44:05 - StopAndRemoveDriver - File "ZeroAccess.sys" was deleted!
18:44:05 - Execution Ended!


Alors dans la fenetre à la fin, y me dit qu'y trouve pas zeroaccess, dans le log y dit qu'il le trouve et l'efface... mais je l'ai fait tourner 10 fois, et il le trouve et l'efface 10 fois.

J'ai refait un tour de MbAM et en 38 secondes y me trouve zeroacces dans C/WINDOWS/system32/nvnet

Que fais je ?

Ce message a été modifié par bondioune - 18 janvier 2012 - 07:56 .

0

  • (4 Pages)
  • +
  • 1
  • 2
  • 3
  • Dernière »
  • Vous ne pouvez pas commencer un sujet
  • Vous ne pouvez pas répondre à ce sujet



1 utilisateur(s) en train de lire ce sujet
0 membre(s), 1 invité(s), 0 utilisateur(s) anonyme(s)



    Page officielle Zebulon.fr