Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e) (modifié)

Bonsoir tout le monde.

 

Me voici de retour avec plein de petites merdouilles qui pourissent la vie.

Donc voilà succintement ce qui arrive à mon antiquité informatique.

 

Les soucis sont apparus il y a environ une bonne quinzaine de jours suite à une mise à jour de WLM, surtout MSN plus et crazyloader (une vraie daube soit dit en passant).

Depuis ce temps voici les symptômes du malade :

Extinction intempestive du PC, blocage des fenêtres internet, mise à jour automatique d'Antivir impossible (obligé de passer en manuel lorsque j'y pense), écran noir d'un seul coup...

 

Avant de venir vous solliciter j'ai fait comme d'habitude et ai essayé de nettoyer mon PC avec Malware Bytes mais aucun effet, Adaware aucun effet, Spybot idem et Antivir dans les choux. Pourtant chacun de ces logiciels ont trouvé des choses, les ont soit-disant supprimées et au final elles reviennent à chaque fois.

 

Voilà ce qui a été trouvé :

Trojan-phisher-sabanks.gen

bulletproof software spyware remover

trojan.Win32.generic.BT

Win32.Backdoor.Ircbot/FU

Win32.P2PWorm.BActeraloh

Win32.P2Pworm.Bacterol/C

SPR/Fraud.BPSRem.76

SPR/Tool.Messengerplus.B

SPR/Tool.Handoff.A

SPR/Tool.Reboot.F

TR/Crypt.XPACK.Gen3

APPL/Agent.8192.ZY

HTML/Crypted.Gen

HTML/Frame.11100

TR/Trash.Gen

 

Donc en ce moment je fais un scan avec Adaware pour vous donner le rapport.

Ensuite Malwarebytes pour rapport également.

 

Je vous ai fait un scan avec Hijackthis le voici pour commencer.

 

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 19:08:58, on 19/11/2010

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Avira\AntiVir Desktop\sched.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\agrsmsvc.exe

C:\Program Files\Avira\AntiVir Desktop\avguard.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Avira\AntiVir Desktop\avshadow.exe

C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\VTTimer.exe

C:\WINDOWS\AGRSMMSG.exe

C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\WINDOWS\VM_STI.EXE

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\Program Files\DEFENSE PC\hijackthis\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: Aide à la navigation SFR - {0F6E720A-1A6B-40E1-A294-1D4D19F156C8} - C:\Program Files\SFR\Kit\SFRNavErrorHelper.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Interest recogniser for Crazyloader (powered by Spointer) - {C5F65718-341D-4e7d-9842-FCB9CC89527E} - (no file)

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O4 - HKLM\..\Run: [RestoreIT!] "C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP\VBPTASK.EXE" VBStart

O4 - HKLM\..\Run: [fenaffiche] "C:\Program Files\FenAffiche\Fenpowernet.exe"

O4 - HKLM\..\Run: [VTTimer] "VTTimer.exe"

O4 - HKLM\..\Run: [AGRSMMSG] "AGRSMMSG.exe"

O4 - HKLM\..\Run: [AudioDeck] "C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe" 1

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [bigDogPath] "C:\WINDOWS\VM_STI.EXE" VIMICRO USB PC Camera

O4 - HKLM\..\Run: [QuickTime Task] "C:\program files\quick time\qttask.exe" -atboottime

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html

O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll

O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)

O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} - http://activex.camfrogweb.com/advanced/2.0.2.20/cfweb_activex.camfrogweb.com-advanced-2.0.2.20_instmodule.exe

O16 - DPF: {27FA5271-12D2-43E3-9424-365A43236EE7} (PIXACO upload plugin) - http://fr.pixaco.com/static/download/iedropupload.cab

O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://ma-config.com/activex/hardwaredetection_3_1_1_0.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab

O16 - DPF: {DFB5BCF1-06AE-4ABB-BFA8-1E228F41C50A} - http://bobtv.fr/download/cfweb_www.bobtv.fr-download_instmodule.exe

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{D757C7C0-5818-4037-9050-25956FACD407}: NameServer = 194.117.200.10,194.117.200.15

O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: a-squared Free Service (a2free) - Unknown owner - c:\program files\a square\a-squared free\a2service.exe (file missing)

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe

O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe

O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe

O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: Ma-Config Service (maconfservice) - Unknown owner - C:\Program Files\ma-config.com\maconfservice.exe (file missing)

O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe

O23 - Service: Sony Ericsson OMSI download service (OMSI download service) - Unknown owner - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe

O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe

O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe (file missing)

O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe

O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe

O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe

O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe

O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe

O23 - Service: Webroot Client Service (WRConsumerService) - Unknown owner - C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe (file missing)

 

--

End of file - 9784 bytes

 

Merci d'avance pour l'aide que vous pourrez m'apporter.

Modifié par yoda93

Posté(e)

Aucun résultat positif après analyse Malwarebytes et Adaware.

Analyse en cours avec Antivir.

 

Personne pour me dire si le rapport posté hier décèle quelque chose qui pourrait éventuellement induire les dysfonctionnements rencontrés ?

Posté(e) (modifié)

Bonjour,

 

Le rapport établi par Hijackthis est loin d'être suffisant maintenant face aux nouvelles infections.

Pour avoir un premier aperçu des problèmes rencontrés sur ton ordinateur,

 

downlo10.gif Télécharge ZHPDiag de Nicolas Coolman sur ton bureau.

 

  • arrow210.gif Clique sur zhpdia10.jpg pour lancer l'installation.
    arrow210.gif Clique sur zhpdia11.jpg pour lancer le programme.

 

Sous Vista et Sept , il faut cliquer droit dessus et dans le menu contextuel sur Exécuter en tant qu'administrateur..

arrow210.gifClique sur le tournevis et coche tout.

 

arrow210.gif Clique sur zhpdia14.jpg pour lancer le scan. Il peut prendre un certain temps, attends bien la fin.

arrow210.gif Clique sur zhpdia15.jpg quand le scan sera terminé pour enregistrer le rapport sur le bureau

arrow210.gifPoste ce dernier dans ta réponse en l'hébergeant sur pub10.gif

arrow210.gif Referme l'outil.

warn10.png Le rapport sera enregistré sur le bureau (ZHPDIag.txt) zhpdia16.jpg

 

Selon l'analyse du rapport, nous établirons une procédure pour la désinfection ou bien nous compléterons les recherches avec d'autres outils.

 

@+

Modifié par nardino
Posté(e) (modifié)

Bonjour Nardino.

Merci pour ton aide.

 

Voici le diag demandé mais pas via le lien proposé car cela ne fonctionne pas...

 

Rapport de ZHPDiag v1.27.131 par Nicolas Coolman, Update du 18/11/2010

Run by Sylvain at 20/11/2010 13:44:06

Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html

Contact : nicolascoolman@yahoo.fr

 

---\\ Web Browser

MSIE: Internet Explorer v8.0.6001.18702 (Defaut)

MFIE: Mozilla Firefox v3.6.12 (fr)

GCIE: Google Chrome v

 

---\\ System Information

Windows XP Home Edition Service Pack 3 (Build 2600)

Processor: x86 Family 6 Model 8 Stepping 1, AuthenticAMD

Operating System: 32 Bits

Boot mode: Normal (Normal boot)

Total RAM: 703 MB (26% free)

System drive C: has 44 GB (64%) free of 67 GB

 

---\\ Logged in mode

Computer Name: SY4PPNP19

User Name: Sylvain

All Users Names: SUPPORT_388945a0, HelpAssistant, Sylvain, FLORIAN, ASPNET, Administrateur, abSCJZBAcIXKdZVpY,

Unselected Option: None

Logged in as Administrator

 

---\\ DOS/Devices

C:\ Hard drive, Flash drive, Thumb drive (Free 44 Go of 67 Go)

D:\ CD-ROM drive (Not Inserted)

E:\ Hard drive, Flash drive, Thumb drive (Free 20 Go of 153 Go)

 

 

---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: Modified

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK

 

 

---\\ Recherche particulière de fichiers génériques

[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.14/04/2008 03:34:03.) -- C:\Windows\Explorer.exe [1037824]

[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.14/04/2008 03:34:28.) -- C:\Windows\System32\Winlogon.exe [512000]

[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 19:40:30.) -- C:\Windows\System32\drivers\atapi.sys [96512]

 

 

---\\ Processus lancés

[MD5.7207DB389CEAD101251883511A676F91] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [135336]

[MD5.2B18BA73927F65CFB1137CC8DC74C557] - (.Agere Systems - Agere Soft Modem Call Progress Service.) -- C:\WINDOWS\system32\agrsmsvc.exe [12800]

[MD5.8942C0BE637B7EBFBA304D48665B516E] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [267944]

[MD5.9AE07549A0D691A103FAF8946554BDB7] - (.Sun Microsystems, Inc. - Java Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376]

[MD5.CDE000884FD7BAF0C1FDFE029B0891DE] - (.Avira GmbH - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76968]

[MD5.DA345DE3B450E9E1691E7B9956D8FFC3] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112]

[MD5.09F1A97848BFAB3F36EB216681465B85] - (.S3 Graphics, Inc. - Pas de description.) -- C:\WINDOWS\system32\VTTimer.exe [53248]

[MD5.230EA041666125B6812FE3FF964B2DF3] - (.Agere Systems - SoftModem Messaging Applet.) -- C:\WINDOWS\AGRSMMSG.exe [88209]

[MD5.B75C86B14B4708A64093640A0D1629BB] - (.VIA Technologies, Inc. - Audio Deck.) -- C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe [528384]

[MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768]

[MD5.C60BF727B3C6A3F4B0F8E0F99AFF4AA7] - (.BIGDOG - BIGDOG.) -- C:\WINDOWS\VM_STI.EXE [40960]

[MD5.C2444B96B191E83451C3E888D0A2DB71] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [202256]

[MD5.B60DDDD2D63CE41CB8C487FCFBB6419E] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [638816]

[MD5.8D3C42CB145FD2A6F57A1B33524C72AF] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\DEFENSE PC\c cleaner\CCleaner\CCleaner.exe [1786168]

[MD5.B5D29F1AAFC767693582C95C5E8520D7] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\DEFENSE PC\ZHPDiag\ZHPDiag.exe [620032]

 

 

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2)

P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.0.) -- C:\Program Files\Mozilla Firefox\Plugins\np32dsw.dll

P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll

P2 - FPN:Firefox Plugin Navigator . (.DivX, Inc - npdivxplayerplugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npDivxPlayerPlugin.dll

P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll

P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.0".) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll

P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll

P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll

P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 6.0.12.709.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll

P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.0.) -- C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

P2 - FPN: [HKLM] [@divx.com/DivX Browser Plugin,version=1.0.0] - (.DivX,Inc. - DivX Web Player version 2.0.3.4.) -- C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

P2 - FPN: [HKLM] [@divx.com/DivX Player Plugin,version=1.0.0] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll (.not file.)

P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_22 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.50917.0.) -- c:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll

P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=14.0.8081.0709] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

P2 - FPN: [HKLM] [@pandasecurity.com/activescan] - (.Panda Security, S.L. - Panda ActiveScan 2.0 Plugin for Firefox.) -- C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll

P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.709] - (.RealNetworks, Inc. - RealPlayer LiveConnect-Enabled Plug-In.) -- c:\program files\real\realplayer\Netscape6\nppl3260.dll

P2 - FPN: [HKLM] [@real.com/nprjplug;version=1.0.3.709] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- c:\program files\real\realplayer\Netscape6\nprjplug.dll

P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.709] - (.RealNetworks, Inc. - 6.0.12.709.) -- c:\program files\real\realplayer\Netscape6\nprpjplug.dll

P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=8] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Google\Update\1.2.183.29\npGoogleOneClick8.dll (.not file.)

P2 - FPN: [HKLM] [@unity3d.com/UnityPlayer] - (.Unity Technologies ApS - Unity Player 2.6.1f3.) -- C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll

P2 - FPN: [HKLM] [yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1] - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Yahoo!\Common\npyaxmpb.dll (.not file.)

P2 - FPN: [HKCU] [@facebook.com/FBPlugin,version=1.0.1] - (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\Sylvain\Application Data\Facebook\npfbplugin_1_0_1.dll (.not file.)

M0 - MFSP: prefs.js [sylvain - q7kw8tsn.default] http://start.mozilla.org/firefox?client=firefox-a&rls=org.mozilla:fr-FR:official

M0 - MFSP: prefs.js [sylvain - yzkz7tna.default] http://www.google.fr/'>http://www.google.fr/'>http://www.google.fr/

M2 - MFEP: prefs.js [sylvain - q7kw8tsn.default\support@predictad.com] [] AutocompletePro - Your handy search suggestions tool (.Yossi Marouani; http://www.predictad.com.'>http://www.predictad.com.)

M2 - MFEP: prefs.js [sylvain - q7kw8tsn.default\{972ce4c6-7e08-4474-a285-3208198ce6fd}] [] Firefox (default) v2.0 (.Gerich and Horlander.)

M2 - MFEP: prefs.js [sylvain - yzkz7tna.default\firefox@tvunetworks.com] [] TVU Web Player v2,4,9,1 (..)

M2 - MFEP: prefs.js [sylvain - yzkz7tna.default\piclens@cooliris.com] [] Cooliris v1.12.0.36949 (.Cooliris Inc..)

M2 - MFEP: prefs.js [sylvain - yzkz7tna.default\support@predictad.com] [] AutocompletePro - Your handy search suggestions tool v1.12.0.36949 (.Yossi Marouani; http://www.predictad.com.)

M2 - MFEP: prefs.js [sylvain - yzkz7tna.default\{20a82645-c095-46ed-80e3-08825760534b}] [MicrosoftCG] Microsoft .NET Framework Assistant v1.2.1 (.Microsoft.)

M2 - MFEP: prefs.js [sylvain - yzkz7tna.default\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}] [] ImTranslator v3.3.5 (.Smart Link Corporation.)

M2 - MFEP: prefs.js [sylvain - yzkz7tna.default\{c2db4fe6-8409-45ce-8010-189a7b5cce86}] [] NCH Toolbar v2.7.2.0 (.Conduit Ltd..)

 

 

---\\ Internet Explorer, Démarrage,Recherche,URSearchHook (R0,R1,R3)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch'>http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18968 (longhorn_ie8_gdr.100824-1830)) -- C:\WINDOWS\system32\ieframe.dll

R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} Clé orpheline

 

 

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,

F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

 

 

---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: Aide à la navigation SFR - {0F6E720A-1A6B-40E1-A294-1D4D19F156C8} . (.SFR - Aide à la navigation SFR.) -- C:\Program Files\SFR\Kit\SFRNavErrorHelper.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Interest recogniser for Crazyloader (powered by Spointer) - {C5F65718-341D-4e7d-9842-FCB9CC89527E} . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

 

 

---\\ Applications démarrées par registre & par dossier (O4)

O4 - HKLM\..\Run: [RestoreIT!] . (.FarStone Tech. Inc. - VBPTask MFC Application.) -- C:\Program Files\Phoenix Technologies Ltd\RecoverPro_XP\VBPTASK.exe

O4 - HKLM\..\Run: [fenaffiche] . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\FenAffiche\Fenpowernet.exe

O4 - HKLM\..\Run: [VTTimer] . (.S3 Graphics, Inc. - Pas de description.) -- C:\Windows\System32\VTTimer.exe

O4 - HKLM\..\Run: [AGRSMMSG] . (.Agere Systems - SoftModem Messaging Applet.) -- C:\Windows\AGRSMMSG.exe

O4 - HKLM\..\Run: [AudioDeck] . (.VIA Technologies, Inc. - Audio Deck.) -- C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe

O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

O4 - HKLM\..\Run: [bigDogPath] . (.BIGDOG - BIGDOG.) -- C:\WINDOWS\VM_STI.exe

O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\program files\quick time\qttask.exe

 

 

---\\ Autres liens utilisateurs (O4)

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 9.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-A94000000001}\SC_Reader.ico

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Apple Software Update.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Créez votre site Web.lnk . (.Pas de propriétaire.) -- C:\Program Files\Créez votre site Web\Créez votre site Web.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\LiveUpdate.lnk . (.InstallShield Software Corp..) -- C:\WINDOWS\Installer\{BAFA84F8-5A33-4ACD-AD10-58356B27A0F1}\_081473F266264A2383533074B6D4A531.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Synchro appareil mobiles ActiveSync.lnk . (.InstallShield Software Corp..) -- C:\WINDOWS\Installer\{B208806F-A231-4FA0-AB3F-5C1B8979223E}\WCESMgr_ShortCut.D95548A9_C14F_4B71_A49C_4A45E1721217.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Vinyl Deck.lnk . (.VIA Technologies, Inc..) -- C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Visionneuse Journal Windows.lnk . (.InstallShield Software Corp..) -- C:\WINDOWS\Installer\{43DCF766-6838-4F9A-8C91-D92DA586DFA7}\_C68C351F090F4EF39AFB6B7B54014C9E.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Media Connect.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Connect 2\WMCCFG.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files\Messenger\msmsgs.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe

O4 - Global Startup: C:\Documents And Settings\Sylvain\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe

O4 - Global Startup: C:\Documents And Settings\Sylvain\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Documents And Settings\Sylvain\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe

O4 - Global Startup: C:\Documents And Settings\Sylvain\Menu Démarrer\Programmes\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe

 

 

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: Google Sidewiki... - (.not file.) - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll

 

 

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)

O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} . (.Microsoft Corporation - ActiveSync Favorite Synchronization.) -- C:\PROGRA~1\MICROS~3\INetRepl.dll

O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} . (.not file.) - (.not file.)

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} . (.not file.) - (.not file.)

O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~1\MICROS~2\OFFICE11\REFBARH.ICO

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (.not file.) - (.not file.)

O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Service client pour le fournisseur NetWare et DLL d'authentification.) -- C:\WINDOWS\system32\nwprovau.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll

 

 

---\\ Objets ActiveX (Downloaded Program Files)(O16)

O16 - DPF: {27FA5271-12D2-43E3-9424-365A43236EE7} (PIXACO upload plugin) - http://fr.pixaco.com/static/download/iedropupload.cab

O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB

O16 - DPF: {4B48D5DF-9021-45F7-A240-60304302A215} (Malicious Software Removal Tool) - http://download.microsoft.com/download/b/d/b/bdb4e4ee-63b2-45ff-9d84-33205bf43143/WebCleaner.cab

O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} () - http://ma-config.com/activex/hardwaredetection_3_1_1_0.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab

O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} () - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

 

 

---\\ Modification Domaine/Adresses DNS (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{D757C7C0-5818-4037-9050-25956FACD407}: NameServer = 194.117.200.10,194.117.200.15

O17 - HKLM\System\CS3\Services\Tcpip\..\{71BF9D82-2AA1-4FDA-B5E0-38CFCED69208}: NameServer = 194.117.200.10,194.117.200.15

O17 - HKLM\System\CS3\Services\Tcpip\..\{D757C7C0-5818-4037-9050-25956FACD407}: NameServer = 194.117.200.10,194.117.200.15

O17 - HKLM\System\CCS\Services\Tcpip\..\{71BF9D82-2AA1-4FDA-B5E0-38CFCED69208}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

 

 

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)

O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll

O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll

O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\Windows\System32\cscdll.dll

O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\System32\dimsntfy.dll

O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll

O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll

O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\Windows\System32\sclgntfy.dll

O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\WlNotify.dll

O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll

O20 - Winlogon Notify: WgaLogon . (.Microsoft Corporation - Notifications Windows Genuine Advantage.) -- C:\Windows\System32\WgaLogon.dll

O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll

 

 

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll

O21 - SSODL: UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} . (.Microsoft Corporation - Moniteur et dossier UPNP Tray.) -- C:\WINDOWS\system32\upnpui.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll

 

 

---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)

O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll

 

 

---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: (AgereModemAudio) . (.Agere Systems - Agere Soft Modem Call Progress Service.) - C:\WINDOWS\system32\agrsmsvc.exe

O23 - Service: (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: (gupdate) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\Google\Update\GoogleUpdate.exe (.not file.)

O23 - Service: (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: (OMSI download service) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe

O23 - Service: (ProtexisLicensing) . (.Pas de propriétaire - Pas de description.) - C:\WINDOWS\system32\PSIService.exe (.not file.)

O23 - Service: (WRConsumerService) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe (.not file.)

 

 

---\\ Enumération Active Desktop & MHTML Editor (O24)

O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - "C:\Program Files\Microsoft Office\OFFICE11\WINWORD.exe (.not file.)

 

 

---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AppleSoftwareUpdate.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\EasyShare Registration RunOnce Task.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\mixpadShakeIcon.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-4135148708-4229327457-639787953-1006.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-4135148708-4229327457-639787953-1006.job

 

 

---\\ Composants installés (ActiveSetup Installed Components) (O40)

O40 - ASIC: Macromedia Shockwave Director 10.0 - {166B1BCA-3F9C-11CF-8075-444553540000} . (.Adobe Systems, Inc. - Shockwave ActiveX Control.) -- C:\WINDOWS\system32\Adobe\Director\SwDir.dll

O40 - ASIC: Adobe Shockwave Director 11.0.3 - {233C1507-6A77-46A4-9443-F871F945D258} . (.Adobe Systems, Inc. - Shockwave ActiveX Control.) -- C:\WINDOWS\system32\Adobe\Director\SwDir.dll

O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msnetmtg.inf

O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msmsgs.inf

O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\wmp11.inf

O40 - ASIC: Fax - {8b15971b-5355-4c82-8c07-7e181ea07608} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\fxsocm.inf

O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.1 r102.) -- C:\WINDOWS\system32\Macromed\Flash\Flash10l.ocx

 

 

---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: (avgio) . (.Avira GmbH - Avira AntiVir Support for Minifilter.) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys

O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\system32\DRIVERS\avipbb.sys

O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\system32\DRIVERS\ssmdrv.sys

O41 - Driver: (AVG Anti-Spyware Driver) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\DEFENSE PC\AVG antispyware\AVG Anti-Spyware 7.5\guard.sys

O41 - Driver: (AvgArCln) . (.Pas de propriétaire - Pas de description.) - C:\Windows\system32\DRIVERS\AvgArCln.sys

O41 - Driver: (AvgAsCln) . (.Pas de propriétaire - Pas de description.) - C:\Windows\system32\DRIVERS\AvgAsCln.sys

 

 

---\\ Logiciels installés (O42)

O42 - Logiciel: Ad-Aware - (.Lavasoft.) [HKLM] -- Ad-Aware

O42 - Logiciel: Ad-Aware - (.Lavasoft.) [HKLM] -- {DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX

O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin

O42 - Logiciel: Adobe Reader 9.4.0 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A94000000001}

O42 - Logiciel: Adobe Shockwave Player 11 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player

O42 - Logiciel: Ahead Nero Burning ROM - (.Pas de propriétaire.) [HKLM] -- Nero - Burning Rom!UninstallKey

O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033}

O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}

O42 - Logiciel: AviSynth 2.5 - (.Pas de propriétaire.) [HKLM] -- AviSynth

O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop

O42 - Logiciel: AxCrypt (Désinstaller uniquement) - (.Axon Data.) [HKLM] -- AxCrypt

O42 - Logiciel: BroadJump Client Foundation - (.Pas de propriétaire.) [HKLM] -- BroadJump Client Foundation

O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner

O42 - Logiciel: Caricature Studio Green 3.6 - (.Carnival Software.) [HKLM] -- {AC5019DA-5DC2-44E6-808A-1A68F3CCA79D}

O42 - Logiciel: Codeur Windows Media Série 9 - (.Microsoft Corporation.) [HKLM] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}

O42 - Logiciel: Codeur Windows Media Série 9 - (.Pas de propriétaire.) [HKLM] -- Windows Media Encoder 9

O42 - Logiciel: Compel Adaptec WinASPI - (.Pas de propriétaire.) [HKLM] -- Compel install Adaptec WinASPI-4.6.0(1021)_is1

O42 - Logiciel: Complément Microsoft Enregistrer en tant que PDF ou XPS pour programmes Microsoft Office 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00B2-040C-0000-0000000FF1CE}

O42 - Logiciel: Configuration DivX - (.DivX, Inc. .) [HKLM] -- DivX Setup.divx.com

O42 - Logiciel: Creative Modem Blaster V.92 DI5733-1 - (.Pas de propriétaire.) [HKLM] -- {C1C0717C-546A-11D7-9963-00A0C92C4EC3}

O42 - Logiciel: Debut Video Capture Software - (.NCH Software.) [HKLM] -- Debut

O42 - Logiciel: Destinator Console - (.Pas de propriétaire.) [HKLM] -- Destinator Console

O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM] -- {B13A7C41581B411290FBC0395694E2A9}

O42 - Logiciel: DivX Plus DirectShow Filters - (.DivX, Inc..) [HKLM] -- DivX Plus DirectShow Filters

O42 - Logiciel: Drv - (.My Company Name.) [HKLM] -- {DA71A94B-3617-4935-8BBE-1566B2174C95}

O42 - Logiciel: EZ Grabber - (.EZ Grabber.) [HKLM] -- {8543A572-5993-4101-BACC-C83884E183A4}

O42 - Logiciel: Easy Video Splitter 1.28 - (.DoEasier Tech Inc.) [HKLM] -- Easy Video Splitter_is1

O42 - Logiciel: EasyCleaner - (.Pas de propriétaire.) [HKLM] -- {F5346614-B7C4-4E94-826A-E2363155233D}

O42 - Logiciel: Extension HighMAT pour l'Assistant Graver un CD de Microsoft Windows XP - (.Microsoft Corporation.) [HKLM] -- {FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}

O42 - Logiciel: FenAffiche - (.Pas de propriétaire.) [HKLM] -- ST6UNST #1

O42 - Logiciel: FotoSketcher - Version 1.9 - (.David THOIRON.) [HKLM] -- FotoSketcher_is1

O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {B131E59D-202C-43C6-84C9-68F0C37541F1}

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

O42 - Logiciel: HP Deskjet 1280 - (.Hewlett-Packard.) [HKLM] -- {EE074561-3C0A-4B6A-B4A5-09CD69E1DDF0}

O42 - Logiciel: HP Product Detection - (.Nom de votre société.) [HKLM] -- {CAE7D1D9-3794-4169-B4DD-964ADBC534EE}

O42 - Logiciel: Helix YUV Codecs (remove only) - (.Pas de propriétaire.) [HKLM] -- HelixYUVCodecs

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.0 (KB932471) - (.Microsoft Corporation.) [HKLM] -- KB932471.T301_380ToU433_380

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484

O42 - Logiciel: Hotfix for Windows XP (KB915800-v4) - (.Microsoft Corporation.) [HKLM] -- KB915800-v4

O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5

O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5

O42 - Logiciel: IZArc 3.81 - (.Ivan Zahariev.) [HKLM] -- {97C82B44-D408-4F14-9252-47FC1636D23E}_is1

O42 - Logiciel: Ink Components - (.GRAHL software design.) [HKLM] -- Ink Components

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {46ABBC54-1872-4AA3-95E2-F2C063A63F31}

O42 - Logiciel: Java 2 Runtime Environment, SE v1.4.2 - (.Sun Microsystems, Inc..) [HKLM] -- {7148F0A8-6813-11D6-A77B-00B0D0142000}

O42 - Logiciel: Java 6 Update 14 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216014F0}

O42 - Logiciel: Java 6 Update 2 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160020}

O42 - Logiciel: Java 6 Update 22 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216012FF}

O42 - Logiciel: Java 6 Update 3 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160030}

O42 - Logiciel: Java 6 Update 5 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160050}

O42 - Logiciel: Java 6 Update 6 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160060}

O42 - Logiciel: Java 6 Update 7 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0160070}

O42 - Logiciel: K-Lite Codec Pack 2.77 Full - (.Pas de propriétaire.) [HKLM] -- KLiteCodecPack_is1

O42 - Logiciel: KB408682 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A81300000003}_814

O42 - Logiciel: Lecteur Windows Media 11 - (.Pas de propriétaire.) [HKLM] -- Windows Media Player

O42 - Logiciel: LiveUpdate - (.LiveUpdate.) [HKLM] -- InstallShield_{BAFA84F8-5A33-4ACD-AD10-58356B27A0F1}

O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}

O42 - Logiciel: MSXML 4.0 SP2 (KB927978) - (.Microsoft Corporation.) [HKLM] -- {37477865-A3F1-4772-AD43-AAFC6BCFF99F}

O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}

O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}

O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}

O42 - Logiciel: MSXML 4.0 SP2 and SOAP Toolkit 3.0 - (.Webroot Software, Inc..) [HKLM] -- {32343DB6-9A52-40C9-87E4-5E7C79791C87}

O42 - Logiciel: MSXML 6.0 Parser (KB933579) - (.Microsoft Corporation.) [HKLM] -- {0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}

O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: Messenger Plus! Live - (.Yuna Software.) [HKLM] -- Messenger Plus! Live

O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Microsoft.) [HKLM] -- {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}

O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Pas de propriétaire.) [HKLM] -- Microsoft .NET Framework 1.1 (1033)

O42 - Logiciel: Microsoft .NET Framework 1.1 French Language Pack - (.Microsoft.) [HKLM] -- {9A394342-4A68-4EBA-85A6-55B559F4E700}

O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB2416447) - (.Pas de propriétaire.) [HKLM] -- M2416447

O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB979906) - (.Pas de propriétaire.) [HKLM] -- M979906

O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}

O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {72AD53CC-CCC0-3757-8480-9EE176866A7C}

O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}

O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {0BD83598-C2EF-3343-847B-7D2E84599128}

O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}

O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1

O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}

O42 - Logiciel: Microsoft ActiveSync 4.0 - (.Microsoft Corporation.) [HKLM] -- {B208806F-A231-4FA0-AB3F-5C1B8979223E}

O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}

O42 - Logiciel: Microsoft Internationalized Domain Names Mitigation APIs - (.Microsoft Corporation.) [HKLM] -- IDNMitigationAPIs

O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 - (.Microsoft Corporation.) [HKLM] -- Wdf01005

O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping

O42 - Logiciel: Microsoft Office Professional Edition 2003 - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0150048383C9}

O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}

O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}

O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

O42 - Logiciel: MixPad Audio Mixer - (.NCH Software.) [HKLM] -- MixPad

O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE}

O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra

O42 - Logiciel: Mon Encyclopédie d'Histoire - (.Pas de propriétaire.) [HKLM] -- 6273b5a2c962d830ec3ac19663871c2c-709367618

O42 - Logiciel: Mozilla Firefox (3.6.12) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.12)

O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}

O42 - Logiciel: PICVideo Codecs - (.Pas de propriétaire.) [HKLM] -- PICVideo Codecs

O42 - Logiciel: PSP Video 9 1.74 - (.Videora Holdings.) [HKLM] -- PSP Video 9

O42 - Logiciel: Panda ActiveScan 2.0 - (.Panda Security.) [HKLM] -- ActiveScan 2.0

O42 - Logiciel: PhotoMail Maker - (.Nom de votre société.) [HKLM] -- {15382D89-6EF6-4D21-9484-B500F2B10E46}

O42 - Logiciel: Pic2Pic 2.0 - (.WaveL Software.) [HKLM] -- Pic2Pic_is1

O42 - Logiciel: QMC - (.Pas de propriétaire.) [HKCU] -- QUICKMEDIACONVERTER

O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {C78EAC6F-7A73-452E-8134-DBB2165C5A68}

O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 12.0

O42 - Logiciel: RealUpgrade 1.0 - (.RealNetworks, Inc..) [HKLM] -- {F4F4F84E-804F-4E9A-84D7-C34283F0088F}

O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}

O42 - Logiciel: Recover Pro - (.Pas de propriétaire.) [HKLM] -- RestoreIT!

O42 - Logiciel: S3 S3Gamma2 - (.Pas de propriétaire.) [HKLM] -- VTGamma2

O42 - Logiciel: S3 S3Info2 - (.Pas de propriétaire.) [HKLM] -- VTInfo2

O42 - Logiciel: S3 S3Overlay - (.Pas de propriétaire.) [HKLM] -- VTOverlay

O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM] -- SFR_Kit

O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473

O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}

O42 - Logiciel: Skype 3.5 - (.Skype Technologies S.A..) [HKLM] -- {5C82DAE5-6EB0-4374-9254-BE3319BA4E82}

O42 - Logiciel: Sony Ericsson PC Suite 6.009.00 - (.Sony Ericsson.) [HKLM] -- {2FFE93F0-BB72-4E52-8761-354D1AAA9387}

O42 - Logiciel: TV sur PC - (.Neuf.) [HKLM] -- Neuf_TV_PC

O42 - Logiciel: USB Disk Win98 Driver - (.Pas de propriétaire.) [HKLM] -- {4E79A62F-7A2D-4058-BCE0-94E6B9E2F162}

O42 - Logiciel: USB Storage Driver - (.Pas de propriétaire.) [HKLM] -- GENEUIDE

O42 - Logiciel: Ulead VideoStudio SE DVD - (.Ulead Systems.) [HKLM] -- {8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}

O42 - Logiciel: UniChrome IGP Driver and Utilities - (.Pas de propriétaire.) [HKLM] -- S3

O42 - Logiciel: Uninstall Dual Mode Camera - (.Pas de propriétaire.) [HKLM] -- Dual Mode Camera_is1

O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKLM] -- UnityWebPlayer

O42 - Logiciel: Update Service - (.Sony Ericsson Mobile Communications AB.) [HKLM] -- Update Service

O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707

O42 - Logiciel: VC80CRTRedist - 8.0.50727.4053 - (.DivX, Inc.) [HKLM] -- {5EE7D259-D137-4438-9A5F-42F432EC0421}

O42 - Logiciel: VIA Audio Driver Setup Program - (.Pas de propriétaire.) [HKLM] -- VIA Audio Driver Setup Program

O42 - Logiciel: VIA Gestionnaire de périphériques de plate-forme - (.VIA Technologies, Inc..) [HKLM] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}

O42 - Logiciel: VIA Rhine-Family Fast-Ethernet Adapter - (.Pas de propriétaire.) [HKLM] -- VN_VUIns_Rhine_VIA

O42 - Logiciel: VIA/S3G Display Driver - (.Pas de propriétaire.) [HKLM] -- VIA/S3G UniChrome Family Win2K/XP Display

O42 - Logiciel: VIMICRO USB PC Camera - (.Pas de propriétaire.) [HKLM] -- {8AD824A5-1CCC-4BB7-82C9-E6FB25CC0479}

O42 - Logiciel: VLC media player 1.0.1 - (.VideoLAN Team.) [HKLM] -- VLC media player

O42 - Logiciel: VP6 VFW Codec - (.Pas de propriétaire.) [HKLM] -- {A23866A0-738B-4091-9924-0B0DE3988A15}

O42 - Logiciel: Visionneuse Journal Windows Microsoft - (.Microsoft.) [HKLM] -- {43DCF766-6838-4F9A-8C91-D92DA586DFA7}

O42 - Logiciel: Visual C++ 2008 x86 Runtime - (v9.0.30729) - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27}

O42 - Logiciel: Visual C++ 2008 x86 Runtime - v9.0.30729.01 - (.Microsoft Corporation.) [HKLM] -- {F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01

O42 - Logiciel: WinPcap 4.0.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst

O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver

O42 - Logiciel: Windows Defender Signatures - (.Microsoft Corporation.) [HKLM] -- {A5CC2A09-E9D3-49EC-923D-03874BBD4C2C}

O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify

O42 - Logiciel: Windows Genuine Advantage Validation Tool (KB892130) - (.Microsoft Corporation.) [HKLM] -- KB892130

O42 - Logiciel: Windows Genuine Advantage v1.3.0254.0 - (.Microsoft.) [HKLM] -- {63569CE9-FA00-469C-AF5C-E5D4D93ACF91}

O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8

O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}

O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3B4E636E-9D65-4D67-BA61-189800823F52}

O42 - Logiciel: Windows Live Contrôle parental - (.Microsoft Corporation.) [HKLM] -- {D5D81435-B8DE-4CAF-867F-7998F2B92CFC}

O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {770F1BEC-2871-4E70-B837-FB8525FFA3B1}

O42 - Logiciel: Windows Media Connect - (.Microsoft Corporation.) [HKLM] -- WMCSetup

O42 - Logiciel: Windows Media Connect - (.Microsoft Corporation.) [HKLM] -- {F6869CD2-3DB4-476D-A4C7-B3AE7C3ACF7B}

O42 - Logiciel: Windows Media Connect - (.Pas de propriétaire.) [HKLM] -- Windows Media Connect

O42 - Logiciel: Windows Media Format 11 runtime - (.Pas de propriétaire.) [HKLM] -- Windows Media Format Runtime

O42 - Logiciel: Windows Presentation Foundation - (.Microsoft Corporation.) [HKLM] -- {BAF78226-3200-4DB4-BE33-4D922A799840}

O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP

O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC

O42 - Logiciel: ffdshow - (.Milan Cutka.) [HKLM] -- ffdshow

O42 - Logiciel: mp3DirectCut 2.03 - (.Pas de propriétaire.) [HKLM] -- mp3DirectCut

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\AC3filter]

[HKCU\Software\AKVIS]

[HKCU\Software\ALWIL Software]

[HKCU\Software\ASProtect]

[HKCU\Software\AVS4YOU]

[HKCU\Software\AWGate]

[HKCU\Software\AcerCCD]

[HKCU\Software\Adobe]

[HKCU\Software\Ahead]

[HKCU\Software\Amic Tools]

[HKCU\Software\Andreas Haak]

[HKCU\Software\AppConf]

[HKCU\Software\AppDataLow\FSOLS.Fscax.3]

[HKCU\Software\AppDataLow\Software\Adobe]

[HKCU\Software\AppDataLow\Software\Macromedia]

[HKCU\Software\AppDataLow\Software\Microsoft]

[HKCU\Software\AppDataLow\Software\NCH]

[HKCU\Software\AppDataLow\Software]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\ArcSoft]

[HKCU\Software\Astonsoft]

[HKCU\Software\Aurigma]

[HKCU\Software\AutocompleteProBHO]

[HKCU\Software\AutocompletePro]

[HKCU\Software\Avance]

[HKCU\Software\Avira]

[HKCU\Software\Axon Data]

[HKCU\Software\BPS Console Toolbar]

[HKCU\Software\BTC]

[HKCU\Software\BitComet]

[HKCU\Software\BitMartInc]

[HKCU\Software\BooZet]

[HKCU\Software\Borland]

[HKCU\Software\CDDB]

[HKCU\Software\CDH Productions]

[HKCU\Software\CLSID]

[HKCU\Software\CamfrogWEBAdvanced]

[HKCU\Software\CamfrogWEB]

[HKCU\Software\Camfrog]

[HKCU\Software\Class]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\Club-Internet v5]

[HKCU\Software\CocoonSoftware]

[HKCU\Software\CoreAAC]

[HKCU\Software\CoreVorbis]

[HKCU\Software\Corel]

[HKCU\Software\Cyberlink]

[HKCU\Software\Cycore]

[HKCU\Software\Cygnus Solutions]

[HKCU\Software\DAUSSY Dominique]

[HKCU\Software\DVDFab Platinum]

[HKCU\Software\Digital River]

[HKCU\Software\DivXNetworks]

[HKCU\Software\DivX]

[HKCU\Software\DomeConnection]

[HKCU\Software\Earthsim]

[HKCU\Software\Easy Video Splitter]

[HKCU\Software\Elecard]

[HKCU\Software\Emsi Software GmbH]

[HKCU\Software\F-Secure]

[HKCU\Software\Freeware]

[HKCU\Software\Fridgesoft]

[HKCU\Software\GNU]

[HKCU\Software\GSpot Appliance Corp]

[HKCU\Software\Gabest]

[HKCU\Software\Google]

[HKCU\Software\Goto]

[HKCU\Software\Gromada]

[HKCU\Software\HLSW]

[HKCU\Software\HPL Software]

[HKCU\Software\Haali]

[HKCU\Software\Headlight]

[HKCU\Software\Hewlett-Packard]

[HKCU\Software\IGA]

[HKCU\Software\IM Providers]

[HKCU\Software\IZSoftware]

[HKCU\Software\ImageViewer]

[HKCU\Software\IncrediMail]

[HKCU\Software\InstallShield]

[HKCU\Software\Intel]

[HKCU\Software\Intelligent Converters]

[HKCU\Software\Internet Pictures Corporation]

[HKCU\Software\Interprint]

[HKCU\Software\Jasc]

[HKCU\Software\JavaSoft]

[HKCU\Software\KC Softwares]

[HKCU\Software\KMPlayer]

[HKCU\Software\Kazaa]

[HKCU\Software\KillBox]

[HKCU\Software\Lavasoft]

[HKCU\Software\LeaderTech]

[HKCU\Software\Licenses]

[HKCU\Software\Local AppWizard-Generated Applications]

[HKCU\Software\Lphant]

[HKCU\Software\MAGIX AG]

[HKCU\Software\MRT Codecs Pack]

[HKCU\Software\Macromedia]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\Matroska Pack]

[HKCU\Software\MiKSoft]

[HKCU\Software\MimarSinan]

[HKCU\Software\Mobile Action]

[HKCU\Software\MozillaPlugins]

[HKCU\Software\Mozilla]

[HKCU\Software\NCH Software]

[HKCU\Software\NCH Swift Sound]

[HKCU\Software\NCH]

[HKCU\Software\Netgate]

[HKCU\Software\Netscape]

[HKCU\Software\Neuf]

[HKCU\Software\Nico Mak Computing]

[HKCU\Software\ODBC]

[HKCU\Software\PBORY]

[HKCU\Software\PC SOFT]

[HKCU\Software\Patchou]

[HKCU\Software\PegasusImaging]

[HKCU\Software\Pic2PicNet]

[HKCU\Software\Pinnacle Systems]

[HKCU\Software\Piriform]

[HKCU\Software\Pointsoft]

[HKCU\Software\Policies]

[HKCU\Software\Prodiff]

[HKCU\Software\Protexis]

[HKCU\Software\Psytec]

[HKCU\Software\QubeSoft]

[HKCU\Software\R-TT]

[HKCU\Software\RealNetworks]

[HKCU\Software\Realtek]

[HKCU\Software\Redfield]

[HKCU\Software\River Past]

[HKCU\Software\Rixler Software]

[HKCU\Software\RoadConstruction Shareware]

[HKCU\Software\Roupe]

[HKCU\Software\STOIK]

[HKCU\Software\Safer Networking Limited]

[HKCU\Software\Secunia]

[HKCU\Software\Sensaura]

[HKCU\Software\Siemens]

[HKCU\Software\Simply Super Software]

[HKCU\Software\Skype]

[HKCU\Software\Softonic]

[HKCU\Software\Solver Cards]

[HKCU\Software\Sony Ericsson2]

[HKCU\Software\Sony Ericsson]

[HKCU\Software\Spointer]

[HKCU\Software\Sunbelt Software]

[HKCU\Software\Sysinternals]

[HKCU\Software\TOM]

[HKCU\Software\Talkway Communications]

[HKCU\Software\TechTracker.com]

[HKCU\Software\The Programmers Network]

[HKCU\Software\The Silicon Realms Toolworks]

[HKCU\Software\Theorica]

[HKCU\Software\TorrentAid]

[HKCU\Software\Trolltech]

[HKCU\Software\TuneUp]

[HKCU\Software\Ulead Systems]

[HKCU\Software\Unity]

[HKCU\Software\Unlimited Possibilities]

[HKCU\Software\VB and VBA Program Settings]

[HKCU\Software\Valve]

[HKCU\Software\VicMan Software]

[HKCU\Software\Virtools]

[HKCU\Software\Vso]

[HKCU\Software\WINSOS]

[HKCU\Software\Webroot]

[HKCU\Software\WinRAR]

[HKCU\Software\WinZip Computing]

[HKCU\Software\XEZ]

[HKCU\Software\Xilisoft]

[HKCU\Software\XnView]

[HKCU\Software\YahooPartnerToolbar]

[HKCU\Software\Yahoo]

[HKCU\Software\dicas digital image coding GmbH]

[HKCU\Software\honestech]

[HKCU\Software\karl]

[HKCU\Software\keyhole.com]

[HKCU\Software\mlin]

[HKCU\Software\transfragmeow]

[HKLM\Software\ACE Compression Software]

[HKLM\Software\ALWIL Software]

[HKLM\Software\AVG]

[HKLM\Software\AVS4YOU]

[HKLM\Software\AVS]

[HKLM\Software\Adaptec]

[HKLM\Software\Adobe]

[HKLM\Software\Agere]

[HKLM\Software\Ahead]

[HKLM\Software\AppDataLow]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Apple Inc.]

[HKLM\Software\Apps TMD]

[HKLM\Software\Apps]

[HKLM\Software\Arny O. Chernavin]

[HKLM\Software\Avira]

[HKLM\Software\Axon Data]

[HKLM\Software\Borland]

[HKLM\Software\BroadJump]

[HKLM\Software\BrowserChoice]

[HKLM\Software\C07ft5Y]

[HKLM\Software\CDDB]

[HKLM\Software\CaricatureStudio3]

[HKLM\Software\Chilkat Software, Inc.]

[HKLM\Software\Classes]

[HKLM\Software\Clients]

[HKLM\Software\Compedia]

[HKLM\Software\Conduit]

[HKLM\Software\Corel]

[HKLM\Software\CrazyLoader]

[HKLM\Software\Creative]

[HKLM\Software\Cycore]

[HKLM\Software\Cygnus Solutions]

[HKLM\Software\DK Multimedia]

[HKLM\Software\DVDVideoSoft]

[HKLM\Software\Data Store]

[HKLM\Software\Debug]

[HKLM\Software\DivXNetworks]

[HKLM\Software\DivX]

[HKLM\Software\EZ Grabber]

[HKLM\Software\Emsi Software GmbH]

[HKLM\Software\Executive Software]

[HKLM\Software\Fight for Kisses]

[HKLM\Software\Foreignword]

[HKLM\Software\Fraunhofer]

[HKLM\Software\Freelancer Mod Manager]

[HKLM\Software\FullCircle]

[HKLM\Software\GASIA]

[HKLM\Software\GNU]

[HKLM\Software\Gabest]

[HKLM\Software\Gemplus]

[HKLM\Software\Google]

[HKLM\Software\HDTune]

[HKLM\Software\HaaliMkx]

[HKLM\Software\Hewlett-Packard]

[HKLM\Software\InstallShield]

[HKLM\Software\Intel]

[HKLM\Software\InterVideo]

[HKLM\Software\JL2005C]

[HKLM\Software\JL2005C_1]

[HKLM\Software\JL2005C_2]

[HKLM\Software\JL2005C_3]

[HKLM\Software\JL2005C_4]

[HKLM\Software\JL2005C_5]

[HKLM\Software\JL2005C_6]

[HKLM\Software\JL6_DECODE]

[HKLM\Software\JavaSoft]

[HKLM\Software\JreMetrics]

[HKLM\Software\KLCodecPack]

[HKLM\Software\Kodak]

[HKLM\Software\Lavasoft]

[HKLM\Software\Lucent]

[HKLM\Software\Macromedia]

[HKLM\Software\Malwarebytes' Anti-Malware]

[HKLM\Software\Messenger Plus!]

[HKLM\Software\MimarSinan]

[HKLM\Software\Motive]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Mozilla]

[HKLM\Software\MusicNet]

[HKLM\Software\My Company Name]

[HKLM\Software\NCH Software]

[HKLM\Software\NCH Swift Sound]

[HKLM\Software\NOS]

[HKLM\Software\NeoDivx Suite]

[HKLM\Software\Netgate]

[HKLM\Software\Neuf]

[HKLM\Software\Nico Mak Computing]

[HKLM\Software\Nullsoft]

[HKLM\Software\ODBC]

[HKLM\Software\On2 Technologies]

[HKLM\Software\One Voice Technologies]

[HKLM\Software\OneTouchGrabber]

[HKLM\Software\PBORY]

[HKLM\Software\PCTools]

[HKLM\Software\Panda Software]

[HKLM\Software\Patchou]

[HKLM\Software\PegasusImaging]

[HKLM\Software\Phoenix]

[HKLM\Software\Photomail]

[HKLM\Software\Pinnacle Systems]

[HKLM\Software\Policies]

[HKLM\Software\Program Groups]

[HKLM\Software\Protexis]

[HKLM\Software\Qobnrofu]

[HKLM\Software\QubeSoft]

[HKLM\Software\R-TT]

[HKLM\Software\RealDSF]

[HKLM\Software\RealNetworks]

[HKLM\Software\Realtek]

[HKLM\Software\Redfield]

[HKLM\Software\ReflexiveArcade]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\RichFX]

[HKLM\Software\S3Inc]

[HKLM\Software\S3R521]

[HKLM\Software\SLD]

[HKLM\Software\Safer Networking Limited]

[HKLM\Software\Schlumberger]

[HKLM\Software\Seagate Software]

[HKLM\Software\Secunia]

[HKLM\Software\Secure]

[HKLM\Software\Services]

[HKLM\Software\ShunSoft]

[HKLM\Software\Siemens]

[HKLM\Software\Skype]

[HKLM\Software\SmartSound Software]

[HKLM\Software\Sony Ericsson]

[HKLM\Software\SymNRT]

[HKLM\Software\TOM]

[HKLM\Software\TRIO Software]

[HKLM\Software\Talkway Communications]

[HKLM\Software\The Silicon Realms Toolworks]

[HKLM\Software\ToniArts]

[HKLM\Software\TrendMicro]

[HKLM\Software\Trymedia Systems]

[HKLM\Software\TubeMaster]

[HKLM\Software\Ulead Systems]

[HKLM\Software\Unity]

[HKLM\Software\VIA Technologies, Inc.]

[HKLM\Software\VIA Technologies, Inc]

[HKLM\Software\VN_VUIns]

[HKLM\Software\VSO]

[HKLM\Software\Valve]

[HKLM\Software\Via4in1Driver]

[HKLM\Software\VideoLAN]

[HKLM\Software\WebSupergoo]

[HKLM\Software\WinISO]

[HKLM\Software\WinPcap]

[HKLM\Software\Windows 3.1 Migration Status]

[HKLM\Software\Windows]

[HKLM\Software\Wow6432Node]

[HKLM\Software\Wspn]

[HKLM\Software\X-AVCSD]

[HKLM\Software\Xing Technology Corp.]

[HKLM\Software\Yahoo]

[HKLM\Software\ZSMC]

[HKLM\Software\knight]

[HKLM\Software\mozilla.org]

[HKLM\Software\swearware]

[HKLM\Software\thinker software]

 

 

---\\ Contenu des dossiers ProgramFiles/ProgramData (O43)

O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe

O43 - CFD:Common File Directory ----D- C:\Program Files\Ahead

O43 - CFD:Common File Directory ----D- C:\Program Files\Apple Software Update

O43 - CFD:Common File Directory ----D- C:\Program Files\Avira

O43 - CFD:Common File Directory ----D- C:\Program Files\AviSynth 2.5

O43 - CFD:Common File Directory ----D- C:\Program Files\BroadJump

O43 - CFD:Common File Directory ----D- C:\Program Files\Caricature Studio Green 3.6

O43 - CFD:Common File Directory ----D- C:\Program Files\codecs

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files

O43 - CFD:Common File Directory ----D- C:\Program Files\ComPlus Applications

O43 - CFD:Common File Directory ----D- C:\Program Files\convertir pour psp

O43 - CFD:Common File Directory ----D- C:\Program Files\convertisseur images

O43 - CFD:Common File Directory ----D- C:\Program Files\convertisseur vidéo psp

O43 - CFD:Common File Directory ----D- C:\Program Files\Creative

O43 - CFD:Common File Directory ----D- C:\Program Files\crypteur documents

O43 - CFD:Common File Directory ----D- C:\Program Files\Créez votre site Web

O43 - CFD:Common File Directory ----D- C:\Program Files\debloqueur de fichiers

O43 - CFD:Common File Directory ----D- C:\Program Files\DEFENSE PC

O43 - CFD:Common File Directory ----D- C:\Program Files\demarage rapide du pc

O43 - CFD:Common File Directory ----D- C:\Program Files\DestinatorApps

O43 - CFD:Common File Directory ----D- C:\Program Files\Direct X

O43 - CFD:Common File Directory ----D- C:\Program Files\DivX

O43 - CFD:Common File Directory ----D- C:\Program Files\drivers audio

O43 - CFD:Common File Directory ----D- C:\Program Files\décompresser des fichiers

O43 - CFD:Common File Directory ----D- C:\Program Files\EASY CLEANER

O43 - CFD:Common File Directory ----D- C:\Program Files\Easy Video Splitter

O43 - CFD:Common File Directory ----D- C:\Program Files\EZ Grabber

O43 - CFD:Common File Directory ----D- C:\Program Files\FenAffiche

O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers communs

O43 - CFD:Common File Directory ----D- C:\Program Files\flash player

O43 - CFD:Common File Directory ----D- C:\Program Files\flash player 2

O43 - CFD:Common File Directory ----D- C:\Program Files\HardwareDetection

O43 - CFD:Common File Directory ----D- C:\Program Files\Hewlett-Packard

O43 - CFD:Common File Directory ----D- C:\Program Files\HighMAT CD Writing Wizard

O43 - CFD:Common File Directory ----D- C:\Program Files\HP

O43 - CFD:Common File Directory ----D- C:\Program Files\i-Media

O43 - CFD:Common File Directory ----D- C:\Program Files\Imagemagik

O43 - CFD:Common File Directory ----D- C:\Program Files\Imprimante

O43 - CFD:Common File Directory ----D- C:\Program Files\Incomplete

O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information

O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer

O43 - CFD:Common File Directory ----D- C:\Program Files\Java

O43 - CFD:Common File Directory ----D- C:\Program Files\JDownloader

O43 - CFD:Common File Directory ----D- C:\Program Files\JL2005C

O43 - CFD:Common File Directory ----D- C:\Program Files\Lavasoft

O43 - CFD:Common File Directory ----D- C:\Program Files\live update

O43 - CFD:Common File Directory ----D- C:\Program Files\LSI SoftModem

O43 - CFD:Common File Directory ----D- C:\Program Files\Messenger

O43 - CFD:Common File Directory ----D- C:\Program Files\Messenger Plus! Live

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft ActiveSync

O43 - CFD:Common File Directory ----D- C:\Program Files\microsoft frontpage

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Silverlight

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft SQL Server Compact Edition

O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft.NET

O43 - CFD:Common File Directory ----D- C:\Program Files\mises à jours carte mere et bios

O43 - CFD:Common File Directory ----D- C:\Program Files\Motive

O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker

O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox

O43 - CFD:Common File Directory ----D- C:\Program Files\mp3 cutter

O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild

O43 - CFD:Common File Directory ----D- C:\Program Files\MSECache

O43 - CFD:Common File Directory ----D- C:\Program Files\MSN

O43 - CFD:Common File Directory ----D- C:\Program Files\msn 8 plus

O43 - CFD:Common File Directory ----D- C:\Program Files\MSN Gaming Zone

O43 - CFD:Common File Directory ----D- C:\Program Files\msn plus

O43 - CFD:Common File Directory ----D- C:\Program Files\msn8

O43 - CFD:Common File Directory ----D- C:\Program Files\MSSOAP

O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 4.0

O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 6.0

O43 - CFD:Common File Directory ----D- C:\Program Files\mtv video converter

O43 - CFD:Common File Directory ----D- C:\Program Files\Mydrv

O43 - CFD:Common File Directory ----D- C:\Program Files\NCH Software

O43 - CFD:Common File Directory ----D- C:\Program Files\NCH Swift Sound

O43 - CFD:Common File Directory ----D- C:\Program Files\NetMeeting

O43 - CFD:Common File Directory ----D- C:\Program Files\Neuf

O43 - CFD:Common File Directory ----D- C:\Program Files\On2 Technologies

O43 - CFD:Common File Directory ----D- C:\Program Files\Online Services

O43 - CFD:Common File Directory ----D- C:\Program Files\optimiser le demarrage du pc

O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express

O43 - CFD:Common File Directory ----D- C:\Program Files\Panda Security

O43 - CFD:Common File Directory ----D- C:\Program Files\pc suite sony

O43 - CFD:Common File Directory ----D- C:\Program Files\Phoenix Technologies Ltd

O43 - CFD:Common File Directory ----D- C:\Program Files\photo vers dessin

O43 - CFD:Common File Directory ----D- C:\Program Files\pilotes carte mere

O43 - CFD:Common File Directory ----D- C:\Program Files\pilotes ports usb 2.0

O43 - CFD:Common File Directory ----D- C:\Program Files\quick time

O43 - CFD:Common File Directory ----D- C:\Program Files\quick time pro

O43 - CFD:Common File Directory ----D- C:\Program Files\QuickMediaConverter

O43 - CFD:Common File Directory ----D- C:\Program Files\Real

O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek AC97

O43 - CFD:Common File Directory ----D- C:\Program Files\Redoubt

O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies

O43 - CFD:Common File Directory ----D- C:\Program Files\ReflexiveArcade

O43 - CFD:Common File Directory ----D- C:\Program Files\Retouche photo

O43 - CFD:Common File Directory ----D- C:\Program Files\S3Inc

O43 - CFD:Common File Directory ----D- C:\Program Files\SafeXP

O43 - CFD:Common File Directory ----D- C:\Program Files\Services en ligne

O43 - CFD:Common File Directory ----D- C:\Program Files\Setup

O43 - CFD:Common File Directory ----D- C:\Program Files\SFR

O43 - CFD:Common File Directory ----D- C:\Program Files\Skype

O43 - CFD:Common File Directory ----D- C:\Program Files\Sony Ericsson

O43 - CFD:Common File Directory ----D- C:\Program Files\startup control panel

O43 - CFD:Common File Directory ----D- C:\Program Files\Talkway

O43 - CFD:Common File Directory ----D- C:\Program Files\Ubi Soft

O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information

O43 - CFD:Common File Directory ----D- C:\Program Files\Unity

O43 - CFD:Common File Directory ----D- C:\Program Files\USB Disk Win98 Driver

O43 - CFD:Common File Directory ----D- C:\Program Files\VIA

O43 - CFD:Common File Directory ----D- C:\Program Files\VIAudioi

O43 - CFD:Common File Directory ----D- C:\Program Files\Vimicro

O43 - CFD:Common File Directory ----D- C:\Program Files\visionneuse journal windows

O43 - CFD:Common File Directory ----D- C:\Program Files\vlc media player

O43 - CFD:Common File Directory ----D- C:\Program Files\WinASPI

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Desktop Search

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Journal Viewer

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Live SkyDrive

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Components

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Connect

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Connect 2

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player

O43 - CFD:Common File Directory ----D- C:\Program Files\windows messenger

O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT

O43 - CFD:Common File Directory --H-D- C:\Program Files\WindowsUpdate

O43 - CFD:Common File Directory ----D- C:\Program Files\WinPcap

O43 - CFD:Common File Directory ----D- C:\Program Files\winrar

O43 - CFD:Common File Directory ----D- C:\Program Files\WinZip

O43 - CFD:Common File Directory ----D- C:\Program Files\xerox

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Download Manager

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Motive

O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Scanner

 

 

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.94EE1200F915817C00FCFD7F68EF1200] - 20/11/2010 - 13:44:23 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\pfirewall.log [2836585]

O44 - LFC:[MD5.08166C216D7F6BD99CB5ECD9ECA632B7] - 20/11/2010 - 12:51:56 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\wpa.dbl [13646]

O44 - LFC:[MD5.B469EC6E5CF16EE2C40BAD8A4A66576A] - 20/11/2010 - 12:50:07 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\ModemLog_Agere Systems PCI Soft Modem.txt [4234]

O44 - LFC:[MD5.234C3DCE707C81EC86B7DAAC93D9C252] - 20/11/2010 - 12:49:10 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\bootstat.dat [2048]

O44 - LFC:[MD5.4592C4CB8C69758DA3F88E39876DA10C] - 20/11/2010 - 12:48:54 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\aaw7boot.log [444]

O44 - LFC:[MD5.732E82DED9BFCE7D65B3FD5FDF646B9F] - 20/11/2010 - 12:48:24 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\pfirewall.log.old [3991691]

O44 - LFC:[MD5.21C791BD9E721341BF0B32FFF181771B] - 20/11/2010 - 11:42:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\Graphex3.ini [507]

O44 - LFC:[MD5.2AFE74FE6429E1824C848451EC6B459D] - 17/11/2010 - 15:51:35 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\tmp.reg [2176]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 17/11/2010 - 15:51:35 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\tmp.txt [0]

O44 - LFC:[MD5.756F3C6E422122E82E4EA5115DC71BCB] - 17/11/2010 - 12:49:43 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\msnfix.txt [167]

O44 - LFC:[MD5.3ADB8BD6154A3EF87496E8FCE9C22493] - 16/11/2010 - 22:38:01 ---A- . (.Panda Security, S.L. - Panda Boot Driver.) -- C:\WINDOWS\System32\drivers\pavboot.sys [28552]

O44 - LFC:[MD5.B01E2A41389FBA42B7B5A026EA88C9B7] - 16/11/2010 - 20:38:03 ---A- . (.Adobe Systems, Inc. - Adobe Flash Player 9.0 r46.) -- C:\WINDOWS\System32\Flash.ocx [2267368]

O44 - LFC:[MD5.B227CBDD0881C8C291CFDE734A8EFF17] - 16/11/2010 - 20:38:03 ---A- . (.Xceed Software Inc (450) 442-2626 - Xceed Backup Library.) -- C:\WINDOWS\System32\XceedBkp.dll [423784]

O44 - LFC:[MD5.C41E422AA2E1F79312B256B7F92A1761] - 16/11/2010 - 20:38:02 ---A- . (.Pas de propriétaire - ActiveSkin Module.) -- C:\WINDOWS\System32\ACTSKN43.OCX [389120]

O44 - LFC:[MD5.4000E1E13B5D0A60488E1257577B10FC] - 16/11/2010 - 20:38:01 ---A- . (.Ariad Software - Ariad® Progress Bar Control.) -- C:\WINDOWS\System32\ProgressBar4.ocx [89088]

O44 - LFC:[MD5.EDA3D29E5E3A53D537D4EEA93067B189] - 16/11/2010 - 20:38:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\threadapi.tlb [11012]

O44 - LFC:[MD5.AD6A4304803D8491437CEC9FA1C5359F] - 13/11/2010 - 19:28:59 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\lsdelete.exe [15880]

O44 - LFC:[MD5.B7C19EC8B0DD7EFA58AD41FFEB8B8CDA] - 13/11/2010 - 16:19:52 ---A- . (.Lavasoft AB - Boot Driver.) -- C:\WINDOWS\System32\drivers\Lbd.sys [64288]

O44 - LFC:[MD5.BA5ADBC633A54552824945B494973589] - 12/11/2010 - 14:23:04 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfc009.dat [80760]

O44 - LFC:[MD5.D614A5A83B2D525F02AF5DCE655476CE] - 12/11/2010 - 14:23:04 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfc00C.dat [96240]

O44 - LFC:[MD5.7A61AFEA53EB9DDC12B17EC286ACC862] - 12/11/2010 - 14:23:04 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfh009.dat [465204]

O44 - LFC:[MD5.756A8B98473865A27F75FC0D7E75560C] - 12/11/2010 - 14:23:04 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfh00C.dat [536696]

O44 - LFC:[MD5.5A98B0DBA773E34739E85239C54BC55E] - 12/11/2010 - 14:23:03 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\PerfStringBackup.INI [1195330]

O44 - LFC:[MD5.C1AE5D1F53285D79A0B73A62AF20734F] - 06/11/2010 - 14:50:09 ---A- . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\WINDOWS\System32\drivers\SBREDrv.sys [98392]

O44 - LFC:[MD5.27CADAE7E69FEEE773EA55108A8F9F47] - 24/10/2010 - 13:53:03 ---A- . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\WINDOWS\System32\deployJava1.dll [472808]

O44 - LFC:[MD5.51A850830CB841FBE5B90142BCC6B854] - 24/10/2010 - 13:53:03 ---A- . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\WINDOWS\System32\java.exe [145184]

O44 - LFC:[MD5.87893167C98FCEF5D14077511F219B75] - 24/10/2010 - 13:53:03 ---A- . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\WINDOWS\System32\javaw.exe [145184]

O44 - LFC:[MD5.42278A946AB729CB746AA47D48F5FCC0] - 24/10/2010 - 13:53:03 ---A- . (.Sun Microsystems, Inc. - Java Web Start Launcher.) -- C:\WINDOWS\System32\javaws.exe [153376]

O44 - LFC:[MD5.F38F6A71B7246A09E5E9C19C94F65DC4] - 24/10/2010 - 13:52:59 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\jupdate-1.6.0_22-b04.log [5871]

 

 

---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)

O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll

 

 

---\\ Export de clé d'application autorisée (ECAA) (O47)

O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe

O47 - AAKE:Key Export SP - "C:\Program Files\Messenger\msmsgs.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Temp\CI_HITACHI\MAJ_Hitachi.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\bitcomet\BitComet.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\svchost.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) (.not file.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O47 - AAKE:Key Export SP - "E:\JEU\SteamApps\xxx8575\counter-strike source\hl2.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "E:\JEU\SteamApps\xxx8575\day of defeat\hl.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "E:\JEU\SteamApps\xxx8575\counter-strike\hl.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "E:\JEU\SteamApps\xxx8575\condition zero\hl.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "E:\JEU\SteamApps\xxx8575\condition zero deleted scenes\hl.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\HLSW\hlsw.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\e-mule\eMule\emule.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft ActiveSync\rapimgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "E:\Jeu Trackmania\trackmania nation\TrackMania Nations ESWC\TmNationsESWC.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "E:\trackmania forever\TmNationsForever\TmForever.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Sony Ericsson\Update Service\Update Service.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\dpvsetup.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\rundll32.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\maconfservice.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\giga trib partage de fichier\GigaTribe\gigatribe.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Lphant Applications\Lphant\Lphant.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Lphant\Lphant\eLePhantClient.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\bin\IncMail.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\bin\ImApp.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\bin\ImpCnt.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\MSN Messenger\livecall.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\MSN Messenger\livecall.exe

O47 - AAKE:Key Export SP - "C:\Program Files\camfrog\Camfrog Video Chat\Camfrog Video Chat.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Skype\Phone\Skype.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Hewlett-Packard\HP Deskjet 1280\Toolbox\HPWSTBX.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Documents and Settings\GACHOD Sylvain\Local Settings\temp\jdic_0_9_5\IeEmbed.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\CrazyLoader\crazyloader.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\CrazyLoader\crazyloader.exe

O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\bin\javaw.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\bin\javaws.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\launch4j-tmp\crazyloader.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe

O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O47 - AAKE:Key Export DP - "C:\Program Files\Microsoft ActiveSync\rapimgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export DP - "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export DP - "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export DP - "C:\Program Files\MSN Messenger\livecall.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\MSN Messenger\livecall.exe

O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) --

 

 

---\\ Déni du service (Local Security Authority) (LSA) (O48)

O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\System32\msv1_0.dll

O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\System32\scecli.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\System32\msv1_0.dll

 

 

---\\ Image File Execution Options (IFEO) (O50)

O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d

 

 

---\\ MountPoints2 Shell Key (MPSK) (O51)

O51 - MPSK:{fff0f301-d8fd-11de-a3f6-00110993c925}\Shell\AutoRun\command. (.Pas de propriétaire - Pas de description.) -- F:\WDSetup.exe (.not file.)

 

 

---\\ Trojan Driver Search Data (HKLM)(TDSD) (O52)

O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech DSP Group pour MSACM V3.50.) -- C:\WINDOWS\System32\tssoft32.acm

O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\System32\iccvid.dll

O52 - TDSD: \Drivers32\"vidc.iv31"="Ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\Ir32_32.dll

O52 - TDSD: \Drivers32\"vidc.iv32"="Ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\Ir32_32.dll

O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\System32\ir41_32.ax

O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\System32\sl_anet.acm

O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax

O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\System32\ir50_32.dll

O52 - TDSD: \Drivers32\"msacm.l3acm"="l3codecp.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Audio Layer-3 Codec for MSACM.) -- C:\WINDOWS\System32\l3codecp.acm

O52 - TDSD: \Drivers32\"VIDC.PVW2"="pvwv220.dll" . (.Pegasus Imaging Corporation - PICVideo Wavelet Compressor.) -- C:\WINDOWS\System32\pvwv220.dll

O52 - TDSD: \Drivers32\"VIDC.PIMJ"="pvljpg20.dll" . (.Pegasus Imaging Corporation - PICVideo Lossless JPEG Compressor.) -- C:\WINDOWS\System32\pvljpg20.dll

O52 - TDSD: \Drivers32\"vidc.i263"="C:\WINDOWS\system32\i263_32.drv" . (.Intel Corporation - Intel I.263 Video Driver 2.55.016.) -- C:\WINDOWS\system32\i263_32.drv

O52 - TDSD: \Drivers32\"vidc.VP60"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\System32\vp6vfw.dll

O52 - TDSD: \Drivers32\"vidc.VP61"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\System32\vp6vfw.dll

O52 - TDSD: \Drivers32\"vidc.VP62"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\System32\vp6vfw.dll

O52 - TDSD: \Drivers32\"vidc.iv40"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\System32\ir41_32.ax

O52 - TDSD: \Drivers32\"msacm.voxacm160"="vct3216.acm" . (.Voxware, Inc. - Voxware Audio Compression Manager Driver.) -- C:\WINDOWS\System32\vct3216.acm

O52 - TDSD: \Drivers32\"msacm.scg726"="scg726.acm" . (.SHARP Corporation - SHARP G.726 ACM Audio Decoder.) -- C:\WINDOWS\System32\scg726.acm

O52 - TDSD: \Drivers32\"msacm.alf2cd"="alf2cd.acm" . (.NCT Company - NCT ALF2CD Audio CODEC.) -- C:\WINDOWS\System32\alf2cd.acm

O52 - TDSD: \Drivers32\"vidc.dvsd"="mcdvd_32.dll" . (.MainConcept - MainConcept DV Codec.) -- C:\WINDOWS\System32\mcdvd_32.dll

O52 - TDSD: \Drivers32\"vidc.VP40"="vp4vfw.dll" . (.On2.com - On2_VP4.) -- C:\WINDOWS\System32\vp4vfw.dll

O52 - TDSD: \Drivers32\"VIDC.X264"="x264vfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\x264vfw.dll

O52 - TDSD: \Drivers32\"msacm.ac3acm"="AC3ACM.acm" . (.fccHandler - AC-3 ACM Codec.) -- C:\WINDOWS\System32\AC3ACM.acm

O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ff_vfw.dll

O52 - TDSD: \Drivers32\"msacm.lameacm"="LameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\WINDOWS\System32\LameACM.acm

O52 - TDSD: \Drivers32\"VIDC.JDCT"="jl_jdct.drv" . (.JEILIN Tech. - JEILIN JDCT Decompressor.) -- C:\WINDOWS\System32\jl_jdct.drv

O52 - TDSD: \Drivers32\"vidc.DIVX"="DivX.dll" . (.DivX, Inc. - DivX.) -- C:\WINDOWS\System32\DivX.dll

O52 - TDSD: \Drivers32\"vidc.yv12"="DivX.dll" . (.DivX, Inc. - DivX.) -- C:\WINDOWS\System32\DivX.dll

O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\System32\sl_anet.acm

O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax

O52 - TDSD: \drivers.desc\"ir50_32.dll"="Indeo® video 5.10" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm

O52 - TDSD: \drivers.desc\"pvmjpg21.dll"="PICVideo MJPEG Codec" . (.Pegasus Imaging Corporation - PICVideo Motion JPEG Compressor.) -- C:\WINDOWS\System32\pvmjpg21.dll

O52 - TDSD: \drivers.desc\"pvwv220.dll"="Pegasus Wavelet 2000 Codec" . (.Pegasus Imaging Corporation - PICVideo Wavelet Compressor.) -- C:\WINDOWS\System32\pvwv220.dll

O52 - TDSD: \drivers.desc\"pvljpg20.dll"="PICVideo Lossless JPEG Codec" . (.Pegasus Imaging Corporation - PICVideo Lossless JPEG Compressor.) -- C:\WINDOWS\System32\pvljpg20.dll

O52 - TDSD: \drivers.desc\"mcipspwa.dll"="mcipspwa.dll" . (.Philips Speech Processing - MCIPSPWA is a MCI Audio driver.) -- C:\WINDOWS\System32\mcipspwa.dll

O52 - TDSD: \drivers.desc\"mcipspct.dll"="mcipspct.dll" . (.Philips Speech Processing - MCIPSPCT is a MCI Control driver.) -- C:\WINDOWS\System32\mcipspct.dll

O52 - TDSD: \drivers.desc\"tssoft32.acm"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech DSP Group pour MSACM V3.50.) -- C:\WINDOWS\System32\tssoft32.acm

O52 - TDSD: \drivers.desc\"iccvid.dll"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\System32\iccvid.dll

O52 - TDSD: \drivers.desc\"ir32_32.dll"="ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ir32_32.dll

O52 - TDSD: \drivers.desc\"ir41_32.ax"="Indeo 4.5 codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"l3codecp.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Audio Layer-3 Codec for MSACM.) -- C:\WINDOWS\System32\l3codecp.acm

O52 - TDSD: \drivers.desc\"iac25_32.ax"="Indeo® Audio Software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\System32\iac25_32.ax

O52 - TDSD: \drivers.desc\"vct3216.acm"="Voxware Compression Toolkit" . (.Voxware, Inc. - Voxware Audio Compression Manager Driver.) -- C:\WINDOWS\System32\vct3216.acm

O52 - TDSD: \drivers.desc\"scg726.acm"="Sharp G.726 Audio Decoder" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"alf2cd.acm"="alf2cd.acm" . (.NCT Company - NCT ALF2CD Audio CODEC.) -- C:\WINDOWS\System32\alf2cd.acm

O52 - TDSD: \drivers.desc\"mcdvd_32.dll"="mcdvd_32.dll" . (.MainConcept - MainConcept DV Codec.) -- C:\WINDOWS\System32\mcdvd_32.dll

O52 - TDSD: \drivers.desc\"mpg4c32.dll"="MS MPEG-4 v1,2,3 driver 4.1.0.3927" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"x264vfw.dll"="x264 H.264 Video Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC-3 ACM Decompressor" . (.fccHandler - AC-3 ACM Codec.) -- C:\WINDOWS\System32\ac3acm.acm

O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow Video Codec" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ff_vfw.dll

O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\i263_32.drv"="i263_32" . (.Intel Corporation - Intel I.263 Video Driver 2.55.016.) -- C:\WINDOWS\system32\i263_32.drv

O52 - TDSD: \drivers.desc\"vp6vfw.dll"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\WINDOWS\System32\vp6vfw.dll

O52 - TDSD: \drivers.desc\"vp4vfw.dll"="vp4vfw.dll" . (.On2.com - On2_VP4.) -- C:\WINDOWS\System32\vp4vfw.dll

O52 - TDSD: \drivers.desc\"yv12vfw.dll"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\WINDOWS\System32\yv12vfw.dll

O52 - TDSD: \drivers.desc\"LameACM.acm"="Lame ACM MP3 Codec(NeoDivX)" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\WINDOWS\System32\LameACM.acm

O52 - TDSD: \drivers.desc\"jl_jdct.drv"="JEILIN JDCT Decompressor" . (.JEILIN Tech. - JEILIN JDCT Decompressor.) -- C:\WINDOWS\System32\jl_jdct.drv

O52 - TDSD: \drivers.desc\"DivX.dll"="DivX 6.9.2 Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

 

 

---\\ ShareTools MSconfig StartupReg (SMSR) (O53)

O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe

O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe

O53 - SMSR:HKLM\...\startupreg\DivXUpdate [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\DivX\DivX Update\DivXUpdate.exe

O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\program files\quick time\qttask.exe

O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe

O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe

 

 

---\\ Microsoft Control Security Providers (MCSP) (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll

 

 

---\\ Microsoft Windows Policies System (MWPS) (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "HideLegacyLogonScripts"=0

O55 - MWPS:[HKLM\...\Policies\System] - "HideLogoffScripts"=0

O55 - MWPS:[HKLM\...\Policies\System] - "RunLogonScriptSync"=1

O55 - MWPS:[HKLM\...\Policies\System] - "RunStartupScriptSync"=0

O55 - MWPS:[HKLM\...\Policies\System] - "HideStartupScripts"=0

O55 - MWPS:[HKCU\...\Policies\System] - "HideLegacyLogonScripts"=0

O55 - MWPS:[HKCU\...\Policies\System] - "HideLogoffScripts"=0

O55 - MWPS:[HKCU\...\Policies\System] - "RunLogonScriptSync"=1

O55 - MWPS:[HKCU\...\Policies\System] - "RunStartupScriptSync"=0

O55 - MWPS:[HKCU\...\Policies\System] - "HideStartupScripts"=0

 

 

---\\ Microsoft Windows Policies Explorer (MWPE) (O56)

O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=0

O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=67108863

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveAutoRun"=67108863

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=323

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDrives"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1

 

 

---\\ Liste des Drivers Système (SDL) (O58)

O58 - SDL:[MD5.6463D1DB354B13E6CED4D67F6E4910F4] - 23/08/2004 - 12:55:54 ---A- . (.Siemens AG - Actser Serial Filter driver.) -- C:\WINDOWS\system32\drivers\actser.sys

O58 - SDL:[MD5.22AF49F50A0DA685B7C6DA7303411D81] - 28/04/2004 - 10:30:02 ---A- . (.Siemens AG - ActVComm driver.) -- C:\WINDOWS\system32\drivers\actvcomm.sys

O58 - SDL:[MD5.35C391E40471A0B479328FC7B1B5F40F] - 29/10/2008 - 20:43:44 ---A- . (.Agere Systems - SoftModem Device Driver.) -- C:\WINDOWS\system32\drivers\AGRSM.sys

O58 - SDL:[MD5.E1B23E1463ADCCA8637532D6B170CC32] - 23/11/2006 - 17:11:40 R--A- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\drivers\alcxwdm.sys

O58 - SDL:[MD5.95B4FB835E28AA1336CEEB07FD5B9398] - 13/04/2008 - 19:36:39 ---A- . (.Advanced Micro Devices, Inc. - AMD Win2000 AGP Filter.) -- C:\WINDOWS\system32\drivers\amdagp.sys

O58 - SDL:[MD5.B979979AB8027F7F53FB16EC4229B7DB] - 10/09/1999 - 11:06:00 ---A- . (.Adaptec - ASPI for WIN32 Kernel Driver.) -- C:\WINDOWS\system32\drivers\Aspi32.sys

O58 - SDL:[MD5.417352592432F5368A8296F7FB73BECF] - 04/08/2004 - 00:38:44 ---A- . (.ATI Technologies Inc. - Pilote de miniport ATI RAGE 128.) -- C:\WINDOWS\system32\drivers\ati2mtag.sys

O58 - SDL:[MD5.5B44C214F9CD9F590BE9125347610380] - 13/02/2009 - 11:17:49 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\WINDOWS\system32\drivers\avgntdd.sys

O58 - SDL:[MD5.1EB7D72A82F94F7E9496D363FCE00B68] - 17/08/2010 - 13:39:11 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\WINDOWS\system32\drivers\avgntflt.sys

O58 - SDL:[MD5.87451AA7CC6B6A590EBCEA05E755075A] - 17/06/2010 - 15:28:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\WINDOWS\system32\drivers\avgntmgr.sys

O58 - SDL:[MD5.F8C56231ED5ECF7D1B46B0330880CCEF] - 17/08/2010 - 13:39:11 ---A- . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\WINDOWS\system32\drivers\avipbb.sys

O58 - SDL:[MD5.BF79E659C506674C0497CC9C61F1A165] - 19/05/2006 - 22:16:24 ---A- . (.Sonic Solutions - CDR4 CD and DVD Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdr4_xp.sys

O58 - SDL:[MD5.2C41CD49D82D5FD85C72D57B6CA25471] - 19/05/2006 - 22:16:24 ---A- . (.Sonic Solutions - CDRAL Place Holder Driver (see PxHelp).) -- C:\WINDOWS\system32\drivers\cdralw2k.sys

O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 05/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys

O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 05/08/2004 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys

O58 - SDL:[MD5.A583BC166495B07F704533754CE29CBD] - 15/04/2004 - 10:57:20 ---A- . (.VIA Technologies, Inc. - NDIS 5.0 miniport driver.) -- C:\WINDOWS\system32\drivers\fetnd5b.sys

O58 - SDL:[MD5.E7072827D0B5F9BD99D6961571A38973] - 22/09/2008 - 03:41:04 ---A- . (.VIA Technologies, Inc. - NDIS 5.0 miniport driver.) -- C:\WINDOWS\system32\drivers\fetnd5bv.sys

O58 - SDL:[MD5.D03219F49F951348B76D61AE4B215068] - 23/05/2002 - 04:01:38 R--A- . (.General - USB Storage Driver.) -- C:\WINDOWS\system32\drivers\geneuide.sys

O58 - SDL:[MD5.AE8F90F4DE5746E5CB1B095701165863] - 10/09/2008 - 09:59:53 ---A- . (.Sony Ericsson Mobile Communications - SEMC USB Flash Driver Filter.) -- C:\WINDOWS\system32\drivers\ggflt.sys

O58 - SDL:[MD5.4973D7C1C1D81D11E5E8FA974C2AE8CB] - 10/09/2008 - 09:59:53 ---A- . (.Sony Ericsson Mobile Communications - SEMC USB Flash Driver.) -- C:\WINDOWS\system32\drivers\ggsemc.sys

O58 - SDL:[MD5.FCCF4AE4EF72CBABA6D6BEFEFD77E940] - 29/03/2003 - 15:45:18 R--A- . (.Ahead Software AG and its licensors - NERO IMAGEDRIVE SCSI miniport.) -- C:\WINDOWS\system32\drivers\imagedrv.sys

O58 - SDL:[MD5.03CA5F0EB17C33D79EF90C4CC21E80DB] - 11/03/2008 - 16:18:56 ---A- . (.Windows ® 2000 DDK provider - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\system32\drivers\jl2005c.sys

O58 - SDL:[MD5.B1FE6FEAC5A501C89057A69C9F5E9D1F] - 17/02/2006 - 20:34:10 R--A- . (.MCCI - Sony Ericsson K510 Driver Driver.) -- C:\WINDOWS\system32\drivers\k510bus.sys

O58 - SDL:[MD5.3831AD17833586A2394FB51DE7C318D9] - 17/02/2006 - 20:34:12 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k510cm.sys

O58 - SDL:[MD5.3831AD17833586A2394FB51DE7C318D9] - 17/02/2006 - 20:34:12 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k510cmnt.sys

O58 - SDL:[MD5.7A4ECCA08560E8FF330ACAA4128AF7B0] - 17/02/2006 - 20:34:15 R--A- . (.MCCI - Sony Ericsson K510 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\k510mdfl.sys

O58 - SDL:[MD5.094D532B727030C3B8B6BD3B743D9526] - 17/02/2006 - 20:34:17 R--A- . (.MCCI - Sony Ericsson K510 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\k510mdm.sys

O58 - SDL:[MD5.AD67BFA00BA39C65551338EE001CDDDD] - 17/02/2006 - 20:34:22 R--A- . (.MCCI - Sony Ericsson K510 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\k510mgmt.sys

O58 - SDL:[MD5.7D5094B00A47D871A48D035BEB3A0922] - 17/02/2006 - 20:34:24 R--A- . (.MCCI - Sony Ericsson K510 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\k510obex.sys

O58 - SDL:[MD5.0C0F639A9C5F94156B94AA691BA07B02] - 17/02/2006 - 20:34:33 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k510wh.sys

O58 - SDL:[MD5.0C0F639A9C5F94156B94AA691BA07B02] - 17/02/2006 - 20:34:33 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k510whnt.sys

O58 - SDL:[MD5.53D606019BB0F0C6B3E6EC9D2E0F7622] - 11/05/2005 - 12:12:11 R--A- . (.MCCI - Sony Ericsson 600i Driver.) -- C:\WINDOWS\system32\drivers\k600bus.sys

O58 - SDL:[MD5.72315EFA8E1013FD70709FD16E995AF0] - 11/05/2005 - 12:12:12 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k600cm.sys

O58 - SDL:[MD5.FF34C0A8B82D1978E10F3513659BFEAE] - 11/05/2005 - 12:12:12 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\k600cm95.sys

O58 - SDL:[MD5.72315EFA8E1013FD70709FD16E995AF0] - 11/05/2005 - 12:12:12 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k600cmnt.sys

O58 - SDL:[MD5.FF76FA33CF9BEA7CC7404AFDC2AEA1C8] - 11/05/2005 - 12:12:14 R--A- . (.MCCI - WDM class registry.) -- C:\WINDOWS\system32\drivers\k600cr.sys

O58 - SDL:[MD5.C0D81F66557847BBB7F5B9980BC2EA2E] - 11/05/2005 - 12:12:14 R--A- . (.MCCI - Sony Ericsson 600i USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\k600mdfl.sys

O58 - SDL:[MD5.646900B2921BAD4757B427D2D328EC96] - 11/05/2005 - 12:12:14 R--A- . (.MCCI - Sony Ericsson 600i USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\k600mdm.sys

O58 - SDL:[MD5.3990320CFEF38B038C012029257E2300] - 11/05/2005 - 12:12:17 R--A- . (.MCCI - Sony Ericsson 600i USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\k600mgmt.sys

O58 - SDL:[MD5.1578CB8176D08CC4D3DBE094C62FC236] - 11/05/2005 - 12:12:17 R--A- . (.MCCI - Sony Ericsson 600i USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\k600obex.sys

O58 - SDL:[MD5.CF2684B3684A2983F95A94F5F84DE6C3] - 11/05/2005 - 12:12:23 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k600wh.sys

O58 - SDL:[MD5.7A6EAB94B7926F405E7B92B38017EFB7] - 11/05/2005 - 12:12:22 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\k600wh95.sys

O58 - SDL:[MD5.CF2684B3684A2983F95A94F5F84DE6C3] - 11/05/2005 - 12:12:23 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k600whnt.sys

O58 - SDL:[MD5.FE8300320281D658A7854D5CFC02A63F] - 11/03/2005 - 16:17:34 R--A- . (.MCCI - Sony Ericsson 750 Driver.) -- C:\WINDOWS\system32\drivers\k750bus.sys

O58 - SDL:[MD5.594613F4B2E18F5EF24B2148BB699265] - 11/03/2005 - 16:17:36 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\k750cm95.sys

O58 - SDL:[MD5.8C2B0E77E85902EB75BB84A8161474F6] - 11/03/2005 - 16:17:36 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k750cmnt.sys

O58 - SDL:[MD5.DC2346C10039EE89CE689E63C173BC4F] - 11/03/2005 - 16:17:38 R--A- . (.MCCI - WDM class registry.) -- C:\WINDOWS\system32\drivers\k750cr.sys

O58 - SDL:[MD5.F44521F63C0C00364FA3D59DB980DE6A] - 11/03/2005 - 16:17:38 R--A- . (.MCCI - Sony Ericsson 750 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\k750mdfl.sys

O58 - SDL:[MD5.E93323C3ED5E8923A177740A973C27B2] - 11/03/2005 - 16:17:40 R--A- . (.MCCI - Sony Ericsson 750 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\k750mdm.sys

O58 - SDL:[MD5.9D5F5A70CA0B7C428EFCD73DB50E6AC7] - 11/03/2005 - 16:17:44 R--A- . (.MCCI - Sony Ericsson 750 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\k750mgmt.sys

O58 - SDL:[MD5.81CA2D57B2C14F76F4BA80846784BB3D] - 11/03/2005 - 16:17:46 R--A- . (.MCCI - Sony Ericsson 750 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\k750obex.sys

O58 - SDL:[MD5.4790F9D4BB512A03C3967FB4E576D0FB] - 11/03/2005 - 16:17:54 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\k750wh95.sys

O58 - SDL:[MD5.A03516D5C5FB064835DFF8FD1C251E5D] - 11/03/2005 - 16:17:56 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\k750whnt.sys

O58 - SDL:[MD5.B7C19EC8B0DD7EFA58AD41FFEB8B8CDA] - 08/09/2010 - 13:59:42 ---A- . (.Lavasoft AB - Boot Driver.) -- C:\WINDOWS\system32\drivers\Lbd.sys

O58 - SDL:[MD5.67B48A903430C6D4FB58CBACA1866601] - 29/04/2010 - 15:39:26 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys

O58 - SDL:[MD5.C7DD7D9739785BD3A6B8499EEC1DEE7E] - 29/04/2010 - 15:39:38 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys

O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys

O58 - SDL:[MD5.6623E51595C0076755C29C00846C4EB2] - 06/11/2007 - 21:22:06 ---A- . (.CACE Technologies - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\system32\drivers\npf.sys

O58 - SDL:[MD5.3ADB8BD6154A3EF87496E8FCE9C22493] - 30/06/2009 - 10:37:16 ---A- . (.Panda Security, S.L. - Panda Boot Driver.) -- C:\WINDOWS\system32\drivers\pavboot.sys

O58 - SDL:[MD5.07C02C892E8E1A72D6BF35004F0E9C5E] - 19/11/2005 - 02:13:18 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 SPR Protocol Driver.) -- C:\WINDOWS\system32\drivers\PCASp50.sys

O58 - SDL:[MD5.444F122E68DB44C0589227781F3C8B3F] - 19/09/2003 - 08:47:00 ---A- . (.Padus, Inc. - Padus® ASPI Shell.) -- C:\WINDOWS\system32\drivers\pfc.sys

O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 05/08/2004 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys

O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys

O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 05/08/2004 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys

O58 - SDL:[MD5.F76971070B64A4E7EA3DA23B772CA356] - 21/09/2004 - 16:39:50 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\RITCPT.SYS

O58 - SDL:[MD5.59509AD6CBC28F2C73056268985B3E48] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 Driver.) -- C:\WINDOWS\system32\drivers\s0016bus.sys

O58 - SDL:[MD5.8C4A9024CF84D61D4BC07F06DDF7B2D1] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0016cm.sys

O58 - SDL:[MD5.8C4A9024CF84D61D4BC07F06DDF7B2D1] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0016cmnt.sys

O58 - SDL:[MD5.44D115C6BE5DF0F32338DA1032923644] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB Ethernet Emulation (WDM class reg.) -- C:\WINDOWS\system32\drivers\s0016cr.sys

O58 - SDL:[MD5.B98C3A6F91F4FBA285AF9606A240C6B4] - 16/05/2008 - 12:33:14 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\s0016mdfl.sys

O58 - SDL:[MD5.8A83426F4FB7B5212825D9DE76368B1A] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\s0016mdm.sys

O58 - SDL:[MD5.7A78BBA97FEB5E6D24C49E93A3BF7287] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\s0016mgmt.sys

O58 - SDL:[MD5.34EF7B5F611957B73E7219DD5A222AD1] - 16/05/2008 - 12:33:14 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB Ethernet Emulation (NDIS 5 Minipo.) -- C:\WINDOWS\system32\drivers\s0016nd5.sys

O58 - SDL:[MD5.36792935847143E4A3CDA0DC87248487] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\s0016obex.sys

O58 - SDL:[MD5.927208754FB27FC3E7A659E77500C5D1] - 16/05/2008 - 12:33:14 ---A- . (.MCCI Corporation - Sony Ericsson Device 0016 USB Ethernet Emulation.) -- C:\WINDOWS\system32\drivers\s0016unic.sys

O58 - SDL:[MD5.DA9BB7BCBB5F3D4B4E9B1E767278259D] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0016wh.sys

O58 - SDL:[MD5.DA9BB7BCBB5F3D4B4E9B1E767278259D] - 16/05/2008 - 12:33:12 ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s0016whnt.sys

O58 - SDL:[MD5.EF4B5A8D53F15CB269469DD4E4BB0109] - 03/04/2007 - 13:59:30 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 Driver.) -- C:\WINDOWS\system32\drivers\s616bus.sys

O58 - SDL:[MD5.EB6A44CC4B7693C6A9C2C5B28A5F516F] - 03/04/2007 - 13:59:32 R--A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s616cm.sys

O58 - SDL:[MD5.EB6A44CC4B7693C6A9C2C5B28A5F516F] - 03/04/2007 - 13:59:32 R--A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s616cmnt.sys

O58 - SDL:[MD5.C1559340050A05B1552B42EB3CF5B26D] - 03/04/2007 - 13:59:36 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB Ethernet Emulation (WDM class regi.) -- C:\WINDOWS\system32\drivers\s616cr.sys

O58 - SDL:[MD5.96187731EEFCF83E844BC1CE6617AAEB] - 03/04/2007 - 13:59:36 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\s616mdfl.sys

O58 - SDL:[MD5.D2DD87368BFECFA099E50DC120F3F513] - 03/04/2007 - 13:59:38 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\s616mdm.sys

O58 - SDL:[MD5.5F0BE24E4D4FA134B0B2FEF35D3A9D90] - 03/04/2007 - 13:59:40 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\s616mgmt.sys

O58 - SDL:[MD5.B9B507FCC67E204EF38E05FFD4176345] - 03/04/2007 - 13:59:42 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB Ethernet Emulation (NDIS 5 Minipor.) -- C:\WINDOWS\system32\drivers\s616nd5.sys

O58 - SDL:[MD5.F123A1F2A04A0E8DBA80B64F0072475A] - 03/04/2007 - 13:59:42 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\s616obex.sys

O58 - SDL:[MD5.E7E55048EBD5C17BFA791B4A6EC3D54B] - 03/04/2007 - 13:59:42 R--A- . (.MCCI Corporation - Sony Ericsson Device 616 USB Ethernet Emulation.) -- C:\WINDOWS\system32\drivers\s616unic.sys

O58 - SDL:[MD5.BDFD2DD04DD4349604ACB4BA914F78D3] - 03/04/2007 - 13:59:44 R--A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s616wh.sys

O58 - SDL:[MD5.BDFD2DD04DD4349604ACB4BA914F78D3] - 03/04/2007 - 13:59:44 R--A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\s616whnt.sys

O58 - SDL:[MD5.C1AE5D1F53285D79A0B73A62AF20734F] - 06/11/2010 - 14:50:09 ---A- . (.Sunbelt Software - Anti-Rootkit Engine.) -- C:\WINDOWS\system32\drivers\SBREDrv.sys

O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 13/11/2007 - 11:25:54 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys

O58 - SDL:[MD5.E5B56569A9F79B70314FEDE6C953641E] - 09/01/2008 - 11:28:34 ---A- . (.Sony Ericsson Mobile Communications - seehcri Driver.) -- C:\WINDOWS\system32\drivers\seehcri.sys

O58 - SDL:[MD5.4C0D673281178CB496011A2E28571FC8] - 10/08/2005 - 13:44:04 ---A- . (.Protection Technology - StarForce Protection Environment Driver.) -- C:\WINDOWS\system32\drivers\sfdrv01.sys

O58 - SDL:[MD5.15BE2B5E4DC5B8623CF167720682ABC9] - 16/05/2005 - 14:20:39 ---A- . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\WINDOWS\system32\drivers\sfhlp02.sys

O58 - SDL:[MD5.D5A7E09D2C6A702809E49190D52ADC9F] - 03/11/2005 - 15:40:07 ---A- . (.Protection Technology - StarForce Protection VFS Driver.) -- C:\WINDOWS\system32\drivers\sfvfs02.sys

O58 - SDL:[MD5.6B33D0EBD30DB32E27D1D78FE946A754] - 13/04/2008 - 19:36:39 ---A- . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- C:\WINDOWS\system32\drivers\sisagp.sys

O58 - SDL:[MD5.A36EE93698802CD899F98BFD553D8185] - 17/06/2010 - 15:28:02 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\WINDOWS\system32\drivers\ssmdrv.sys

O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 05/08/2004 - 13:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys

O58 - SDL:[MD5.E266683FC95ABDEC17CD378564E1B54B] - 28/03/2008 - 18:28:22 ---A- . (.EnTech Taiwan - TVicHW32 Driver for Windows NT/2000/XP.) -- C:\WINDOWS\system32\drivers\TVICHW32.SYS

O58 - SDL:[MD5.8D05125FE197CE6E2440E82E433DA4CC] - 13/07/2007 - 09:56:08 R--A- . (.Pas de propriétaire - Video USB Driver.) -- C:\WINDOWS\system32\drivers\U6000ALL.sys

O58 - SDL:[MD5.E02540273564C17B8D1337A07945C19A] - 21/11/2003 - 17:09:08 ---A- . (.USB Compliance - USB Mass Storage Driver.) -- C:\WINDOWS\system32\drivers\umstor.sys

O58 - SDL:[MD5.58C938BDD89281DC1A64B1DCE675FCE4] - 17/08/2004 - 11:44:22 ---A- . (.VM - Video streaming and Capture Device Driver.) -- C:\WINDOWS\system32\drivers\usbVM31b.sys

O58 - SDL:[MD5.D7ADD0AF8424300B160DA131D15C6DE4] - 30/08/2004 - 11:55:28 R--A- . (.MCCI - Sony Ericsson V800-Vodafone 802SE Driver.) -- C:\WINDOWS\system32\drivers\v800bus.sys

O58 - SDL:[MD5.B462F5329B20699F840388AAB69891CB] - 30/08/2004 - 11:55:30 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\v800cm95.sys

O58 - SDL:[MD5.ABC077C88F1E9E9751914EF215F89FCA] - 30/08/2004 - 11:55:30 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\v800cmnt.sys

O58 - SDL:[MD5.A8674B23D186AE918FF5699CD292C969] - 30/08/2004 - 11:55:30 R--A- . (.MCCI - WDM class registry.) -- C:\WINDOWS\system32\drivers\v800cr.sys

O58 - SDL:[MD5.7B314C7CE2065082D6E2D8BFAB7D93EC] - 30/08/2004 - 11:55:30 R--A- . (.MCCI - Sony Ericsson V800-Vodafone 802SE USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\v800mdfl.sys

O58 - SDL:[MD5.B2F9621B65D24E4522ADD5EE380F0CC8] - 30/08/2004 - 11:55:32 R--A- . (.MCCI - Sony Ericsson V800-Vodafone 802SE USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\v800mdm.sys

O58 - SDL:[MD5.83F8CCAD73507C1435FF2033A25FA036] - 30/08/2004 - 11:55:34 R--A- . (.MCCI - Sony Ericsson V800-Vodafone 802SE USB WMC Device Management Dri.) -- C:\WINDOWS\system32\drivers\v800mgmt.sys

O58 - SDL:[MD5.7D66F658563CF251DA0A8A6EE1494B00] - 30/08/2004 - 11:55:34 R--A- . (.MCCI - Sony Ericsson V800-Vodafone 802SE USB WMC OBEX Interface Device.) -- C:\WINDOWS\system32\drivers\v800obex.sys

O58 - SDL:[MD5.DE5CBBB25920E5108CAAB1273394EE7C] - 30/08/2004 - 11:55:38 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\v800wh95.sys

O58 - SDL:[MD5.FCD037DD25ECFF6B6DB16B54F85D38B8] - 30/08/2004 - 11:55:40 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\v800whnt.sys

O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 05/08/2004 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys

O58 - SDL:[MD5.5A4D232E92413DF327B3675E42923ACC] - 24/05/2004 - 14:11:08 ---A- . (.VIA Technologies, Inc. - Vinyl AC'97 Codec Combo WDM Driver.) -- C:\WINDOWS\system32\drivers\viaudios.sys

O58 - SDL:[MD5.E09A01F781C2E7A779000745CE8A365C] - 19/09/2001 - 12:28:50 ---A- . (.VIA Technologies, Inc. - VIA USB Filter Driver.) -- C:\WINDOWS\system32\drivers\viausb1.sys

O58 - SDL:[MD5.EEFA971BF5EBBFC7D93692EC60AFCB78] - 21/09/2007 - 17:49:10 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\system32\drivers\videX32.sys

O58 - SDL:[MD5.FECE79A9AEF62AD5F11A3F4A14F1DEAD] - 27/06/2007 - 14:42:00 R--A- . (.VIA Technologies, Inc. - Vinyl AC'97 Codec Combo WDM Driver.) -- C:\WINDOWS\system32\drivers\vinyl97.sys

O58 - SDL:[MD5.949F86F5A8E493574BBB830C3D18E4A9] - 08/03/2005 - 09:50:16 ---A- . (.Copyright © VIA/S3 Graphics Co, Ltd. - VIA/S3G Miniport Driver.) -- C:\WINDOWS\system32\drivers\vtmini.sys

O58 - SDL:[MD5.C0F55CC0903CFDC819F6D857402B697C] - 05/01/2005 - 17:02:10 ---A- . (.VIA Technologies, Inc. - VIA USB Host Controller Lower Filter Driver.) -- C:\WINDOWS\system32\drivers\vulfnth.sys

O58 - SDL:[MD5.545D98A7F61AF1C7C4AD38B8F333E0B7] - 06/06/2005 - 16:51:38 ---A- . (.VIA Technologies, Inc. - VIA USB Roothub Lower Filter Driver.) -- C:\WINDOWS\system32\drivers\vulfntr.sys

O58 - SDL:[MD5.0F973C30146EBF2FCE236ABC541852C8] - 21/09/2004 - 16:39:50 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\VVBackd5.sys

O58 - SDL:[MD5.731EE7F3E635EE060EDE1BB26C90D231] - 24/05/2005 - 15:00:38 R--A- . (.MCCI - Sony Ericsson W800 Driver.) -- C:\WINDOWS\system32\drivers\w800bus.sys

O58 - SDL:[MD5.D62C7D02861876CF10E083E79037263B] - 24/05/2005 - 15:01:12 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\w800cm95.sys

O58 - SDL:[MD5.61525ED844C51CD6AFEDF7A281145CAC] - 24/05/2005 - 15:01:14 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\w800cmnt.sys

O58 - SDL:[MD5.00AB98DDAFF1FE2E6C44D908AB57BF6D] - 24/05/2005 - 15:01:12 R--A- . (.MCCI - WDM class registry.) -- C:\WINDOWS\system32\drivers\w800cr.sys

O58 - SDL:[MD5.EA5FD1AA88EA436BC6218282507EF450] - 24/05/2005 - 15:00:44 R--A- . (.MCCI - Sony Ericsson W800 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\w800mdfl.sys

O58 - SDL:[MD5.806ECED80C80EE07DD32FF720CA9D8D6] - 24/05/2005 - 15:00:46 R--A- . (.MCCI - Sony Ericsson W800 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\w800mdm.sys

O58 - SDL:[MD5.B420B0023F068CBF00E1B9591BED1437] - 24/05/2005 - 15:00:56 R--A- . (.MCCI - Sony Ericsson W800 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\w800mgmt.sys

O58 - SDL:[MD5.DCD2BE4EBB36CFAC0FE9094D5AA2C618] - 24/05/2005 - 15:01:16 R--A- . (.MCCI - Sony Ericsson W800 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\w800obex.sys

O58 - SDL:[MD5.7070C600A51D89BD9E5299EF4D8640D4] - 24/05/2005 - 15:00:34 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\w800wh95.sys

O58 - SDL:[MD5.90FD6504C14F1DD649CC4D88560463CC] - 24/05/2005 - 15:00:36 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\w800whnt.sys

O58 - SDL:[MD5.A26A7B50E931B11CE55F6AC21A818E6E] - 25/08/2005 - 15:04:06 R--A- . (.MCCI - Sony Ericsson 520 Driver.) -- C:\WINDOWS\system32\drivers\z520bus.sys

O58 - SDL:[MD5.5157CBE04DCD272902E2435834376E94] - 25/08/2005 - 15:04:04 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\z520cm95.sys

O58 - SDL:[MD5.C6A0A57D369932F1AB6880A308D626CE] - 25/08/2005 - 15:04:04 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\z520cmnt.sys

O58 - SDL:[MD5.F8C969CDFEAEC43C64DC2C416B71750C] - 25/08/2005 - 15:04:02 R--A- . (.MCCI - WDM class registry.) -- C:\WINDOWS\system32\drivers\z520cr.sys

O58 - SDL:[MD5.E7CF30AD8F473DC2A77C9157861CFE31] - 25/08/2005 - 15:04:00 R--A- . (.MCCI - Sony Ericsson 520 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\z520mdfl.sys

O58 - SDL:[MD5.7A500CCF1ACF7D21B59A21C533B978DB] - 25/08/2005 - 15:03:58 R--A- . (.MCCI - Sony Ericsson 520 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\z520mdm.sys

O58 - SDL:[MD5.DEE097485235990085F059981769EDE2] - 25/08/2005 - 15:03:54 R--A- . (.MCCI - Sony Ericsson 520 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\z520mgmt.sys

O58 - SDL:[MD5.50F9D7FB0EDA85D86C3267D893098704] - 25/08/2005 - 15:03:52 R--A- . (.MCCI - Sony Ericsson 520 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\z520obex.sys

O58 - SDL:[MD5.7BB3641E701A19C363970466CA0222DA] - 25/08/2005 - 15:03:40 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\z520wh95.sys

O58 - SDL:[MD5.99D257C33FFDE9BA783996C6BBA07A28] - 25/08/2005 - 15:03:38 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\z520whnt.sys

O58 - SDL:[MD5.C4E75E2C549137ED07FCC075A9767141] - 23/02/2005 - 14:11:00 R--A- . (.MCCI - Sony Ericsson Z800 Driver.) -- C:\WINDOWS\system32\drivers\z800bus.sys

O58 - SDL:[MD5.00C8F00E4754603570DD0C42A77B8D08] - 23/02/2005 - 14:11:00 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\z800cm95.sys

O58 - SDL:[MD5.D7DA6A936B8DF79A20A8289A7DAC017A] - 23/02/2005 - 14:11:02 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\z800cmnt.sys

O58 - SDL:[MD5.92CDC06EF91FCC4EA5D23DA324E93754] - 23/02/2005 - 14:11:02 R--A- . (.MCCI - WDM class registry.) -- C:\WINDOWS\system32\drivers\z800cr.sys

O58 - SDL:[MD5.DAA7CF523159946C635CEC73419EC408] - 23/02/2005 - 14:11:02 R--A- . (.MCCI - Sony Ericsson Z800 USB WMC Modem Filter Driver.) -- C:\WINDOWS\system32\drivers\z800mdfl.sys

O58 - SDL:[MD5.368E4BF66728848F66602F4CB95DC788] - 23/02/2005 - 14:11:04 R--A- . (.MCCI - Sony Ericsson Z800 USB WMC Modem WDM Driver.) -- C:\WINDOWS\system32\drivers\z800mdm.sys

O58 - SDL:[MD5.C902E1C9D12ECD6D5B73B0D10575341B] - 23/02/2005 - 14:11:06 R--A- . (.MCCI - Sony Ericsson Z800 USB WMC Device Management Driver.) -- C:\WINDOWS\system32\drivers\z800mgmt.sys

O58 - SDL:[MD5.3562D8FB0A2E254F304AB4BCBCA44CAB] - 23/02/2005 - 14:11:08 R--A- . (.MCCI - Sony Ericsson Z800 USB WMC OBEX Interface Device Driver.) -- C:\WINDOWS\system32\drivers\z800obex.sys

O58 - SDL:[MD5.1D306275FF0B1919BFF58B3AC9D6AA4C] - 23/02/2005 - 14:11:12 R--A- . (.MCCI - Windows 98/98SE/ME support functions.) -- C:\WINDOWS\system32\drivers\z800wh95.sys

O58 - SDL:[MD5.320C74622013992EF027B4D84170B164] - 23/02/2005 - 14:11:12 R--A- . (.MCCI - Windows 2000/XP support functions.) -- C:\WINDOWS\system32\drivers\z800whnt.sys

O58 - SDL:[MD5.E619852ADC1ED50E59B585E4C565A9D7] - 21/12/2008 - 20:05:12 RSH-- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\567574EF83.sys

O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ansi.sys

O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\country.sys

O58 - SDL:[MD5.77EBF3E9386DAA51551AF429052D88D0] - 03/04/1996 - 20:33:26 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\giveio.sys

O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\himem.sys

O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\key01.sys

O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\keyboard.sys

O58 - SDL:[MD5.690E9630583A0D0968A00EBA66905CE7] - 21/12/2008 - 20:05:12 -SHA- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\KGyGaAvL.sys

O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos.sys

O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos404.sys

O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos411.sys

O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos412.sys

O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos804.sys

O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio.sys

O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio404.sys

O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio411.sys

O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio412.sys

O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 05/08/2004 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio804.sys

O58 - SDL:[MD5.A568B9A9FFE2D9387222A5C90F86D731] - 17/07/2003 - 16:10:06 ---A- . (.VIA Networking Technologies, Inc. - Network Device Monitor Utility.) -- C:\WINDOWS\system32\ntsim.sys

O58 - SDL:[MD5.D74375BE63DCA31E6145248E4278893E] - 22/10/2003 - 17:54:14 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 4.0 Protocol Driver.) -- C:\WINDOWS\system32\Pcandis4.sys

O58 - SDL:[MD5.FC6BAFC20114160A6291C1C45545F137] - 22/10/2003 - 17:54:18 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 Protocol Driver.) -- C:\WINDOWS\system32\Pcandis5.sys

O58 - SDL:[MD5.5D6401DB90EC81B71F8E2C5C8F0FEF23] - 24/09/2006 - 14:28:47 ---A- . (.Windows ® 2000 DDK provider - SpeedFan Device Driver.) -- C:\WINDOWS\system32\speedfan.sys

 

 

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)

O61 - LFC:Last File Created 17/11/2010 - 01:42:56 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6 [561]

O61 - LFC:Last File Created 17/11/2010 - 01:42:56 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6 [134]

O61 - LFC:Last File Created 17/11/2010 - 08:04:36 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\Récent\XWZSSGQL.lnk [1073]

O61 - LFC:Last File Created 17/11/2010 - 08:04:36 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\Récent\lettre_motiv-karine[1].lnk [1258]

O61 - LFC:Last File Created 17/11/2010 - 08:05:20 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\Word11.pip [2024]

O61 - LFC:Last File Created 17/11/2010 - 08:17:26 ---A- C:\Documents And Settings\Sylvain\Application Data\Adobe\Acrobat\9.0\SharedDataEvents [5120]

O61 - LFC:Last File Created 17/11/2010 - 08:35:55 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101117_083553.reg [626]

O61 - LFC:Last File Created 17/11/2010 - 08:42:58 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.158.aawdef [26804]

O61 - LFC:Last File Created 17/11/2010 - 08:42:58 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.159.aawdef [11988]

O61 - LFC:Last File Created 17/11/2010 - 08:42:58 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.160.aawdef [16964]

O61 - LFC:Last File Created 17/11/2010 - 08:42:58 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.161.aawdef [11572]

O61 - LFC:Last File Created 17/11/2010 - 08:59:01 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\version.dat [10]

O61 - LFC:Last File Created 17/11/2010 - 08:59:01 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\version.dat [10]

O61 - LFC:Last File Created 17/11/2010 - 08:59:02 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWService.exe [1375992]

O61 - LFC:Last File Created 17/11/2010 - 08:59:02 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWService.exe.compressed [331444]

O61 - LFC:Last File Created 17/11/2010 - 08:59:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWTray.exe [928496]

O61 - LFC:Last File Created 17/11/2010 - 08:59:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWTray.exe.compressed [233949]

O61 - LFC:Last File Created 17/11/2010 - 08:59:04 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-Aware.exe.compressed [357423]

O61 - LFC:Last File Created 17/11/2010 - 08:59:05 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-Aware.exe [1528424]

O61 - LFC:Last File Created 17/11/2010 - 08:59:05 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe [977416]

O61 - LFC:Last File Created 17/11/2010 - 08:59:05 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe.compressed [250987]

O61 - LFC:Last File Created 17/11/2010 - 08:59:06 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe [989800]

O61 - LFC:Last File Created 17/11/2010 - 08:59:06 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe.compressed [253019]

O61 - LFC:Last File Created 17/11/2010 - 08:59:07 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\CEAPI.dll [994944]

O61 - LFC:Last File Created 17/11/2010 - 08:59:07 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\CEAPI.dll.compressed [299070]

O61 - LFC:Last File Created 17/11/2010 - 08:59:07 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\PrivacyClean.dll [97272]

O61 - LFC:Last File Created 17/11/2010 - 08:59:07 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\PrivacyClean.dll.compressed [33705]

O61 - LFC:Last File Created 17/11/2010 - 08:59:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\RPAPI.dll [272368]

O61 - LFC:Last File Created 17/11/2010 - 08:59:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\RPAPI.dll.compressed [85243]

O61 - LFC:Last File Created 17/11/2010 - 08:59:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Rebrand.dat [44084]

O61 - LFC:Last File Created 17/11/2010 - 08:59:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\ShellExt.dll [250736]

O61 - LFC:Last File Created 17/11/2010 - 08:59:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\ShellExt.dll.compressed [70609]

O61 - LFC:Last File Created 17/11/2010 - 08:59:09 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\UpdateManager.dll [546368]

O61 - LFC:Last File Created 17/11/2010 - 08:59:09 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\UpdateManager.dll.compressed [146133]

O61 - LFC:Last File Created 17/11/2010 - 08:59:09 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\VipreBridge.dll [177624]

O61 - LFC:Last File Created 17/11/2010 - 08:59:09 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\VipreBridge.dll.compressed [65288]

O61 - LFC:Last File Created 17/11/2010 - 08:59:10 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aawapi.dll [664784]

O61 - LFC:Last File Created 17/11/2010 - 08:59:10 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aawapi.dll.compressed [151523]

O61 - LFC:Last File Created 17/11/2010 - 08:59:10 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavalicense.dll [419640]

O61 - LFC:Last File Created 17/11/2010 - 08:59:10 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavalicense.dll.compressed [119219]

O61 - LFC:Last File Created 17/11/2010 - 08:59:11 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavamessage.dll [288856]

O61 - LFC:Last File Created 17/11/2010 - 08:59:11 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavamessage.dll.compressed [82156]

O61 - LFC:Last File Created 17/11/2010 - 08:59:11 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\threatwork.exe.compressed [239488]

O61 - LFC:Last File Created 17/11/2010 - 08:59:12 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\threatwork.exe [925888]

O61 - LFC:Last File Created 17/11/2010 - 09:04:13 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\Scan_2010-11-17-09-01-42.log [2344]

O61 - LFC:Last File Created 17/11/2010 - 12:19:47 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Assistants Microsoft .NET Framework 1.1.lnk.731b541aba637a9a79b77811a793ebc8.d97bd74fd2a1527ff0c1cff9e7662b.aawqff [1252]

O61 - LFC:Last File Created 17/11/2010 - 12:19:47 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\ConfigWizards.exe.72c0e961b129a249a5890fe7d97d261.f388570ef4adf91795ddb8574764d51.aawqff [49156]

O61 - LFC:Last File Created 17/11/2010 - 12:19:47 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\Microsoft .NET Framework 1.1 Wizards.lnk.a3b2959e4dd2fa03faedcbab83e5f9e.f4f0aad1189ce7e9078b935bd4a81db.aawqff [1172]

O61 - LFC:Last File Created 17/11/2010 - 12:22:20 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\Scan_2010-11-17-11-52-01.log [44480]

O61 - LFC:Last File Created 17/11/2010 - 12:36:52 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\Content\570FB14ABC805C46708F32F92F10C3B4 [618]

O61 - LFC:Last File Created 17/11/2010 - 12:36:52 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\MetaData\570FB14ABC805C46708F32F92F10C3B4 [174]

O61 - LFC:Last File Created 17/11/2010 - 12:36:59 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\Content\1B749B72855CB97BF2F58675617C9BF9 [576]

O61 - LFC:Last File Created 17/11/2010 - 12:36:59 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\MetaData\1B749B72855CB97BF2F58675617C9BF9 [162]

O61 - LFC:Last File Created 17/11/2010 - 12:38:43 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\Content\E891C648621A40AC7F773694A17FE76C [7652]

O61 - LFC:Last File Created 17/11/2010 - 12:38:43 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\MetaData\E891C648621A40AC7F773694A17FE76C [134]

O61 - LFC:Last File Created 17/11/2010 - 12:41:45 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\Content\E6024EAC88E6B6165D49FE3C95ADD735 [558]

O61 - LFC:Last File Created 17/11/2010 - 12:41:45 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\MetaData\E6024EAC88E6B6165D49FE3C95ADD735 [144]

O61 - LFC:Last File Created 17/11/2010 - 12:44:01 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\Content\3C83474D61E624A4F9844DF935AFE217 [569]

O61 - LFC:Last File Created 17/11/2010 - 12:44:01 -S-A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\CryptnetUrlCache\MetaData\3C83474D61E624A4F9844DF935AFE217 [142]

O61 - LFC:Last File Created 17/11/2010 - 12:48:01 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101117_124759.reg [2756]

O61 - LFC:Last File Created 17/11/2010 - 12:52:47 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101117_125246.reg [1218]

O61 - LFC:Last File Created 17/11/2010 - 12:57:41 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\be471027.avl [2290]

O61 - LFC:Last File Created 17/11/2010 - 13:09:46 ---A- C:\Documents And Settings\Sylvain\Mes documents\Mes Historiques de Conversation\chora_1796506940.xml [302366]

O61 - LFC:Last File Created 17/11/2010 - 13:09:46 ---A- C:\Documents And Settings\Sylvain\Mes documents\Mes Historiques de Conversation\novembre 2010\chora_1@hotmail.com.txt [3358]

O61 - LFC:Last File Created 17/11/2010 - 15:48:48 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\ip.vtd [264]

O61 - LFC:Last File Created 17/11/2010 - 16:22:16 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101117_162213.reg [372]

O61 - LFC:Last File Created 17/11/2010 - 16:39:05 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Internet Explorer\frameiconcache.dat [7028]

O61 - LFC:Last File Created 17/11/2010 - 20:07:15 ---A- C:\Documents And Settings\Sylvain\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2010-11-17 (20-07-15).txt [1072]

O61 - LFC:Last File Created 17/11/2010 - 21:09:18 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\bookmarkbackups\bookmarks-2010-11-17.json [5805]

O61 - LFC:Last File Created 17/11/2010 - 21:09:18 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\ua\br_log.pb.1290024558203 [395]

O61 - LFC:Last File Created 17/11/2010 - 22:48:03 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\ua\br_log.pb.1290030483453 [371]

O61 - LFC:Last File Created 17/11/2010 - 23:15:20 ---A- C:\Documents And Settings\Sylvain\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [7994]

O61 - LFC:Last File Created 18/11/2010 - 07:06:12 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.162.aawdef [56324]

O61 - LFC:Last File Created 18/11/2010 - 07:06:12 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.163.aawdef [24564]

O61 - LFC:Last File Created 18/11/2010 - 07:08:21 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\formhistory.sqlite [20480]

O61 - LFC:Last File Created 18/11/2010 - 07:52:07 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\ua\br_log.pb.1290063127296 [371]

O61 - LFC:Last File Created 18/11/2010 - 08:05:44 -SH-- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\8ON723N0\desktop.ini [67]

O61 - LFC:Last File Created 18/11/2010 - 08:05:44 -SH-- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\AMNEI2YK\desktop.ini [67]

O61 - LFC:Last File Created 18/11/2010 - 08:05:44 -SH-- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\TNGSYHGO\desktop.ini [67]

O61 - LFC:Last File Created 18/11/2010 - 08:05:44 -SH-- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\desktop.ini [67]

O61 - LFC:Last File Created 18/11/2010 - 08:05:45 -SH-- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\Q103NBFK\desktop.ini [67]

O61 - LFC:Last File Created 18/11/2010 - 08:05:45 -SH-- C:\Documents And Settings\LocalService\Local Settings\temp\History\History.IE5\desktop.ini [145]

O61 - LFC:Last File Created 18/11/2010 - 09:48:31 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\386be9a0.avl [1700]

O61 - LFC:Last File Created 18/11/2010 - 11:51:56 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\defs0.std [3129669]

O61 - LFC:Last File Created 18/11/2010 - 11:52:00 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\pack0.std [12847]

O61 - LFC:Last File Created 18/11/2010 - 12:25:58 ---A- C:\Documents And Settings\GACHOD Sylvain\Favoris\sylvain\divx-dvd\XXXX\Home Whores - home made movies.url [223]

O61 - LFC:Last File Created 18/11/2010 - 12:26:47 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\A0116808.exe.6017f7333d4747712dd84a91ca5754.f388570ef4adf91795ddb8574764d51.aawqff [49156]

O61 - LFC:Last File Created 18/11/2010 - 12:26:47 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\MigPolWin.exe.281f4d4a4e27edb2c152b3ac0b3acdb.7c83196df78454e2f471ed73fd597f4.aawqff [49156]

O61 - LFC:Last File Created 18/11/2010 - 12:27:58 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\ThreatWork.dat [2010]

O61 - LFC:Last File Created 18/11/2010 - 12:57:07 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\Scan_2010-11-18-07-10-18.log [80896]

O61 - LFC:Last File Created 18/11/2010 - 15:16:44 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Media Player\LocalMLS_0.wmdb [367646]

O61 - LFC:Last File Created 18/11/2010 - 15:16:44 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Media\11.0\WMSDKNS.XML [10277]

O61 - LFC:Last File Created 18/11/2010 - 16:28:34 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Media Player\wmpfolders.wmdb [48920]

O61 - LFC:Last File Created 18/11/2010 - 16:48:42 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\cname.wtd [31520]

O61 - LFC:Last File Created 18/11/2010 - 16:48:43 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\hcol.wtd [33798]

O61 - LFC:Last File Created 18/11/2010 - 16:48:44 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\whsl.wtd [397088]

O61 - LFC:Last File Created 18/11/2010 - 17:36:32 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\Récent\VQIKS07A.lnk [1073]

O61 - LFC:Last File Created 18/11/2010 - 17:36:32 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\Récent\shrek-le-vrai[1].lnk [1228]

O61 - LFC:Last File Created 18/11/2010 - 17:36:32 --HA- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\Récent\index.dat [1472]

O61 - LFC:Last File Created 18/11/2010 - 17:36:44 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\PowerP11.pip [1540]

O61 - LFC:Last File Created 18/11/2010 - 18:03:31 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\Backup\000\000084.tmd [2331]

O61 - LFC:Last File Created 18/11/2010 - 18:03:57 ---A- C:\Documents And Settings\All Users\Application Data\Real\Update\AllInstProds [98]

O61 - LFC:Last File Created 18/11/2010 - 18:03:57 ---A- C:\Documents And Settings\All Users\Application Data\Real\Update\LastAUCheck [10]

O61 - LFC:Last File Created 18/11/2010 - 18:05:04 ---A- C:\Documents And Settings\Sylvain\Application Data\dvdcss\CACHEDIR.TAG [199]

O61 - LFC:Last File Created 18/11/2010 - 18:06:29 ---A- C:\Documents And Settings\Sylvain\Application Data\vlc\CACHEDIR.TAG [193]

O61 - LFC:Last File Created 18/11/2010 - 18:06:29 ---A- C:\Documents And Settings\Sylvain\Application Data\vlc\ml.xspf [304]

O61 - LFC:Last File Created 18/11/2010 - 18:06:29 ---A- C:\Documents And Settings\Sylvain\Application Data\vlc\plugins-04041e.dat [402160]

O61 - LFC:Last File Created 18/11/2010 - 18:06:29 ---A- C:\Documents And Settings\Sylvain\Application Data\vlc\vlc-qt-interface.ini [1278]

O61 - LFC:Last File Created 18/11/2010 - 18:06:29 ---A- C:\Documents And Settings\Sylvain\Application Data\vlc\vlcrc [76442]

O61 - LFC:Last File Created 18/11/2010 - 20:49:50 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\ua\br_log.pb.1290109790250 [370]

O61 - LFC:Last File Created 18/11/2010 - 23:38:01 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101118_233800.reg [1192]

O61 - LFC:Last File Created 19/11/2010 - 03:17:08 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\ih.vdx [14400]

O61 - LFC:Last File Created 19/11/2010 - 06:49:39 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\ThreatDT.vdx [2656044]

O61 - LFC:Last File Created 19/11/2010 - 06:49:39 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\ThreatID.vdx [487200]

O61 - LFC:Last File Created 19/11/2010 - 06:52:58 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\white.wtd [23525820]

O61 - LFC:Last File Created 19/11/2010 - 06:53:02 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\bhsl.vtd [1550760]

O61 - LFC:Last File Created 19/11/2010 - 08:45:08 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\urlclassifierkey3.txt [154]

O61 - LFC:Last File Created 19/11/2010 - 08:45:55 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\pluginreg.dat [14261]

O61 - LFC:Last File Created 19/11/2010 - 08:46:10 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\hf_config.pb [5694]

O61 - LFC:Last File Created 19/11/2010 - 08:46:10 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\prefs.sqlite [7168]

O61 - LFC:Last File Created 19/11/2010 - 08:47:37 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\ctid.vtd [24805370]

O61 - LFC:Last File Created 19/11/2010 - 08:48:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\cblk.vtd [36604638]

O61 - LFC:Last File Created 19/11/2010 - 08:55:01 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\blocklist.xml [4496]

O61 - LFC:Last File Created 19/11/2010 - 08:55:28 ---A- C:\Documents And Settings\Sylvain\Application Data\CocoonSoftware\QMC\Error.log [17839]

O61 - LFC:Last File Created 19/11/2010 - 08:59:31 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\kbu.dat [2049648]

O61 - LFC:Last File Created 19/11/2010 - 09:00:07 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\DefVer.txt [25]

O61 - LFC:Last File Created 19/11/2010 - 09:10:44 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101119_091034.reg [209960]

O61 - LFC:Last File Created 19/11/2010 - 09:11:08 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101119_091105.reg [11706]

O61 - LFC:Last File Created 19/11/2010 - 09:11:39 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101119_091137.reg [282]

O61 - LFC:Last File Created 19/11/2010 - 09:14:33 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\WDSetup\QUICKMEDIACONVERTER\QUICKMEDIACONVERTER_WDSETUP.wx [275]

O61 - LFC:Last File Created 19/11/2010 - 11:31:09 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\bookmarkbackups\bookmarks-2010-11-19.json [5805]

O61 - LFC:Last File Created 19/11/2010 - 11:31:10 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Cooliris\2f11a22b-efdf-5b45-84b0-d01aa183a619\ua\br_log.pb.1290162670343 [396]

O61 - LFC:Last File Created 19/11/2010 - 11:31:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\localstore.rdf [10778]

O61 - LFC:Last File Created 19/11/2010 - 11:31:49 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\urlclassifier3.sqlite [44654592]

O61 - LFC:Last File Created 19/11/2010 - 11:31:52 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\cert8.db [98304]

O61 - LFC:Last File Created 19/11/2010 - 11:31:52 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\key3.db [16384]

O61 - LFC:Last File Created 19/11/2010 - 11:52:48 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\cookies.sqlite [39936]

O61 - LFC:Last File Created 19/11/2010 - 11:52:48 ---A- C:\Documents And Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\yzkz7tna.default\places.sqlite [307200]

O61 - LFC:Last File Created 19/11/2010 - 15:18:46 ---A- C:\Documents And Settings\All Users\Application Data\Messenger Plus!\Promotions\Listing.dat [1902]

O61 - LFC:Last File Created 19/11/2010 - 15:56:01 --HA- C:\Documents And Settings\Administrateur\ntuser.dat.LOG [1024]

O61 - LFC:Last File Created 19/11/2010 - 15:56:01 --HA- C:\Documents And Settings\abSCJZBAcIXKdZVpY\ntuser.dat.LOG [1024]

O61 - LFC:Last File Created 19/11/2010 - 16:30:07 -SHA- C:\Documents And Settings\LocalService\Local Settings\temp\Cookies\index.dat [16384]

O61 - LFC:Last File Created 19/11/2010 - 16:30:07 -SHA- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\index.dat [32768]

O61 - LFC:Last File Created 19/11/2010 - 16:30:07 -SHA- C:\Documents And Settings\LocalService\Local Settings\temp\History\History.IE5\index.dat [16384]

O61 - LFC:Last File Created 19/11/2010 - 16:30:55 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb [11784192]

O61 - LFC:Last File Created 19/11/2010 - 16:54:19 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\Backup\new\contacts.edb [48259072]

O61 - LFC:Last File Created 19/11/2010 - 16:54:20 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\Backup\new\edb003B8.log [4194304]

O61 - LFC:Last File Created 19/11/2010 - 16:54:20 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\LogFiles\edb003B8.log [4194304]

O61 - LFC:Last File Created 19/11/2010 - 16:54:20 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 19/11/2010 - 16:54:21 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 19/11/2010 - 16:54:30 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\Backup\new\contacts.edb [6316032]

O61 - LFC:Last File Created 19/11/2010 - 16:54:31 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\LogFiles\edb00149.log [4194304]

O61 - LFC:Last File Created 19/11/2010 - 16:54:33 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 19/11/2010 - 16:54:34 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 19/11/2010 - 16:54:34 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\Backup\new\edb00149.log [4194304]

O61 - LFC:Last File Created 19/11/2010 - 18:54:35 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\Backup\new\contacts.edb [4218880]

O61 - LFC:Last File Created 19/11/2010 - 18:54:36 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\LogFiles\edb0012E.log [4194304]

O61 - LFC:Last File Created 19/11/2010 - 18:54:37 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 19/11/2010 - 18:54:38 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 19/11/2010 - 18:54:38 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\Backup\new\edb0012E.log [4194304]

O61 - LFC:Last File Created 19/11/2010 - 18:59:58 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\CONFIG\avwin.ini [4670]

O61 - LFC:Last File Created 19/11/2010 - 19:01:58 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\27a95972.avl [2192]

O61 - LFC:Last File Created 19/11/2010 - 19:11:03 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine\AAWQF20101119191103.aawqif [4176]

O61 - LFC:Last File Created 19/11/2010 - 19:16:34 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\MiniMessage\3 [132]

O61 - LFC:Last File Created 19/11/2010 - 19:16:34 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\rc.dat [9]

O61 - LFC:Last File Created 19/11/2010 - 19:16:36 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.164.aawdef [33444]

O61 - LFC:Last File Created 19/11/2010 - 19:16:37 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.165.aawdef [12980]

O61 - LFC:Last File Created 19/11/2010 - 19:16:37 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.166.aawdef [4884]

O61 - LFC:Last File Created 19/11/2010 - 19:16:37 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.167.aawdef [11892]

O61 - LFC:Last File Created 19/11/2010 - 19:16:40 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\core.aawdef [32620688]

O61 - LFC:Last File Created 19/11/2010 - 19:16:40 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\genotype.ows [441974]

O61 - LFC:Last File Created 19/11/2010 - 19:16:40 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\core.aawdef [32620688]

O61 - LFC:Last File Created 19/11/2010 - 19:16:40 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\genotype.ows [441974]

O61 - LFC:Last File Created 19/11/2010 - 19:18:16 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\bhmem.vtd [7624]

O61 - LFC:Last File Created 19/11/2010 - 19:18:16 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\whmem.wtd [1556]

O61 - LFC:Last File Created 19/11/2010 - 19:18:16 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\wmem.wtd [34504]

O61 - LFC:Last File Created 19/11/2010 - 19:18:17 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\RTmem.vdx [3244]

O61 - LFC:Last File Created 19/11/2010 - 19:18:17 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\TImem.vdx [1204]

O61 - LFC:Last File Created 19/11/2010 - 19:18:17 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\bmem.vtd [53680]

O61 - LFC:Last File Created 19/11/2010 - 19:18:17 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended\cmem.vtd [60654]

O61 - LFC:Last File Created 19/11/2010 - 19:18:39 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\Update.log [73582]

O61 - LFC:Last File Created 19/11/2010 - 19:18:40 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\aawadmin.log [75442]

O61 - LFC:Last File Created 19/11/2010 - 19:19:13 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\core.aawdef.hashdiskcache.bin [33511148]

O61 - LFC:Last File Created 19/11/2010 - 19:19:17 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\core.aawdef.fingerprintdiskcache.bin [902320]

O61 - LFC:Last File Created 19/11/2010 - 19:19:17 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\core.aawdef.regdiskcache.bin [11520974]

O61 - LFC:Last File Created 19/11/2010 - 19:49:46 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\news.dat [728]

O61 - LFC:Last File Created 19/11/2010 - 20:08:33 ---A- C:\Documents And Settings\Sylvain\Bureau\Jackie Chan Adventures Saison 2 épisode 009 en streaming - Jackie Chan Adventures S2E009 - Animes Mangas en streaming FR et VOSTFR.url [1536]

O61 - LFC:Last File Created 19/11/2010 - 20:11:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\config.dat [778]

O61 - LFC:Last File Created 19/11/2010 - 20:11:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\link.txt [138]

O61 - LFC:Last File Created 19/11/2010 - 20:11:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\local.dat [87]

O61 - LFC:Last File Created 19/11/2010 - 20:11:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\news.txt [138]

O61 - LFC:Last File Created 19/11/2010 - 20:11:58 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [5702009]

O61 - LFC:Last File Created 19/11/2010 - 23:17:46 ---A- C:\Documents And Settings\Sylvain\Favoris\sylvain\informatique\Zebulon.fr Le site de l'optimisation PC et Windows.url [211]

O61 - LFC:Last File Created 20/11/2010 - 00:40:25 ---A- C:\Documents And Settings\Sylvain\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2010-11-20 (00-40-25).txt [1072]

O61 - LFC:Last File Created 20/11/2010 - 08:36:28 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\statistics.dat [1684351]

O61 - LFC:Last File Created 20/11/2010 - 08:36:59 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\License\guid.dat [72]

O61 - LFC:Last File Created 20/11/2010 - 08:37:00 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\usage_statistics.dat [48527]

O61 - LFC:Last File Created 20/11/2010 - 08:37:40 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\IDX\master.idx [56]

O61 - LFC:Last File Created 20/11/2010 - 08:37:44 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\settings.dat [76169]

O61 - LFC:Last File Created 20/11/2010 - 08:37:56 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\062227b8.avl [1530]

O61 - LFC:Last File Created 20/11/2010 - 08:40:27 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\quarantine.dat [10586]

O61 - LFC:Last File Created 20/11/2010 - 08:40:27 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\rp_rules.dat [44]

O61 - LFC:Last File Created 20/11/2010 - 08:40:27 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\rp_stats.dat [774]

O61 - LFC:Last File Created 20/11/2010 - 08:40:27 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\whitelist.dat [9]

O61 - LFC:Last File Created 20/11/2010 - 08:40:49 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\runningScanLog.log [482]

O61 - LFC:Last File Created 20/11/2010 - 08:41:06 ---A- C:\Documents And Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs\Scan_2010-11-19-19-18-40.log [81480]

O61 - LFC:Last File Created 20/11/2010 - 08:58:19 -SHA- C:\Documents And Settings\LocalService\IETldCache\index.dat [245760]

O61 - LFC:Last File Created 20/11/2010 - 11:00:13 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\IdentityCRL\Production\MetaConfig.xml [163]

O61 - LFC:Last File Created 20/11/2010 - 11:05:50 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\Backup\new\contacts.edb [27287552]

O61 - LFC:Last File Created 20/11/2010 - 11:05:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\LogFiles\edb0016B.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 11:05:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\LogFiles\edbtmp.log [1048576]

O61 - LFC:Last File Created 20/11/2010 - 11:05:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 20/11/2010 - 11:05:52 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 20/11/2010 - 11:05:52 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\Backup\new\edb0016B.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 11:06:05 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\Backup\new\contacts.edb [4218880]

O61 - LFC:Last File Created 20/11/2010 - 11:06:06 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\LogFiles\edb000AE.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 11:06:06 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\LogFiles\edbtmp.log [1048576]

O61 - LFC:Last File Created 20/11/2010 - 11:06:06 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 20/11/2010 - 11:06:07 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 20/11/2010 - 11:06:07 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\Backup\new\edb000AE.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 11:06:09 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\dbstore.ini [174]

O61 - LFC:Last File Created 20/11/2010 - 11:06:11 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\dbstore.ini [174]

O61 - LFC:Last File Created 20/11/2010 - 11:07:19 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\Backup\new\contacts.edb [48259072]

O61 - LFC:Last File Created 20/11/2010 - 11:07:20 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\LogFiles\edb003FF.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 11:07:21 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 20/11/2010 - 11:07:22 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 20/11/2010 - 11:07:22 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\Backup\new\edb003FF.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 11:07:45 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 20/11/2010 - 11:08:15 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 20/11/2010 - 11:43:45 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Windows\Themes\Custom.theme [7817]

O61 - LFC:Last File Created 20/11/2010 - 11:44:03 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Wallpaper1.bmp [853974]

O61 - LFC:Last File Created 20/11/2010 - 11:44:03 -SHA- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Internet Explorer\Desktop.htt [2474]

O61 - LFC:Last File Created 20/11/2010 - 12:00:40 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\HongKongWallpaper_1280.jpg [110399]

O61 - LFC:Last File Created 20/11/2010 - 12:14:01 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\52503135.avl [1774]

O61 - LFC:Last File Created 20/11/2010 - 12:14:58 -SHA- C:\Documents And Settings\LocalService\Recent\Desktop.ini [150]

O61 - LFC:Last File Created 20/11/2010 - 12:15:50 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\Backup\000\000085.tmd [2615]

O61 - LFC:Last File Created 20/11/2010 - 12:17:22 ---A- C:\Documents And Settings\LocalService\Bureau\AVSCAN-20101120-083919-2C7B9A80.LOG [49238]

O61 - LFC:Last File Created 20/11/2010 - 12:18:18 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealShare\RealShare_1_1.xml [65706]

O61 - LFC:Last File Created 20/11/2010 - 12:19:10 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\skins\data\normal\state.ini [1119]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\ErrorLogs\GenDevices.log [1173]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\Backup\000\000086.tmd [2798]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\TRACKS.DBF [71419]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\TRACKS.FPT [219732]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\TRACKS2.CDX [3072]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\dbdata.txt [44]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\listview.dat [668]

O61 - LFC:Last File Created 20/11/2010 - 12:19:14 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealPlayer\db\treestate.dat [2611]

O61 - LFC:Last File Created 20/11/2010 - 12:20:17 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealConverter\data\normal\state.ini [120]

O61 - LFC:Last File Created 20/11/2010 - 12:20:18 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\RealConverter\RealConverter_1_0.xml [109191]

O61 - LFC:Last File Created 20/11/2010 - 12:23:21 ---A- C:\Documents And Settings\Sylvain\Bureau\SYLVAIN\Reg files c cleaner\cc_20101120_122318.reg [464]

O61 - LFC:Last File Created 20/11/2010 - 12:47:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\LogFiles\edb.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 12:47:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\contacts.edb [27279360]

O61 - LFC:Last File Created 20/11/2010 - 12:47:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a9192c62-6dc8-4b7e-b1fb-527aaabc37e3}\DBStore\tempedb.edb [262144]

O61 - LFC:Last File Created 20/11/2010 - 12:47:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\LogFiles\edb.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 12:47:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\contacts.edb [4210688]

O61 - LFC:Last File Created 20/11/2010 - 12:47:51 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{c9627de0-2bcb-4248-9f62-b71a7155b887}\DBStore\tempedb.edb [262144]

O61 - LFC:Last File Created 20/11/2010 - 12:48:07 -SH-- C:\Documents And Settings\Sylvain\ntuser.ini [284]

O61 - LFC:Last File Created 20/11/2010 - 12:49:15 -SHA- C:\Documents And Settings\NetworkService\Local Settings\desktop.ini [62]

O61 - LFC:Last File Created 20/11/2010 - 12:49:20 -SHA- C:\Documents And Settings\LocalService\Local Settings\desktop.ini [62]

O61 - LFC:Last File Created 20/11/2010 - 12:49:21 --HA- C:\Documents And Settings\FLORIAN\ntuser.dat.LOG [1024]

O61 - LFC:Last File Created 20/11/2010 - 12:49:26 ---A- C:\Documents And Settings\LocalService\Local Settings\Historique\History.IE5\index.dat [32768]

O61 - LFC:Last File Created 20/11/2010 - 12:49:26 -SHA- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Credentials\S-1-5-21-4135148708-4229327457-639787953-1006\Credentials [1964]

O61 - LFC:Last File Created 20/11/2010 - 12:49:26 -SHA- C:\Documents And Settings\Sylvain\Local Settings\desktop.ini [62]

O61 - LFC:Last File Created 20/11/2010 - 12:49:26 -SHA- C:\Documents And Settings\LocalService\Cookies\index.dat [16384]

O61 - LFC:Last File Created 20/11/2010 - 12:49:32 ---A- C:\Documents And Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat [32768]

O61 - LFC:Last File Created 20/11/2010 - 12:49:32 -SHA- C:\Documents And Settings\NetworkService\Cookies\index.dat [32768]

O61 - LFC:Last File Created 20/11/2010 - 12:49:32 -SHA- C:\Documents And Settings\NetworkService\IETldCache\index.dat [262144]

O61 - LFC:Last File Created 20/11/2010 - 12:49:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\schema.ini [4334]

O61 - LFC:Last File Created 20/11/2010 - 12:50:13 ---A- C:\Documents And Settings\Sylvain\Application Data\Real\rnadmin\rnsystem.dat [1086]

O61 - LFC:Last File Created 20/11/2010 - 12:50:59 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\EVENTDB\avevtdb.dbe [251904]

O61 - LFC:Last File Created 20/11/2010 - 12:51:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat [5469]

O61 - LFC:Last File Created 20/11/2010 - 12:51:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat [5469]

O61 - LFC:Last File Created 20/11/2010 - 12:51:25 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\JOBS\updjob.avj [1530]

O61 - LFC:Last File Created 20/11/2010 - 12:53:36 ---A- C:\Documents And Settings\Sylvain\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0]

O61 - LFC:Last File Created 20/11/2010 - 12:53:37 ---A- C:\Documents And Settings\Sylvain\Tracing\WindowsLiveMessenger-uccapi-1.uccapilog [0]

O61 - LFC:Last File Created 20/11/2010 - 12:54:21 -SHA- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Credentials\S-1-5-21-4135148708-4229327457-639787953-1006\Credentials [3258]

O61 - LFC:Last File Created 20/11/2010 - 12:54:24 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\dbstore.ini [174]

O61 - LFC:Last File Created 20/11/2010 - 12:54:41 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\dbstore.ini [174]

O61 - LFC:Last File Created 20/11/2010 - 12:54:48 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\dbstore.ini [174]

O61 - LFC:Last File Created 20/11/2010 - 12:54:50 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\dbstore.ini [174]

O61 - LFC:Last File Created 20/11/2010 - 12:54:56 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Messenger\ContactsLog.txt [2863218]

O61 - LFC:Last File Created 20/11/2010 - 12:55:08 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\LogFiles\edb00400.log [4194304]

O61 - LFC:Last File Created 20/11/2010 - 12:55:14 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{050bab59-bf4f-4b93-b048-2f1d96dfe49f}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 20/11/2010 - 12:55:14 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{a0c565f3-fe99-4bee-a75b-dbb0f824f4d1}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 20/11/2010 - 12:56:44 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{4045b0f0-dfd4-4749-a168-201959f4c725}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 20/11/2010 - 12:58:15 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Windows Live Contacts\{0245cd0c-4ff6-47f1-a2ed-57a8becbfc67}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 20/11/2010 - 13:00:03 -SH-- C:\Documents And Settings\Sylvain\Local Settings\Historique\History.IE5\desktop.ini [145]

O61 - LFC:Last File Created 20/11/2010 - 13:00:03 -SH-- C:\Documents And Settings\Sylvain\Local Settings\Historique\desktop.ini [145]

O61 - LFC:Last File Created 20/11/2010 - 13:12:26 ---A- C:\Documents And Settings\Sylvain\Application Data\Adobe\Flash Player\AssetCache\SX4B63GB\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu [151]

O61 - LFC:Last File Created 20/11/2010 - 13:21:40 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Office\OIS11.pip [428]

O61 - LFC:Last File Created 20/11/2010 - 13:22:34 ---A- C:\Documents And Settings\Sylvain\Application Data\Microsoft\OIS\Toolbars.dat [837]

O61 - LFC:Last File Created 20/11/2010 - 13:36:21 -SHA- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [147456]

O61 - LFC:Last File Created 20/11/2010 - 13:40:08 ---A- C:\Documents And Settings\Sylvain\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat [294912]

O61 - LFC:Last File Created 20/11/2010 - 13:40:47 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@xiti[1].txt [106]

O61 - LFC:Last File Created 20/11/2010 - 13:40:49 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@alenty[1].txt [102]

O61 - LFC:Last File Created 20/11/2010 - 13:40:49 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@questionmarket[2].txt [178]

O61 - LFC:Last File Created 20/11/2010 - 13:40:56 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@sonyericsson[1].txt [114]

O61 - LFC:Last File Created 20/11/2010 - 13:41:06 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@bs.serving-sys[1].txt [110]

O61 - LFC:Last File Created 20/11/2010 - 13:41:25 -SHA- C:\Documents And Settings\Sylvain\Recent\Desktop.ini [150]

O61 - LFC:Last File Created 20/11/2010 - 13:41:26 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@zebulon[1].txt [689]

O61 - LFC:Last File Created 20/11/2010 - 13:41:27 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@forum.zebulon[1].txt [382]

O61 - LFC:Last File Created 20/11/2010 - 13:41:27 -SH-- C:\Documents And Settings\Sylvain\Local Settings\Temporary Internet Files\desktop.ini [67]

O61 - LFC:Last File Created 20/11/2010 - 13:41:29 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@www.zebulon[2].txt [101]

O61 - LFC:Last File Created 20/11/2010 - 13:41:30 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@specificclick[1].txt [623]

O61 - LFC:Last File Created 20/11/2010 - 13:41:31 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@serving-sys[2].txt [709]

O61 - LFC:Last File Created 20/11/2010 - 13:41:54 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{8D1D2BB0-F4A3-11DF-A5D7-00110993C925}.dat [4096]

O61 - LFC:Last File Created 20/11/2010 - 13:42:00 ---A- C:\Documents And Settings\Sylvain\Recent\ZHPDiag.lnk [306]

O61 - LFC:Last File Created 20/11/2010 - 13:42:41 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{6283E7A4-F4A3-11DF-A5D7-00110993C925}.dat [34816]

O61 - LFC:Last File Created 20/11/2010 - 13:43:20 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ZHP\ZHPDiag.lnk [531]

O61 - LFC:Last File Created 20/11/2010 - 13:43:45 ---A- C:\Documents And Settings\Sylvain\Local Settings\Historique\History.IE5\index.dat [98304]

O61 - LFC:Last File Created 20/11/2010 - 13:43:45 -SHA- C:\Documents And Settings\Sylvain\Cookies\index.dat [49152]

O61 - LFC:Last File Created 20/11/2010 - 13:43:47 ---A- C:\Documents And Settings\All Users\Application Data\Real\RealUpgrade\RealUpgrade_1_1.xml [1069]

O61 - LFC:Last File Created 20/11/2010 - 13:45:05 ---A- C:\Documents And Settings\Sylvain\Local Settings\Historique\History.IE5\MSHist012010112020101121\index.dat [81920]

O61 - LFC:Last File Created 20/11/2010 - 13:45:05 -SHA- C:\Documents And Settings\Sylvain\Application Data\Microsoft\Internet Explorer\UserData\index.dat [32768]

O61 - LFC:Last File Created 20/11/2010 - 13:45:05 -SHA- C:\Documents And Settings\Sylvain\IECompatCache\index.dat [540672]

O61 - LFC:Last File Created 20/11/2010 - 13:45:05 -SHA- C:\Documents And Settings\Sylvain\IETldCache\index.dat [262144]

O61 - LFC:Last File Created 20/11/2010 - 13:45:05 -SHA- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat [32768]

O61 - LFC:Last File Created 20/11/2010 - 13:45:05 -SHA- C:\Documents And Settings\Sylvain\PrivacIE\index.dat [16187392]

O61 - LFC:Last File Created 20/11/2010 - 13:45:06 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@google[1].txt [347]

O61 - LFC:Last File Created 20/11/2010 - 13:45:21 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@www.sony[1].txt [117]

O61 - LFC:Last File Created 20/11/2010 - 13:45:24 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@sonyeurope.112.2o7[1].txt [126]

O61 - LFC:Last File Created 20/11/2010 - 13:45:34 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@sony[1].txt [629]

O61 - LFC:Last File Created 20/11/2010 - 13:47:21 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@xgraph[2].txt [400]

O61 - LFC:Last File Created 20/11/2010 - 13:49:04 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@www.sonyericsson[2].txt [264]

O61 - LFC:Last File Created 20/11/2010 - 13:49:17 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@www.playnow-arena[2].txt [93]

O61 - LFC:Last File Created 20/11/2010 - 13:49:24 ---A- C:\Documents And Settings\Sylvain\Cookies\sylvain@addthis[1].txt [436]

O61 - LFC:Last File Created 20/11/2010 - 13:51:20 ---A- C:\Documents And Settings\Sylvain\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{FF7D5B3A-F4A3-11DF-A5D7-00110993C925}.dat [82432]

 

 

---\\ Alternate Data Stream File (ADS) (O62)

O62 - ADS:Alternate Data Stream File - C:\WINDOWS\System32\tasklist.exe:Zone.Identifier

O62 - ADS:Alternate Data Stream File - C:\WINDOWS\System32\xvidcore.zip:Zone.Identifier

 

 

---\\ Liste des outils de nettoyage (LATC) (O63)

O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1

 

 

---\\ Liste des services Legacy (LALS) (O64)

O64 - Services: CurCS - "c:\program files\a square\a-squared free\a2service.exe (.not file.) - a-squared Free Service (a2free) .(.Pas de propriétaire - Pas de description.) - LEGACY_A2FREE

O64 - Services: CurCS - C:\WINDOWS\system32\drivers\afd.sys - AFD (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD

O64 - Services: CurCS - C:\WINDOWS\system32\agrsmsvc.exe - Agere Modem Call Progress Audio (AgereModemAudio) .(.Agere Systems - Agere Soft Modem Call Progress Service.) - LEGACY_AGEREMODEMAUDIO

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Avertissement (Alerter) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ALERTER

O64 - Services: CurCS - C:\WINDOWS\System32\alg.exe - Service de la passerelle de la couche Application (ALG) .(.Microsoft Corporation - Application Layer Gateway Service.) - LEGACY_ALG

O64 - Services: CurCS - "C:\Program Files\Avira\AntiVir Desktop\sched.exe (.not file.) - Avira AntiVir Planificateur (AntiVirSchedulerService) .(.Pas de propriétaire - Pas de description.) - LEGACY_ANTIVIRSCHEDULERSERVICE

O64 - Services: CurCS - "C:\Program Files\Avira\AntiVir Desktop\avguard.exe (.not file.) - Avira AntiVir Guard (AntiVirService) .(.Pas de propriétaire - Pas de description.) - LEGACY_ANTIVIRSERVICE

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Gestion d'applications (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\ASPI32.sys - ASPI32 (ASPI32) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASPI32

O64 - Services: CurCS - (.not file.) - aswFsBlk (aswFsBlk) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWFSBLK

O64 - Services: CurCS - (.not file.) - aswRdr (aswRdr) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWRDR

O64 - Services: CurCS - (.not file.) - avast! Self Protection (aswSP) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWSP

O64 - Services: CurCS - (.not file.) - Ati HotKey Poller (Ati HotKey Poller) .(.Pas de propriétaire - Pas de description.) - LEGACY_ATI_HOTKEY_POLLER

O64 - Services: CurCS - (.not file.) - ATI Smart (ATI Smart) .(.Pas de propriétaire - Pas de description.) - LEGACY_ATI_SMART

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Audio Windows (AudioSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_AUDIOSRV

O64 - Services: CurCS - (.not file.) - Avg Anti-Rootkit Clean Driver (AvgArCln) .(.Pas de propriétaire - Pas de description.) - LEGACY_AVGARCLN

O64 - Services: CurCS - (.not file.) - AVG Anti-Spyware Clean Driver (AvgAsCln) .(.Pas de propriétaire - Pas de description.) - LEGACY_AVGASCLN

O64 - Services: CurCS - C:\Program Files\Avira\AntiVir Desktop\avgio.sys - avgio (avgio) .(.Avira GmbH - Avira AntiVir Support for Minifilter.) - LEGACY_AVGIO

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avgntflt.sys - avgntflt (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT

O64 - Services: CurCS - (.not file.) - AVG Free8 Network Redirector (AvgTdiX) .(.Pas de propriétaire - Pas de description.) - LEGACY_AVGTDIX

O64 - Services: CurCS - (.not file.) - AVG Anti-Rootkit (AVG Anti-Rootkit) .(.Pas de propriétaire - Pas de description.) - LEGACY_AVG_ANTI-ROOTKIT

O64 - Services: CurCS - (.not file.) - AVG Anti-Spyware Driver (AVG Anti-Spyware Driver) .(.Pas de propriétaire - Pas de description.) - LEGACY_AVG_ANTI-SPYWARE_DRIVER

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avipbb.sys - avipbb (avipbb) .(.Avira GmbH - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\BEEP.sys - Beep (Beep) .(.Pas de propriétaire - Pas de description.) - LEGACY_BEEP

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de transfert intelligent en arrière-plan (BITS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BITS

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Explorateur d'ordinateur (Browser) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BROWSER

O64 - Services: CurCS - C:\TRALALA\catchme.sys (.not file.) - catchme (catchme) .(.Pas de propriétaire - Pas de description.) - LEGACY_CATCHME

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\CDFS.sys - cdfs (cdfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_CDFS

O64 - Services: CurCS - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe - .NET Runtime Optimization Service v2.0.50727_X86 (clr_optimization_v2.0.50727_32) .(.Microsoft Corporation - .NET Runtime Optimization Service.) - LEGACY_CLR_OPTIMIZATION_V2.0.50727_32

O64 - Services: CurCS - (.not file.) - (.not file.) - Application système COM+ (COMSysApp) .(.Pas de propriétaire - Pas de description.) - LEGACY_COMSYSAPP

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Services de cryptographie (CryptSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_CRYPTSVC

O64 - Services: CurCS - (.not file.) - (.not file.) - Lanceur de processus serveur DCOM (DcomLaunch) .(.Pas de propriétaire - Pas de description.) - LEGACY_DCOMLAUNCH

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client DHCP (Dhcp) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DHCP

O64 - Services: CurCS - C:\WINDOWS\System32\dmadmin.exe - Service d'administration du Gestionnaire de disque logique (dmadmin) .(.Microsoft Corp., Veritas Software - Processus du service Gestionnaire de disque.) - LEGACY_DMADMIN

O64 - Services: CurCS - C:\Windows\system32\drivers\dmboot.sys - dmboot (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\DMLOAD.sys - dmload (dmload) .(.Pas de propriétaire - Pas de description.) - LEGACY_DMLOAD

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Gestionnaire de disque logique (dmserver) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DMSERVER

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client DNS (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE

O64 - Services: CurCS - C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys (.not file.) - driverhardwarev2 (driverhardwarev2) .(.Pas de propriétaire - Pas de description.) - LEGACY_DRIVERHARDWAREV2

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Service de rapport d'erreurs (ERSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ERSVC

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Système d'événements de COM+ (EventSystem) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_EVENTSYSTEM

O64 - Services: CurCS - (.not file.) - ewido anti-spyware 4.0 driver (ewido anti-spyware 4.0 driver) .(.Pas de propriétaire - Pas de description.) - LEGACY_EWIDO_ANTI-SPYWARE_4.0_DRIVER

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FASTFAT.sys - fastfat (fastfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_FASTFAT

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Compatibilité avec le Changement rapide d'utilisateur (FastUserSwitchingCompatibility) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_FASTUSERSWITCHINGCOMPATIBILITY

O64 - Services: CurCS - C:\WINDOWS\system32\fxssvc.exe - Fax (Fax) .(.Microsoft Corporation - Service de télécopie.) - LEGACY_FAX

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FIPS.sys - Fips (Fips) .(.Pas de propriétaire - Pas de description.) - LEGACY_FIPS

O64 - Services: CurCS - C:\Windows\system32\drivers\fltmgr.sys - FltMgr (FltMgr) .(.Microsoft Corporation - Microsoft Filesystem Filter Manager.) - LEGACY_FLTMGR

O64 - Services: CurCS - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe - Windows Presentation Foundation Font Cache 3.0.0.0 (FontCache3.0.0.0) .(.Microsoft Corporation - PresentationFontCache.exe.) - LEGACY_FONTCACHE3.0.0.0

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\fssfltr_tdi.sys - FssFltr (fssfltr) .(.Microsoft Corporation - Family Safety Filter Driver (TDI).) - LEGACY_FSSFLTR

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(.Pas de propriétaire - Pas de description.) - LEGACY_FS_REC

O64 - Services: CurCS - (.not file.) - Firewall Driver (fwdrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_FWDRV

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\gmer.sys (.not file.) - gmer (gmer) .(.Pas de propriétaire - Pas de description.) - LEGACY_GMER

O64 - Services: CurCS - D:\INSTALL\GMSIPCI.sys (.not file.) - GMSIPCI (GMSIPCI) .(.Pas de propriétaire - Pas de description.) - LEGACY_GMSIPCI

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\msgpc.sys - Classificateur de paquets générique (Gpc) .(.Microsoft Corporation - MS General Packet Classifier.) - LEGACY_GPC

O64 - Services: CurCS - "C:\Program Files\Google\Update\GoogleUpdate.exe (.not file.) - Service Google Update (gupdate) (gupdate) .(.Pas de propriétaire - Pas de description.) - LEGACY_GUPDATE

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Aide et support (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC

O64 - Services: CurCS - C:\Windows\system32\Drivers\HTTP.sys - HTTP (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - HTTP SSL (HTTPFilter) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HTTPFILTER

O64 - Services: CurCS - "C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe (.not file.) - InstallDriver Table Manager (IDriverT) .(.Pas de propriétaire - Pas de description.) - LEGACY_IDRIVERT

O64 - Services: CurCS - "C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (.not file.) - Windows CardSpace (idsvc) .(.Pas de propriétaire - Pas de description.) - LEGACY_IDSVC

O64 - Services: CurCS - (.not file.) - Kernel Anti-Spyware Driver (ikhlayer) .(.Pas de propriétaire - Pas de description.) - LEGACY_IKHLAYER

O64 - Services: CurCS - C:\WINDOWS\system32\imapi.exe - Service COM de gravage de CD IMAPI (ImapiService) .(.Microsoft Corporation - API Image Mastering.) - LEGACY_IMAPISERVICE

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ipnat.sys - Traducteur d'adresses réseau IP (IpNat) .(.Microsoft Corporation - IP Network Address Translator.) - LEGACY_IPNAT

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ipsec.sys - Pilote IPSEC (IPSec) .(.Microsoft Corporation - IPSec Driver.) - LEGACY_IPSEC

O64 - Services: CurCS - "C:\Program Files\Java\jre6\bin\jqs.exe (.not file.) - Java Quick Starter (JavaQuickStarterService) .(.Pas de propriétaire - Pas de description.) - LEGACY_JAVAQUICKSTARTERSERVICE

O64 - Services: CurCS - (.not file.) - Kerio HIPS Driver (khips) .(.Pas de propriétaire - Pas de description.) - LEGACY_KHIPS

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\KSECDD.sys - ksecdd (ksecdd) .(.Pas de propriétaire - Pas de description.) - LEGACY_KSECDD

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Serveur (lanmanserver) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANSERVER

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Station de travail (LanmanWorkstation) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANWORKSTATION

O64 - Services: CurCS - "C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (.not file.) - Lavasoft Ad-Aware Service (Lavasoft Ad-Aware Service) .(.Pas de propriétaire - Pas de description.) - LEGACY_LAVASOFT_AD-AWARE_SERVICE

O64 - Services: CurCS - C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys - Lavasoft helper driver (Lavasoft Kernexplorer) .(.Pas de propriétaire - Pas de description.) - LEGACY_LAVASOFT_KERNEXPLORER

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\Lbd.sys - Lbd (Lbd) .(.Lavasoft AB - Boot Driver.) - LEGACY_LBD

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Assistance TCP/IP NetBIOS (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS

O64 - Services: CurCS - "C:\Program Files\ma-config.com\maconfservice.exe (.not file.) - Ma-Config Service (maconfservice) .(.Pas de propriétaire - Pas de description.) - LEGACY_MACONFSERVICE

O64 - Services: CurCS - (.not file.) - mchInjDrv (mchInjDrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_MCHINJDRV

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Affichage des messages (Messenger) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_MESSENGER

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MNMDD.sys - mnmdd (mnmdd) .(.Pas de propriétaire - Pas de description.) - LEGACY_MNMDD

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MOUNTMGR.sys - (.not file.) - mountmgr (mountmgr) .(.Pas de propriétaire - Pas de description.) - LEGACY_MOUNTMGR

O64 - Services: CurCS - C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.sys - MRENDIS5 NDIS Protocol Driver (MRENDIS5) .(.Motive, Inc. - Motive NDIS 5.0 Protocol Driver.) - LEGACY_MRENDIS5

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\mrxdav.sys - Redirecteur client WebDav (MRxDAV) .(.Microsoft Corporation - Windows NT WebDav Minirdr.) - LEGACY_MRXDAV

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\mrxsmb.sys - MRXSMB (MRxSmb) .(.Microsoft Corporation - Windows NT SMB Minirdr.) - LEGACY_MRXSMB

O64 - Services: CurCS - C:\WINDOWS\system32\msdtc.exe - Distributed Transaction Coordinator (MSDTC) .(.Microsoft Corporation - MS DTC console program.) - LEGACY_MSDTC

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MSFS.sys - Msfs (Msfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSFS

O64 - Services: CurCS - D:\install4\MSICPL.sys (.not file.) - MSICPL (MSICPL) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSICPL

O64 - Services: CurCS - C:\WINDOWS\system32\msiexec.exe - Windows Installer (MSIServer) .(.Microsoft Corporation - Windows® installer.) - LEGACY_MSISERVER

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MUP.sys - (.not file.) - Mup (Mup) .(.Pas de propriétaire - Pas de description.) - LEGACY_MUP

O64 - Services: CurCS - (.not file.) - NaiAvFilter1 (NaiAvFilter1) .(.Pas de propriétaire - Pas de description.) - LEGACY_NAIAVFILTER1

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NDIS.sys - (.not file.) - Pilote système NDIS (NDIS) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDIS

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ndistapi.sys - Pilote TAPI NDIS d'accès distant (NdisTapi) .(.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) - LEGACY_NDISTAPI

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ndisuio.sys - NDIS mode utilisateur E/S Protocole (Ndisuio) .(.Microsoft Corporation - NDIS User mode I/O Driver.) - LEGACY_NDISUIO

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDPROXY

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\netbios.sys - Interface NetBIOS (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\netbt.sys - NetBIOS sur TCP/IP (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Connexions réseau (Netman) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NETMAN

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - NLA (Network Location Awareness) (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\NMnt.sys - Pilote du Moniteur réseau (NM) .(.Microsoft Corporation - Netmon NT Driver.) - LEGACY_NM

O64 - Services: CurCS - C:\Windows\system32\drivers\npf.sys - NetGroup Packet Filter Driver (NPF) .(.CACE Technologies - npf.sys (NT5/6 x86) Kernel Driver.) - LEGACY_NPF

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NPFS.sys - Npfs (Npfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NPFS

O64 - Services: CurCS - D:\NTACCESS.sys (.not file.) - NTACCESS (NTACCESS) .(.Pas de propriétaire - Pas de description.) - LEGACY_NTACCESS

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NTFS.sys - ntfs (ntfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NTFS

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Stockage amovible (NtmsSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NTMSSVC

O64 - Services: CurCS - C:\WINDOWS\system32\ntsim.sys - NTSIM (NTSIM) .(.VIA Networking Technologies, Inc. - Network Device Monitor Utility.) - LEGACY_NTSIM

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NULL.sys - Null (Null) .(.Pas de propriétaire - Pas de description.) - LEGACY_NULL

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\nwlnkipx.sys - Protocole de transport compatible NWLink IPX/SPX/NetBIOS (NwlnkIpx) .(.Microsoft Corporation - NWLINK2 IPX Protocol Driver.) - LEGACY_NWLNKIPX

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\nwlnknb.sys - NetBIOS NWLink (NwlnkNb) .(.Microsoft Corporation - NWLINK2 IPX Netbios Protocol Driver.) - LEGACY_NWLNKNB

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\nwlnkspx.sys - Protocole NWLink SPX/SPXII (NwlnkSpx) .(.Microsoft Corporation - NWLINK2 SPX Protocol Driver.) - LEGACY_NWLNKSPX

O64 - Services: CurCS - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe - Sony Ericsson OMSI download service (OMSI download service) .(.Pas de propriétaire - Pas de description.) - LEGACY_OMSI_DOWNLOAD_SERVICE

O64 - Services: CurCS - "C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.exe (.not file.) - Office Source Engine (ose) .(.Pas de propriétaire - Pas de description.) - LEGACY_OSE

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PARTMGR.sys - (.not file.) - PartMgr (PartMgr) .(.Pas de propriétaire - Pas de description.) - LEGACY_PARTMGR

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PARVDM.sys - ParVdm (ParVdm) .(.Pas de propriétaire - Pas de description.) - LEGACY_PARVDM

O64 - Services: CurCS - C:\Windows\system32\drivers\pavboot.sys - pavboot (pavboot) .(.Panda Security, S.L. - Panda Boot Driver.) - LEGACY_PAVBOOT

O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Services IPSEC (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT

O64 - Services: CurCS - (.not file.) - PROCEXP90 (PROCEXP90) .(.Pas de propriétaire - Pas de description.) - LEGACY_PROCEXP90

O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Emplacement protégé (ProtectedStorage) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_PROTECTEDSTORAGE

O64 - Services: CurCS - C:\WINDOWS\system32\PSIService.exe (.not file.) - ProtexisLicensing (ProtexisLicensing) .(.Pas de propriétaire - Pas de description.) - LEGACY_PROTEXISLICENSING

O64 - Services: CurCS - (.not file.) - PsSdk31 (PsSdk31) .(.Pas de propriétaire - Pas de description.) - LEGACY_PSSDK31

O64 - Services: CurCS - (.not file.) - PsSdkLBF (PsSdkLBF) .(.Pas de propriétaire - Pas de description.) - LEGACY_PSSDKLBF

O64 - Services: CurCS - (.not file.) - pwipf6 (pwipf6) .(.Pas de propriétaire - Pas de description.) - LEGACY_PWIPF6

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\rasacd.sys - Pilote de connexion automatique d'accès distant (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Gestionnaire de connexions d'accès distant (RasMan) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_RASMAN

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\rdbss.sys - Rdbss (Rdbss) .(.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - LEGACY_RDBSS

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys - RDPCDD (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD

O64 - Services: CurCS - (.not file.) - RDPNP (RDPNP) .(.Pas de propriétaire - Pas de description.) - LEGACY_RDPNP

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\RITCPT.sys - RITCPT (RITCPT) .(.Pas de propriétaire - Pas de description.) - LEGACY_RITCPT

O64 - Services: CurCS - (.not file.) - RkPavProc (RkPavProc) .(.Pas de propriétaire - Pas de description.) - LEGACY_RKPAVPROC

O64 - Services: CurCS - C:\WINDOWS\system32\locator.exe - Localisateur d'appels de procédure distante (RPC) (RpcLocator) .(.Microsoft Corporation - Rpc Locator.) - LEGACY_RPCLOCATOR

O64 - Services: CurCS - (.not file.) - (.not file.) - Appel de procédure distante (RPC) (RpcSs) .(.Pas de propriétaire - Pas de description.) - LEGACY_RPCSS

O64 - Services: CurCS - C:\WINDOWS\system32\rsvp.exe - QoS RSVP (RSVP) .(.Microsoft Corporation - Microsoft RSVP.) - LEGACY_RSVP

O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Gestionnaire de comptes de sécurité (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS

O64 - Services: CurCS - (.not file.) - SCDEmu (SCDEmu) .(.Pas de propriétaire - Pas de description.) - LEGACY_SCDEMU

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Planificateur de tâches (Schedule) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SCHEDULE

O64 - Services: CurCS - (.not file.) - scrambler (scrambler) .(.Pas de propriétaire - Pas de description.) - LEGACY_SCRAMBLER

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Connexion secondaire (seclogon) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SECLOGON

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Notification d'événement système (SENS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SENS

O64 - Services: CurCS - D:\NTGLM7X.sys (.not file.) - SetupNTGLM7X (SetupNTGLM7X) .(.Pas de propriétaire - Pas de description.) - LEGACY_SETUPNTGLM7X

O64 - Services: CurCS - C:\Windows\system32\drivers\sfdrv01.sys - StarForce Protection Environment Driver (version 1.x) (sfdrv01) .(.Protection Technology - StarForce Protection Environment Driver.) - LEGACY_SFDRV01

O64 - Services: CurCS - C:\Windows\system32\drivers\sfhlp02.sys - StarForce Protection Helper Driver (version 2.x) (sfhlp02) .(.Protection Technology - StarForce Protection Helper Driver.) - LEGACY_SFHLP02

O64 - Services: CurCS - C:\Windows\system32\drivers\sfvfs02.sys - StarForce Protection VFS Driver (version 2.x) (sfvfs02) .(.Protection Technology - StarForce Protection VFS Driver.) - LEGACY_SFVFS02

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Pare-feu Windows / Partage de connexion Internet (SharedAccess) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHAREDACCESS

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Détection matériel noyau (ShellHWDetection) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHELLHWDETECTION

O64 - Services: CurCS - C:\WINDOWS\system32\spoolsv.exe - Spouleur d'impression (Spooler) .(.Microsoft Corporation - Spooler SubSystem App.) - LEGACY_SPOOLER

O64 - Services: CurCS - (.not file.) - Spy Emergency Driver (SpyEmrg) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPYEMRG

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\sr.sys - Pilote de filtre de restauration système (sr) .(.Microsoft Corporation - Pilote de filtre de système de fichiers pou.) - LEGACY_SR

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de restauration système (srservice) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SRSERVICE

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\srv.sys - Srv (Srv) .(.Microsoft Corporation - Server driver.) - LEGACY_SRV

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de découvertes SSDP (SSDPSRV) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SSDPSRV

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ssmdrv.sys - ssmdrv (ssmdrv) .(.Avira GmbH - AVIRA SnapShot Driver.) - LEGACY_SSMDRV

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Acquisition d'image Windows (WIA) (stisvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_STISVC

O64 - Services: CurCS - (.not file.) - (.not file.) - MS Software Shadow Copy Provider (SwPrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_SWPRV

O64 - Services: CurCS - C:\WINDOWS\system32\smlogsvc.exe - Journaux et alertes de performance (SysmonLog) .(.Microsoft Corporation - Service des alertes et des journaux de perf.) - LEGACY_SYSMONLOG

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Téléphonie (TapiSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TAPISRV

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\tcpip.sys - Pilote du protocole TCP/IP (Tcpip) .(.Microsoft Corporation - TCP/IP Protocol Driver.) - LEGACY_TCPIP

O64 - Services: CurCS - (.not file.) - (.not file.) - Services Terminal Server (TermService) .(.Pas de propriétaire - Pas de description.) - LEGACY_TERMSERVICE

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Thèmes (Themes) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_THEMES

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client de suivi de lien distribué (TrkWks) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TRKWKS

O64 - Services: CurCS - C:\WINDOWS\system32\DRIVERS\TVICHW32.sys - TVICHW32 (TVICHW32) .(.EnTech Taiwan - TVicHW32 Driver for Windows NT/2000/XP.) - LEGACY_TVICHW32

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\uagp35.sys - Filtre AGP version 3.5 Microsoft (uagp35) .(.Microsoft Corporation - MS AGPv3.5 Filter.) - LEGACY_UAGP35

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\UDFS.sys - Udfs (Udfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_UDFS

O64 - Services: CurCS - (.not file.) - UnlockerDriver5 (UnlockerDriver5) .(.Pas de propriétaire - Pas de description.) - LEGACY_UNLOCKERDRIVER5

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Hôte de périphérique universel Plug-and-Play (upnphost) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_UPNPHOST

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VGA.sys - vga (vga) .(.Pas de propriétaire - Pas de description.) - LEGACY_VGA

O64 - Services: CurCS - C:\WINDOWS\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VIAIDE.sys - ViaIde (ViaIde) .(.Pas de propriétaire - Pas de description.) - LEGACY_VIAIDE

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VOLSNAP.sys - VolSnap (VolSnap) .(.Pas de propriétaire - Pas de description.) - LEGACY_VOLSNAP

O64 - Services: CurCS - C:\WINDOWS\System32\vssvc.exe - Cliché instantané de volume (VSS) .(.Microsoft Corporation - Service de cliché instantané de volumes Mic.) - LEGACY_VSS

O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VVBACKD5.sys - VVBackd5 (VVBackd5) .(.Pas de propriétaire - Pas de description.) - LEGACY_VVBACKD5

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Horloge Windows (W32Time) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_W32TIME

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\wanarp.sys - Pilote ARP IP d'accès distant (Wanarp) .(.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - LEGACY_WANARP

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - WebClient (WebClient) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WEBCLIENT

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Infrastructure de gestion Windows (winmgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WINMGMT

O64 - Services: CurCS - "C:\Program Files\Windows Live\installer\WLSetupSvc.exe (.not file.) - Windows Live Setup Service (WLSetupSvc) .(.Pas de propriétaire - Pas de description.) - LEGACY_WLSETUPSVC

O64 - Services: CurCS - C:\Program Files\Windows Media Connect\mswmcls.exe - Aide de Windows Media Connect (WMC) (WmcCdsLs) .(.Microsoft Corporation - Windows Media Connect.) - LEGACY_WMCCDSLS

O64 - Services: CurCS - C:\WINDOWS\system32\wbem\wmiapsrv.exe - Carte de performance WMI (WmiApSrv) .(.Microsoft Corporation - Service de la carte de performance WMI.) - LEGACY_WMIAPSRV

O64 - Services: CurCS - "C:\Program Files\Windows Media Player\WMPNetwk.exe (.not file.) - Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) .(.Pas de propriétaire - Pas de description.) - LEGACY_WMPNETWORKSVC

O64 - Services: CurCS - "C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe (.not file.) - Webroot Client Service (WRConsumerService) .(.Pas de propriétaire - Pas de description.) - LEGACY_WRCONSUMERSERVICE

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Centre de sécurité (wscsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WSCSVC

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Mises à jour automatiques (wuauserv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WUAUSERV

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\WudfPf.sys - Windows Driver Foundation - User-mode Driver Framework Platform Driver (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF

O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Windows Driver Foundation - User-mode Driver Framework (WudfSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WUDFSVC

O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Configuration automatique sans fil (WZCSVC) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WZCSVC

O64 - Services: CurCS - (.not file.) - zithxzoi (zithxzoi) .(.Pas de propriétaire - Pas de description.) - LEGACY_ZITHXZOI

 

 

---\\ Liste des fichiers non signés (LUF) (O65)

O65 - LUF:25/05/2004 (.Pas de propriétaire - AC3Filter.) (1.01a) - c:\windows\system32\ac3filter.cpl

O65 - LUF:05/02/2004 (.Pas de propriétaire - ActiveSkin Module.) (4, 3, 0, 0) - c:\windows\system32\ACTSKN43.OCX

O65 - LUF:02/07/2003 (.Pas de propriétaire - AVICreator Module.) (1, 0, 0, 1) - c:\windows\system32\AVICreator.dll

O65 - LUF:24/09/2004 (. - RealVideo 8+9+10+HFE2.1 (32-bit) .) (10.0.0.2281) - c:\windows\system32\drvc.dll

O65 - LUF:15/01/2003 (.Pas de propriétaire - FrameGrabber3 ActiveX Control Module.) (1, 0, 0, 1) - c:\windows\system32\FrameGrabber3.ocx

O65 - LUF:26/11/2009 (.Pas de propriétaire - GTTunerCard Module.) (9, 0, 622, 0) - c:\windows\system32\GTTunerCard.dll

O65 - LUF:06/01/2007 (.Pas de propriétaire - LAME Audio Encoder.) (1, 0, 54, 50801) - c:\windows\system32\lame.ax

O65 - LUF:12/04/2000 (.Pas de propriétaire - LEADTOOLS FlashPix library.) (V1.2.FC1) - c:\windows\system32\lffpx7.dll

O65 - LUF:12/04/2000 (.Pas de propriétaire - LEADTOOLS FlashPix library.) (V1.2.FC1) - c:\windows\system32\lfkodak.dll

O65 - LUF:30/03/2006 (.Pas de propriétaire - LineAudio Module.) (1, 0, 0, 1) - c:\windows\system32\LineAudio.dll

O65 - LUF:03/12/2003 (.Pas de propriétaire - MPEGCreator Module.) (1, 0, 0, 1) - c:\windows\system32\MPEGCreator.dll

O65 - LUF:24/07/2004 (.Pas de propriétaire - .) (2.09) - c:\windows\system32\OctaneARM.dll

O65 - LUF:18/10/2006 (.Pas de propriétaire - RtlCPAPI Module.) (1, 0, 1, 4) - c:\windows\system32\RtlCPAPI.dll

O65 - LUF:15/09/2004 (.Pas de propriétaire - RunSetup Dynamic Link Library.) (1, 0, 0, 2) - c:\windows\system32\RunSetup.dll

O65 - LUF:21/10/2009 (.Pas de propriétaire - ThumbExtract Module.) (1, 0, 0, 1) - c:\windows\system32\ThumbExtract.dll

O65 - LUF:11/10/2001 (.Pas de propriétaire - TW_CT Dynamic Link Library.) (1, 1, 1, 1) - c:\windows\system32\TW_CT.dll

O65 - LUF:29/06/2003 (.Pas de propriétaire - WMVCreator Module.) (1, 0, 0, 1) - c:\windows\system32\WMVCreator.dll

O65 - LUF:13/07/2007 (.Pas de propriétaire - U6000 USB TV.) (3, 10, 607, 0) - c:\windows\system32\drivers\U6000ALL.sys

 

 

---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <ComFile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Internet Explorer\IEXPLORE.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe

O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.)

O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.)

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <ComFile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <htmlfile>[HKCR\..\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files\Internet Explorer\IEXPLORE.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe

 

 

---\\ Start Menu Internet (SMI) (O68)

O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe

 

 

---\\ Search Browser Infection (SBI) (O69)

O69 - SBI: C:\Documents and Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\\q7kw8tsn.default\searchplugins\askcom.xml

O69 - SBI: C:\Documents and Settings\Sylvain\Application Data\Mozilla\Firefox\Profiles\\yzkz7tna.default\searchplugins\conduit.xml

O69 - SBI: prefs.js [sylvain - yzkz7tna.default] user_pref("CT2117678.SearchEngine", "Search||http://search.conduit.com/Results.aspx?q=UCM_SEARCH_TERM&ctid=CT2117678&octid=EB_ORIGINAL_CTID&SearchSource=1");

O69 - SBI: prefs.js [sylvain - yzkz7tna.default] user_pref("CT2117678.SearchFromAddressBarUrl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2117678&q=");

O69 - SBI: prefs.js [sylvain - yzkz7tna.default] user_pref("browser.search.defaulturl", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2117678&SearchSource=3&q={searchTerms}");

O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com

O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Ask Search) - http://websearch.ask.com'>http://websearch.ask.com

O69 - SBI: SearchScopes [HKCU] {586524DB-7EF9-46B7-86EF-0C7F05B3B36A} - (Lycos) - http://vachercher.lycos.fr

O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com

O69 - SBI: SearchScopes [HKCU] {82717129-26D1-490D-8F31-94F05C4EA258} - (Yahoo!) - http://fr.search.yahoo.com

O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (NCH Customized Web Search) - http://search.conduit.com

O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [DefaultScope] - (MyStart Rechercher) - http://mystart.incredimail.com

O69 - SBI: SearchScopes [HKCU] {F867C970-501D-4912-8178-706FC0E224A7} - (Google) - http://www.google.fr

 

 

---\\ Recherche des services démarrés par Svchost (SSS) (O83)

O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\System32\appmgmts.dll [165376]

O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\System32\audiosrv.dll [42496]

O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [77824]

O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\System32\cryptsvc.dll [62464]

O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\System32\dmserver.dll [24576]

O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\System32\dhcpcsvc.dll [127488]

O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\System32\ersvc.dll [23040]

O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952]

O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680]

O83 - Search Svchost Services: HidServ (HidServ) . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\hidserv.dll [0]

O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\System32\srvsvc.dll [99840]

O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\System32\wkssvc.dll [132096]

O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\System32\msgsvc.dll [33792]

O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\System32\netman.dll [198144]

O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\System32\mswsock.dll [247808]

O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272]

O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [88576]

O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [186368]

O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\System32\mprdim.dll [53248]

O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560]

O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\System32\seclogon.dll [18944]

O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424]

O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\System32\ipnathlp.dll [332800]

O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520]

O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows.) -- C:\WINDOWS\System32\tapisrv.dll [249856]

O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680]

O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112]

O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176]

O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\System32\wzcsvc.dll [483840]

O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408]

O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896]

O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\System32\xmlprov.dll [129024]

O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088]

O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680]

O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400]

O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\System32\qagentrt.dll [293376]

O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\System32\kmsvc.dll [61440]

O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656]

 

 

---\\ Recherche particuliere à la racine de certains dossiers (SPRF) (O84)

[MD5.254FBCA565E049648B0CCE2CEADF05D2] [sPRF] (.Pas de propriétaire - Pas de description.) -- C:\Documents and Settings\Sylvain\Application Data\ezpinst.exe [87608]

[MD5.5B6C11DE7E839C05248CED8825470FEF] [sPRF] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Documents and Settings\Sylvain\Application Data\pcouffin.sys [47360]

 

 

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)

SS - | Demand 0 | "c:\program files\a square\a-squared free\a2service.exe (a2free) . (.Pas de propriétaire.) - c:\program files\a square\a-squared free\a2service.exe

SR - | Auto 26/09/2007 12800 | C:\WINDOWS\system32\agrsmsvc.exe (AgereModemAudio) . (.Agere Systems.) - C:\WINDOWS\system32\agrsmsvc.exe

SR - | Auto 17/08/2010 135336 | "C:\Program Files\Avira\AntiVir Desktop\sched.exe (AntiVirSchedulerService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe

SR - | Auto 17/08/2010 267944 | "C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AntiVirService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

SS - | Demand 14/04/2008 225280 | C:\WINDOWS\System32\dmadmin.exe (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\System32\dmadmin.exe

SS - | Auto 14/04/2008 0 | "C:\Program Files\Google\Update\GoogleUpdate.exe (gupdate) . (.Pas de propriétaire.) - C:\Program Files\Google\Update\GoogleUpdate.exe

SS - | Demand 04/04/2005 69632 | "C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe (IDriverT) . (.Macrovision Corporation.) - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

SR - | Auto 15/09/2010 153376 | "C:\Program Files\Java\jre6\bin\jqs.exe (JavaQuickStarterService) . (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jqs.exe

SS - | Demand 17/11/2010 1375992 | "C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Ad-Aware Service) . (.Lavasoft.) - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe

SS - | Demand 17/11/2010 0 | "C:\Program Files\ma-config.com\maconfservice.exe (maconfservice) . (.Pas de propriétaire.) - C:\Program Files\ma-config.com\maconfservice.exe

SR - | Auto 30/04/2009 90112 | C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe (OMSI download service) . (.Pas de propriétaire.) - C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe

SS - | Auto 30/04/2009 0 | C:\WINDOWS\system32\PSIService.exe (ProtexisLicensing) . (.Pas de propriétaire.) - C:\WINDOWS\system32\PSIService.exe

SS - | Demand 06/11/2007 92792 | "C:\Program Files\WinPcap\rpcapd.exe (rpcapd) . (.CACE Technologies.) - C:\Program Files\WinPcap\rpcapd.exe

SS - | Auto 06/11/2007 0 | "C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe (WRConsumerService) . (.Pas de propriétaire.) - C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe

 

 

---\\ Recherche Master Boot Record Infection (MBR)(O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, http://www.gmer.net

Run by Sylvain at 20/11/2010 14:07:21

 

device: opened successfully

user: MBR read successfully

 

Disk trace:

called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys videX32.sys PCIIDEX.SYS

C:\WINDOWS\system32\drivers\videX32.sys VIA Technologies, Inc. VIA PCI IDE MINI Driver

1 nt!IofCallDriver[0x804E37D5] -> \Device\Harddisk0\DR0[0x83B47AB8]

3 CLASSPNP[0xF7DEFFD7] -> nt!IofCallDriver[0x804E37D5] -> \Device\00000079[0x83B4BF18]

5 ACPI[0xF7D65620] -> nt!IofCallDriver[0x804E37D5] -> \Device\Ide\IdeDeviceP0T0L0-4[0x83BC4940]

kernel: MBR read successfully

user & kernel MBR OK

copy of MBR has been found in sector 10 !

 

 

---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)

MBRCheck, version 1.2.3 by ad13, http://ad13.geekstog

Run by Sylvain at 20/11/2010 14:07:42

153 GB \\.\PhysicalDrive1 Windows XP MBR code detected

SHA1: DA38B874B7713D1B51CBC449F4EF809B0DEC644A

 

 

---\\ Infection BT - BHO/Toolbar (Possible)

O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Ask Search) - http://websearch.ask.com

 

 

 

End of the scan (2004 lines in 23mn 37s)(0)

Modifié par yoda93
Posté(e) (modifié)

Bonjour,

 

downlo10.gifTélécharge AD-Remover sur ton bureau.

 

arrow210.gif Double clique sur AD-R.exe

Clique sur le bouton Nettoyer.

arrow210.gif Poste le rapport qui va s'ouvrir en fin de scan.

Le rapport est sauvegardé sous C:\Ad-report-SCAN[1].txt

Puis ferme le programme par Quitter.

 

Désinstalle toutes ces versions de Java :

Java 2 Runtime Environment, SE v1.4.2

Java 6 Update 14

Java 6 Update 2

Java 6 Update 3

Java 6 Update 5

Java 6 Update 6

Java 6 Update 7

Ainsi que Crazy Loader.

 

 

Je constate que tu n'hésite pas pour le P2P : BitComet, Kazaa, Lphant, TorrentAid, eMule

Par ailleurs tu as déjà été aidé pour une infection suite à l'utilisation de keygen :

http://forum.zebulon...lu-t155828.html

Il semble donc que la leçon n'ai pas servi à grand chose.

 

Aussi je me pose la question de savoir si nous devons continuer à aider des gens comme toi qui n'ont pas besoin d'aide pour se lancer dans les pires utilisations d'Internet et que nous devons aider à nettoyer leur pc parce qu'ils ne sont pas capables de le faire eux-mêmes.

 

Pour tout te dire je n'en ai pas du tout envie.

Aussi j'en resterai là et libre à quiconque de prendre le relais si le cœur lui en dit..

 

Si en deux ans tu n'as pas changer tes manières malgré tes mésaventures, il n'y a pas de raison pour que tu changes.

Le tout gratuit , je ne suis pas d'accord.

Quand on a pas les moyens de ses désirs on apprend à s'en passer.

Désolé.

Modifié par nardino
Posté(e)

Libre à toi de me juger et de garder tes reflexions et aides pour toi. ;)

 

Mais le peer to peer j'ai abandonné depuis longtemps et de surcroît avec la nouvelle legislation.

Si je télécharge ce ne sont que des choses qui sont autorisées comme par exemple les U.F.C ou autre du même genre (si tu vois ce que c'est).

 

Les logiciels que tu nommes sont tous désinstallés de mon PC depuis longtemps et ce que tu as découvert ce n'est que des traces que je n'ai pas pu retirer par mes propres moyens.

 

Et en ce qui concerne l'aide, avant de crier "au secours" je me démerde toujours par moi-même en sillonnant les pages web et en utilisant des logiciels pour justement éviter de venir déranger des personnes inutilement.

 

Maintenant j'ai malgré tout fait ce que tu m'as demandé et voici le rapport que tu ne liras certainement pas puisque tu ne souhaites pas aider un vil utilisateur d'internet.

 

 

Voici le rapport :

 

======= RAPPORT D'AD-REMOVER 2.0.0.2,B | UNIQUEMENT XP/VISTA/7 =======

 

Mis à jour par TeamXscript le 11/11/10 à 11:40

Contact: AdRemover[DOT]contact[AT]gmail[DOT]com

Site web: TEAM X SCRIPT : UsbFix - AD-Remover - FindyKill

 

C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 16:04:36 le 20/11/2010, Mode normal

 

Microsoft Windows XP Édition familiale Service Pack 3 (X86)

Sylvain@SY4PPNP19 ( )

 

============== ACTION(S) ==============

 

 

Fichier supprimé: C:\Documents and Settings\Sylvain\Application Data\Mozilla\FireFox\Profiles\q7kw8tsn.default\searchplugins\askcom.xml

Dossier supprimé: C:\Documents and Settings\All Users\Application Data\Trymedia

 

(!) -- Fichiers temporaires supprimés.

 

 

Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5F65718-341D-4e7d-9842-FCB9CC89527E}

Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5F65718-341D-4e7d-9842-FCB9CC89527E}

Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5F65718-341D-4e7d-9842-FCB9CC89527E}

Clé supprimée: HKLM\Software\Classes\Interface\{471E3998-588E-41D5-A874-FA11C44B70DE}

Clé supprimée: HKLM\Software\Classes\Interface\{4F309FEB-422A-4808-91D0-71DFACCCA399}

Clé supprimée: HKLM\Software\Classes\Interface\{6F6C45E4-E231-4F0F-8CD8-AA5770303EAA}

Clé supprimée: HKLM\Software\Classes\Interface\{8F271B52-1E44-42D7-B316-BA23A0FD9DB4}

Clé supprimée: HKLM\Software\Classes\Interface\{D4E856E7-C034-49BA-BFEF-B785F3CBD7BA}

Clé supprimée: HKLM\Software\Classes\Interface\{DB7A9C36-6C85-48BE-BA8D-151B6B144BE0}

Clé supprimée: HKLM\Software\Classes\Interface\{F77F3DFC-F5DC-4316-AB50-B50B16F2BEF4}

Clé supprimée: HKLM\Software\Classes\TypeLib\{63AF3145-D2DC-4F1D-BB3A-3AAD9FEC3430}

Clé supprimée: HKLM\Software\Classes\TypeLib\{D530F69A-EB2D-4EC6-BD37-E123AEFCA011}

Clé supprimée: HKLM\Software\Classes\TypeLib\{F5BCBC2A-E8F6-4A47-BBCB-61713EA03787}

Clé supprimée: HKLM\Software\Classes\Crazyloader.Spointer

Clé supprimée: HKLM\Software\Classes\Crazyloader.Spointer.1

Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerCtrl

Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerCtrl.1

Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerWebDisp

Clé supprimée: HKLM\Software\Classes\Crazyloader.SpointerWebDisp.1

Clé supprimée: HKLM\Software\Classes\Toolbar.CT2117678

Clé supprimée: HKLM\Software\Conduit

Clé supprimée: HKLM\Software\Trymedia Systems

Clé supprimée: HKCU\Software\Spointer

Clé supprimée: HKCU\Software\AutocompleteProBHO

Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}

Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}

Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DBA4B812-2415-4000-AFCB-56F53E668DC5}

 

Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}

 

 

============== SCAN ADDITIONNEL ==============

 

** Mozilla Firefox Version [3.6.12 (fr)] **

 

-- C:\Documents and Settings\Sylvain\Application Data\Mozilla\FireFox\Profiles\q7kw8tsn.default\Prefs.js --

browser.search.selectedEngine, Google

browser.startup.homepage, hxxp://start.mozilla.org/firefox?client=firefox-a&rls=org.mozilla:fr-FR:official

browser.startup.homepage_override.mstone, rv:1.7.8

 

========================================

 

** Internet Explorer Version [8.0.6001.18702] **

 

[HKCU\Software\Microsoft\Internet Explorer\Main]

AutoHide: yes

Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome

Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

Do404Search: 0x01000000

Enable Browser Extensions: yes

Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896

Show_ToolBar: yes

Start Page: hxxp://fr.msn.com/

 

[HKLM\Software\Microsoft\Internet Explorer\Main]

Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896

Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

Delete_Temp_Files_On_Exit: yes

Search bar: hxxp://search.msn.com/spbasic.htm

Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

Start Page: hxxp://fr.msn.com/

 

[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]

Tabs: res://ieframe.dll/tabswelcome.htm

Blank: res://mshtml.dll/blank.htm

 

========================================

 

C:\Program Files\Ad-Remover\Quarantine: 5 Fichier(s)

C:\Program Files\Ad-Remover\Backup: 13 Fichier(s)

 

C:\Ad-Report-CLEAN[1].txt - 20/11/2010 (720 Octet(s))

 

Fin à: 16:06:00, 20/11/2010

 

============== E.O.F ==============

 

 

Désinstallation effective des mise à jour JAVA et bien entendu comme mentionné plus haut je ne peux pas désinstaller Crazy... puisque je ne l'ai plus sur mon PC.

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...