Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés


Bonjour à tous !


Depuis 1 mois, j'ai firefox qui bug (qui affiche très souvent un classique "mozilla firefox ne répond pas" avec un écran grisé, ce qui fait planter tout mon pc pendant quelques secondes mais régulièrement. Firefox me dit aussi que certains scriptes bugs et me propose de les arrêter, ce que je fais mais ça ne change rien à mon problème. En fait, tout mon ordi plante régulièrement et certains programmes ne se lancent pas (restauration du système etc...)

J'ai donc lancé plusieurs analyses antivirus et celle d'avira me dit ceci mais impossible de supprimer ces fichiers :



Vous savez ce qu'est mon problème et comment le résoudre?


Merci d'avance :-)




Lancez cet outil de diagnostic:

Téléchargez ZhpDiag de Coolman

Il ne nécessite aucune installation.

- Il peut être lancé depuis n'importe quelle unité de disque.

- Il peut être lancé d'une clé USB.



Cliquez sur le tournevis

Dans la fenêtre qui s'ouvre, cochez tout.

Clic sur la Loupe pour lancer le scan

Au bout d'un moment ,vous pouvez avoir à Accepter Sysinternal->I agree

Postez en le rapport qui apparait en cliquant l'appareil photo.


Salut !


Merci de ton aide, je m'occupe de ça de suite ;)




Voilà le rapport :




Rapport de ZHPDiag v1.26.25 par Nicolas Coolman, Update du 15/07/2010

Run by Gautier at 16/07/2010 18:13:26

Web site : ZHPDiag Outil de diagnostic

Contact :


---\\ Web Browser

MSIE: Internet Explorer v8.0.6001.18928

MFIE: Mozilla Firefox (3.6.6)


---\\ System Information

Platform : Windows Vista Home Premium (6.0.6002) Service Pack 2

Processor: x86 Family 6 Model 15 Stepping 13, GenuineIntel

Operating System: 32 Bits

Boot mode: Normal (Normal boot)

Total RAM: 2037 MB (46% free)

System drive C: has 66 GB (47%) free of 137 GB


---\\ Logged in mode

Computer Name: PC-DE-GAUTIER

User Name: Gautier

All Users Names: Gautier, Administrateur,

Unselected Option: None

Logged in as Administrator


---\\ DOS/Devices

C:\ Hard drive, Flash drive, Thumb drive (Free 66 Go of 137 Go)

D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 12 Go)

E:\ CD-ROM drive (Not Inserted)



---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK



---\\ Processus lancés

[MD5.8D2643C190070DDCCAE17B2576AA51BB] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [217088]

[MD5.5AF1E9600E3FF841E522703A4993ED0C] - (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe [186904]

[MD5.CF41C54529021D0E393BD149FEE4F03E] - (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\Hp\QuickPlay\QPService.exe [181544]

[MD5.32BB2395568841144CAF5C62879125C8] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe [202032]

[MD5.58435B686B9D578082F693858EA3246E] - (.Hewlett-Packard Development Company, L.P. - HPWAMain Module.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [480560]

[MD5.48A9D4961DD0C0E4DECD99DA597AE7B7] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\System32\igfxtray.exe [141848]

[MD5.63FFA18E782DEBBE8CC62195AD3783CA] - (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\System32\hkcmd.exe [173592]

[MD5.BBF84F08A343374BED5687AA6C5797B8] - (.Intel Corporation - persistence Module.) -- C:\WINDOWS\System32\igfxpers.exe [150552]

[MD5.C5C241A18788EED88E6C276D04B7D6AB] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [252952]

[MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\hpwuschd2.exe [54576]

[MD5.52DB6CDAC5BC7A1FC884E97C41C91213] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [248040]

[MD5.29680A793F690EEF4AAA68479D2A6DF8] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [209153]

[MD5.99E45FCB96AC7A8F437C9EF7F4BC36E8] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [50472]

[MD5.359937EFD1763DF9F8B8D166BD4CC022] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\Apntex.exe [49152]

[MD5.8D07F0687318214A3CEF62EA1048D101] - (.Hewlett-Packard Development Company, L.P. - Module to process WiFi messages..) -- C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE [316720]

[MD5.3B161E0C1D8F3253640D57B45FAC96DA] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe [677432]

[MD5.8FC4306F0FFAA592BBA29F9273293D22] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [910296]

[MD5.A0002BED9AAB2644437CA4C973AD3AF1] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [14808]

[MD5.03D7CE4FF09282D9BE8E0B3E750A2BBE] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [475648]



---\\ Plugins de navigateurs Opera/Firefox(P1/P2)

P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - np-mswmp.) -- C:\Program Files\Mozilla Firefox\Plugins\np-mswmp.dll

P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll

P2 - FPN:Firefox Plugin Navigator . (.NHN USA Inc. - ijji Auto Install Plugin for Mozilla.) -- C:\Program Files\Mozilla Firefox\Plugins\npijjiautoinstallpluginff.dll

P2 - FPN:Firefox Plugin Navigator . (.NHN USA Inc. - npijjiFFPlugin1.) -- C:\Program Files\Mozilla Firefox\Plugins\npijjiFFPlugin1.dll

P2 - FPN:Firefox Plugin Navigator . ( - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll

P2 - FPN:Firefox Plugin Navigator . (.Zylom - Zylom Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npzylomgamesplayer.dll

P2 - FPN: [HKLM] [] - (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll

P2 - FPN: [HKLM] [] - (.BitTorrent, Inc. - Delivery Network Acceleration by BitTorrent.) -- C:\Program Files\DNA\plugins\npbtdna.dll

P2 - FPN: [HKLM] [ Browser Plugin,version=1.0.0] - (.DivX,Inc. - DivX Web Player version -- C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

P2 - FPN: [HKLM] [] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

P2 - FPN: [HKLM] [] - (.Cybelsoft - Plugin NPAPI -- C:\Program Files\\nphardwaredetection.dll

P2 - FPN: [HKLM] [,version=1.0] - (. Microsoft Corporation - 4.0.50524.0.) -- c:\Program Files\Microsoft Silverlight\4.0.50524.0\npctrl.dll

P2 - FPN: [HKLM] [,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll

P2 - FPN: [HKLM] [,version=14.0.8081.0709] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

P2 - FPN: [HKLM] [,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

P2 - FPN: [HKLM] [ Updater;version=13] - (.Google - Google Updater plugin<br><a href="">http://pack.) -- C:\Program Files\Google\Google Updater\2.4.1636.7222\npCIDetect13.dll

P2 - FPN: [HKLM] [ Update;version=8] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\\npGoogleOneClick8.dll

P2 - FPN: [HKLM] [,version=1.0.1] - (.the VideoLAN Team - Version 1.0.3, copyright 1996-2009 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

P2 - FPN: [HKLM] [,version=1.0.3] - (.the VideoLAN Team - Version 1.0.3, copyright 1996-2009 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll

P2 - FPN: [HKLM] [] - (.Pas de propriétaire - MetaStream 3 Plugin r4.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll

P2 - FPN: [HKLM] [] - (.Zylom - Zylom Plugin.) -- C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll

P2 - FPN: [HKCU] [] - (.BitTorrent, Inc. - Delivery Network Acceleration by BitTorrent.) -- C:\Users\Gautier\Program Files\DNA\plugins\npbtdna.dll



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,



---\\ Pages de recherche d'Internet Explorer (R1)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant ={SUB_RFC1766}/srchasst/srchasst.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local



---\\ Internet Explorer URLSearchHook (R3)

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)) -- C:\Windows\system32\ieframe.dll



---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} . (.Microsoft Corporation - Windows Live Toolbar Core.) -- C:\Program Files\Windows Live\Toolbar\wltcore.dll



---\\ Internet Explorer Toolbars (O3)

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} . (.Microsoft Corporation - Windows Live Toolbar Core.) -- C:\Program Files\Windows Live\Toolbar\wltcore.dll



---\\ Applications démarrées automatiquement par le registre (O4)

O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe

O4 - HKLM\..\Run: [iAAnotif] . (.Intel Corporation - Event Monitor User Notification Tool.) -- C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe

O4 - HKLM\..\Run: [QPService] . (.CyberLink Corp. - HP QuickPlay Resident Program.) -- C:\Program Files\HP\QuickPlay\QPService.exe

O4 - HKLM\..\Run: [QlbCtrl] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe

O4 - HKLM\..\Run: [uCam_Menu] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe

O4 - HKLM\..\Run: [Windows Defender] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe

O4 - HKLM\..\Run: [hpWirelessAssistant] . (.Hewlett-Packard Development Company, L.P. - HPWAMain Module.) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe

O4 - HKLM\..\Run: [igfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe

O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe

O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - HKLM\..\policies\Explorer: [bindDirectlyToPropertySetStorage] Data=0

O4 - HKLM\..\policies\Explorer: [NoDrives] Data=0

O4 - HKLM\..\policies\Explorer: [NoDriveAutoRun] Data=0

O4 - HKLM\..\policies\Explorer: [NoDriveTypeAutoRun] Data=0

O4 - HKCU\..\policies\Explorer: [NoDrives] Data=0

O4 - HKCU\..\policies\Explorer: [NoDriveAutoRun] Data=0

O4 - HKCU\..\policies\Explorer: [NoDriveTypeAutoRun] Data=0



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~1\MICROS~3\Office12\EXCEL.exe



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)

O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~1\MICROS~3\Office12\REFBARH.ICO

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} . (.not file.) - (.not file.)



---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll

O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll



---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)

O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21)

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll



---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: a-squared Free Service (a2free) . (.Emsi Software GmbH - a-squared Service.) - C:\Program Files\a-squared Free\a2service.exe

O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Application Updater (Application Updater) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\Application Updater\ApplicationUpdater.exe

O23 - Service: Service Google Update (gupdate1ca11c96325e239) (gupdate1ca11c96325e239) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) . (.Google - gusvc.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: HP Health Check Service (HP Health Check Service) . (.Hewlett-Packard - HP Health Check Service.) - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe

O23 - Service: hpqwmiex (hpqwmiex) . (.Hewlett-Packard Development Company, L.P. - hpqwmiex Module.) - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe

O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) . (.Intel Corporation - RAID Monitor.) - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: SBSD Security Center Service (SBSDWSCService) . (.Safer Networking Ltd. - Spybot-S&D Security Center integration.) - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe

O23 - Service: XAudioService (XAudioService) . (.Conexant Systems, Inc. - Modem Audio Service.) - C:\Windows\system32\DRIVERS\xaudio.exe



---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Google Software Updater.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\User_Feed_Synchronization-{65B0E9EB-B80B-4C60-B6A6-A235BA7054DF}.job



---\\ Composants installés (ActiveSetup Installed Components) (O40)

O40 - ASIC: Viewpoint Media Player - {03F998B2-0E00-11D3-A498-00104B6EB52E} . (.Viewpoint Corporation - Viewpoint Media Player for Internet Explorer.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\AxMetaStream.dll

O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll

O40 - ASIC: Viewpoint Media Player - {1B00725B-C455-4DE6-BFB6-AD540AD427CD} . (.Viewpoint Corporation - Viewpoint Media Player for Internet Explorer.) -- C:\Program Files\Viewpoint\Viewpoint Experience Technology\AxMetaStream.dll

O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.0 r22.) -- C:\Windows\system32\Macromed\Flash\Flash10b.ocx



---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: Avg Anti-Rootkit Clean Driver (AvgArCln) . (.GRISOFT, s.r.o. - AVG7 Clean Driver.) - C:\Windows\system32\DRIVERS\AvgArCln.sys

O41 - Driver: avgio (avgio) . (.Avira GmbH - Avira AntiVir Support for Minifilter.) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys

O41 - Driver: avipbb (avipbb) . (.Avira GmbH - Avira Driver for RootKit Detection.) - C:\Windows\system32\DRIVERS\avipbb.sys

O41 - Driver: ssmdrv (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\system32\DRIVERS\ssmdrv.sys



---\\ Logiciels installés (O42)

O42 - Logiciel: AVG Anti-Rootkit Free - (.GRISOFT.) [HKLM]

O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM]

O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM]

O42 - Logiciel: Adobe Reader 8.1.0 - Français - (.Adobe Systems Incorporated.) [HKLM]

O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM]

O42 - Logiciel: Assistant de connexion Windows Live ID - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM]

O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM]

O42 - Logiciel: CCleaner (remove only) - (.Piriform.) [HKLM]

O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM]

O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM]

O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM]

O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM]

O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM]

O42 - Logiciel: DNA - (.BitTorrent Inc..) [HKCU]

O42 - Logiciel: DVD Suite - (.CyberLink Corp..) [HKLM]

O42 - Logiciel: DivX Plus Web Player - (.DivX,Inc..) [HKLM]

O42 - Logiciel: EA Link - (.Electronic Arts.) [HKLM]

O42 - Logiciel: ESU for Microsoft Vista - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: Football Manager 2010 - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: Free FLV Converter V 6.7.4 - (.Koyote Soft.) [HKLM]

O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM]

O42 - Logiciel: Google Earth - (.Google.) [HKLM]

O42 - Logiciel: HDAUDIO Soft Data Fax Modem with SmartCP - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP DVD Play 3.6 - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: HP Doc Viewer - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP Easy Setup - Frontend - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP Help and Support - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP Quick Launch Buttons 6.30 E2 - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP User Guides 0093 - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: Hewlett-Packard Active Check - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: Hewlett-Packard Asset Agent for Health Check - (.HP.) [HKLM]

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Intel® Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM]

O42 - Logiciel: Intel® TV Wizard - (.Intel Corporation.) [HKLM]

O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM]

O42 - Logiciel: Java 6 Update 2 - (.Sun Microsystems, Inc..) [HKLM]

O42 - Logiciel: Java 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM]

O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: K-Lite Codec Pack 5.0.5 (Full) - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: LimeWire 5.2.12 - (.Lime Wire, LLC.) [HKLM]

O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: MSCU for Microsoft Vista - (.Hewlett-Packard.) [HKLM]

O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM]

O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: MSXML4 Parser - (.Microsoft Game Studios.) [HKLM]

O42 - Logiciel: - (.Cybelsoft.) [HKLM]

O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM]

O42 - Logiciel: Messenger Plus! Live - (.Patchou.) [HKLM]

O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM]

O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) - (.Microsoft.) [HKLM]

O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Monopoly Deluxe - (.Zylom Games.) [HKLM]

O42 - Logiciel: Mozilla Firefox (3.6.6) - (.Mozilla.) [HKLM]

O42 - Logiciel: My HP Games - (.WildTangent.) [HKLM]

O42 - Logiciel: NetWaiting - (.BVRP Software, Inc.) [HKLM]

O42 - Logiciel: OGA Notifier 2.0.0048.0 - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: 3.1 - ( [HKLM]

O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM]

O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM]

O42 - Logiciel: Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista - (.Realtek.) [HKLM]

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB982312) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB982331) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB982308) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB982158) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB982135) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB969613) - (.Microsoft.) [HKLM]

O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM]

O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM]

O42 - Logiciel: Steam - (.Valve.) [HKLM]

O42 - Logiciel: Stream Torrent 1.0 - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: TVAnts 1.0 - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: TVUPlayer - (.TVU networks.) [HKLM]

O42 - Logiciel: Touch Pad Driver - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM]

O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM]

O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM]

O42 - Logiciel: VLC media player 1.0.1 - (.VideoLAN Team.) [HKLM]

O42 - Logiciel: Viewpoint Media Player - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: VirtualDubMOD b2540 Fr - (.Pas de propriétaire.) [HKLM]

O42 - Logiciel: Viton cyrillic azerty v.3.1 for russian, serbian, ukrainian and french language - (.Luc Petr - [HKLM]

O42 - Logiciel: War Rock - (.GamersFirst.) [HKLM]

O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Contrôle parental - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Toolbar - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM]

O42 - Logiciel: Windows Media Player Firefox Plugin - (.Microsoft Corp.) [HKLM]

O42 - Logiciel: a-squared Free 4.5 - (.Emsi Software GmbH.) [HKLM]

O42 - Logiciel: ijji REACTOR - (.ijji.) [HKLM]

O42 - Logiciel: muvee autoProducer 6.1 - (.muvee Technologies.) [HKLM]


---\\ HKCU & HKLM Software Keys











[HKCU\Software\Binary Noise]











[HKCU\Software\HP Guide]






[HKCU\Software\IM Providers]








[HKCU\Software\Malwarebytes' Anti-Malware]












[HKCU\Software\Safer Networking Limited]




[HKCU\Software\TVU networks]


[HKCU\Software\VB and VBA Program Settings]



[HKCU\Software\WinRAR SFX]


[HKCU\Software\Windows Live]









[HKLM\Software\America Online]

[HKLM\Software\Application Updater]



[HKLM\Software\BVRP Software, Inc]




[HKLM\Software\Codec Tweak Tool]

[HKLM\Software\Conexant Systems Inc ]







[HKLM\Software\Electronic Arts]

[HKLM\Software\Emsi Software GmbH]





















[HKLM\Software\NHN USA]


[HKLM\Software\OldTimer Tools]









[HKLM\Software\Safer Networking Limited]


[HKLM\Software\Sports Interactive Ltd]

[HKLM\Software\Sun Microsystems]



[HKLM\Software\TVU networks]









[HKLM\Software\Wise Solutions]







[HKLM\Software\muvee Technologies]




---\\ Contenu des dossiers Program Files (O43)

O43 - CFD:Common File Directory ----D- C:\Program Files\a-squared Free

O43 - CFD:Common File Directory ----D- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites

O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe

O43 - CFD:Common File Directory ----D- C:\Program Files\adslTV

O43 - CFD:Common File Directory ----D- C:\Program Files\ai

O43 - CFD:Common File Directory ----D- C:\Program Files\ai2

O43 - CFD:Common File Directory ----D- C:\Program Files\anim

O43 - CFD:Common File Directory ----D- C:\Program Files\Apoint2K

O43 - CFD:Common File Directory ----D- C:\Program Files\Application Updater

O43 - CFD:Common File Directory ----D- C:\Program Files\Atheros

O43 - CFD:Common File Directory ----D- C:\Program Files\avi

O43 - CFD:Common File Directory ----D- C:\Program Files\Avira

O43 - CFD:Common File Directory ----D- C:\Program Files\cameratracks

O43 - CFD:Common File Directory ----D- C:\Program Files\CCleaner

O43 - CFD:Common File Directory ----D- C:\Program Files\Cisco

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files

O43 - CFD:Common File Directory ----D- C:\Program Files\CONEXANT

O43 - CFD:Common File Directory ----D- C:\Program Files\CyberLink

O43 - CFD:Common File Directory ----D- C:\Program Files\data

O43 - CFD:Common File Directory ----D- C:\Program Files\DivX

O43 - CFD:Common File Directory ----D- C:\Program Files\DNA

O43 - CFD:Common File Directory ----D- C:\Program Files\docs

O43 - CFD:Common File Directory ----D- C:\Program Files\Electronic Arts

O43 - CFD:Common File Directory ----D- C:\Program Files\eMule

O43 - CFD:Common File Directory -SH-D- C:\Program Files\Fichiers communs

O43 - CFD:Common File Directory ----D- C:\Program Files\fonts

O43 - CFD:Common File Directory ----D- C:\Program Files\Football Manager 2010

O43 - CFD:Common File Directory ----D- C:\Program Files\Free FLV Converter

O43 - CFD:Common File Directory ----D- C:\Program Files\GamersFirst

O43 - CFD:Common File Directory ----D- C:\Program Files\gfxconfig

O43 - CFD:Common File Directory ----D- C:\Program Files\gfxconfig2

O43 - CFD:Common File Directory ----D- C:\Program Files\god powers

O43 - CFD:Common File Directory ----D- C:\Program Files\Google

O43 - CFD:Common File Directory ----D- C:\Program Files\GRISOFT

O43 - CFD:Common File Directory ----D- C:\Program Files\Hewlett-Packard

O43 - CFD:Common File Directory ----D- C:\Program Files\history

O43 - CFD:Common File Directory ----D- C:\Program Files\history2

O43 - CFD:Common File Directory ----D- C:\Program Files\Hp

O43 - CFD:Common File Directory ----D- C:\Program Files\HP Games

O43 - CFD:Common File Directory ----D- C:\Program Files\HPQ

O43 - CFD:Common File Directory ----D- C:\Program Files\Ihsv

O43 - CFD:Common File Directory ----D- C:\Program Files\ijji

O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information

O43 - CFD:Common File Directory ----D- C:\Program Files\Intel

O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer

O43 - CFD:Common File Directory ----D- C:\Program Files\Java

O43 - CFD:Common File Directory ----D- C:\Program Files\JRE

O43 - CFD:Common File Directory ----D- C:\Program Files\K-Lite Codec Pack

O43 - CFD:Common File Directory ----D- C:\Program Files\Konvertor

O43 - CFD:Common File Directory ----D- C:\Program Files\Language

O43 - CFD:Common File Directory ----D- C:\Program Files\LimeWire

O43 - CFD:Common File Directory ----D- C:\Program Files\

O43 - CFD:Common File Directory ----D- C:\Program Files\Malwarebytes' Anti-Malware

O43 - CFD:Common File Directory ----D- C:\Program Files\Messenger Plus! Live

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Games

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Silverlight

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft SQL Server Compact Edition

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Sync Framework

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Works

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft.NET

O43 - CFD:Common File Directory ----D- C:\Program Files\models

O43 - CFD:Common File Directory ----D- C:\Program Files\Monopoly

O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker

O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox

O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild

O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 4.0

O43 - CFD:Common File Directory ----D- C:\Program Files\muvee Technologies

O43 - CFD:Common File Directory ----D- C:\Program Files\My Company

O43 - CFD:Common File Directory ----D- C:\Program Files\Navilog1

O43 - CFD:Common File Directory ----D- C:\Program Files\NetWaiting

O43 - CFD:Common File Directory ----D- C:\Program Files\NHN USA

O43 - CFD:Common File Directory R---D- C:\Program Files\Online Services

O43 - CFD:Common File Directory ----D- C:\Program Files\ 3

O43 - CFD:Common File Directory ----D- C:\Program Files\ppdata

O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek

O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies

O43 - CFD:Common File Directory ----D- C:\Program Files\rm

O43 - CFD:Common File Directory ----D- C:\Program Files\rm2

O43 - CFD:Common File Directory ----D- C:\Program Files\savegame

O43 - CFD:Common File Directory ----D- C:\Program Files\scenario

O43 - CFD:Common File Directory ----D- C:\Program Files\SopCast

O43 - CFD:Common File Directory ----D- C:\Program Files\sound

O43 - CFD:Common File Directory ----D- C:\Program Files\Sports Interactive

O43 - CFD:Common File Directory ----D- C:\Program Files\Spybot - Search & Destroy

O43 - CFD:Common File Directory ----D- C:\Program Files\startup

O43 - CFD:Common File Directory ----D- C:\Program Files\Steam

O43 - CFD:Common File Directory ----D- C:\Program Files\StreamTorrent 1.0

O43 - CFD:Common File Directory ----D- C:\Program Files\textures

O43 - CFD:Common File Directory ----D- C:\Program Files\Trend Micro

O43 - CFD:Common File Directory ----D- C:\Program Files\trigger

O43 - CFD:Common File Directory ----D- C:\Program Files\trigger2

O43 - CFD:Common File Directory ----D- C:\Program Files\TVAnts

O43 - CFD:Common File Directory ----D- C:\Program Files\TVUPlayer

O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information

O43 - CFD:Common File Directory ----D- C:\Program Files\Users

O43 - CFD:Common File Directory ----D- C:\Program Files\VideoLAN

O43 - CFD:Common File Directory ----D- C:\Program Files\Viewpoint

O43 - CFD:Common File Directory ----D- C:\Program Files\VirtualDubMOD

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Calendar

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Collaboration

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Defender

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Journal

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live SkyDrive

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live Toolbar

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Mail

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Photo Gallery

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Portable Devices

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Sidebar

O43 - CFD:Common File Directory ----D- C:\Program Files\WinRAR

O43 - CFD:Common File Directory --H-D- C:\Program Files\Zero G Registry

O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPDiag

O43 - CFD:Common File Directory ----D- C:\Program Files\Zylom Games

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Adobe

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\DESIGNER

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\DivX Shared

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\INCA Shared

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\InstallShield

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Java

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\microsoft shared

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\muvee Technologies

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Services

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Steam

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Symantec Shared

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\System

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Windows Live

O43 - CFD:Common File Directory -SH-D- C:\Program Files\Common Files\WindowsLiveInstaller



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.00000000000000000000000000000000] - 16/07/2010 - 13:18:58 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\WindowsUpdate.log [1966461]

O44 - LFC:[MD5.6B71B96563A660F8408D7AC6F8D44D7F] - 16/07/2010 - 11:27:10 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\bootstat.dat [67584]

O44 - LFC:[MD5.AEB4038026EDF6DDDB300B8F423AE74C] - 15/07/2010 - 21:51:07 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\PFRO.log [322]

O44 - LFC:[MD5.B6D635930B7DD813243D21B1A7D68EBA] - 15/07/2010 - 21:11:36 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\ComboFix.txt [16185]

O44 - LFC:[MD5.3CF3D4A45CC2AF973DBC30EC8D33252B] - 15/07/2010 - 20:49:06 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system.ini [215]

O44 - LFC:[MD5.C5EC72A20B4C98DB5314E6C46765B148] - 15/07/2010 - 19:49:34 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\MBR.exe [77312]

O44 - LFC:[MD5.F1FBA6185A6A2BC6456970914875078E] - 15/07/2010 - 19:49:34 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\PEV.exe [256512]

O44 - LFC:[MD5.9E05A9C264C8A908A8E79450FCBFF047] - 15/07/2010 - 19:49:34 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\grep.exe [80412]

O44 - LFC:[MD5.2B657A67AEBB84AEA5632C53E61E23BF] - 15/07/2010 - 19:49:34 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\sed.exe [98816]

O44 - LFC:[MD5.5E832F4FAF5F481F2EAF3B3A48F603B8] - 15/07/2010 - 19:49:34 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\zip.exe [68096]

O44 - LFC:[MD5.01D95A1F8CF13D07CC564AABB36BCC0B] - 15/07/2010 - 19:49:34 ---A- . (.SteelWerX - Freeware implementation of REG.EXE.) -- C:\Windows\SWREG.exe [161792]

O44 - LFC:[MD5.B7517DB073B28F5696A1E5528ABEB5D0] - 15/07/2010 - 19:49:34 ---A- . (.SteelWerX - Freeware implementation of SC.EXE.) -- C:\Windows\SWSC.exe [136704]

O44 - LFC:[MD5.B1A9CF0B6F80611D31987C247EC630B4] - 15/07/2010 - 19:45:35 ---A- . (.SteelWerX - Freeware implementation of XCACLS.) -- C:\Windows\SWXCACLS.exe [212480]

O44 - LFC:[MD5.8902C99EBDDE5335CCB06F73BDD95BF5] - 05/07/2010 - 11:47:27 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\PerfStringBackup.INI [1495948]

O44 - LFC:[MD5.BBF092D07AF05B78C0BD192CFD754745] - 05/07/2010 - 11:47:27 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\perfc009.dat [104070]

O44 - LFC:[MD5.B5CF1C344D2923C0B75DBFD43572B00C] - 05/07/2010 - 11:47:27 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\perfc00C.dat [126626]

O44 - LFC:[MD5.615E5D3D2AC39271163D3C79E677D442] - 05/07/2010 - 11:47:27 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\perfh009.dat [595996]

O44 - LFC:[MD5.320C5481655320B978A650B8391E5407] - 05/07/2010 - 11:47:27 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\perfh00C.dat [679042]

O44 - LFC:[MD5.FA4B5940B31853ADE67A73026884C8C9] - 24/06/2010 - 09:55:37 ---A- . (.Microsoft Corporation - Bibliothèque d'assistance au déploiement de.) -- C:\Windows\System32\dfshim.dll [1130824]

O44 - LFC:[MD5.6D9C7FF21C6C05EF8859E4D2A63FAAFB] - 23/06/2010 - 21:35:09 ---A- . (.Microsoft - Legacy GDF resource DLL.) -- C:\Windows\System32\GameUXLegacyGDFs.dll [4240384]

O44 - LFC:[MD5.DCA5EC052B253C0376B992141670C709] - 21/06/2010 - 13:27:11 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\UsbFix.txt [1656]

O44 - LFC:[MD5.BE511C4691F3A798B2D932293A152366] - 21/06/2010 - 13:22:57 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\ [465647]

O44 - LFC:[MD5.3AD0362CF68DE3AC500E981700242CCA] - 17/06/2010 - 23:41:52 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\Windows\System32\drivers\ssmdrv.sys [28520]

O44 - LFC:[MD5.14FE36D8F2C6A2435275338D061A0B66] - 17/06/2010 - 23:41:51 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [56816]

O44 - LFC:[MD5.2DAA8CC2670720DEDDCC74A20EDE2EE9] - 17/06/2010 - 23:35:13 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\Windows\System32\drivers\avgntmgr.sys [22360]

O44 - LFC:[MD5.5B44C214F9CD9F590BE9125347610380] - 17/06/2010 - 23:35:13 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\Windows\System32\drivers\avgntdd.sys [45416]

O44 - LFC:[MD5.AD9BD66A862116E79CB45BB6BE46055F] - 17/06/2010 - 23:35:13 ---A- . (.Avira GmbH - Avira Driver for RootKit Detection.) -- C:\Windows\System32\drivers\avipbb.sys [96104]



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:19 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:23 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:23 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:27 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:37 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:38 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:41 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:57 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:57 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:58 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:45:58 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:46:07 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:48:00 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:51:30 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:51:39 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:51:39 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 10:51:49 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 17:26:47 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 19:03:19 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 19:03:39 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 19:04:47 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 19:05:12 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 01/07/2010 - 19:32:56 ---A- C:\Windows\Prefetch\AgCx_S1_S-1-5-21-2139877537-3687728945-1112707195-1000.snp.db

O45 - LFCP:Last File Created Prefetch 02/07/2010 - 15:24:58 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 03/07/2010 - 11:22:14 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 04/07/2010 - 18:43:56 ---A- C:\Windows\Prefetch\AgCx_SC2.db

O45 - LFCP:Last File Created Prefetch 05/07/2010 - 02:19:48 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 05/07/2010 - 11:44:21 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 05/07/2010 - 11:45:42 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 05/07/2010 - 11:46:07 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 06/07/2010 - 00:56:06 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 08/07/2010 - 17:22:43 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 09/07/2010 - 11:52:46 ---A- C:\Windows\Prefetch\Layout.ini

O45 - LFCP:Last File Created Prefetch 09/07/2010 - 11:52:57 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 09/07/2010 - 11:52:57 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 09/07/2010 - 12:33:47 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 09/07/2010 - 12:33:49 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 09/07/2010 - 12:33:51 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 10/07/2010 - 09:56:15 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 10/07/2010 - 10:14:25 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 10/07/2010 - 16:41:34 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 10/07/2010 - 17:57:00 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 11/07/2010 - 11:23:59 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 12/07/2010 - 00:18:40 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 12/07/2010 - 00:18:43 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 12/07/2010 - 00:18:43 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 12/07/2010 - 10:06:57 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 12/07/2010 - 10:13:00 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 12/07/2010 - 15:12:27 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 13/07/2010 - 00:29:06 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 14/07/2010 - 11:07:37 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 13:54:55 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 17:35:29 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 19:33:48 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 19:54:16 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 21:13:34 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 21:17:45 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 21:27:10 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 21:27:29 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 15/07/2010 - 21:37:30 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 01:57:25 ---A- C:\Windows\Prefetch\AgCx_SC1.db.trx

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 01:58:26 ---A- C:\Windows\Prefetch\AgCx_SC1.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 02:15:13 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 02:16:22 ---A- C:\Windows\Prefetch\PfSvPerfStats.bin

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:28:01 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:28:02 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:29:38 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:30:13 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:31:21 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:31:55 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:35:23 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:37:03 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:37:03 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:37:27 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:40:33 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:40:34 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 11:46:51 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 13:38:46 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:01:20 ---A- C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2139877537-3687728945-1112707195-1000.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:01:20 ---A- C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2139877537-3687728945-1112707195-1000.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:04:16 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:13:52 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:15:00 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:15:41 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:19:58 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:34:10 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:34:14 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 14:57:00 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 15:28:49 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:08:48 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:38:00 ---A- C:\Windows\Prefetch\AgGlFaultHistory.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:38:00 ---A- C:\Windows\Prefetch\AgGlGlobalHistory.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:38:00 ---A- C:\Windows\Prefetch\AgRobust.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:38:01 ---A- C:\Windows\Prefetch\AgGlFgAppHistory.db

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:42:30 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 16:57:00 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:06:32 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:06:36 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:08:53 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:11:35 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:11:35 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:11:45 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:11:50 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 16/07/2010 - 17:12:01 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 23/06/2010 - 17:48:42 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 23/06/2010 - 17:48:47 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 23/06/2010 - 20:41:37 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 23/06/2010 - 20:41:38 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 23/06/2010 - 20:43:02 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 23/06/2010 - 20:43:12 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 24/06/2010 - 11:29:29 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 24/06/2010 - 12:42:36 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 24/06/2010 - 12:42:49 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 24/06/2010 - 16:29:16 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 24/06/2010 - 20:41:54 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 25/06/2010 - 08:17:38 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 25/06/2010 - 08:27:37 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 25/06/2010 - 13:29:18 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 25/06/2010 - 13:29:19 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:40:18 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:40:37 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:42:01 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:44:50 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:44:57 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:46:27 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:49:32 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:49:39 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:49:52 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 26/06/2010 - 11:49:58 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 28/06/2010 - 07:04:33 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 29/06/2010 - 00:37:02 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 29/06/2010 - 00:38:18 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 29/06/2010 - 00:38:52 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 29/06/2010 - 18:57:43 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 12:03:39 ---A- C:\Windows\Prefetch\EMPIRE

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 15:25:49 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 15:25:53 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 15:25:59 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 15:26:38 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 15:26:41 ---A- C:\Windows\Prefetch\

O45 - LFCP:Last File Created Prefetch 30/06/2010 - 19:38:50 ---A- C:\Windows\Prefetch\



---\\ Trojan Driver Search Data (HKLM)(TDSD) (O52)

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll

O52 - TDSD: \Drivers32\"msacm.l3codecp"="l3codecp.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Audio Layer-3 Codec for MSACM.) -- C:\Windows\System32\l3codecp.acm

O52 - TDSD: \Drivers32\"VIDC.DIVX"="divx.dll" . (.DivX, Inc. - DivX.) -- C:\Windows\System32\divx.dll

O52 - TDSD: \Drivers32\"VIDC.XVID"="xvidvfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\xvidvfw.dll

O52 - TDSD: \Drivers32\"VIDC.YV12"="yv12vfw.dll" . ( - Helix YV12 YUV Codec.) -- C:\Windows\System32\yv12vfw.dll

O52 - TDSD: \Drivers32\"msacm.ac3acm"="ac3acm.acm" . (.fccHandler - AC-3 ACM Codec.) -- C:\Windows\System32\ac3acm.acm

O52 - TDSD: \Drivers32\"msacm.lameacm"="lameACM.acm" . (. - Lame MP3 codec engine.) -- C:\Windows\System32\lameACM.acm

O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\ff_vfw.dll

O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

O52 - TDSD: \drivers.desc\"divx.dll"="DivX 6.8.5" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"xvidvfw.dll"="Xvid MPEG-4 Video Codec 1.2.2" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.98.2" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC-3 ACM Codec" . (.fccHandler - AC-3 ACM Codec.) -- C:\Windows\System32\ac3acm.acm

O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\ff_vfw.dll



---\\ Microsoft Control Security Providers (MCSP) (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - "SecurityProviders"=credssp.dll

O54 - MCSP:[HKLM\...\ControlSet001\Control] - "SecurityProviders"=credssp.dll



---\\ Microsoft Windows Policies System (MWPS) (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1

O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1

O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0

O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0

O55 - MWPS:[HKCU\...\Policies\System] - "DisableRegistryTools"=0



---\\ Microsoft Windows Policies Explorer (MWPE) (O56)

O56 - MWPE:[HKCU\...\Policies\Explorer] - "NoDrives"=0

O56 - MWPE:[HKCU\...\Policies\Explorer] - "NoDriveAutoRun"=0

O56 - MWPE:[HKCU\...\Policies\Explorer] - "NoDriveTypeAutoRun"=0

O56 - MWPE:[HKLM\...\Policies\Explorer] - "BindDirectlyToPropertySetStorage"=0

O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoDrives"=0

O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoDriveAutoRun"=0

O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoDriveTypeAutoRun"=0



---\\ Liste des Drivers Système (SDL) (O58)

O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys

O58 - SDL:[MD5.B84088CA3CDCA97DA44A984C6CE1CCAD] - 02/11/2006 - 10:51:32 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys

O58 - SDL:[MD5.7880C67BCCC27C86FD05AA2AFB5EA469] - 02/11/2006 - 10:50:35 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\system32\drivers\adpu160m.sys

O58 - SDL:[MD5.9AE713F8E30EFC2ABCCD84904333DF4D] - 02/11/2006 - 10:51:00 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\system32\drivers\adpu320.sys

O58 - SDL:[MD5.90395B64600EBB4552E26E178C94B2E4] - 02/11/2006 - 10:49:20 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys

O58 - SDL:[MD5.E05C9BB1798B8C590F6592FABB03A93E] - 08/01/2008 - 18:58:46 ---A- . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\system32\drivers\Apfiltr.sys

O58 - SDL:[MD5.5F673180268BB1FDB69C99B6619FE379] - 02/11/2006 - 10:50:09 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys

O58 - SDL:[MD5.957F7540B5E7F602E44648C7DE5A1C05] - 02/11/2006 - 10:50:10 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys

O58 - SDL:[MD5.0437199C88F6E88A387CFEC8A8886A6E] - 25/09/2007 - 17:48:30 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athr.sys

O58 - SDL:[MD5.EC08D1625F5C6CF2A57B79EB35186F8C] - 18/01/2007 - 13:00:28 ---A- . (.GRISOFT, s.r.o. - AVG7 Clean Driver.) -- C:\Windows\system32\drivers\AvgArCln.sys

O58 - SDL:[MD5.E8054A423E5D2BDAE6062BAB6DA159C4] - 31/01/2007 - 14:33:46 ---A- . (.GRISOFT, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\Windows\system32\drivers\avgarkt.sys

O58 - SDL:[MD5.5B44C214F9CD9F590BE9125347610380] - 13/02/2009 - 11:17:49 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\Windows\system32\drivers\avgntdd.sys

O58 - SDL:[MD5.14FE36D8F2C6A2435275338D061A0B66] - 18/06/2010 - 23:41:51 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\Windows\system32\drivers\avgntflt.sys

O58 - SDL:[MD5.2DAA8CC2670720DEDDCC74A20EDE2EE9] - 13/02/2009 - 11:28:39 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\Windows\system32\drivers\avgntmgr.sys

O58 - SDL:[MD5.AD9BD66A862116E79CB45BB6BE46055F] - 30/03/2009 - 09:32:47 ---A- . (.Avira GmbH - Avira Driver for RootKit Detection.) -- C:\Windows\system32\drivers\avipbb.sys

O58 - SDL:[MD5.CF6A67C90951E3E763D2135DEDE44B85] - 02/11/2006 - 08:30:53 ---A- . (.Broadcom Corporation - BCM 802.11g Network Adapter wireless driver.) -- C:\Windows\system32\drivers\BCMWL6.SYS

O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 02/11/2006 - 09:24:45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys

O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 02/11/2006 - 09:24:46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys

O58 - SDL:[MD5.B304E75CFF293029EDDF094246747113] - 02/11/2006 - 09:25:24 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys

O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys

O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys

O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 02/11/2006 - 09:24:47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys

O58 - SDL:[MD5.A1BE5A64DDCB0880301CF860BE3F0A07] - 11/10/2007 - 12:17:56 ---A- . (.Conexant Systems Inc. - High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\CHDART.sys

O58 - SDL:[MD5.45201046C776FFDAF3FC8A0029C581C8] - 02/11/2006 - 10:49:28 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys

O58 - SDL:[MD5.DE15777902A5D9121857D155873A1D1B] - 28/06/2006 - 09:54:00 ---A- . (.Hewlett-Packard Development Company, L.P. - HP Tablet PC Key Button HID Driver.) -- C:\Windows\system32\drivers\CPQBttn.sys

O58 - SDL:[MD5.AE1FDF7BF7BB6C6A70F67699D880592A] - 02/11/2006 - 10:50:11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\system32\drivers\djsvs.sys

O58 - SDL:[MD5.C0B00E55CF82D122D25983C7A6A53DEA] - 02/11/2006 - 08:30:54 ---A- . (.Intel Corporation - Pilote NDIS 5.1 de la carte Intel® PRO/100.) -- C:\Windows\system32\drivers\e100b325.sys

O58 - SDL:[MD5.F88FB26547FD2CE6D0A5AF2985892C48] - 02/11/2006 - 08:30:54 ---A- . (.Intel Corporation - Intel® PRO/1000 Adapter NDIS 6 deserialized driver.) -- C:\Windows\system32\drivers\E1G60I32.sys

O58 - SDL:[MD5.E8F3F21A71720C84BCF423B80028359F] - 02/11/2006 - 10:51:34 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys

O58 - SDL:[MD5.833051C6C6C42117191935F734CFBD97] - 03/02/2010 - 14:56:56 --HA- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\system32\drivers\hamachi.sys

O58 - SDL:[MD5.DF353B401001246853763C4B7AAA6F50] - 02/11/2006 - 10:50:10 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\system32\drivers\HpCISSs.sys

O58 - SDL:[MD5.35956140E686D53BF676CF0C778880FC] - 18/06/2007 - 16:12:04 ---A- . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\system32\drivers\HpqKbFiltr.sys

O58 - SDL:[MD5.A44DDF3BA83E4664BF4DE9220097578C] - 20/06/2007 - 12:28:34 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\system32\drivers\HSXHWAZL.sys

O58 - SDL:[MD5.E096FFB754F1E45AE1BDDAC1275AE2C5] - 20/06/2007 - 12:28:22 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\system32\drivers\HSX_CNXT.sys

O58 - SDL:[MD5.1882827F41DEE51C70E24C567C35BFB5] - 20/06/2007 - 12:29:56 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\system32\drivers\HSX_DPV.sys

O58 - SDL:[MD5.D483687EACE0C065EE772481A96E05F5] - 04/06/2009 - 17:43:16 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\system32\drivers\iaStor.sys

O58 - SDL:[MD5.C957BF4B5D80B46C5017BF0101E6C906] - 02/11/2006 - 10:51:25 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\system32\drivers\iaStorV.sys

O58 - SDL:[MD5.A9221D13D8F1F772010EE293BA9BAEB7] - 26/02/2009 - 11:39:50 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd32.sys

O58 - SDL:[MD5.2D077BF86E843F901D8DB709C95B49A5] - 02/11/2006 - 10:50:17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys

O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\system32\drivers\iteatapi.sys

O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\system32\drivers\iteraid.sys

O58 - SDL:[MD5.A2262FB9F28935E862B4DB46438C80D2] - 02/11/2006 - 10:50:04 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys

O58 - SDL:[MD5.30D73327D390F72A62F32C103DAF1D6D] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys

O58 - SDL:[MD5.E1E36FEFD45849A95F1AB81DE0159FE3] - 02/11/2006 - 10:50:10 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys

O58 - SDL:[MD5.67B48A903430C6D4FB58CBACA1866601] - 29/04/2010 - 14:39:26 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys

O58 - SDL:[MD5.C7DD7D9739785BD3A6B8499EEC1DEE7E] - 29/04/2010 - 14:39:38 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbamswissarmy.sys

O58 - SDL:[MD5.0CEA2D0D3FA284B85ED5B68365114F76] - 19/06/2006 - 00:26:58 ---A- . (.Conexant - Diagnostic Interface x86 Driver.) -- C:\Windows\system32\drivers\mdmxsdk.sys

O58 - SDL:[MD5.D153B14FC6598EAE8422A2037553ADCE] - 02/11/2006 - 10:49:53 ---A- . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\system32\drivers\megasas.sys

O58 - SDL:[MD5.4FBBB70D30FD20EC51F80061703B001E] - 02/11/2006 - 10:49:59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\system32\drivers\Mraid35x.sys

O58 - SDL:[MD5.2E7FB731D4790A1BC6270ACCEFACB36E] - 02/11/2006 - 10:50:19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys

O58 - SDL:[MD5.E875C093AEC0C978A90F30C9E0DFBB72] - 02/11/2006 - 08:36:50 ---A- . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablette N-trig.) -- C:\Windows\system32\drivers\ntrigdigi.sys

O58 - SDL:[MD5.E69E946F80C1C31C53003BFBF50CBB7C] - 02/11/2006 - 10:50:24 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys

O58 - SDL:[MD5.9E0BA19A28C498A6D323D065DB76DFFC] - 02/11/2006 - 10:50:13 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys

O58 - SDL:[MD5.CCDAC889326317792480C0A67156A1EC] - 02/11/2006 - 10:51:45 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys

O58 - SDL:[MD5.81A7E5C076E59995D54BC1ED3A16E60B] - 02/11/2006 - 10:50:35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys

O58 - SDL:[MD5.5E01AB8AB1ACF8850B2D64A6FD068E46] - 25/08/2009 - 14:54:25 ---A- . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\system32\drivers\Rtnicxp.sys

O58 - SDL:[MD5.C71394D99A04CA76484492F590C9CBA5] - 08/10/2002 - 01:07:38 R--A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\drivers\SECDRV.SYS

O58 - SDL:[MD5.CEDD6F4E7D84E9F98B34B3FE988373AA] - 02/11/2006 - 10:50:10 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys

O58 - SDL:[MD5.DF843C528C4F69D12CE41CE462E973A7] - 02/11/2006 - 10:50:16 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys

O58 - SDL:[MD5.3AD0362CF68DE3AC500E981700242CCA] - 18/06/2010 - 23:41:52 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\Windows\system32\drivers\ssmdrv.sys

O58 - SDL:[MD5.192AA3AC01DF071B541094F251DEED10] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\system32\drivers\symc8xx.sys

O58 - SDL:[MD5.8C8EB8C76736EBAF3B13B633B2E64125] - 02/11/2006 - 10:49:56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_hi.sys

O58 - SDL:[MD5.8072AF52B5FD103BBBA387A1E49F62CB] - 02/11/2006 - 10:50:03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_u3.sys

O58 - SDL:[MD5.3CD4EA35A6221B85DCC25DAA46313F8D] - 02/11/2006 - 10:51:25 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\system32\drivers\uliahci.sys

O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\system32\drivers\ulsata.sys

O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 02/11/2006 - 10:50:45 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\system32\drivers\ulsata2.sys

O58 - SDL:[MD5.FD2E3175FCADA350C7AB4521DCA187EC] - 02/11/2006 - 10:49:30 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys

O58 - SDL:[MD5.D984439746D42B30FC65A4C3546C6829] - 02/11/2006 - 10:50:41 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\system32\drivers\vsmraid.sys

O58 - SDL:[MD5.46D67209550973257601A533E2AC5785] - 02/11/2006 - 08:41:49 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\system32\drivers\VSTAZL3.SYS

O58 - SDL:[MD5.5C7BDCF5864DB00323FE2D90FA26A8A2] - 02/11/2006 - 08:41:48 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\system32\drivers\VSTCNXT3.SYS

O58 - SDL:[MD5.EC36F1D542ED4252390D446BF6D4DFD0] - 02/11/2006 - 08:41:50 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\system32\drivers\VSTDPV3.SYS

O58 - SDL:[MD5.19E7C173B6242AD7521E537AE54768BF] - 10/07/2007 - 15:27:56 ---A- . (.Conexant Systems, Inc. - Modem Audio Device Driver.) -- C:\Windows\system32\drivers\XAudio.sys

O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\ANSI.SYS

O58 - SDL:[MD5.11A2F8D47E6208A6F68711AACDEDBD48] - 17/02/2009 - 19:01:34 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\athr.sys

O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\country.sys

O58 - SDL:[MD5.833051C6C6C42117191935F734CFBD97] - 23/09/2009 - 09:41:58 --HA- . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\system32\hamachi.sys

O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\HIMEM.SYS

O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\KEY01.SYS

O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\KEYBOARD.SYS

O58 - SDL:[MD5.9131FE60ADFAB595C8DA53AD6A06AA31] - 02/01/2005 - 22:43:08 ---A- . (.INCA Internet Co., Ltd. - nProtect NPSC Kernel Mode Driver for NT.) -- C:\Windows\system32\npptNT2.sys

O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTDOS.SYS

O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTDOS404.SYS

O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTDOS411.SYS

O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTDOS412.SYS

O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTDOS804.SYS

O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTIO.SYS

O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTIO404.SYS

O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTIO411.SYS

O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTIO412.SYS

O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\system32\NTIO804.SYS



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)

O61 - LFC:Last File Created 13/07/2010 - 11:31:40 ---A- C:\Users\All Users\Google Updater\icons\images_avast.gif [1029]

O61 - LFC:Last File Created 13/07/2010 - 19:26:21 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(20_26).sav [1247313]

O61 - LFC:Last File Created 13/07/2010 - 19:41:01 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(20_41).sav [1787515]

O61 - LFC:Last File Created 13/07/2010 - 19:54:09 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(20_54).sav [1927177]

O61 - LFC:Last File Created 13/07/2010 - 22:08:55 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(23_08).sav [1957828]

O61 - LFC:Last File Created 13/07/2010 - 22:22:19 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(23_22).sav [1973183]

O61 - LFC:Last File Created 13/07/2010 - 22:35:39 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(23_35).sav [1992661]

O61 - LFC:Last File Created 13/07/2010 - 22:49:03 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_13)_(23_49).sav [2023276]

O61 - LFC:Last File Created 14/07/2010 - 00:11:12 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(01_11).sav [2365298]

O61 - LFC:Last File Created 14/07/2010 - 00:24:28 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(01_24).sav [2380557]

O61 - LFC:Last File Created 14/07/2010 - 00:38:32 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(01_38).sav [2426263]

O61 - LFC:Last File Created 14/07/2010 - 12:18:55 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(13_18).sav [2587406]

O61 - LFC:Last File Created 14/07/2010 - 12:32:11 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(13_32).sav [2516579]

O61 - LFC:Last File Created 14/07/2010 - 12:45:45 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(13_45).sav [2538116]

O61 - LFC:Last File Created 14/07/2010 - 23:03:27 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(00_03).sav [2079605]

O61 - LFC:Last File Created 14/07/2010 - 23:17:35 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(00_17).sav [2097924]

O61 - LFC:Last File Created 14/07/2010 - 23:31:44 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(00_31).sav [2117172]

O61 - LFC:Last File Created 14/07/2010 - 23:44:46 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(00_44).sav [2185536]

O61 - LFC:Last File Created 14/07/2010 - 23:57:55 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_14)_(00_57).sav [2275755]

O61 - LFC:Last File Created 15/07/2010 - 19:43:35 R--A- C:\Users\Gautier\Downloads\ComboFix.exe [3740179]

O61 - LFC:Last File Created 15/07/2010 - 21:43:49 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-une_eqmag.xml [2007]

O61 - LFC:Last File Created 15/07/2010 - 21:43:59 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain.xml [445]

O61 - LFC:Last File Created 15/07/2010 - 21:44:07 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-1.xml [393]

O61 - LFC:Last File Created 15/07/2010 - 21:44:08 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-player_login.php [67]

O61 - LFC:Last File Created 15/07/2010 - 21:44:08 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-videoad.php [1129]

O61 - LFC:Last File Created 15/07/2010 - 21:44:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-_site [273]

O61 - LFC:Last File Created 15/07/2010 - 21:44:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-2.xml [281]

O61 - LFC:Last File Created 15/07/2010 - 21:44:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-3.xml [210]

O61 - LFC:Last File Created 15/07/2010 - 21:44:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-4.xml [152]

O61 - LFC:Last File Created 15/07/2010 - 21:44:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-5.xml [152]

O61 - LFC:Last File Created 15/07/2010 - 21:44:49 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-6.xml [773]

O61 - LFC:Last File Created 15/07/2010 - 21:44:49 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-7.xml [276]

O61 - LFC:Last File Created 15/07/2010 - 21:44:57 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-partnerfeed.aspx [1646]

O61 - LFC:Last File Created 15/07/2010 - 21:44:58 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-6067745 [3168]

O61 - LFC:Last File Created 15/07/2010 - 21:45:25 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-2 [2564]

O61 - LFC:Last File Created 15/07/2010 - 21:45:25 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-22.XML [8151]

O61 - LFC:Last File Created 15/07/2010 - 21:45:25 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-8.xml [281]

O61 - LFC:Last File Created 15/07/2010 - 21:45:25 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-localizedstr [532]

O61 - LFC:Last File Created 15/07/2010 - 21:45:25 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-mapid.fcg [5]

O61 - LFC:Last File Created 15/07/2010 - 21:45:26 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-9.xml [210]

O61 - LFC:Last File Created 15/07/2010 - 21:45:27 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin- [78]

O61 - LFC:Last File Created 15/07/2010 - 21:45:27 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-23.XML [8639]

O61 - LFC:Last File Created 15/07/2010 - 21:45:27 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp\plugin-crossdomain-10.xml [151]

O61 - LFC:Last File Created 15/07/2010 - 22:19:21 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_15)_(23_19).sav [1422570]

O61 - LFC:Last File Created 15/07/2010 - 22:35:29 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_15)_(23_35).sav [1846072]

O61 - LFC:Last File Created 15/07/2010 - 22:38:05 ---A- C:\Users\Gautier\Documents\Empire Earth II\logs\aiwall_Gautier_(2010_07_15)_(23_37).log [27592]

O61 - LFC:Last File Created 15/07/2010 - 22:49:15 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_15)_(23_49).sav [2134062]

O61 - LFC:Last File Created 16/07/2010 - 02:15:01 --HA- C:\Users\Gautier\AppData\Local\IconCache.db [2776834]

O61 - LFC:Last File Created 16/07/2010 - 02:15:04 ---A- C:\Users\Gautier\AppData\Local\temp\ehmsas.txt [2]

O61 - LFC:Last File Created 16/07/2010 - 11:27:40 ---A- C:\Users\Gautier\AppData\Local\temp\MUI\CyberLink YouCam\Cyberlink YouCam.lnk [934]

O61 - LFC:Last File Created 16/07/2010 - 11:27:42 ---A- C:\Users\Public\Documents\hpqp.ini [165]

O61 - LFC:Last File Created 16/07/2010 - 11:27:51 ---A- C:\Users\Gautier\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0]

O61 - LFC:Last File Created 16/07/2010 - 11:32:48 ---A- C:\Users\Gautier\AppData\Local\temp\jusched.log [802]

O61 - LFC:Last File Created 16/07/2010 - 12:12:08 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Régicide - (2010_07_16)_(13_12).sav [1837640]

O61 - LFC:Last File Created 16/07/2010 - 12:25:38 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Régicide - (2010_07_16)_(13_25).sav [2381009]

O61 - LFC:Last File Created 16/07/2010 - 12:39:05 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Régicide - (2010_07_16)_(13_39).sav [2482764]

O61 - LFC:Last File Created 16/07/2010 - 12:53:56 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Régicide - (2010_07_16)_(13_53).sav [2662019]

O61 - LFC:Last File Created 16/07/2010 - 13:07:06 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Régicide - (2010_07_16)_(14_07).sav [2735694]

O61 - LFC:Last File Created 16/07/2010 - 13:11:16 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Bagdad.sav [2732003]

O61 - LFC:Last File Created 16/07/2010 - 13:11:34 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\fontcache\fv8W_Palatino_Linotype_14_0_aa_kr_alnum_2_128x128_info.cache [3165]

O61 - LFC:Last File Created 16/07/2010 - 13:11:34 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\fontcache\fv8W_Palatino_Linotype_14_0_aa_kr_alnum_2_128x128_texture.texcache [32918]

O61 - LFC:Last File Created 16/07/2010 - 13:32:28 ---A- C:\Users\Gautier\AppData\Roaming\Adobe\Flash Player\AssetCache\7BFZH593\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu [150]

O61 - LFC:Last File Created 16/07/2010 - 13:32:28 ---A- C:\Users\Gautier\AppData\Roaming\Adobe\Flash Player\AssetCache\7BFZH593\26F1F5A0DEB2FBFC5345C20FF79DFFAFEE4EC7A6.heu [150]

O61 - LFC:Last File Created 16/07/2010 - 14:14:53 ---A- C:\Users\Gautier\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2010-07-16 (15-14-53).txt [1044]

O61 - LFC:Last File Created 16/07/2010 - 14:19:31 ---A- C:\Users\Gautier\AppData\Local\temp\LastScan.txt [1114]

O61 - LFC:Last File Created 16/07/2010 - 14:19:31 ---A- C:\Users\Gautier\AppData\Local\temp\restart.a2s [511]

O61 - LFC:Last File Created 16/07/2010 - 14:30:30 ---A- C:\Users\Gautier\AppData\Roaming\Microsoft\IdentityCRL\Production\MetaConfig.xml [163]

O61 - LFC:Last File Created 16/07/2010 - 16:06:06 ---A- C:\Users\Gautier\AppData\Local\QuickPlay\IEPG.ini [34]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbAdapterIds.bdb [1576]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbVisualLod.bdb [1700]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcolor.bdb [4340]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcursor.bdb [4304]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbfont.bdb [2888]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbfontstyle.bdb [5380]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dblanguage.bdb [824]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbmodelconvert.bdb [4032]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbmusic.bdb [1848]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbsound.bdb [102616]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbsprite.bdb [531616]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbtext.bdb [1277932]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbtextureconvert.bdb [516]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbvisualstate.bdb [3776]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbwidgetframestyle.bdb [8288]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbwidgetsoundstyle.bdb [2516]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbwidgetstyle.bdb [5380]

O61 - LFC:Last File Created 16/07/2010 - 16:15:20 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbwidgetstyleset.bdb [1816]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbSeasonalTextureSets_Arid.bdb [52788]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbSeasonalTextureSets_Temperate.bdb [173900]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbSeasonalTextureSets_Tropical.bdb [54896]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbTerrainTexture_Arid.bdb [3552]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbTerrainTexture_Temperate.bdb [3664]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbTerrainTexture_Tropical.bdb [3328]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbTerrain_Arid.bdb [4712]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbTerrain_Temperate.bdb [4864]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\DbTerrain_Tropical.bdb [4448]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbAIPersonality.bdb [348]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbAITaunt.bdb [2648]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbEEESidebar.bdb [24808]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbMapGeography.bdb [696]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbMapSize.bdb [416]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbMiscSim.bdb [12936]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbQuickStart.bdb [11056]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbQuickStartFamilies.bdb [672]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbTerrainDecal.bdb [4040]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbambientaudio.bdb [2132]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbanimal.bdb [996]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbareaeffects.bdb [38316]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcampaign.bdb [824]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcampaignset.bdb [196]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcliff.bdb [560]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbclimate.bdb [14032]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbclimateforestgen.bdb [236]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbclimateforests.bdb [264]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcombat.bdb [4000]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcombatunittypeadjust.bdb [10340]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbcrown.bdb [1664]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbforestbrush.bdb [1176]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbforestgen.bdb [680]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbformation.bdb [6488]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbformationcombatbonus.bdb [1580]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbmovement.bdb [800]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbmoviesubtitles.bdb [5248]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbpage.bdb [46492]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbregional.bdb [6532]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbresourcedistribution.bdb [400]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbresourcelevels.bdb [1780]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbscenario.bdb [5212]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbscenarioobjectives.bdb [29376]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbscreen.bdb [500]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbtechtree.bdb [85448]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbuimisc.bdb [3640]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbuiunitactions.bdb [13208]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbunit.bdb [159272]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbunittypeattribute.bdb [29524]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbunittypetranslationtable.bdb [7672]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbupgrade.bdb [245816]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbupgradefactors.bdb [4672]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbvisual.bdb [593532]

O61 - LFC:Last File Created 16/07/2010 - 16:15:21 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\bdb\dbwidget.bdb [606940]

O61 - LFC:Last File Created 16/07/2010 - 16:29:25 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_16)_(17_29).sav [2714445]

O61 - LFC:Last File Created 16/07/2010 - 16:42:35 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_16)_(17_42).sav [2875826]

O61 - LFC:Last File Created 16/07/2010 - 16:56:39 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\settings\users.cfg [2227]

O61 - LFC:Last File Created 16/07/2010 - 16:56:40 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_16)_(17_56).sav [3118240]

O61 - LFC:Last File Created 16/07/2010 - 17:05:57 ---A- C:\Users\Gautier\AppData\Local\temp\Gautier.bmp [31832]

O61 - LFC:Last File Created 16/07/2010 - 17:05:58 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\settings\settings.cfg [7195]

O61 - LFC:Last File Created 16/07/2010 - 17:06:42 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain.xml [445]

O61 - LFC:Last File Created 16/07/2010 - 17:06:42 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-player_login.php [67]

O61 - LFC:Last File Created 16/07/2010 - 17:06:43 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-videoad.php [1147]

O61 - LFC:Last File Created 16/07/2010 - 17:06:46 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-_site [273]

O61 - LFC:Last File Created 16/07/2010 - 17:06:46 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-1.xml [281]

O61 - LFC:Last File Created 16/07/2010 - 17:06:46 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-2.xml [210]

O61 - LFC:Last File Created 16/07/2010 - 17:06:46 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-3.xml [152]

O61 - LFC:Last File Created 16/07/2010 - 17:06:46 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-4.xml [152]

O61 - LFC:Last File Created 16/07/2010 - 17:06:47 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-5.xml [276]

O61 - LFC:Last File Created 16/07/2010 - 17:06:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-6067745 [3168]

O61 - LFC:Last File Created 16/07/2010 - 17:06:48 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-store.swf [581]

O61 - LFC:Last File Created 16/07/2010 - 17:06:49 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-2 [2564]

O61 - LFC:Last File Created 16/07/2010 - 17:06:49 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-mapid.fcg [5]

O61 - LFC:Last File Created 16/07/2010 - 17:06:50 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-18.XML [16234]

O61 - LFC:Last File Created 16/07/2010 - 17:06:50 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-6.xml [773]

O61 - LFC:Last File Created 16/07/2010 - 17:06:51 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin- [78]

O61 - LFC:Last File Created 16/07/2010 - 17:06:51 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-crossdomain-7.xml [151]

O61 - LFC:Last File Created 16/07/2010 - 17:07:42 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-19.XML [15734]

O61 - LFC:Last File Created 16/07/2010 - 17:07:43 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-20.XML [8087]

O61 - LFC:Last File Created 16/07/2010 - 17:11:39 ---A- C:\Users\Gautier\Downloads\ZHPDiag 1.26.exe [1732333]

O61 - LFC:Last File Created 16/07/2010 - 17:17:00 ---A- C:\Users\Gautier\AppData\Local\temp\plugtmp-1\plugin-une_eqmag.xml [1969]

O61 - LFC:Last File Created 16/07/2010 - 23:05:15 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_16)_(00_05).sav [2343339]

O61 - LFC:Last File Created 16/07/2010 - 23:20:06 ---A- C:\Users\Gautier\Documents\Empire Earth II\savegame_SP\Sauvegarde auto - Conquête - (2010_07_16)_(00_20).sav [2320670]

O61 - LFC:Last File Created 16/07/2010 - 23:31:37 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\fontcache\fv8W_Palatino_Linotype_16_0_bo_ou_aa_kr_alnum_3_256x128_info.cache [2533]

O61 - LFC:Last File Created 16/07/2010 - 23:31:37 ---A- C:\Users\Gautier\AppData\Roaming\Sierra\Empire Earth II\fontcache\fv8W_Palatino_Linotype_16_0_bo_ou_aa_kr_alnum_3_256x128_texture.texcache [65686]



---\\ Liste des outils de nettoyage (LATC) (O63)

O63 - Logiciel: Usbfix By C_XX & El Desaparecido - (.C_XX & El Desaparecido.)

O63 - Logiciel: ZHPDiag 1.26 - (.Nicolas Coolman.)

O63 - Logiciel: RSIT - (.random/random.)



---\\ Liste des services Legacy (LALS) (O64)

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\AvgArCln.sys - Avg Anti-Rootkit Clean Driver (AvgArCln) .(.GRISOFT, s.r.o. - AVG7 Clean Driver.) - LEGACY_AVGARCLN

O64 - Services: CurCS - C:\Program Files\Avira\AntiVir Desktop\avgio.sys - avgio (avgio) .(.Avira GmbH - Avira AntiVir Support for Minifilter.) - LEGACY_AVGIO

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avgntflt.sys - avgntflt (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avgarkt.sys - AVG Anti-Rootkit (AVG Anti-Rootkit) .(.GRISOFT, s.r.o. - AVG Anti-Rootkit Driver.) - LEGACY_AVG_ANTI-ROOTKIT

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avipbb.sys - avipbb (avipbb) .(.Avira GmbH - Avira Driver for RootKit Detection.) - LEGACY_AVIPBB

O64 - Services: CurCS - (.not file.) - Beep (Beep) .(.Pas de propriétaire - Pas de description.) - LEGACY_BEEP

O64 - Services: CurCS - (.not file.) - catchme (catchme) .(.Pas de propriétaire - Pas de description.) - LEGACY_CATCHME

O64 - Services: CurCS - (.not file.) - CO_Mon (CO_Mon) .(.Pas de propriétaire - Pas de description.) - LEGACY_CO_MON

O64 - Services: CurCS - (.not file.) - dump_wmimmc (dump_wmimmc) .(.Pas de propriétaire - Pas de description.) - LEGACY_DUMP_WMIMMC

O64 - Services: CurCS - (.not file.) - EagleNT (EagleNT) .(.Pas de propriétaire - Pas de description.) - LEGACY_EAGLENT

O64 - Services: CurCS - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_FASTFAT

O64 - Services: CurCS - (.not file.) - mbr (mbr) .(.Pas de propriétaire - Pas de description.) - LEGACY_MBR

O64 - Services: CurCS - (.not file.) - PCTSDInjDriver32 (PCTSDInjDriver32) .(.Pas de propriétaire - Pas de description.) - LEGACY_PCTSDINJDRIVER32

O64 - Services: CurCS - (.not file.) - PROCEXP113 (PROCEXP113) .(.Pas de propriétaire - Pas de description.) - LEGACY_PROCEXP113

O64 - Services: CurCS - (.not file.) - Security Processor Loader Driver (spldr) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPLDR

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ssmdrv.sys - ssmdrv (ssmdrv) .(.Avira GmbH - AVIRA SnapShot Driver.) - LEGACY_SSMDRV

O64 - Services: CurCS - (.not file.) - SymEvent (SymEvent) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMEVENT

O64 - Services: CurCS - (.not file.) - SYMREDRV (SYMREDRV) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMREDRV

O64 - Services: CurCS - (.not file.) - SYMTDI (SYMTDI) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMTDI

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\xaudio.sys - XAudio (XAudio) .(.Conexant Systems, Inc. - Modem Audio Device Driver.) - LEGACY_XAUDIO



---\\ Liste des fichiers non signés (LUF) (O65)

O65 - LUF:26/02/2009 (.Pas de propriétaire - igfxtvcx Module.) (1, 0, 0, 1) - c:\windows\system32\igfxtvcx.dll



---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\system32\eventvwr.exe

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d'événements.) -- C:\Windows\system32\eventvwr.exe

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe



---\\ Start Menu Internet (SMI) (O68)

O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe



---\\ Search Browser Infection (SBI) (O69)

[HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Recherche AOL Toolbar]

[HKCU\Software\Microsoft\Internet Explorer\MenuExt\E&xporter vers Microsoft Excel]

O69 - SBI: SearchScopes ${searchCLSID}- (@ieframe.dll,-12512) - Bing

O69 - SBI: SearchScopes {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} [DefaultScope] - (Ask Search) -

O69 - SBI: SearchScopes {417A8F00-A30E-4456-ABB3-05F33472D0FD}- (AOL Recherche) -{searchTerms}&invocationType=tb50hpcnnbie7-fr-fr

O69 - SBI: SearchScopes {A048CF3A-1E6B-41E6-8916-634767CB1214}- (Kelkoo) -



---\\ Recherche d'infection Master Boot Record (O80)

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, GMER - Rootkit Detector and Remover

Run by Gautier at 16/07/2010 18:25:18

device: opened successfully

user: MBR read successfully

called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll iaStor.sys

kernel: MBR read successfully

user & kernel MBR OK



---\\ Crack & Keygen Files (O82)

C:\Users\Gautier\Documents\LimeWire\Saved\Monopoly Deluxe\Crack\monopoly.exe



C:\Users\Gautier\Documents\LimeWire\Saved\Monopoly Deluxe\Crack\monopoly.exe





---\\ Infection BT - BHO/Toolbar (Possible)


O69 - SBI: SearchScopes {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} [DefaultScope] - (Ask Search) -




End of the scan (1221 lines in 18mn 24s)




Si vous êtes sous Vista:Désactiver L'UAC ,avant sont utilisation.

Menu Démarrer \ Panneau de Configuration \ Comptes d'utilisateurs et protection des utilisateurs \ Comptes d'utilisateurs \ Activer ou désactiver le contrôle des comptes d'utilisateurs \ décoche la case Utiliser le contrôle ... et valider par OK ,

il sera demandé de redémarrer



Téléchargez AD-Remover( de Cyrildu17 / C_XX ) sur le bureau

Déconnectez-vous et fermez toutes les applications en cours

Cliquer sur "Ad-R.exe" pour lancer l'installation et laisser les paramètres par défaut .

Une fenêtre s'affichera Vous prévenant des risques de l'utilisation de ce logiciel

Cliquez sur "OUI"

Double cliquer sur l'icône Ad-remover sur le bureau


Au menu principal choisir l'optionScanner et Validez


Patientez pendant le travail de l'outil.

Poster le rapport qui apparait à la fin .

Il est sauvegardé aussi sous C:\Ad-report.log




Relancer Ad- remover , choisir l'option Nettoyer


Il y aura 2 rapports à poster après Scanner et Nettoyer


Pour désinstaller AD-Remover, lancez avec l'option D puis supprimer l'icône du bureau.



Téléchargez MBAM


Branchez tous les supports amovibles avant de faire ce scan (clé usb/disque dur externe etc)

Avant de lancer Mbam

Vous devez d'abord désactiver vos protections mais vous ne savez pas comment faire


* Double cliquez sur l'icône Download_mbam-setup.exe pour lancer le processus d'installation.

Enregistrez le sur le bureau .

Fermer toutes les fenêtres et programmes

Suivez les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet)

N'apportez aucune modification aux réglages par défaut et, en fin d'installation,

Vérifiez que les options Update et Launch soient cochées

MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse.

cliquer sur OK pour fermer la boîte de dialogue..

* Dans l'onglet "mise à jour", cliquez sur le bouton Recherche de mise à jour:


Si le pare-feu demande l'autorisation à MBAM de se connecter, acceptez.

* Une fois la mise à jour terminée, allez dans l'onglet Recherche.

* Sélectionnez "Exécuter un examen complet"

* Cliquez sur "Rechercher"

* .L' analyse prendra un certain temps, soyez patient !

* A la fin , un message affichera :

L'examen s'est terminé normalement.


*Si MBAM n'a rien trouvé, il le dira aussi.

Cliquez sur "Ok" pour poursuivre.

*Fermez les navigateurs.

Cliquez sur Afficher les résultats .


*Sélectionnez tout et cliquez sur Supprimer la sélection ,

MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

puis ouvrir le Bloc-notes et y copier le rapport d'analyse qui peut être retrouvé sous l'onglet Rapports/logs.

* Copiez-collez ce rapport dans la prochaine réponse.

Posté(e) (modifié)

Bonsoir !


Voici le premier rapport du scan :





Mis à jour par C_XX le 23/06/10 à 19:20


Site web: Ad_Remover


C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 00:55:36 le 17/07/2010, Mode normal


Microsoft® Windows Vista Édition Familiale Premium Service Pack 2 (X86)

Gautier@PC-DE-GAUTIER (Hewlett-Packard Compaq Presario C700 Notebook PC)


============== RECHERCHE ==============


Service: "Application Updater" Présent


0,Dossier trouvé: C:\Program Files\Application Updater

0,Dossier trouvé: C:\ProgramData\Viewpoint

0,Dossier trouvé: C:\Program Files\Viewpoint

3,Fichier trouvé: C:\Windows\Installer\2a25389.msi

3,Fichier trouvé: C:\Users\Gautier\AppData\Local\atgiuh.bat


1,Clé trouvée: HKLM\Software\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}

1,Clé trouvée: HKLM\Software\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}

0,Clé trouvée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl

0,Clé trouvée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl.1

0,Clé trouvée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary

0,Clé trouvée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1

0,Clé trouvée: HKLM\Software\Application Updater

0,Clé trouvée: HKLM\Software\Dealio

0,Clé trouvée: HKLM\Software\MetaStream

0,Clé trouvée: HKLM\Software\Viewpoint

0,Clé trouvée: HKCU\Software\AppDataLow\AskBarDis

0,Clé trouvée: HKCU\Software\AppDataLow\AskHomePage

3,Clé trouvée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}

3,Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}

0,Clé trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer

0,Clé trouvée: HKLM\Software\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}

0,Clé trouvée: HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}



============== SCAN ADDITIONNEL ==============


** Mozilla Firefox Version [3.6.6 (fr)] **


-- C:\Users\Gautier\AppData\Roaming\Mozilla\FireFox\Profiles\41sgpmgd.default\Prefs.js --, C:\\Users\\Gautier\\Desktop, Yahoo, hxxp://, Yahoo

browser.startup.homepage_override.mstone, rv:

keyword.URL, hxxp://




** Internet Explorer Version [8.0.6001.18928] **


[HKCU\Software\Microsoft\Internet Explorer\Main]

Default_Search_URL: hxxp://

Do404Search: 0x01000000

Enable Browser Extensions: yes

Local Page: C:\Windows\system32\blank.htm

Search Page: hxxp://

Show_ToolBar: yes

Start Page: hxxp://


[HKLM\Software\Microsoft\Internet Explorer\Main]

AutoHide: yes

Default_Page_URL: hxxp://

Default_Search_URL: hxxp://

Delete_Temp_Files_On_Exit: yes

Local Page: C:\Windows\System32\blank.htm

Search bar: hxxp://

Search Page: hxxp://

Start Page: hxxp://


[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]

Tabs: res://ieframe.dll/tabswelcome.htm

Blank: res://mshtml.dll/blank.htm




C:\Program Files\Ad-Remover\Quarantine: 2 Fichier(s)

C:\Program Files\Ad-Remover\Backup: 2 Fichier(s)


C:\Ad-Report-SCAN[1].txt - 17/07/2010 (3770 Octet(s))


Fin à: 00:57:42, 17/07/2010


============== E.O.F ==============





Et le rapport de nettoyage:





Mis à jour par C_XX le 23/06/10 à 19:20


Site web:


C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 01:00:56 le 17/07/2010, Mode normal


Microsoft® Windows Vista Édition Familiale Premium Service Pack 2 (X86)

Gautier@PC-DE-GAUTIER (Hewlett-Packard Compaq Presario C700 Notebook PC)


============== ACTION(S) ==============


Service: "Application Updater" Stoppé et supprimé


0,Dossier supprimé: C:\Program Files\Application Updater

0,Dossier supprimé: C:\ProgramData\Viewpoint

0,Dossier supprimé: C:\Program Files\Viewpoint

3,Fichier supprimé: C:\Windows\Installer\2a25389.msi

3,Fichier supprimé: C:\Users\Gautier\AppData\Local\atgiuh.bat


(!) -- Fichiers temporaires supprimés.



1,Clé supprimée: HKLM\Software\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E}

1,Clé supprimée: HKLM\Software\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}

0,Clé supprimée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl

0,Clé supprimée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl.1

0,Clé supprimée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary

0,Clé supprimée: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1

0,Clé supprimée: HKLM\Software\Application Updater

0,Clé supprimée: HKLM\Software\Dealio

0,Clé supprimée: HKLM\Software\MetaStream

0,Clé supprimée: HKLM\Software\Viewpoint

0,Clé supprimée: HKCU\Software\AppDataLow\AskBarDis

0,Clé supprimée: HKCU\Software\AppDataLow\AskHomePage

3,Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}

3,Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}

0,Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer

0,Clé supprimée: HKLM\Software\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}

0,Clé supprimée: HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}



============== SCAN ADDITIONNEL ==============


** Mozilla Firefox Version [3.6.6 (fr)] **


-- C:\Users\Gautier\AppData\Roaming\Mozilla\FireFox\Profiles\41sgpmgd.default\Prefs.js --, C:\\Users\\Gautier\\Desktop, Yahoo, hxxp://, Yahoo

browser.startup.homepage_override.mstone, rv:

keyword.URL, hxxp://




** Internet Explorer Version [8.0.6001.18928] **


[HKCU\Software\Microsoft\Internet Explorer\Main]

Default_Page_URL: hxxp://

Default_Search_URL: hxxp://

Do404Search: 0x01000000

Enable Browser Extensions: yes

Local Page: C:\Windows\system32\blank.htm

Search bar: hxxp://

Show_ToolBar: yes

Start Page: hxxp://


[HKLM\Software\Microsoft\Internet Explorer\Main]

AutoHide: yes

Default_Page_URL: hxxp://

Default_Search_URL: hxxp://

Delete_Temp_Files_On_Exit: yes

Local Page: C:\Windows\System32\blank.htm

Search bar: hxxp://

Search Page: hxxp://

Start Page: hxxp://


[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]

Tabs: res://ieframe.dll/tabswelcome.htm

Blank: res://mshtml.dll/blank.htm




C:\Program Files\Ad-Remover\Quarantine: 36 Fichier(s)

C:\Program Files\Ad-Remover\Backup: 17 Fichier(s)


C:\Ad-Report-CLEAN[1].txt - 17/07/2010 (3971 Octet(s))

C:\Ad-Report-SCAN[1].txt - 17/07/2010 (3899 Octet(s))


Fin à: 01:03:10, 17/07/2010


============== E.O.F ==============

Modifié par Gautier6

Par contre j'ai un souci pour désactiver la protection de Mbam (je l'avais déjà sur mon PC) parce que l'icône ne se trouve pas près de l'horloge et je ne peux donc pas suivre la démarche indiquée dans ton tuto...


Vous n'avez pas à désactiver la protection résidente de Mbam et cela pour 2 raisons:

La première est que cela vaut seulement pour la version payante de Mbam et la seconde raison , meilleure, est que c'est Mbam que l'on vous demande de lancer et non un autre outil qui pourrait créer un conflit.


Lancez donc Mbam après mise à jour.


Vous n'avez pas à désactiver la protection résidente de Mbam et cela pour 2 raisons:

La première est que cela vaut seulement pour la version payante de Mbam et la seconde raison , meilleure, est que c'est Mbam que l'on vous demande de lancer et non un autre outil qui pourrait créer un conflit.


Lancez donc Mbam après mise à jour.



Ah d'accord, mais comme c'était écrit de désactiver la protection...

Enfin je lance Mbam et je poste le rapport ;)


Avez-vous essayé avant toute chose ceci:


user_pref("dom.max_chrome_script_run_time", 60); //default=20

user_pref("dom.max_script_run_time", 60); //default=10



Ouvrir about:config

Chercher dom.max_chrome_script_run_time, remplacer valeur 20 par valeur 60

Chercher dom.max_script_run_time, remplacer valeur 10 par 60



Si ça se trouve ce n'est que Firefox qui pédale sur un script ...

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
  • Créer...