Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Bonjour,

 

javais choppé une "sale bête" il ya quelque temps, j'ai fait un nettoyage avec Malwarebyte et Antivir mais depuis j'ai les problèmes suivants:

 

1. le sablier qui apparait intempestivement et cela sans rien faire (toutes les 5 à 10 secondes quand je bouge celle-ci)

2. JE ne sais plus démarrer Malware Byte avec la protection en temps réel. Si je laisse et que je redémarre j'ai un écran bleu avec mention SCSIport.sys... Je suis obligé d'aller en mode sans echec etdécocher dans le msconfig l'option DEMARRAGE MBAMGUI.

3 Internet sur IE est TRES TRES lent pour charger les images par exemples...

 

Merci pour votre analyse dans ce Hijack quelque fois que vous remarqueriez ce qui cloche.

 

Bien à vous,

Wisewise3

 

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 00:51:51, on 05/08/2011

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Avira\AntiVir Desktop\sched.exe

C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

C:\Program Files\Replay Media Catcher\FLVSrvc.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\DAEMON Tools Lite\DTLite.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe

C:\Program Files\Avira\AntiVir Desktop\avguard.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe

C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\svchost.exe

C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

C:\Program Files\VIA\RAID\vialogsv.exe

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files\Avira\AntiVir Desktop\avmailc.exe

C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE

C:\totalcmd\TOTALCMD.EXE

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Documents and Settings\Wise3\Bureau\HijackThis.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\HPNetworkCommunicator.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN : Hotmail, Messenger, Bing, Actualité et Sport

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:60505

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s

O4 - HKLM\..\Run: [Ask and Record FLV Service] "C:\Program Files\Replay Media Catcher\FLVSrvc.exe" /run

O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Startup: Dropbox.lnk = C:\Documents and Settings\Wise3\Application Data\Dropbox\bin\Dropbox.exe

O8 - Extra context menu item: Télécharger avec Mipony - file://C:\Program Files\MiPony\Browser\IEContext.htm

O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O16 - DPF: {24774AA3-569B-44A8-97F4-F7DAA4DF2EE3} (CSSAxConfigurator Class) - Belgacom 195

O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.7.cab

O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.extrafilm.be/ImageUploader5.cab

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1266187646546

O16 - DPF: {8D59819B-2067-4A6B-84F4-7F84570E3C30} (LinksysMLViewer Control) - http://cactus.mylinksyscam.com:1024/img/LinksysMLViewer.cab

O16 - DPF: {9B479D7B-916A-45B0-B042-D42865A60E21} (DvrOcx Control) - http://192.168.1.80/DvrOcx.cab

O16 - DPF: {A4150320-98EC-4DB6-9BFB-EBF4B6FBEB16} (DVM_IPCam2 Control) - http://zirkakiou.dyndns.org:81/codebase/DVM_IPCam2.ocx

O16 - DPF: {A93B47FD-9BF6-4DA8-97FC-9270B9D64A6C} (VaPgCtrl Class) - http://bonbon.safe100.net:81/plugin/h263ctrl.cab

O16 - DPF: {B11003F9-9E07-4CF8-8C79-20B1DD62FD5B} (Siebel CSSAxCatalogNavigator Class) - Belgacom 195

O16 - DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} (ExtraFilm Uploader Control) - http://belgacom.extrafilm.be/ExtraFilmUploader6.cab

O16 - DPF: {BFBF6089-ABB0-479D-90F1-1C7A8C0C19FD} (Siebel Product Selection) - Belgacom 195

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O16 - DPF: {E68D228B-A4FB-4A12-A175-BDE041D58372} (Siebel High Interactivity Framework) - Belgacom 195

O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100

O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll

O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe

O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe

O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe

O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Service Google Update (gupdatem) (gupdatem) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe

O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe

O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe

O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe

O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe

O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe

O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe

O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

O23 - Service: Telnet (TlntSvr) - Unknown owner - C:\WINDOWS\system32\tlntsvr.exe

O23 - Service: VRAID Log Service - Unknown owner - C:\Program Files\VIA\RAID\vialogsv.exe

O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe

O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe

O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe

 

--

End of file - 11944 bytes

 

Quelqu'un peut me dire si je suis dans la bonne section ?

 

Bien à vous,

Wisewise3

Posté(e) (modifié)

Bonsoir Wisewise3

 

Je vais te prendre en charge,malgré que je n'aurais pas beaucoup de temps pour te répondre trés vite ;)

 

 

Télécharge RogueKiller (par tigzy). sur le bureau

  • IMPORTANT:Quitte tous tes programmes en cours
  • Lance RogueKiller.exe.
    110331105357302855.jpg
    Lorsque demandé
  • tape 1 recherche et valide
  • Un rapport (RKreport.txt) sera créer à côté de l'exécutable
    colle son contenu dans la réponse
     
  • Si le programme a été bloqué
    ne pas hésiter a essayer à l'exécuter de nouveau .
     
    NOTE: Aprés avoir posté le premier rapport pour que je l'analyse
     
  • Si infection présente Il faudras Relancer Roguekiller
    et taper 2 suppression
    Un rapport (RKreport.txt) sera créer à côté de l'exécutable
    colle son contenu dans la réponse en fin de procédure.
    Par contre aprés relance roguekiller et Tape 4 pour la suppression
    Tape 5Pour corriger les Dns
     
    *********************************************
    Ensuite:
     
    Télécharge ZHPDiag de Nicolas Coolman sur ton Bureau
     
  • Lance l'outil : double-clique sur ZHPDiag pour XP
    Pour Vista et seven
    fais un clique droit sur l'icône et exécute en tant qu'administrateur.
     
    Clique sur le Tournevis a droit en haut
    tournevis.jpg
     
    Coche toutes les cases .
  • Puis Clique sur la petite loupe loupe.jpg en haut à gauche pour débuter l'analyse :
  • L'analyse peut durer une dizaine de minutes.
  • Le rapport généré par l'outil se nomme ZHPDiag.txt
  • Clique sur le bouton avec l'appareil photo pour copier le contenu intégral du rapport généré par l'outil dans le presse-papier :
  • Dans ta prochaine réponse
    clique sur les touches CTRL+V pour coller ce rapport.
  • Si tu rencontres un message d'erreur
    cela signifie que le rapport est trop long. Il faut donc l'éditer en plusieurs parties en veillant bien à ne rien oublier
     
  • Tu peux aussi héberger le fichier contenant ce rapport ici
    http://cjoint.com/
  • Indique ensuite dans ta prochaine réponse l'adresse d'hébergement de ce rapport pour que je puisse le télécharger et l'analyser.

 

A++

Modifié par tomtom95
Posté(e)

Bonsoir Tomtom95,

 

merci tout d'abord pour ta prise en charge.

 

Voici le premier rapport fait avec RogueKiller. J'ai juste fait recherche et pas le reste, j'attends ton analyse.

 

Je vois infection mais c'est un programme Dropbow qui permet des mise en ligne de fichier... enfin je te laisse juger. De plus Dropbox a été installé APRES mon problème...

 

RogueKiller V5.3.1 [06/08/2011] par Tigzy

contact sur Forum Sciences / Forum Informatique - Sur la Toile (SLT)

mail: tigzyRK<at>gmail<dot>com

Remontees: [RogueKiller] Remontées (1/31)

 

Systeme d'exploitation: Windows XP (5.1.2600 Service Pack 3) 32 bits version

Demarrage : Mode normal

Utilisateur: Wise3 [Droits d'admin]

Mode: Recherche -- Date : 10/08/2011 01:26:39

 

Processus malicieux: 2

[sUSP PATH] MSVCR71.dll -- C:\Documents and Settings\Wise3\Application Data\Dropbox\bin\MSVCR71.dll -> UNLOADED

[sUSP PATH] MSVCR71.dll -- C:\Documents and Settings\Wise3\Application Data\Dropbox\bin\MSVCR71.dll -> UNLOADED

 

Entrees de registre: 4

[sUSP PATH] HKUS\.DEFAULT[...]\Winlogon : Shell (explorer.exe,C:\Documents and Settings\NetworkService\Application Data\dwm.exe) -> FOUND

[sUSP PATH] HKUS\S-1-5-18[...]\Winlogon : Shell (explorer.exe,C:\Documents and Settings\NetworkService\Application Data\dwm.exe) -> FOUND

[PROXY IE] HKCU\[...]\Internet Settings : ProxyServer (http=127.0.0.1:60505) -> FOUND

[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

 

Fichier HOSTS:

 

 

Termine : << RKreport[1].txt >>

 

 

Et voici le rapport de ZHPDiag

 

Rapport de ZHPDiag v1.28.1321 par Nicolas Coolman, Update du 09/08/2011

Run by Wise3 at 10/08/2011 01:32:47

Web site : ZHPDiag Outil de diagnostic

 

 

---\\ Web Browser

MSIE: Internet Explorer v8.0.6001.18702 (Defaut)

 

---\\ Windows Product Information

Windows XP Professional Service Pack 3 (Build 2600)

Windows Automatic Updates : OK

Windows Genuine Adventage : KO

 

---\\ System Information

~ Processor: x86 Family 6 Model 10 Stepping 0, AuthenticAMD

~ Operating System: 32 Bits

Boot mode: Normal (Normal boot)

Total RAM: 2047 MB (69% free)

System Restore: Activé (Enable)

System drive C: has 4 GB (18%) free of 24 GB

 

---\\ Logged in mode

~ Computer Name: WISE3-ATC

~ User Name: Wise3

~ All Users Names: Wise3, SUPPORT_388945a0, LogMeInRemoteUser, HelpAssistant, ASPNET, Administrateur,

~ Unselected Option: None

Logged in as Administrator

 

---\\ Environnement Variables

~ System Unit : C:\

~ %AppData% : C:\Documents and Settings\Wise3\Application Data\

~ %Desktop% : C:\Documents and Settings\Wise3\Bureau\

~ %Favorites% : C:\Documents and Settings\Wise3\Favoris\

~ %LocalAppData% : C:\Documents and Settings\Wise3\Local Settings\Application Data\

~ %StartMenu% : C:\Documents and Settings\Wise3\Menu Démarrer\

~ %Windir% : C:\WINDOWS\

~ %System% : C:\WINDOWS\system32\

 

---\\ DOS/Devices

A:\ Floppy drive, Flash card reader, USB Key (Not Inserted)

C:\ Hard drive, Flash drive, Thumb drive (Free 4 Go of 24 Go)

D:\ Hard drive, Flash drive, Thumb drive (Free 14 Go of 59 Go)

E:\ Hard drive, Flash drive, Thumb drive (Free 39 Go of 70 Go)

F:\ CD-ROM drive (Not Inserted)

G:\ CD-ROM drive (Not Inserted)

H:\ CD-ROM drive (Not Inserted)

I:\ Hard drive, Flash drive, Thumb drive (Free 16 Go of 233 Go)

 

 

 

---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK

[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK

[HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK

~ Scan Security Center in 00mn 00s

 

 

 

---\\ Recherche particulière de fichiers génériques

[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.10/08/2011 - 13:00:00.) -- C:\WINDOWS\Explorer.exe [1037824]

[MD5.93AD0B78C7357A05F50E594EC7C22300] - (....) (.10/08/2011 - 13:00:00.) -- C:\WINDOWS\system32\rundll32.exe [33792]

[MD5.42F5E14E33D79C236680468B1E4999F4] - (.Microsoft Corporation - Internet Extensions for Win32.) (.10/08/2011 - 17:06:11.) -- C:\WINDOWS\system32\wininet.dll [916480]

[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.10/08/2011 - 13:00:00.) -- C:\WINDOWS\system32\Winlogon.exe [512000]

[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.10/08/2011 - 13:00:00.) -- C:\WINDOWS\system32\drivers\atapi.sys [96512]

[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) (.10/08/2011 - 13:00:00.) -- C:\WINDOWS\system32\drivers\ntfs.sys [574976]

~ Scan Generic Processes in 00mn 00s

 

 

 

---\\ Etat des fichiers cachés (Caché/Total)

~ Mes images (My Pictures) : 5/16

~ Mes musiques (My Musics) : 1/2

~ Mes Favoris (My Favorites) : 2/173

~ Mes Documents (My Documents) : 25/487

~ Mon Bureau (My Desktop) : 4/520

~ Menu demarrer (Programs) : 6/58

~ Scan Hidden Files in 00mn 03s

 

 

 

---\\ Processus lancés

[MD5.454DFDC3D40B777455846E749D3B49FF] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\Ati2evxx.exe [602112]

[MD5.9015BC03F62940527EC92D45EE89E46F] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [108289]

[MD5.234051C0D242A6F4A79AE5212C1323D4] - (.LogMeIn, Inc. - LogMeIn Desktop Application.) -- C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [63048]

[MD5.4D83DC461F8F4370274CF6E9AC9A34F4] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [49208]

[MD5.D7779335B0EBC0A7B9C7D0E1105EA078] - (.SlySoft, Inc. - CloneCD Tray.) -- C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe [57344]

[MD5.F8B94D1000DB2A335262165D0FAB4B95] - (.Applian Technologies, Inc. - FLV Service for Ask and Record Toolbar.) -- C:\Program Files\Replay Media Catcher\FLVSrvc.exe [156672]

[MD5.BAD6BEA0DE1F69C82BDB74378CE0C20A] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [932288]

[MD5.29680A793F690EEF4AAA68479D2A6DF8] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [209153]

[MD5.F34E7705751BB413283434697BF8E55D] - (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe [357696]

[MD5.6B87742F27B087AF7FD4ADC2DB685DE0] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [49152]

[MD5.FE36976864A30EA91E14D024F8BF7DD8] - (.Dropbox, Inc. - Dropbox.) -- C:\Documents and Settings\Wise3\Application Data\Dropbox\bin\Dropbox.exe [24176560]

[MD5.4C08FB7ACB28689B586D986D3F5826CF] - (.ATI Technologies Inc. - Catalyst Control Centre: Host application.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe [49152]

[MD5.B8720A787C1223492E6F319465E996CE] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [185089]

[MD5.39133291CB607BDD87CFC565A4A1E7A5] - (.Sun Microsystems, Inc. - Java Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376]

[MD5.F622A3C0C10A26C1DC789CDEB0B2A4EB] - (.LogMeIn, Inc. - LMIGuardianSvc.) -- C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe [374152]

[MD5.CE9E8BF4E9194B29767CDA90F8BDC675] - (.LogMeIn, Inc. - LogMeIn Maintenance Service.) -- C:\Program Files\LogMeIn\x86\RaMaint.exe [136584]

[MD5.432618FA75B61059D2C57D6A7E55147A] - (.LogMeIn, Inc. - LogMeIn.) -- C:\Program Files\LogMeIn\x86\LogMeIn.exe [390528]

[MD5.11F714F85530A2BD134074DC30E99FCA] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [322120]

[MD5.0835A6C3C951A440AD03FB3DAB953D16] - (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2222376]

[MD5.4775579D1AE9C881A6F2F7739858E7CD] - (...) -- C:\Program Files\VIA\RAID\vialogsv.exe [52888]

[MD5.03CB8AEDDAE50558ABC53C297E758BB8] - (.Avira GmbH - Antivirus MailScanner Service.) -- C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [194817]

[MD5.E8A3FA8AB699F5A4E4F75F60502D17AC] - (.Avira GmbH - AntiVir WebGuard Service.) -- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [434945]

[MD5.C87EB305DD476C107A572991631C2D17] - (.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files\TeamViewer\Version6\TeamViewer.exe [7464232]

[MD5.7CB5EBA134D4C7E16D8C1146A3994408] - (.TeamViewer GmbH - Helper process for TeamViewer performance o.) -- C:\Program Files\TeamViewer\Version6\tv_w32.exe [99624]

[MD5.B60DDDD2D63CE41CB8C487FCFBB6419E] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [638816]

[MD5.62BB79160F86CD962F312C68C6239BFD] - (.Microsoft Corporation - Windows Update.) -- C:\WINDOWS\system32\wuauclt.exe [53472]

[MD5.C354A712DCCA3E4AC3C4B8C6A9BD28A0] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [664064]

[MD5.5E9A6658A2A69AE7EB195113B7A2E7A9] - (.Microsoft Corporation - Application Layer Gateway Service.) -- C:\WINDOWS\System32\alg.exe [44544]

[MD5.78E2FA7394A8C4F0F06358627F345FA1] - (...) -- C:\Documents and Settings\Wise3\Bureau\RogueKiller.exe [555008]

~ Scan Processes Running in 00mn 01s

 

 

 

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)

C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

G1 - GCS: Preference [user Data\Default] None

~ Scan Google Browser in 00mn 00s

 

 

 

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)

P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeploytk.dll

P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.3.2".) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll

P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll

P2 - FPN:Firefox Plugin Navigator . (.Zylom - Zylom Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\npzylomgamesplayer.dll

P2 - FPN: [HKLM] [@google.com/npPicasa3,version=3.0.0] - (.Google, Inc. - Picasa plugin.) -- C:\Program Files\Google\Picasa3\npPicasa3.dll

P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll

P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll

P2 - FPN: [HKLM] [@zylom.com/ZylomGamesPlayer] - (.Zylom - Zylom Plugin.) -- C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll

P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll

P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\1.3.21.65\npGoogleUpdate3.dll

~ Scan Firefox Browser in 00mn 00s

 

 

 

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Search

R0 - HKUS\S-1-5-21-1229272821-515967899-1417001333-1003\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Microsoft Corporation

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = Bing

R1 - HKUS\S-1-5-21-1229272821-515967899-1417001333-1003\Software\Microsoft\Internet Explorer\Main,Search Page = Microsoft Corporation

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.19072 (longhorn_ie8_gdr.110420-1700)) -- C:\WINDOWS\system32\ieframe.dll

R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0

R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2

~ Scan IE Browser in 00mn 00s

 

 

 

---\\ Internet Explorer, Proxy Management (R5)

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <local>

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:60505

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1

R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

~ Scan Proxy management in 00mn 00s

 

 

 

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,

F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

~ Scan Keys in 00mn 00s

 

 

 

---\\ Redirection du fichier Hosts (O1)

~ Scan Hosts File in 00mn 00s

 

 

 

---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} . (.IniCom Networks, Inc. - Pas de description.) -- C:\PROGRA~1\FlashFXP\IEFlash.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

~ Scan BHO in 00mn 00s

 

 

 

---\\ Applications démarrées par registre & par dossier (O4)

O4 - HKLM\..\Run: [startCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\qttask.exe

O4 - HKLM\..\Run: [NeroFilterCheck] . (.Ahead Software Gmbh - NeroCheck.) -- C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [LogMeIn GUI] . (.LogMeIn, Inc. - LogMeIn Desktop Application.) -- C:\Program Files\LogMeIn\x86\LogMeInSystray.exe

O4 - HKLM\..\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [CloneCDTray] . (.SlySoft, Inc. - CloneCD Tray.) -- C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe

O4 - HKLM\..\Run: [Ask and Record FLV Service] . (.Applian Technologies, Inc. - FLV Service for Ask and Record Toolbar.) -- C:\Program Files\Replay Media Catcher\FLVSrvc.exe

O4 - HKLM\..\Run: [AdobeCS4ServiceManager] . (.Adobe Systems Incorporated - Adobe CS4 Service Manager.) -- C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe

O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe

O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

O4 - HKLM\..\Run: [MSConfig] . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.exe

O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe

O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe

O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe

O4 - HKUS\S-1-5-21-1229272821-515967899-1417001333-1003\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe

O4 - HKUS\S-1-5-21-1229272821-515967899-1417001333-1003\..\Run: [DAEMON Tools Lite] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe

O4 - HKUS\S-1-5-21-1229272821-515967899-1417001333-1003\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-21-1229272821-515967899-1417001333-1003\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

~ Scan Application in 00mn 00s

 

 

 

---\\ Autres liens utilisateurs (O4)

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Reader 9.lnk . (...) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-A93000000001}\SC_Reader.ico

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Apple Software Update.lnk . (...) -- C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Enregistrement OCR I.R.I.S..lnk . (.I.R.I.S. Image Recognition Integarted Syste.) -- C:\Program Files\HP\IrisOCR_12.3.4\regipe.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\FlashFXP.lnk . (.IniCom Networks, Inc..) -- C:\Program Files\FlashFXP\FlashFXP.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\LogMeIn.lnk . (.LogMeIn, Inc..) -- C:\Program Files\LogMeIn\x86\LogMeInToolkit.exe

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Live ID.lnk . (.Microsoft Corporation.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\SIGNINOPTIONS.EXE

O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe

O4 - Global Startup: C:\Documents And Settings\Wise3\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe

O4 - Global Startup: C:\Documents And Settings\Wise3\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Documents And Settings\Wise3\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe

O4 - Global Startup: C:\Documents And Settings\Wise3\Menu Démarrer\Programmes\Windows Install Clean Up.lnk . (...) -- C:\Documents and Settings\Wise3\Application Data\Microsoft\Installer\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}\Icon386ED4E3.exe

O4 - Global Startup: C:\Documents And Settings\Wise3\Menu Démarrer\Programmes\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe

~ Scan Global Startup in 00mn 00s

 

 

 

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: Télécharger avec Mipony - (.not file.) - file:\\C:\Program Files\MiPony\Browser\IEContext.htm

~ Scan IE Menu Contextuel in 00mn 00s

 

 

 

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)

O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\PROGRA~1\MICROS~3\OFFICE11\REFBARH.ICO

O9 - Extra button: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (...) -- C:\PROGRA~1\MICROS~3\OFFICE11\REFBARH.ICO

O9 - Extra button: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe

~ Scan IE Extra Buttons in 00mn 00s

 

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Service client pour le fournisseur NetWare et DLL d'authentification.) -- C:\WINDOWS\system32\nwprovau.dll

~ Scan Winsock in 00mn 00s

 

 

 

---\\ Objets ActiveX (Downloaded Program Files)(O16)

O16 - DPF: {24774AA3-569B-44A8-97F4-F7DAA4DF2EE3} (CSSAxConfigurator Class) - Belgacom 195

O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.7.cab

O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.extrafilm.be/ImageUploader5.cab

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1266187646546

O16 - DPF: {8D59819B-2067-4A6B-84F4-7F84570E3C30} (LinksysMLViewer Control) - http://cactus.mylinksyscam.com:1024/img/LinksysMLViewer.cab

O16 - DPF: {9B479D7B-916A-45B0-B042-D42865A60E21} (DvrOcx Control) - http://192.168.1.80/DvrOcx.cab

O16 - DPF: {A4150320-98EC-4DB6-9BFB-EBF4B6FBEB16} (DVM_IPCam2 Control) - http://zirkakiou.dyndns.org:81/codebase/DVM_IPCam2.ocx

O16 - DPF: {A93B47FD-9BF6-4DA8-97FC-9270B9D64A6C} (VaPgCtrl Class) - http://bonbon.safe100.net:81/plugin/h263ctrl.cab

O16 - DPF: {B11003F9-9E07-4CF8-8C79-20B1DD62FD5B} (Siebel CSSAxCatalogNavigator Class) - Belgacom 195

O16 - DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} (ExtraFilm Uploader Control) - http://belgacom.extrafilm.be/ExtraFilmUploader6.cab

O16 - DPF: {BFBF6089-ABB0-479D-90F1-1C7A8C0C19FD} (Siebel Product Selection) - Belgacom 195

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} () - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O16 - DPF: {E68D228B-A4FB-4A12-A175-BDE041D58372} (Siebel High Interactivity Framework) - Belgacom 195

O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100

~ Scan Objets ActiveX in 00mn 00s

 

 

 

---\\ Modification Domaine/Adresses DNS (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{6E010D28-595A-42F8-852E-3A876032AC16}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS1\Services\Tcpip\..\{E8C2E1EB-0D8C-4C3B-9A39-53CB284DEEA3}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS2\Services\Tcpip\..\{E8C2E1EB-0D8C-4C3B-9A39-53CB284DEEA3}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS3\Services\Tcpip\..\{6E010D28-595A-42F8-852E-3A876032AC16}: DhcpNameServer = 192.168.1.1

~ Scan Domain in 00mn 00s

 

 

 

---\\ Protocole additionnel (O18)

O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll

O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll

O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll

O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll

O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll

O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll

O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll

O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll

O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\MSITSS.DLL

O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\PROGRA~1\FICHIE~1\MICROS~1\WEBCOM~1\10\OWC10.DLL

O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\PROGRA~1\FICHIE~1\MICROS~1\WEBCOM~1\11\OWC11.DLL

O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll

O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll

O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll

O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\WINDOWS\system32\mshtml.dll

O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll

O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll

O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll

O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll

O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\system32\urlmon.dll

O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll

O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\MSOXMLMF.DLL

~ Scan Protocole Additionnel in 00mn 00s

 

 

 

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)

O20 - Winlogon Notify: AtiExtEvent . (.ATI Technologies Inc. - ATI External Event Utility DLL Module.) -- C:\WINDOWS\system32\Ati2evxx.dll

O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\WINDOWS\system32\crypt32.dll

O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\WINDOWS\system32\cryptnet.dll

O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\WINDOWS\system32\cscdll.dll

O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\System32\dimsntfy.dll

O20 - Winlogon Notify: LMIinit . (.LogMeIn, Inc. - LogMeIn Remote Control Helper.) -- C:\WINDOWS\system32\LMIinit.dll

O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll

O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll

O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\WINDOWS\system32\sclgntfy.dll

O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\WlNotify.dll

O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll

O20 - Winlogon Notify: WgaLogon . (...) -- C:\WINDOWS\system32\WgaLogon.dll

O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\WINDOWS\system32\wlnotify.dll

~ Scan Winlogon in 00mn 00s

 

 

 

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)

O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll

O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll

O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll

~ Scan SSODL in 00mn 00s

 

 

 

---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)

O22 - SharedTaskScheduler: (no name) - {438755C2-A8BA-11D1-B96B-00A0C90312E1} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll

O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll

~ Scan STS/SSO in 00mn 00s

 

 

 

---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) . (.Avira GmbH - Antivirus MailScanner Service.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe

O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) . (.Avira GmbH - AntiVir WebGuard Service.) - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.exe

O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart (ATI Smart) . (.Pas de propriétaire - ATI Smart.) - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: LMIGuardianSvc (LMIGuardianSvc) . (.LogMeIn, Inc. - LMIGuardianSvc.) - C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe

O23 - Service: LogMeIn Maintenance Service (LMIMaint) . (.LogMeIn, Inc. - LogMeIn Maintenance Service.) - C:\Program Files\LogMeIn\x86\RaMaint.exe

O23 - Service: LogMeIn (LogMeIn) . (.LogMeIn, Inc. - LogMeIn.) - C:\Program Files\LogMeIn\x86\LogMeIn.exe

O23 - Service: TeamViewer 6 (TeamViewer6) . (.TeamViewer GmbH - TeamViewer Remote Control Application.) - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

O23 - Service: VRAID Log Service (VRAID Log Service) . (...) - C:\Program Files\VIA\RAID\vialogsv.exe

~ Scan Services in 00mn 00s

 

 

 

---\\ Enumération Active Desktop & MHTML Editor (O24)

O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Office Word.) - C:\Program Files\Microsoft Office\OFFICE11\WINWORD.exe

~ Scan Desktop Component in 00mn 00s

 

 

 

---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AppleSoftwareUpdate.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At1.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At2.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At3.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\At4.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1229272821-515967899-1417001333-1003Core.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1229272821-515967899-1417001333-1003UA.job

O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\User_Feed_Synchronization-{25D9291D-8748-4F74-B5C3-80D91559BFCB}.job

[MD5.7B43567B4C32AD7ADED537CD3B1342B9] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe

[MD5.EFB437D5DEB333C698E85D4912B7872D] [APT] [At1] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe

[MD5.EFB437D5DEB333C698E85D4912B7872D] [APT] [At2] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe

[MD5.EFB437D5DEB333C698E85D4912B7872D] [APT] [At3] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe

[MD5.EFB437D5DEB333C698E85D4912B7872D] [APT] [At4] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe

[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe

[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-1229272821-515967899-1417001333-1003Core] (.Google Inc..) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-1229272821-515967899-1417001333-1003UA] (.Google Inc..) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

~ Scan Scheduled Task in 00mn 00s

 

 

 

---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\WINDOWS\system32\drivers\afd.sys

O41 - Driver: (AmdK7) . (.Microsoft Corporation - Pilote de périphérique processeur.) - C:\WINDOWS\system32\DRIVERS\amdk7.sys

O41 - Driver: (avgio) . (.Avira GmbH - Avira AntiVir Support for Minifilter.) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys

O41 - Driver: (avipbb) . (.Avira GmbH - Avira Driver for RootKit Detection.) - C:\WINDOWS\system32\DRIVERS\avipbb.sys

O41 - Driver: (Cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\WINDOWS\system32\DRIVERS\cdrom.sys

O41 - Driver: (ElbyCDIO) . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) - C:\WINDOWS\system32\Drivers\ElbyCDIO.sys

O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\WINDOWS\system32\DRIVERS\i8042prt.sys

O41 - Driver: (Imapi) . (.Microsoft Corporation - IMAPI Kernel Driver.) - C:\WINDOWS\system32\DRIVERS\imapi.sys

O41 - Driver: (IPSec) . (.Microsoft Corporation - IPSec Driver.) - C:\WINDOWS\system32\DRIVERS\ipsec.sys

O41 - Driver: (Kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\WINDOWS\system32\DRIVERS\kbdclass.sys

O41 - Driver: (Mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\WINDOWS\system32\DRIVERS\mouclass.sys

O41 - Driver: (MRxSmb) . (.Microsoft Corporation - Windows NT SMB Minirdr.) - C:\WINDOWS\system32\DRIVERS\mrxsmb.sys

O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\WINDOWS\system32\DRIVERS\netbios.sys

O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\WINDOWS\system32\DRIVERS\netbt.sys

O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\WINDOWS\system32\DRIVERS\rasacd.sys

O41 - Driver: (Rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\WINDOWS\system32\DRIVERS\rdbss.sys

O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\WINDOWS\system32\DRIVERS\RDPCDD.sys

O41 - Driver: (redbook) . (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) - C:\WINDOWS\system32\DRIVERS\redbook.sys

O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\WINDOWS\system32\DRIVERS\serial.sys

O41 - Driver: (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\WINDOWS\system32\DRIVERS\ssmdrv.sys

O41 - Driver: (Tcpip) . (.Microsoft Corporation - TCP/IP Protocol Driver.) - C:\WINDOWS\system32\DRIVERS\tcpip.sys

O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\WINDOWS\system32\DRIVERS\termdd.sys

O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\WINDOWS\system32\drivers\vga.sys

O41 - Driver: Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 (WS2IFSL) . (.Microsoft Corporation - Winsock2 IFS Layer.) - C:\WINDOWS\system32\drivers\ws2ifsl.sys

~ Scan Drivers in 00mn 00s

 

 

 

---\\ Logiciels installés (O42)

O42 - Logiciel: ATI - Utilitaire de désinstallation du logiciel - (.Pas de propriétaire.) [HKLM] -- All ATI Software

O42 - Logiciel: ATI Catalyst Control Center - (.Pas de propriétaire.) [HKLM] -- {055EE59D-217B-43A7-ABFF-507B966405D8}

O42 - Logiciel: ATI Display Driver - (.Pas de propriétaire.) [HKLM] -- ATI Display Driver

O42 - Logiciel: Adobe Creative Suite 4 Master Collection - (.Adobe Systems Incorporated.) [HKLM] -- Adobe_b2d6abde968e6f277ddbfd501383e02

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX

O42 - Logiciel: Applian Director - (.Applian Technologies Inc..) [HKLM] -- Applian Director2.0

O42 - Logiciel: Avira AntiVir Premium - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop

O42 - Logiciel: C-Media 3D Audio - (.Pas de propriétaire.) [HKLM] -- C-Media Audio

O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner

O42 - Logiciel: CloneCD - (.SlySoft.) [HKLM] -- CloneCD

O42 - Logiciel: DVDFab 7.0.6.9 Beta (04/06/2010) - (.Fengtao Software Inc..) [HKLM] -- DVDFab 7_is1

O42 - Logiciel: DriverLINX Port I/O Driver - (.Pas de propriétaire.) [HKLM] -- DriverLINX Port I/O Driver

O42 - Logiciel: FlashFXP v3 - (.IniCom Networks, Inc..) [HKLM] -- {96E3AED5-3D0B-4BB0-84C2-1EDADB204487}

O42 - Logiciel: GaDaBaMa RC1.1 - (.GoodfellaKeyser.) [HKLM] -- {3D2E5E45-E7DF-4376-8F43-7DEB26A8143E}_is1

O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595

O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484

O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5

O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3

O42 - Logiciel: Jtag Tool - (.Pas de propriétaire.) [HKCU] -- Jtag Tool

O42 - Logiciel: Jtag Tool 1.74 - (.Pas de propriétaire.) [HKLM] -- Jtag Tool 1.74

O42 - Logiciel: K-Lite Codec Pack 7.0.0 (Full) - (.Pas de propriétaire.) [HKLM] -- KLiteCodecPack_is1

O42 - Logiciel: Lecteur Windows Media 11 - (.Pas de propriétaire.) [HKLM] -- Windows Media Player

O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver

O42 - Logiciel: MKVtoolnix 3.2.0 - (.Moritz Bunkus.) [HKLM] -- MKVtoolnix

O42 - Logiciel: MSN - (.Pas de propriétaire.) [HKLM] -- MSNINST

O42 - Logiciel: MSRSD v4.21 - (.MajorShare.com, Gürkan Dilmen.) [HKLM] -- {F9263444-9913-4896-8D7C-E056C4C5FB38}_is1

O42 - Logiciel: MakeMKV v1.5.5_beta - (.GuinpinSoft inc.) [HKLM] -- MakeMKV

O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.1.1800 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: MiPony 1.4.0 - (.Pas de propriétaire.) [HKLM] -- MiPony

O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1

O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile

O42 - Logiciel: Microsoft .NET Framework 4 Extended - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Extended

O42 - Logiciel: Microsoft Compression Client Pack 1.0 for Windows XP - (.Microsoft Corporation.) [HKLM] -- MSCompPackV1

O42 - Logiciel: Microsoft Help Viewer 1.0 - (.Microsoft Corporation.) [HKLM] -- Microsoft Help Viewer 1.0

O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000

O42 - Logiciel: Microsoft Windows SDK for Windows 7 (7.1) - (.Microsoft Corporation.) [HKLM] -- SDKSetup_7.1.7600.0.30514

O42 - Logiciel: Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 2.0 Language Pack - FRA

O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack

O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Extended FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Extended FRA Language Pack

O42 - Logiciel: Nero 6 Ultra Edition - (.Pas de propriétaire.) [HKLM] -- Nero - Burning Rom!UninstallKey

O42 - Logiciel: NewsLeecher v4.0 Beta 11 - (.Pas de propriétaire.) [HKLM] -- NewsLeecher_is1

O42 - Logiciel: PageshotsPro 1.0.0 - (.PageshotsPro.) [HKLM] -- PageshotsPro_is1

O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM] -- Picasa 3

O42 - Logiciel: PoiEdit - (.Pas de propriétaire.) [HKLM] -- PoiEdit

O42 - Logiciel: Portrait Professional 10.1 Trial - (.Anthropics Technology Ltd..) [HKLM] -- PortraitProfessional10Trial_is1

O42 - Logiciel: QuickPar 0.9 - (.Peter B. Clements.) [HKLM] -- QuickPar

O42 - Logiciel: Replay AV 8 - (.Pas de propriétaire.) [HKLM] -- Replay_AV_807

O42 - Logiciel: Replay Converter 3 - (.Applian Technologies Inc..) [HKLM] -- Replay Converter 3

O42 - Logiciel: Replay Media Catcher - (.Applian Technologies Inc..) [HKLM] -- Replay Media Catcher 3.11

O42 - Logiciel: Restorer2000 Pro 3.3 - (.Bitmart Inc..) [HKLM] -- Restorer2000 Pro_is1

O42 - Logiciel: SdlDotNet Runtime 6.1.0 - (.SdlDotNet.) [HKLM] -- SdlDotNetRuntime

O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473

O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708

O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663

O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870

O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Extended (KB2416472) - (.Microsoft Corporation.) [HKLM] -- {0A0CADCF-78DA-33C4-A350-CD51849B9702}.KB2416472

O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2478663

O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870

O42 - Logiciel: Shape Collage - (.Shape Collage Inc..) [HKLM] -- ShapeCollage

O42 - Logiciel: SnadBoy's Revelation v2 - (.SnadBoy Software.) [HKLM] -- SnadBoy's Revelation v2

O42 - Logiciel: TeamViewer 6 - (.TeamViewer GmbH.) [HKLM] -- TeamViewer 6

O42 - Logiciel: Total Commander (Remove or Repair) - (.Ghisler Software GmbH.) [HKLM] -- Totalcmd

O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707

O42 - Logiciel: VIA Gestionnaire de périphériques de plate-forme - (.VIA Technologies, Inc..) [HKLM] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}

O42 - Logiciel: WBFS Manager 3.0 - (.AlexDP.) [HKLM] -- WBFS Manager 3.0

O42 - Logiciel: WinPcap 4.0 - (.CACE Technologies.) [HKLM] -- WinPcapInst

O42 - Logiciel: WinSCP 4.2.6 - (.Martin Prikryl.) [HKLM] -- winscp3_is1

O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify

O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8

O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11

O42 - Logiciel: Windows Media Format 11 runtime - (.Pas de propriétaire.) [HKLM] -- Windows Media Format Runtime

O42 - Logiciel: Windows Media Player 11 - (.Microsoft Corporation.) [HKLM] -- wmp11

O42 - Logiciel: abgx360 v1.0.5 - (.Pas de propriétaire.) [HKLM] -- abgx360

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\ASProtect]

[HKCU\Software\ATI]

[HKCU\Software\AVS4YOU]

[HKCU\Software\Acronis]

[HKCU\Software\Adobe]

[HKCU\Software\Ahead]

[HKCU\Software\Anthropics]

[HKCU\Software\AppDataLow\Software\Microsoft]

[HKCU\Software\AppDataLow\Software]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\ApplianTechnologies]

[HKCU\Software\Applian]

[HKCU\Software\Applications Produites Par AppWizard Locales]

[HKCU\Software\Aurigma]

[HKCU\Software\AutoDalle]

[HKCU\Software\Avira]

[HKCU\Software\Big Fish Games]

[HKCU\Software\Binary Noise]

[HKCU\Software\BitMartInc]

[HKCU\Software\Bugsplat]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\CompanionLink]

[HKCU\Software\Conduit]

[HKCU\Software\CoreAAC]

[HKCU\Software\Cygnus Solutions]

[HKCU\Software\DT Soft]

[HKCU\Software\DVDFab]

[HKCU\Software\DivXNetworks]

[HKCU\Software\Dnote Software]

[HKCU\Software\EFD Software]

[HKCU\Software\Elecard]

[HKCU\Software\FastStone]

[HKCU\Software\Fieldston Software]

[HKCU\Software\FlashFXP]

[HKCU\Software\Foxit Software Company]

[HKCU\Software\GNU]

[HKCU\Software\Gabest]

[HKCU\Software\Ghisler]

[HKCU\Software\Google]

[HKCU\Software\Gortex3D team]

[HKCU\Software\HP]

[HKCU\Software\Haali]

[HKCU\Software\HeartWare]

[HKCU\Software\Hewlett-Packard]

[HKCU\Software\IM Providers]

[HKCU\Software\Intel]

[HKCU\Software\JavaSoft]

[HKCU\Software\Licenses]

[HKCU\Software\LogMeIn]

[HKCU\Software\Luke Pascoe Software]

[HKCU\Software\MAGIX AG]

[HKCU\Software\MONOGRAM]

[HKCU\Software\Macromedia]

[HKCU\Software\Magix]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\Martin Prikryl]

[HKCU\Software\MediaInfo]

[HKCU\Software\Modio2]

[HKCU\Software\MozillaPlugins]

[HKCU\Software\Mozilla]

[HKCU\Software\Nero]

[HKCU\Software\Netscape]

[HKCU\Software\ODBC]

[HKCU\Software\OJOsoft Corporation]

[HKCU\Software\PC SOFT]

[HKCU\Software\PDF Suite 2010]

[HKCU\Software\PDF Suite 2011]

[HKCU\Software\Piriform]

[HKCU\Software\Policies]

[HKCU\Software\QuickPar]

[HKCU\Software\RealNetworks]

[HKCU\Software\Replay AV 8]

[HKCU\Software\Replay Media Catcher 4]

[HKCU\Software\Replay Media Catcher]

[HKCU\Software\ReplayConverter]

[HKCU\Software\SdlDotNet]

[HKCU\Software\Sensaura]

[HKCU\Software\SlySoft]

[HKCU\Software\SupRip]

[HKCU\Software\Sysinternals]

[HKCU\Software\TeamViewer]

[HKCU\Software\TopoGrafix]

[HKCU\Software\Trolltech]

[HKCU\Software\VB and VBA Program Settings]

[HKCU\Software\VirtualDJ]

[HKCU\Software\Webgear]

[HKCU\Software\Wget]

[HKCU\Software\WhereIsIt-Soft]

[HKCU\Software\WinRAR SFX]

[HKCU\Software\WinRAR]

[HKCU\Software\Wow6432Node]

[HKCU\Software\Xara]

[HKCU\Software\YouSendIt]

[HKCU\Software\ZjSoft]

[HKCU\Software\Zylom]

[HKCU\Software\abgx360gui]

[HKCU\Software\byLight]

[HKCU\Software\freeBOOT ToolBox Maker]

[HKCU\Software\gSyncit]

[HKCU\Software\madFlac]

[HKCU\Software\mkvmergeGUI]

[HKLM\Software\14919ea49a8f3b4aa3cf1058d9a64cec]

[HKLM\Software\781]

[HKLM\Software\8322898]

[HKLM\Software\ACTIA]

[HKLM\Software\ATI Technologies Inc.]

[HKLM\Software\ATI Technologies]

[HKLM\Software\ATI]

[HKLM\Software\AVS4YOU]

[HKLM\Software\Acronis]

[HKLM\Software\Adobe]

[HKLM\Software\Ahead]

[HKLM\Software\Anthropics]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Apple Inc.]

[HKLM\Software\Applian Technologies]

[HKLM\Software\ApplianTechnologies]

[HKLM\Software\Audible]

[HKLM\Software\AviSynth]

[HKLM\Software\Avira]

[HKLM\Software\BitMartInc]

[HKLM\Software\Boonty]

[HKLM\Software\BrowserChoice]

[HKLM\Software\C-Media]

[HKLM\Software\C07ft5Y]

[HKLM\Software\Caphyon]

[HKLM\Software\Classes]

[HKLM\Software\Clients]

[HKLM\Software\Codec Tweak Tool]

[HKLM\Software\Conduit]

[HKLM\Software\Cygnus Solutions]

[HKLM\Software\DIOC]

[HKLM\Software\DT Soft]

[HKLM\Software\DVDFab]

[HKLM\Software\DivXNetworks]

[HKLM\Software\DivX]

[HKLM\Software\FlashFXP]

[HKLM\Software\GNU]

[HKLM\Software\GaDaBaMa]

[HKLM\Software\Gemplus]

[HKLM\Software\Google]

[HKLM\Software\HP]

[HKLM\Software\HaaliMkx]

[HKLM\Software\Hewlett-Packard]

[HKLM\Software\InstallShield]

[HKLM\Software\Intel]

[HKLM\Software\JavaSoft]

[HKLM\Software\JreMetrics]

[HKLM\Software\KLCodecPack]

[HKLM\Software\LogMeIn, Inc.]

[HKLM\Software\LogMeIn]

[HKLM\Software\Macromedia]

[HKLM\Software\Macrovision]

[HKLM\Software\Magix]

[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]

[HKLM\Software\Malwarebytes' Anti-Malware]

[HKLM\Software\Martin Prikryl]

[HKLM\Software\Micorosft]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Mozilla]

[HKLM\Software\Nero]

[HKLM\Software\ODBC]

[HKLM\Software\PoINT]

[HKLM\Software\Policies]

[HKLM\Software\Program Groups]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\Replay AV 8]

[HKLM\Software\Replay Media Catcher]

[HKLM\Software\ReplayConverter]

[HKLM\Software\Robinsod]

[HKLM\Software\S3R521]

[HKLM\Software\Schlumberger]

[HKLM\Software\Scientific Software Tools, Inc.]

[HKLM\Software\Secure]

[HKLM\Software\ShenZhen RuiCai Co.,Ltd]

[HKLM\Software\SlySoft]

[HKLM\Software\Swearware]

[HKLM\Software\TeamViewer]

[HKLM\Software\TrendMicro]

[HKLM\Software\Trolltech]

[HKLM\Software\V-RAID RAID Tool]

[HKLM\Software\VIA Raid Lib]

[HKLM\Software\VIA Technologies, Inc]

[HKLM\Software\VirtualDJ]

[HKLM\Software\WinPcap]

[HKLM\Software\WinRAR]

[HKLM\Software\Windows 3.1 Migration Status]

[HKLM\Software\X-AVCSD]

[HKLM\Software\Xara]

[HKLM\Software\iTinySoft]

[HKLM\Software\mkvmergeGUI]

[HKLM\Software\mozilla.org]

[HKLM\Software\vivotek]

~ Scan Softwares in 00mn 00s

 

 

 

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)

O43 - CFD: 06/03/2010 - 11:45:00 - [1290665170] ----D- C:\Program Files\Adobe

O43 - CFD: 21/03/2010 - 11:39:04 - [75766252] ----D- C:\Program Files\Ahead

O43 - CFD: 24/02/2010 - 10:01:56 - [2221118] ----D- C:\Program Files\Apple Software Update

O43 - CFD: 02/05/2010 - 09:49:10 - [295974] ----D- C:\Program Files\Applian Director

O43 - CFD: 05/10/2010 - 22:34:32 - [25441399] ----D- C:\Program Files\Applian Technologies

O43 - CFD: 03/06/2011 - 03:08:56 - [293100] ----D- C:\Program Files\Application Verifier

O43 - CFD: 14/02/2010 - 23:43:20 - [82247708] ----D- C:\Program Files\ATI Technologies

O43 - CFD: 14/02/2010 - 23:53:48 - [136643937] ----D- C:\Program Files\Avira

O43 - CFD: 14/09/2010 - 23:27:08 - [0] ----D- C:\Program Files\byLight

O43 - CFD: 14/02/2010 - 23:36:06 - [15054539] ----D- C:\Program Files\C-Media 3D Audio

O43 - CFD: 28/02/2010 - 10:56:42 - [2913496] ----D- C:\Program Files\CCleaner

O43 - CFD: 09/03/2011 - 01:40:52 - [413916] ----D- C:\Program Files\CompanionLink

O43 - CFD: 14/02/2010 - 22:46:20 - [0] ----D- C:\Program Files\ComPlus Applications

O43 - CFD: 18/05/2010 - 20:46:42 - [10308220] ----D- C:\Program Files\DAEMON Tools Lite

O43 - CFD: 16/07/2011 - 19:27:28 - [30173917] ----D- C:\Program Files\Debugging Tools for Windows

O43 - CFD: 20/03/2010 - 12:20:54 - [1122850] ----D- C:\Program Files\DivX

O43 - CFD: 21/03/2010 - 19:56:34 - [303196] ----D- C:\Program Files\DLPortIO

O43 - CFD: 07/06/2010 - 22:19:18 - [40920130] ----D- C:\Program Files\DVDFab 7

O43 - CFD: 14/07/2011 - 22:54:24 - [1064085633] ----D- C:\Program Files\Fichiers communs

O43 - CFD: 16/04/2010 - 09:44:26 - [8980666] ----D- C:\Program Files\FlashFXP

O43 - CFD: 02/06/2011 - 23:34:40 - [80355771] ----D- C:\Program Files\Google

O43 - CFD: 19/07/2010 - 16:15:44 - [47] ----D- C:\Program Files\HD Tune Pro

O43 - CFD: 19/07/2010 - 16:23:08 - [2976] ----D- C:\Program Files\HDD Health

O43 - CFD: 25/11/2010 - 22:45:04 - [164866558] ----D- C:\Program Files\HP

O43 - CFD: 02/06/2011 - 23:38:26 - [11461222] --H-D- C:\Program Files\InstallShield Installation Information

O43 - CFD: 19/06/2011 - 22:24:50 - [5977094] ----D- C:\Program Files\Internet Explorer

O43 - CFD: 27/07/2011 - 15:49:36 - [4211372] ----D- C:\Program Files\iPrep

O43 - CFD: 30/05/2010 - 18:33:12 - [81275652] ----D- C:\Program Files\Java

O43 - CFD: 02/06/2011 - 23:54:38 - [25133161] ----D- C:\Program Files\Jtag Tool

O43 - CFD: 26/03/2011 - 09:02:10 - [47567601] ----D- C:\Program Files\K-Lite Codec Pack

O43 - CFD: 17/12/2010 - 09:04:08 - [45151209] ----D- C:\Program Files\LogMeIn

O43 - CFD: 10/04/2010 - 17:23:50 - [12093984] ----D- C:\Program Files\MajorShare

O43 - CFD: 18/05/2010 - 21:27:26 - [10351935] ----D- C:\Program Files\MakeMKV

O43 - CFD: 15/07/2011 - 08:19:12 - [7003240] ----D- C:\Program Files\Malwarebytes' Anti-Malware

O43 - CFD: 15/02/2010 - 00:01:58 - [2174045] ----D- C:\Program Files\Messenger

O43 - CFD: 15/02/2010 - 00:31:24 - [226432] ----D- C:\Program Files\Microsoft

O43 - CFD: 14/02/2010 - 22:48:56 - [0] ----D- C:\Program Files\microsoft frontpage

O43 - CFD: 03/06/2011 - 03:10:48 - [4685371] ----D- C:\Program Files\Microsoft Help Viewer

O43 - CFD: 14/07/2011 - 23:41:56 - [450146094] ----D- C:\Program Files\Microsoft Office

O43 - CFD: 03/06/2011 - 02:42:44 - [354358742] ----D- C:\Program Files\Microsoft SDKs

O43 - CFD: 20/06/2011 - 13:58:24 - [38411899] ----D- C:\Program Files\Microsoft Silverlight

O43 - CFD: 15/02/2010 - 00:43:52 - [14904] ----D- C:\Program Files\Microsoft Visual Studio

O43 - CFD: 03/06/2011 - 03:03:58 - [566952123] ----D- C:\Program Files\Microsoft Visual Studio 10.0

O43 - CFD: 03/06/2011 - 03:11:16 - [5936426] ----D- C:\Program Files\Microsoft Windows Performance Toolkit

O43 - CFD: 15/02/2010 - 00:59:30 - [4368271] ----D- C:\Program Files\Microsoft Works

O43 - CFD: 16/08/2010 - 14:31:26 - [339327] ----D- C:\Program Files\Microsoft.NET

O43 - CFD: 30/05/2010 - 17:07:36 - [7965516] ----D- C:\Program Files\MiPony

O43 - CFD: 15/07/2011 - 13:21:52 - [40756980] ----D- C:\Program Files\MKVtoolnix

O43 - CFD: 12/08/2010 - 01:26:16 - [10374874] ----D- C:\Program Files\Movie Maker

O43 - CFD: 18/10/2010 - 08:26:10 - [2495136] ----D- C:\Program Files\Mozilla Firefox

O43 - CFD: 03/06/2011 - 02:42:46 - [1247453] ----D- C:\Program Files\MSBuild

O43 - CFD: 23/07/2011 - 15:59:10 - [105088600] ----D- C:\Program Files\MSECache

O43 - CFD: 30/08/2010 - 21:15:50 - [21471559] ----D- C:\Program Files\MSN

O43 - CFD: 14/02/2010 - 22:46:10 - [8745735] ----D- C:\Program Files\MSN Gaming Zone

O43 - CFD: 15/02/2010 - 02:09:56 - [0] ----D- C:\Program Files\MSXML 4.0

O43 - CFD: 12/11/2010 - 01:42:40 - [674867] ----D- C:\Program Files\MyPhoneExplorer

O43 - CFD: 14/02/2010 - 22:47:22 - [3285523] ----D- C:\Program Files\NetMeeting

O43 - CFD: 14/02/2010 - 22:46:16 - [1804] ----D- C:\Program Files\Online Services

O43 - CFD: 17/12/2010 - 04:00:40 - [4379321] ----D- C:\Program Files\Outlook Express

O43 - CFD: 25/10/2010 - 20:40:50 - [941108] ----D- C:\Program Files\QuickPar

O43 - CFD: 08/10/2010 - 18:35:56 - [76337719] ----D- C:\Program Files\QuickTime

O43 - CFD: 15/02/2010 - 00:23:32 - [319514312] ----D- C:\Program Files\Reference Assemblies

O43 - CFD: 05/05/2011 - 08:22:12 - [51209001] ----D- C:\Program Files\Replay AV 8

O43 - CFD: 02/05/2010 - 10:05:42 - [43601496] ----D- C:\Program Files\Replay Converter 3

O43 - CFD: 31/07/2011 - 00:40:24 - [15077180] ----D- C:\Program Files\Replay Media Catcher

O43 - CFD: 28/07/2010 - 20:33:10 - [11414527] ----D- C:\Program Files\Restorer2000 Pro

O43 - CFD: 02/06/2011 - 23:38:28 - [0] ----D- C:\Program Files\Samsung

O43 - CFD: 10/04/2010 - 11:59:34 - [4494819] ----D- C:\Program Files\SdlDotNet

O43 - CFD: 14/02/2010 - 22:47:42 - [1025] ----D- C:\Program Files\Services en ligne

O43 - CFD: 11/11/2010 - 17:46:42 - [390966] ----D- C:\Program Files\Siber Systems

O43 - CFD: 13/03/2010 - 12:15:22 - [4982400] ----D- C:\Program Files\SlySoft

O43 - CFD: 02/06/2011 - 23:36:36 - [778240] ----D- C:\Program Files\Smart VS-IP Surveillance System

O43 - CFD: 02/07/2010 - 09:25:32 - [269999] ----D- C:\Program Files\SnadBoy's Revelation v2

O43 - CFD: 27/10/2010 - 09:55:42 - [0] ----D- C:\Program Files\Solveig Multimedia

O43 - CFD: 03/06/2011 - 00:00:22 - [40356249] ----D- C:\Program Files\TeamViewer

O43 - CFD: 23/02/2011 - 16:22:10 - [2] ----D- C:\Program Files\Tracker Software

O43 - CFD: 14/02/2010 - 22:52:46 - [0] --H-D- C:\Program Files\Uninstall Information

O43 - CFD: 14/02/2010 - 23:24:56 - [11813884] ----D- C:\Program Files\VIA

O43 - CFD: 26/03/2010 - 21:02:18 - [3574367] ----D- C:\Program Files\WBFS

O43 - CFD: 11/11/2010 - 17:29:24 - [0] ----D- C:\Program Files\WebGear

O43 - CFD: 27/02/2011 - 12:49:04 - [142742] ----D- C:\Program Files\Windows Installer Clean Up

O43 - CFD: 15/02/2010 - 00:31:20 - [45805863] ----D- C:\Program Files\Windows Live

O43 - CFD: 15/02/2010 - 00:31:10 - [245112] ----D- C:\Program Files\Windows Live SkyDrive

O43 - CFD: 18/02/2010 - 12:41:48 - [3581070] ----D- C:\Program Files\Windows Media Connect 2

O43 - CFD: 18/02/2010 - 12:41:46 - [8278281] ----D- C:\Program Files\Windows Media Player

O43 - CFD: 14/02/2010 - 22:46:04 - [3942655] ----D- C:\Program Files\Windows NT

O43 - CFD: 14/02/2010 - 22:47:44 - [0] --H-D- C:\Program Files\WindowsUpdate

O43 - CFD: 02/05/2010 - 10:06:56 - [197081] ----D- C:\Program Files\WinPcap

O43 - CFD: 06/07/2010 - 22:09:40 - [3887660] ----D- C:\Program Files\WinRAR

O43 - CFD: 14/04/2010 - 09:27:58 - [8993344] ----D- C:\Program Files\WinSCP

O43 - CFD: 14/02/2010 - 22:48:56 - [0] ----D- C:\Program Files\xerox

O43 - CFD: 10/08/2011 - 01:31:44 - [4002259] ----D- C:\Program Files\ZHPDiag

O43 - CFD: 20/06/2010 - 11:41:00 - [478946024] ----D- C:\Program Files\Fichiers Communs\Adobe

O43 - CFD: 21/03/2010 - 11:39:02 - [26986943] ----D- C:\Program Files\Fichiers Communs\Ahead

O43 - CFD: 24/02/2010 - 10:02:02 - [44307712] ----D- C:\Program Files\Fichiers Communs\Apple

O43 - CFD: 12/09/2010 - 15:00:22 - [0] ----D- C:\Program Files\Fichiers Communs\AVSMedia

O43 - CFD: 15/02/2010 - 00:44:04 - [86016] ----D- C:\Program Files\Fichiers Communs\DESIGNER

O43 - CFD: 14/02/2010 - 23:41:50 - [5042258] ----D- C:\Program Files\Fichiers Communs\InstallShield

O43 - CFD: 06/03/2010 - 11:24:22 - [655885] ----D- C:\Program Files\Fichiers Communs\Macrovision Shared

O43 - CFD: 20/04/2010 - 23:24:14 - [180] ----D- C:\Program Files\Fichiers Communs\MAGIX Services

O43 - CFD: 20/04/2010 - 21:46:48 - [0] ----D- C:\Program Files\Fichiers Communs\MAGIX Shared

O43 - CFD: 23/07/2011 - 16:00:00 - [338304806] ----D- C:\Program Files\Fichiers Communs\Microsoft Shared

O43 - CFD: 14/02/2010 - 22:47:18 - [284160] ----D- C:\Program Files\Fichiers Communs\MSSoap

O43 - CFD: 14/02/2010 - 23:41:44 - [0] ----D- C:\Program Files\Fichiers Communs\ODBC

O43 - CFD: 14/02/2010 - 22:47:20 - [8106] ----D- C:\Program Files\Fichiers Communs\Services

O43 - CFD: 14/02/2010 - 23:41:42 - [3787229] ----D- C:\Program Files\Fichiers Communs\SpeechEngines

O43 - CFD: 15/02/2010 - 00:43:46 - [20911367] ----D- C:\Program Files\Fichiers Communs\System

O43 - CFD: 15/02/2010 - 00:27:14 - [144764947] ----D- C:\Program Files\Fichiers Communs\Windows Live

O43 - CFD: 03/07/2011 - 22:50:00 - [9890] ----D- C:\Documents and Settings\Wise3\Application Data\abgx360

O43 - CFD: 16/08/2010 - 10:40:44 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\Acronis

O43 - CFD: 28/07/2011 - 22:24:50 - [12524238] ----D- C:\Documents and Settings\Wise3\Application Data\Adobe

O43 - CFD: 09/07/2011 - 16:59:58 - [1366] ----D- C:\Documents and Settings\Wise3\Application Data\Anthropics

O43 - CFD: 14/05/2010 - 08:37:54 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\Apple Computer

O43 - CFD: 08/06/2010 - 12:03:54 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\ArcSoft

O43 - CFD: 15/02/2010 - 00:37:10 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\ATI

O43 - CFD: 21/07/2010 - 14:33:22 - [3448] ----D- C:\Documents and Settings\Wise3\Application Data\Autodesk

O43 - CFD: 15/02/2010 - 02:08:22 - [46080] ----D- C:\Documents and Settings\Wise3\Application Data\Avira

O43 - CFD: 12/09/2010 - 14:51:16 - [60] ----D- C:\Documents and Settings\Wise3\Application Data\AVS4YOU

O43 - CFD: 11/11/2010 - 22:57:08 - [18434] ----D- C:\Documents and Settings\Wise3\Application Data\CompanionLink

O43 - CFD: 06/03/2010 - 14:30:12 - [3958] ----D- C:\Documents and Settings\Wise3\Application Data\DAEMON Tools Lite

O43 - CFD: 19/03/2010 - 19:51:12 - [111616] ----D- C:\Documents and Settings\Wise3\Application Data\DivX

O43 - CFD: 10/05/2011 - 22:55:22 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\Download Manager

O43 - CFD: 09/08/2011 - 19:44:30 - [35766769] ----D- C:\Documents and Settings\Wise3\Application Data\Dropbox

O43 - CFD: 13/12/2010 - 19:38:30 - [999] ----D- C:\Documents and Settings\Wise3\Application Data\DVDFab

O43 - CFD: 21/02/2010 - 11:52:36 - [1056] ----D- C:\Documents and Settings\Wise3\Application Data\Filmotech

O43 - CFD: 17/03/2010 - 10:15:54 - [3469] ----D- C:\Documents and Settings\Wise3\Application Data\Friday's games

O43 - CFD: 24/07/2011 - 19:05:26 - [21065961] ----D- C:\Documents and Settings\Wise3\Application Data\GaDaBaMa

O43 - CFD: 02/06/2011 - 18:44:10 - [4360] ----D- C:\Documents and Settings\Wise3\Application Data\GHISLER

O43 - CFD: 11/11/2010 - 17:47:34 - [3481] ----D- C:\Documents and Settings\Wise3\Application Data\GoodSync

O43 - CFD: 24/05/2010 - 11:24:44 - [515779] ----D- C:\Documents and Settings\Wise3\Application Data\Google

O43 - CFD: 12/04/2011 - 23:37:46 - [18218] ----D- C:\Documents and Settings\Wise3\Application Data\gSyncit

O43 - CFD: 19/07/2010 - 16:14:50 - [948] ----D- C:\Documents and Settings\Wise3\Application Data\HD Tune Pro

O43 - CFD: 25/11/2010 - 22:44:56 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\HpUpdate

O43 - CFD: 17/03/2010 - 10:15:54 - [1162] ----D- C:\Documents and Settings\Wise3\Application Data\Identities

O43 - CFD: 15/02/2010 - 23:36:20 - [11272] ----D- C:\Documents and Settings\Wise3\Application Data\Macromedia

O43 - CFD: 20/04/2010 - 23:27:58 - [22310] ----D- C:\Documents and Settings\Wise3\Application Data\MAGIX

O43 - CFD: 06/06/2011 - 21:00:18 - [7502] ----D- C:\Documents and Settings\Wise3\Application Data\Malwarebytes

O43 - CFD: 23/07/2011 - 16:03:26 - [34688761] -S--D- C:\Documents and Settings\Wise3\Application Data\Microsoft

O43 - CFD: 07/08/2011 - 22:55:12 - [68731] ----D- C:\Documents and Settings\Wise3\Application Data\Mipony

O43 - CFD: 21/02/2010 - 11:02:48 - [4031] ----D- C:\Documents and Settings\Wise3\Application Data\mkvtoolnix

O43 - CFD: 12/03/2011 - 02:16:32 - [84977] ----D- C:\Documents and Settings\Wise3\Application Data\NewsLeecher

O43 - CFD: 23/02/2011 - 15:18:26 - [7065] ----D- C:\Documents and Settings\Wise3\Application Data\PDF Software

O43 - CFD: 17/03/2010 - 10:28:36 - [4068] ----D- C:\Documents and Settings\Wise3\Application Data\Reflexivev1002

O43 - CFD: 05/10/2010 - 22:36:14 - [8118] ----D- C:\Documents and Settings\Wise3\Application Data\Replay Media Catcher 4

O43 - CFD: 30/05/2010 - 18:32:42 - [235838] ----D- C:\Documents and Settings\Wise3\Application Data\Sun

O43 - CFD: 04/12/2010 - 17:00:10 - [140901] ----D- C:\Documents and Settings\Wise3\Application Data\TeamViewer

O43 - CFD: 16/08/2010 - 23:02:58 - [3604480] ----D- C:\Documents and Settings\Wise3\Application Data\U3

O43 - CFD: 07/06/2010 - 22:16:36 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\Vso

O43 - CFD: 15/02/2010 - 00:12:00 - [12] ----D- C:\Documents and Settings\Wise3\Application Data\WinRAR

O43 - CFD: 02/05/2010 - 10:08:42 - [95] ----D- C:\Documents and Settings\Wise3\Application Data\YouSendIt

O43 - CFD: 17/03/2010 - 10:15:54 - [0] ----D- C:\Documents and Settings\Wise3\Application Data\Zylom

O43 - CFD: 14/08/2010 - 09:55:56 - [9462262] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Adobe

O43 - CFD: 24/02/2010 - 10:01:56 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Apple

O43 - CFD: 24/02/2010 - 10:01:46 - [9595] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Apple Computer

O43 - CFD: 15/02/2010 - 00:37:10 - [64393] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\ATI

O43 - CFD: 02/06/2011 - 23:35:56 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\AutoDalle

O43 - CFD: 24/03/2010 - 14:21:10 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Deployment

O43 - CFD: 09/03/2011 - 02:01:26 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Downloaded Installations

O43 - CFD: 28/07/2011 - 10:39:18 - [12800] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\FLVService

O43 - CFD: 11/11/2010 - 22:46:00 - [715] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\GContactsSync

O43 - CFD: 21/02/2010 - 11:28:20 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\GHISLER

O43 - CFD: 19/05/2011 - 10:18:46 - [297379023] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google

O43 - CFD: 25/11/2010 - 22:51:16 - [56630] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\HP

O43 - CFD: 01/08/2010 - 21:03:14 - [1552] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\iHc

O43 - CFD: 05/10/2010 - 22:36:12 - [59819] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Jaksta_Pty_Ltd

O43 - CFD: 24/03/2010 - 14:22:12 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\LogMeIn

O43 - CFD: 13/11/2010 - 22:16:08 - [6260277] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\mdnslib

O43 - CFD: 12/05/2011 - 23:40:12 - [538] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\MediaGet2

O43 - CFD: 03/06/2011 - 09:30:58 - [1034536987] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Microsoft

O43 - CFD: 23/07/2011 - 16:00:24 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Microsoft Help

O43 - CFD: 04/03/2010 - 23:57:16 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Mozilla

O43 - CFD: 19/05/2011 - 02:04:50 - [33087] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\PoiEdit

O43 - CFD: 09/08/2011 - 13:27:18 - [1959024] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\QuickPar

O43 - CFD: 03/07/2011 - 19:22:02 - [6619] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Team_360h

O43 - CFD: 31/07/2011 - 21:18:00 - [790] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Tech-Modz.Net

O43 - CFD: 27/04/2011 - 20:08:14 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Temp

O43 - CFD: 19/05/2011 - 00:58:12 - [535681] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\TopoGrafix

O43 - CFD: 26/03/2010 - 21:04:22 - [2844] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\WBFSManager

O43 - CFD: 29/04/2010 - 23:07:08 - [2899] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\www.klutsh.com

O43 - CFD: 20/04/2010 - 21:47:14 - [0] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\Xara

O43 - CFD: 01/11/2010 - 20:22:14 - [2156] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\XBOX360_ISO_Extract

O43 - CFD: 31/08/2010 - 01:05:48 - [773] ----D- C:\Documents and Settings\Wise3\Local Settings\Application Data\_

~ Scan Program Folder in 00mn 47s

 

 

 

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.847D5495CFE9C2531484B488BB781D11] - 10/08/2011 - 00:31:18 ---A- . (...) -- C:\WINDOWS\WindowsUpdate.log [1462072]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 09/08/2011 - 18:42:08 ---A- . (...) -- C:\WINDOWS\0.log [0]

O44 - LFC:[MD5.5B288C20D7EAE0610C12C88AC46A64B3] - 09/08/2011 - 18:41:49 ---A- . (...) -- C:\WINDOWS\wiadebug.log [159]

O44 - LFC:[MD5.DD06B363140037B910C548698F0BC46D] - 09/08/2011 - 18:41:40 ---A- . (...) -- C:\WINDOWS\wiaservc.log [50]

O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 09/08/2011 - 18:40:56 -S-A- . (...) -- C:\WINDOWS\bootstat.dat [2048]

O44 - LFC:[MD5.BD0584F08E4BDFD0E39EC2DD56E371D6] - 09/08/2011 - 15:39:30 ---A- . (...) -- C:\WINDOWS\SchedLgU.Txt [32604]

O44 - LFC:[MD5.C9DD76D0EF94637C77FF8CA5E0FB0684] - 08/08/2011 - 21:50:55 ---A- . (...) -- C:\WINDOWS\system.ini [227]

O44 - LFC:[MD5.AC36AEC46BB5281FF5C609EFD270221D] - 08/08/2011 - 21:50:55 ---A- . (...) -- C:\WINDOWS\win.ini [624]

O44 - LFC:[MD5.C3C51DB53EF36C6A32D00534980AEDA7] - 08/08/2011 - 21:50:55 -SHA- . (...) -- C:\boot.ini [282]

O44 - LFC:[MD5.63B8623E73D325738CCA695724BB15CD] - 07/08/2011 - 09:38:50 ---A- . (...) -- C:\WINDOWS\ntbtlog.txt [320220]

O44 - LFC:[MD5.781F24A0C3CE8225C9414D379B1911E9] - 07/08/2011 - 09:29:29 ---A- . (...) -- C:\WINDOWS\system32\wpa.dbl [2228]

O44 - LFC:[MD5.B2CB6FCD4C21BA191629BBEF1C7F5BF2] - 04/08/2011 - 21:32:22 ---A- . (...) -- C:\WINDOWS\setupapi.log [5677]

O44 - LFC:[MD5.1B20487484DB1E671BDA3C68A0B0685A] - 03/08/2011 - 16:17:57 ---A- . (...) -- C:\WINDOWS\system32\FNTCACHE.DAT [2216568]

O44 - LFC:[MD5.5100207E91B63548AB61E5377C4A9DBA] - 30/07/2011 - 23:39:28 ---A- . (...) -- C:\WINDOWS\system32\rmc_rtspdl.dll [237568]

O44 - LFC:[MD5.2CC31CEC30A431848310DFE3031D4C59] - 30/07/2011 - 23:39:28 ---A- . (.Radioactive - asfbin.) -- C:\WINDOWS\system32\rmc_fixasf.exe [156672]

O44 - LFC:[MD5.C7BC96C3711C0D269DA26D1F0ECEC547] - 23/07/2011 - 12:44:38 ---A- . (...) -- C:\WINDOWS\NeroDigital.ini [69]

O44 - LFC:[MD5.E42BC24ED4DBD4C23A59231A3CAA57C9] - 14/07/2011 - 22:44:46 ---A- . (...) -- C:\WINDOWS\system32\MRT.INI [127]

O44 - LFC:[MD5.D19B292523B0B676B333CB9FC2B4FCD9] - 14/07/2011 - 22:01:39 ---A- . (...) -- C:\ComboFix.txt [183447]

~ Scan Files in 01mn 02s

 

 

 

---\\ Derniers fichiers créés dans Windows Prefetcher (O45)

O45 - LFCP:[MD5.466D670A7FB01515D4AB2B56872F3C7A] - 05/08/2011 - 22:12:40 ---A- - C:\WINDOWS\Prefetch\WMPLAYER.EXE-18DDEFA2.pf

O45 - LFCP:[MD5.0C2F50339FFF0C71387F94C70A008E7A] - 05/08/2011 - 22:41:39 ---A- - C:\WINDOWS\Prefetch\VIRTUALDJ_HOME.EXE-2475DFED.pf

O45 - LFCP:[MD5.4B911199887FC9EB81F9725880BF42A3] - 06/08/2011 - 00:27:27 ---A- - C:\WINDOWS\Prefetch\JUNGLEFLASHER.EXE-1E146726.pf

O45 - LFCP:[MD5.F888A5248416D8CBBADED81CC1476D7B] - 06/08/2011 - 00:28:18 ---A- - C:\WINDOWS\Prefetch\ACRORD32INFO.EXE-242CE4AA.pf

O45 - LFCP:[MD5.CFC1BD0E196248AC83728BEDD3137E8E] - 06/08/2011 - 00:28:20 ---A- - C:\WINDOWS\Prefetch\ACRORD32.EXE-3A1F13AE.pf

O45 - LFCP:[MD5.ABCC81399D800675F44B1E6AE15EDA5B] - 06/08/2011 - 10:09:32 ---A- - C:\WINDOWS\Prefetch\PHOTOSHOP.EXE-1977A377.pf

O45 - LFCP:[MD5.810A9FB55B757E14FB43D4C7D571245C] - 06/08/2011 - 10:09:40 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-4568F917.pf

O45 - LFCP:[MD5.FD3292D73D214925A610524526FAD2FC] - 06/08/2011 - 10:09:53 ---A- - C:\WINDOWS\Prefetch\FNPLICENSINGSERVICE.EXE-057818D9.pf

O45 - LFCP:[MD5.43339AC85F7B62F311093B66620B2D16] - 06/08/2011 - 10:18:59 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-268BFF96.pf

O45 - LFCP:[MD5.2A1A1290D1F5D12D915CF3F06EDF76B2] - 06/08/2011 - 10:23:19 ---A- - C:\WINDOWS\Prefetch\HPNETWORKCOMMUNICATOR.EXE-00935296.pf

O45 - LFCP:[MD5.24646435E29422F4FE57563D0D0B57FD] - 07/08/2011 - 15:05:47 ---A- - C:\WINDOWS\Prefetch\MIPONY.EXE-27E41AA6.pf

O45 - LFCP:[MD5.0C98BF1F15A2ED537E021167CFC6A093] - 07/08/2011 - 15:26:11 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-451FC2C0.pf

O45 - LFCP:[MD5.607648CAAA0310C8E913A2FA58448C5F] - 07/08/2011 - 15:27:10 ---A- - C:\WINDOWS\Prefetch\WLCOMM.EXE-04AE9009.pf

O45 - LFCP:[MD5.6DC029C332DEF80C968C4D46252CBC47] - 07/08/2011 - 22:17:28 ---A- - C:\WINDOWS\Prefetch\PICASAUPDATER.EXE-032BAF6F.pf

O45 - LFCP:[MD5.7D2EBA8A3079935979D28D3B91DAAB13] - 07/08/2011 - 22:19:04 ---A- - C:\WINDOWS\Prefetch\PICASAPHOTOVIEWER.EXE-1247CDA5.pf

O45 - LFCP:[MD5.C70257E7C1C2A6BC3B074E65D2A672FC] - 07/08/2011 - 22:21:43 ---A- - C:\WINDOWS\Prefetch\QTTASK.EXE-342507FB.pf

O45 - LFCP:[MD5.4E6F39F8402FEAB0030AFDCE571ADFF7] - 07/08/2011 - 22:36:48 ---A- - C:\WINDOWS\Prefetch\ADOBEARM.EXE-1095AC0A.pf

O45 - LFCP:[MD5.B3F404D017C58BFF8FB33D081FA62E16] - 08/08/2011 - 18:17:04 ---A- - C:\WINDOWS\Prefetch\MSNMSGR.EXE-030AB647.pf

O45 - LFCP:[MD5.264B0C4E8A42881A3753291566007B3E] - 08/08/2011 - 19:41:30 ---A- - C:\WINDOWS\Prefetch\AGCP.EXE-0984FB89.pf

O45 - LFCP:[MD5.5B988094D82E3903B8B22287D01C52F1] - 08/08/2011 - 19:51:02 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-12E27DD0.pf

O45 - LFCP:[MD5.B1BB8C6091975964A6C55D12BADC111F] - 08/08/2011 - 20:15:05 ---A- - C:\WINDOWS\Prefetch\_NEWSLEECHER.EXE-00D61ADC.pf

O45 - LFCP:[MD5.DCFD349A0C63388D95F62472E0BE9D1F] - 09/08/2011 - 10:05:24 ---A- - C:\WINDOWS\Prefetch\HELPSVC.EXE-2878DDA2.pf

O45 - LFCP:[MD5.2EAC7F124261C94FB03ECBFA4619B5CE] - 09/08/2011 - 12:04:12 ---A- - C:\WINDOWS\Prefetch\QUICKPAR.EXE-01797452.pf

O45 - LFCP:[MD5.F6B6397265BCA42935880F9B4C1AFAE4] - 09/08/2011 - 12:04:12 ---A- - C:\WINDOWS\Prefetch\TOTALCMD.EXE-08C82D3C.pf

O45 - LFCP:[MD5.E8EB525FE3E00AF2BF820326382FF98C] - 09/08/2011 - 12:27:41 ---A- - C:\WINDOWS\Prefetch\WMPLAYER.EXE-18DDEFA4.pf

O45 - LFCP:[MD5.05E9328759FD1B8B583E5F5165B0126E] - 09/08/2011 - 15:39:28 ---A- - C:\WINDOWS\Prefetch\LOGONUI.EXE-0AF22957.pf

O45 - LFCP:[MD5.7EAB258AE9329F22B32B0CCBB9BED124] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\GOOGLECRASHHANDLER.EXE-1E5CAADA.pf

O45 - LFCP:[MD5.5CD693ACD68A86C91FAA7375403BDE61] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\JQS.EXE-1D781F77.pf

O45 - LFCP:[MD5.6005977C44BCB9133123B86632CEA0EE] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\LMIGUARDIANSVC.EXE-074B3592.pf

O45 - LFCP:[MD5.BFF879C918726C54AC5A7AEC57416450] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\LOGMEIN.EXE-20F68633.pf

O45 - LFCP:[MD5.DFAF5652D4487038ADA4385A41AAACAF] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\MDM.EXE-1EFE14A5.pf

O45 - LFCP:[MD5.30DC8F6ED675E2247BA8CCB626D434BA] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf

O45 - LFCP:[MD5.38BECAA6D90890A7BE61FFDAF0E34FB2] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\RAMAINT.EXE-3250591E.pf

O45 - LFCP:[MD5.EF4F85D6A28EC6D7D67B9AF00358CDC7] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\SVCHOST.EXE-3530F672.pf

O45 - LFCP:[MD5.4B428D3511ABB7CE05995911C8B74185] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\TEAMVIEWER_SERVICE.EXE-3054FF04.pf

O45 - LFCP:[MD5.5F926FEE3DA43C94FB0C9E1C42545A36] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf

O45 - LFCP:[MD5.A0CB14015422B655FD9753CCBA8D110E] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\VIALOGSV.EXE-0FD7C219.pf

O45 - LFCP:[MD5.50C2DE945D90961D5947C57202E238D0] - 09/08/2011 - 18:41:59 ---A- - C:\WINDOWS\Prefetch\WLIDSVC.EXE-360F8CA3.pf

O45 - LFCP:[MD5.5B4BE840BEB2835B8AADED468B57E426] - 09/08/2011 - 18:42:02 ---A- - C:\WINDOWS\Prefetch\WMPNETWK.EXE-2C0727AF.pf

O45 - LFCP:[MD5.CE47CF878FF5A5E399C5A83189108580] - 09/08/2011 - 18:42:04 ---A- - C:\WINDOWS\Prefetch\AVMAILC.EXE-22A964BC.pf

O45 - LFCP:[MD5.AC2C7879D39AE871A024977E83DB7C9E] - 09/08/2011 - 18:42:06 ---A- - C:\WINDOWS\Prefetch\AVWEBGRD.EXE-03786D52.pf

O45 - LFCP:[MD5.2ED739619C9FFF15564910807876F574] - 09/08/2011 - 18:42:06 ---A- - C:\WINDOWS\Prefetch\TEAMVIEWER.EXE-33A0B4FD.pf

O45 - LFCP:[MD5.62C51CBBA79AF3FDACD0715BD396A5ED] - 09/08/2011 - 18:42:11 ---A- - C:\WINDOWS\Prefetch\WLIDSVCM.EXE-20CBAE73.pf

O45 - LFCP:[MD5.84B35ABC5701A7F2EFF1E052FBC5ABE7] - 09/08/2011 - 18:42:15 ---A- - C:\WINDOWS\Prefetch\WMIAPSRV.EXE-1E2270A5.pf

O45 - LFCP:[MD5.0DFBD23B504790D55161DD4027A5C85B] - 09/08/2011 - 18:42:16 ---A- - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf

O45 - LFCP:[MD5.4A7E7B97924A19FDDA68EDCC64DA9398] - 09/08/2011 - 18:42:21 ---A- - C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf

O45 - LFCP:[MD5.1312538E0609152875C32667420F2849] - 09/08/2011 - 18:42:24 ---A- - C:\WINDOWS\Prefetch\TV_W32.EXE-3941A2B1.pf

O45 - LFCP:[MD5.29164D2191B17C8236644E399A1CEB08] - 09/08/2011 - 18:43:05 ---A- - C:\WINDOWS\Prefetch\WGATRAY.EXE-0ED38BED.pf

O45 - LFCP:[MD5.0C748F6A43F84D78C132111482B2B572] - 09/08/2011 - 18:43:48 ---A- - C:\WINDOWS\Prefetch\PING.EXE-31216D26.pf

O45 - LFCP:[MD5.3D85B35E080E89C052F54F523CDD0859] - 09/08/2011 - 18:45:00 ---A- - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf

O45 - LFCP:[MD5.9AC6FFFA89DFC9E1F88174D18EDFC4FD] - 09/08/2011 - 18:58:08 ---A- - C:\WINDOWS\Prefetch\MSFEEDSSYNC.EXE-25E13438.pf

O45 - LFCP:[MD5.B78E3870F3298AC8AC665B1AA26032F6] - 09/08/2011 - 19:52:08 ---A- - C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf

O45 - LFCP:[MD5.A8636731647D3DE14278AF147D4C2678] - 09/08/2011 - 20:45:00 ---A- - C:\WINDOWS\Prefetch\HPCUSTPARTIC.EXE-352BF652.pf

O45 - LFCP:[MD5.FB344C1949CDBB1DA34BACACE5395C94] - 09/08/2011 - 22:44:14 ---A- - C:\WINDOWS\Prefetch\UPDATE.EXE-2577D203.pf

O45 - LFCP:[MD5.631A79E94420E98EA72300C4C108B833] - 10/08/2011 - 00:12:39 ---A- - C:\WINDOWS\Prefetch\OUTLOOK.EXE-106351DB.pf

O45 - LFCP:[MD5.EE9328200B3DE53384EC401084DFDA01] - 10/08/2011 - 00:12:43 ---A- - C:\WINDOWS\Prefetch\WINWORD.EXE-37F6AE09.pf

O45 - LFCP:[MD5.1C1BCD70DD28FD74933D7B181E586ED4] - 10/08/2011 - 00:19:03 ---A- - C:\WINDOWS\Prefetch\GUARDGUI.EXE-00ECD849.pf

O45 - LFCP:[MD5.3A77294688E39CA8E11D2CA39A06CD41] - 10/08/2011 - 00:23:00 ---A- - C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-1E123D86.pf

O45 - LFCP:[MD5.3204C03A336AB7A2BD44A15D0E7B8855] - 10/08/2011 - 00:26:42 ---A- - C:\WINDOWS\Prefetch\ROGUEKILLER.EXE-16C6F996.pf

O45 - LFCP:[MD5.6AE87A1529833C9EED9861DC6B0EDB12] - 10/08/2011 - 00:26:49 ---A- - C:\WINDOWS\Prefetch\NOTEPAD.EXE-336351A9.pf

O45 - LFCP:[MD5.07E3B6C64E35687CA0F2D36E920B0447] - 10/08/2011 - 00:29:55 ---A- - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf

O45 - LFCP:[MD5.A52AC11BD0E3B76176BFBC07E9498E39] - 10/08/2011 - 00:30:23 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG2.TMP-00B6766A.pf

O45 - LFCP:[MD5.64ED6A789A992EA794AF9B00797CD4EB] - 10/08/2011 - 00:30:38 ---A- - C:\WINDOWS\Prefetch\WINRAR.EXE-39C6DAD9.pf

O45 - LFCP:[MD5.F77BED027AADBCC4BD271D57C6C9BF79] - 10/08/2011 - 00:31:02 ---A- - C:\WINDOWS\Prefetch\ACTIA_MAJ_DRIVER.EXE-0DC451E0.pf

O45 - LFCP:[MD5.B1E778B704D972B3C36976EF5A8BACE7] - 10/08/2011 - 00:31:12 ---A- - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf

O45 - LFCP:[MD5.F1CDAE69A46A9286B67B66ED0EEC70E9] - 10/08/2011 - 00:31:42 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG2.EXE-3B5C469F.pf

O45 - LFCP:[MD5.5C4EFEBFC4D39C476FB912880532A2DE] - 10/08/2011 - 00:31:42 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG2.TMP-0B959BDE.pf

O45 - LFCP:[MD5.71B222E20DE8D9F214BF9F6706F39B5F] - 10/08/2011 - 00:32:14 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG.EXE-021B7932.pf

O45 - LFCP:[MD5.D809065072CFFEE82BBEAD4C3CFC6B94] - 10/08/2011 - 00:32:52 ---A- - C:\WINDOWS\Prefetch\PV.EXE-215F4419.pf

O45 - LFCP:[MD5.C72BC6CD3ED2D635FBBF0995107907DD] - 10/08/2011 - 00:32:57 ---A- - C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf

O45 - LFCP:[MD5.7BA2B7BD1752B09C244863458CA6B205] - 10/08/2011 - 00:32:57 ---A- - C:\WINDOWS\Prefetch\SCHTASKS.EXE-0CBF6A11.pf

O45 - LFCP:[MD5.09AD0AF84224C5D1C7346142331B8409] - 10/08/2011 - 00:33:01 ---A- - C:\WINDOWS\Prefetch\GOOGLECRASHHANDLER.EXE-0D84D9BE.pf

O45 - LFCP:[MD5.C017FD180D1567E64B8AF48B777E5800] - 10/08/2011 - 00:33:01 ---A- - C:\WINDOWS\Prefetch\GOOGLEUPDATE.EXE-330BCE6A.pf

O45 - LFCP:[MD5.80A970B0E5212C43D2D7AAF5748F2060] - 10/08/2011 - 00:34:27 ---A- - C:\WINDOWS\Prefetch\AVWSC.EXE-0283F9DD.pf

O45 - LFCP:[MD5.0FAEB9643CF240AD86CC20CBACE4874C] - 10/08/2011 - 23:36:31 ---A- - C:\WINDOWS\Prefetch\Layout.ini

O45 - LFCP:[MD5.F7BC16A9BC3EFE28CCF477F7AA0BF08B] - 10/08/2011 - 23:36:34 ---A- - C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf

O45 - LFCP:[MD5.15FB76BAC57C7F78D6CD72555254D74B] - 10/08/2011 - 23:36:34 ---A- - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf

~ Scan Prefetcher in 00mn 00s

 

 

 

---\\ Export de clé d'application autorisée (O47)

O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe

O47 - AAKE:Key Export SP - "C:\Program Files\Messenger\msmsgs.exe" [Enabled] .(.Microsoft Corporation - Windows Messenger.) -- C:\Program Files\Messenger\msmsgs.exe

O47 - AAKE:Key Export SP - "C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [Enabled] .(.Adobe Systems Incorporated.) -- C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe

O47 - AAKE:Key Export SP - "C:\Program Files\WinSCP\WinSCP.exe" [Enabled] .(.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) -- C:\Program Files\WinSCP\WinSCP.exe

O47 - AAKE:Key Export SP - "C:\Program Files\FlashFXP\FlashFXP.exe" [Enabled] .(.IniCom Networks, Inc. - FlashFXP.) -- C:\Program Files\FlashFXP\FlashFXP.exe

O47 - AAKE:Key Export SP - "C:\Program Files\Java\jre6\bin\javaw.exe" [Enabled] .(.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\javaw.exe

O47 - AAKE:Key Export SP - "C:\totalcmd\TOTALCMD.EXE" [Enabled] .(.Ghisler Software GmbH - Total Commander 32 bit.) -- C:\totalcmd\TOTALCMD.exe

O47 - AAKE:Key Export SP - "C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe" [Enabled] .(.Hewlett-Packard Co. - DeviceSetup.exe.) -- C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe

O47 - AAKE:Key Export SP - "C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe" [Enabled] .(.Hewlett-Packard Co. - HPNetworkCommunicator.) -- C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe

O47 - AAKE:Key Export SP - "C:\Program Files\TeamViewer\Version6\TeamViewer.exe" [Enabled] .(.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files\TeamViewer\Version6\TeamViewer.exe

O47 - AAKE:Key Export SP - "C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe" [Enabled] .(.TeamViewer GmbH - TeamViewer Remote Control Application.) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe

O47 - AAKE:Key Export SP - "C:\Documents and Settings\Wise3\Application Data\Dropbox\bin\Dropbox.exe" [Enabled] .(.Dropbox, Inc. - Dropbox.) -- C:\Documents and Settings\Wise3\Application Data\Dropbox\bin\Dropbox.exe

O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe

O47 - AAKE:Key Export DP - "C:\Program Files\FlashFXP\FlashFXP.exe" [Enabled] .(.IniCom Networks, Inc. - FlashFXP.) -- C:\Program Files\FlashFXP\FlashFXP.exe

O47 - AAKE:Key Export DP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Contrôle du Safe Boot (CSB) (O49)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmboot.sys . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disque NT.) -- C:\WINDOWS\system32\Drivers\dmboot.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmio.sys . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\system32\Drivers\dmio.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dmload.sys . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\system32\Drivers\dmload.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ip6fw.sys . (.Microsoft Corporation - IPv6 Windows Firewall Driver.) -- C:\WINDOWS\system32\Drivers\ip6fw.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\system32\Drivers\ipnat.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpcdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\WINDOWS\system32\Drivers\rdpcdd.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpdd.sys . (...) -- C:\WINDOWS\system32\Drivers\rdpdd.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpwd.sys . (.Microsoft Corporation - RDP Terminal Stack Driver (US/Canada Only, Not for Export).) -- C:\WINDOWS\system32\Drivers\rdpwd.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (...) -- C:\WINDOWS\system32\Drivers\sermouse.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sr.sys . (.Microsoft Corporation - Pilote de filtre de système de fichiers pour la restauration du système.) -- C:\WINDOWS\system32\Drivers\sr.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdpipe.sys . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdpipe.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\tdtcp.sys . (.Microsoft Corporation - TCP Transport Driver.) -- C:\WINDOWS\system32\Drivers\tdtcp.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\WINDOWS\system32\Drivers\vga.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\WINDOWS\system32\Drivers\vgasave.sys (.not file.)

~ Scan CSB in 00mn 00s

 

 

 

---\\ Image File Execution Options (IFEO) (O50)

O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d

~ Scan IFEO in 00mn 00s

 

 

 

---\\ Trojan Driver Search Data (HKLM) (O52)

O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech DSP Group pour MSACM V3.50.) -- C:\WINDOWS\system32\tssoft32.acm

O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\system32\iccvid.dll

O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll

O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (...) -- C:\WINDOWS\system32\ir32_32.dll

O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\system32\ir41_32.ax

O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm

O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax

O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\system32\ir50_32.dll

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm

O52 - TDSD: \Drivers32\"vidc.ffds"="ff_vfw.dll" . (...) -- C:\WINDOWS\system32\ff_vfw.dll

O52 - TDSD: \Drivers32\"vidc.yv12"="yv12vfw.dll" . (.www.helixcommunity.org - Helix YV12 YUV Codec.) -- C:\WINDOWS\system32\yv12vfw.dll

O52 - TDSD: \Drivers32\"VIDC.XVID"="xvidvfw.dll" . (...) -- C:\WINDOWS\system32\xvidvfw.dll

O52 - TDSD: \Drivers32\"msacm.ac3acm"="ac3acm.acm" . (.fccHandler - AC-3 ACM Codec.) -- C:\WINDOWS\system32\ac3acm.acm

O52 - TDSD: \Drivers32\"msacm.lameacm"="lameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\WINDOWS\system32\lameACM.acm

O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\system32\sl_anet.acm

O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax

O52 - TDSD: \drivers.desc\"ir50_32.dll"="Indeo® video 5.10" . (...) -- (.not file.)

O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm

O52 - TDSD: \drivers.desc\"xvidvfw.dll"="Xvid MPEG-4 Video Codec 1.3.0" . (...) -- (.not file.)

O52 - TDSD: \drivers.desc\"lameACM.acm"="Lame ACM MP3 CODEC v3.98.2" . (...) -- (.not file.)

O52 - TDSD: \drivers.desc\"ac3acm.acm"="AC-3 ACM Codec" . (.fccHandler - AC-3 ACM Codec.) -- C:\WINDOWS\system32\ac3acm.acm

O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\WINDOWS\system32\ff_vfw.dll

~ Scan Keys in 00mn 00s

 

 

 

---\\ ShareTools MSconfig StartupReg (O53)

O53 - SMSR:HKLM\...\startupreg\Malwarebytes' Anti-Malware [Key] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

O53 - SMSR:HKLM\...\startupreg\VIARaidUtl [Key] . (.Pas de propriétaire - VIA_RaidTool MFC Application.) -- C:\Program Files\VIA\RAID\raid_tool.exe

~ Scan SMSR Keys in 00mn 00s

 

 

 

---\\ Microsoft Control Security Providers (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll

~ Scan Keys in 00mn 00s

 

 

 

---\\ Microsoft Windows Policies System (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0

~ Scan Keys in 00mn 00s

 

 

 

---\\ Microsoft Windows Policies Explorer (O56)

O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=323

O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveAutoRun"=67108863

O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDrives"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveAutoRun"=67108863

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDriveTypeAutoRun"=323

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDrives"=0

~ Scan Keys in 00mn 00s

 

 

 

---\\ Liste des Drivers Système (O58)

O58 - SDL:[MD5.1BF91F352D746AD7469FA71783B5FAE8] - 10/08/2011 - 05:46:24 ---A- . (.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) -- C:\WINDOWS\system32\drivers\APLMp50.sys [28224]

O58 - SDL:[MD5.05EDA44C080EBAF758F8A318488FFD75] - 10/08/2011 - 12:46:12 ---A- . (.Applian Technologies Inc. - APPLIAND helper driver.) -- C:\WINDOWS\system32\drivers\appliand.sys [28256]

O58 - SDL:[MD5.C51608BBA3248BE2F6D21B132910752A] - 10/08/2011 - 05:18:22 ---A- . (.ATI Technologies Inc. - ATI Radeon WindowsNT Miniport Driver.) -- C:\WINDOWS\system32\drivers\ati2mtag.sys [3565056]

O58 - SDL:[MD5.5B44C214F9CD9F590BE9125347610380] - 10/08/2011 - 11:17:49 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\WINDOWS\system32\drivers\avgntdd.sys [45416]

O58 - SDL:[MD5.14FE36D8F2C6A2435275338D061A0B66] - 10/08/2011 - 22:56:55 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\WINDOWS\system32\drivers\avgntflt.sys [56816]

O58 - SDL:[MD5.2DAA8CC2670720DEDDCC74A20EDE2EE9] - 10/08/2011 - 11:28:39 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\WINDOWS\system32\drivers\avgntmgr.sys [22360]

O58 - SDL:[MD5.AD9BD66A862116E79CB45BB6BE46055F] - 10/08/2011 - 09:32:47 ---A- . (.Avira GmbH - Avira Driver for RootKit Detection.) -- C:\WINDOWS\system32\drivers\avipbb.sys [96104]

O58 - SDL:[MD5.B9543B0C771FEAB7CA095303007A159C] - 10/08/2011 - 18:47:12 R--A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS5.1 Driver..) -- C:\WINDOWS\system32\drivers\b57xp32.sys [175360]

O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 10/08/2011 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys [262528]

O58 - SDL:[MD5.5A2004F687D4E55914E6E8898FB51C9D] - 10/08/2011 - 22:35:33 ---A- . (.C-Media Inc - C-Media Audio WDM Driver.) -- C:\WINDOWS\system32\drivers\cmuda.sys [818496]

O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 10/08/2011 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys [11776]

O58 - SDL:[MD5.1D95D36DB805787D54EB50E45ED4AF40] - 10/08/2011 - 09:10:48 ---A- . (...) -- C:\WINDOWS\system32\drivers\DLPORTIO.sys [3584]

O58 - SDL:[MD5.CE37E3D51912E59C80C6D84337C0B4CD] - 10/08/2011 - 01:57:04 ---A- . (.SlySoft, Inc. - ElbyCDIO Filter Driver.) -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys [34760]

O58 - SDL:[MD5.AAA8999A169E39FB8B48AE49CD6AC30A] - 10/08/2011 - 20:48:33 ---A- . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys [25160]

O58 - SDL:[MD5.573C7D0A32852B48F3058CFD8026F511] - 10/08/2011 - 13:00:00 ---A- . (.Windows ® Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\system32\drivers\hdaudbus.sys [144384]

O58 - SDL:[MD5.622FECE99240AC9A835C21A9DE6BE1D2] - 10/08/2011 - 11:57:10 ---A- . (.Paragon Software Group - A part of Paragon System Utilities.) -- C:\WINDOWS\system32\drivers\hotcore3.sys [40560]

O58 - SDL:[MD5.F08EBAF4493E99F4F095A4F7696287D4] - 10/08/2011 - 20:04:14 ---A- . (.Highresolution Enterprises [www.highrez.co. - Kernel level port access driver.) -- C:\WINDOWS\system32\drivers\inpout32.sys [11936]

O58 - SDL:[MD5.34D6730E198A5B0FCE0790A6B4769EF2] - 10/08/2011 - 10:33:28 ---A- . (.http://libusb-win32.sourceforge.net - LibUSB-Win32 - Kernel Driver.) -- C:\WINDOWS\system32\drivers\libusb0.sys [28672]

O58 - SDL:[MD5.4477689E2D8AE6B78BA34C9AF4CC1ED1] - 10/08/2011 - 12:40:34 ---A- . (.LogMeIn, Inc. - LogMeIn Mirror Miniport Driver.) -- C:\WINDOWS\system32\drivers\lmimirr.sys [10144]

O58 - SDL:[MD5.3FAA563DDF853320F90259D455A01D79] - 10/08/2011 - 12:41:00 ---A- . (.LogMeIn, Inc. - LogMeIn Rfs Drivemap Driver.) -- C:\WINDOWS\system32\drivers\LMIRfsDriver.sys [47640]

O58 - SDL:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 10/08/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbam.sys [22712]

O58 - SDL:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 10/08/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys [41272]

O58 - SDL:[MD5.BE984D604D91C217355CDD3737AAD25D] - 10/08/2011 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\nikedrv.sys [12032]

O58 - SDL:[MD5.B15E0180C43D8B5219196D76878CC2DD] - 10/08/2011 - 18:31:34 ---A- . (.CACE Technologies - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\system32\drivers\npf.sys [42000]

O58 - SDL:[MD5.5B6C11DE7E839C05248CED8825470FEF] - 10/08/2011 - 21:16:26 ---A- . (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\WINDOWS\system32\drivers\pcouffin.sys [47360]

O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 10/08/2011 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys [17792]

O58 - SDL:[MD5.A56FE08EC7473E8580A390BB1081CDD7] - 10/08/2011 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\system32\drivers\rio8drv.sys [12032]

O58 - SDL:[MD5.0A854DF84C77A0BE205BFEAB2AE4F0EC] - 10/08/2011 - 13:00:00 ---A- . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\system32\drivers\riodrv.sys [12032]

O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 10/08/2011 - 13:00:00 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys [20480]

O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 14/07/2011 - 00:00:00 ---A- . (...) -- C:\WINDOWS\system32\drivers\sptd.sys [691696]

O58 - SDL:[MD5.3AD0362CF68DE3AC500E981700242CCA] - 10/08/2011 - 09:11:52 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\WINDOWS\system32\drivers\ssmdrv.sys [28520]

O58 - SDL:[MD5.8DE3E45000BA8C9EBB16737D3F83E216] - 10/08/2011 - 09:57:32 ---A- . (.Acronis - Acronis Try&Decide Volume Filter Driver.) -- C:\WINDOWS\system32\drivers\tdrpm258.sys [911680]

O58 - SDL:[MD5.9101FFFCFCCD1A30E870A5B8A9091B10] - 10/08/2011 - 10:17:14 ---A- . (.TeamViewer GmbH - TeamViewerVPN Network Adapter.) -- C:\WINDOWS\system32\drivers\teamviewervpn.sys [25088]

O58 - SDL:[MD5.3E06987FEDBCDFBFF8E85EF8108565F9] - 10/08/2011 - 09:57:30 ---A- . (.Acronis - Acronis Backup Archive Explorer.) -- C:\WINDOWS\system32\drivers\timntr.sys [581984]

O58 - SDL:[MD5.D74A8EC75305F1D3CFDE7C7FC1BD62A9] - 10/08/2011 - 13:00:00 ---A- . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\system32\drivers\tsbvcap.sys [21376]

O58 - SDL:[MD5.55E01061C74A8CEFFF58DC36114A8D3F] - 10/08/2011 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\system32\drivers\vdmindvd.sys [58112]

O58 - SDL:[MD5.00046AA2E396EDC2238556E740A8E5AF] - 10/08/2011 - 22:24:14 ---A- . (.VIA Technologies inc,.ltd - VIA AHCI RAID DRIVER FOR WIN XP/SRV2003.) -- C:\WINDOWS\system32\drivers\viamraid.sys [117248]

O58 - SDL:[MD5.4CC623591204ACD5FC89BD0DAD70E838] - 10/08/2011 - 22:24:13 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\system32\drivers\videX32.sys [13976]

O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ansi.sys [9037]

O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\country.sys [27097]

O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\himem.sys [4912]

O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\key01.sys [42809]

O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\keyboard.sys [42537]

O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos.sys [27916]

O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos404.sys [29146]

O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos411.sys [29370]

O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos412.sys [29274]

O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntdos804.sys [29146]

O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio.sys [34000]

O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio404.sys [34560]

O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio411.sys [35648]

O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio412.sys [35424]

O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 10/08/2011 - 13:00:00 ---A- . (...) -- C:\WINDOWS\system32\ntio804.sys [34560]

~ Scan Drivers in 00mn 01s

 

 

 

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)

O61 - LFC:Last File Created 07/08/2011 - 09:44:05 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\2bd4b7cd.avl [1604]

O61 - LFC:Last File Created 07/08/2011 - 11:44:03 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\dc03807c.avl [1552]

O61 - LFC:Last File Created 07/08/2011 - 13:43:48 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\881831ee.avl [1524]

O61 - LFC:Last File Created 07/08/2011 - 15:05:54 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@openx[3].txt [101]

O61 - LFC:Last File Created 07/08/2011 - 15:05:56 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@mipony[1].txt [346]

O61 - LFC:Last File Created 07/08/2011 - 15:05:56 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.mipony[1].txt [99]

O61 - LFC:Last File Created 07/08/2011 - 15:27:13 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@be.bing[1].txt [114]

O61 - LFC:Last File Created 07/08/2011 - 15:27:13 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bing[2].txt [200]

O61 - LFC:Last File Created 07/08/2011 - 15:27:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@analytics.live[1].txt [82]

O61 - LFC:Last File Created 07/08/2011 - 15:27:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@turn[2].txt [86]

O61 - LFC:Last File Created 07/08/2011 - 15:32:01 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{bffde123-6aaa-4598-9c19-e9e6b6eee78e}\DBStore\Backup\new\contacts.edb [8413184]

O61 - LFC:Last File Created 07/08/2011 - 15:32:01 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{bffde123-6aaa-4598-9c19-e9e6b6eee78e}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 07/08/2011 - 15:32:02 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{bffde123-6aaa-4598-9c19-e9e6b6eee78e}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 07/08/2011 - 15:32:13 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{b3ba87e8-c323-4862-b2ed-df9b73595591}\DBStore\Backup\new\contacts.edb [8413184]

O61 - LFC:Last File Created 07/08/2011 - 15:32:14 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{b3ba87e8-c323-4862-b2ed-df9b73595591}\DBStore\Backup\new\contacts.pat [16384]

O61 - LFC:Last File Created 07/08/2011 - 15:32:14 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{b3ba87e8-c323-4862-b2ed-df9b73595591}\DBStore\contacts.pat [16384]

O61 - LFC:Last File Created 07/08/2011 - 15:43:48 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\445d8ddb.avl [1524]

O61 - LFC:Last File Created 07/08/2011 - 15:49:01 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bluekai[3].txt [973]

O61 - LFC:Last File Created 07/08/2011 - 15:49:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.androidgen[3].txt [362]

O61 - LFC:Last File Created 07/08/2011 - 15:49:14 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@amgdgt[3].txt [839]

O61 - LFC:Last File Created 07/08/2011 - 16:09:37 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@statcounter[2].txt [165]

O61 - LFC:Last File Created 07/08/2011 - 16:10:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@xgraph[2].txt [310]

O61 - LFC:Last File Created 07/08/2011 - 17:43:54 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\0ec9c650.avl [1524]

O61 - LFC:Last File Created 07/08/2011 - 19:44:34 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\bcd5c004.avl [1618]

O61 - LFC:Last File Created 07/08/2011 - 19:50:48 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\backups\setup.dat - date@y2011.m08.d07 time@h20.m50.s48.bak [3144]

O61 - LFC:Last File Created 07/08/2011 - 20:03:45 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\wmplog00.sqm [1440]

O61 - LFC:Last File Created 07/08/2011 - 20:04:09 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\backups\setup.dat - date@y2011.m08.d07 time@h21.m04.s09.bak [3144]

O61 - LFC:Last File Created 07/08/2011 - 20:04:34 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\wmplog01.sqm [1440]

O61 - LFC:Last File Created 07/08/2011 - 21:43:52 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\6b3d0bdc.avl [1524]

O61 - LFC:Last File Created 07/08/2011 - 22:02:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ctsde15.wiredminds[1].txt [145]

O61 - LFC:Last File Created 07/08/2011 - 22:34:20 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@orange[1].txt [135]

O61 - LFC:Last File Created 07/08/2011 - 22:34:21 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@sdc.francetelecom[1].txt [152]

O61 - LFC:Last File Created 07/08/2011 - 22:34:21 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@sdc.francetelecom[2].txt [193]

O61 - LFC:Last File Created 07/08/2011 - 22:35:23 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@apmebf[1].txt [178]

O61 - LFC:Last File Created 07/08/2011 - 22:35:24 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@emjcd[2].txt [171]

O61 - LFC:Last File Created 07/08/2011 - 22:35:24 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.emjcd[1].txt [101]

O61 - LFC:Last File Created 07/08/2011 - 22:35:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@advertising[1].txt [89]

O61 - LFC:Last File Created 07/08/2011 - 22:35:31 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bouyguestelecom.solution.weborama[1].txt [536]

O61 - LFC:Last File Created 07/08/2011 - 22:37:50 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Adobe\Acrobat\9.0\Cache\Search\973088429039f7d3b01f5a8f18b74a09.idx [84308]

O61 - LFC:Last File Created 07/08/2011 - 22:53:33 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt00.sqm [4160]

O61 - LFC:Last File Created 07/08/2011 - 22:53:33 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{b3ba87e8-c323-4862-b2ed-df9b73595591}\DBStore\contacts.edb [8404992]

O61 - LFC:Last File Created 07/08/2011 - 22:53:33 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{b3ba87e8-c323-4862-b2ed-df9b73595591}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 07/08/2011 - 22:53:35 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt01.sqm [120]

O61 - LFC:Last File Created 07/08/2011 - 22:53:36 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Messenger\ContactsLog.txt [2086299]

O61 - LFC:Last File Created 07/08/2011 - 22:53:36 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{bffde123-6aaa-4598-9c19-e9e6b6eee78e}\DBStore\contacts.edb [8404992]

O61 - LFC:Last File Created 07/08/2011 - 22:53:36 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Windows Live Contacts\{bffde123-6aaa-4598-9c19-e9e6b6eee78e}\DBStore\edb.chk [8192]

O61 - LFC:Last File Created 07/08/2011 - 22:55:20 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.fullwebservice[1].txt [91]

O61 - LFC:Last File Created 07/08/2011 - 22:57:41 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\#SharedObjects\CX93G42Y\www.tripadvisor.fr\TA.sol [62]

O61 - LFC:Last File Created 07/08/2011 - 22:57:41 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.tripadvisor.fr\settings.sol [88]

O61 - LFC:Last File Created 08/08/2011 - 00:00:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@market.android[1].txt [562]

O61 - LFC:Last File Created 08/08/2011 - 00:02:00 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@sygic[2].txt [369]

O61 - LFC:Last File Created 08/08/2011 - 00:02:25 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@a3forum[1].txt [301]

O61 - LFC:Last File Created 08/08/2011 - 00:02:25 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@forum307[2].txt [297]

O61 - LFC:Last File Created 08/08/2011 - 00:02:50 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ads.iadmanager[2].txt [300]

O61 - LFC:Last File Created 08/08/2011 - 00:06:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@libellules[1].txt [360]

O61 - LFC:Last File Created 08/08/2011 - 00:07:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@imagesup[2].txt [86]

O61 - LFC:Last File Created 08/08/2011 - 08:02:24 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\2093e0e7.avl [1554]

O61 - LFC:Last File Created 08/08/2011 - 08:25:22 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@10minutemail[1].txt [364]

O61 - LFC:Last File Created 08/08/2011 - 10:02:07 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\d2810c3c.avl [1524]

O61 - LFC:Last File Created 08/08/2011 - 12:02:07 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\8dc65929.avl [1524]

O61 - LFC:Last File Created 08/08/2011 - 12:26:17 --HA- C:\Documents And Settings\LogMeInRemoteUser\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [1024]

O61 - LFC:Last File Created 08/08/2011 - 12:32:58 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt02.sqm [284]

O61 - LFC:Last File Created 08/08/2011 - 15:59:13 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@chateaudestrainchamps[2].txt [288]

O61 - LFC:Last File Created 08/08/2011 - 18:16:55 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt03.sqm [296]

O61 - LFC:Last File Created 08/08/2011 - 18:17:21 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt04.sqm [200]

O61 - LFC:Last File Created 08/08/2011 - 18:19:45 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\c0468c47.avl [1642]

O61 - LFC:Last File Created 08/08/2011 - 19:35:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.cinemotions[1].txt [122]

O61 - LFC:Last File Created 08/08/2011 - 19:35:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.cinemotions[2].txt [84]

O61 - LFC:Last File Created 08/08/2011 - 19:35:39 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@content.yieldmanager[4].txt [85]

O61 - LFC:Last File Created 08/08/2011 - 19:36:15 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\backups\setup.dat - date@y2011.m08.d08 time@h20.m36.s15.bak [3144]

O61 - LFC:Last File Created 08/08/2011 - 19:36:23 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.cinemotions[3].txt [121]

O61 - LFC:Last File Created 08/08/2011 - 19:41:20 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@abmr[3].txt [201]

O61 - LFC:Last File Created 08/08/2011 - 19:41:28 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\mf2tan4wiuwhx5f2tsbnob2c4wtl05cfo3ngrqxvo31d5npyekaaaaea\group.dat [56]

O61 - LFC:Last File Created 08/08/2011 - 19:41:55 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\2h1vb53mxlt3gt112skdnxdoiewlsn1hrz01f5xiwf2gjpnrr4aaagfa\group.dat [56]

O61 - LFC:Last File Created 08/08/2011 - 19:42:16 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\mssl.lck [77]

O61 - LFC:Last File Created 08/08/2011 - 19:42:17 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\pqva203hhqlfgwefjzam54ftpa3avqzzfarrrsymeorzo13l12aaabga\group.dat [56]

O61 - LFC:Last File Created 08/08/2011 - 19:42:17 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\pqva203hhqlfgwefjzam54ftpa3avqzzfarrrsymeorzo13l12aaabga\id.dat [84]

O61 - LFC:Last File Created 08/08/2011 - 19:45:27 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@login.live[2].txt [322]

O61 - LFC:Last File Created 08/08/2011 - 19:45:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@xbox[3].txt [390]

O61 - LFC:Last File Created 08/08/2011 - 19:51:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@androidgen[3].txt [260]

O61 - LFC:Last File Created 08/08/2011 - 19:51:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@androidzoom[2].txt [431]

O61 - LFC:Last File Created 08/08/2011 - 19:51:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@perfectshops[1].txt [292]

O61 - LFC:Last File Created 08/08/2011 - 19:54:09 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@apple[2].txt [202]

O61 - LFC:Last File Created 08/08/2011 - 19:54:09 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@wupload[2].txt [823]

O61 - LFC:Last File Created 08/08/2011 - 20:19:12 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\8e888a03.avl [1524]

O61 - LFC:Last File Created 08/08/2011 - 20:22:43 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@iadmanager[3].txt [276]

O61 - LFC:Last File Created 08/08/2011 - 20:22:45 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@sharethis[3].txt [177]

O61 - LFC:Last File Created 08/08/2011 - 20:27:48 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@meetic-partners[1].txt [491]

O61 - LFC:Last File Created 08/08/2011 - 20:30:47 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@lexpress[2].txt [174]

O61 - LFC:Last File Created 08/08/2011 - 20:30:48 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@alenty[1].txt [103]

O61 - LFC:Last File Created 08/08/2011 - 20:35:16 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@cinemotions[2].txt [291]

O61 - LFC:Last File Created 08/08/2011 - 20:36:39 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@tf1[1].txt [394]

O61 - LFC:Last File Created 08/08/2011 - 20:36:51 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@t833.trafiz[2].txt [936]

O61 - LFC:Last File Created 08/08/2011 - 20:36:51 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.toutlecine[1].txt [372]

O61 - LFC:Last File Created 08/08/2011 - 20:36:55 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@fl01.ct2.comclick[3].txt [700]

O61 - LFC:Last File Created 08/08/2011 - 20:38:27 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\#SharedObjects\CX93G42Y\ia.media-imdb.com\IMDBTEST.sol [62]

O61 - LFC:Last File Created 08/08/2011 - 20:38:27 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ia.media-imdb.com\settings.sol [87]

O61 - LFC:Last File Created 08/08/2011 - 20:38:31 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bpx.a9[1].txt [123]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@2ememain[2].txt [606]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@binsearch[2].txt [267]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bintube[2].txt [432]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@box.shopoon[1].txt [337]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@edge.sharethis[3].txt [303]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@elles-se-mettent-nues-pour-nous[2].txt [334]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@excessif[1].txt [288]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@imdb[2].txt [1047]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@seg.sharethis[3].txt [299]

O61 - LFC:Last File Created 08/08/2011 - 21:49:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ulike[2].txt [361]

O61 - LFC:Last File Created 08/08/2011 - 21:51:33 -SHA- C:\Documents And Settings\Wise3\Local Settings\Historique\History.IE5\MSHist012011080820110809\index.dat [98304]

O61 - LFC:Last File Created 08/08/2011 - 21:51:37 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.videocopilot.net\settings.sol [90]

O61 - LFC:Last File Created 08/08/2011 - 21:54:24 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@toutlecine[1].txt [444]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\backups\setup.dat - date@y2011.m08.d08 time@h23.m00.s35.bak [3144]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\downloaded.dat [45216]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\filters.dat [28]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\setup.dat [3144]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\tbStdCustom.dat [99]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\zlCache.dat [692]

O61 - LFC:Last File Created 08/08/2011 - 22:00:35 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\zlSets.v02.dat [675]

O61 - LFC:Last File Created 08/08/2011 - 22:00:36 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\nlScheduler.v2.dat [0]

O61 - LFC:Last File Created 08/08/2011 - 22:00:36 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\servers\000000.dat [222]

O61 - LFC:Last File Created 08/08/2011 - 22:00:36 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\servers\000001.dat [206]

O61 - LFC:Last File Created 08/08/2011 - 22:00:36 ---A- C:\Documents And Settings\Wise3\Application Data\NewsLeecher\tb035003.dat [3271]

O61 - LFC:Last File Created 08/08/2011 - 22:00:50 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt05.sqm [120]

O61 - LFC:Last File Created 08/08/2011 - 22:25:37 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@google[9].txt [131]

O61 - LFC:Last File Created 08/08/2011 - 22:35:46 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bouygues.inq[2].txt [577]

O61 - LFC:Last File Created 08/08/2011 - 22:38:16 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@a01.gestionpub[3].txt [278]

O61 - LFC:Last File Created 08/08/2011 - 22:39:57 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.307cc[3].txt [170]

O61 - LFC:Last File Created 08/08/2011 - 22:53:38 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@1307[2].txt [434]

O61 - LFC:Last File Created 08/08/2011 - 22:53:38 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@marchander[3].txt [316]

O61 - LFC:Last File Created 08/08/2011 - 22:54:32 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@smartadserver[4].txt [528]

O61 - LFC:Last File Created 08/08/2011 - 22:55:24 -SHA- C:\Documents And Settings\Wise3\Local Settings\Historique\History.IE5\MSHist012011080120110808\index.dat [294912]

O61 - LFC:Last File Created 08/08/2011 - 22:57:22 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@forumactif[1].txt [458]

O61 - LFC:Last File Created 08/08/2011 - 23:00:23 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@tripadvisor[2].txt [595]

O61 - LFC:Last File Created 08/08/2011 - 23:00:45 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@top100restaurants[2].txt [101]

O61 - LFC:Last File Created 08/08/2011 - 23:04:11 ---A- C:\Documents And Settings\Wise3\intlname.ols [71]

O61 - LFC:Last File Created 08/08/2011 - 23:04:24 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\Office\Wordma11.pip [1576]

O61 - LFC:Last File Created 08/08/2011 - 23:04:24 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\Outlook\Outlook.NK2 [103858]

O61 - LFC:Last File Created 08/08/2011 - 23:08:00 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@progskeet[1].txt [349]

O61 - LFC:Last File Created 08/08/2011 - 23:08:14 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@caradisiac[2].txt [88]

O61 - LFC:Last File Created 08/08/2011 - 23:16:20 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@forum-peugeot[1].txt [328]

O61 - LFC:Last File Created 08/08/2011 - 23:27:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@best-telecom[1].txt [268]

O61 - LFC:Last File Created 08/08/2011 - 23:27:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@illimite[2].txt [317]

O61 - LFC:Last File Created 08/08/2011 - 23:27:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.best-telecom[2].txt [135]

O61 - LFC:Last File Created 08/08/2011 - 23:29:11 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.forum307[2].txt [324]

O61 - LFC:Last File Created 08/08/2011 - 23:32:16 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@top100restaurants[4].txt [404]

O61 - LFC:Last File Created 08/08/2011 - 23:32:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.a3forum[2].txt [930]

O61 - LFC:Last File Created 08/08/2011 - 23:33:25 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@c2c4frenchclub[2].txt [170]

O61 - LFC:Last File Created 08/08/2011 - 23:33:26 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.la-carte[1].txt [337]

O61 - LFC:Last File Created 08/08/2011 - 23:34:35 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.c2c4frenchclub[2].txt [176]

O61 - LFC:Last File Created 08/08/2011 - 23:36:00 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.planete-citroen[2].txt [184]

O61 - LFC:Last File Created 08/08/2011 - 23:43:52 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\266358c9.avl [1524]

O61 - LFC:Last File Created 08/08/2011 - 23:43:57 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.feline207[1].txt [176]

O61 - LFC:Last File Created 08/08/2011 - 23:45:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@forum-clio[2].txt [409]

O61 - LFC:Last File Created 08/08/2011 - 23:45:32 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.mister-auto[1].txt [792]

O61 - LFC:Last File Created 08/08/2011 - 23:48:00 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@123pieceauto[2].txt [319]

O61 - LFC:Last File Created 08/08/2011 - 23:48:00 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@fiches-auto[2].txt [324]

O61 - LFC:Last File Created 08/08/2011 - 23:48:02 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@mister-auto[2].txt [412]

O61 - LFC:Last File Created 08/08/2011 - 23:51:47 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@gueux-forum[3].txt [343]

O61 - LFC:Last File Created 08/08/2011 - 23:54:08 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@hijackthis[2].txt [385]

O61 - LFC:Last File Created 09/08/2011 - 09:53:59 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\694d0080.avl [1818]

O61 - LFC:Last File Created 09/08/2011 - 10:05:55 --HA- C:\Documents And Settings\Administrateur\Ntuser.dat.LOG [1024]

O61 - LFC:Last File Created 09/08/2011 - 10:05:55 --HA- C:\Documents And Settings\LogMeInRemoteUser\Ntuser.dat.LOG [1024]

O61 - LFC:Last File Created 09/08/2011 - 10:31:57 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Galerie de composants Web Slice~.feed-ms [36864]

O61 - LFC:Last File Created 09/08/2011 - 10:54:51 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt06.sqm [284]

O61 - LFC:Last File Created 09/08/2011 - 11:53:59 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\25836c6c.avl [1618]

O61 - LFC:Last File Created 09/08/2011 - 12:04:11 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\QuickPar\cache.qpc.bak [572]

O61 - LFC:Last File Created 09/08/2011 - 12:27:16 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\QuickPar\cache.qpc [572]

O61 - LFC:Last File Created 09/08/2011 - 12:27:16 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\QuickPar\cowboys.and.aliens.2011.french.ts.md.repack.1cd.xvid-dopamine.avi(1).qp [59405]

O61 - LFC:Last File Created 09/08/2011 - 12:30:10 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Media Player\lastplayed.wpl [513]

O61 - LFC:Last File Created 09/08/2011 - 12:30:11 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb [14045184]

O61 - LFC:Last File Created 09/08/2011 - 12:30:11 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\wmplog02.sqm [1452]

O61 - LFC:Last File Created 09/08/2011 - 12:33:13 --HA- C:\Documents And Settings\LogMeInRemoteUser\ntuser.dat [253952]

O61 - LFC:Last File Created 09/08/2011 - 12:33:35 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@only4you[2].txt [350]

O61 - LFC:Last File Created 09/08/2011 - 12:42:29 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{A7541F5B-C27C-11E0-A6EB-000C76916F79}.dat [3584]

O61 - LFC:Last File Created 09/08/2011 - 12:42:29 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Last Active\{A7541F5C-C27C-11E0-A6EB-000C76916F79}.dat [29696]

O61 - LFC:Last File Created 09/08/2011 - 12:45:49 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt07.sqm [284]

O61 - LFC:Last File Created 09/08/2011 - 15:22:46 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\615b4d3c.avl [1642]

O61 - LFC:Last File Created 09/08/2011 - 15:27:00 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@c.live[2].txt [68]

O61 - LFC:Last File Created 09/08/2011 - 15:27:02 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@atdmt.combing[2].txt [257]

O61 - LFC:Last File Created 09/08/2011 - 15:27:02 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@live[2].txt [1062]

O61 - LFC:Last File Created 09/08/2011 - 15:27:02 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@windowsmarketplace[2].txt [267]

O61 - LFC:Last File Created 09/08/2011 - 15:27:02 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@zune[2].txt [239]

O61 - LFC:Last File Created 09/08/2011 - 15:27:11 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@msn[1].txt [68]

O61 - LFC:Last File Created 09/08/2011 - 15:27:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@c.msn[2].txt [133]

O61 - LFC:Last File Created 09/08/2011 - 15:27:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@msn[2].txt [494]

O61 - LFC:Last File Created 09/08/2011 - 15:31:41 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.4ados[1].txt [86]

O61 - LFC:Last File Created 09/08/2011 - 15:33:41 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.vandenborre[1].txt [632]

O61 - LFC:Last File Created 09/08/2011 - 15:38:03 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@vandenborre[2].txt [524]

O61 - LFC:Last File Created 09/08/2011 - 15:39:18 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\MSN Messenger\sqmnoopt08.sqm [284]

O61 - LFC:Last File Created 09/08/2011 - 16:12:48 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\sigstore.db [7776256]

O61 - LFC:Last File Created 09/08/2011 - 18:41:06 ---A- C:\Documents And Settings\All Users\Application Data\DAEMON Tools Lite\license.dat [1552]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\DOWNARROW00.GIF [52]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1025.CSS [8610]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1028.CSS [8537]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1037.CSS [8526]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1038.CSS [8605]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1041.CSS [8551]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1042.CSS [8609]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1081.CSS [8567]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1095.CSS [8567]

O61 - LFC:Last File Created 09/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1097.CSS [8564]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1098.CSS [8570]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1099.CSS [8564]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1100.CSS [8604]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_1102.CSS [8567]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_2052.CSS [8573]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_3098.CSS [8669]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\GLOBAL_DEFAULT.CSS [8603]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIP_ABC.GIF [478]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIP_AUDIOREPL.GIF [1770]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIP_SPEAKER.GIF [1191]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\IC_ALERT_LOW_16X.GIF [1043]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WAIT.GIF [644]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_BOOK.GIF [1121]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_FRAME.GIF [2296]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_ICON_ERROR.GIF [1022]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_LOGO_H.GIF [2345]

O61 - LFC:Last File Created 09/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WLID_USERTILE.GIF [2341]

O61 - LFC:Last File Created 09/08/2011 - 18:42:17 ---A- C:\Documents And Settings\Wise3\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0]

O61 - LFC:Last File Created 09/08/2011 - 18:43:15 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e4171b3 [152]

O61 - LFC:Last File Created 09/08/2011 - 18:43:16 -SHA- C:\Documents And Settings\Wise3\Local Settings\Historique\History.IE5\MSHist012011080920110810\index.dat [32768]

O61 - LFC:Last File Created 09/08/2011 - 18:44:24 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\host.db [65]

O61 - LFC:Last File Created 09/08/2011 - 18:44:24 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\unlink.db [200]

O61 - LFC:Last File Created 09/08/2011 - 18:44:27 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\config.db [12288]

O61 - LFC:Last File Created 09/08/2011 - 18:44:27 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\filecache.db [483328]

O61 - LFC:Last File Created 09/08/2011 - 18:44:59 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat [4232]

O61 - LFC:Last File Created 09/08/2011 - 18:44:59 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat [5467]

O61 - LFC:Last File Created 09/08/2011 - 18:45:04 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\9c315835.avl [1630]

O61 - LFC:Last File Created 09/08/2011 - 18:58:08 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Feeds\FeedsStore.feedsdb-ms [7168]

O61 - LFC:Last File Created 09/08/2011 - 18:58:08 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\Sites suggérés d’Internet Explorer~.feed-ms [32768]

O61 - LFC:Last File Created 09/08/2011 - 20:33:00 -SHA- C:\Documents And Settings\Wise3\Application Data\Microsoft\Protect\S-1-5-21-1229272821-515967899-1417001333-1003\b9e94b4c-564e-4154-8a10-34ea6124283b [388]

O61 - LFC:Last File Created 09/08/2011 - 20:44:15 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\47a74778.avl [1524]

O61 - LFC:Last File Created 09/08/2011 - 22:00:42 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\QuickPar\cowboys.and.aliens.2011.french.ts.md.repack.1cd.xvid-dopamine.avi(1).qp.bak [120044]

O61 - LFC:Last File Created 09/08/2011 - 22:44:15 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\IDX\master.idx [56]

O61 - LFC:Last File Created 09/08/2011 - 22:44:15 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\JOBS\updjob.avj [1604]

O61 - LFC:Last File Created 09/08/2011 - 22:44:15 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\02eca455.avl [1524]

O61 - LFC:Last File Created 10/08/2011 - 00:00:19 ---A- C:\Documents And Settings\Wise3\Favoris\Liens\VIDEO COPILOT Professional After Effects Tutorials, Plug-ins & Pre-Keyed Stock Footage.url [258]

O61 - LFC:Last File Created 10/08/2011 - 00:01:43 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@adf[2].txt [398]

O61 - LFC:Last File Created 10/08/2011 - 00:01:52 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{30DEE34C-C2DA-11E0-A6ED-000C76916F79}.dat [575488]

O61 - LFC:Last File Created 10/08/2011 - 00:02:11 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.demoncam.com\settings.sol [86]

O61 - LFC:Last File Created 10/08/2011 - 00:02:11 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [6118]

O61 - LFC:Last File Created 10/08/2011 - 00:02:26 ---A- C:\Documents And Settings\Wise3\Favoris\Liens\Binsearch -- Usenet search engine.url [347]

O61 - LFC:Last File Created 10/08/2011 - 00:02:52 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3f199c [152]

O61 - LFC:Last File Created 10/08/2011 - 00:05:53 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@demoncam[2].txt [379]

O61 - LFC:Last File Created 10/08/2011 - 00:06:02 ---A- C:\Documents And Settings\Wise3\Application Data\Macromedia\Flash Player\#SharedObjects\CX93G42Y\s.ytimg.com\videostats.sol [199]

O61 - LFC:Last File Created 10/08/2011 - 00:11:06 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{63017582-C2DB-11E0-A6ED-000C76916F79}.dat [14848]

O61 - LFC:Last File Created 10/08/2011 - 00:11:14 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@videocopilot[3].txt [366]

O61 - LFC:Last File Created 10/08/2011 - 00:12:38 ---A- C:\Documents And Settings\Wise3\Favoris\Liens\Logic-Sunrise actualités, téléchargements, releases, dossiers et tutoriaux.url [232]

O61 - LFC:Last File Created 10/08/2011 - 00:12:41 ---A- C:\Documents And Settings\Wise3\Application Data\Avira\AntiVir Desktop\MCACHEDB\avmgcch.db [46080]

O61 - LFC:Last File Created 10/08/2011 - 00:12:43 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\Office\MSOut11.pip [1728]

O61 - LFC:Last File Created 10/08/2011 - 00:12:43 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\Outlook\Outlook.xml [5625]

O61 - LFC:Last File Created 10/08/2011 - 00:12:43 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst [329139200]

O61 - LFC:Last File Created 10/08/2011 - 00:12:43 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Outlook\archive.pst [207242240]

O61 - LFC:Last File Created 10/08/2011 - 00:12:43 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Outlook\archive1.pst [375866368]

O61 - LFC:Last File Created 10/08/2011 - 00:12:53 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@youtube[3].txt [191]

O61 - LFC:Last File Created 10/08/2011 - 00:13:01 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@cas.criteo[2].txt [258]

O61 - LFC:Last File Created 10/08/2011 - 00:13:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@weborama[3].txt [341]

O61 - LFC:Last File Created 10/08/2011 - 00:13:06 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@adnext[3].txt [555]

O61 - LFC:Last File Created 10/08/2011 - 00:13:06 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@aimfar.solution.weborama[2].txt [510]

O61 - LFC:Last File Created 10/08/2011 - 00:13:06 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@criteo[3].txt [552]

O61 - LFC:Last File Created 10/08/2011 - 00:13:07 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@mathtag[2].txt [275]

O61 - LFC:Last File Created 10/08/2011 - 00:13:07 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@weboramadata.solution.weborama[2].txt [316]

O61 - LFC:Last File Created 10/08/2011 - 00:13:11 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@invitemedia[2].txt [573]

O61 - LFC:Last File Created 10/08/2011 - 00:13:13 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@adnxs[3].txt [553]

O61 - LFC:Last File Created 10/08/2011 - 00:13:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@horyzon-media[2].txt [480]

O61 - LFC:Last File Created 10/08/2011 - 00:13:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@nxtck[3].txt [206]

O61 - LFC:Last File Created 10/08/2011 - 00:13:22 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@bubblestat[3].txt [984]

O61 - LFC:Last File Created 10/08/2011 - 00:13:24 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.xboxgen[3].txt [674]

O61 - LFC:Last File Created 10/08/2011 - 00:13:24 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@xboxgen[3].txt [347]

O61 - LFC:Last File Created 10/08/2011 - 00:13:25 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ad.yieldmanager[3].txt [1833]

O61 - LFC:Last File Created 10/08/2011 - 00:13:27 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@188.165.12[3].txt [258]

O61 - LFC:Last File Created 10/08/2011 - 00:13:27 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@21nova[2].txt [862]

O61 - LFC:Last File Created 10/08/2011 - 00:13:27 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@serve.21nova[1].txt [549]

O61 - LFC:Last File Created 10/08/2011 - 00:14:01 ---A- C:\Documents And Settings\Wise3\Favoris\Liens\BinnewZ France - Le 1er site francophone de référencement des newsgroups binaires.url [362]

O61 - LFC:Last File Created 10/08/2011 - 00:14:11 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@binnews[3].txt [334]

O61 - LFC:Last File Created 10/08/2011 - 00:14:19 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www2.adserverpub[1].txt [1849]

O61 - LFC:Last File Created 10/08/2011 - 00:14:22 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@jetcost[2].txt [728]

O61 - LFC:Last File Created 10/08/2011 - 00:14:23 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@tracking.publicidees[1].txt [282]

O61 - LFC:Last File Created 10/08/2011 - 00:14:38 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@usenetjunction[4].txt [969]

O61 - LFC:Last File Created 10/08/2011 - 00:14:40 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@binnews[4].txt [193]

O61 - LFC:Last File Created 10/08/2011 - 00:15:10 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@google[7].txt [129]

O61 - LFC:Last File Created 10/08/2011 - 00:15:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@tradedoubler[2].txt [1172]

O61 - LFC:Last File Created 10/08/2011 - 00:18:55 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.hostingpics[1].txt [87]

O61 - LFC:Last File Created 10/08/2011 - 00:18:56 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@hostingpics[1].txt [506]

O61 - LFC:Last File Created 10/08/2011 - 00:18:58 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ad.zanox[1].txt [509]

O61 - LFC:Last File Created 10/08/2011 - 00:18:58 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@cofidis2.solution.weborama[2].txt [412]

O61 - LFC:Last File Created 10/08/2011 - 00:18:58 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@doubleclick[2].txt [161]

O61 - LFC:Last File Created 10/08/2011 - 00:18:58 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@metaffiliation[1].txt [841]

O61 - LFC:Last File Created 10/08/2011 - 00:18:59 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@cofidis[2].txt [908]

O61 - LFC:Last File Created 10/08/2011 - 00:18:59 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@groupon[2].txt [836]

O61 - LFC:Last File Created 10/08/2011 - 00:18:59 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.laredoute[2].txt [580]

O61 - LFC:Last File Created 10/08/2011 - 00:18:59 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.unigro[2].txt [199]

O61 - LFC:Last File Created 10/08/2011 - 00:19:03 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\EVENTDB\avevtdb.dbe [286720]

O61 - LFC:Last File Created 10/08/2011 - 00:19:18 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{F278747A-C2DD-11E0-A6ED-000C76916F79}.dat [12288]

O61 - LFC:Last File Created 10/08/2011 - 00:19:18 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\frameiconcache.dat [18856]

O61 - LFC:Last File Created 10/08/2011 - 00:21:45 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@exportprive[2].txt [396]

O61 - LFC:Last File Created 10/08/2011 - 00:21:47 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@addthis[2].txt [616]

O61 - LFC:Last File Created 10/08/2011 - 00:23:05 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@anonym[2].txt [284]

O61 - LFC:Last File Created 10/08/2011 - 00:23:07 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@allocine[5].txt [1625]

O61 - LFC:Last File Created 10/08/2011 - 00:25:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@amazon[2].txt [596]

O61 - LFC:Last File Created 10/08/2011 - 00:25:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@galaxys-team[4].txt [623]

O61 - LFC:Last File Created 10/08/2011 - 00:25:05 ---A- C:\Documents And Settings\Wise3\Application Data\Adobe\Flash Player\AssetCache\V2DAJ2G3\1C04C61346A1FA3139A37D860ED92632AA13DECF.heu [149]

O61 - LFC:Last File Created 10/08/2011 - 00:25:05 ---A- C:\Documents And Settings\Wise3\Application Data\Adobe\Flash Player\AssetCache\V2DAJ2G3\F7536EF0D78A77B889EEBE98BF96BA5321A1FDE0.heu [149]

O61 - LFC:Last File Created 10/08/2011 - 00:25:16 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@homecinema-fr[2].txt [902]

O61 - LFC:Last File Created 10/08/2011 - 00:25:16 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.logic-sunrise[3].txt [471]

O61 - LFC:Last File Created 10/08/2011 - 00:25:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@logic-sunrise[2].txt [507]

O61 - LFC:Last File Created 10/08/2011 - 00:25:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@privatedl[1].txt [81]

O61 - LFC:Last File Created 10/08/2011 - 00:25:19 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{5743FFB0-C2DD-11E0-A6ED-000C76916F79}.dat [196608]

O61 - LFC:Last File Created 10/08/2011 - 00:25:20 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{2E323D0C-C2DE-11E0-A6ED-000C76916F79}.dat [12800]

O61 - LFC:Last File Created 10/08/2011 - 00:25:21 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{4E8C66A0-C2DD-11E0-A6ED-000C76916F79}.dat [14848]

O61 - LFC:Last File Created 10/08/2011 - 00:25:23 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{2D0EDE68-C2DD-11E0-A6ED-000C76916F79}.dat [7680]

O61 - LFC:Last File Created 10/08/2011 - 00:25:23 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Last Active\RecoveryStore.{968D07A5-BDA9-11E0-A6E2-000C76916F79}.dat [4608]

O61 - LFC:Last File Created 10/08/2011 - 00:25:23 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Last Active\{D7C31BF5-C2DE-11E0-A6ED-000C76916F79}.dat [7168]

O61 - LFC:Last File Created 10/08/2011 - 00:25:35 ---A- C:\Documents And Settings\Wise3\Favoris\PC lent sous internet IE ET sablier de la souris qui s'affiche +- - Forums Zebulon.fr.url [363]

O61 - LFC:Last File Created 10/08/2011 - 00:26:14 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{F8D2F7FE-C2DE-11E0-A6ED-000C76916F79}.dat [4608]

O61 - LFC:Last File Created 10/08/2011 - 00:26:16 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41c218 [152]

O61 - LFC:Last File Created 10/08/2011 - 00:26:16 ---A- C:\Documents And Settings\Wise3\Bureau\RogueKiller.exe [555008]

O61 - LFC:Last File Created 10/08/2011 - 00:26:39 ---A- C:\Documents And Settings\Wise3\Bureau\RK_Quarantine\QuarantineReport.txt [516]

O61 - LFC:Last File Created 10/08/2011 - 00:26:39 ---A- C:\Documents And Settings\Wise3\Bureau\RKreport[1].txt [1200]

O61 - LFC:Last File Created 10/08/2011 - 00:29:54 -SHA- C:\Documents And Settings\Wise3\Local Settings\Historique\History.IE5\MSHist012011081020110811\index.dat [49152]

O61 - LFC:Last File Created 10/08/2011 - 00:29:55 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{7C3E36E4-C2DF-11E0-A6ED-000C76916F79}.dat [4608]

O61 - LFC:Last File Created 10/08/2011 - 00:29:56 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41c2f4 [152]

O61 - LFC:Last File Created 10/08/2011 - 00:30:04 ---A- C:\Documents And Settings\Wise3\Bureau\ZHPDiag2.exe [2566870]

O61 - LFC:Last File Created 10/08/2011 - 00:30:30 ---A- C:\Documents And Settings\Wise3\Recent\VHURBA.rar.lnk [503]

O61 - LFC:Last File Created 10/08/2011 - 00:30:31 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41c317 [140]

O61 - LFC:Last File Created 10/08/2011 - 00:31:43 ---A- C:\Documents And Settings\All Users\Bureau\ZHPDiag.lnk [703]

O61 - LFC:Last File Created 10/08/2011 - 00:31:43 ---A- C:\Documents And Settings\All Users\Bureau\ZHPFix.lnk [698]

O61 - LFC:Last File Created 10/08/2011 - 00:31:43 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ZHP\ZHPDiag.lnk [489]

O61 - LFC:Last File Created 10/08/2011 - 00:31:44 ---A- C:\Documents And Settings\All Users\Bureau\MBRCheck.lnk [710]

O61 - LFC:Last File Created 10/08/2011 - 00:33:26 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@forum.zebulon[2].txt [370]

O61 - LFC:Last File Created 10/08/2011 - 00:33:26 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@zebulon[2].txt [812]

O61 - LFC:Last File Created 10/08/2011 - 00:33:31 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@fr.a2dfp[1].txt [200]

O61 - LFC:Last File Created 10/08/2011 - 00:33:31 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@scorecardresearch[3].txt [115]

O61 - LFC:Last File Created 10/08/2011 - 00:33:31 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.zebulon[2].txt [100]

O61 - LFC:Last File Created 10/08/2011 - 00:33:32 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@intellitxt[3].txt [228]

O61 - LFC:Last File Created 10/08/2011 - 07:58:46 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3f8926 [124]

O61 - LFC:Last File Created 10/08/2011 - 08:11:15 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3f8c13 [152]

O61 - LFC:Last File Created 10/08/2011 - 09:38:48 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3e4f18 [124]

O61 - LFC:Last File Created 10/08/2011 - 09:40:14 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3e4f6e [124]

O61 - LFC:Last File Created 10/08/2011 - 09:44:09 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3e5059 [152]

O61 - LFC:Last File Created 10/08/2011 - 09:50:06 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e40f4be [124]

O61 - LFC:Last File Created 10/08/2011 - 11:48:29 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41107d [124]

O61 - LFC:Last File Created 10/08/2011 - 12:03:25 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e4113fd [152]

O61 - LFC:Last File Created 10/08/2011 - 12:03:29 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e411401 [152]

O61 - LFC:Last File Created 10/08/2011 - 12:04:07 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e411427 [128]

O61 - LFC:Last File Created 10/08/2011 - 12:32:55 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e411ae7 [152]

O61 - LFC:Last File Created 10/08/2011 - 15:05:59 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@twitter[3].txt [554]

O61 - LFC:Last File Created 10/08/2011 - 15:08:28 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3e9c5c [148]

O61 - LFC:Last File Created 10/08/2011 - 15:18:52 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e4141cc [124]

O61 - LFC:Last File Created 10/08/2011 - 15:27:00 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\IdentityCRL\production\MetaConfig.xml [163]

O61 - LFC:Last File Created 10/08/2011 - 15:27:17 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@atdmt[3].txt [431]

O61 - LFC:Last File Created 10/08/2011 - 15:29:00 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41442c [152]

O61 - LFC:Last File Created 10/08/2011 - 15:31:03 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\MessengerCache\DjKHdXMTAQjkWrv4KKBY3R94YEg= [3145]

O61 - LFC:Last File Created 10/08/2011 - 15:32:13 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e4144ec [152]

O61 - LFC:Last File Created 10/08/2011 - 15:33:04 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@google[8].txt [348]

O61 - LFC:Last File Created 10/08/2011 - 15:39:00 ---A- C:\Documents And Settings\Wise3\Favoris\Liens\X360 GX-Mod.com - LE site de hack pour votre console XBox 360 - Articles.url [528]

O61 - LFC:Last File Created 10/08/2011 - 15:42:47 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\MessengerCache\XwF2XUireNwOM4rumlsJv4RO2uw= [4501]

O61 - LFC:Last File Created 10/08/2011 - 15:44:19 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3ea4c3 [140]

O61 - LFC:Last File Created 10/08/2011 - 15:48:49 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@247realmedia[3].txt [92]

O61 - LFC:Last File Created 10/08/2011 - 15:49:02 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3ea5de [128]

O61 - LFC:Last File Created 10/08/2011 - 15:49:16 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@fastclick[3].txt [88]

O61 - LFC:Last File Created 10/08/2011 - 15:50:22 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\Internet Explorer\UserData\B5R3OXO7\s_nav[1].xml [28]

O61 - LFC:Last File Created 10/08/2011 - 15:50:25 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\2FEHNO0Y\www.apple[1].xml [13]

O61 - LFC:Last File Created 10/08/2011 - 16:06:29 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3ea9f5 [152]

O61 - LFC:Last File Created 10/08/2011 - 16:07:24 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3eaa2c [148]

O61 - LFC:Last File Created 10/08/2011 - 16:09:54 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@cdn.cyberdevilz[1].txt [126]

O61 - LFC:Last File Created 10/08/2011 - 16:09:54 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@cyberdevilz[1].txt [122]

O61 - LFC:Last File Created 10/08/2011 - 16:11:17 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3eab15 [152]

O61 - LFC:Last File Created 10/08/2011 - 18:15:41 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e4019bd [124]

O61 - LFC:Last File Created 10/08/2011 - 18:17:49 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e401a3d [152]

O61 - LFC:Last File Created 10/08/2011 - 18:24:46 ---A- C:\Documents And Settings\Wise3\Favoris\Liens\BinnewZ France - RSS.url [242]

O61 - LFC:Last File Created 10/08/2011 - 18:25:07 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e401bf3 [148]

O61 - LFC:Last File Created 10/08/2011 - 18:25:46 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e401c1a [152]

O61 - LFC:Last File Created 10/08/2011 - 18:40:58 -SHA- C:\Documents And Settings\Wise3\Application Data\Microsoft\Credentials\S-1-5-21-1229272821-515967899-1417001333-1003\Credentials [532]

O61 - LFC:Last File Created 10/08/2011 - 18:40:58 -SHA- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Credentials\S-1-5-21-1229272821-515967899-1417001333-1003\Credentials [3082]

O61 - LFC:Last File Created 10/08/2011 - 18:40:59 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41712b [124]

O61 - LFC:Last File Created 10/08/2011 - 18:41:03 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\FLVService\lib\FLVSrvLib.dll [12800]

O61 - LFC:Last File Created 10/08/2011 - 18:41:09 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\ATI\ACE\Manifest.Bin [29528]

O61 - LFC:Last File Created 10/08/2011 - 18:41:09 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\ATI\ACE\Manifest.xml [23574]

O61 - LFC:Last File Created 10/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\AUTHAPP_HEADER.JPG [2515]

O61 - LFC:Last File Created 10/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\BUTTON.JS [8782]

O61 - LFC:Last File Created 10/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\CHECKBOX.JS [7271]

O61 - LFC:Last File Created 10/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\COMBOBOX.JS [23327]

O61 - LFC:Last File Created 10/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\DIVWRAPPER.JS [20719]

O61 - LFC:Last File Created 10/08/2011 - 18:41:52 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\EXTERNALWRAPPER.JS [51852]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\HIPUSER.HTM [22277]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\IMAGE.JS [8288]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\LINK.JS [6208]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\LOCALIZATION.JS [18541]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\MULTIUSERSSO.HTM [6644]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\NEWUSER.HTM [40944]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\NEWUSERCOMM.JS [6910]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\NEWUSERFED.HTM [35945]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\QUERYSTRING.JS [1651]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\SAVEDUSER.JS [8613]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\SAVEDUSERS.HTM [23251]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\TEXT.JS [5927]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\TEXTBOX.JS [9310]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\TILEBOX.JS [8646]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\UICORE.JS [6429]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\UIRESOURCE.JS [4599]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\USERTILE.JS [63115]

O61 - LFC:Last File Created 10/08/2011 - 18:41:53 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\WAITPAGE.HTM [8704]

O61 - LFC:Last File Created 10/08/2011 - 18:41:54 ---A- C:\Documents And Settings\All Users\Application Data\ATI\ACE\Profiles.xml [188]

O61 - LFC:Last File Created 10/08/2011 - 18:41:54 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\ATI\ACE\Profiles.xml [11291]

O61 - LFC:Last File Created 10/08/2011 - 19:13:01 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Messenger\fabrice.douillez@wanadoo.be\SocialNews\WNResponse.xml [70591]

O61 - LFC:Last File Created 10/08/2011 - 19:36:31 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ad6media[3].txt [159]

O61 - LFC:Last File Created 10/08/2011 - 19:41:28 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\mf2tan4wiuwhx5f2tsbnob2c4wtl05cfo3ngrqxvo31d5npyekaaaaea\f\__LocalSettings [154]

O61 - LFC:Last File Created 10/08/2011 - 19:42:15 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\2h1vb53mxlt3gt112skdnxdoiewlsn1hrz01f5xiwf2gjpnrr4aaagfa\f\__LocalSettings [154]

O61 - LFC:Last File Created 10/08/2011 - 19:42:23 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Silverlight\is\kyb1hifx.4va\psagjjvf.2dz\1\s\pqva203hhqlfgwefjzam54ftpa3avqzzfarrrsymeorzo13l12aaabga\f\__LocalSettings [154]

O61 - LFC:Last File Created 10/08/2011 - 19:53:14 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e40309a [152]

O61 - LFC:Last File Created 10/08/2011 - 19:56:58 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3edffa [128]

O61 - LFC:Last File Created 10/08/2011 - 20:03:45 ---A- C:\Documents And Settings\Wise3\Application Data\Mipony\History.xml [23645]

O61 - LFC:Last File Created 10/08/2011 - 20:03:48 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3ee194 [148]

O61 - LFC:Last File Created 10/08/2011 - 20:11:45 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\MessengerCache\+nhTs6TxtiIhumFl8ld7jBC9Jz4= [23422]

O61 - LFC:Last File Created 10/08/2011 - 20:15:05 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e4035b9 [148]

O61 - LFC:Last File Created 10/08/2011 - 20:33:00 -SHA- C:\Documents And Settings\Wise3\Application Data\Microsoft\Protect\S-1-5-21-1229272821-515967899-1417001333-1003\Preferred [24]

O61 - LFC:Last File Created 10/08/2011 - 21:54:42 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e404d12 [128]

O61 - LFC:Last File Created 10/08/2011 - 21:55:09 ---A- C:\Documents And Settings\Wise3\Application Data\Mipony\linkList.xml [35149]

O61 - LFC:Last File Created 10/08/2011 - 21:55:09 ---A- C:\Documents And Settings\Wise3\Application Data\Mipony\stats.xml [1212]

O61 - LFC:Last File Created 10/08/2011 - 21:55:10 ---A- C:\Documents And Settings\Wise3\Application Data\Mipony\categories.xml [94]

O61 - LFC:Last File Created 10/08/2011 - 21:55:10 ---A- C:\Documents And Settings\Wise3\Application Data\Mipony\mipony.xml [8631]

O61 - LFC:Last File Created 10/08/2011 - 22:01:56 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3efd44 [152]

O61 - LFC:Last File Created 10/08/2011 - 22:16:19 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\S0G1VSWW\fr-fr.facebook[1].xml [109]

O61 - LFC:Last File Created 10/08/2011 - 22:17:19 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3f00df [160]

O61 - LFC:Last File Created 10/08/2011 - 22:21:45 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\S0G1VSWW\www.1307[1].xml [13]

O61 - LFC:Last File Created 10/08/2011 - 22:26:02 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@google[2].txt [350]

O61 - LFC:Last File Created 10/08/2011 - 22:34:18 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@zanox[1].txt [109]

O61 - LFC:Last File Created 10/08/2011 - 22:36:01 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\Y9C02P93\www.yopdf[1].xml [13]

O61 - LFC:Last File Created 10/08/2011 - 22:38:14 ---A- C:\Documents And Settings\Wise3\Application Data\Adobe\Acrobat\9.0\SharedDataEvents [5120]

O61 - LFC:Last File Created 10/08/2011 - 22:46:29 ---A- C:\Documents And Settings\Wise3\Local Settings\temp\MessengerCache\huT8A5rWDQP2q94X+MfcQbnuy6Y= [3216]

O61 - LFC:Last File Created 10/08/2011 - 23:00:25 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\Y9C02P93\www.tripadvisor[2].xml [113]

O61 - LFC:Last File Created 10/08/2011 - 23:18:02 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\U2557W2Q\fiches-auto[1].xml [13]

O61 - LFC:Last File Created 10/08/2011 - 23:32:16 ---A- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\2FEHNO0Y\www.a3forum[1].xml [13]

O61 - LFC:Last File Created 10/08/2011 - 23:50:29 ---A- C:\Documents And Settings\Wise3\Application Data\Microsoft\Office\Word11.pip [1692]

O61 - LFC:Last File Created 10/08/2011 - 23:50:31 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41b9b7 [152]

O61 - LFC:Last File Created 10/08/2011 - 23:50:33 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41b9b9 [152]

O61 - LFC:Last File Created 10/08/2011 - 23:50:50 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@mfr.a2dfp[2].txt [92]

O61 - LFC:Last File Created 10/08/2011 - 23:50:54 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@a2dfp[3].txt [684]

O61 - LFC:Last File Created 10/08/2011 - 23:50:54 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@serving-sys[3].txt [1654]

O61 - LFC:Last File Created 10/08/2011 - 23:51:48 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.usenetjunction[3].txt [1118]

O61 - LFC:Last File Created 10/08/2011 - 23:51:55 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e3f170b [152]

O61 - LFC:Last File Created 10/08/2011 - 23:54:23 ---A- C:\Documents And Settings\Wise3\Application Data\Dropbox\shellext\l\4e41ba9f [152]

O61 - LFC:Last File Created 10/08/2011 - 23:54:35 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@ad.adserver01[3].txt [109]

O61 - LFC:Last File Created 10/08/2011 - 23:54:36 ---A- C:\Documents And Settings\Wise3\Favoris\Android\Samsung Galaxy S • Voir le forum - [sGS] Personnalisation du téléphone.url [338]

O61 - LFC:Last File Created 10/08/2011 - 23:54:44 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@www.blogpatrol[3].txt [108]

O61 - LFC:Last File Created 10/08/2011 - 23:54:44 ---A- C:\Documents And Settings\Wise3\Favoris\Android\waryam android apps and games Free Java, Symbian, Android, PPC Apps & Games Mobile Downloads.url [1209]

O61 - LFC:Last File Created 10/08/2011 - 23:55:14 ---A- C:\Documents And Settings\Wise3\Favoris\Android\HotFilesDownload.com Download Android Apps, Android Games, iPhone Apps, iPhone Games. - Part 2.url [448]

O61 - LFC:Last File Created 10/08/2011 - 23:56:27 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@mm.chitika[2].txt [1198]

O61 - LFC:Last File Created 10/08/2011 - 23:56:30 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@infolinks[1].txt [250]

O61 - LFC:Last File Created 10/08/2011 - 23:58:56 ---A- C:\Documents And Settings\Wise3\Cookies\wise3@mhhauto[1].txt [674]

O61 - LFC:Last File Created 15/07/2011 - 00:14:33 -SHA- C:\Documents And Settings\Wise3\Application Data\Microsoft\Internet Explorer\UserData\index.dat [32768]

O61 - LFC:Last File Created 15/07/2011 - 00:14:33 -SHA- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [81920]

O61 - LFC:Last File Created 15/07/2011 - 00:29:54 -SHA- C:\Documents And Settings\Wise3\IECompatCache\index.dat [589824]

O61 - LFC:Last File Created 15/07/2011 - 00:29:54 -SHA- C:\Documents And Settings\Wise3\IETldCache\index.dat [262144]

O61 - LFC:Last File Created 15/07/2011 - 00:29:54 -SHA- C:\Documents And Settings\Wise3\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat [32768]

O61 - LFC:Last File Created 15/07/2011 - 00:29:54 -SHA- C:\Documents And Settings\Wise3\PrivacIE\index.dat [16187392]

O61 - LFC:Last File Created 15/07/2011 - 11:48:28 -SHA- C:\Documents And Settings\LocalService\Local Settings\temp\Cookies\index.dat [16384]

O61 - LFC:Last File Created 15/07/2011 - 11:48:28 -SHA- C:\Documents And Settings\LocalService\Local Settings\temp\Fichiers Internet temporaires\Content.IE5\index.dat [32768]

O61 - LFC:Last File Created 15/07/2011 - 11:48:28 -SHA- C:\Documents And Settings\LocalService\Local Settings\temp\History\History.IE5\index.dat [16384]

O61 - LFC:Last File Created 15/07/2011 - 18:40:57 ---A- C:\Documents And Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat [49152]

O61 - LFC:Last File Created 15/07/2011 - 18:40:57 -SHA- C:\Documents And Settings\NetworkService\Cookies\index.dat [49152]

O61 - LFC:Last File Created 15/07/2011 - 22:44:14 ---A- C:\Documents And Settings\LocalService\Local Settings\Historique\History.IE5\index.dat [32768]

O61 - LFC:Last File Created 15/07/2011 - 22:44:14 -SHA- C:\Documents And Settings\LocalService\Cookies\index.dat [32768]

O61 - LFC:Last File Created 29/07/2011 - 00:29:55 -SHA- C:\Documents And Settings\Wise3\Cookies\index.dat [163840]

O61 - LFC:Last File Created 29/07/2011 - 18:40:59 -SHA- C:\Documents And Settings\Wise3\Local Settings\Historique\History.IE5\index.dat [950272]

~ Scan Files in 01mn 51s

 

 

 

---\\ Alternate Data Stream File (O62)

O62 - ADS:Alternate Data Stream File - C:\WINDOWS\system32\Drivers\viamraid.sys:Zone.Identifier

O62 - ADS:Alternate Data Stream File - C:\WINDOWS\system32\Drivers\videX32.sys:Zone.Identifier

~ Scan ADS in 00mn 05s

 

 

 

---\\ Liste des outils de nettoyage (O63)

O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1

~ Scan ADS in 00mn 00s

 

 

 

---\\ Liste des services Legacy (O64)

O64 - Services: CurCS - 21/07/2009 - C:\Program Files\Avira\AntiVir Desktop\avguard.exe - Avira AntiVir Guard(AntiVirService) .(.Avira GmbH - Antivirus On-Access Service.) - LEGACY_ANTIVIRSERVICE

O64 - Services: CurCS - 12/05/2009 - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.exe - Avira AntiVir WebGuard(AntiVirWebService) .(.Avira GmbH - AntiVir WebGuard Service.) - LEGACY_ANTIVIRWEBSERVICE

O64 - Services: CurCS - 29/11/2006 - C:\WINDOWS\system32\Drivers\APLMp50.sys - APLMp50 NDIS Protocol Driver(APLMp50) .(.Printing Communications Assoc., Inc. (PCAUS - PCAUSA NDIS 5.0 MPR Protocol Driver.) - LEGACY_APLMP50

O64 - Services: CurCS - 13/02/2009 - C:\Program Files\Avira\AntiVir Desktop\avgio.sys - avgio(avgio) .(.Avira GmbH - Avira AntiVir Support for Minifilter.) - LEGACY_AVGIO

O64 - Services: CurCS - 14/02/2010 - C:\WINDOWS\system32\DRIVERS\avgntflt.sys - avgntflt(avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT

O64 - Services: CurCS - 30/03/2009 - C:\WINDOWS\system32\DRIVERS\avipbb.sys - avipbb(avipbb) .(.Avira GmbH - Avira Driver for RootKit Detection.) - LEGACY_AVIPBB

O64 - Services: CurCS - ??/??/???? - C:\DOCUME~1\Wise3\LOCALS~1\Temp\catchme.sys (.not file.) - catchme (catchme) .(...) - LEGACY_CATCHME

O64 - Services: CurCS - 14/04/2008 - C:\WINDOWS\System32\dmadmin.exe - Service d'administration du Gestionnaire de disque logique(dmadmin) .(.Microsoft Corp., Veritas Software - Processus du service Gestionnaire de disque.) - LEGACY_DMADMIN

O64 - Services: CurCS - 14/04/2008 - C:\WINDOWS\system32\drivers\dmboot.sys - dmboot(dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT

O64 - Services: CurCS - 14/04/2008 - C:\WINDOWS\system32\drivers\dmload.sys - dmload(dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD

O64 - Services: CurCS - 07/08/2007 - C:\WINDOWS\system32\Drivers\ElbyCDIO.sys - ElbyCDIO Driver(ElbyCDIO) .(.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) - LEGACY_ELBYCDIO

O64 - Services: CurCS - 10/04/2010 - C:\Program Files\Google\Update\GoogleUpdate.exe - Service Google Update (gupdate)(gupdate) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATE

O64 - Services: CurCS - 10/04/2010 - C:\Program Files\Google\Update\GoogleUpdate.exe - Service Google Update (gupdatem)(gupdatem) .(.Google Inc. - Programme d'installation de Google.) - LEGACY_GUPDATEM

O64 - Services: CurCS - 10/04/2010 - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe - Google Software Updater(gusvc) .(.Google - gusvc.) - LEGACY_GUSVC

O64 - Services: CurCS - 01/08/2010 - C:\WINDOWS\system32\Drivers\inpout32.sys - inpout32(inpout32) .(.Highresolution Enterprises [www.highrez.co. - Kernel level port access driver.) - LEGACY_INPOUT32

O64 - Services: CurCS - 08/12/2010 - C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe - LMIGuardianSvc(LMIGuardianSvc) .(.LogMeIn, Inc. - LMIGuardianSvc.) - LEGACY_LMIGUARDIANSVC

O64 - Services: CurCS - 11/08/2008 - C:\Program Files\LogMeIn\x86\RaInfo.sys - LogMeIn Kernel Information Provider(LMIInfo) .(.LogMeIn, Inc. - RemotelyAnywhere Kernel Information Provide.) - LEGACY_LMIINFO

O64 - Services: CurCS - 08/12/2010 - C:\Program Files\LogMeIn\x86\RaMaint.exe - LogMeIn Maintenance Service(LMIMaint) .(.LogMeIn, Inc. - LogMeIn Maintenance Service.) - LEGACY_LMIMAINT

O64 - Services: CurCS - 11/08/2008 - C:\WINDOWS\system32\drivers\LMIRfsDriver.sys - LogMeIn Remote File System Driver(LMIRfsDriver) .(.LogMeIn, Inc. - LogMeIn Rfs Drivemap Driver.) - LEGACY_LMIRFSDRIVER

O64 - Services: CurCS - 08/11/2010 - C:\Program Files\LogMeIn\x86\LogMeIn.exe - LogMeIn(LogMeIn) .(.LogMeIn, Inc. - LogMeIn.) - LEGACY_LOGMEIN

O64 - Services: CurCS - 06/07/2011 - C:\WINDOWS\system32\drivers\mbam.sys - MBAMProtector(MBAMProtector) .(.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) - LEGACY_MBAMPROTECTOR

O64 - Services: CurCS - 06/07/2011 - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe - MBAMService(MBAMService) .(.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) - LEGACY_MBAMSERVICE

O64 - Services: CurCS - ??/??/???? - C:\WINDOWS\system32\Drivers\sptd.sys - sptd (sptd) .(...) - LEGACY_SPTD

O64 - Services: CurCS - 11/05/2009 - C:\WINDOWS\system32\DRIVERS\ssmdrv.sys - ssmdrv(ssmdrv) .(.Avira GmbH - AVIRA SnapShot Driver.) - LEGACY_SSMDRV

O64 - Services: CurCS - 30/11/2010 - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe - TeamViewer 6(TeamViewer6) .(.TeamViewer GmbH - TeamViewer Remote Control Application.) - LEGACY_TEAMVIEWER6

~ Scan Services in 00mn 02s

 

 

 

---\\ Liste des fichiers non signés (O65)

O65 - LUF:29/09/2009 (.Pas de propriétaire - ATI Smart.) (5.13.0027) - c:\windows\system32\ati2sgag.exe

O65 - LUF:12/08/2005 (.Pas de propriétaire - .) (1, 2, 0, 573) - c:\windows\system32\CoreAAC.ax

O65 - LUF:27/04/2007 (.Pas de propriétaire - DLLDEV32i.) (3, 7, 0, 12) - c:\windows\system32\DLLDEV32i.dll

O65 - LUF:28/12/2007 (.Pas de propriétaire - LinksysMLViewer ActiveX Control Module.) (2, 0, 0, 22) - c:\windows\system32\LinksysMLViewer.ocx

O65 - LUF:22/10/2009 (.Pas de propriétaire - PC SDK.) (2, 2, 9, 42) - c:\windows\system32\RM_DVRNET_DLL.dll

O65 - LUF:31/12/2007 (.Pas de propriétaire - Simple DirectMedia Layer.) (1, 2, 13, 0) - c:\windows\system32\SDL.dll

O65 - LUF:21/07/2007 (.Pas de propriétaire - Simple DirectMedia Layer.) (1, 2, 6, 0) - c:\windows\system32\SDL_image.dll

O65 - LUF:21/07/2007 (.Pas de propriétaire - Simple DirectMedia Layer.) (1, 2, 8, 0) - c:\windows\system32\SDL_mixer.dll

O65 - LUF:21/07/2007 (.Pas de propriétaire - Simple DirectMedia Layer.) (1, 2, 7, 0) - c:\windows\system32\SDL_net.dll

O65 - LUF:21/07/2007 (.Pas de propriétaire - Simple DirectMedia Layer.) (2, 0, 9, 0) - c:\windows\system32\SDL_ttf.dll

~ Scan Sigcheck in 03mn 46s

 

 

 

---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*

O67 - Shell Spawning: <.com> <ComFile>[HKLM\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*

O67 - Shell Spawning: <.com> <ComFile>[HKCR\..\open\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- "%1" %*

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.html> <htmlfile>[HKCR\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Start Menu Internet (O68)

O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Documents and Settings\Wise3\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Search Browser Infection (O69)

O69 - SBI: SearchScopes [HKCU] {A4CD01B8-CEFA-412F-B1DC-13D56BC4F36F} [DefaultScope] - (Google) - Google

O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (mipony-plugin Customized Web Search) - http://search.conduit.com

~ Scan Keys in 00mn 00s

 

 

 

---\\ Internet Feature Controls (O81)

O81 - IFC: Internet Feature Controls [HKUS\.DEFAULT] [FEATURE_BROWSER_EMULATION] -- svchost.exe

O81 - IFC: Internet Feature Controls [HKUS\S-1-5-18] [FEATURE_BROWSER_EMULATION] -- svchost.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Crack & Keygen Files (O82)

C:\Documents and Settings\Wise3\Bureau\Keygen\PP2000_Keygen.exe

C:\Documents and Settings\Wise3\Bureau\Keygen\PP2000_Keygen.exe

D:\DropBox\Dropbox\Utils\Antivirus\Trend\keygen.exe

D:\Leech\Maxime\DiagBox_V5.02\scary\PEUGEOT\PP2000_V22\PP2000_Keygen.exe

D:\Leech\Maxime\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\keygen pack\CORE.rar

D:\Leech\Maxime\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\keygen pack\MalwareBytes.Anti-Malware.1.50.READNFO_KEYGEN-FFF.zip

E:\Leech\Leech\trend\keygen.exe

E:\Leech\Malwarebytes Anti Malware v1.5 Pro Final\Malwarebytes Anti Malware v1.5 Pro Final\Keygen\REDKg.exe

I:\leech\0 A graver\Games\0\Nero 7.5.7.0 MultiLangage + Keygen\nero 7 keygen.exe

I:\leech\0 A graver\Games\0\Nero 7.5.7.0 MultiLangage + Keygen\Nero 7.5.7.0.exe

I:\leech\0 A graver\Games\0\Nero 8321 Fr + serial\keygen Nero-8.3.2.1.exe

I:\leech\0 A graver\Photo\A classer\000\Adobe.MC.CS5.Keygen.rar

I:\leech\0 A graver\Photo\A classer\001\TRend\keygen.exe

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\AlphaStar.v1.0.2.for.After.Effects-SCOTCH\keygen.rar

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\MOVIENATIONS.COM_Zaxwerks_ProAnimator_v4.0.1_._Incl.Keygen.zip

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\REDGIANT Plugins\Red.Giant.Image.Lounge.v1.2.Win.for.After.Effects.7.Cracked.INTERNAL-VR\vr-il127.zip

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\REDGIANT Plugins\Red.Giant.Key.Correct.Pro.v1.0.for.Adobe.After.Effects.Incl.Keygen.INTERNAL-VR\Crack\KeyCorrect-kg.exe

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\REDGIANT Plugins\Red.Giant.Key.Correct.Pro.v1.0.for.Adobe.After.Effects.Incl.Keygen.INTERNAL-VR\Key Correct Installer.exe

I:\leech\0 A graver\Tuto - Soft\Disk 6\MainConcept.Reference.v1.0.0.Win.Cracked.INTERNAL-VR\MainConcept.Reference.v1.0.0.Win.Cracked.INTERNAL-VR\ReferenceMain_v1.0.0.exe

I:\leech\0 A graver\Tuto - Soft\DVD Tools\Clone DVD 2 917\CloneDVD_Kg\CloneDVD2Keygen.exe

I:\leech\0 A graver\Tuto - Soft\PDF\PDF.Password.Remover.v3.0.WinALL.Incl.Keygen-BRD.zip

I:\leech\0 A graver\Tuto - Soft\Plugin\RedGiant\Particular2_Win_Full\keygen.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\BE_NL_and_LU_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\DE_AT_and_CH_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\ES_and_PT_plus_major_roads_of_WE_v.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\FR_plus_major_roads_of_WE_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Hong_Kong_.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\IT_plus_major_roads_of_WE_V.675.1409.bat.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\PL_CZ_HU_SK_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\SE_DK_NO_and_FI_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Singapore_.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\South_Africa_.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\UK_and_IE_plus_major_roads_of_WE_v.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\USA_and_Canada_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Western_and_Central_Europe_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Western_Europe_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\TomTom 7 + Benelux v705.1485\Keygen map\tt7_keygen.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\TomTom 7 + Benelux v705.1485\SD\tt7_keygen.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\TomTom v7.910.9185 TT7 cracked.rar

I:\leech\ViewCommander Test\IVI.WebCamServer.v1.0.Cracked.rar

~ Scan Files in 02mn 54s

 

 

 

---\\ Recherche particuliere à la racine de certains dossiers (O84)

[MD5.5B6C11DE7E839C05248CED8825470FEF] [sPRF][07/06/2010] (.VSO Software - low level access layer for CD/DVD/BD devices.) -- C:\Documents and Settings\Wise3\Application Data\pcouffin.sys [47360]

[MD5.58F2E962670AB2E3AFFD8DB6D4EE2A08] [sPRF][27/03/2010] (...) -- C:\Documents and Settings\Wise3\Bureau\avira_antivir_premium_fr.exe [32968016]

[MD5.35C17AD7A835F96EFD10F08CE155314B] [sPRF][14/07/2011] (.Swearware - ComboFix NSIS Installer.) -- C:\Documents and Settings\Wise3\Bureau\ComboFix.exe [4152661]

[MD5.9A2347903D6EDB84C10F288BC0578C1C] [sPRF][02/06/2011] (.Trend Micro Inc. - HijackThis.) -- C:\Documents and Settings\Wise3\Bureau\HijackThis.exe [388608]

[MD5.E8BC470D1BFF37B61F8A31BA5E4F740B] [sPRF][03/06/2011] (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Documents and Settings\Wise3\Bureau\mbam-clean.exe [66896]

[MD5.78E2FA7394A8C4F0F06358627F345FA1] [sPRF][10/08/2011] (...) -- C:\Documents and Settings\Wise3\Bureau\RogueKiller.exe [555008]

[MD5.D90AD11ED04C92268F04EB2D614A9BC0] [sPRF][17/02/2008] (.Option^Explicit Software Solutions - Pas de description.) -- C:\Documents and Settings\Wise3\Bureau\WinsockxpFix.exe [1445888]

[MD5.44D9439CD043770F32B88066255B59C4] [sPRF][10/08/2011] (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\Wise3\Bureau\ZHPDiag2.exe [2566870]

[MD5.6EEEDAB933E62A1B6DF3560622F4D769] [sPRF][10/06/2009] (.LogMeIn, Inc. - LMIGuardian.) -- C:\WINDOWS\Downloaded Program Files\LMIGuardian.exe [83256]

[MD5.E1F52036D3DB4089CA7C6549778D4C13] [sPRF][10/06/2009] (.LogMeIn, Inc. - LMIGuardianDll.) -- C:\WINDOWS\Downloaded Program Files\LMIGuardianDll.dll [574768]

[MD5.B3353E2B6440B705CF7819039CFFE46E] [sPRF][10/06/2009] (.LogMeIn, Inc. - LMIGuardianEvt.) -- C:\WINDOWS\Downloaded Program Files\LMIGuardianEvt.dll [15664]

[MD5.8F700DA1A1A75501D6EEF76BC866EB29] [sPRF][14/05/2009] (...) -- C:\WINDOWS\Downloaded Program Files\LMIProxyHelper.exe [70984]

[MD5.A594716D8D12BAE296DA6CF35F3C5748] [sPRF][08/06/2010] (.Akamai Technologies, Inc. - Download Manager ActiveX Control.) -- C:\WINDOWS\Downloaded Program Files\Manager.exe [705984]

[MD5.1C635861E857359F1FCF692C9076F61F] [sPRF][01/06/2010] (...) -- C:\WINDOWS\Downloaded Program Files\RACtrl.dll [4064656]

[MD5.BF1B2E7D35B25B2C69FC2BDFBC51E2A5] [sPRF][12/01/2010] (.Siebel Systems, Inc. - Siebel Catalog Navigator.) -- C:\WINDOWS\Downloaded Program Files\SiebelAx_Catalog_Navigator_21211_QF5101.dll [274432]

[MD5.985A691057A0DEAC8D612B38C9B6702E] [sPRF][12/01/2010] (.Pas de propriétaire - siebelaxconfigurator Module.) -- C:\WINDOWS\Downloaded Program Files\SiebelAx_Configurator_21211_QF5101.dll [319488]

[MD5.6C74017716199D1ED61D9E850DF9BA56] [sPRF][27/05/2010] (.Siebel Systems, Inc. - Siebel High Interactivity Framework.) -- C:\WINDOWS\Downloaded Program Files\SiebelAx_HI_Client_21211_QF5105.dll [3457024]

[MD5.3BE322132CD9B33103FA64E18FE846BD] [sPRF][12/01/2010] (.Siebel Systems, Inc. - Siebel Product Selection.) -- C:\WINDOWS\Downloaded Program Files\SiebelAx_Prodselection_21211_QF5101.dll [335872]

[MD5.4722D8513FF971AAAC180D8EF99C3537] [sPRF][26/11/2004] (.Pas de propriétaire - VADecoder Module.) -- C:\WINDOWS\Downloaded Program Files\VAPGDecoder.dll [304640]

~ Scan Files in 00mn 01s

 

 

 

---\\ Scan Additionnel (O88)

Database Version : 8614 - (09/08/2011)

Clés trouvées (Keys found) : 9

Valeurs trouvées (Values found) : 0

Dossiers trouvés (Folders found) : 2

Fichiers trouvés (Files found) : 0

 

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}] =>Toolbar.Agent

[HKLM\Software\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}] =>PUP.BearShare

[HKLM\Software\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}] =>PUP.BearShare

[HKLM\Software\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}] =>PUP.BearShare

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{90d46c30-9f25-4104-aea9-35c3f84477ff}] =>Toolbar.Conduit

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{90d46c30-9f25-4104-aea9-35c3f84477ff}] =>Toolbar.Conduit

[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}] =>Toolbar.Conduit

[HKCU\Software\Conduit] =>Toolbar.Conduit

[HKLM\Software\Conduit] =>Toolbar.Conduit

C:\Documents and Settings\Wise3\Local Settings\Application Data\MediaGet2 =>PUP.MediaGet

~ Scan Additionnel in 00mn 08s

 

 

 

---\\ Recherche détournement de DNS routeur (O89)

Serveur :

Address: 192.168.1.1

Nom : www.l.google.com

Addresses: 209.85.148.105, 209.85.148.103, 209.85.148.104, 209.85.148.147

209.85.148.106, 209.85.148.99

Aliases: www.google.fr, www.google.com

~ Scan DNS in 00mn 02s

 

 

 

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)

SR - | Auto 10/08/2011 194817 | (AntiVirMailService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe

SR - | Auto 10/08/2011 108289 | (AntiVirSchedulerService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe

SR - | Auto 10/08/2011 185089 | (AntiVirService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

SR - | Auto 10/08/2011 434945 | (AntiVirWebService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.exe

SR - | Auto 10/08/2011 602112 | (Ati HotKey Poller) . (.ATI Technologies Inc..) - C:\WINDOWS\system32\Ati2evxx.exe

SS - | Auto 10/08/2011 593920 | (ATI Smart) . (...) - C:\WINDOWS\system32\ati2sgag.exe

SS - | Demand 10/08/2011 225280 | (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\System32\dmadmin.exe

SS - | Demand 10/08/2011 655624 | (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

SS - | Auto 10/08/2011 135664 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe

SS - | Demand 10/08/2011 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe

SS - | Demand 10/08/2011 182768 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

SR - | Auto 10/08/2011 153376 | (JavaQuickStarterService) . (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jqs.exe

SR - | Auto 10/08/2011 374152 | (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe

SR - | Auto 10/08/2011 136584 | (LMIMaint) . (.LogMeIn, Inc..) - C:\Program Files\LogMeIn\x86\RaMaint.exe

SR - | Auto 10/08/2011 390528 | (LogMeIn) . (.LogMeIn, Inc..) - C:\Program Files\LogMeIn\x86\LogMeIn.exe

SS - | Disabled 10/08/2011 366640 | (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

SS - | Demand 10/08/2011 93048 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.CACE Technologies.) - C:\Program Files\WinPcap\rpcapd.exe

SR - | Auto 10/08/2011 2222376 | (TeamViewer6) . (.TeamViewer GmbH.) - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

SR - | Auto 10/08/2011 52888 | (VRAID Log Service) . (...) - C:\Program Files\VIA\RAID\vialogsv.exe

~ Scan Services in 00mn 03s

 

 

 

---\\ Recherche Master Boot Record Infection (MBR)(O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, GMER - Rootkit Detector and Remover

Run by Wise3 at 10/08/2011 01:43:54

 

device: opened successfully

user: MBR read successfully

 

Disk trace:

called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0x8A6ED4D0]<<

1 nt!IofCallDriver[0x804E37D5] -> \Device\Harddisk1\DR1[0x8A979AB8]

3 CLASSPNP[0xF7657FD7] -> nt!IofCallDriver[0x804E37D5] -> [0x8A670420]

\Driver\viamraid[0x8A9323F8] -> IRP_MJ_CREATE -> 0x8A6ED4D0

error: Read Un périphérique attaché au système ne fonctionne pas correctement.

kernel: MBR read successfully

user & kernel MBR OK

~ Scan MBR in 00mn 05s

 

 

 

---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)

Written by ad13, http://ad13.geekstog

Run by Wise3 at 10/08/2011 01:43:56

 

********* Dump file Name *********

C:\PhysicalDisk0_MBR.bin

~ Scan MBR in 00mn 07s

 

 

 

End of the scan (1926 lines in 11mn 09s)(40)

 

RKreport[1].txt

Posté(e)

RE

 

Utilise Cjoint pour me faire parvenir les rapports,c'est mieux et plus facile pour moi :D

 

Relance Roguekiller puis tape 2 suppression

Un rapport (RKreport.txt) sera créer à côté de l'exécutable

colle son contenu dans la réponse en fin de procédure.

 

Je regarde ton rapport ZHPDiag ;)

 

A+

Posté(e) (modifié)

Tu as plusieurs infections du au téléchargement P2P >> rootkit >> Trojan >> redirection DNS >> rogue >> et divers bêbêtes :D

 

La partition C: has 4 GB (18%) free of 24 GB n'a plus de place il faut faire du ménage ou agrandir la partition pour que ton système puisse tourné correctement

 

Avant de continuer plus loin sans concession,si tu veux retrouver un ordinateur en bonne santé

supprimer tous tes cracks et keygens du pc,sinon cela ne sert a rien l'infection va redémarrer

Sur les Lecteurs: ( C ),( D ),( E ),( I )

C:\Documents and Settings\Wise3\Bureau\Keygen\PP2000_Keygen.exe

D:\DropBox\Dropbox\Utils\Antivirus\Trend\keygen.exe

D:\Leech\Maxime\DiagBox_V5.02\scary\PEUGEOT\PP2000_V22\PP2000_Keygen.exe

D:\Leech\Maxime\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\keygen pack\CORE.rar

D:\Leech\Maxime\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\Malwarebytes.Anti-Malware.v1.51.1.1800.FiNAL-P2P\keygen pack\MalwareBytes.Anti-Malware.1.50.READNFO_KEYGEN-FFF.zip

E:\Leech\Leech\trend\keygen.exe

E:\Leech\Malwarebytes Anti Malware v1.5 Pro Final\Malwarebytes Anti Malware v1.5 Pro Final\Keygen\REDKg.exe

I:\leech\0 A graver\Games\0\Nero 7.5.7.0 MultiLangage + Keygen\nero 7 keygen.exe

I:\leech\0 A graver\Games\0\Nero 7.5.7.0 MultiLangage + Keygen\Nero 7.5.7.0.exe

I:\leech\0 A graver\Games\0\Nero 8321 Fr + serial\keygen Nero-8.3.2.1.exe

I:\leech\0 A graver\Photo\A classer\000\Adobe.MC.CS5.Keygen.rar

I:\leech\0 A graver\Photo\A classer\001\TRend\keygen.exe

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\AlphaStar.v1.0.2.for.After.Effects-SCOTCH\keygen.rar

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\MOVIENATIONS.COM_Zaxwerks_ProAnimator_v4.0.1_._Incl.Keygen.zip

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\REDGIANT Plugins\Red.Giant.Image.Lounge.v1.2.Win.for.After.Effects.7.Cracked.INTERNAL-VR\vr-il127.zip

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\REDGIANT Plugins\Red.Giant.Key.Correct.Pro.v1.0.for.Adobe.After.Effects.Incl.Keygen.INTERNAL-VR\Crack\KeyCorrect-kg.exe

I:\leech\0 A graver\Tuto - Soft\Disk 3\PlugIns After Effect\REDGIANT Plugins\Red.Giant.Key.Correct.Pro.v1.0.for.Adobe.After.Effects.Incl.Keygen.INTERNAL-VR\Key Correct Installer.exe

I:\leech\0 A graver\Tuto - Soft\Disk 6\MainConcept.Reference.v1.0.0.Win.Cracked.INTERNAL-VR\MainConcept.Reference.v1.0.0.Win.Cracked.INTERNAL-VR\ReferenceMain_v1.0.0.exe

I:\leech\0 A graver\Tuto - Soft\DVD Tools\Clone DVD 2 917\CloneDVD_Kg\CloneDVD2Keygen.exe

I:\leech\0 A graver\Tuto - Soft\PDF\PDF.Password.Remover.v3.0.WinALL.Incl.Keygen-BRD.zip

I:\leech\0 A graver\Tuto - Soft\Plugin\RedGiant\Particular2_Win_Full\keygen.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\BE_NL_and_LU_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\DE_AT_and_CH_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\ES_and_PT_plus_major_roads_of_WE_v.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\FR_plus_major_roads_of_WE_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Hong_Kong_.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\IT_plus_major_roads_of_WE_V.675.1409.bat.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\PL_CZ_HU_SK_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\SE_DK_NO_and_FI_plus_major_roads_of_WE 1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Singapore_.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\South_Africa_.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\UK_and_IE_plus_major_roads_of_WE_v.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\USA_and_Canada_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Western_and_Central_Europe_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\Aout_et_Fin_2008_INTEGRAL_TomTom\==Beni==_TomTom V6\==Beni==_Activation des Maps\Ancienne methode\==Beni==_Keygenerator simplifiés pour toutes les maps V675.1409\Western_Europe_V.675.1409.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\TomTom 7 + Benelux v705.1485\Keygen map\tt7_keygen.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\TomTom 7 + Benelux v705.1485\SD\tt7_keygen.exe

I:\leech\0 A graver\Tuto - Soft\Tomtom\TomTom v7.910.9185 TT7 cracked.rar

I:\leech\ViewCommander Test\IVI.WebCamServer.v1.0.Cracked.rar

 

Ensuite on va pouvoir traité complétement l'infection ;)

 

A+

Modifié par tomtom95
Posté(e)

Bonjour Wisewise3

 

Tu reprend la procédure post #2 pour faire une analyse avec ZHPDiag

 

Par contre pense a héberger le fichier contenant le rapport ici http://cjoint.com/

Clique sur parcourir >> et chercher le fichier/rapport sur le disque (pour ZHPdiag il est sur ton bureau)

Ensuite appuyez sur [Créer le lien CJoint], Une adresse sera créé >> copie,et colle

dans ta prochaine réponse l'adresse d'hébergement de ce rapport pour que je puisse le télécharger et l'analyser. ;)

 

A+

Posté(e)

Bonsoir Wisewise3 :D

 

Applique les procédures dans l'ordre stp ;)

 

  • Télécharger
DeFogger de Jpshortstuff sur le bureau.
 
Double cliquer sur DeFogger pour démarrer l'outil.
 
La fenêtre de DeFogger apparaît
Cliquer sur le bouton Disable pour désactiver les pilotes d'émulateurs CD.
Cliquer sur Yes pour continuer.
Un message 'Finished!' apparaîtra
Cliquer sur OK
DeFogger peut te demander de redémarrer la machine
Clique sur OK
 
Ne réactive PAS ces pilotes avant la fin de la désinfection

**************************************

  • Télécharge
Temp File Cleaner (TFC) de Old Timer :
 
•Enregistre-le sur le Bureau
•Enregistre (sauvegarde) tous tes travaux en cours et ferme les applications - quitte-les définitivement (l'outil les fermera de toute façon automatiquement)
•Double-clique sur TFC.exe (sous Vista - Windows 7 clique droit
"exécuter en tant qu'administrateur)
•Clique sur Start
•Laisse l'outil travailler (cela prend de quelques secondes à quelques minutes)
Si l'outil demande à redémarrer :
Clique sur Yes
•Si l'outil ne propose pas le redémarrage
redémarrer manuellement.
Dans la barre de TFC il va y avoir un chiffre noté en rouge
indique le moi.

****************************************************

 

  • Télécharger
TDSSkiller de Kaspersky sur le Bureau
 
Faire un double clique sur TDSSKiller.exe pour le lancer.
Cliquer sur Start scan pour lancer l'analyse
 
 
0001img-2421.png
 
 
Lorsque l'outil a terminé son travail d'inspection
si des nuisibles ("Malicious objects") ont été trouvés
vérifier que l'option (Cure) est sélectionnée
 
0002img-40.png
 
Si des objects suspects ("Suspicious objects") ont été détectés
sur l'écran de demande de confirmation
modifier l'action à entreprendre et indiquer Quarantine (au lieu de Skip)
 
Puis cliquer sur le bouton (Continue) puis sur [Reboot Now]
 
 
Attendre l'affichage du fichier rapport.
 
Si l'outil a besoin d'un redémarrage pour finaliser le nettoyage
cliquer sur le bouton (Reboot computer).
Post: le rapport de TDSSKiller (contenu du fichier SystemDrive\TDSSKiller.Version_Date_Heure_log.txt)
 
 
Si TDSS.tdl2 est détecté l'option delete sera cochée par défaut.
Si TDSS.tdl3 est détecté assure toi que Cure est bien cochée.
Si TDSS.tdl4(\HardDisk0\MBR) est détecté assure toi que Cure est bien cochée.
 
Si ( "Suspicious file" ) est indiqué laisse l'option cochée sur Skip
 
Clique sur Continue puis sur Reboot now pour redémarrer le PC.
 
Copie-colle le rapport généré dans ta prochaine réponse
héberger le fichier contenant le rapport ici http://cjoint.com/
(Il est aussi sauvegardé à la racine de ta partition système sous le nom C:\TDSSKiller_Quarantine\JJ.MM.AA_HH.MM.SS. (JJ.MM.AA date du passage de l'outil
HH.MM.SS heure de passage).

 

A++

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...