Aller au contenu

FreezFlow

Membres
  • Compteur de contenus

    37
  • Inscription

  • Dernière visite

Tout ce qui a été posté par FreezFlow

  1. Je vous remercie pour l'attention portée. OK, je finis avec PEAR et, si rien n'en sort, alors je reviendrai vers vous. Pour information, je n'ai pas trouvé comment supprimer mon message afin d'éviter justement cet éparpillement. Existe-t-il un moyen de le faire si dans l avenir je souhaitai changer de forum sur une question posée ? Merci. FreezeFlow
  2. Bonsoir, vous trouverez ci joint le diag demandé. Rapport de ZHPDiag v1.28.34 par Nicolas Coolman, Update du 06/03/2012 Run by Bruno at 28/03/2012 19:33:27 Web site : ZHPDiag Outil de diagnostic Web site : Blog de NicolasCoolman - ZebHelpProcess - Skyrock.com State : Nouvelle version disponible ---\\ Web Browser MSIE: Internet Explorer v8.0.6001.18702 MFIE: Mozilla Firefox 11.0 v11.0 (Defaut) ---\\ Windows Product Information ~ Langage: Français Windows XP Home Edition Service Pack 3 (Build 2600) Windows Automatic Updates : OK Windows Genuine Advantage : OK ---\\ System Information ~ Processor: x86 Family 6 Model 15 Stepping 6, GenuineIntel ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 3199 MB (71% free) System Restore: Désactivé (Disabled) System drive C: has 70 GB (47%) free of 149 GB ---\\ Logged in mode ~ Computer Name: POSTE-908737F42 ~ User Name: Bruno ~ All Users Names: UpdatusUser, SUPPORT_388945a0, HelpAssistant, Bruno, ASPNET, Administrateur, ~ Unselected Option: None Logged in as Administrator ---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Documents and Settings\Bruno\Application Data\ ~ %Desktop% : C:\Documents and Settings\Bruno\Bureau\ ~ %Favorites% : C:\Documents and Settings\Bruno\Favorites\ ~ %LocalAppData% : C:\Documents and Settings\Bruno\Local Settings\Application Data\ ~ %StartMenu% : C:\Documents and Settings\Bruno\Menu Démarrer\ ~ %Windir% : C:\WINDOWS\ ~ %System% : C:\WINDOWS\system32\ ---\\ DOS/Devices A:\ Floppy drive, Flash card reader, USB Key (Not Inserted) C:\ Hard drive, Flash drive, Thumb drive (Free 70 Go of 149 Go) D:\ CD-ROM drive (Free 0 Go of 8 Go) E:\ Floppy drive, Flash card reader, USB Key (Free 2 Go of 2 Go) F:\ Hard drive, Flash drive, Thumb drive (Free 139 Go of 186 Go) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Scan Security Center in 00mn 00s ---\\ Recherche particulière de fichiers génériques [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\Explorer.exe [1037824] [MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\rundll32.exe [33792] [MD5.5C72F65D2F038E0BF481326423F9D266] - (.Microsoft Corporation - Internet Extensions for Win32.) (.17/12/2011 - 20:43:31.) -- C:\WINDOWS\system32\wininet.dll [916992] [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\Winlogon.exe [512000] [MD5.1E44BC1E83D8FD2305F8D452DB109CF9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.17/08/2011 - 14:49:54.) -- C:\WINDOWS\system32\drivers\AFD.sys [138496] [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 - 10:40:32.) -- C:\WINDOWS\system32\drivers\atapi.sys [96512] [MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\Cdfs.sys [63744] [MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\Cdrom.sys [62976] [MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\Fips.sys [44672] [MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows ® Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) (.13/04/2008 - 19:00:54.) -- C:\WINDOWS\system32\drivers\i8042prt.sys [54144] [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\Imapi.sys [42112] [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\IpNat.sys [152832] [MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\IPSec.sys [75264] [MD5.7D304A5EB4344EBEEAB53A2FE3FFB9F0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.15/07/2011 - 14:29:31.) -- C:\WINDOWS\system32\drivers\MRxSmb.sys [456320] [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\netBT.sys [162816] [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\ntfs.sys [574976] [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\Parport.sys [80384] [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\Rasl2tp.sys [51328] [MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.13/04/2008 - 10:32:52.) -- C:\WINDOWS\system32\drivers\rdpdr.sys [196224] [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) (.13/04/2008 - 19:57:36.) -- C:\WINDOWS\system32\drivers\redbook.sys [58752] [MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.14/04/2008 - 13:00:00.) -- C:\WINDOWS\system32\drivers\volsnap.sys [53376] ~ Scan Generic Processes in 00mn 00s ---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 62/5412 ~ Mes musiques (My Musics) : 166/4414 ~ Mes Videos (My Videos) : 5/38 ~ Mes Favoris (My Favorites) : Non accessible (Not found) ~ Mes Documents (My Documents) : 262/21042 ~ Mon Bureau (My Desktop) : 1/8 ~ Menu demarrer (Programs) : 6/68 ~ Scan Hidden Files in 00mn 03s ---\\ Processus lancés [MD5.CFCE43B70CA0CC4DCC8ADB62B792B173] - (.Microsoft Corporation - Antimalware Service Executable.) -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [11736] [PID.] [MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.] [MD5.7EF47644B74EBE721CC32211D3C35E76] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55144] [PID.] [MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.] [MD5.0A5709543986843D37A92290B7838340] - (.Sun Microsystems, Inc. - Java Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376] [PID.] [MD5.B2F5AC506C9B1103827B62BA18A2C514] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 296.1.) -- C:\WINDOWS\system32\nvsvc32.exe [164160] [PID.] [MD5.FED28C565DE5F73B7C5B32841229E496] - (.Portrait Displays, Inc. - pdisrvc.) -- C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe [109168] [PID.] [MD5.63F6D08C54D5B3C1B12A6172032055C7] - (.ArcSoft, Inc. - MgiSvr.) -- C:\Program Files\ArcSoft\HP Webcam Software Suite\Magic-i Visual Effects 2\uCamMonitor.exe [104960] [PID.] [MD5.DC9137D2FA407A65671314459D2C257F] - (.Saitek - Saitek MFD File System Driver.) -- C:\Program Files\Saitek\SD6\Software\SaiMfd.exe [131072] [PID.2468] [MD5.DB9533FCA48A79807C21C05CDBC7BBBB] - (.Saitek - Saitek SST Profile Launcher.) -- C:\Program Files\Saitek\SD6\Software\ProfilerU.exe [237568] [PID.2536] [MD5.81F4732D094698C4F956EA691C4AD157] - (.Microsoft Corporation - IType.exe.) -- C:\Program Files\Microsoft IntelliType Pro\itype.exe [1501064] [PID.2588] [MD5.533F6171AF18E6C57E0E75860D39E951] - (.Microsoft Corporation - IPoint.exe.) -- C:\Program Files\Microsoft IntelliPoint\ipoint.exe [1468296] [PID.2640] [MD5.922121B8A2E5BBDE6C19734C6BDB0292] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE [20053608] [PID.2676] [MD5.4EB0C6C3EF4D8885CF2B5D0062F31E44] - (.Pas de propriétaire - DivX Update.) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1259376] [PID.2788] [MD5.887BB46C52A144C0F44F1172667DDF8E] - (.Microsoft Corporation - dpupdchk.exe.) -- C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe [448392] [PID.2796] [MD5.7746FF4871C7EE3C169D19B424A47710] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [421736] [PID.2924] [MD5.A7810B302294793DE88542AAE177D1B1] - (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424] [PID.2944] [MD5.C637FC4638A96165256B28D38DE7B953] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208] [PID.2964] [MD5.98A078F838A70F84E1BD490D7C7675F4] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe [254696] [PID.2996] [MD5.5D61BE7DB55B026A5D61A3EED09D0EAD] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408] [PID.] [MD5.6DA7C93AB37B4A204BFCAE9FA07FF48D] - (.Macrovision Corporation - Macrovision Software Manager.) -- C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe [206112] [PID.3048] [MD5.ECE648CDC3A09421E996DFFDA76F5C53] - (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe [153136] [PID.3220] [MD5.79197AB8FC20E781BA141E291866A909] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [17351304] [PID.3300] [MD5.BAB365CB7ED672D5830D77CA9DB1B207] - (.Belkin - Belkin Wireless Client Utility.) -- C:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe [1404928] [PID.3776] [MD5.9A530D760AE6C64F20A3A26934F6CA04] - (.Hewlett-Packard - Hewlett-Packard PC Camera SystemTray.) -- C:\Program Files\HP\Button Manager\BM.exe [61440] [PID.256] [MD5.EAA666E9DD8DCDA6E075087091CB85EE] - (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [275072] [PID.996] [MD5.CE004777B92DEA56FE14EC900D20BAA4] - (.Apple Inc. - iPodService Module (32-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [821608] [PID.] [MD5.060DAF68493AD7ADF104413E5A62AFA8] - (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe [271920] [PID.] [MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe [11322880] [PID.2348] [MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin [11314688] [PID.2516] [MD5.B920AAF7ABEA489AC415DD38AD7B76CD] - (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe [1209904] [PID.2488] [MD5.03DF48E0F7F58EFF570681D564270A4C] - (.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe [174952] [PID.2932] [MD5.761A7F2562827D4D5A4F6B35E0002F54] - (.Hewlett-Packard Co. - HP CUE Alert Popup Window Objects.) -- C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe [565096] [PID.1324] [MD5.66BB5B07696219FA334452D6F51FD648] - (.Hewlett-Packard - GPCore COM object.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe [366720] [PID.660] [MD5.637F2BDC0E53704D121DDD27A1F62090] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [924600] [PID.2380] [MD5.1AA987A15080E19E83F0872F8FC0FFC2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16824] [PID.4012] [MD5.46AE705AC463F50AC714C8084A09A2A3] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [2211328] [PID.3288] [MD5.5E9A6658A2A69AE7EB195113B7A2E7A9] - (.Microsoft Corporation - Application Layer Gateway Service.) -- C:\WINDOWS\System32\alg.exe [44544] [PID.] ~ Scan Processes Running in 00mn 00s ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Documents and Settings\Bruno\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences ~ Scan Google Browser in 00mn 00s ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Documents and Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\prefs.js C:\Documents and Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\user.js M3 - MFPP: Plugins - [bruno] -- C:\Documents and Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\searchplugins\avg-secure-search.xml M3 - MFPP: Plugins - [bruno] -- C:\Documents and Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\searchplugins\mywebsearch.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [bruno] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml M0 - MFSP: prefs.js [bruno - dj7b1h4b.default] about:home M2 - MFEP: prefs.js [bruno - dj7b1h4b.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}] [] Flagfox v4.1.13 (.Dave Garrett.) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX, LLC - DivX Plus Web Player version 2.2.0.52.) -- C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll P2 - FPN: [HKLM] [@divx.com/DivX VOD Helper,version=1.0.0] - (.DivX, LLC. - DivX VOD Helper Plug-in.) -- C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_31 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.1.10111.0.) -- C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll P2 - FPN: [HKLM] [@ngm.nexoneu.com/NxGame] - (.Nexon - Nexon Game Controller 1.0.0.1.) -- C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\npNxGameeu.dll P2 - FPN: [HKLM] [@RIM.com/WebSLLauncher,version=1.0] - (...) -- C:\Program Files\Fichiers communs\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape 10.1.2.) -- C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS - Unity Player 3.5.0f6.) -- C:\Documents and Settings\Bruno\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll ~ Scan Firefox Browser in 00mn 00s ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Search Microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Bing R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.19190 (longhorn_ie8_gdr.111214-1715)) -- C:\WINDOWS\system32\ieframe.dll R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ~ Scan IE Browser in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Scan Proxy management in 00mn 00s ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe, F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ~ Scan Keys in 00mn 00s ---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Scan Hosts File in 00mn 00s ~ Nombre de lignes (Lines number): 2 ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} . (.DivX, LLC - DivX Plus Web Player HTML5 <video> version.) -- C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet E.) -- C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll ~ Scan BHO in 00mn 00s ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll ~ Scan Toolbar in 00mn 00s ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [WinSys2] . (.Pas de propriétaire - DOT MFC Application.) -- C:\WINDOWS\system32\WinSys2.exe O4 - HKLM\..\Run: [saiMfd] . (.Saitek - Saitek MFD File System Driver.) -- C:\Program Files\Saitek\SD6\Software\SaiMfd.exe O4 - HKLM\..\Run: [ProfilerU] . (.Saitek - Saitek SST Profile Launcher.) -- C:\Program Files\Saitek\SD6\Software\ProfilerU.exe O4 - HKLM\..\Run: [NeroFilterCheck] . (.Nero AG - NeroCheck.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] . (.Logitech Inc. - Logitech KHAL Main Process.) -- C:\WINDOWS\KHALMNPR.exe O4 - HKLM\..\Run: [itype] . (.Microsoft Corporation - IType.exe.) -- C:\Program Files\Microsoft IntelliType Pro\itype.exe O4 - HKLM\..\Run: [intelliPoint] . (.Microsoft Corporation - IPoint.exe.) -- C:\Program Files\Microsoft IntelliPoint\ipoint.exe O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.exe O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Run: [DivXUpdate] . (.Pas de propriétaire - DivX Update.) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\nvcpl.dll O4 - HKLM\..\Run: [NvMediaCenter] . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\WINDOWS\system32\nvmctray.dll O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe O4 - HKLM\..\Run: [ArcSoft Connection Service] . (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\HP\HP Software Update\hpwuschd2.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [iSUSPM] . (.Macrovision Corporation - Macrovision Software Manager.) -- C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe O4 - HKCU\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] . (.Microsoft Corporation - Watson Subscriber for SENS Network Notifica.) -- C:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] . (.Microsoft Corporation - Watson Subscriber for SENS Network Notifica.) -- C:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.exe O4 - HKUS\S-1-5-21-1229272821-261903793-1417001333-1004\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKUS\S-1-5-21-1229272821-261903793-1417001333-1004\..\Run: [iSUSPM] . (.Macrovision Corporation - Macrovision Software Manager.) -- C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe O4 - HKUS\S-1-5-21-1229272821-261903793-1417001333-1004\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe O4 - HKUS\S-1-5-21-1229272821-261903793-1417001333-1004\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe ~ Scan Application in 00mn 00s ---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader X.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Apple Software Update.lnk . (...) -- C:\WINDOWS\Installer\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}\AppleSoftwareUpdateIco.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Security Essentials.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Security Client\msseces.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Live ID.lnk . (.Microsoft Corporation.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\SIGNINOPTIONS.EXE O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files\Messenger\msmsgs.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader X.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Apple Software Update.lnk . (...) -- C:\WINDOWS\Installer\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}\AppleSoftwareUpdateIco.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Security Essentials.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Security Client\msseces.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Live ID.lnk . (.Microsoft Corporation.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\SIGNINOPTIONS.EXE O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files\Messenger\msmsgs.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe O4 - Global Startup: C:\Documents And Settings\UpdatusUser\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe ~ Scan Global Startup in 00mn 00s ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: Add to Google Photos Screensa&ver . (.Google Inc. - Google Photos Screensaver.) -- C:\WINDOWS\system32\GPhotos.scr ~ Scan IE Menu Contextuel in 00mn 00s ---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico O9 - Extra button: Skype Click to Call - {DDE87865-83C5-48c4-8357-2F5B1AA84522} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet Explorer.) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O9 - Extra button: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (.Hewlett-Packard Co. - HP Smart Web Printing add-on for Internet Explorer.) -- C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe ~ Scan IE Extra Buttons in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll ~ Scan Winsock in 00mn 00s ---\\ Objets ActiveX (Downloaded Program Files)(O16) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1270197249500 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1270319885578 ~ Scan Objets ActiveX in 00mn 00s ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{2BEEE6B1-BC4F-4A2A-AD50-E42F1FDDE583}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{46429AFE-4AC4-47E9-B394-0816A5B987CD}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CCS\Services\Tcpip\..\{DE62A224-5226-44FF-BBC8-638B7C8D6F0C}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{2BEEE6B1-BC4F-4A2A-AD50-E42F1FDDE583}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{46429AFE-4AC4-47E9-B394-0816A5B987CD}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS1\Services\Tcpip\..\{DE62A224-5226-44FF-BBC8-638B7C8D6F0C}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{2BEEE6B1-BC4F-4A2A-AD50-E42F1FDDE583}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{46429AFE-4AC4-47E9-B394-0816A5B987CD}: DhcpNameServer = 212.27.40.240 212.27.40.241 O17 - HKLM\System\CS2\Services\Tcpip\..\{DE62A224-5226-44FF-BBC8-638B7C8D6F0C}: DhcpNameServer = 212.27.40.240 212.27.40.241 ~ Scan Domain in 00mn 00s ---\\ Protocole additionnel (O18) O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll ~ Scan Protocole Additionnel in 00mn 00s ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\WINDOWS\system32\crypt32.dll O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\WINDOWS\system32\cryptnet.dll O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\WINDOWS\system32\cscdll.dll O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\system32\dimsntfy.dll O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\WINDOWS\system32\sclgntfy.dll O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\WlNotify.dll O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll ~ Scan Winlogon in 00mn 00s ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll ~ Scan SSODL in 00mn 00s ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll ~ Scan STS/SSO in 00mn 00s ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 296.1.) - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Portrait Displays SDK Service (PdiService) . (.Portrait Displays, Inc. - pdisrvc.) - C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe O23 - Service: CamMonitor (uCamMonitor) . (.ArcSoft, Inc. - MgiSvr.) - C:\Program Files\ArcSoft\HP Webcam Software Suite\Magic-i Visual Effects 2\uCamMonitor.exe ~ Scan Services in 00mn 00s ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Scan Desktop Component in 00mn 00s ---\\ BootExecute (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ Scan Keys in 00mn 00s ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AppleSoftwareUpdate.job O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\MP Scheduled Scan.job O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\User_Feed_Synchronization-{820B7686-AAA7-4AB8-A97C-79312B51E2FA}.job ~ Scan Scheduled Task in 00mn 00s ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Mise à jour de la version d’Internet Explorer - <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} . (.Microsoft Corporation - IE Per User Active Setup Uninstall Utility.) -- C:\WINDOWS\system32\ieudinit.exe O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d'installation du Lecteur Windows Media Microsoft.) -- C:\WINDOWS\inf\unregmp2.exe O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - IEAK branding.) -- C:\WINDOWS\system32\iedkcs32.dll O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll O40 - ASIC: Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} . (.Microsoft Corporation - Windows Media 6.4 Player Shim.) -- C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: Lecteur Windows Media Microsoft 6.4 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media 6.4 Player Shim.) -- C:\WINDOWS\system32\wmpdxm.dll O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (...) -- C:\WINDOWS\INF\msnetmtg.inf O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (...) -- C:\WINDOWS\INF\msmsgs.inf O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Extension Shell dossier FTP Microsoft Internet Explorer..) -- C:\WINDOWS\system32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (...) -- C:\WINDOWS\INF\wmp.inf O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Explorer par utilisateur.) -- C:\WINDOWS\system32\ie4uinit.exe.mui O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\WINDOWS\system32\mscories.dll O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 11.1 r102.) -- C:\WINDOWS\system32\Macromed\Flash\Flash11g.ocx ~ Scan Active Setup in 00mn 00s ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys O41 - Driver: (Cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\WINDOWS\system32\DRIVERS\cdrom.sys O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys O41 - Driver: (Imapi) . (.Microsoft Corporation - IMAPI Kernel Driver.) - C:\WINDOWS\system32\DRIVERS\imapi.sys O41 - Driver: (intelppm) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\WINDOWS\system32\DRIVERS\intelppm.sys O41 - Driver: (IPSec) . (.Microsoft Corporation - IPSec Driver.) - C:\WINDOWS\system32\DRIVERS\ipsec.sys O41 - Driver: (Kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre souris HID.) - C:\WINDOWS\system32\DRIVERS\kbdhid.sys O41 - Driver: (Mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\WINDOWS\system32\DRIVERS\mouclass.sys O41 - Driver: (MpFilter) . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) - C:\WINDOWS\system32\DRIVERS\MpFilter.sys O41 - Driver: (MRxSmb) . (.Microsoft Corporation - Windows NT SMB Minirdr.) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\WINDOWS\system32\DRIVERS\netbios.sys O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\WINDOWS\system32\DRIVERS\netbt.sys O41 - Driver: (prodrv06) . (.Protection Technology - StarForce Protection Environment Driver.) - C:\WINDOWS\system32\drivers\prodrv06.sys O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\WINDOWS\system32\DRIVERS\rasacd.sys O41 - Driver: (Rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\WINDOWS\system32\DRIVERS\rdbss.sys O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\system32\DRIVERS\RDPCDD.sys O41 - Driver: (redbook) . (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) - C:\WINDOWS\system32\DRIVERS\redbook.sys O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\WINDOWS\system32\DRIVERS\serial.sys O41 - Driver: (Tcpip) . (.Microsoft Corporation - TCP/IP Protocol Driver.) - C:\WINDOWS\system32\DRIVERS\tcpip.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\WINDOWS\system32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys O41 - Driver: Windows Socket 2.0 Non-IFS Service Provider Support Environment (WS2IFSL) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\WINDOWS\system32\drivers\ws2ifsl.sys ~ Scan Drivers in 00mn 00s ---\\ Logiciels installés (O42) O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {A80FA752-C491-4ED9-ABF0-4278563160B2} O42 - Logiciel: 7-Zip 4.65 - (.Pas de propriétaire.) [HKLM] -- 7-Zip O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB} O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader X (10.1.2) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {343666E2-A059-48AC-AD67-230BF74E2DB2} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {8153ED9A-C94A-426E-9880-5E6775C08B62} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C6579A65-9CAE-4B31-8B6B-3306E0630A66} O42 - Logiciel: ArmA 2 Uninstall - (.Pas de propriétaire.) [HKLM] -- ArmA 2 O42 - Logiciel: Attansic Giga Ethernet Utility - (.Pas de propriétaire.) [HKLM] -- {1F698102-5739-441E-96F0-74F4EA540F06} O42 - Logiciel: Attansic L1 Gigabit Ethernet Driver - (.Pas de propriétaire.) [HKLM] -- AtcL1 O42 - Logiciel: BattlEye Uninstall - (.Pas de propriétaire.) [HKLM] -- BattlEye O42 - Logiciel: Belkin Wireless USB Utility - (.Belkin.) [HKLM] -- InstallShield_{A6359CCF-215D-43D9-8366-479D231F2A72} O42 - Logiciel: BlackBerry Desktop Software 6.0 - (.Research In Motion Ltd..) [HKLM] -- BlackBerry_Desktop O42 - Logiciel: BlackBerry Desktop Software 6.0 - (.Research In Motion Ltd..) [HKLM] -- {D25F26E6-7F37-4580-9E83-2BDD9BE9E0CE} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: Combined Community Codec Pack 2011-11-11 - (.CCCP Project.) [HKLM] -- Combined Community Codec Pack_is1 O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM] -- HPExtendedCapabilities O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart B010 All-In-One Driver Software 14.0 Rel. 7 - (.HP.) [HKLM] -- {81830FEF-866C-4DC0-9435-B6287B1EDD8A} O42 - Logiciel: HP Smart Web Printing 4.60 - (.HP.) [HKLM] -- HP Smart Web Printing O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3} O42 - Logiciel: HP Webcam Software Suite - (.ArcSoft.) [HKLM] -- {D10FE2E3-B2DE-4B0E-ACBD-F87A566B9649} O42 - Logiciel: HP Webcam Software Suite - (.Hewlett-Packard.) [HKLM] -- InstallShield_{F96B04F9-26A9-4384-AA17-77EACA1BA40B} O42 - Logiciel: HP Webcam Software Suite - (.Hewlett-Packard.) [HKLM] -- {F96B04F9-26A9-4384-AA17-77EACA1BA40B} O42 - Logiciel: Hot Wheels - (.Activision Value.) [HKLM] -- {CF36DD86-81D3-4D91-8F7A-344E0C1A4BFD} O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595 O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484 O42 - Logiciel: Hotfix for Windows Media Format 11 SDK (KB929399) - (.Microsoft Corporation.) [HKLM] -- KB929399 O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 O42 - Logiciel: InstantShareAlert - (.HP.) [HKLM] -- {069730C2-755A-485B-A205-27A1AAFA836A} O42 - Logiciel: Java 6 Update 18 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216018F0} O42 - Logiciel: Java 6 Update 22 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216022F0} O42 - Logiciel: Java 6 Update 31 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216031FF} O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Malwarebytes Anti-Malware version 1.60.1.1000 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Microsoft.) [HKLM] -- {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Pas de propriétaire.) [HKLM] -- Microsoft .NET Framework 1.1 (1033) O42 - Logiciel: Microsoft .NET Framework 1.1 French Language Pack - (.Microsoft.) [HKLM] -- {9A394342-4A68-4EBA-85A6-55B559F4E700} O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB2656353) - (.Pas de propriétaire.) [HKLM] -- M2656353 O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB979906) - (.Pas de propriétaire.) [HKLM] -- M979906 O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7} O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1 O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} O42 - Logiciel: Microsoft Antimalware - (.Microsoft Corporation.) [HKLM] -- {05BFB060-4F22-4710-B0A2-2801A1B606C5} O42 - Logiciel: Microsoft Antimalware Service FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {32E9C1A5-0FDA-4483-987D-DBABF9CC1DD8} O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 - (.Microsoft Corporation.) [HKLM] -- Wdf01005 O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {54B6DC7D-8C5B-4DFB-BC15-C010A3326B2B} O42 - Logiciel: Microsoft Security Client FR-FR Language Pack - (.Microsoft Corporation.) [HKLM] -- {50779A29-834E-4E36-BBEB-B7CABC67A825} O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 - (.Microsoft Corporation.) [HKLM] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Mises à jour NVIDIA 1.3.5 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update O42 - Logiciel: Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 2.0 Language Pack - FRA O42 - Logiciel: Mozilla Firefox 11.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 11.0 (x86 fr) O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Display Control Panel O42 - Logiciel: NVIDIA Logiciel système PhysX 9.10.0514 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {B9DB4C76-01A4-46D5-8910-F7AA6376DBAF} O42 - Logiciel: NVIDIA Pilote audio HD : 1.2.24.0 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver O42 - Logiciel: NVIDIA Pilote graphique 285.58 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA nView 135.85 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView O42 - Logiciel: NVIDIA nView Desktop Manager - (.NVIDIA Corporation.) [HKLM] -- NVIDIA nView Desktop Manager O42 - Logiciel: Nero 7 Essentials - (.Nero AG.) [HKLM] -- {66EBD70F-A42C-475F-AEDF-277378151036} O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM] -- {05653DE1-6567-40C6-B930-39D399B64369} O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3 O42 - Logiciel: PowerQuest PartitionMagic 8.0 - (.PowerQuest.) [HKLM] -- InstallShield_{6BE2A4A4-99FB-48ED-AE1E-4E850389F804} O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C} O42 - Logiciel: R3F_ARMES - (.Pas de propriétaire.) [HKLM] -- R3F_ARMES O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Saitek SD6 Programming Software 6.6.6.9 - (.Saitek.) [HKLM] -- {353E9DD1-B168-4710-A429-5C750F3A9D13} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2657424 O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} O42 - Logiciel: Skype™ 5.5 - (.Skype Technologies S.A..) [HKLM] -- {AA59DDE4-B672-4621-A016-4C248204957A} O42 - Logiciel: Sony Ericsson Media Manager 1.2 - (.Sony Ericsson.) [HKLM] -- {5F1ECBFB-048E-406E-A7AB-A81F9E359961} O42 - Logiciel: System Requirements Lab - (.Pas de propriétaire.) [HKLM] -- SystemRequirementsLab O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM] -- TeamSpeak 3 Client O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU] -- UnityWebPlayer O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707 O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F} O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray - (.Microsoft Corporation.) [HKLM] -- KB952011 O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- KB892130 O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {0840B4D6-7DD1-4187-8523-E6FC0007EFB7} O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 O42 - Logiciel: Windows Media Format 11 runtime - (.Pas de propriétaire.) [HKLM] -- Windows Media Format Runtime O42 - Logiciel: ffdshow [rev 3233] [2010-01-28] - (.Pas de propriétaire.) [HKLM] -- ffdshow_is1 O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {F6D6B258-E3CA-4AAC-965A-68D3E3140A8C} O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\ASUS] [HKCU\Software\Adobe] [HKCU\Software\Ahead] [HKCU\Software\AhnLab] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\ArcSoft] [HKCU\Software\Belkin] [HKCU\Software\Bohemia Interactive Studio] [HKCU\Software\Bugsplat] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Codemasters] [HKCU\Software\DSS] [HKCU\Software\DT Soft] [HKCU\Software\DivXNetworks] [HKCU\Software\DivX] [HKCU\Software\EMME] [HKCU\Software\GNU] [HKCU\Software\GPL Ghostscript] [HKCU\Software\Gabest] [HKCU\Software\GameShadow] [HKCU\Software\GameSpy] [HKCU\Software\Google] [HKCU\Software\Grand Virtual] [HKCU\Software\HP] [HKCU\Software\Haali] [HKCU\Software\Hewlett-Packard] [HKCU\Software\InstallShield] [HKCU\Software\Intel] [HKCU\Software\JEDI-VCL] [HKCU\Software\JavaSoft] [HKCU\Software\Kamuse Inc.] [HKCU\Software\LAV] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\MainConcept] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Netscape] [HKCU\Software\OpenOffice.org] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Portrait Displays] [HKCU\Software\PowerQuest] [HKCU\Software\Realtek] [HKCU\Software\Research In Motion] [HKCU\Software\Roxio] [HKCU\Software\Saitek] [HKCU\Software\SecuROM] [HKCU\Software\Skype] [HKCU\Software\Softonic] [HKCU\Software\Sonic Solutions] [HKCU\Software\Sonic] [HKCU\Software\Sony Creative Software] [HKCU\Software\Sysinternals] [HKCU\Software\Trolltech] [HKCU\Software\Ubisoft] [HKCU\Software\Unity] [HKCU\Software\Wacom] [HKCU\Software\Wget] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\Yahoo] [HKLM\Software\AGEIA Technologies] [HKLM\Software\ASUS] [HKLM\Software\Aardwork] [HKLM\Software\Activision Value] [HKLM\Software\Adobe] [HKLM\Software\Ahead] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\ArcSoft] [HKLM\Software\Artifex] [HKLM\Software\Attansic] [HKLM\Software\Audible] [HKLM\Software\Belkin] [HKLM\Software\Bohemia Interactive Studio] [HKLM\Software\Bohemia Interactive] [HKLM\Software\BrowserChoice] [HKLM\Software\C07ft5Y] [HKLM\Software\CDDB] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Codemasters] [HKLM\Software\Combined-Community-Codec-Pack] [HKLM\Software\Creative Tech] [HKLM\Software\DT Soft] [HKLM\Software\DivXNetworks] [HKLM\Software\DivX] [HKLM\Software\GEAR Software] [HKLM\Software\GNU] [HKLM\Software\Gabest] [HKLM\Software\Gemplus] [HKLM\Software\Google] [HKLM\Software\HaaliMkx] [HKLM\Software\Hewlett-Packard] [HKLM\Software\HighCriteria] [HKLM\Software\InstallShield] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\Khronos] [HKLM\Software\Licenses] [HKLM\Software\Logitech] [HKLM\Software\MSI] [HKLM\Software\Macromedia] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\Mindscape] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\Nero] [HKLM\Software\NexonEU] [HKLM\Software\Nexon] [HKLM\Software\Novatek] [HKLM\Software\ODBC] [HKLM\Software\OpenOffice.org] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\Portrait Displays] [HKLM\Software\PowerQuest] [HKLM\Software\Program Groups] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\Research In Motion] [HKLM\Software\S3R521] [HKLM\Software\Saitek] [HKLM\Software\Schlumberger] [HKLM\Software\Secure] [HKLM\Software\Skype] [HKLM\Software\Sony Creative Software] [HKLM\Software\Sony Media Software] [HKLM\Software\Sun Microsystems] [HKLM\Software\Swearware] [HKLM\Software\Symantec] [HKLM\Software\VideoLAN] [HKLM\Software\Wacom] [HKLM\Software\WinRAR] [HKLM\Software\Windows 3.1 Migration Status] [HKLM\Software\Wow6432Node] [HKLM\Software\Yahoo] [HKLM\Software\mozilla.org] ~ Scan Softwares in 00mn 00s ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 04/04/2010 - 13:08:34 - [2,951] ----D- C:\Program Files\7-Zip O43 - CFD: 28/02/2012 - 14:40:42 - [-1966,722] ----D- C:\Program Files\Activision Value O43 - CFD: 23/06/2011 - 08:29:00 - [158,661] ----D- C:\Program Files\Adobe O43 - CFD: 22/06/2011 - 18:49:38 - [2,201] ----D- C:\Program Files\Apple Software Update O43 - CFD: 25/01/2012 - 10:10:36 - [384,194] ----D- C:\Program Files\ArcSoft O43 - CFD: 01/04/2010 - 18:14:28 - [1,914] ----D- C:\Program Files\Attansic O43 - CFD: 03/04/2010 - 18:34:00 - [4,321] ----D- C:\Program Files\Belkin O43 - CFD: 28/03/2012 - 09:43:08 - [245,356] ----D- C:\Program Files\Bohemia Interactive O43 - CFD: 20/10/2011 - 19:55:24 - [0,585] ----D- C:\Program Files\Bonjour O43 - CFD: 10/02/2012 - 22:47:54 - [4,161] ----D- C:\Program Files\CCleaner O43 - CFD: 18/01/2012 - 10:05:20 - [35,013] ----D- C:\Program Files\Combined Community Codec Pack O43 - CFD: 01/04/2010 - 17:41:30 - [0] ----D- C:\Program Files\ComPlus Applications O43 - CFD: 03/03/2012 - 19:26:26 - [97,278] ----D- C:\Program Files\DivX O43 - CFD: 11/01/2011 - 23:44:46 - [15,832] ----D- C:\Program Files\ffdshow O43 - CFD: 25/03/2012 - 22:10:56 - [408,268] ----D- C:\Program Files\Fichiers communs O43 - CFD: 03/03/2012 - 19:36:28 - [117,086] ----D- C:\Program Files\Google O43 - CFD: 10/02/2012 - 23:14:46 - [0] ----D- C:\Program Files\gs O43 - CFD: 23/02/2012 - 20:59:32 - [239,459] ----D- C:\Program Files\HP O43 - CFD: 28/02/2012 - 14:40:40 - [31,632] ----D- C:\Program Files\InstallShield Installation Information O43 - CFD: 01/04/2010 - 18:10:38 - [0,040] ----D- C:\Program Files\Intel O43 - CFD: 15/02/2012 - 20:58:04 - [5,773] ----D- C:\Program Files\Internet Explorer O43 - CFD: 08/03/2012 - 20:45:54 - [1,926] ----D- C:\Program Files\iPod O43 - CFD: 08/03/2012 - 20:47:02 - [122,578] ----D- C:\Program Files\iTunes O43 - CFD: 24/10/2011 - 09:03:12 - [251,614] ----D- C:\Program Files\Java O43 - CFD: 26/03/2012 - 12:18:06 - [11,405] ----D- C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 02/04/2010 - 12:09:48 - [2,073] ----D- C:\Program Files\Messenger O43 - CFD: 17/02/2012 - 10:33:30 - [0] ----D- C:\Program Files\Microsoft O43 - CFD: 06/04/2010 - 09:32:12 - [0,764] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 01/04/2010 - 17:43:58 - [0] ----D- C:\Program Files\microsoft frontpage O43 - CFD: 07/01/2011 - 12:39:14 - [22,204] ----D- C:\Program Files\Microsoft IntelliPoint O43 - CFD: 07/01/2011 - 12:27:04 - [22,977] ----D- C:\Program Files\Microsoft IntelliType Pro O43 - CFD: 26/03/2012 - 16:21:14 - [17,554] ----D- C:\Program Files\Microsoft Security Client O43 - CFD: 16/02/2012 - 12:12:44 - [36,634] ----D- C:\Program Files\Microsoft Silverlight O43 - CFD: 21/08/2010 - 16:25:12 - [9,894] ----D- C:\Program Files\Movie Maker O43 - CFD: 28/03/2012 - 12:29:20 - [37,248] ----D- C:\Program Files\Mozilla Firefox O43 - CFD: 03/09/2010 - 16:08:24 - [1,172] ----D- C:\Program Files\Mozilla Thunderbird O43 - CFD: 05/04/2010 - 15:11:08 - [0,025] ----D- C:\Program Files\MSBuild O43 - CFD: 17/02/2012 - 10:34:04 - [18,385] ----D- C:\Program Files\MSN O43 - CFD: 01/04/2010 - 17:40:54 - [8,341] ----D- C:\Program Files\MSN Gaming Zone O43 - CFD: 02/04/2010 - 12:25:46 - [0] ----D- C:\Program Files\MSXML 4.0 O43 - CFD: 02/04/2010 - 11:55:18 - [451,126] ----D- C:\Program Files\Nero O43 - CFD: 01/04/2010 - 17:42:22 - [3,133] ----D- C:\Program Files\NetMeeting O43 - CFD: 18/03/2012 - 14:59:56 - [1345,121] ----D- C:\Program Files\NVIDIA Corporation O43 - CFD: 01/04/2010 - 17:41:02 - [0,002] ----D- C:\Program Files\Online Services O43 - CFD: 31/03/2011 - 19:23:02 - [531,727] ----D- C:\Program Files\OpenOffice.org 3 O43 - CFD: 16/12/2010 - 00:43:30 - [4,176] ----D- C:\Program Files\Outlook Express O43 - CFD: 02/04/2010 - 10:54:40 - [46,969] ----D- C:\Program Files\PowerQuest O43 - CFD: 03/11/2011 - 20:12:08 - [72,431] ----D- C:\Program Files\QuickTime O43 - CFD: 04/04/2010 - 12:52:28 - [116,399] ----D- C:\Program Files\Realtek O43 - CFD: 05/04/2010 - 15:10:56 - [34,715] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 24/08/2010 - 22:49:18 - [87,998] ----D- C:\Program Files\Research In Motion O43 - CFD: 20/04/2010 - 19:36:14 - [37,717] ----D- C:\Program Files\Saitek O43 - CFD: 01/04/2010 - 17:42:46 - [0,001] ----D- C:\Program Files\Services en ligne O43 - CFD: 24/01/2012 - 12:29:38 - [31,970] R---D- C:\Program Files\Skype O43 - CFD: 05/04/2010 - 11:47:50 - [6,499] ----D- C:\Program Files\Sony O43 - CFD: 05/04/2010 - 11:47:48 - [59,163] ----D- C:\Program Files\Sony Ericsson O43 - CFD: 07/11/2010 - 17:18:48 - [1,066] ----D- C:\Program Files\SystemRequirementsLab O43 - CFD: 20/02/2012 - 16:04:10 - [53,514] ----D- C:\Program Files\TeamSpeak 3 Client O43 - CFD: 24/11/2011 - 00:25:26 - [0,122] ----D- C:\Program Files\UBISOFT O43 - CFD: 01/04/2010 - 17:55:32 - [0] ----D- C:\Program Files\Uninstall Information O43 - CFD: 02/04/2010 - 14:11:04 - [81,509] ----D- C:\Program Files\VideoLAN O43 - CFD: 05/04/2010 - 11:46:30 - [4,726] ----D- C:\Program Files\Windows Media Player O43 - CFD: 01/04/2010 - 17:40:46 - [3,760] ----D- C:\Program Files\Windows NT O43 - CFD: 01/04/2010 - 17:42:48 - [0] ----D- C:\Program Files\WindowsUpdate O43 - CFD: 01/12/2011 - 12:37:28 - [3,707] ----D- C:\Program Files\WinRAR O43 - CFD: 01/04/2010 - 17:44:00 - [0] ----D- C:\Program Files\xerox O43 - CFD: 19/09/2010 - 08:59:10 - [0] ----D- C:\Program Files\Yahoo! O43 - CFD: 24/08/2011 - 12:33:34 - [0,000] ----D- C:\Program Files\Zero G Registry O43 - CFD: 28/03/2012 - 19:33:38 - [10,234] ----D- C:\Program Files\ZHPDiag O43 - CFD: 23/06/2011 - 08:29:42 - [3,590] ----D- C:\Program Files\Fichiers Communs\Adobe O43 - CFD: 15/11/2010 - 09:24:58 - [29,398] ----D- C:\Program Files\Fichiers Communs\Adobe AIR O43 - CFD: 02/04/2010 - 11:57:30 - [113,846] ----D- C:\Program Files\Fichiers Communs\Ahead O43 - CFD: 08/03/2012 - 20:45:46 - [111,047] ----D- C:\Program Files\Fichiers Communs\Apple O43 - CFD: 25/01/2012 - 10:11:12 - [12,525] ----D- C:\Program Files\Fichiers Communs\ArcSoft O43 - CFD: 05/01/2012 - 12:51:26 - [23,581] ----D- C:\Program Files\Fichiers Communs\DivX Shared O43 - CFD: 08/02/2012 - 17:33:04 - [0,951] ----D- C:\Program Files\Fichiers Communs\Hewlett-Packard O43 - CFD: 08/02/2012 - 23:55:24 - [1,348] ----D- C:\Program Files\Fichiers Communs\HP O43 - CFD: 25/01/2012 - 10:10:06 - [17,371] ----D- C:\Program Files\Fichiers Communs\InstallShield O43 - CFD: 23/02/2012 - 21:17:44 - [1,201] ----D- C:\Program Files\Fichiers Communs\Java O43 - CFD: 08/02/2012 - 17:36:38 - [16,627] ----D- C:\Program Files\Fichiers Communs\Microsoft Shared O43 - CFD: 01/04/2010 - 17:42:18 - [0,271] ----D- C:\Program Files\Fichiers Communs\MSSoap O43 - CFD: 01/04/2010 - 19:32:10 - [0] ----D- C:\Program Files\Fichiers Communs\ODBC O43 - CFD: 08/02/2012 - 17:04:48 - [0,467] ----D- C:\Program Files\Fichiers Communs\Portrait Displays O43 - CFD: 24/08/2010 - 22:57:44 - [39,568] ----D- C:\Program Files\Fichiers Communs\Research In Motion O43 - CFD: 24/08/2010 - 22:56:18 - [0] ----D- C:\Program Files\Fichiers Communs\Roxio Shared O43 - CFD: 01/04/2010 - 17:42:20 - [0,008] ----D- C:\Program Files\Fichiers Communs\Services O43 - CFD: 05/04/2010 - 11:48:08 - [0,324] ----D- C:\Program Files\Fichiers Communs\Sony Shared O43 - CFD: 01/04/2010 - 19:32:08 - [3,612] ----D- C:\Program Files\Fichiers Communs\SpeechEngines O43 - CFD: 01/04/2010 - 17:41:46 - [6,496] ----D- C:\Program Files\Fichiers Communs\System O43 - CFD: 10/09/2002 - 12:42:42 - [26,037] ----D- C:\Program Files\Fichiers Communs\Wise Installation Wizard O43 - CFD: 22/06/2011 - 12:12:18 - [6,380] ----D- C:\Documents and Settings\Bruno\Application Data\Adobe O43 - CFD: 29/01/2011 - 20:34:20 - [0,002] ----D- C:\Documents and Settings\Bruno\Application Data\Ahead O43 - CFD: 18/11/2011 - 18:42:06 - [0,436] ----D- C:\Documents and Settings\Bruno\Application Data\Apple Computer O43 - CFD: 25/01/2012 - 21:15:54 - [1,782] ----D- C:\Documents and Settings\Bruno\Application Data\ArcSoft O43 - CFD: 12/02/2012 - 21:37:38 - [0,538] ----D- C:\Documents and Settings\Bruno\Application Data\ArmA II Launcher O43 - CFD: 05/11/2010 - 11:24:28 - [0,001] ----D- C:\Documents and Settings\Bruno\Application Data\com.mstv.Carrefour50Widget.14E181C9F98C97743205250D618D6563C1965D9A.1 O43 - CFD: 13/01/2012 - 10:32:10 - [0,001] ----D- C:\Documents and Settings\Bruno\Application Data\DAEMON Tools Lite O43 - CFD: 08/02/2012 - 16:24:04 - [0] ----D- C:\Documents and Settings\Bruno\Application Data\DisplayTune O43 - CFD: 20/06/2010 - 20:15:56 - [0,216] ----D- C:\Documents and Settings\Bruno\Application Data\DivX O43 - CFD: 29/11/2011 - 21:38:30 - [0,000] ----D- C:\Documents and Settings\Bruno\Application Data\dvdcss O43 - CFD: 04/04/2010 - 13:10:36 - [0,000] ----D- C:\Documents and Settings\Bruno\Application Data\Google O43 - CFD: 13/02/2012 - 10:16:34 - [0,166] ----D- C:\Documents and Settings\Bruno\Application Data\HP O43 - CFD: 05/03/2012 - 17:34:50 - [0,222] ----D- C:\Documents and Settings\Bruno\Application Data\HPAppData O43 - CFD: 02/03/2012 - 09:50:28 - [0,009] ----D- C:\Documents and Settings\Bruno\Application Data\HpUpdate O43 - CFD: 01/04/2010 - 17:55:34 - [0] ----D- C:\Documents and Settings\Bruno\Application Data\Identities O43 - CFD: 26/08/2010 - 14:33:56 - [0,000] ----D- C:\Documents and Settings\Bruno\Application Data\InstallShield O43 - CFD: 25/01/2012 - 10:21:38 - [0] ----D- C:\Documents and Settings\Bruno\Application Data\JustWrite Office O43 - CFD: 04/04/2010 - 15:43:46 - [1,921] ----D- C:\Documents and Settings\Bruno\Application Data\Macromedia O43 - CFD: 26/03/2012 - 12:18:40 - [0,025] ----D- C:\Documents and Settings\Bruno\Application Data\Malwarebytes O43 - CFD: 26/03/2012 - 16:20:18 - [4,745] -S--D- C:\Documents and Settings\Bruno\Application Data\Microsoft O43 - CFD: 06/04/2010 - 06:43:24 - [21,900] ----D- C:\Documents and Settings\Bruno\Application Data\Mozilla O43 - CFD: 17/02/2012 - 10:34:02 - [0,000] ----D- C:\Documents and Settings\Bruno\Application Data\MSNInstaller O43 - CFD: 03/11/2011 - 22:27:12 - [0,001] ----D- C:\Documents and Settings\Bruno\Application Data\NVIDIA O43 - CFD: 14/09/2011 - 13:10:16 - [9,958] ----D- C:\Documents and Settings\Bruno\Application Data\OpenCandy O43 - CFD: 03/04/2010 - 21:11:56 - [4,286] ----D- C:\Documents and Settings\Bruno\Application Data\OpenOffice.org O43 - CFD: 02/11/2011 - 16:37:18 - [293,529] ----D- C:\Documents and Settings\Bruno\Application Data\Research In Motion O43 - CFD: 26/06/2010 - 15:48:02 - [10,017] ----D- C:\Documents and Settings\Bruno\Application Data\Roxio O43 - CFD: 14/01/2012 - 21:11:52 - [0,064] ----D- C:\Documents and Settings\Bruno\Application Data\Scribus O43 - CFD: 10/02/2012 - 20:15:42 - [0,010] R---D- C:\Documents and Settings\Bruno\Application Data\SecuROM O43 - CFD: 28/03/2012 - 19:25:40 - [3,328] ----D- C:\Documents and Settings\Bruno\Application Data\Skype O43 - CFD: 17/04/2010 - 17:39:22 - [0,014] ----D- C:\Documents and Settings\Bruno\Application Data\Sony O43 - CFD: 03/04/2010 - 21:06:58 - [56,881] ----D- C:\Documents and Settings\Bruno\Application Data\Sun O43 - CFD: 07/11/2010 - 17:18:42 - [1,178] ----D- C:\Documents and Settings\Bruno\Application Data\SystemRequirementsLab O43 - CFD: 06/04/2010 - 06:51:06 - [235,497] ----D- C:\Documents and Settings\Bruno\Application Data\Thunderbird O43 - CFD: 25/03/2012 - 15:37:04 - [2,061] ----D- C:\Documents and Settings\Bruno\Application Data\TS3Client O43 - CFD: 26/09/2011 - 08:23:26 - [0,690] ----D- C:\Documents and Settings\Bruno\Application Data\ts3overlay O43 - CFD: 01/07/2011 - 18:50:38 - [0,000] ----D- C:\Documents and Settings\Bruno\Application Data\Unity O43 - CFD: 14/09/2011 - 15:02:56 - [0,565] ----D- C:\Documents and Settings\Bruno\Application Data\vlc O43 - CFD: 01/12/2011 - 12:39:26 - [0,000] ----D- C:\Documents and Settings\Bruno\Application Data\WinRAR O43 - CFD: 04/04/2010 - 10:02:00 - [0] ----D- C:\Documents and Settings\Bruno\Application Data\Yahoo! O43 - CFD: 07/06/2011 - 19:21:10 - [14,822] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Adobe O43 - CFD: 04/04/2010 - 13:28:06 - [28,082] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Ahead O43 - CFD: 04/04/2010 - 14:41:08 - [0] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Apple O43 - CFD: 04/04/2010 - 14:43:14 - [48,627] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Apple Computer O43 - CFD: 08/02/2012 - 16:17:26 - [0,037] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\ApplicationHistory O43 - CFD: 25/01/2012 - 10:15:12 - [0,001] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\ArcSoft O43 - CFD: 24/09/2011 - 15:01:40 - [5,983] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\ArmA 2 Free O43 - CFD: 11/02/2012 - 21:44:22 - [338,074] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\ArmA 2 REINFORCEMENTS O43 - CFD: 03/03/2012 - 19:36:42 - [101,259] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Google O43 - CFD: 05/04/2010 - 16:50:30 - [3,703] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\HP O43 - CFD: 02/04/2010 - 12:02:56 - [16,383] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Identities O43 - CFD: 05/04/2010 - 16:51:10 - [0,001] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\IsolatedStorage O43 - CFD: 29/02/2012 - 20:55:26 - [22,300] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Microsoft O43 - CFD: 06/04/2010 - 06:42:58 - [51,466] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Mozilla O43 - CFD: 14/09/2011 - 13:22:32 - [0] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\OpenCandy O43 - CFD: 10/09/2011 - 17:35:40 - [0] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\PackageAware O43 - CFD: 19/09/2010 - 07:54:08 - [0] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\PCHealth O43 - CFD: 05/04/2010 - 11:48:58 - [53,412] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Sony O43 - CFD: 22/06/2011 - 12:12:18 - [0] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Temp O43 - CFD: 30/04/2010 - 18:39:54 - [4,471] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Thunderbird O43 - CFD: 11/11/2011 - 15:25:26 - [0] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Ubisoft Game Launcher O43 - CFD: 01/07/2011 - 18:17:32 - [250,822] ----D- C:\Documents and Settings\Bruno\Local Settings\Application Data\Unity ~ Scan Program Folder in 00mn 00s ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.DDDB51C4ECA1430E55CB4F6B5D5A34F4] - 28/03/2012 - 18:19:09 ---A- . (...) -- C:\WINDOWS\setupapi.log [32652] O44 - LFC:[MD5.DCC78B14C94A442C60981A7095B4A730] - 28/03/2012 - 14:00:14 ---A- . (...) -- C:\WINDOWS\NeroDigital.ini [69] O44 - LFC:[MD5.007B0260A7FFF9FA7CA236EC37411BB9] - 28/03/2012 - 13:55:39 ---A- . (...) -- C:\WINDOWS\wiadebug.log [304] O44 - LFC:[MD5.1857685BD3C16B92365FBA9AE2CEF725] - 28/03/2012 - 10:11:00 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32572] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 28/03/2012 - 09:52:18 ---A- . (...) -- C:\WINDOWS\setupact.log [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 28/03/2012 - 09:52:18 ---A- . (...) -- C:\WINDOWS\setuperr.log [0] O44 - LFC:[MD5.DADFB7943A165DDA86AB9A80CE6B304E] - 28/03/2012 - 07:39:33 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [1761890] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 28/03/2012 - 07:24:03 ---A- . (...) -- C:\WINDOWS\0.log [0] O44 - LFC:[MD5.F0A90E3AE41795B8CCFEC7044F619159] - 28/03/2012 - 07:22:52 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50] O44 - LFC:[MD5.F1711D02049E779FE034272E9B8232D9] - 28/03/2012 - 07:21:06 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [13646] O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 28/03/2012 - 07:20:51 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048] O44 - LFC:[MD5.4F0D39A2BCC126BE55E8408484176346] - 27/03/2012 - 19:20:56 ---A- . (...) -- C:\WINDOWS\epplauncher.mif [2127] O44 - LFC:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 26/03/2012 - 11:18:02 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20464] O44 - LFC:[MD5.EEB25410190D7789A8B7A772FEE3CF22] - 26/03/2012 - 11:03:40 ---A- . (...) -- C:\TDSSKiller.2.7.22.0_26.03.2012_11.59.23_log.txt [89948] O44 - LFC:[MD5.C380E830A4BD08440E6757213F126DB7] - 26/03/2012 - 10:15:25 ---A- . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\system32\drivers\TrufosAlt.sys [335504] O44 - LFC:[MD5.7452513396B6639D7040939709F6D2DC] - 25/03/2012 - 21:29:38 ---A- . (...) -- C:\ComboFix.txt [21716] O44 - LFC:[MD5.C9DD76D0EF94637C77FF8CA5E0FB0684] - 25/03/2012 - 21:20:08 ---A- . (...) -- C:\WINDOWS\system.ini [227] O44 - LFC:[MD5.2D7044456557B88344DBBB80C12B1DFE] - 25/03/2012 - 20:57:59 RSHA- . (...) -- C:\boot.ini [332] O44 - LFC:[MD5.2E4853959CDED93F8F980696E65AA879] - 25/03/2012 - 20:57:28 ---A- . (...) -- C:\WINDOWS\system32\d3d9caps.dat [1984] O44 - LFC:[MD5.8129C5EE419AA3CB590DE859CD5BBFC8] - 25/03/2012 - 19:11:17 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl [414368] O44 - LFC:[MD5.9799C6BE0DC68F8135575628A703C876] - 22/03/2012 - 20:12:12 ---A- . (.Google Inc. - Google Photos Screensaver.) -- C:\WINDOWS\system32\GPhotos.scr [4435968] O44 - LFC:[MD5.9B38C27714B6F5325215198FE12C0F70] - 18/03/2012 - 13:55:22 ---A- . (...) -- C:\WINDOWS\system32\nvdrsdb1.bin [293992] O44 - LFC:[MD5.55A54008AD1BA589AA210D2629C1DF41] - 18/03/2012 - 13:55:22 ---A- . (...) -- C:\WINDOWS\system32\nvdrssel.bin [1] O44 - LFC:[MD5.F2F16F5DE9C374A395D6FFB1E2EE7225] - 18/03/2012 - 13:55:10 ---A- . (...) -- C:\WINDOWS\system32\nvdrsdb0.bin [293992] O44 - LFC:[MD5.CBFB108E4D38E1D81CB92E6C771FB334] - 14/03/2012 - 09:46:04 ---A- . (...) -- C:\WINDOWS\system32\FNTCACHE.DAT [125320] O44 - LFC:[MD5.0195003E40E6EBB9B684C2FD1D13E38D] - 09/03/2012 - 14:07:31 ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\WINDOWS\system32\nvhdagenco3220103.dll [876864] O44 - LFC:[MD5.37C1DDB74057504C22D0E50B4FCB6EDA] - 01/03/2012 - 00:58:00 ---A- . (...) -- C:\WINDOWS\system32\nvdata.data [2784050] O44 - LFC:[MD5.511B756C856DD836ECD6F29FD3238FCD] - 01/03/2012 - 00:58:00 ---A- . (...) -- C:\WINDOWS\system32\nvinfo.pb [7843] O44 - LFC:[MD5.5CF34CDD13BB3D000370765F91DB5C51] - 01/03/2012 - 00:58:00 ---A- . (.Khronos Group - OpenCL Client DLL.) -- C:\WINDOWS\system32\OpenCL.dll [65536] O44 - LFC:[MD5.D6878F6B52F5D669447E09717EA75C64] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\WINDOWS\system32\nvdispco32.dll [1000256] O44 - LFC:[MD5.24E3CD5A534FA542E657EF8F2CFFC207] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\WINDOWS\system32\nvgenco32.dll [881984] O44 - LFC:[MD5.3B70BB8545E4C1C62149583DE006D0D8] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 296.10.) -- C:\WINDOWS\system32\nvcuda.dll [5918720] O44 - LFC:[MD5.200CF589C782C6B1E1B25A510DDFB728] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 296.1.) -- C:\WINDOWS\system32\nvcuvid.dll [2522944] O44 - LFC:[MD5.9C6FC13A77FD5C13AB7A8560E75A821A] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 296.10.) -- C:\WINDOWS\system32\nvcuvenc.dll [2437440] O44 - LFC:[MD5.14D7CB7DDF3CC8F4824B2E51B6A378D3] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\WINDOWS\system32\nvoglnt.dll [18624512] O44 - LFC:[MD5.95C3D5D5F6F202A7ABDC4070AE97AD50] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 296.10.) -- C:\WINDOWS\system32\nvcompiler.dll [17534976] O44 - LFC:[MD5.D69F56201D29AF927B3C1819E9EFB079] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA NVAPI Library, Version 296.10.) -- C:\WINDOWS\system32\nvapi.dll [2291712] O44 - LFC:[MD5.260626EBE7F473500A462D4E3A105CFF] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA Windows XP Display driver, Version 2.) -- C:\WINDOWS\system32\nv4_disp.dll [4309760] O44 - LFC:[MD5.062C16F3364C7706713282163586988E] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version.) -- C:\WINDOWS\system32\drivers\nv4_mini.sys [13417632] O44 - LFC:[MD5.7D4B92CEA8C1C28C4B53BD1B72F8AA26] - 29/02/2012 - 22:15:40 ---A- . (.NVIDIA Corporation - NVIDIA Hebrew language resource library.) -- C:\WINDOWS\system32\nvrshe.dll [335872] O44 - LFC:[MD5.A333318304B5D4FC7B76E61BBFB77816] - 29/02/2012 - 22:15:40 ---A- . (.NVIDIA Corporation - NVIDIA Japanese language resource library.) -- C:\WINDOWS\system32\nvrsja.dll [274432] O44 - LFC:[MD5.F93B48223495588278F69C2DECF3A249] - 29/02/2012 - 22:15:40 ---A- . (.NVIDIA Corporation - NVIDIA Latin American Spanish language reso.) -- C:\WINDOWS\system32\nvrsesm.dll [274432] O44 - LFC:[MD5.28F116655CE9136A3110FBB399A5A954] - 29/02/2012 - 22:15:40 ---A- . (.NVIDIA Corporation - NVIDIA Polish language resource library.) -- C:\WINDOWS\system32\nvrspl.dll [258048] O44 - LFC:[MD5.BA71659E307F32BF605F2A80274F4613] - 29/02/2012 - 22:15:40 ---A- . (.NVIDIA Corporation - NVIDIA Swedish language resource library.) -- C:\WINDOWS\system32\nvrssv.dll [253952] O44 - LFC:[MD5.D12B60A596E5728AF8637B5B4EA7A93C] - 29/02/2012 - 22:15:39 ---A- . (.NVIDIA Corporation - NVIDIA Czech language resource library.) -- C:\WINDOWS\system32\nvrscs.dll [249856] O44 - LFC:[MD5.12F43C4AED0D253A68CACB5EBF7EB1E8] - 29/02/2012 - 22:15:39 ---A- . (.NVIDIA Corporation - NVIDIA UK English language resource library.) -- C:\WINDOWS\system32\nvrseng.dll [249856] O44 - LFC:[MD5.A134AAE9FA435DECFF06617D4A8E88DE] - 29/02/2012 - 22:15:38 ---A- . (.NVIDIA Corporation - NVIDIA German language resource library.) -- C:\WINDOWS\system32\nvrsde.dll [278528] O44 - LFC:[MD5.768678EE52D703DCA27B55C03B07A388] - 29/02/2012 - 22:15:38 ---A- . (.NVIDIA Corporation - NVIDIA Italian language resource library.) -- C:\WINDOWS\system32\nvrsit.dll [282624] O44 - LFC:[MD5.BD2ACD338C347E3454F09E6BB85354E8] - 29/02/2012 - 22:15:38 ---A- . (.NVIDIA Corporation - NVIDIA Portuguese (Brazilian) language reso.) -- C:\WINDOWS\system32\nvrsptb.dll [270336] O44 - LFC:[MD5.9C04E08615D05FF93A5B8589D5C46CDC] - 29/02/2012 - 22:15:38 ---A- . (.NVIDIA Corporation - NVIDIA Slovak language resource library.) -- C:\WINDOWS\system32\nvrssk.dll [258048] O44 - LFC:[MD5.3D4F004B2CECDCB27DE30379A8885CF4] - 29/02/2012 - 22:15:37 ---A- . (.NVIDIA Corporation - NVIDIA Hungarian language resource library.) -- C:\WINDOWS\system32\nvrshu.dll [262144] O44 - LFC:[MD5.D04988C18FB23BC722CB76FFCA6663F9] - 29/02/2012 - 22:15:37 ---A- . (.NVIDIA Corporation - NVIDIA Iberian Portuguese language resource.) -- C:\WINDOWS\system32\nvrspt.dll [274432] O44 - LFC:[MD5.2DD055F4386D2A7A78B5D4AD4F6B8B40] - 29/02/2012 - 22:15:36 ---A- . (.NVIDIA Corporation - NVIDIA Korean language resource library.) -- C:\WINDOWS\system32\nvrsko.dll [266240] O44 - LFC:[MD5.EA535D89DD32C7042A820C5F5A7E68F1] - 29/02/2012 - 22:15:35 ---A- . (.NVIDIA Corporation - NVIDIA Arabic language resource library.) -- C:\WINDOWS\system32\nvrsar.dll [335872] O44 - LFC:[MD5.FECA6A80953EB9F4CF60412623F93C26] - 29/02/2012 - 22:15:35 ---A- . (.NVIDIA Corporation - NVIDIA Dutch language resource library.) -- C:\WINDOWS\system32\nvrsnl.dll [274432] O44 - LFC:[MD5.05FFA182540795D9D225F900311CD7DC] - 29/02/2012 - 22:15:35 ---A- . (.NVIDIA Corporation - NVIDIA Norwegian language resource library.) -- C:\WINDOWS\system32\nvrsno.dll [253952] O44 - LFC:[MD5.0BB149A85627B8574107EA0D3C6EF0C0] - 29/02/2012 - 22:15:35 ---A- . (.NVIDIA Corporation - NVIDIA Spanish language resource library.) -- C:\WINDOWS\system32\nvrses.dll [282624] O44 - LFC:[MD5.2B4E156EA7A2C8AE2CD90420F71243F8] - 29/02/2012 - 22:15:35 ---A- . (.NVIDIA Corporation - NVIDIA Thai language resource library.) -- C:\WINDOWS\system32\nvrsth.dll [253952] O44 - LFC:[MD5.FE38661EC65C3A637E73ED5D16D65723] - 29/02/2012 - 22:15:35 ---A- . (.NVIDIA Corporation - NVIDIA Turkish language resource library.) -- C:\WINDOWS\system32\nvrstr.dll [258048] O44 - LFC:[MD5.50212762451A31C101908C88732B427C] - 29/02/2012 - 22:15:34 ---A- . (.NVIDIA Corporation - NVIDIA French language resource library.) -- C:\WINDOWS\system32\nvrsfr.dll [286720] O44 - LFC:[MD5.6FB3B91F164AD967D18DB189270F6687] - 29/02/2012 - 22:15:34 ---A- . (.NVIDIA Corporation - NVIDIA Greek language resource library.) -- C:\WINDOWS\system32\nvrsel.dll [282624] O44 - LFC:[MD5.F25E496BECBC994B57F2185ED5876CAB] - 29/02/2012 - 22:15:34 ---A- . (.NVIDIA Corporation - NVIDIA Russian language resource library.) -- C:\WINDOWS\system32\nvrsru.dll [270336] O44 - LFC:[MD5.4BFD7C99CD0BB1D31CB4CC6817E74D26] - 29/02/2012 - 22:15:34 ---A- . (.NVIDIA Corporation - NVIDIA Simplified Chinese language resource.) -- C:\WINDOWS\system32\nvrszhc.dll [229376] O44 - LFC:[MD5.F195E69A8B88902AA01A4C96346E9565] - 29/02/2012 - 22:15:33 ---A- . (.NVIDIA Corporation - NVIDIA Chinese (Traditional) language resou.) -- C:\WINDOWS\system32\nvrszht.dll [126976] O44 - LFC:[MD5.2CA755B2DDF60D54B72A201905BC07F1] - 29/02/2012 - 22:15:11 ---A- . (.NVIDIA Corporation - NVIDIA Danish language resource library.) -- C:\WINDOWS\system32\nvrsda.dll [253952] O44 - LFC:[MD5.7C7FADB6AB3C197C82C5D772D5EE4AE4] - 29/02/2012 - 22:15:11 ---A- . (.NVIDIA Corporation - NVIDIA Finnish language resource library.) -- C:\WINDOWS\system32\nvrsfi.dll [249856] O44 - LFC:[MD5.D28948D104FB3A8B8C3F0CAC147C65F0] - 29/02/2012 - 22:15:10 ---A- . (.NVIDIA Corporation - NVIDIA Slovenian language resource library.) -- C:\WINDOWS\system32\nvrssl.dll [258048] O44 - LFC:[MD5.239875B323B1114267E68622AA256E24] - 29/02/2012 - 21:30:31 ---A- . (.NVIDIA Corporation - NVIDIA nView Display Driver Interface Lib,.) -- C:\WINDOWS\system32\nvwddi.dll [54272] O44 - LFC:[MD5.6AFDA7F4446A5F9B0F53CA7F3BFCEBCE] - 29/02/2012 - 21:30:24 ---A- . (.NVIDIA Corporation - NVIDIA Color Optimizer, Version 296.10.) -- C:\WINDOWS\system32\nvcolor.exe [143680] O44 - LFC:[MD5.6893DE842254DA32AD9481CD7439955A] - 29/02/2012 - 21:30:24 ---A- . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\nvcpl.dll [15494464] O44 - LFC:[MD5.B2F5AC506C9B1103827B62BA18A2C514] - 29/02/2012 - 21:30:23 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 296.1.) -- C:\WINDOWS\system32\nvsvc32.exe [164160] O44 - LFC:[MD5.A0F5037EEE80BF09FF80EE8577465E0D] - 29/02/2012 - 21:30:23 ---A- . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\WINDOWS\system32\nvmctray.dll [108352] O44 - LFC:[MD5.D3BCEE679ED4285FFB025FC71C1F073B] - 24/05/2011 - 21:43:36 ---A- . (...) -- C:\Boot.bak [216] O44 - LFC:[MD5.48C65662EC81FBCAA110509F50C51497] - 03/08/2004 - 22:00:08 RS-A- . (...) -- C:\cmldr [263488] ~ Scan Files in 00mn 01s ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.EB69B4335F6BAE6952EF98C503A330EF] - 26/03/2012 - 15:15:37 ---A- - C:\WINDOWS\Prefetch\DWTRIG20.EXE-05D8A0C7.pf O45 - LFCP:[MD5.37A4B32128AAE38AA72A9416A43E300B] - 27/03/2012 - 19:16:53 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-3B5E532E.pf O45 - LFCP:[MD5.1DC245F353D22CC9F8EBD6E990013F94] - 27/03/2012 - 19:51:06 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-57C8756E.pf O45 - LFCP:[MD5.A40705C80DB232CB7AC2B2E83C52BB34] - 28/03/2012 - 07:23:42 ---A- - C:\WINDOWS\Prefetch\KHALMNPR.EXE-39603A2C.pf O45 - LFCP:[MD5.447534DE5531B32E9CF02194196FD088] - 28/03/2012 - 07:23:51 ---A- - C:\WINDOWS\Prefetch\PROFILERU.EXE-075661BD.pf O45 - LFCP:[MD5.1186C4C871705359FB64F8ED8BBD6455] - 28/03/2012 - 07:24:15 ---A- - C:\WINDOWS\Prefetch\MSSECES.EXE-314A90C6.pf O45 - LFCP:[MD5.D20521B622F3FCF21C1DA3ECBB76C04F] - 28/03/2012 - 07:25:23 ---A- - C:\WINDOWS\Prefetch\BELKINWCUI.EXE-0B3AF38D.pf O45 - LFCP:[MD5.30996A80C1BA8236FAA7EB48BE81441C] - 28/03/2012 - 07:25:24 ---A- - C:\WINDOWS\Prefetch\HPQTRA08.EXE-014253AB.pf O45 - LFCP:[MD5.37FA363DA3ADE62CC683E6A4AB274C02] - 28/03/2012 - 07:25:25 ---A- - C:\WINDOWS\Prefetch\IPODSERVICE.EXE-37043579.pf O45 - LFCP:[MD5.0B60142C0563CD2197A549ACA0721631] - 28/03/2012 - 07:25:32 ---A- - C:\WINDOWS\Prefetch\QUICKSTART.EXE-33E8A351.pf O45 - LFCP:[MD5.5F6F986F84087964DB574340D5EBF5DF] - 28/03/2012 - 07:25:42 ---A- - C:\WINDOWS\Prefetch\SOFFICE.EXE-012D2D56.pf O45 - LFCP:[MD5.280D7C7D9335C5C261761CC1659B1E7D] - 28/03/2012 - 07:26:01 ---A- - C:\WINDOWS\Prefetch\NMINDEXSTORESVR.EXE-13F11D87.pf O45 - LFCP:[MD5.1E72F5EC1AF1826331B06A6657376407] - 28/03/2012 - 07:26:12 ---A- - C:\WINDOWS\Prefetch\SOFFICE.BIN-091CC27D.pf O45 - LFCP:[MD5.BAA2E222EB21DFA0F647F3F5D4612E26] - 28/03/2012 - 07:26:47 ---A- - C:\WINDOWS\Prefetch\HPQSTE08.EXE-007EAA1E.pf O45 - LFCP:[MD5.9BE715F5ED1FF95A482262D4D3351A4C] - 28/03/2012 - 07:27:05 ---A- - C:\WINDOWS\Prefetch\HPQGPC01.EXE-0CEB6543.pf O45 - LFCP:[MD5.E670BAB776DA232B27A1A87E6E99A29A] - 28/03/2012 - 07:32:19 ---A- - C:\WINDOWS\Prefetch\MPCMDRUN.EXE-1F87D1F0.pf O45 - LFCP:[MD5.244CD42A2FA76D232BE7D652F4763516] - 28/03/2012 - 07:32:44 ---A- - C:\WINDOWS\Prefetch\WUAUCLT.EXE-1360D60A.pf O45 - LFCP:[MD5.21C941497AB0689373FC32DE6AD5F540] - 28/03/2012 - 09:11:56 ---A- - C:\WINDOWS\Prefetch\IMAPI.EXE-201490BB.pf O45 - LFCP:[MD5.8E18BFB8B10B6103FFA05E822ACA19E9] - 28/03/2012 - 09:53:20 ---A- - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-0D449B4F.pf O45 - LFCP:[MD5.B141C6DBB6070218CFB5A0B3FAFAF79A] - 28/03/2012 - 13:56:37 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-6E8D4657.pf O45 - LFCP:[MD5.F774957FABB8117794E43C20B9BF0921] - 28/03/2012 - 14:55:39 ---A- - C:\WINDOWS\Prefetch\TASKMGR.EXE-06144C13.pf O45 - LFCP:[MD5.45AF2633233F0EC13D2EC134B0568D96] - 28/03/2012 - 14:59:13 ---A- - C:\WINDOWS\Prefetch\VERCLSID.EXE-28F52AD2.pf O45 - LFCP:[MD5.73A48C6FABC0174B457710C2E0C3DCE9] - 28/03/2012 - 16:06:27 ---A- - C:\WINDOWS\Prefetch\GPHOTOS.SCR-0963F61A.pf O45 - LFCP:[MD5.F87C7A654CCE75B3948D5513DB4335E1] - 28/03/2012 - 16:50:42 ---A- - C:\WINDOWS\Prefetch\GOOGLEUPDATERSERVICE.EXE-2F4A2F77.pf O45 - LFCP:[MD5.B90F132B67943CF287D9ACA19F93EDEC] - 28/03/2012 - 17:58:03 ---A- - C:\WINDOWS\Prefetch\PICASA3.EXE-0849F674.pf O45 - LFCP:[MD5.A7AE3218DF01794306D5657165A223AA] - 28/03/2012 - 18:06:18 ---A- - C:\WINDOWS\Prefetch\Layout.ini O45 - LFCP:[MD5.95EACE852EFA2357324560C803EC6A15] - 28/03/2012 - 18:06:57 ---A- - C:\WINDOWS\Prefetch\LOGONUI.EXE-312BE1BF.pf O45 - LFCP:[MD5.F7A0B6A5AD5DF3BECD08FB5E569C2690] - 28/03/2012 - 18:07:22 ---A- - C:\WINDOWS\Prefetch\FIREFOX.EXE-06188867.pf O45 - LFCP:[MD5.C0213EA77E16CC97115B4A75A8287A96] - 28/03/2012 - 18:08:41 ---A- - C:\WINDOWS\Prefetch\PLUGIN-CONTAINER.EXE-0EB365FC.pf O45 - LFCP:[MD5.27A51FEAF1C54BB0D029B45515A7B8EA] - 28/03/2012 - 18:11:04 ---A- - C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-160E1F62.pf O45 - LFCP:[MD5.620BBAFF8B9FDDE4329242DA07C82ED9] - 28/03/2012 - 18:11:51 ---A- - C:\WINDOWS\Prefetch\NOTEPAD.EXE-2F2D61E1.pf O45 - LFCP:[MD5.33276F10EBEC6B3F0350D20915084A0F] - 28/03/2012 - 18:12:17 ---A- - C:\WINDOWS\Prefetch\HPQUSGL.EXE-0EB3A1D2.pf O45 - LFCP:[MD5.F8D0FDC5020879F1195133DAFDB2B10A] - 28/03/2012 - 18:15:20 ---A- - C:\WINDOWS\Prefetch\XDELTA3.EXE-28011BA1.pf O45 - LFCP:[MD5.BF54CEA0D6A95201B08896080D03D5E0] - 28/03/2012 - 18:18:53 ---A- - C:\WINDOWS\Prefetch\DXDLLREG.EXE-0B1DA942.pf O45 - LFCP:[MD5.0F43A54F5A84E8734314BD2E493EAF5F] - 28/03/2012 - 18:18:58 ---A- - C:\WINDOWS\Prefetch\DXSETUP.EXE-1BA57A83.pf O45 - LFCP:[MD5.180481F0868ABF28A760AB9DAC3DB3F9] - 28/03/2012 - 18:19:12 ---A- - C:\WINDOWS\Prefetch\SETUP_BATTLEYEARMA.EXE-31327AB2.pf O45 - LFCP:[MD5.CFCD38EFA4A634FC0C1C6BFB0C0191E8] - 28/03/2012 - 18:22:57 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG2.EXE-023E3DAA.pf O45 - LFCP:[MD5.1AD629D40EECDA0A6A8F62A411E7D0E8] - 28/03/2012 - 18:22:58 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG2.TMP-364F2D8F.pf O45 - LFCP:[MD5.F6EA8B04E7F16E8C2C9EDC2AACC01D08] - 28/03/2012 - 18:23:10 ---A- - C:\WINDOWS\Prefetch\MSFEEDSSYNC.EXE-05335A39.pf O45 - LFCP:[MD5.E6B0246FD5D3CEA9CAC0309D028E601D] - 28/03/2012 - 18:23:38 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG.EXE-25C13877.pf O45 - LFCP:[MD5.1C4ACC30CA6078202C1C87F32BE5B3E4] - 28/03/2012 - 18:26:09 ---A- - C:\WINDOWS\Prefetch\AGENT.EXE-2D4F7BC4.pf O45 - LFCP:[MD5.0F78F2D0DD3210DE73F1BCE8BA001B5D] - 28/03/2012 - 18:33:36 ---A- - C:\WINDOWS\Prefetch\PV.EXE-0596A56A.pf O45 - LFCP:[MD5.D5AF6D8F01199373AAD4762F0A7982BC] - 28/03/2012 - 18:33:38 ---A- - C:\WINDOWS\Prefetch\CMD.EXE-034B0549.pf ~ Scan Prefetcher in 00mn 00s ---\\ Export de clé d'application autorisée (O47) O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe O47 - AAKE:Key Export SP - "C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe" [Enabled] .(.Sony Creative Software Inc. - Media Manager.) -- C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe O47 - AAKE:Key Export SP - "C:\Program Files\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe" [Enabled] .(.Research In Motion - BlackBerry Desktop Software.) -- C:\Program Files\Research In Motion\BlackBerry desktop\Rim.desktop.exe O47 - AAKE:Key Export SP - "C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\NGM.exe" [Disabled] .(.Nexon - Nexon Game Manager.) -- C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\NGM.exe O47 - AAKE:Key Export SP - "C:\Program Files\Bohemia Interactive\ArmA 2\arma2.exe" [Enabled] .(.Bohemia Interactive - ArmA 2.) -- C:\Program Files\Bohemia Interactive\ArmA 2\arma2.exe O47 - AAKE:Key Export SP - "C:\Program Files\TeamSpeak 3 Client\ts3client_win32.exe" [Enabled] .(.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) -- C:\Program Files\TeamSpeak 3 Client\ts3client_win32.exe O47 - AAKE:Key Export SP - "C:\Program Files\Bonjour\mDNSResponder.exe" [Enabled] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe O47 - AAKE:Key Export SP - "C:\Program Files\Fichiers communs\Apple\Apple Application Support\WebKit2WebProcess.exe" [Enabled] .(.Apple Inc..) -- C:\Program Files\Fichiers communs\Apple\Apple Application Support\WebKit2WebProcess.exe O47 - AAKE:Key Export SP - "C:\Program Files\iTunes\iTunes.exe" [Enabled] .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe O47 - AAKE:Key Export SP - "C:\Program Files\Skype\Phone\Skype.exe" [Enabled] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" [Enabled] .(.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" [Enabled] .(.Hewlett-Packard Co. - HP All-in-One Launcher Utility.) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE-Scanning Flow Component.) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE-Print Component.) -- C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" [Enabled] .(.Hewlett-Packard Co. - Embedded Web Server Link application.) -- C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe" [Enabled] .(.Hewlett-Packard Co. - HP Scan Application Resources.) -- C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" [Enabled] .(.Hewlett-Packard Co. - HP Guided Solutions.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe" [Enabled] .(.Hewlett-Packard - GPCore COM object.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\HP Software Update\hpwucli.exe" [Enabled] .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files\HP\HP Software Update\hpwucli.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" [Enabled] .(.Hewlett-Packard Co..) -- C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintexe.exe O47 - AAKE:Key Export SP - "C:\Program Files\Mozilla Firefox\firefox.exe" [Disabled] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe O47 - AAKE:Key Export DP - "C:\Nexon\Combat Arms EU\CombatArms.exe" [Enabled] .(...) -- C:\Nexon\Combat Arms EU\CombatArms.exe (.not file.) O47 - AAKE:Key Export DP - "C:\Nexon\Combat Arms EU\Engine.exe" [Enabled] .(...) -- C:\Nexon\Combat Arms EU\Engine.exe (.not file.) O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" [Enabled] .(.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" [Enabled] .(.Hewlett-Packard Co. - HP All-in-One Launcher Utility.) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE-Scanning Flow Component.) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE-Print Component.) -- C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" [Enabled] .(.Hewlett-Packard Co. - Embedded Web Server Link application.) -- C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe" [Enabled] .(.Hewlett-Packard Co. - HP Scan Application Resources.) -- C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" [Enabled] .(.Hewlett-Packard Co. - HP Guided Solutions.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe" [Enabled] .(.Hewlett-Packard - GPCore COM object.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\HP Software Update\hpwucli.exe" [Enabled] .(.Hewlett-Packard - HP Update Client.) -- C:\Program Files\HP\HP Software Update\hpwucli.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" [Enabled] .(.Hewlett-Packard Co..) -- C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintexe.exe ~ Scan Keys in 00mn 00s ---\\ Déni du service (Local Security Authority) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\system32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Kerberos Security Package.) -- C:\WINDOWS\system32\kerberos.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\system32\msv1_0.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\WINDOWS\system32\wdigest.dll ~ Scan Keys in 00mn 00s ---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\96563120.sys . (...) -- C:\WINDOWS\system32\Drivers\96563120.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\96563120.sys . (...) -- C:\WINDOWS\system32\Drivers\96563120.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.) ~ Scan CSB in 00mn 00s ---\\ Image File Execution Options (IFEO) (O50) O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d ~ Scan IFEO in 00mn 00s ---\\ MountPoints2 Shell Key (O51) (None) ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\system32\ir50_32.dll O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm O52 - TDSD: \Drivers32\"vidc.DIVX"="DivX.dll" . (.DivX, Inc. - DivX.) -- C:\WINDOWS\system32\DivX.dll O52 - TDSD: \Drivers32\"vidc.yv12"="DivX.dll" . (.DivX, Inc. - DivX.) -- C:\WINDOWS\system32\DivX.dll O52 - TDSD: \Drivers32\"VIDC.FFDS"="C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll" . (...) -- (.not file.) O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax O52 - TDSD: \drivers.desc\"ir50_32.dll"="Indeo® video 5.10" . (...) -- (.not file.) O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\WINDOWS\system32\ff_vfw.dll O52 - TDSD: \drivers.desc\"DivX.dll"="DivX 6.9.2 Codec" . (...) -- (.not file.) O52 - TDSD: \drivers.desc\"C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll"="FFDShow Video Encoder" . (...) -- (.not file.) ~ Scan Keys in 00mn 00s ---\\ ShareTools MSconfig StartupReg (O53) (None) ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0 O55 - MWPS:[HKCU\...\Policies\System] - "disableregistrytools"=0 ~ Scan Keys in 00mn 00s ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=323 O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=67108863 O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDrives"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveAutoRun"=67108863 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=323 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDrives"=0 ~ Scan Keys in 00mn 00s ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.267FC636801EDC5AB28E14036349E3BE] - 18/11/2009 - 06:16:00 ---A- . (.Creative - Creative WDM 3D Audio Driver.) -- C:\WINDOWS\system32\drivers\Ambfilt.sys [1691480] O58 - SDL:[MD5.35A6A419D7526F5CF824AFB23AFA08D6] - 25/04/2008 - 05:06:44 ---A- . (.ArcSoft, Inc. - Pas de description.) -- C:\WINDOWS\system32\drivers\ArcSoftKsUFilter.sys [14336] O58 - SDL:[MD5.D48659BB24C48345D926ECB45C1EBDF5] - 13/08/2004 - 19:56:20 R--A- . (.Pas de propriétaire - ATK0110 ACPI Utility.) -- C:\WINDOWS\system32\drivers\ASACPI.sys [5810] O58 - SDL:[MD5.C2A6683C9FF46AA70E2C2092B008EDC7] - 11/10/2006 - 20:33:58 ---A- . (...) -- C:\WINDOWS\system32\drivers\ASUSHWIO.SYS [10288] O58 - SDL:[MD5.4D689ED3049947F311330488E1C055C9] - 31/10/2006 - 20:10:06 R--A- . (.Attansic Technology corporation. - Attansic L1 Gigabit Ethernet Controller ndis miniport driver.) -- C:\WINDOWS\system32\drivers\atl01_xp.sys [35840] O58 - SDL:[MD5.ED910B63A75863A89AAB65F2763D5B71] - 10/11/2005 - 19:54:56 R--A- . (.Belkin Corporation - Belkin Wireless G USB Network Adapter Driver.) -- C:\WINDOWS\system32\drivers\BLKWGU.sys [402944] O58 - SDL:[MD5.EE0F41FA0466189A2C8B9CAF7D1CDDD5] - 08/06/2005 - 17:44:20 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\system32\drivers\BRGSp50.sys [20608] O58 - SDL:[MD5.7F4288419E9ABACF86DDBD0FD95DCC22] - 08/06/2005 - 17:44:42 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver (AMD64).) -- C:\WINDOWS\system32\drivers\BRGSp50a64.sys [29184] O58 - SDL:[MD5.837EEF65AF62D4E8A37C41D3879F7274] - 02/02/2007 - 03:00:00 ---A- . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdr4_xp.sys [9336] O58 - SDL:[MD5.579DA2F9F5401F55DAE2CF8779D61DFC] - 02/02/2007 - 03:00:00 ---A- . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdralw2k.sys [9464] O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 14/04/2008 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys [262528] O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 14/04/2008 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys [11776] O58 - SDL:[MD5.8182FF89C65E4D38B2DE4BB0FB18564E] - 18/05/2009 - 12:17:00 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys [26600] O58 - SDL:[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - 13:00:00 ---A- . (.Windows ® Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\system32\drivers\hdaudbus.sys [144384] O58 - SDL:[MD5.D03D10F7DED688FECF50F8FBF1EA9B8A] - 05/08/2009 - 16:22:57 R--A- . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\system32\drivers\HPZid412.sys [49920] O58 - SDL:[MD5.89F41658929393487B6B7D13C8528CE3] - 05/08/2009 - 16:22:57 R--A- . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\system32\drivers\HPZipr12.sys [16496] O58 - SDL:[MD5.ABCB05CCDBF03000354B9553820E39F8] - 05/08/2009 - 16:22:57 R--A- . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\system32\drivers\HPZius12.sys [21568] O58 - SDL:[MD5.D88846F9F4F27AE9BE584A6E5B6B8753] - 11/04/2007 - 14:32:30 ---A- . (.Logitech Inc. - Logitech PS2 Keyboard Filter Driver..) -- C:\WINDOWS\system32\drivers\L8042Kbd.sys [20496] O58 - SDL:[MD5.BEA61FDA2103F6F51B14EB0872E8A050] - 11/04/2007 - 14:32:38 ---A- . (.Logitech Inc. - Logitech PS/2 Mouse Filter Driver..) -- C:\WINDOWS\system32\drivers\L8042mou.Sys [63248] O58 - SDL:[MD5.3FA98339E8D9E007726BE62F231E2015] - 11/04/2007 - 14:32:52 ---A- . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys [34832] O58 - SDL:[MD5.F259F758E04D8FB8D48C6CDBE45223E8] - 11/04/2007 - 14:32:58 ---A- . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys [36112] O58 - SDL:[MD5.CAB504E38FCED9A56D87D838E9BA13E9] - 11/04/2007 - 14:33:06 ---A- . (.Logitech Inc. - Logitech Filter Driver for Mouse Class..) -- C:\WINDOWS\system32\drivers\LMouKE.Sys [79376] O58 - SDL:[MD5.CA26E46EC8891058C9E10363DF4E4650] - 11/04/2007 - 14:33:14 ---A- . (.Logitech, Inc. - Logitech USB Filter Driver..) -- C:\WINDOWS\system32\drivers\LUsbFilt.sys [28688] O58 - SDL:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 10/12/2011 - 14:24:06 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [20464] O58 - SDL:[MD5.C7D9F9717916B34C1B00DD4834AF485C] - 18/11/2009 - 06:17:00 ---A- . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- C:\WINDOWS\system32\drivers\Monfilt.sys [1395800] O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 14/04/2008 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys [12032] O58 - SDL:[MD5.062C16F3364C7706713282163586988E] - 01/03/2012 - 00:58:00 ---A- . (.NVIDIA Corporation - NVIDIA Windows XP Miniport Driver, Version 296.10.) -- C:\WINDOWS\system32\drivers\nv4_mini.sys [13417632] O58 - SDL:[MD5.8EB410A64C86D51007687EE00BC2F912] - 17/01/2012 - 13:45:58 ---A- . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\system32\drivers\nvhda32.sys [123712] O58 - SDL:[MD5.EC6A07269D3762931F21F048F0A7875D] - 14/07/2010 - 10:33:08 ---A- . (.Hewlett-Packard - Camera mini Driver.) -- C:\WINDOWS\system32\drivers\nvtcam.sys [2696960] O58 - SDL:[MD5.0995BB0D7E0BAF62C1D06B1CC395D971] - 14/07/2010 - 10:33:04 ---A- . (.Hewlett-Packard - Camera mini Driver.) -- C:\WINDOWS\system32\drivers\nvtcamd2.sys [29312] O58 - SDL:[MD5.3B2F443B8E23D17D46F0E43E2FC42CFE] - 15/07/2009 - 12:43:32 ---A- . (.Portrait Displays, Inc. - PdiPorts Device Driver.) -- C:\WINDOWS\system32\drivers\PdiPorts.sys [17136] O58 - SDL:[MD5.87D211BA1E9759E26B6296E625A31CE8] - 16/09/2002 - 17:07:24 ---A- . (.PowerQuest Corporation - PowerQuest Boot Mode Driver..) -- C:\WINDOWS\system32\drivers\PQNTDRV.sys [4228] O58 - SDL:[MD5.18D9789A4664BF417EEA944D2776091A] - 09/08/2004 - 12:29:28 ---A- . (.Protection Technology - StarForce Protection Environment Driver.) -- C:\WINDOWS\system32\drivers\prodrv06.sys [53920] O58 - SDL:[MD5.8CC9671A7ED2902E747EE0892E1C8575] - 09/08/2004 - 12:33:26 ---A- . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\WINDOWS\system32\drivers\prohlp02.sys [114016] O58 - SDL:[MD5.960BCE3ED38761B446AABAC06C76BADF] - 19/07/2004 - 15:49:54 ---A- . (.Protection Technology - StarForce Protection Synchronization Driver.) -- C:\WINDOWS\system32\drivers\prosync1.sys [7040] O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 14/04/2008 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys [17792] O58 - SDL:[MD5.2C4FB2E9F039287767C384E46EE91030] - 09/01/2009 - 15:18:02 R--A- . (.Research in Motion Ltd - RIM Virtual Serial Driver.) -- C:\WINDOWS\system32\drivers\RimSerial.sys [27136] O58 - SDL:[MD5.F17713D108ACA124A139FDE877EEF68A] - 20/05/2008 - 17:33:50 ---A- . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\WINDOWS\system32\drivers\RimUsb.sys [22784] O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 14/04/2008 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys [12032] O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 14/04/2008 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys [12032] O58 - SDL:[MD5.4716F7EE8FB7FD02596ECE1EC70AFF53] - 03/05/2011 - 15:33:46 ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys [6404712] O58 - SDL:[MD5.BB20EBA89E0EF39697A1A8728C5685FE] - 10/06/2009 - 11:23:04 ---A- . (.Saitek - Saitek Magic Bus.) -- C:\WINDOWS\system32\drivers\SaiBus.sys [36992] O58 - SDL:[MD5.DE7A2FC379671998865122A08FD9DB52] - 01/05/2007 - 15:46:42 ---A- . (.Saitek - Saitek Hid Driver.) -- C:\WINDOWS\system32\drivers\SaiH040B.sys [132232] O58 - SDL:[MD5.A79FBDBC6A979259E38DEA7D29B57619] - 10/06/2009 - 11:23:04 ---A- . (.Saitek - Saitek Magic Mini Driver.) -- C:\WINDOWS\system32\drivers\SaiMini.sys [14080] O58 - SDL:[MD5.1890BD6B225D8E612B81C9C7171BCA83] - 01/05/2007 - 15:46:42 ---A- . (.Saitek - Saitek Usb Driver.) -- C:\WINDOWS\system32\drivers\SaiU040B.sys [28416] O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 14/04/2008 - 13:00:00 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys [20480] O58 - SDL:[MD5.462AEE0EA0481EA8BD45CAC876A4CCC4] - 01/12/2003 - 16:20:52 ---A- . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\WINDOWS\system32\drivers\sfhlp01.sys [4832] O58 - SDL:[MD5.C380E830A4BD08440E6757213F126DB7] - 26/03/2012 - 10:15:25 ---A- . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\system32\drivers\TrufosAlt.sys [335504] O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 14/04/2008 - 13:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys [21376] O58 - SDL:[MD5.EAFE1E00739AFE6C51487A050E772E17] - 15/02/2012 - 11:01:50 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\system32\drivers\usbaapl.sys [43520] O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 14/04/2008 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys [58112] O58 - SDL:[MD5.92D55C071596D098F4674D78FDA80736] - 17/08/2005 - 13:43:26 ---A- . (.ZyDAS Technology Corporation - ZD1211B 802.11 b+g USB LAN Driver.) -- C:\WINDOWS\system32\drivers\ZD1211BU.SYS [329728] O58 - SDL:[MD5.00AE175B903D45ED4A62384D3315DC2A] - 25/10/2004 - 12:40:58 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\system32\drivers\ZDPSp50.sys [17664] O58 - SDL:[MD5.E11183B2F02AE38915982D10D717C6C6] - 18/03/2005 - 14:35:28 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver (AMD64).) -- C:\WINDOWS\system32\drivers\ZDPSp50a64.sys [31744] O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\country.sys [27097] O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\himem.sys [4912] O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\key01.sys [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\keyboard.sys [42537] O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos.sys [27916] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos404.sys [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos411.sys [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos412.sys [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos804.sys [29146] O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio.sys [34000] O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio404.sys [34560] O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio411.sys [35648] O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio412.sys [35424] O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 14/04/2008 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio804.sys [34560] O58 - SDL:[MD5.29C917279D79848B3DD94909FC00E2A8] - 14/01/2004 - 10:30:00 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\system32\ZDPNDIS5.SYS [17151] ~ Scan Drivers in 00mn 00s ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC:Last File Created 25/03/2012 - 14:36:36 ---A- C:\Documents And Settings\NetworkService\Application Data\Sun\Java\Deployment\deployment.properties [629] O61 - LFC:Last File Created 25/03/2012 - 15:03:16 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\bookmarkbackups\bookmarks-2012-03-25.json [13212] O61 - LFC:Last File Created 25/03/2012 - 15:25:02 ---A- C:\Documents And Settings\Bruno\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys(2)\settings.sol [501] O61 - LFC:Last File Created 25/03/2012 - 15:27:57 ---A- C:\Documents And Settings\All Users\Application Data\NVIDIA\Updatus\updtclient.log.bak [205] O61 - LFC:Last File Created 25/03/2012 - 15:30:45 ---A- C:\Documents And Settings\All Users\Application Data\NVIDIA\Updatus\journalBS.jour.dat [0] O61 - LFC:Last File Created 25/03/2012 - 15:50:30 ---A- C:\Documents And Settings\All Users\Application Data\NVIDIA\Updatus\updtConfig.xml [2452] O61 - LFC:Last File Created 25/03/2012 - 15:51:27 ---A- C:\Documents And Settings\UpdatusUser\NTUSER.DAT [245760] O61 - LFC:Last File Created 25/03/2012 - 15:57:47 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\ArcSoft\Connection Service\timecfg.txt [53] O61 - LFC:Last File Created 25/03/2012 - 15:57:48 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\ArcSoft\Connection Service\ADSystem\ADDesc.xml [167] O61 - LFC:Last File Created 25/03/2012 - 15:57:48 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\ArcSoft\Connection Service\ADSystem\ADPresentFile.xml [92] O61 - LFC:Last File Created 25/03/2012 - 16:19:36 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\cdn.innovid.com\InnovidExtension.sol [147] O61 - LFC:Last File Created 25/03/2012 - 16:19:36 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdn.innovid.com\settings.sol [85] O61 - LFC:Last File Created 25/03/2012 - 16:42:27 ---A- C:\Documents And Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\JDK85MGS\emailretargeting[1].xml [13] O61 - LFC:Last File Created 25/03/2012 - 17:36:08 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\s.ytimg.com\soundData.sol [49] O61 - LFC:Last File Created 25/03/2012 - 17:36:08 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.ytimg.com\settings.sol [81] O61 - LFC:Last File Created 25/03/2012 - 17:36:08 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [647] O61 - LFC:Last File Created 25/03/2012 - 18:49:43 ---A- C:\Documents And Settings\Bruno\Mes documents\Téléchargements\Firefox Setup 10.0.2.exe [15917152] O61 - LFC:Last File Created 25/03/2012 - 20:08:40 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Accessoires\Outils système\Centre de sécurité.lnk [1583] O61 - LFC:Last File Created 25/03/2012 - 20:14:26 ---A- C:\Documents And Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\AGJQ4HWR\clients.bluecava[1].xml [211] O61 - LFC:Last File Created 25/03/2012 - 20:14:41 ---A- C:\Documents And Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\OLSUFCUM\ad.yieldmanager[1].xml [136] O61 - LFC:Last File Created 25/03/2012 - 20:15:59 ---A- C:\Documents And Settings\All Users\Bureau\Mozilla Firefox.lnk [724] O61 - LFC:Last File Created 25/03/2012 - 20:15:59 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Mozilla Firefox.lnk [730] O61 - LFC:Last File Created 25/03/2012 - 20:15:59 ---A- C:\Documents And Settings\Bruno\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk [742] O61 - LFC:Last File Created 25/03/2012 - 20:16:07 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\pluginreg.dat.bak [12121] O61 - LFC:Last File Created 25/03/2012 - 20:36:53 ---A- C:\Documents And Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\NA0M95SU\www.google[1].xml [88] O61 - LFC:Last File Created 25/03/2012 - 20:56:23 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\player.viewster.com\HIRO_NETWORK_CAPPING_COOKIE.sol [174] O61 - LFC:Last File Created 25/03/2012 - 20:56:24 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\player.viewster.com\US_FARM_viewster_STREMING_CLIENT_ID_COOKIE.sol [187] O61 - LFC:Last File Created 25/03/2012 - 20:57:26 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\cdn.hiro.tv\STREMING_CLIENT_ID_COOKIE.sol [170] O61 - LFC:Last File Created 25/03/2012 - 20:57:26 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\cdn.hiro.tv\US_FARM_viewster_STREMING_CLIENT_ID_COOKIE.sol [187] O61 - LFC:Last File Created 25/03/2012 - 20:57:26 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\www.viewster.com\US_FARM_viewster_STREMING_CLIENT_ID_COOKIE.sol [187] O61 - LFC:Last File Created 25/03/2012 - 20:57:41 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\player.viewster.com\analytics.sol [471] O61 - LFC:Last File Created 25/03/2012 - 20:58:02 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\www.viewster.com\HIRO_NETWORK_CAPPING_COOKIE.sol [131] O61 - LFC:Last File Created 25/03/2012 - 20:58:02 ---A- C:\Documents And Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\E7MGEHHF\www.viewster.com\analytics.sol [419] O61 - LFC:Last File Created 25/03/2012 - 21:29:01 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\prefs.js.BAK [57252] O61 - LFC:Last File Created 25/03/2012 - 21:29:01 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\user.js [89] O61 - LFC:Last File Created 25/03/2012 - 21:29:01 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\user.js.BAK [89] O61 - LFC:Last File Created 26/03/2012 - 09:39:01 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Danish.bin [23225] O61 - LFC:Last File Created 26/03/2012 - 09:39:01 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Japanese.bin [25202] O61 - LFC:Last File Created 26/03/2012 - 09:39:01 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Korean.bin [20917] O61 - LFC:Last File Created 26/03/2012 - 09:39:02 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Dutch.bin [26202] O61 - LFC:Last File Created 26/03/2012 - 09:39:02 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\TradChin.bin [17584] O61 - LFC:Last File Created 26/03/2012 - 09:39:03 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\French.bin [28183] O61 - LFC:Last File Created 26/03/2012 - 09:39:03 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\German.bin [26669] O61 - LFC:Last File Created 26/03/2012 - 09:39:03 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Italian.bin [28419] O61 - LFC:Last File Created 26/03/2012 - 09:39:03 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Russian.bin [26582] O61 - LFC:Last File Created 26/03/2012 - 09:39:04 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Portuguese.bin [26912] O61 - LFC:Last File Created 26/03/2012 - 09:39:04 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\SWEDISH.bin [24503] O61 - LFC:Last File Created 26/03/2012 - 09:39:04 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Spanish.bin [28759] O61 - LFC:Last File Created 26/03/2012 - 09:39:05 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Arabic.bin [21543] O61 - LFC:Last File Created 26/03/2012 - 09:39:05 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\English.bin [22808] O61 - LFC:Last File Created 26/03/2012 - 09:39:05 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Greek.bin [25631] O61 - LFC:Last File Created 26/03/2012 - 09:39:05 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Polish.bin [24949] O61 - LFC:Last File Created 26/03/2012 - 09:39:05 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\SimChin.bin [17030] O61 - LFC:Last File Created 26/03/2012 - 09:39:05 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Thai.bin [22395] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Czech.bin [24769] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Finnish.bin [23326] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Hebrew.bin [19937] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Hungarian.bin [26549] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Norwegian.bin [22406] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Portuguese(Brazil).bin [26023] O61 - LFC:Last File Created 26/03/2012 - 09:39:06 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Turkish.bin [22830] O61 - LFC:Last File Created 26/03/2012 - 09:39:07 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Lithuanian.bin [25980] O61 - LFC:Last File Created 26/03/2012 - 09:39:07 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Slovenian.bin [24330] O61 - LFC:Last File Created 26/03/2012 - 09:39:08 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Croatian.bin [24855] O61 - LFC:Last File Created 26/03/2012 - 09:39:08 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\Slovak.bin [26159] O61 - LFC:Last File Created 26/03/2012 - 09:47:11 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\bookmarkbackups\bookmarks-2012-03-26.json [13671] O61 - LFC:Last File Created 26/03/2012 - 09:47:37 ---A- C:\Documents And Settings\Bruno\Application Data\Microsoft\HTML Help\hh.dat [8832] O61 - LFC:Last File Created 26/03/2012 - 10:13:24 ---A- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\BDRemovalTool_sirefef_x86.exe [7396728] O61 - LFC:Last File Created 26/03/2012 - 10:15:06 ---A- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\RogueKiller.exe [1261056] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\BDRemovalTool.exe [873984] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\avxdisk.dll [56224] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\bdardrv.dll [102912] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\bdcore.dll [113904] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\gvmlib.dll [562176] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\gvmscripts.cvd [48638] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\htmlayout.dll [945152] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\aspy_emu.cvd [263336] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\boot.xmd [2995] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\ceva_dll.cvd [125185] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\ceva_emu.cvd [151064] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\ceva_vfs.cvd [683044] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\ceva_vfs.ivd [37281] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\cevakrnl.ivd [396] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\cevakrnl.rv0 [17581] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\cevakrnl.xmd [319018] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\emalware.c00 [155] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\gvmscripts.cvd [48638] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\orice.rvd [122295] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\update.txt [111] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\xlmrd.cvd [6268] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\plugins\xlmrd.ivd [21106] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\scan.dll [327680] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\trufos.dll [353792] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\trufosalt.inf [3209] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\BDRemovalTool\trufosalt.sys [335504] O61 - LFC:Last File Created 26/03/2012 - 10:15:25 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\trufos.dll [353792] O61 - LFC:Last File Created 26/03/2012 - 10:24:10 ---A- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\mbam--setup-1.60.1.1000.exe [9502424] O61 - LFC:Last File Created 26/03/2012 - 10:47:37 ---A- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\tdsskiller.zip [2047211] O61 - LFC:Last File Created 26/03/2012 - 11:18:03 ---A- C:\Documents And Settings\All Users\Bureau\Malwarebytes Anti-Malware.lnk [784] O61 - LFC:Last File Created 26/03/2012 - 11:18:03 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Désinstaller Malwarebytes Anti-Malware.lnk [820] O61 - LFC:Last File Created 26/03/2012 - 11:18:03 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware Help.lnk [796] O61 - LFC:Last File Created 26/03/2012 - 11:18:03 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Malwarebytes Anti-Malware.lnk [796] O61 - LFC:Last File Created 26/03/2012 - 11:18:03 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk [947] O61 - LFC:Last File Created 26/03/2012 - 11:18:43 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\manifest.conf [552] O61 - LFC:Last File Created 26/03/2012 - 11:18:43 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\news.conf [282] O61 - LFC:Last File Created 26/03/2012 - 11:18:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\database.conf [470] O61 - LFC:Last File Created 26/03/2012 - 11:18:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [6733698] O61 - LFC:Last File Created 26/03/2012 - 11:20:31 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\local.conf [621] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3651464490.data [806] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3651464490.quar [5632] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3775972239.data [766] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\3775972239.quar [5632] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5355714039.data [779] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\5355714039.quar [404] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6565224405.data [825] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6565224405.quar [446] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6833460877.data [806] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\6833460877.quar [5632] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8592595447.data [790] O61 - LFC:Last File Created 26/03/2012 - 14:27:48 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine\8592595447.quar [294] O61 - LFC:Last File Created 26/03/2012 - 14:27:49 ---A- C:\Documents And Settings\Bruno\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2012-03-26 (12-20-30).txt [3844] O61 - LFC:Last File Created 26/03/2012 - 15:08:00 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Security Client\Support\Providers.etl [32768] O61 - LFC:Last File Created 26/03/2012 - 15:19:52 ---A- C:\Documents And Settings\Bruno\Local Settings\Temporary Internet Files\SuggestedSites.dat [5242991] O61 - LFC:Last File Created 26/03/2012 - 15:20:45 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Security Essentials.lnk [1680] O61 - LFC:Last File Created 26/03/2012 - 15:21:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Support\MpWppTracing-03262012-162056-00000003-ffffffff.bin [262144] O61 - LFC:Last File Created 26/03/2012 - 15:21:54 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpasbase.vdm [14033088] O61 - LFC:Last File Created 26/03/2012 - 15:21:54 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{9B2CBD54-AADF-4BC6-82EE-00475CA04DB7}\mpasbase.vdm [14033088] O61 - LFC:Last File Created 26/03/2012 - 15:21:57 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpavbase.vdm [45792960] O61 - LFC:Last File Created 26/03/2012 - 15:21:57 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{9B2CBD54-AADF-4BC6-82EE-00475CA04DB7}\mpavbase.vdm [45792960] O61 - LFC:Last File Created 26/03/2012 - 15:21:58 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpasdlta.vdm [378048] O61 - LFC:Last File Created 26/03/2012 - 15:21:58 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpavdlta.vdm [1322176] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{1C4E74AC-149D-39AE-B74A-B53F4CC32D79} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{4951AB05-CB9A-E18D-0C55-EB74CFE11108} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{5814391C-0379-0644-BCB5-61696E94879C} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{790D7354-EF74-7B90-6BD5-12E3B1F9A7EF} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{A59C741C-0B17-3F5B-C21F-EE1993E1E19E} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{E01AD230-00F2-4114-DB75-9C788D7FF24E} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\1F\1FCE6E1EFCB22463FE985ED44291650209CE4317 [111104] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\29\2904328B7E27F004042D4F83440C50659D64018B [512000] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\6A\6A2B6BE5F6389E4175A61062F89E1FEB3872B6AD [53376] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\A7\A719156E8AD67456556A02C34E762944234E7A44 [96512] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\D9\D9CABF76079EE857CD4D8BE589D2543802610C8F [50688] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\F0\F0D2A71E77908C5B9055FD848235A222532C5975 [13312] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\1F\1FCE6E1EFCB22463FE985ED44291650209CE4317 [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\29\2904328B7E27F004042D4F83440C50659D64018B [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\6A\6A2B6BE5F6389E4175A61062F89E1FEB3872B6AD [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\A7\A719156E8AD67456556A02C34E762944234E7A44 [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\D9\D9CABF76079EE857CD4D8BE589D2543802610C8F [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:28 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\F0\F0D2A71E77908C5B9055FD848235A222532C5975 [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:29 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{4BF2B463-7479-3DAE-72F0-FB54116DE50F} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:29 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\37\37514E0296AC819C1F5B304BD9087EF52C12A652 [26624] O61 - LFC:Last File Created 26/03/2012 - 15:52:29 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\37\37514E0296AC819C1F5B304BD9087EF52C12A652 [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{063FD797-5F24-091F-2B4E-0269D13D0B70} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Entries\{9CD7968E-5F23-B83B-A3A2-126CF8F3168A} [215] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\LastBld.dat [0] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\52\5234A044272E9D15BFF60FB40A8619CDA7717F0E [297984] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\ResourceData\6D\6DB829FD9D83A97EE8CF993338B63B2967455BA0 [6144] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\52\5234A044272E9D15BFF60FB40A8619CDA7717F0E [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\CleanStore\Resources\6D\6DB829FD9D83A97EE8CF993338B63B2967455BA0 [108] O61 - LFC:Last File Created 26/03/2012 - 15:52:30 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Quick\{BAFE2CE3-7CB1-4533-9E2A-AFF8E0CF3837} [7006] O61 - LFC:Last File Created 26/03/2012 - 20:16:55 ---A- C:\Documents And Settings\Bruno\Recent\RKreport[1].lnk [493] O61 - LFC:Last File Created 26/03/2012 - 20:30:59 ---A- C:\Documents And Settings\Bruno\Mes documents\Mes images\IMAGES DIVERSES\icones\2822641kyhdz.jpg [10122] O61 - LFC:Last File Created 26/03/2012 - 20:34:55 ---A- C:\Documents And Settings\Bruno\Application Data\Skype\temp-8O8UYcrhaYSh9XKDAlxmeJ7r [1544] O61 - LFC:Last File Created 26/03/2012 - 20:35:15 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Support\MpWppTracing-03262012-162111-00000003-ffffffff.bin [262144] O61 - LFC:Last File Created 27/03/2012 - 06:08:01 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Feeds Cache\PJRUAM7I\ieonlinews.microsoft[1] [0] O61 - LFC:Last File Created 27/03/2012 - 06:08:10 ---A- C:\Documents And Settings\Bruno\Cookies\7MF163SM.txt [210] O61 - LFC:Last File Created 27/03/2012 - 06:08:10 ---A- C:\Documents And Settings\Bruno\Cookies\CG34FQMR.txt [102] O61 - LFC:Last File Created 27/03/2012 - 06:08:11 ---A- C:\Documents And Settings\Bruno\Cookies\09LFZLB6.txt [73] O61 - LFC:Last File Created 27/03/2012 - 06:08:11 ---A- C:\Documents And Settings\Bruno\Cookies\WSN0573U.txt [100] O61 - LFC:Last File Created 27/03/2012 - 06:17:20 ---A- C:\Documents And Settings\Bruno\Recent\linda1a.lnk [939] O61 - LFC:Last File Created 27/03/2012 - 06:19:55 ---A- C:\Documents And Settings\Bruno\Recent\MY HEROES.lnk [665] O61 - LFC:Last File Created 27/03/2012 - 06:19:55 ---A- C:\Documents And Settings\Bruno\Recent\Quilapayun-El_Pueblo_Unido_Jamas_Sera_Vencido-Frontal.lnk [1171] O61 - LFC:Last File Created 27/03/2012 - 06:21:24 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\bookmarkbackups\bookmarks-2012-03-27.json [13671] O61 - LFC:Last File Created 27/03/2012 - 06:22:57 ---A- C:\Documents And Settings\Bruno\Mes documents\Mes images\92773g.jpg [16329] O61 - LFC:Last File Created 27/03/2012 - 06:23:56 ---A- C:\Documents And Settings\Bruno\Recent\92773g.lnk [466] O61 - LFC:Last File Created 27/03/2012 - 06:28:49 ---A- C:\Documents And Settings\Bruno\Mes documents\COURRIERS\john-steed-emma-peel-1.jpeg [9081] O61 - LFC:Last File Created 27/03/2012 - 06:28:49 ---A- C:\Documents And Settings\Bruno\Recent\john-steed-emma-peel-1.lnk [542] O61 - LFC:Last File Created 27/03/2012 - 06:31:45 ---A- C:\Documents And Settings\Bruno\Mes documents\Mes images\quotes_macnee14_thumb.jpg [3340] O61 - LFC:Last File Created 27/03/2012 - 06:32:53 ---A- C:\Documents And Settings\Bruno\Recent\quotes_macnee14_thumb.lnk [543] O61 - LFC:Last File Created 27/03/2012 - 08:12:38 ---A- C:\Documents And Settings\Bruno\Application Data\Adobe\Acrobat\10.0\ReaderMessages [27648] O61 - LFC:Last File Created 27/03/2012 - 08:13:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Adobe\Acrobat\10.0\AdobeCMapFnt10.lst [987] O61 - LFC:Last File Created 27/03/2012 - 08:13:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Adobe\Acrobat\10.0\Cache\AcroFnt10.lst [8231] O61 - LFC:Last File Created 27/03/2012 - 08:15:04 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Adobe\Acrobat\10.0\UserCache.bin [136881] O61 - LFC:Last File Created 27/03/2012 - 08:38:26 ---A- C:\Documents And Settings\Bruno\Application Data\Adobe\Acrobat\10.0\JSCache\GlobSettings [24] O61 - LFC:Last File Created 27/03/2012 - 08:38:26 ---A- C:\Documents And Settings\Bruno\Application Data\Adobe\Acrobat\10.0\TMDocs.sav [36] O61 - LFC:Last File Created 27/03/2012 - 08:38:26 ---A- C:\Documents And Settings\Bruno\Application Data\Adobe\Acrobat\10.0\TMGrpPrm.sav [54] O61 - LFC:Last File Created 27/03/2012 - 08:38:26 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Adobe\Acrobat\10.0\SharedDataEvents [3072] O61 - LFC:Last File Created 27/03/2012 - 08:44:22 ---A- C:\Documents And Settings\Bruno\Application Data\OpenOffice.org\3\user\store\.templdir.cache [11721] O61 - LFC:Last File Created 27/03/2012 - 09:52:32 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\extensions.sqlite [425984] O61 - LFC:Last File Created 27/03/2012 - 09:52:47 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\search.json [25045] O61 - LFC:Last File Created 27/03/2012 - 09:52:47 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Mozilla\Firefox\Mozilla Firefox\active-update.xml [57] O61 - LFC:Last File Created 27/03/2012 - 09:52:47 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Mozilla\Firefox\Mozilla Firefox\updates.xml [1475] O61 - LFC:Last File Created 27/03/2012 - 10:20:24 ---A- C:\Documents And Settings\Bruno\Mes documents\Tableau Tournoi 2012.ods [16269] O61 - LFC:Last File Created 27/03/2012 - 10:20:35 ---A- C:\Documents And Settings\Bruno\Recent\Tableau Tournoi 2012.lnk [609] O61 - LFC:Last File Created 27/03/2012 - 13:40:46 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\search.sqlite [2048] O61 - LFC:Last File Created 27/03/2012 - 16:22:49 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Feeds Cache\G624FEWB\fwlink[1] [0] O61 - LFC:Last File Created 27/03/2012 - 17:04:36 ---A- C:\Documents And Settings\Bruno\Application Data\HP\ScLogs\SolutionCenter.htm [66286] O61 - LFC:Last File Created 27/03/2012 - 17:07:37 ---A- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\v0b1u10t.exe [302592] O61 - LFC:Last File Created 27/03/2012 - 19:19:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-C8BD2C983BB8AF2BC55514D12F3D4BFD56C7644A.bin.VE0 [38064128] O61 - LFC:Last File Created 27/03/2012 - 19:19:54 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-C8BD2C983BB8AF2BC55514D12F3D4BFD56C7644A.bin.VE1 [2863104] O61 - LFC:Last File Created 27/03/2012 - 19:20:57 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Security Client\Support\EppSetup.etl [1163264] O61 - LFC:Last File Created 27/03/2012 - 19:20:58 ---A- C:\Documents And Settings\Bruno\Application Data\Microsoft\Microsoft Security Client\Telemetry\200\Security Client1.sqm [284] O61 - LFC:Last File Created 27/03/2012 - 19:24:47 ---A- C:\Documents And Settings\Bruno\Recent\ggggg.lnk [459] O61 - LFC:Last File Created 27/03/2012 - 19:27:06 ---A- C:\Documents And Settings\Bruno\Recent\RKreport[4].lnk [965] O61 - LFC:Last File Created 27/03/2012 - 19:27:18 ---A- C:\Documents And Settings\Bruno\Recent\Bis.lnk [919] O61 - LFC:Last File Created 27/03/2012 - 19:27:18 ---A- C:\Documents And Settings\Bruno\Recent\RK quarantine & report.lnk [711] O61 - LFC:Last File Created 27/03/2012 - 19:29:18 ---A- C:\Documents And Settings\Bruno\Recent\Attestation Honneur.lnk [604] O61 - LFC:Last File Created 27/03/2012 - 19:31:05 ---A- C:\Documents And Settings\Bruno\Recent\Previous iTunes Libraries.lnk [698] O61 - LFC:Last File Created 27/03/2012 - 19:31:05 ---A- C:\Documents And Settings\Bruno\Recent\iTunes Library 2012-03-10.lnk [1078] O61 - LFC:Last File Created 27/03/2012 - 19:52:57 ---A- C:\Documents And Settings\Bruno\Application Data\ArmA II Launcher\Config\ArmA II Launcher.cfg [709] O61 - LFC:Last File Created 27/03/2012 - 20:02:36 ---A- C:\Documents And Settings\Bruno\Recent\Microsoft CAPICOM 2.1.0.2.lnk [602] O61 - LFC:Last File Created 27/03/2012 - 20:02:36 ---A- C:\Documents And Settings\Bruno\Recent\readme.lnk [791] O61 - LFC:Last File Created 27/03/2012 - 20:03:53 ---A- C:\Documents And Settings\Bruno\Recent\GameSpy.com.lnk [744] O61 - LFC:Last File Created 27/03/2012 - 20:03:53 ---A- C:\Documents And Settings\Bruno\Recent\service_tab.lnk [980] O61 - LFC:Last File Created 27/03/2012 - 20:08:01 ---A- C:\Documents And Settings\Bruno\Recent\ComboFix.lnk [415] O61 - LFC:Last File Created 27/03/2012 - 20:08:01 ---A- C:\Documents And Settings\Bruno\Recent\Disque local ©.lnk [293] O61 - LFC:Last File Created 27/03/2012 - 20:14:46 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\blocklist.xml [11338] O61 - LFC:Last File Created 27/03/2012 - 20:20:06 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\addons.sqlite [425984] O61 - LFC:Last File Created 27/03/2012 - 20:25:45 ---A- C:\Documents And Settings\Bruno\Recent\2822641kyhdz.lnk [943] O61 - LFC:Last File Created 27/03/2012 - 20:25:45 ---A- C:\Documents And Settings\Bruno\Recent\icones.lnk [648] O61 - LFC:Last File Created 27/03/2012 - 21:18:23 ---A- C:\Documents And Settings\Bruno\Recent\Dragons.lnk [471] O61 - LFC:Last File Created 27/03/2012 - 21:19:39 ---A- C:\Documents And Settings\Bruno\Recent\The.Thing.2011.TRUEFRENCH.SUBFORCED.BRRiP.XviD-AUTOPSiE.lnk [713] O61 - LFC:Last File Created 27/03/2012 - 22:46:10 ---A- C:\Documents And Settings\Bruno\Application Data\vlc\ml.xspf [304] O61 - LFC:Last File Created 28/03/2012 - 07:21:05 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Support\MpWppTracing-03282012-082104-00000003-ffffffff.bin [65536] O61 - LFC:Last File Created 28/03/2012 - 07:23:05 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\AUTHAPP_HEADER.JPG [2515] O61 - LFC:Last File Created 28/03/2012 - 07:23:05 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\BUTTON.JS [8782] O61 - LFC:Last File Created 28/03/2012 - 07:23:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\CHECKBOX.JS [7271] O61 - LFC:Last File Created 28/03/2012 - 07:23:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\COMBOBOX.JS [23327] O61 - LFC:Last File Created 28/03/2012 - 07:23:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\DIVWRAPPER.JS [20719] O61 - LFC:Last File Created 28/03/2012 - 07:23:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\DOWNARROW00.GIF [52] O61 - LFC:Last File Created 28/03/2012 - 07:23:07 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\EXTERNALWRAPPER.JS [51852] O61 - LFC:Last File Created 28/03/2012 - 07:23:07 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1025.CSS [8610] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1028.CSS [8537] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1037.CSS [8526] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1038.CSS [8605] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1041.CSS [8551] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1042.CSS [8609] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1081.CSS [8567] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1095.CSS [8567] O61 - LFC:Last File Created 28/03/2012 - 07:23:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1097.CSS [8564] O61 - LFC:Last File Created 28/03/2012 - 07:23:09 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1098.CSS [8570] O61 - LFC:Last File Created 28/03/2012 - 07:23:09 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1099.CSS [8564] O61 - LFC:Last File Created 28/03/2012 - 07:23:09 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1100.CSS [8604] O61 - LFC:Last File Created 28/03/2012 - 07:23:10 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1102.CSS [8567] O61 - LFC:Last File Created 28/03/2012 - 07:23:10 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_2052.CSS [8573] O61 - LFC:Last File Created 28/03/2012 - 07:23:10 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_3098.CSS [8669] O61 - LFC:Last File Created 28/03/2012 - 07:23:10 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_DEFAULT.CSS [8603] O61 - LFC:Last File Created 28/03/2012 - 07:23:10 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIPUSER.HTM [22277] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIP_ABC.GIF [478] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIP_AUDIOREPL.GIF [1770] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIP_SPEAKER.GIF [1191] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\IC_ALERT_LOW_16X.GIF [1043] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\IMAGE.JS [8288] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\LINK.JS [6208] O61 - LFC:Last File Created 28/03/2012 - 07:23:11 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\LOCALIZATION.JS [18541] O61 - LFC:Last File Created 28/03/2012 - 07:23:12 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\MULTIUSERSSO.HTM [6644] O61 - LFC:Last File Created 28/03/2012 - 07:23:12 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\NEWUSER.HTM [40944] O61 - LFC:Last File Created 28/03/2012 - 07:23:13 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\NEWUSERCOMM.JS [6910] O61 - LFC:Last File Created 28/03/2012 - 07:23:13 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\NEWUSERFED.HTM [35945] O61 - LFC:Last File Created 28/03/2012 - 07:23:14 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\QUERYSTRING.JS [1651] O61 - LFC:Last File Created 28/03/2012 - 07:23:14 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\SAVEDUSER.JS [8613] O61 - LFC:Last File Created 28/03/2012 - 07:23:15 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\SAVEDUSERS.HTM [23251] O61 - LFC:Last File Created 28/03/2012 - 07:23:15 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\TEXT.JS [5927] O61 - LFC:Last File Created 28/03/2012 - 07:23:15 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\TEXTBOX.JS [9310] O61 - LFC:Last File Created 28/03/2012 - 07:23:16 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\TILEBOX.JS [8646] O61 - LFC:Last File Created 28/03/2012 - 07:23:16 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\UICORE.JS [6429] O61 - LFC:Last File Created 28/03/2012 - 07:23:16 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\UIRESOURCE.JS [4599] O61 - LFC:Last File Created 28/03/2012 - 07:23:16 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\USERTILE.JS [63115] O61 - LFC:Last File Created 28/03/2012 - 07:23:17 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WAIT.GIF [644] O61 - LFC:Last File Created 28/03/2012 - 07:23:17 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WAITPAGE.HTM [8704] O61 - LFC:Last File Created 28/03/2012 - 07:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_BOOK.GIF [1121] O61 - LFC:Last File Created 28/03/2012 - 07:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_FRAME.GIF [2296] O61 - LFC:Last File Created 28/03/2012 - 07:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_ICON_ERROR.GIF [1022] O61 - LFC:Last File Created 28/03/2012 - 07:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_LOGO_H.GIF [2345] O61 - LFC:Last File Created 28/03/2012 - 07:23:18 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_USERTILE.GIF [2341] O61 - LFC:Last File Created 28/03/2012 - 07:24:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Security Client\Support\Application.etl [8192] O61 - LFC:Last File Created 28/03/2012 - 07:27:18 ---A- C:\Documents And Settings\All Users\Application Data\HP\ProductAssistant\data\EventStore.xml [314532] O61 - LFC:Last File Created 28/03/2012 - 07:27:19 ---A- C:\Documents And Settings\Bruno\Local Settings\temp\RedboxLog.txt [45596] O61 - LFC:Last File Created 28/03/2012 - 07:27:20 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Identities\{95C137BC-5A56-4267-9FEE-20DBAD834CBA}\Microsoft\Outlook Express\Boîte de réception.dbx [142036] O61 - LFC:Last File Created 28/03/2012 - 07:27:55 ---A- C:\Documents And Settings\Bruno\Cookies\U9GLRAKQ.txt [93] O61 - LFC:Last File Created 28/03/2012 - 07:28:42 ---A- C:\Documents And Settings\Bruno\Application Data\OpenOffice.org\3\.lock [151] O61 - LFC:Last File Created 28/03/2012 - 07:28:42 ---A- C:\Documents And Settings\Bruno\Cookies\37O0U4LJ.txt [90] O61 - LFC:Last File Created 28/03/2012 - 07:28:48 ---A- C:\Documents And Settings\Bruno\Application Data\OpenOffice.org\3\user\registrymodifications.xcu [207847] O61 - LFC:Last File Created 28/03/2012 - 07:32:33 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat [5497] O61 - LFC:Last File Created 28/03/2012 - 07:32:33 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat [6762] O61 - LFC:Last File Created 28/03/2012 - 07:32:36 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{9B2CBD54-AADF-4BC6-82EE-00475CA04DB7}\mpasdlta.vdm [398840] O61 - LFC:Last File Created 28/03/2012 - 07:32:42 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{9B2CBD54-AADF-4BC6-82EE-00475CA04DB7}\mpavdlta.vdm [1459192] O61 - LFC:Last File Created 28/03/2012 - 07:33:50 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.67 [69468160] O61 - LFC:Last File Created 28/03/2012 - 07:33:57 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.VE0 [38043648] O61 - LFC:Last File Created 28/03/2012 - 07:33:59 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.VE1 [2863104] O61 - LFC:Last File Created 28/03/2012 - 07:34:01 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.7E [1609728] O61 - LFC:Last File Created 28/03/2012 - 07:34:07 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.80 [8982528] O61 - LFC:Last File Created 28/03/2012 - 07:34:08 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.87 [1171456] O61 - LFC:Last File Created 28/03/2012 - 07:34:09 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin.A0 [2781184] O61 - LFC:Last File Created 28/03/2012 - 07:34:10 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\mpcache-FD24E993EC752AD65A5D0677B84DF85766C9229B.bin [8117845] O61 - LFC:Last File Created 28/03/2012 - 07:42:20 ---A- C:\Documents And Settings\Bruno\Recent\eula.lnk [683] O61 - LFC:Last File Created 28/03/2012 - 07:56:47 ---A- C:\Documents And Settings\Bruno\Mes documents\Arma2 patch\ARMA2OACORFT_Update_160.zip [22] O61 - LFC:Last File Created 28/03/2012 - 07:56:55 ---A- C:\Documents And Settings\Bruno\Mes documents\Arma2 patch\ARMA2OA_Patch_1_59.zip [22] O61 - LFC:Last File Created 28/03/2012 - 07:59:48 ---A- C:\Documents And Settings\Bruno\Mes documents\Arma2 patch\ARMA2Patch_1_00_to_1_09.zip [22] O61 - LFC:Last File Created 28/03/2012 - 08:00:02 ---A- C:\Documents And Settings\Bruno\Mes documents\Arma2 patch\ARMA2_Update_111.zip [22] O61 - LFC:Last File Created 28/03/2012 - 08:29:30 ---A- C:\Documents And Settings\Bruno\Mes documents\Ma musique\iTunes\iTunes Library Extras.itdb [282624] O61 - LFC:Last File Created 28/03/2012 - 08:29:46 ---A- C:\Documents And Settings\Bruno\Application Data\Apple Computer\iTunes\com.apple.iTunes.Gracenote.plist [1104] O61 - LFC:Last File Created 28/03/2012 - 08:29:48 ---A- C:\Documents And Settings\All Users\Application Data\Apple Computer\iTunes\SC Info\SC Info.txt [24] O61 - LFC:Last File Created 28/03/2012 - 08:29:56 ---A- C:\Documents And Settings\Bruno\Mes documents\Ma musique\iTunes\iTunes Library.itl [724328] O61 - LFC:Last File Created 28/03/2012 - 08:29:59 ---A- C:\Documents And Settings\Bruno\Mes documents\Ma musique\iTunes\iTunes Music Library.xml [4923510] O61 - LFC:Last File Created 28/03/2012 - 08:30:11 ---A- C:\Documents And Settings\Bruno\Application Data\Apple Computer\Preferences\com.apple.iTunes.plist [562] O61 - LFC:Last File Created 28/03/2012 - 08:30:43 ---A- C:\Documents And Settings\Bruno\Application Data\Apple Computer\iTunes\CD Info.cidb [225632] O61 - LFC:Last File Created 28/03/2012 - 08:30:43 ---A- C:\Documents And Settings\Bruno\Mes documents\Ma musique\iTunes\sentinel [8] O61 - LFC:Last File Created 28/03/2012 - 08:30:44 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Apple Computer\iTunes\iTunesPrefs.xml [1014405] O61 - LFC:Last File Created 28/03/2012 - 08:30:45 ---A- C:\Documents And Settings\Bruno\Application Data\Apple Computer\iTunes\Cookies\Cookies.binarycookies [795] O61 - LFC:Last File Created 28/03/2012 - 08:30:45 ---A- C:\Documents And Settings\Bruno\Application Data\Apple Computer\iTunes\iTunesPrefs.xml [195205] O61 - LFC:Last File Created 28/03/2012 - 08:30:45 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Apple Computer\iTunes\Cache.db [49964032] O61 - LFC:Last File Created 28/03/2012 - 08:40:59 ---A- C:\Documents And Settings\Bruno\Recent\Lecteur CD.lnk [184] O61 - LFC:Last File Created 28/03/2012 - 08:40:59 ---A- C:\Documents And Settings\Bruno\Recent\setup.lnk [281] O61 - LFC:Last File Created 28/03/2012 - 08:41:08 ---A- C:\Documents And Settings\Bruno\default.pls [62] O61 - LFC:Last File Created 28/03/2012 - 09:53:08 ---A- C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Bohemia Interactive\ArmA 2\Afficher le fichier Lisez-moi.lnk [918] O61 - LFC:Last File Created 28/03/2012 - 09:53:08 ---A- C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Bohemia Interactive\ArmA 2\ArmA 2.lnk [865] O61 - LFC:Last File Created 28/03/2012 - 09:53:08 ---A- C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Bohemia Interactive\ArmA 2\Désinstaller ARMA II.lnk [917] O61 - LFC:Last File Created 28/03/2012 - 09:53:08 ---A- C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Bohemia Interactive\ArmA 2\Développé par Bohemia Interactive.lnk [907] O61 - LFC:Last File Created 28/03/2012 - 09:53:33 ---A- C:\Documents And Settings\Bruno\Bureau\Lancer ARMA II.lnk [863] O61 - LFC:Last File Created 28/03/2012 - 10:44:00 ---A- C:\Documents And Settings\Bruno\Mes documents\Téléchargements\ARMA2_Update_111.zip [222166155] O61 - LFC:Last File Created 28/03/2012 - 10:44:00 ---A- C:\Documents And Settings\Bruno\Recent\ARMA2_Update_111.lnk [623] O61 - LFC:Last File Created 28/03/2012 - 10:56:18 ---A- C:\Documents And Settings\Bruno\Mes documents\Téléchargements\ARMA2Patch_1_00_to_1_09.zip [290136378] O61 - LFC:Last File Created 28/03/2012 - 10:56:18 ---A- C:\Documents And Settings\Bruno\Recent\ARMA2Patch_1_00_to_1_09.lnk [658] O61 - LFC:Last File Created 28/03/2012 - 11:17:11 ---A- C:\Documents And Settings\Bruno\Recent\ARMA2Patch_109_readme.lnk [543] O61 - LFC:Last File Created 28/03/2012 - 11:26:19 ---A- C:\Documents And Settings\Bruno\Mes documents\Téléchargements\ARMA2OA_Patch_1_59.zip [554482895] O61 - LFC:Last File Created 28/03/2012 - 11:26:20 ---A- C:\Documents And Settings\Bruno\Recent\ARMA2OA_Patch_1_59.lnk [633] O61 - LFC:Last File Created 28/03/2012 - 11:33:55 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\cache\feeds\cbc8c166b3afe4a32114ae7882d0efb0 [39554] O61 - LFC:Last File Created 28/03/2012 - 11:36:04 ---A- C:\Documents And Settings\Bruno\Mes documents\Téléchargements\ARMA2OACORFT_Update_160.zip [667227512] O61 - LFC:Last File Created 28/03/2012 - 11:36:06 ---A- C:\Documents And Settings\Bruno\Recent\ARMA2OACORFT_Update_160.lnk [658] O61 - LFC:Last File Created 28/03/2012 - 11:36:06 ---A- C:\Documents And Settings\Bruno\Recent\Téléchargements.lnk [468] O61 - LFC:Last File Created 28/03/2012 - 11:37:04 ---A- C:\Documents And Settings\Bruno\Recent\coloriage-dauphin-sirene.lnk [558] O61 - LFC:Last File Created 28/03/2012 - 11:39:13 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Picasa 3\Configurer la Visionneuse de photos Picasa.lnk [843] O61 - LFC:Last File Created 28/03/2012 - 11:39:13 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Picasa 3\Désinstaller.lnk [783] O61 - LFC:Last File Created 28/03/2012 - 11:39:13 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Picasa 3\Picasa 3.lnk [771] O61 - LFC:Last File Created 28/03/2012 - 11:39:13 ---A- C:\Documents And Settings\LocalService\Cookies\index.dat [16384] O61 - LFC:Last File Created 28/03/2012 - 11:39:13 ---A- C:\Documents And Settings\LocalService\Local Settings\Historique\History.IE5\index.dat [16384] O61 - LFC:Last File Created 28/03/2012 - 11:39:14 ---A- C:\Documents And Settings\Default User\NtUser.dat.LOG [1024] O61 - LFC:Last File Created 28/03/2012 - 11:39:14 ---A- C:\Documents And Settings\UpdatusUser\NtUser.dat.LOG [1024] O61 - LFC:Last File Created 28/03/2012 - 11:39:26 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\ioqueue\slingshot.ioq [0] O61 - LFC:Last File Created 28/03/2012 - 11:46:09 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\scanlist.txt [35130] O61 - LFC:Last File Created 28/03/2012 - 11:46:09 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\wordhash.dat [613300] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_category.pmp [244] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_date.pmp [468] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_description.pmp [118] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_filename.pmp [3177] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_hascollage.pmp [76] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_inisync.pmp [420] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_location.pmp [76] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_music.pmp [74] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_name.pmp [735] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_token.pmp [2060] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_uid.pmp [1772] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albumdata_unread.pmp [63] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albums_0.db [1494284] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\albums_index.db [620] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\catdata_catpri.pmp [29] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_avgcolor.pmp [42844] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_colorspace.pmp [20] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_edit_height.pmp [42844] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_edit_width.pmp [42844] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_filetype.pmp [42844] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_height.pmp [42844] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_originfast.pmp [85668] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\imagedata_width.pmp [42844] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\thumbindex.db [421045] O61 - LFC:Last File Created 28/03/2012 - 11:46:10 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\thumbs_0.db [60844055] O61 - LFC:Last File Created 28/03/2012 - 11:46:11 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\bigthumbs_0.db [77185] O61 - LFC:Last File Created 28/03/2012 - 11:46:11 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\bigthumbs_index.db [147932] O61 - LFC:Last File Created 28/03/2012 - 11:46:11 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\facetemplatesV2_index.db [128384] O61 - LFC:Last File Created 28/03/2012 - 11:46:11 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\previews_0.db [345809] O61 - LFC:Last File Created 28/03/2012 - 11:46:11 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\previews_index.db [147608] O61 - LFC:Last File Created 28/03/2012 - 11:46:11 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\thumbs_index.db [128492] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2Albums\frexcludefolders.txt [66] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2Albums\watchedfolders.txt [148] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\cache\cacheindex_lastfetch.pmp [196] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\contacts\contacts.xml [280] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\facetags.txt [0] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\profilephotos_0.db [4] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\repository.dat [241] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\saverlist.txt [195] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\starlist.txt [96] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\tags.txt [0] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\thumbs2_0.db [21953937] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\thumbs2_index.db [128492] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\db3\usernames.dat [117] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\ioqueue\albumsafe.ioq [0] O61 - LFC:Last File Created 28/03/2012 - 11:46:12 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\Picasa2\ioqueue\filesafe.ioq [0] O61 - LFC:Last File Created 28/03/2012 - 11:56:35 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\content-prefs.sqlite [7168] O61 - LFC:Last File Created 28/03/2012 - 12:52:47 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\pluginreg.dat [11247] O61 - LFC:Last File Created 28/03/2012 - 13:08:59 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\5738a800-c421-4422-9b6a-584baab789ae.dmp [43215] O61 - LFC:Last File Created 28/03/2012 - 13:09:02 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\59c8a76c-b234-4272-89a7-0ca51afc0e95.dmp [75260] O61 - LFC:Last File Created 28/03/2012 - 13:09:03 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\5738a800-c421-4422-9b6a-584baab789ae.extra [2855] O61 - LFC:Last File Created 28/03/2012 - 13:09:03 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\59c8a76c-b234-4272-89a7-0ca51afc0e95.extra [2968] O61 - LFC:Last File Created 28/03/2012 - 13:27:25 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\permissions.sqlite [2048] O61 - LFC:Last File Created 28/03/2012 - 13:41:55 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\startupCache\startupCache.4.little [755790] O61 - LFC:Last File Created 28/03/2012 - 14:32:38 ---A- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\ZHPDiag2.exe [3898556] O61 - LFC:Last File Created 28/03/2012 - 14:33:26 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Scans\History\Results\Resource\{97BD3D65-F83B-4A98-8EFE-523857FB7053} [8850] O61 - LFC:Last File Created 28/03/2012 - 14:59:02 ---A- C:\Documents And Settings\Bruno\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [484] O61 - LFC:Last File Created 28/03/2012 - 15:00:16 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\1b690d63-938b-45a3-952f-9bee765e33cf.dmp [43102] O61 - LFC:Last File Created 28/03/2012 - 15:00:24 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\f80a029f-8fb3-4e85-a616-24fea2bb929a.dmp [79324] O61 - LFC:Last File Created 28/03/2012 - 15:00:26 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\1b690d63-938b-45a3-952f-9bee765e33cf.extra [2855] O61 - LFC:Last File Created 28/03/2012 - 15:00:26 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Crash Reports\pending\f80a029f-8fb3-4e85-a616-24fea2bb929a.extra [2879] O61 - LFC:Last File Created 28/03/2012 - 15:00:43 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Apple Computer\QuickTime\QuickTime.qtp [9504] O61 - LFC:Last File Created 28/03/2012 - 15:01:14 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Apple Computer\QuickTime\downloads\TOC.plist [181] O61 - LFC:Last File Created 28/03/2012 - 15:02:04 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\downloads.sqlite [65536] O61 - LFC:Last File Created 28/03/2012 - 15:02:06 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\cert8.db [163840] O61 - LFC:Last File Created 28/03/2012 - 15:02:06 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\key3.db [16384] O61 - LFC:Last File Created 28/03/2012 - 15:02:06 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\localstore.rdf [12280] O61 - LFC:Last File Created 28/03/2012 - 16:06:19 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Google\GBScreensaver\Prefs\rssUserWebAlbums.xml [50] O61 - LFC:Last File Created 28/03/2012 - 17:07:20 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Galerie de composants Web Slice~.feed-ms [32768] O61 - LFC:Last File Created 28/03/2012 - 18:00:38 ---A- C:\Documents And Settings\Bruno\Application Data\Skype\bruno.allicar\config.xml [9826] O61 - LFC:Last File Created 28/03/2012 - 18:08:01 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\prefs.js [56938] O61 - LFC:Last File Created 28/03/2012 - 18:08:02 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\places.sqlite-shm [32768] O61 - LFC:Last File Created 28/03/2012 - 18:08:09 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\cookies.sqlite-shm [32768] O61 - LFC:Last File Created 28/03/2012 - 18:08:19 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\chromeappsstore.sqlite [131072] O61 - LFC:Last File Created 28/03/2012 - 18:09:08 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\cookies.sqlite-wal [24136] O61 - LFC:Last File Created 28/03/2012 - 18:09:19 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\signons.sqlite [28672] O61 - LFC:Last File Created 28/03/2012 - 18:09:43 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\webappsstore.sqlite [253952] O61 - LFC:Last File Created 28/03/2012 - 18:10:35 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\sessionstore.js [7100] O61 - LFC:Last File Created 28/03/2012 - 18:12:58 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\urlclassifierkey3.txt [154] O61 - LFC:Last File Created 28/03/2012 - 18:17:12 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\places.sqlite [10485760] O61 - LFC:Last File Created 28/03/2012 - 18:17:20 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\cookies.sqlite [1572864] O61 - LFC:Last File Created 28/03/2012 - 18:18:36 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\urlclassifier.pset [1247348] O61 - LFC:Last File Created 28/03/2012 - 18:18:36 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\urlclassifier3.sqlite [51695616] O61 - LFC:Last File Created 28/03/2012 - 18:19:12 ---A- C:\Documents And Settings\Bruno\Menu Démarrer\Programmes\Bohemia Interactive\ArmA 2\BattlEye\Uninstall BattlEye.lnk [1038] O61 - LFC:Last File Created 28/03/2012 - 18:23:10 ---A- C:\Documents And Settings\All Users\Bureau\ZHPDiag.lnk [666] O61 - LFC:Last File Created 28/03/2012 - 18:23:10 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ZHP\ZHPDiag.lnk [678] O61 - LFC:Last File Created 28/03/2012 - 18:23:11 ---A- C:\Documents And Settings\All Users\Bureau\MBRCheck.lnk [673] O61 - LFC:Last File Created 28/03/2012 - 18:23:11 ---A- C:\Documents And Settings\All Users\Bureau\ZHPFix.lnk [661] O61 - LFC:Last File Created 28/03/2012 - 18:25:39 ---A- C:\Documents And Settings\Bruno\Application Data\Skype\shared.xml [58646] O61 - LFC:Last File Created 28/03/2012 - 18:32:10 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\places.sqlite-wal [519152] O61 - LFC:Last File Created 28/03/2012 - 18:32:58 ---A- C:\Documents And Settings\Bruno\Application Data\ArcSoft\Global Deploy\ArcUpdateService.inf [524] O61 - LFC:Last File Created 28/03/2012 - 18:37:40 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Ahead\Nero Home\crawlercfg.dat [2919] O61 - LFC:Last File Created 28/03/2012 - 18:38:15 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Feeds\FeedsStore.feedsdb-ms [6144] O61 - LFC:Last File Created 28/03/2012 - 18:38:15 ---A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\Sites suggérés d’Internet Explorer~.feed-ms [32768] O61 - LFC:Last File Created 28/03/2012 - 23:45:33 ---A- C:\Documents And Settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\bookmarkbackups\bookmarks-2012-03-28.json [13671] O61 - LFC:Last File Created 28/03/2012 - 23:48:05 ---A- C:\Documents And Settings\Bruno\Application Data\Skype\bruno.allicar\httpfe\cookies.dat [125] O61 - LFC:Last File Created 28/03/2012 - 23:48:18 ---A- C:\Documents And Settings\Bruno\Application Data\Skype\temp-OkOzkHYkKwi00dNcseUyBkIf [1544] O61 - LFC:Last File Created 28/03/2012 - 23:48:55 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Support\MpWppTracing-03272012-070231-00000003-ffffffff.bin [262144] O61 - LFC:Last File Created 30/12/1899 - 06:03:24 -SHA- C:\Documents And Settings\Bruno\Local Settings\Historique\History.IE5\MSHist012012032720120328\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 07:21:54 --HA- C:\Documents And Settings\All Users\Application Data\ArcSoft\Connection Service\_actdata.arg [0] O61 - LFC:Last File Created 30/12/1899 - 07:28:39 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\4DB1DABDF57ED9997FE8DCC77E93C04F [2383] O61 - LFC:Last File Created 30/12/1899 - 07:28:39 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\F063BF7EF604434CBE00FF198F0D9B10 [749] O61 - LFC:Last File Created 30/12/1899 - 07:28:39 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\4DB1DABDF57ED9997FE8DCC77E93C04F [98] O61 - LFC:Last File Created 30/12/1899 - 07:28:39 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\F063BF7EF604434CBE00FF198F0D9B10 [206] O61 - LFC:Last File Created 30/12/1899 - 07:28:41 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\E6E835FBF68756BDC127B689887C65CF [62679] O61 - LFC:Last File Created 30/12/1899 - 07:28:41 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\E6E835FBF68756BDC127B689887C65CF [146] O61 - LFC:Last File Created 30/12/1899 - 08:37:21 -SHA- C:\Documents And Settings\Bruno\Local Settings\temp\Cookies\index.dat [16384] O61 - LFC:Last File Created 30/12/1899 - 08:37:21 -SHA- C:\Documents And Settings\Bruno\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 08:37:21 -SHA- C:\Documents And Settings\Bruno\Local Settings\temp\History\History.IE5\index.dat [16384] O61 - LFC:Last File Created 30/12/1899 - 09:11:34 -SHA- C:\Documents And Settings\Bruno\Local Settings\Historique\History.IE5\MSHist012012032820120329\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 11:19:37 -SHA- C:\Documents And Settings\Bruno\Mes documents\Mes images\Thumbs.db [5205528] O61 - LFC:Last File Created 30/12/1899 - 11:36:35 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\62B5AF9BE9ADC1085C3C56EC07A82BF6 [40780] O61 - LFC:Last File Created 30/12/1899 - 11:36:35 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\62B5AF9BE9ADC1085C3C56EC07A82BF6 [124] O61 - LFC:Last File Created 30/12/1899 - 14:05:24 -S-A- C:\Documents And Settings\Bruno\IETldCache\index.dat [262144] O61 - LFC:Last File Created 30/12/1899 - 14:20:52 -S-A- C:\Documents And Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a72b2b1aebf4f5e9f8af114f1c0aa500_6c15e581-2b80-428b-b5e6-b4e335e0285e [893] O61 - LFC:Last File Created 30/12/1899 - 14:34:44 -SHA- C:\Documents And Settings\Bruno\Mes documents\Téléchargements\Thumbs.db [537556] O61 - LFC:Last File Created 30/12/1899 - 14:34:48 -SHA- C:\Documents And Settings\Bruno\Mes documents\Urgence virale\Thumbs.db [5632] O61 - LFC:Last File Created 30/12/1899 - 15:09:47 -SHA- C:\Documents And Settings\Bruno\Local Settings\Historique\History.IE5\MSHist012012032620120327\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 15:17:20 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\A1377F7115F1F126A15360369B165211 [597] O61 - LFC:Last File Created 30/12/1899 - 15:17:20 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\A1377F7115F1F126A15360369B165211 [142] O61 - LFC:Last File Created 30/12/1899 - 15:19:51 -S-A- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 15:19:51 -S-A- C:\Documents And Settings\Bruno\UserData\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 15:20:41 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD [558] O61 - LFC:Last File Created 30/12/1899 - 15:20:41 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD [146] O61 - LFC:Last File Created 30/12/1899 - 15:31:30 --HA- C:\Documents And Settings\UpdatusUser\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [1024] O61 - LFC:Last File Created 30/12/1899 - 15:59:46 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004 [18] O61 - LFC:Last File Created 30/12/1899 - 15:59:46 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004 [216] O61 - LFC:Last File Created 30/12/1899 - 16:16:06 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\5F74056C561F814B7771CB2993A44DEB [11724] O61 - LFC:Last File Created 30/12/1899 - 16:16:06 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\5F74056C561F814B7771CB2993A44DEB [104] O61 - LFC:Last File Created 30/12/1899 - 18:36:03 -S-A- C:\Documents And Settings\Bruno\Cookies\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 18:38:14 -S-A- C:\Documents And Settings\Bruno\Local Settings\Historique\History.IE5\index.dat [163840] O61 - LFC:Last File Created 30/12/1899 - 18:38:14 -SHA- C:\Documents And Settings\Bruno\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 19:17:54 -SHA- C:\Documents And Settings\Bruno\Mes documents\Thumbs.db [364032] O61 - LFC:Last File Created 30/12/1899 - 19:23:45 -S-A- C:\Documents And Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat [507904] O61 - LFC:Last File Created 30/12/1899 - 19:23:45 -SHA- C:\Documents And Settings\NetworkService\Cookies\index.dat [16384] O61 - LFC:Last File Created 30/12/1899 - 19:29:59 -SHA- C:\Documents And Settings\Bruno\Mes documents\Ma musique\Lphant\Thumbs.db [7680] O61 - LFC:Last File Created 30/12/1899 - 19:58:27 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D [944] O61 - LFC:Last File Created 30/12/1899 - 19:58:27 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D [112] O61 - LFC:Last File Created 30/12/1899 - 20:30:47 -SHA- C:\Documents And Settings\Bruno\Mes documents\Mes images\.picasaoriginals\Thumbs.db [5632] O61 - LFC:Last File Created 30/12/1899 - 20:31:36 -SHA- C:\Documents And Settings\Bruno\Mes documents\Mes images\IMAGES DIVERSES\icones\Thumbs.db [144896] O61 - LFC:Last File Created 30/12/1899 - 20:31:52 -S-A- C:\Documents And Settings\NetworkService\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [32768] O61 - LFC:Last File Created 30/12/1899 - 20:39:20 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\Content\D41693DAFE5DEF0C36959FF1FCEF5C96 [543] O61 - LFC:Last File Created 30/12/1899 - 20:39:20 -S-A- C:\Documents And Settings\Bruno\Application Data\Microsoft\CryptnetUrlCache\MetaData\D41693DAFE5DEF0C36959FF1FCEF5C96 [166] O61 - LFC:Last File Created 30/12/1899 - 20:50:16 -S-A- C:\Documents And Settings\NetworkService\IETldCache\index.dat [262144] ~ Scan Files in 21mn 52s ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ~ Scan ADS in 00mn 00s ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 18/03/2010 - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe (ACDaemon) .(.ArcSoft Inc. - ArcSoft Connect Service.) - LEGACY_ACDAEMON O64 - Services: CurCS - 27/02/2012 - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Mobile Device) .(.Apple Inc. - MobileDeviceService.) - LEGACY_APPLE_MOBILE_DEVICE O64 - Services: CurCS - 30/08/2011 - C:\Program Files\Bonjour\mDNSResponder.exe (Bonjour Service) .(.Apple Inc. - Bonjour Service.) - LEGACY_BONJOUR_SERVICE O64 - Services: CurCS - 14/04/2008 - C:\WINDOWS\system32\dmadmin.exe (dmadmin) .(.Microsoft Corp., Veritas Software - Processus du service Gestionnaire de disque.) - LEGACY_DMADMIN O64 - Services: CurCS - 14/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT O64 - Services: CurCS - 14/04/2008 - C:\WINDOWS\system32\drivers\dmload.sys (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD O64 - Services: CurCS - 04/04/2010 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE O64 - Services: CurCS - 04/04/2010 - C:\Program Files\Google\Update\GoogleUpdate.exe (gupdatem) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATEM O64 - Services: CurCS - 04/04/2010 - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (gusvc) .(.Google - gusvc.) - LEGACY_GUSVC O64 - Services: CurCS - 22/10/2004 - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe (IDriverT) .(.Macrovision Corporation - IDriverT Module.) - LEGACY_IDRIVERT O64 - Services: CurCS - 06/03/2012 - C:\Program Files\iPod\bin\iPodService.exe (iPod Service) .(.Apple Inc. - iPodService Module (32-bit).) - LEGACY_IPOD_SERVICE O64 - Services: CurCS - 23/02/2012 - C:\Program Files\Java\jre6\bin\jqs.exe (JavaQuickStarterService) .(.Sun Microsystems, Inc. - Java Quick Starter Service.) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CurCS - 01/06/2007 - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (NMIndexingService) .(.Nero AG - Nero Home.) - LEGACY_NMINDEXINGSERVICE O64 - Services: CurCS - 29/02/2012 - C:\WINDOWS\system32\nvsvc32.exe (NVSvc) .(.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 296.1.) - LEGACY_NVSVC O64 - Services: CurCS - 15/07/2009 - C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe (PdiService) .(.Portrait Displays, Inc. - pdisrvc.) - LEGACY_PDISERVICE O64 - Services: CurCS - 09/08/2004 - C:\WINDOWS\system32\drivers\prodrv06.sys (prodrv06) .(.Protection Technology - StarForce Protection Environment Driver.) - LEGACY_PRODRV06 O64 - Services: CurCS - 09/08/2004 - C:\WINDOWS\system32\drivers\prohlp02.sys (prohlp02) .(.Protection Technology - StarForce Protection Helper Driver.) - LEGACY_PROHLP02 O64 - Services: CurCS - 19/07/2004 - C:\WINDOWS\system32\drivers\prosync1.sys (prosync1) .(.Protection Technology - StarForce Protection Synchronization Driver.) - LEGACY_PROSYNC1 O64 - Services: CurCS - 01/12/2003 - C:\WINDOWS\system32\drivers\sfhlp01.sys (sfhlp01) .(.Protection Technology - StarForce Protection Helper Driver.) - LEGACY_SFHLP01 O64 - Services: CurCS - 18/09/2008 - C:\Program Files\ArcSoft\HP Webcam Software Suite\Magic-i Visual Effects 2\uCamMonitor.exe (uCamMonitor) .(.ArcSoft, Inc. - MgiSvr.) - LEGACY_UCAMMONITOR O64 - Services: CurCS - 25/10/2004 - C:\WINDOWS\system32\Drivers\ZDPSp50.sys (ZDPSp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) - LEGACY_ZDPSP50 ~ Scan Services in 00mn 00s ---\\ Liste des fichiers non signés (O65) (None) ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\system32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ~ Scan Keys in 00mn 00s ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\system32\ie4uinit.exe ~ Scan Keys in 00mn 00s ---\\ Search Browser Infection (O69) O69 - SBI: prefs.js [bruno - dj7b1h4b.default] user_pref("extensions.mywebsearch.openSearchURL", "http://search.mywebsearch.com/mywebsearch/opensearch.jhtml? O69 - SBI: prefs.js [bruno - dj7b1h4b.default] user_pref("extensions.mywebsearch.prevKwdURL", "chrome://browser-region/locale/region.properties"); O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - Google O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} - (AVG Secure Search) - http://isearch.avg.com ~ Scan Keys in 00mn 00s ---\\ Recherche des services démarrés par Svchost (O83) O83 - Search Svchost Services: AppMgmt (AppMgmt) . (...) -- C:\WINDOWS\system32\appmgmts.dll [0] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824] O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952] O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [99840] O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll [247808] O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] O83 - Search Svchost Services: ql2100 (ql2100) . (...) -- C:\WINDOWS\system32\W55U01.dll [0] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\system32\seclogon.dll [18944] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows.) -- C:\WINDOWS\system32\tapisrv.dll [249856] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408] O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400] O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ~ Scan Services in 00mn 00s ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.4C17ED4717130BE7C7EF385EA4DA9C36] [sPRF][05/04/2010] (...) -- C:\Documents and Settings\Bruno\Local Settings\Application Data\fusioncache.dat [128] [MD5.8CE7705CB43B03BB7970B04087C7758F] [sPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.dll [29616] [MD5.01E2ECA759056F23C73A035FDABB2D6D] [sPRF][30/06/2006] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\WINDOWS\Downloaded Program Files\dwusplay.exe [201648] [MD5.2D54DAECBA60EB03F9E63DD50669F634] [sPRF][24/10/2008] (.Macrovision Corporation - Macrovision Software Manager Web Agent.) -- C:\WINDOWS\Downloaded Program Files\isusweb.dll [488736] ~ Scan Files in 00mn 00s ---\\ Scan Additionnel (O88) Database Version : 9067 - (06/03/2012) Clés trouvées (Keys found) : 5 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 3 Fichiers trouvés (Files found) : 0 [HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{08858AF6-42AD-4914-95D2-AC3AB0DC8E28}] =>Adware.MyWebSearch [HKLM\Software\Classes\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc}] =>Adware.MyWebSearch [HKLM\Software\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}] =>Toolbar.Agent [HKLM\Software\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}] =>Spyware.Soft2PC [HKCU\Software\Grand Virtual] =>Spyware.AgenceExclusive C:\Documents and Settings\Bruno\Application Data\OpenCandy =>Adware.OpenCandy C:\Documents and Settings\Bruno\Local Settings\Application Data\OpenCandy =>Adware.OpenCandy ~ Scan Additionnel in 00mn 07s ---\\ Recherche détournement de DNS routeur (O89) Serveur : dns1.proxad.net Address: 212.27.40.240 Nom : www-cctld.l.google.com Address: 173.194.66.94 Aliases: www.google.fr ~ Scan DNS in 00mn 02s ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 18/03/2010 113152 | (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe SR - | Auto 27/02/2012 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SS - | Demand 14/04/2008 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\system32\dmadmin.exe SS - | Auto 04/04/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 04/04/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 04/04/2010 182768 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe SS - | Demand 22/10/2004 73728 | (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe SR - | Demand 06/03/2012 821608 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SR - | Auto 23/02/2012 153376 | (JavaQuickStarterService) . (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jqs.exe SS - | Demand 13/04/2007 792112 | (NBService) . (.Nero AG.) - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe SR - | Demand 01/06/2007 271920 | (NMIndexingService) . (.Nero AG.) - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe SR - | Auto 29/02/2012 164160 | (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe SR - | Auto 15/07/2009 109168 | (PdiService) . (.Portrait Displays, Inc..) - C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe SR - | Auto 18/09/2008 104960 | (uCamMonitor) . (.ArcSoft, Inc..) - C:\Program Files\ArcSoft\HP Webcam Software Suite\Magic-i Visual Effects 2\uCamMonitor.exe ~ Scan Services in 00mn 02s ---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, GMER - Rootkit Detector and Remover Run by Bruno at 28/03/2012 20:17:16 device: opened successfully user: MBR read successfully Disk trace: kernel: MBR read successfully user & kernel MBR OK ~ Scan MBR in 00mn 02s ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by Bruno at 28/03/2012 20:17:18 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ Scan MBR in 00mn 04s End of the scan (1993 lines in 43mn 51s)(0) Bonne lecture Salutations Freezeflow
  3. Bonjour, Ce matin impossible de réinstaller un jeu PC. Pas de fenêtre d'erreur. Mon lecteur reste muet. Il ne lance rien automatiquement, je dois le faire en manuel. Cette semaine mon PC a pris un rootkit Sirefef AC. Mon PC est nettoyé grâce à vous, mais n'avons nous pas fait un peu trop la poussière ? Comment faire pour que mon lecteur lance à nouveau automatiquement les DVD ? De plus après éradication du rootkit mon PC est devenu lent. Merci de votre aide. FreezeFlow
  4. Bonjour, Ce matin impossible de reinstaller un jeu PC . Pas de fenetre d'erreur.Mon lecteur reste muet Il ne lance rien automatiquement . Je dois le faire en manuel. Cette semaine mon PC a pris un rootkit Sirefef AC. Mon PC est nettoyé grace à vous, mais n'avons nous pas fait un peu trop la poussiére????? Comment faire pour que mon lecteur (re)lance automatiquement les dvd ??? De plus apres l'erradication du rootkit mon pc est devenu lent. Merci de votre aide. FreezeFlow
  5. Oui je pense que le Pb est réglé. Merci encore pour le coup de main. Salutations FreezeFlow
  6. Bonsoir, Effectivement Sirefef semble avoir pris le large.......... Voici le rapport GMER demandé : GMER 1.0.15.15641 - GMER - Rootkit Detector and Remover Rootkit scan 2012-03-27 20:17:18 Windows 5.1.2600 Service Pack 3 Harddisk1\DR1 -> \Device\Ide\IdeDeviceP2T0L0-e ST3160211AS rev.3.AAE Running: v0b1u10t.exe; Driver: C:\DOCUME~1\Bruno\LOCALS~1\Temp\pwgyiaow.sys ---- Kernel code sections - GMER 1.0.15 ---- .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB7ADA3C0, 0x95B7EA, 0xE8000020] ---- Devices - GMER 1.0.15 ---- Device \Driver\prodrv06 \Device\ProDrv06 E1913C30 Device \Driver\atapi \Device\Ide\IdePort0 prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\atapi \Device\Ide\IdePort1 prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\atapi \Device\Ide\IdePort2 prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\atapi \Device\Ide\IdePort3 prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\atapi \Device\Ide\IdeDeviceP3T0L0-19 prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\atapi \Device\Ide\IdeDeviceP2T0L0-e prosync1.sys (StarForce Protection Synchronization Driver/Protection Technology) Device \Driver\prohlp02 \Device\ProHlp02 E16D9840 ---- EOF - GMER 1.0.15 ---- Merci. FreezeFlow
  7. Bonsoir, Voici mon dernier RK, Bonne lecture............ Salutations FreezeFlow RogueKiller V7.3.2 [20/03/2012] par Tigzy mail: tigzyRK<at>gmail<dot>com Remontees: [RogueKiller] Remontées (1/48) Blog: tigzy-RK Systeme d'exploitation: Windows XP (5.1.2600 Service Pack 3) 32 bits version Demarrage : Mode normal Utilisateur: Bruno [Droits d'admin] Mode: Recherche -- Date: 26/03/2012 21:13:49 ¤¤¤ Processus malicieux: 0 ¤¤¤ ¤¤¤ Entrees de registre: 1 ¤¤¤ [HJ] HKLM\[...]\SystemRestore : DisableSR (1) -> FOUND ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver: [CHARGE] ¤¤¤ IRP[iRP_MJ_INTERNAL_DEVICE_CONTROL] : atapi.sys -> HOOKED ([MAJOR] prosync1.sys @ 0xF798D6C1) ¤¤¤ Infection : ¤¤¤ ¤¤¤ Fichier HOSTS: ¤¤¤ 127.0.0.1 localhost ¤¤¤ MBR Verif: ¤¤¤ +++++ PhysicalDrive0: ST3200822A +++++ --- User --- [MBR] a57f359c1a0998560d81285e67c0a1c0 [bSP] e2effb901acf02a784a41c2ffc0b0924 : Windows XP MBR Code Partition table: 1 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 16065 | Size: 190771 Mo User = LL1 ... OK! User = LL2 ... OK! +++++ PhysicalDrive1: ST3160211AS +++++ --- User --- [MBR] e1fc7f262f7b47f464f9403875af0dcb [bSP] dd3aa9e21722f75a3c2da419e07bf33e : Windows XP MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 63 | Size: 152617 Mo User = LL1 ... OK! User = LL2 ... OK! Termine : << RKreport[1].txt >> RKreport[1].txt
  8. bonsoir, Pour bit def removalTool le resultat est le suivant : Fichier syst : Rootkit.Sirefef.gen : Echec desinfection Pour RK : RogueKiller V7.3.2 [20/03/2012] par Tigzy mail: tigzyRK<at>gmail<dot>com Remontees: [RogueKiller] Remontées (1/48) Blog: tigzy-RK Systeme d'exploitation: Windows XP (5.1.2600 Service Pack 3) 32 bits version Demarrage : Mode normal Utilisateur: Bruno [Droits d'admin] Mode: Recherche -- Date: 26/03/2012 11:41:50 ¤¤¤ Processus malicieux: 0 ¤¤¤ ¤¤¤ Entrees de registre: 1 ¤¤¤ [HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver: [CHARGE] ¤¤¤ IRP[iRP_MJ_CREATE] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_CLOSE] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_DEVICE_CONTROL] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_INTERNAL_DEVICE_CONTROL] : Unknown -> HOOKED ([MAJOR] prosync1.sys @ 0xF798D6C1) IRP[iRP_MJ_SYSTEM_CONTROL] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_DEVICE_CHANGE] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) ¤¤¤ Infection : ZeroAccess ¤¤¤ [ZeroAccess] (LOCKED) windir\NtUpdateKBxxxx present! ¤¤¤ Fichier HOSTS: ¤¤¤ 127.0.0.1 localhost ¤¤¤ MBR Verif: ¤¤¤ Avez-Vous besoin des autres RK ? Merci de ne pas m'avoir laisser tomber Salutations FreezeFlow
  9. bonsoir, Pour bit def removalTool le resultat est le suivant : Fichier syst : Rootkit.Sirefef.gen : Echec desinfection Pour RK : RogueKiller V7.3.2 [20/03/2012] par Tigzy mail: tigzyRK<at>gmail<dot>com Remontees: [RogueKiller] Remontées (1/48) Blog: tigzy-RK Systeme d'exploitation: Windows XP (5.1.2600 Service Pack 3) 32 bits version Demarrage : Mode normal Utilisateur: Bruno [Droits d'admin] Mode: Recherche -- Date: 26/03/2012 11:41:50 ¤¤¤ Processus malicieux: 0 ¤¤¤ ¤¤¤ Entrees de registre: 1 ¤¤¤ [HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Fichiers / Dossiers particuliers: ¤¤¤ ¤¤¤ Driver: [CHARGE] ¤¤¤ IRP[iRP_MJ_CREATE] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_CLOSE] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_DEVICE_CONTROL] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_INTERNAL_DEVICE_CONTROL] : Unknown -> HOOKED ([MAJOR] prosync1.sys @ 0xF798D6C1) IRP[iRP_MJ_SYSTEM_CONTROL] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) IRP[iRP_MJ_DEVICE_CHANGE] : Unknown -> HOOKED ([MAJOR] atapi.sys @ 0xF7859B40) ¤¤¤ Infection : ZeroAccess ¤¤¤ [ZeroAccess] (LOCKED) windir\NtUpdateKBxxxx present! ¤¤¤ Fichier HOSTS: ¤¤¤ 127.0.0.1 localhost ¤¤¤ MBR Verif: ¤¤¤ Avez-Vous besoin des autres RK ? Merci de ne pas m'avoir laisser tomber Salutations FreezeFlow
  10. Bonjour, Voici mon rapport MalwareBytes AM alwarebytes Anti-Malware 1.60.1.1000 www.malwarebytes.org Version de la base de données: v2012.03.26.02 Windows XP Service Pack 3 x86 NTFS Internet Explorer 8.0.6001.18702 Bruno :: POSTE-908737F42 [administrateur] 26/03/2012 12:20:30 mbam-log-2012-03-26 (12-20-30).txt Type d'examen: Examen complet Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM Options d'examen désactivées: P2P Elément(s) analysé(s): 271806 Temps écoulé: 2 heure(s), 59 minute(s), 42 seconde(s) Processus mémoire détecté(s): 0 (Aucun élément nuisible détecté) Module(s) mémoire détecté(s): 0 (Aucun élément nuisible détecté) Clé(s) du Registre détectée(s): 3 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9193fbaf-bdaf-4751-a99a-1f5ef255c35b} (PUP.FCTPlugin) -> Mis en quarantaine et supprimé avec succès. HKLM\SOFTWARE\Google\Chrome\Extensions\kincjchfokkeneeofpeefomkikfkiedl (PUP.FCTPlugin) -> Mis en quarantaine et supprimé avec succès. HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (PUP.MyWebSearch) -> Mis en quarantaine et supprimé avec succès. Valeur(s) du Registre détectée(s): 0 (Aucun élément nuisible détecté) Elément(s) de données du Registre détecté(s): 0 (Aucun élément nuisible détecté) Dossier(s) détecté(s): 0 (Aucun élément nuisible détecté) Fichier(s) détecté(s): 3 C:\Qoobox\Quarantine\C\WINDOWS\system32\w55u01.dll.vir (RootKit.0Access.H) -> Mis en quarantaine et supprimé avec succès. C:\System Volume Information\_restore{1BA03112-6C78-44C2-991C-145D4C5EF3FA}\RP857\A0192722.dll (RootKit.0Access.H) -> Mis en quarantaine et supprimé avec succès. C:\System Volume Information\_restore{1BA03112-6C78-44C2-991C-145D4C5EF3FA}\RP857\A0192859.dll (RootKit.0Access.H) -> Mis en quarantaine et supprimé avec succès. (fin) Merci de me dire si je dois encore envisager une serie de verif. Salutations FreezeFlow
  11. Bonjour, Je suis nouveau sur ce forum.Plutôt fan des technologies informatiques ou logicielles, je suis loin d'être un spécialiste. Alors je viens vers vous pour un petit coup de main. Mon ordi s'est vu infecter ce week-end par un horrible sirefef.AC Il semblerait qu'une des solutions proposées, pour traiter mon Pb passe par ComboFix et que vous soyez les spécialistes du diagnostic post-scan. Vous trouverez plus bas le résultat de l'analyse et je vous remercie par avance des consignes et conseils que vous pourrez me donner. A bientôt FreezeFlow ComboFix 12-03-22.01 - Bruno 25/03/2012 22:04:16.1.2 - x86 Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.3199.2767 [GMT 2:00] Lancé depuis: c:\documents and settings\Bruno\Bureau\ComboFix.exe AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF} AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095} . . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files\FunWebProducts c:\program files\MyWebSearch c:\program files\MyWebSearch\bar\History\search3 c:\program files\MyWebSearch\bar\Settings\s_pid.dat c:\program files\Object c:\program files\Object\bho_project.dll c:\program files\Object\ChromeAddon.pem c:\program files\Object\chromeaddon\._included.js c:\program files\Object\chromeaddon\background.html c:\program files\Object\chromeaddon\included.js c:\program files\Object\chromeaddon\manifest.json c:\program files\Object\config.ini c:\program files\Object\enable.txt c:\program files\Object\facetheme-apl_uninstall.exe c:\program files\Object\facetheme\build.sh c:\program files\Object\facetheme\chrome.manifest c:\program files\Object\facetheme\config_build.sh c:\program files\Object\facetheme\content\.DS_Store c:\program files\Object\facetheme\content\installid.js c:\program files\Object\facetheme\content\overlay.js c:\program files\Object\facetheme\content\sudoku.js c:\program files\Object\facetheme\defaults\.DS_Store c:\program files\Object\facetheme\defaults\preferences\._sudoku.js c:\program files\Object\facetheme\defaults\preferences\.DS_Store c:\program files\Object\facetheme\defaults\preferences\sudoku.js c:\program files\Object\facetheme\files c:\program files\Object\facetheme\install.rdf c:\program files\Object\facetheme\locale\.DS_Store c:\program files\Object\facetheme\locale\en-US\.DS_Store c:\program files\Object\facetheme\locale\en-US\sudoku.dtd c:\program files\Object\facetheme\locale\en-US\sudoku.properties c:\program files\Object\facetheme\readme.txt c:\program files\Object\facetheme\skin\overlay.css c:\program files\Object\status.txt c:\program files\Object\status2.txt c:\windows\$NtUninstallKB64977$\2770480680 c:\windows\$NtUninstallKB64977$\2890420633\@ c:\windows\$NtUninstallKB64977$\2890420633\cfg.ini c:\windows\$NtUninstallKB64977$\2890420633\Desktop.ini c:\windows\$NtUninstallKB64977$\2890420633\L\puszeosn c:\windows\$NtUninstallKB64977$\2890420633\oemid c:\windows\$NtUninstallKB64977$\2890420633\U\00000001.@ c:\windows\$NtUninstallKB64977$\2890420633\U\00000002.@ c:\windows\$NtUninstallKB64977$\2890420633\U\00000004.@ c:\windows\$NtUninstallKB64977$\2890420633\U\80000000.@ c:\windows\$NtUninstallKB64977$\2890420633\U\80000004.@ c:\windows\$NtUninstallKB64977$\2890420633\U\80000032.@ c:\windows\$NtUninstallKB64977$\2890420633\version c:\windows\system32\dds_trash_log.cmd c:\windows\system32\w55u01.dll F:\AUTORUN.INF F:\install.exe c:\windows\$NtUninstallKB64977$\2890420633\cfg.ini . . . . impossible à supprimer . Une copie infectée de c:\windows\system32\drivers\serial.sys a été trouvée et désinfectée Copie restaurée à partir de - The cat found it . ((((((((((((((((((((((((((((( Fichiers créés du 2012-02-25 au 2012-03-25 )))))))))))))))))))))))))))))))))))) . . 2012-03-25 19:59 . 2008-04-14 12:00 66048 ----a-w- c:\windows\system32\drivers\serial.sys 2012-03-25 15:00 . 2012-03-13 17:15 6582328 ----a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{B267D973-7B76-4BA5-BF72-14B3628542E9}\mpengine.dll 2012-03-25 14:50 . 2012-03-25 14:50 -------- d-----w- c:\windows\system32\wbem\Repository 2012-03-24 19:07 . 2012-03-24 19:07 -------- d-----r- c:\documents and settings\NetworkService\Favoris 2012-03-09 13:12 . 2012-03-25 14:28 -------- d-----w- c:\documents and settings\UpdatusUser 2012-03-08 18:45 . 2012-03-08 18:45 -------- d-----w- c:\program files\iPod 2012-03-08 18:45 . 2012-03-08 18:47 -------- d-----w- c:\program files\iTunes 2012-03-03 17:36 . 2012-03-05 15:34 -------- d-----w- c:\documents and settings\Bruno\Application Data\HPAppData 2012-02-28 12:40 . 2012-02-28 12:40 -------- d-----w- c:\program files\Activision Value . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2012-03-25 18:11 . 2011-05-13 17:28 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-02-29 23:58 . 2010-11-10 20:01 881984 ----a-w- c:\windows\system32\nvgenco32.dll 2012-02-29 23:58 . 2010-11-10 20:01 1000256 ----a-w- c:\windows\system32\nvdispco32.dll 2012-02-29 23:58 . 2010-07-31 14:47 65536 ----a-w- c:\windows\system32\OpenCL.dll 2012-02-29 23:58 . 2010-07-31 14:47 5918720 ----a-w- c:\windows\system32\nvcuda.dll 2012-02-29 23:58 . 2010-07-31 14:47 2522944 ----a-w- c:\windows\system32\nvcuvid.dll 2012-02-29 23:58 . 2010-07-31 14:47 2437440 ----a-w- c:\windows\system32\nvcuvenc.dll 2012-02-29 23:58 . 2010-07-31 14:47 2291712 ----a-w- c:\windows\system32\nvapi.dll 2012-02-29 23:58 . 2010-07-31 14:47 18624512 ----a-w- c:\windows\system32\nvoglnt.dll 2012-02-29 23:58 . 2010-07-31 14:47 17534976 ----a-w- c:\windows\system32\nvcompiler.dll 2012-02-29 23:58 . 2008-06-25 04:57 4309760 ----a-w- c:\windows\system32\nv4_disp.dll 2012-02-29 23:58 . 2002-09-10 10:27 13417632 ----a-w- c:\windows\system32\drivers\nv4_mini.sys 2012-02-29 21:15 . 2011-06-22 09:10 335872 ----a-w- c:\windows\system32\nvrshe.dll 2012-02-29 21:15 . 2011-06-22 09:10 274432 ----a-w- c:\windows\system32\nvrsja.dll 2012-02-29 21:15 . 2011-06-22 09:10 274432 ----a-w- c:\windows\system32\nvrsesm.dll 2012-02-29 21:15 . 2011-06-22 09:10 258048 ----a-w- c:\windows\system32\nvrspl.dll 2012-02-29 21:15 . 2011-06-22 09:10 253952 ----a-w- c:\windows\system32\nvrssv.dll 2012-02-29 21:15 . 2011-06-22 09:10 249856 ----a-w- c:\windows\system32\nvrseng.dll 2012-02-29 21:15 . 2011-06-22 09:10 249856 ----a-w- c:\windows\system32\nvrscs.dll 2012-02-29 21:15 . 2011-06-22 09:10 282624 ----a-w- c:\windows\system32\nvrsit.dll 2012-02-29 21:15 . 2011-06-22 09:10 278528 ----a-w- c:\windows\system32\nvrsde.dll 2012-02-29 21:15 . 2011-06-22 09:10 270336 ----a-w- c:\windows\system32\nvrsptb.dll 2012-02-29 21:15 . 2011-06-22 09:10 258048 ----a-w- c:\windows\system32\nvrssk.dll 2012-02-29 21:15 . 2011-06-22 09:10 274432 ----a-w- c:\windows\system32\nvrspt.dll 2012-02-29 21:15 . 2011-06-22 09:10 262144 ----a-w- c:\windows\system32\nvrshu.dll 2012-02-29 21:15 . 2011-06-22 09:10 266240 ----a-w- c:\windows\system32\nvrsko.dll 2012-02-29 21:15 . 2011-06-22 09:10 335872 ----a-w- c:\windows\system32\nvrsar.dll 2012-02-29 21:15 . 2011-06-22 09:10 282624 ----a-w- c:\windows\system32\nvrses.dll 2012-02-29 21:15 . 2011-06-22 09:10 274432 ----a-w- c:\windows\system32\nvrsnl.dll 2012-02-29 21:15 . 2011-06-22 09:10 258048 ----a-w- c:\windows\system32\nvrstr.dll 2012-02-29 21:15 . 2011-06-22 09:10 253952 ----a-w- c:\windows\system32\nvrsth.dll 2012-02-29 21:15 . 2011-06-22 09:10 253952 ----a-w- c:\windows\system32\nvrsno.dll 2012-02-29 21:15 . 2011-06-22 09:10 286720 ----a-w- c:\windows\system32\nvrsfr.dll 2012-02-29 21:15 . 2011-06-22 09:10 282624 ----a-w- c:\windows\system32\nvrsel.dll 2012-02-29 21:15 . 2011-06-22 09:10 270336 ----a-w- c:\windows\system32\nvrsru.dll 2012-02-29 21:15 . 2011-06-22 09:10 229376 ----a-w- c:\windows\system32\nvrszhc.dll 2012-02-29 21:15 . 2011-06-22 09:10 126976 ----a-w- c:\windows\system32\nvrszht.dll 2012-02-29 21:15 . 2011-06-22 09:10 253952 ----a-w- c:\windows\system32\nvrsda.dll 2012-02-29 21:15 . 2011-06-22 09:10 249856 ----a-w- c:\windows\system32\nvrsfi.dll 2012-02-29 21:15 . 2011-06-22 09:10 258048 ----a-w- c:\windows\system32\nvrssl.dll 2012-02-29 20:30 . 2011-06-22 09:10 54272 ----a-w- c:\windows\system32\nvwddi.dll 2012-02-29 20:30 . 2011-06-22 09:10 143680 ----a-w- c:\windows\system32\nvcolor.exe 2012-02-29 20:30 . 2011-06-22 09:10 15494464 ----a-w- c:\windows\system32\nvcpl.dll 2012-02-29 20:30 . 2011-06-22 09:10 164160 ----a-w- c:\windows\system32\nvsvc32.exe 2012-02-29 20:30 . 2011-06-22 09:10 108352 ----a-w- c:\windows\system32\nvmctray.dll 2012-02-23 19:07 . 2010-04-04 14:16 73728 ----a-w- c:\windows\system32\javacpl.cpl 2012-02-23 19:07 . 2010-06-07 07:01 472808 ----a-w- c:\windows\system32\deployJava1.dll 2012-02-15 10:01 . 2010-11-15 09:27 4547944 ----a-w- c:\windows\system32\usbaaplrc.dll 2012-02-15 10:01 . 2010-11-15 09:27 43520 ----a-w- c:\windows\system32\drivers\usbaapl.sys 2012-02-03 09:58 . 2008-04-14 12:00 1860224 ----a-w- c:\windows\system32\win32k.sys 2012-01-31 12:44 . 2010-04-03 18:11 237072 ------w- c:\windows\system32\MpSigStub.exe 2012-01-17 12:46 . 2002-09-10 10:45 27968 ----a-w- c:\windows\system32\nvhdap32.dll 2012-01-17 12:45 . 2002-09-10 10:45 123712 ----a-w- c:\windows\system32\drivers\nvhda32.sys 2012-01-17 12:45 . 2012-03-09 13:07 876864 ----a-w- c:\windows\system32\nvhdagenco3220103.dll 2012-01-11 19:06 . 2012-02-15 13:07 3072 ------w- c:\windows\system32\iacenc.dll 2012-01-09 16:20 . 2010-04-01 15:40 139784 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2012-01-04 00:48 . 2012-01-04 00:48 354176 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl 2012-02-16 15:02 . 2012-03-25 19:15 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-04-04 39408] "ISUSPM"="c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2008-10-24 206112] "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" [2007-06-01 153136] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "WinSys2"="c:\windows\system32\winsys2.exe" [2008-07-09 208896] "SaiMfd"="c:\program files\Saitek\SD6\Software\SaiMfd.exe" [2009-06-03 131072] "ProfilerU"="c:\program files\Saitek\SD6\Software\ProfilerU.exe" [2009-06-03 237568] "NeroFilterCheck"="c:\program files\Fichiers communs\Ahead\Lib\NeroCheck.exe" [2007-03-01 153136] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 997920] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 56080] "itype"="c:\program files\Microsoft IntelliType Pro\itype.exe" [2009-05-21 1501064] "IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2009-05-26 1468296] "RTHDCPL"="RTHDCPL.EXE" [2011-04-14 20053608] "Adobe ARM"="c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712] "DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376] "APSDaemon"="c:\program files\Fichiers communs\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-02-29 15494464] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2012-02-29 108352] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2011-10-24 421888] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-06 421736] "ArcSoft Connection Service"="c:\program files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424] "HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208] "SunJavaUpdateSched"="c:\program files\Fichiers communs\Java\Java Update\jusched.exe" [2012-01-18 254696] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] "DWQueuedReporting"="c:\progra~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" [2007-02-25 437160] . c:\documents and settings\Bruno\Menu Démarrer\Programmes\Démarrage\ OpenOffice.org 3.3.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592] . c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\ Belkin Wireless USB Utility.lnk - c:\program files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe [2005-10-28 1404928] HP Button Manager.lnk - c:\program files\HP\Button Manager\BM.exe [2011-4-13 61440] HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-11-18 275072] . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Sony Ericsson\\Sony Ericsson Media Manager\\MediaManager.exe"= "c:\\Program Files\\Research In Motion\\BlackBerry Desktop\\Rim.Desktop.exe"= "c:\\Documents and Settings\\All Users\\Application Data\\NexonEU\\NGM\\NGM.exe"= "c:\\Program Files\\Bohemia Interactive\\ArmA 2\\arma2.exe"= "c:\\Program Files\\TeamSpeak 3 Client\\ts3client_win32.exe"= "c:\\Program Files\\Bonjour\\mDNSResponder.exe"= "c:\\Program Files\\Fichiers communs\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"= "c:\\Program Files\\iTunes\\iTunes.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfcCopy.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgplgtupl.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgpc01.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgm.exe"= "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgh.exe"= "c:\\Program Files\\HP\\HP Software Update\\hpwucli.exe"= "c:\\Program Files\\HP\\Digital Imaging\\smart web printing\\SmartWebPrintExe.exe"= "c:\\Program Files\\Bohemia Interactive\\ArmA 2\\arma2OA.exe"= "c:\\Program Files\\Mozilla Firefox\\firefox.exe"= . R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?] R2 PdiService;Portrait Displays SDK Service;c:\program files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe [05/04/2010 17:22 109168] R2 uCamMonitor;CamMonitor;c:\program files\ArcSoft\HP Webcam Software Suite\Magic-i Visual Effects 2\uCamMonitor.exe [25/01/2012 10:10 104960] R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\drivers\ArcSoftKsUFilter.sys [25/01/2012 10:10 14336] R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller;c:\windows\system32\drivers\atl01_xp.sys [01/04/2010 18:14 35840] R3 DCamUSBNovatek;USB2.0 UVC Camera;c:\windows\system32\drivers\nvtcam.sys [25/01/2012 10:14 2696960] R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [10/09/2002 12:45 123712] S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [04/04/2010 13:09 135664] S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [04/04/2010 12:52 1691480] S3 gupdatem;Service Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [04/04/2010 13:09 135664] S3 SetupNTGLM7X;SetupNTGLM7X;\??\d:\ntglm7x.sys --> d:\NTGLM7X.sys [?] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs ql2100 . Contenu du dossier 'Tâches planifiées' . 2012-03-22 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57] . 2012-03-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-04-04 11:09] . 2012-03-25 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-04-04 11:09] . 2012-03-25 c:\windows\Tasks\MP Scheduled Scan.job - c:\program files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27 13:39] . 2012-03-25 c:\windows\Tasks\User_Feed_Synchronization-{820B7686-AAA7-4AB8-A97C-79312B51E2FA}.job - c:\windows\system32\msfeedssync.exe [2009-03-08 02:31] . . ------- Examen supplémentaire ------- . uStart Page = hxxp://isearch.avg.com/?cid={993B96A0-F2B3-4513-8A01-C5C2948DA5B9}&mid=64257812d0c047d1b651d15e7974efd0-f40df2e8ce471f88c2ebd1d7ac566988a7b991c3〈=en&ds=tg027&pr=sa&d=2011-09-14%2013:10&v=8.0.0.34&sap=hp uDefault_Search_URL = hxxp://www.google.com/ie uInternet Settings,ProxyOverride = *.local uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 TCP: DhcpNameServer = 212.27.40.240 212.27.40.241 FF - ProfilePath - c:\documents and settings\Bruno\Application Data\Mozilla\Firefox\Profiles\dj7b1h4b.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - about:home FF - prefs.js: keyword.URL - hxxp://isearch.avg.com/search?cid=%7B4b768465-d1e9-440b-81c1-2a08ed03cf8b%7D&mid=64257812d0c047d1b651d15e7974efd0-f40df2e8ce471f88c2ebd1d7ac566988a7b991c3&ds=tg027&v=8.0.0.34.1〈=en&pr=sa&d=2011-09-14%2013%3A10%3A50&sap=ku&q= FF - user.js: yahoo.homepage.dontask - true);user_pref('extensions.autoDisableScopes', 0 . - - - - ORPHELINS SUPPRIMES - - - - . AddRemove-facetheme-apl - c:\program files\Object\facetheme-apl_uninstall.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2012-03-25 22:19 Windows 5.1.2600 Service Pack 3 NTFS . Recherche de processus cachés ... . Recherche d'éléments en démarrage automatique cachés ... . Recherche de fichiers cachés ... . . c:\windows\$NtUninstallKB64977$:SummaryInformation 0 bytes hidden from API . Scan terminé avec succès Fichiers cachés: 1 . ************************************************************************** . --------------------- CLES DE REGISTRE BLOQUEES --------------------- . [HKEY_USERS\S-1-5-21-1229272821-261903793-1417001333-1004\Software\SecuROM\License information*] "datasecu"=hex:6a,1f,12,23,c4,ec,98,18,76,bb,6b,b3,45,ca,0c,13,f2,65,e2,7f,37, ad,10,09,14,16,33,19,27,36,05,2e,34,39,27,f1,42,32,46,b0,f3,be,40,3e,37,f5,\ "rkeysecu"=hex:45,49,77,30,67,09,ff,79,28,36,66,b6,57,32,17,f7 . [HKEY_LOCAL_MACHINE\software\Portrait Displays\DisplayTune\PLUG_AP\APPS\{15733AD1-1CEF-459A-9245-0924FC63BDD5}] @DACL=(02 0000) . --------------------- DLLs chargées dans les processus actifs --------------------- . - - - - - - - > 'explorer.exe'(3508) c:\program files\Fichiers communs\Ahead\Lib\NeroSearchBar.dll c:\program files\Fichiers communs\Ahead\Lib\MFC71U.DLL c:\program files\Fichiers communs\Ahead\Lib\BCGCBPRO860un71.dll c:\windows\system32\eappprxy.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Autres processus actifs ------------------------ . c:\program files\Microsoft Security Client\Antimalware\MsMpEng.exe c:\program files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe c:\program files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\program files\Java\jre6\bin\jqs.exe c:\windows\system32\nvsvc32.exe c:\program files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE c:\program files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe c:\windows\system32\wbem\wmiapsrv.exe c:\windows\system32\wscntfy.exe c:\windows\RTHDCPL.EXE c:\program files\Microsoft IntelliPoint\dpupdchk.exe c:\windows\system32\RUNDLL32.EXE c:\program files\iPod\bin\iPodService.exe c:\program files\Fichiers communs\Ahead\Lib\NMIndexingService.exe c:\program files\OpenOffice.org 3\program\soffice.exe c:\program files\OpenOffice.org 3\program\soffice.bin c:\program files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe c:\program files\HP\Digital Imaging\bin\hpqSTE08.exe c:\program files\HP\Digital Imaging\bin\hpqbam08.exe c:\program files\HP\Digital Imaging\bin\hpqgpc01.exe . ************************************************************************** . Heure de fin: 2012-03-25 22:29:37 - La machine a redémarré ComboFix-quarantined-files.txt 2012-03-25 20:29 . Avant-CF: 53 373 280 256 octets libres Après-CF: 54 363 340 800 octets libres . WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons UnsupportedDebug="do not select this" /debug multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect . - - End Of File - - 968F47F876D0580F885F6808E3DB069E
×
×
  • Créer...