Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

[Résolu] rundll : module introuvable


chrishd33

Messages recommandés

bonjour,

a chaque demarrage j'ai le message suivant

 

rundll

probleme lors du demarrage de

c:\users\chris33\appdata\local\temp\SRass-dll le module specifie est introuvable

 

ci dessous le diagnostic zhpdiag

 

Rapport de ZHPDiag v1.27.1421 par Nicolas Coolman, Update du 16/12/2010

Run by chris33 at 05/11/2011 17:03:41

Web site : ZHPDiag Outil de diagnostic

Contact : [email protected]

 

---\\ Web Browser

MSIE: Internet Explorer v9.0.8112.16421 (Defaut)

 

---\\ System Information

Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

Processor: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD

Operating System: 64 Bits

Boot mode: Normal (Normal boot)

Total RAM: 3836 MB (55% free)

System drive C: has 178 GB (39%) free of 454 GB

 

---\\ Logged in mode

Computer Name: CHRIS-PORTABLE

User Name: chris33

All Users Names: HomeGroupUser$, chris33, Administrateur,

Unselected Option: O65

Logged in as Administrator

 

---\\ DOS/Devices

C:\ Hard drive, Flash drive, Thumb drive (Free 178 Go of 454 Go)

D:\ CD-ROM drive (Not Inserted)

 

 

---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK

 

 

---\\ Recherche particulière de fichiers génériques

[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Explorateur Windows.) (.20/11/2010 14:24:45.) -- C:\Windows\Explorer.exe [2872320]

[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]

 

 

---\\ Processus lancés

[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480]

[MD5.FCBA15DD6E51399A66BC7816E4589DBF] - (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe [726336]

[MD5.4ADA227EC4E1BBAD144EAABF02221853] - (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe [189056]

[MD5.9ECBFD27FCC8E1D6CDD9D407A12E23F4] - (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe [262912]

[MD5.07D0AF06A5D2445C9DC5824C567E36B8] - (.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe [24635]

[MD5.5D70631ED11867458E3D69A24C22DC64] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1157128]

[MD5.0E7C460A63E43D9A76E91430B50F254C] - (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe [1507448]

[MD5.28FD28A29C637C9AFEFE0A26E27C6DFE] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe [91432]

[MD5.E2B4488830B9F047930BB5FE0E4FD71B] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3722416]

[MD5.47C1DE0A890613FFCFF1D67648EEDF90] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920]

[MD5.13E7CFE8E269ED15E7FC9C3EBBCB7E2B] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696]

[MD5.4566BBE928EF23E1C5A55D02D64C2872] - (.Lavasoft Limited - Ad-Aware Tray Application.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe [1191216]

[MD5.AD9330B5698CCE74649AED81ECD61D9D] - (.Mozilla Messaging - Thunderbird.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe [399512]

[MD5.48B046322009D311A4BA1294F1321E64] - (.Sun Microsystems, Inc. - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [507624]

[MD5.806A8E35707BEA615B209001E544F0F0] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [620544]

 

 

---\\ Internet Explorer, Démarrage,Recherche,URSearchHook (R0,R1,R3)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Google

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN Hotmail, Messenger, Actualité, Sport, People, Femmes - MSN France

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Hotmail, Messenger, Actualité, Sport, People, Femmes - MSN France

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Sign In

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Bing

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Sign In

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll

 

 

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=userinit.exe

F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe

F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe

 

 

---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Lexmark Toolbar\toolband.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

 

 

---\\ Internet Explorer Toolbars (O3)

O3 - Toolbar: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Lexmark Toolbar\toolband.dll

 

 

---\\ Applications démarrées par registre & par dossier (O4)

O4 - HKLM\..\Run: [backupManagerTray] . (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe

O4 - HKLM\..\Run: [startCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe

O4 - HKLM\..\Run: [VideoWebCamera] . (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe

O4 - HKLM\..\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe

O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe

O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe

O4 - HKLM\..\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

O4 - HKLM\..\Run: [TQ566808] D:\Setup.exe (.not file.)

O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe

O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O4 - HKCU\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [Neuf Media Center] . (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe

O4 - HKCU\..\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKCU\..\Run: [AnyDVD] . (.SlySoft, Inc. - AnyDVD Application.) -- C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

O4 - HKCU\..\RunOnce: [!SearchquDSFF] C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dlltemid=410&sr=0&q=, (.not file.)

O4 - HKCU\..\RunOnce: [!SearchquFFHP] C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll (.not file.)

O4 - HKLM\..\Wow6432Node\Run: [backupManagerTray] . (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe

O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe

O4 - HKLM\..\Wow6432Node\Run: [startCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe

O4 - HKLM\..\Wow6432Node\Run: [VideoWebCamera] . (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe

O4 - HKLM\..\Wow6432Node\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe

O4 - HKLM\..\Wow6432Node\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe

O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

O4 - HKLM\..\Wow6432Node\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe

O4 - HKLM\..\Wow6432Node\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKLM\..\Wow6432Node\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

O4 - HKLM\..\Wow6432Node\Run: [TQ566808] D:\Setup.exe (.not file.)

O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [Neuf Media Center] . (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [AnyDVD] . (.SlySoft, Inc. - AnyDVD Application.) -- C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.)

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\RunOnce: [!SearchquDSFF] C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dlltemid=410&sr=0&q=, (.not file.)

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\RunOnce: [!SearchquFFHP] C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll (.not file.)

 

 

---\\ Autres liens utilisateurs (O4)

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\Ad-Remover.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Ad-Remover\main.exe

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\Audacity.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Audacity\audacity.exe

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\DVD Shrink 3.2.lnk . (.DVD Shrink.) -- C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\DVDFab HD Decrypter 4.lnk . (.Fengtao Software Inc..) -- C:\Program Files (x86)\DVDFab HD Decrypter 4\DVDFabHDDecrypter.exe

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\DVDTHEQUE -.lnk . (.Pas de propriétaire.) -- C:\Users\chris33\Documents\Mes Excel\DVDTHEQUE.xlsx

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\Easy Graphic Converter 1.2.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Easy Graphic Converter\ImageConverter.exe

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\FIFA12.lnk . (.Pas de propriétaire.) -- C:\Users\chris33\Documents\Mes Excel\FIFA12.xls

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\Formulaone2010.lnk . (.Pas de propriétaire.) -- C:\Users\chris33\Documents\Mes Excel\Formulaone2010.xlsx

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe

O4 - Global Startup: C:\Documents And Settings\chris33\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\chris33\Desktop\Ad-Remover.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Ad-Remover\main.exe

O4 - Global Startup: C:\Users\chris33\Desktop\Audacity.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Audacity\audacity.exe

O4 - Global Startup: C:\Users\chris33\Desktop\DVD Shrink 3.2.lnk . (.DVD Shrink.) -- C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe

O4 - Global Startup: C:\Users\chris33\Desktop\DVDFab HD Decrypter 4.lnk . (.Fengtao Software Inc..) -- C:\Program Files (x86)\DVDFab HD Decrypter 4\DVDFabHDDecrypter.exe

O4 - Global Startup: C:\Users\chris33\Desktop\DVDTHEQUE -.lnk . (.Pas de propriétaire.) -- C:\Users\chris33\Documents\Mes Excel\DVDTHEQUE.xlsx

O4 - Global Startup: C:\Users\chris33\Desktop\Easy Graphic Converter 1.2.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Easy Graphic Converter\ImageConverter.exe

O4 - Global Startup: C:\Users\chris33\Desktop\FIFA12.lnk . (.Pas de propriétaire.) -- C:\Users\chris33\Documents\Mes Excel\FIFA12.xls

O4 - Global Startup: C:\Users\chris33\Desktop\Formulaone2010.lnk . (.Pas de propriétaire.) -- C:\Users\chris33\Documents\Mes Excel\Formulaone2010.xlsx

O4 - Global Startup: C:\Users\chris33\Desktop\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe

O4 - Global Startup: C:\Users\chris33\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DVDFab HD Decrypter 4.lnk . (.Fengtao Software Inc..) -- C:\Program Files (x86)\DVDFab HD Decrypter 4\DVDFabHDDecrypter.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Easy Graphic Converter.lnk . (.Pas de propriétaire.) -- C:\Program Files (x86)\Easy Graphic Converter\ImageConverter.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk . (.Mozilla Messaging.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe

 

 

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: E&xport to Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~2\MICROS~1\Office12\EXCEL.exe

O8 - Extra context menu item: Envoyer à &Bluetooth - (.not file.) - C:\Program Files (x86)\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm

O8 - Extra context menu item: Google Sidewiki... - (.not file.) - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll

 

 

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)

O9 - Extra button: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} . (.not file.) - (.not file.)

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~2\MICROS~1\Office12\REFBARH.ICO

O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} . (.not file.) - (.not file.)

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll

O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll

O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll

 

 

---\\ Objets ActiveX (Downloaded Program Files)(O16)

O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx

 

 

---\\ Modification Domaine/Adresses DNS (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{5B925DDF-5FBB-4DD4-87FA-1942590BE2E8}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS1\Services\Tcpip\..\{5B925DDF-5FBB-4DD4-87FA-1942590BE2E8}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS2\Services\Tcpip\..\{5B925DDF-5FBB-4DD4-87FA-1942590BE2E8}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

 

 

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

 

 

---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: (AdobeActiveFileMonitor7.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

O23 - Service: (AMD External Events Utility) - Clé orpheline

O23 - Service: (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

O23 - Service: (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

O23 - Service: (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe

O23 - Service: (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe

O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: (Lavasoft Ad-Aware Service) . (.Lavasoft Limited - Ad-Aware Service Application.) - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: (NTI IScheduleSvc) . (.NewTech Infosystems, Inc. - Backup Manager Module.) - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe

O23 - Service: (OberonGameConsoleService) . (.Pas de propriétaire - OberonGameConsoleService.) - C:\Program Files (x86)\Packard Bell GameZone\GameConsole\OberonGameConsoleService.exe

O23 - Service: (Updater Service) . (.Acer - Acer Update Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe

 

 

---\\ Enumération Active Desktop & MHTML Editor (O24)

O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.)

 

 

---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Ad-Aware Update (Weekly).job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

[MD5.5608E451B9D69B548103BA9CF39A3527] [APT] [Ad-Aware Update (Weekly)] (.Lavasoft Limited.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.00000000000000000000000000000000] [APT] [{B17649F9-8207-4CF9-99C3-02FC464234B2}] (.Pas de propriétaire.) -- C:\Windows\SysWOW64\btcpl.cpl (.not file.)

[MD5.00000000000000000000000000000000] [APT] [{B55D92F6-41B4-4D45-A886-3CAF13709FA7}] (.Pas de propriétaire.) -- C:\Windows\SysWOW64\btcpl.cpl (.not file.)

[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe

 

 

---\\ Composants installés (ActiveSetup Installed Components) (O40)

O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\regutils.dll

O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.2 r152.) -- C:\Windows\SysWOW64\Macromed\Flash\Flash10m.ocx

 

 

---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys

O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys

O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys

O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys

O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys

O41 - Driver: (ElbyCDIO) . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) - C:\Windows\System32\Drivers\ElbyCDIO.sys

O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys

O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys

O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys

O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys

O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys

O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys

O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys

O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys

O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys

O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys

O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys

O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys

O41 - Driver: (vmm) . (.Microsoft Corporation - Virtual Machine Monitor.) - C:\Windows\system32\Pilotes\vmm.sys

O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys

O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys

O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys

 

 

---\\ Logiciels installés (O42)

O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_ENTERPRISE_{14809F99-C601-4D4A-9391-F1E8FAA964C5}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}_ENTERPRISE_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_ENTERPRISE_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-00BA-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: AMD USB Filter Driver - (.Advanced Micro Devices, Inc..) [HKLM] -- {82809116-D1EE-443C-AE31-F19E709DDF7A}

O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}

O42 - Logiciel: Ad-Aware - (.Lavasoft Limited.) [HKLM] -- {D56B3391-1DAB-4AB3-AFF5-D55457911BBB}

O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR

O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {AFF7E080-1974-45BF-9310-10DE1A1F5ED0}

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX

O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin

O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Photoshop Elements 7

O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM] -- {5511C07D-A83C-45AD-92B6-42DF99729A3C}

O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM] -- {CB6075D9-F912-40AE-BEA6-E590DA24F16B}

O42 - Logiciel: Adobe Reader 9.4.5 MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001}

O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d}

O42 - Logiciel: AnyDVD - (.SlySoft.) [HKLM] -- AnyDVD

O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {6A3F9D74-BB80-4451-8CA1-4B3A857F1359}

O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}

O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}

O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM] -- Audacity_is1

O42 - Logiciel: Backup Manager Basic - (.NewTech Infosystems.) [HKLM] -- {72B776E5-4530-4C4B-9453-751DF87D9D93}

O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {8B999A44-8314-493B-877E-A1DA5B54D9B8}

O42 - Logiciel: CompuApps SwissKnife - (.Pas de propriétaire.) [HKLM] -- CompuApps SwissKnife

O42 - Logiciel: Convertyme Media Converter 1.0 - (.Convertym.com.) [HKLM] -- Convertyme Media Converter

O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}

O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}

O42 - Logiciel: DVD Shrink 3.2 - (.DVD Shrink.) [HKLM] -- DVD Shrink_is1

O42 - Logiciel: DVDFab HD Decrypter 4.0.5.0 - (.Fengtao Software Inc..) [HKLM] -- DVDFab HD Decrypter 4_is1

O42 - Logiciel: Droppix Label Maker 2.8.4 - (.Droppix.) [HKLM] -- Droppix Label Maker_is1

O42 - Logiciel: Easy Graphic Converter 1.2 - (.Etru Software Development.) [HKLM] -- Easy Graphic Converter 1.2_is1

O42 - Logiciel: FastStone Image Viewer 4.2 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer

O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {1EE04769-91C4-4A06-92B7-FCAFE6BABDD9}

O42 - Logiciel: Genie Backup Assistant - (.LaCie.) [HKLM] -- {C9A162C1-031F-4EBF-A3E6-C45F7FCCBB9E}_is1

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM] -- Identity Card

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}

O42 - Logiciel: Java 6 Update 26 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}

O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}

O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM] -- LManager

O42 - Logiciel: Lexmark Barre d'outils - (.Pas de propriétaire.) [HKLM] -- {1017A80C-6F09-4548-A84D-EDD6AC9525F0}

O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}

O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}

O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}

O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.2.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: Media Player Codec Pack 3.9.5 - (.Media Player Codec Pack.) [HKLM] -- Media Player - Codec Pack

O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}

O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Enterprise 2007 - (.Microsoft Corporation.) [HKLM] -- ENTERPRISE

O42 - Logiciel: Microsoft Office Enterprise 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM] -- {90140000-2005-0000-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Groove MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00BA-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}

O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 - (.Microsoft Corporation.) [HKLM] -- {6AFCA4E1-9B78-3640-8F72-A7BF33448200}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}

O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673}

O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE}

O42 - Logiciel: Mozilla Thunderbird (7.0.1) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird (7.0.1)

O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}

O42 - Logiciel: Nero 9 Essentials - (.Nero AG.) [HKLM] -- {5d3f2e4c-cf1a-4558-b6ea-039aafb15a10}

O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}

O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {f4041dce-3fe1-4e18-8a9e-9de65231ee36}

O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM] -- {869200db-287a-4dc0-b02b-2b6787fbcd4c}

O42 - Logiciel: Nero DiscSpeed Help - (.Nero AG.) [HKLM] -- {cc019e3f-59d2-4486-8d4b-878105b62a71}

O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM] -- {33cf58f5-48d8-4575-83d6-96f574e4d83a}

O42 - Logiciel: Nero DriveSpeed Help - (.Nero AG.) [HKLM] -- {e5c7d048-f9b4-4219-b323-8bdb01a2563d}

O42 - Logiciel: Nero Express Help - (.Nero AG.) [HKLM] -- {83202942-84b3-4c50-8622-b8c0aa2d2885}

O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM] -- {fbcdfd61-7dcf-4e71-9226-873ba0053139}

O42 - Logiciel: Nero InfoTool Help - (.Nero AG.) [HKLM] -- {20400dbd-e6db-45b8-9b6b-1dd7033818ec}

O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM] -- {e8a80433-302b-4ff1-815d-fcc8eac482ff}

O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM] -- {dba84796-8503-4ff0-af57-1747dd9a166d}

O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM] -- {7748ac8c-18e3-43bb-959b-088faea16fb2}

O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM] -- {2348b586-c9ae-46ce-936c-a68e9426e214}

O42 - Logiciel: Nero StartSmart OEM - (.Nero AG.) [HKLM] -- {4D43D635-6FDA-4fa5-AA9B-23CF73D058EA}

O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM] -- {595a3116-40bb-4e0f-a2e8-d7951da56270}

O42 - Logiciel: OpenAL - (.Pas de propriétaire.) [HKLM] -- OpenAL

O42 - Logiciel: Oubliette 1.9.5 - (.Pas de propriétaire.) [HKLM] -- Oubliette_is1

O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}

O42 - Logiciel: Packard Bell GameZone Console - (.Oberon Media, Inc..) [HKLM] -- {117E3AE2-10D1-41C1-9FA6-F4C382F767A8}_is1

O42 - Logiciel: Packard Bell InfoCentre - (.Packard Bell.) [HKLM] -- Packard Bell InfoCentre

O42 - Logiciel: Packard Bell MyBackup - (.NewTech Infosystems.) [HKLM] -- InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}

O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964}

O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}

O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM] -- Packard Bell Registration

O42 - Logiciel: Packard Bell ScreenSaver - (.Packard Bell Incorporated.) [HKLM] -- Packard Bell Screensaver

O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM] -- {EE171732-BEB4-4576-887D-CB62727F01CA}

O42 - Logiciel: PhotoFiltre - (.Pas de propriétaire.) [HKCU] -- PhotoFiltre

O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {C9E14402-3631-4182-B377-6B0DFB1C0339}

O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}

O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}

O42 - Logiciel: SAMSUNG PC Share Manager - (.SAMSUNG.) [HKLM] -- InstallShield_{2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}

O42 - Logiciel: SAMSUNG PC Share Manager - (.SAMSUNG.) [HKLM] -- {2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}

O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM] -- SFR_Media Center

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5C497F0B-2061-4CC9-A61C-6B45B867354D}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CD769337-C8AC-46DB-A7DC-643E50089263}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{536FB502-775F-4494-BACE-C02CC90B7A5B}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2553074) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5729F1AE-5895-468F-9165-BAD161C9E982}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2553089) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{01D4CA59-7070-4420-9BCC-0EFA7C5D76BE}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2553090) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{643C12A2-AF9A-4712-B8BE-3B7650AFE00A}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2584063) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BF3F1CBD-B05C-4644-AE43-6EE0FCC227A4}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7F207DCA-3399-40CB-A968-6E5991B1421A}

O42 - Logiciel: Security Update for Microsoft Office Access 2007 (KB979440) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}

O42 - Logiciel: Security Update for Microsoft Office Access 2007 (KB979440) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5A4E43D5-858F-49BD-BA72-8F30E1793060}

O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2553073) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{65EA4836-B5A3-4C1D-8883-0C35E471003A}

O42 - Logiciel: Security Update for Microsoft Office Groove 2007 (KB2552997) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A1CBF7D-4704-40BC-B31C-AA761884A3E4}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2510061) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5D930261-AA5B-48D1-931F-425C9D767490}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2535818) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8588DD11-6BD7-4400-B55C-DD5AB74B43E1}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{D75E6D0C-BADF-4F41-98B2-0C0F02C15062}

O42 - Logiciel: Security Update for Microsoft Office Publisher 2007 (KB2284697) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A4CDE54-2403-483D-8D9A-15E3264410DF}

O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}

O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}

O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

O42 - Logiciel: TV sur PC - (.SFR.) [HKLM] -- Neuf_TV_PC

O42 - Logiciel: Update for 2007 Microsoft Office System (KB2284654) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A}

O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}

O42 - Logiciel: Update for Microsoft Office 2007 System (KB2539530) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}

O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{329050A9-EF80-40F9-B633-74508F54C1FF}

O42 - Logiciel: Update for Microsoft Office Outlook 2007 (KB2583910) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BDC21583-5601-4B2B-88F3-7919F6DE8FB1}

O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (KB2596560) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{2964DDE1-4925-4DF1-AF2C-0A36B3442228}

O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM] -- VLC media player

O42 - Logiciel: Video Web Camera - (.SuYin.) [HKLM] -- {6D9021DC-CF1B-4148-8C80-6D8E8A8A33EB}

O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM] -- Packard Bell Welcome Center

O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst

O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}

O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}

O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709-A7D3-468D-9167-A1780C1E766C}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {5DD76286-9BE7-4894-A990-E905E91AC818}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {230B83A5-7D88-4B95-B71E-F44C0C78B002}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {4634B21A-CC07-4396-890C-2B8168661FEA}

O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast

O42 - Logiciel: calibre - (.Kovid Goyal.) [HKLM] -- {5A39E27B-BFFB-48B5-886F-D3038AD176BF}

O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\AC3Filter]

[HKCU\Software\ALWIL Software]

[HKCU\Software\ATI]

[HKCU\Software\AVAST Software]

[HKCU\Software\Acer]

[HKCU\Software\Adobe]

[HKCU\Software\AppDataLow\Software\Google]

[HKCU\Software\AppDataLow\Software\Microsoft]

[HKCU\Software\AppDataLow\Software]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\Atheros]

[HKCU\Software\Audacity]

[HKCU\Software\Cazitel]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\Compal]

[HKCU\Software\CyberLink]

[HKCU\Software\DVD Decrypter]

[HKCU\Software\DVD Shrink]

[HKCU\Software\DVDFab]

[HKCU\Software\DivXNetworks]

[HKCU\Software\Freeware]

[HKCU\Software\GNU]

[HKCU\Software\GSpot Appliance Corp]

[HKCU\Software\Gabest]

[HKCU\Software\Genie-Soft]

[HKCU\Software\Google]

[HKCU\Software\HP]

[HKCU\Software\Haali]

[HKCU\Software\Hewlett-Packard]

[HKCU\Software\IM Providers]

[HKCU\Software\InterVideo]

[HKCU\Software\JavaSoft]

[HKCU\Software\Lake]

[HKCU\Software\Lavasoft]

[HKCU\Software\Lexmark]

[HKCU\Software\Local AppWizard-Generated Applications]

[HKCU\Software\Macromedia]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\Media Player - Codec Pack]

[HKCU\Software\Nero]

[HKCU\Software\Netscape]

[HKCU\Software\Neuf]

[HKCU\Software\ODBC]

[HKCU\Software\OEM]

[HKCU\Software\Orange]

[HKCU\Software\Piriform]

[HKCU\Software\Policies]

[HKCU\Software\Realtek]

[HKCU\Software\SWISSKNIFE]

[HKCU\Software\Safer Networking Limited]

[HKCU\Software\SearchCore for Browsers]

[HKCU\Software\SlySoft]

[HKCU\Software\Suyin]

[HKCU\Software\Synaptics]

[HKCU\Software\Trolltech]

[HKCU\Software\WinRAR SFX]

[HKCU\Software\WinRAR]

[HKCU\Software\Wow6432Node]

[HKCU\Software\YahooPartnerToolbar]

[HKCU\Software\http://www.ecran-de-veille.com]

[HKLM\Software\AGEIA Technologies]

[HKLM\Software\ALWIL Software]

[HKLM\Software\ATI Technologies]

[HKLM\Software\ATI]

[HKLM\Software\AVAST Software]

[HKLM\Software\Adobe]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Apple Inc.]

[HKLM\Software\Audible]

[HKLM\Software\Classes]

[HKLM\Software\Clients]

[HKLM\Software\Compal]

[HKLM\Software\CompuApps]

[HKLM\Software\CyberLink]

[HKLM\Software\DVDFab]

[HKLM\Software\Droppix]

[HKLM\Software\GNU]

[HKLM\Software\Google]

[HKLM\Software\HaaliMkx]

[HKLM\Software\Intel]

[HKLM\Software\JavaSoft]

[HKLM\Software\JreMetrics]

[HKLM\Software\Lake]

[HKLM\Software\Lavasoft]

[HKLM\Software\Lexmark]

[HKLM\Software\Macromedia]

[HKLM\Software\Macrovision]

[HKLM\Software\Malwarebytes' Anti-Malware]

[HKLM\Software\Nero]

[HKLM\Software\Neuf]

[HKLM\Software\NewTech Infosystems]

[HKLM\Software\ODBC]

[HKLM\Software\OEM]

[HKLM\Software\On2 Technologies]

[HKLM\Software\Packard Bell]

[HKLM\Software\Policies]

[HKLM\Software\PowerDVD8_Upgrade]

[HKLM\Software\Realtek Semiconductor Corp.]

[HKLM\Software\Realtek]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\Safer Networking Limited]

[HKLM\Software\SecureDigitalServices]

[HKLM\Software\SlySoft]

[HKLM\Software\Sonic]

[HKLM\Software\SuYin]

[HKLM\Software\Symantec]

[HKLM\Software\TQ566808]

[HKLM\Software\Uniblue]

[HKLM\Software\VideoLAN]

[HKLM\Software\Volatile]

[HKLM\Software\W3i]

[HKLM\Software\WinPcap]

[HKLM\Software\Windows]

[HKLM\Software\Wow6432Node]

 

 

---\\ Contenu des dossiers ProgramFiles/ProgramData (O43)

O43 - CFD: 28/05/2010 - 16:38:28 ----D- C:\Program Files\Alwil Software

O43 - CFD: 25/01/2010 - 02:55:58 ----D- C:\Program Files\ATI

O43 - CFD: 21/12/2010 - 09:02:22 ----D- C:\Program Files\CCleaner

O43 - CFD: 11/06/2010 - 17:16:26 ----D- C:\Program Files\Common Files

O43 - CFD: 25/01/2010 - 02:57:48 ----D- C:\Program Files\DIFX

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files\DVD Maker

O43 - CFD: 22/03/2010 - 21:41:50 -SH-D- C:\Program Files\Fichiers communs

O43 - CFD: 21/12/2010 - 11:43:26 ----D- C:\Program Files\Google

O43 - CFD: 13/10/2011 - 07:54:20 ----D- C:\Program Files\Internet Explorer

O43 - CFD: 12/06/2010 - 13:40:26 ----D- C:\Program Files\Lexmark 3400 Series

O43 - CFD: 12/06/2010 - 13:43:18 ----D- C:\Program Files\Lexmark Toolbar

O43 - CFD: 12/06/2010 - 13:42:06 ----D- C:\Program Files\lx_cats

O43 - CFD: 14/07/2009 - 08:45:56 ----D- C:\Program Files\Microsoft Games

O43 - CFD: 04/09/2010 - 08:03:52 ----D- C:\Program Files\Microsoft Office

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files\MSBuild

O43 - CFD: 23/10/2009 - 22:53:40 ----D- C:\Program Files\Packard Bell

O43 - CFD: 22/03/2010 - 21:42:20 ----D- C:\Program Files\PB Accessory Store

O43 - CFD: 23/10/2009 - 22:18:02 ----D- C:\Program Files\Realtek

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files\Reference Assemblies

O43 - CFD: 25/01/2010 - 03:05:10 ----D- C:\Program Files\Synaptics

O43 - CFD: 14/07/2009 - 06:09:28 --H-D- C:\Program Files\Uninstall Information

O43 - CFD: 15/07/2011 - 19:10:50 ----D- C:\Program Files\Windows Defender

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files\Windows Journal

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files\Windows Mail

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files\Windows Media Player

O43 - CFD: 22/03/2010 - 21:41:50 ----D- C:\Program Files\Windows NT

O43 - CFD: 15/07/2011 - 19:10:54 ----D- C:\Program Files\Windows Photo Viewer

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files\Windows Portable Devices

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files\Windows Sidebar

O43 - CFD: 27/03/2010 - 15:00:00 ----D- C:\Program Files\WinRAR

O43 - CFD: 04/09/2010 - 08:05:24 ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 25/01/2010 - 11:49:10 ----D- C:\Program Files\Common Files\System

O43 - CFD: 11/06/2010 - 16:57:06 ----D- C:\ProgramData\Adobe

O43 - CFD: 28/05/2010 - 16:38:28 ----D- C:\ProgramData\Alwil Software

O43 - CFD: 10/09/2011 - 09:18:52 ----D- C:\ProgramData\Apple

O43 - CFD: 10/09/2011 - 09:21:04 ----D- C:\ProgramData\Apple Computer

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Application Data

O43 - CFD: 10/08/2011 - 18:22:46 ----D- C:\ProgramData\Atheros

O43 - CFD: 25/01/2010 - 03:04:12 ----D- C:\ProgramData\ATI

O43 - CFD: 23/10/2009 - 22:35:50 ----D- C:\ProgramData\BackupManager

O43 - CFD: 01/11/2011 - 05:13:08 ----D- C:\ProgramData\boost_interprocess

O43 - CFD: 22/03/2010 - 21:41:50 -SH-D- C:\ProgramData\Bureau

O43 - CFD: 10/06/2010 - 19:54:46 ----D- C:\ProgramData\CyberLink

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Desktop

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Documents

O43 - CFD: 04/08/2011 - 06:50:56 ----D- C:\ProgramData\Driver Whiz

O43 - CFD: 13/11/2010 - 09:23:44 ----D- C:\ProgramData\Droppix

O43 - CFD: 05/11/2010 - 20:15:06 ----D- C:\ProgramData\DVD Shrink

O43 - CFD: 22/03/2010 - 21:41:50 -SH-D- C:\ProgramData\Favoris

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Favorites

O43 - CFD: 04/04/2010 - 16:44:16 ----D- C:\ProgramData\FLEXnet

O43 - CFD: 21/12/2010 - 09:05:20 ----D- C:\ProgramData\Google

O43 - CFD: 04/11/2011 - 17:12:34 ----D- C:\ProgramData\Lavasoft

O43 - CFD: 05/11/2011 - 09:13:50 ----D- C:\ProgramData\Malwarebytes

O43 - CFD: 22/03/2010 - 21:41:50 -SH-D- C:\ProgramData\Menu Démarrer

O43 - CFD: 04/11/2011 - 18:53:34 -S--D- C:\ProgramData\Microsoft

O43 - CFD: 12/10/2011 - 21:53:08 ----D- C:\ProgramData\Microsoft Help

O43 - CFD: 22/03/2010 - 21:41:50 -SH-D- C:\ProgramData\Modèles

O43 - CFD: 23/10/2009 - 22:42:58 ----D- C:\ProgramData\Nero

O43 - CFD: 11/06/2010 - 17:18:30 ----D- C:\ProgramData\Norton

O43 - CFD: 23/10/2009 - 22:48:52 ----D- C:\ProgramData\NortonInstaller

O43 - CFD: 22/03/2010 - 21:42:30 ----D- C:\ProgramData\OEM

O43 - CFD: 23/10/2009 - 22:37:06 ----D- C:\ProgramData\Packard Bell

O43 - CFD: 14/04/2010 - 17:53:54 ----D- C:\ProgramData\Partner

O43 - CFD: 12/06/2010 - 09:33:32 ----D- C:\ProgramData\PC Drivers HeadQuarters

O43 - CFD: 17/05/2010 - 09:12:10 ----D- C:\ProgramData\PlayFirst

O43 - CFD: 03/05/2010 - 18:53:48 ----D- C:\ProgramData\SlySoft

O43 - CFD: 05/11/2011 - 12:48:00 ----D- C:\ProgramData\Spybot - Search & Destroy

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Start Menu

O43 - CFD: 17/07/2010 - 07:24:22 ----D- C:\ProgramData\Sun

O43 - CFD: 01/11/2011 - 20:00:58 ----D- C:\ProgramData\Symantec

O43 - CFD: 15/10/2011 - 12:14:06 ---AD- C:\ProgramData\Temp

O43 - CFD: 14/07/2009 - 06:08:58 -SH-D- C:\ProgramData\Templates

O43 - CFD: 04/09/2010 - 08:05:24 ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 25/01/2010 - 11:49:10 ----D- C:\Program Files\Common Files\System

O43 - CFD: 04/11/2011 - 19:51:56 ----D- C:\Program Files (x86)\Ad-Remover

O43 - CFD: 19/04/2011 - 08:16:06 ----D- C:\Program Files (x86)\Adobe

O43 - CFD: 14/08/2011 - 14:35:20 ----D- C:\Program Files (x86)\AGEIA Technologies

O43 - CFD: 25/01/2010 - 02:57:46 ----D- C:\Program Files (x86)\AMD

O43 - CFD: 10/09/2011 - 09:18:52 ----D- C:\Program Files (x86)\Apple Software Update

O43 - CFD: 25/01/2010 - 02:57:24 ----D- C:\Program Files (x86)\ATI Technologies

O43 - CFD: 24/03/2010 - 22:01:24 ----D- C:\Program Files (x86)\Audacity

O43 - CFD: 10/08/2011 - 17:18:06 ----D- C:\Program Files (x86)\Bluetooth Suite

O43 - CFD: 19/12/2010 - 10:42:14 ----D- C:\Program Files (x86)\Calibre2

O43 - CFD: 10/09/2011 - 09:19:08 ----D- C:\Program Files (x86)\Common Files

O43 - CFD: 08/05/2010 - 11:12:38 ----D- C:\Program Files (x86)\Convertym Media Converter

O43 - CFD: 25/01/2010 - 03:21:16 ----D- C:\Program Files (x86)\CyberLink

O43 - CFD: 13/11/2010 - 09:23:26 ----D- C:\Program Files (x86)\Droppix

O43 - CFD: 03/05/2010 - 18:51:14 ----D- C:\Program Files (x86)\DVD Shrink

O43 - CFD: 03/05/2010 - 18:51:54 ----D- C:\Program Files (x86)\DVDFab HD Decrypter 4

O43 - CFD: 24/03/2010 - 22:00:48 ----D- C:\Program Files (x86)\Easy Graphic Converter

O43 - CFD: 30/10/2010 - 17:53:04 ----D- C:\Program Files (x86)\FastStone Image Viewer

O43 - CFD: 01/11/2011 - 18:49:24 ----D- C:\Program Files (x86)\Free Offers from Freeze.com

O43 - CFD: 21/12/2010 - 11:43:26 ----D- C:\Program Files (x86)\Google

O43 - CFD: 27/02/2011 - 09:53:58 --H-D- C:\Program Files (x86)\InstallShield Installation Information

O43 - CFD: 13/10/2011 - 07:54:20 ----D- C:\Program Files (x86)\Internet Explorer

O43 - CFD: 25/06/2011 - 10:39:34 ----D- C:\Program Files (x86)\Java

O43 - CFD: 13/02/2011 - 09:15:26 ----D- C:\Program Files (x86)\LaCie

O43 - CFD: 25/01/2010 - 03:05:34 ----D- C:\Program Files (x86)\Launch Manager

O43 - CFD: 04/11/2011 - 17:12:28 ----D- C:\Program Files (x86)\Lavasoft

O43 - CFD: 12/06/2010 - 13:40:20 ----D- C:\Program Files (x86)\Lexmark 3400 Series

O43 - CFD: 05/11/2011 - 09:13:50 ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware

O43 - CFD: 25/01/2010 - 03:11:18 ----D- C:\Program Files (x86)\Microsoft

O43 - CFD: 15/07/2011 - 18:55:04 ----D- C:\Program Files (x86)\Microsoft Office

O43 - CFD: 13/10/2011 - 07:54:08 ----D- C:\Program Files (x86)\Microsoft Silverlight

O43 - CFD: 25/01/2010 - 03:12:08 ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition

O43 - CFD: 02/10/2010 - 08:52:58 ----D- C:\Program Files (x86)\Microsoft Virtual PC

O43 - CFD: 04/09/2010 - 08:07:04 ----D- C:\Program Files (x86)\Microsoft Visual Studio

O43 - CFD: 04/09/2010 - 08:03:46 ----D- C:\Program Files (x86)\Microsoft Visual Studio 8

O43 - CFD: 16/12/2010 - 15:01:00 ----D- C:\Program Files (x86)\Microsoft Works

O43 - CFD: 04/09/2010 - 08:06:30 ----D- C:\Program Files (x86)\Microsoft.NET

O43 - CFD: 05/10/2011 - 17:32:34 ----D- C:\Program Files (x86)\Mozilla Thunderbird

O43 - CFD: 04/09/2010 - 08:07:20 ----D- C:\Program Files (x86)\MSBuild

O43 - CFD: 24/03/2010 - 13:18:28 ----D- C:\Program Files (x86)\MSXML 4.0

O43 - CFD: 23/10/2009 - 22:44:02 ----D- C:\Program Files (x86)\Nero

O43 - CFD: 23/10/2009 - 22:35:38 ----D- C:\Program Files (x86)\NewTech Infosystems

O43 - CFD: 14/08/2011 - 14:35:00 ----D- C:\Program Files (x86)\OpenAL

O43 - CFD: 05/09/2010 - 09:50:44 ----D- C:\Program Files (x86)\Oubliette

O43 - CFD: 27/02/2011 - 09:38:54 ----D- C:\Program Files (x86)\Packard Bell

O43 - CFD: 01/11/2011 - 19:59:10 ----D- C:\Program Files (x86)\Packard Bell GameZone

O43 - CFD: 22/04/2010 - 12:59:44 ----D- C:\Program Files (x86)\PhotoFiltre

O43 - CFD: 10/09/2011 - 09:21:22 ----D- C:\Program Files (x86)\QuickTime

O43 - CFD: 23/10/2009 - 22:17:58 ----D- C:\Program Files (x86)\Realtek

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files (x86)\Reference Assemblies

O43 - CFD: 29/01/2011 - 08:40:46 ----D- C:\Program Files (x86)\Samsung

O43 - CFD: 29/01/2011 - 08:29:02 ----D- C:\Program Files (x86)\SFR

O43 - CFD: 21/12/2010 - 08:18:12 ----D- C:\Program Files (x86)\SlySoft

O43 - CFD: 01/11/2011 - 18:56:04 ----D- C:\Program Files (x86)\Spybot - Search & Destroy

O43 - CFD: 30/01/2011 - 10:13:22 ----D- C:\Program Files (x86)\SWISSKNIFE

O43 - CFD: 23/10/2009 - 22:18:28 --H-D- C:\Program Files (x86)\Temp

O43 - CFD: 14/07/2009 - 05:57:08 --H-D- C:\Program Files (x86)\Uninstall Information

O43 - CFD: 12/06/2010 - 08:18:14 ----D- C:\Program Files (x86)\VideoLAN

O43 - CFD: 25/01/2010 - 03:05:52 ----D- C:\Program Files (x86)\VideoWebCamera

O43 - CFD: 25/01/2010 - 11:49:10 ----D- C:\Program Files (x86)\Windows Defender

O43 - CFD: 07/02/2011 - 21:08:56 ----D- C:\Program Files (x86)\Windows Live

O43 - CFD: 25/01/2010 - 03:10:58 ----D- C:\Program Files (x86)\Windows Live SkyDrive

O43 - CFD: 15/07/2011 - 19:10:58 ----D- C:\Program Files (x86)\Windows Mail

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files (x86)\Windows Media Player

O43 - CFD: 14/07/2009 - 06:32:40 ----D- C:\Program Files (x86)\Windows NT

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files (x86)\Windows Photo Viewer

O43 - CFD: 15/07/2011 - 19:10:56 ----D- C:\Program Files (x86)\Windows Portable Devices

O43 - CFD: 15/07/2011 - 19:10:58 ----D- C:\Program Files (x86)\Windows Sidebar

O43 - CFD: 25/07/2010 - 08:42:54 ----D- C:\Program Files (x86)\WinPcap

O43 - CFD: 05/11/2011 - 17:03:50 ----D- C:\Program Files (x86)\ZHPDiag

O43 - CFD: 10/06/2010 - 21:10:30 ----D- C:\Program Files (x86)\Common Files\Adobe

O43 - CFD: 19/04/2011 - 08:19:40 ----D- C:\Program Files (x86)\Common Files\Adobe AIR

O43 - CFD: 10/09/2011 - 09:19:08 ----D- C:\Program Files (x86)\Common Files\Apple

O43 - CFD: 10/08/2011 - 17:18:22 ----D- C:\Program Files (x86)\Common Files\Atheros

O43 - CFD: 10/06/2010 - 20:17:56 ----D- C:\Program Files (x86)\Common Files\CyberLink

O43 - CFD: 04/09/2010 - 08:07:04 ----D- C:\Program Files (x86)\Common Files\DESIGNER

O43 - CFD: 13/11/2010 - 09:23:38 ----D- C:\Program Files (x86)\Common Files\Droppix

O43 - CFD: 23/10/2009 - 22:17:52 ----D- C:\Program Files (x86)\Common Files\InstallShield

O43 - CFD: 25/06/2011 - 10:39:54 ----D- C:\Program Files (x86)\Common Files\Java

O43 - CFD: 25/01/2010 - 03:07:40 ----D- C:\Program Files (x86)\Common Files\Macrovision Shared

O43 - CFD: 10/08/2011 - 17:17:58 ----D- C:\Program Files (x86)\Common Files\microsoft shared

O43 - CFD: 23/10/2009 - 22:45:52 ----D- C:\Program Files (x86)\Common Files\Nero

O43 - CFD: 23/10/2009 - 22:19:32 ----D- C:\Program Files (x86)\Common Files\Oberon Media

O43 - CFD: 25/01/2010 - 03:07:26 ----D- C:\Program Files (x86)\Common Files\PX Storage Engine

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files (x86)\Common Files\Services

O43 - CFD: 25/01/2010 - 03:07:26 ----D- C:\Program Files (x86)\Common Files\Sonic Shared

O43 - CFD: 14/07/2009 - 04:20:10 ----D- C:\Program Files (x86)\Common Files\SpeechEngines

O43 - CFD: 11/06/2010 - 17:16:32 ----D- C:\Program Files (x86)\Common Files\Symantec Shared

O43 - CFD: 04/09/2010 - 08:10:02 ----D- C:\Program Files (x86)\Common Files\System

O43 - CFD: 25/01/2010 - 03:09:34 ----D- C:\Program Files (x86)\Common Files\Windows Live

O43 - CFD: 14/08/2011 - 14:35:04 ----D- C:\Program Files (x86)\Common Files\Wise Installation Wizard

 

 

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.978E4DF098E3639F2312268967295B82] - 05/11/2011 - 16:56:16 --HA- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [9920]

O44 - LFC:[MD5.978E4DF098E3639F2312268967295B82] - 05/11/2011 - 16:56:16 --HA- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [9920]

O44 - LFC:[MD5.020000000000000000000000F4EE1800] - 05/11/2011 - 16:52:20 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\WindowsUpdate.log [1422553]

O44 - LFC:[MD5.B0EC8C6756A84C17ADB89B58786DD8E4] - 05/11/2011 - 16:48:21 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\setupact.log [280]

O44 - LFC:[MD5.31223B2771C6CA159E4E7F38ADD31929] - 05/11/2011 - 16:48:19 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\bootstat.dat [67584]

O44 - LFC:[MD5.D153A52A9B4F789EFF7B7D6FC9CD3116] - 05/11/2011 - 16:48:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\aaw7boot.log [2437]

O44 - LFC:[MD5.B365A3FA489E9E19541AE449113CAFB0] - 05/11/2011 - 10:55:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\PerfStringBackup.INI [1524562]

O44 - LFC:[MD5.0709BBCCCD2C973CEAB41FA5682DD131] - 05/11/2011 - 10:55:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfc009.dat [104242]

O44 - LFC:[MD5.854FF13838BE19C394DA25E31F41CB1B] - 05/11/2011 - 10:55:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfc00C.dat [128400]

O44 - LFC:[MD5.D414484671CAC06C80028F19948C6926] - 05/11/2011 - 10:55:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfh009.dat [607864]

O44 - LFC:[MD5.FE1FBB6430BF88AF0FA80031D3FBC103] - 05/11/2011 - 10:55:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\perfh00C.dat [696680]

O44 - LFC:[MD5.ED094A11E89C94127E6606C202CFDF2E] - 05/11/2011 - 10:46:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\ZHPExportRegistry-05-11-2011-10-46-00.txt [4110]

O44 - LFC:[MD5.7BAD0E899034C7CF9B7047D31870AD67] - 05/11/2011 - 10:44:26 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\ZHPExportRegistry-05-11-2011-10-44-26.txt [21576]

O44 - LFC:[MD5.8653DA1E9A9585ECA5BF050D3B54E64B] - 05/11/2011 - 10:24:15 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\PFRO.log [1474]

O44 - LFC:[MD5.8AA1C3D465C275420AE5718303AF868C] - 05/11/2011 - 10:21:54 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\ZHPExportRegistry-05-11-2011-10-21-54.txt [4110]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 05/11/2011 - 09:41:51 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\setuperr.log [0]

O44 - LFC:[MD5.24A607DF79A1CEB8CF48D0700AB7B81E] - 04/11/2011 - 19:57:39 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Ad-Report-CLEAN[1].txt [5825]

O44 - LFC:[MD5.71E0EEBA6F1269BEE5252E48A76F88C7] - 04/11/2011 - 19:53:10 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Ad-Report-SCAN[1].txt [6353]

O44 - LFC:[MD5.C324F24924675A18B4876A7346FEE23A] - 04/11/2011 - 17:15:09 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\lsdelete.exe [16432]

O44 - LFC:[MD5.38EFFC4A86D8674FC9CA3585A28C6F16] - 01/11/2011 - 18:14:24 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\wininit.ini [123]

O44 - LFC:[MD5.096D283D182D402738CE457AA822AAA4] - 13/10/2011 - 07:55:18 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysNative\FNTCACHE.DAT [441968]

 

 

---\\ Derniers fichiers créés dans Windows Prefetcher (O45)

O45 - LFCP:[MD5.16278C8DDBC548689532BC4D0E37E676] - 01/11/2011 - 13:02:23 ---A- - C:\Windows\Prefetch\AgCx_SC2.db

O45 - LFCP:[MD5.A16551A3160E8EE16A6BE827E4EC7C31] - 02/11/2011 - 16:55:06 ---A- - C:\Windows\Prefetch\AgCx_SC4.db

O45 - LFCP:[MD5.96D926869F6D52700574F14CF1A90FDF] - 04/11/2011 - 18:34:50 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-D5E97654.pf

O45 - LFCP:[MD5.D08280F7182BDAF63F607DE68453EE34] - 04/11/2011 - 20:11:18 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-6B605020.pf

O45 - LFCP:[MD5.9B94BF84EEA9B6D5C382FF89FE82C65C] - 05/11/2011 - 09:43:29 ---A- - C:\Windows\Prefetch\MOM.EXE-F911D5BC.pf

O45 - LFCP:[MD5.C701F1EE9E66927EE7EAF1B8C087E04C] - 05/11/2011 - 12:47:29 ---A- - C:\Windows\Prefetch\AD-AWAREADMIN.EXE-86832AEB.pf

O45 - LFCP:[MD5.784DDA0B0C7431E1A7105D82E9A1B587] - 05/11/2011 - 12:53:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E44DBC4C.pf

O45 - LFCP:[MD5.7DF2BD9F3E722B2E3DFD7C11D3B0167F] - 05/11/2011 - 13:24:14 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-AB22E9A6.pf

O45 - LFCP:[MD5.22B837124CEF858B8CE3D38266A26B94] - 05/11/2011 - 13:26:21 ---A- - C:\Windows\Prefetch\AVAST.SETUP-0294E3FE.pf

O45 - LFCP:[MD5.2E508E3762BEE81191F8C862D16FCB6F] - 05/11/2011 - 13:26:21 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf

O45 - LFCP:[MD5.0F01C9562632A25761E08FF642271B78] - 05/11/2011 - 14:25:27 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-B31EC963.pf

O45 - LFCP:[MD5.F74F21858DFD3B7BCAF86E5DB16B39C2] - 05/11/2011 - 15:09:17 ---A- - C:\Windows\Prefetch\Layout.ini

O45 - LFCP:[MD5.1B611E97C72061517A11FCC65208554A] - 05/11/2011 - 15:12:24 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-6FD72002.pf

O45 - LFCP:[MD5.5EB63A6FBEDBBC03E7DEB618C903730C] - 05/11/2011 - 15:19:24 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-51CCB287.pf

O45 - LFCP:[MD5.DBD5FBCC08D48EB30A5D3BAD800ADC1F] - 05/11/2011 - 15:19:25 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-6A249820.pf

O45 - LFCP:[MD5.13548D494B0E50BE8CF313E605006091] - 05/11/2011 - 15:19:25 ---A- - C:\Windows\Prefetch\VSSVC.EXE-6C8F0C66.pf

O45 - LFCP:[MD5.3F17FA6A215C95544A01344CC03C1F7A] - 05/11/2011 - 15:20:15 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf

O45 - LFCP:[MD5.DBC0B3E855010C301221421AD0404218] - 05/11/2011 - 16:01:45 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-A0F5E092.pf

O45 - LFCP:[MD5.95E319AC7C0B3724B004874255932869] - 05/11/2011 - 16:46:52 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-1DE46615.pf

O45 - LFCP:[MD5.88EDCBEC566FC0B0BC8CFDE0D8D8AD2F] - 05/11/2011 - 16:46:59 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4B6CB38A.pf

O45 - LFCP:[MD5.B4463187A30FB4676E96B35FC83786B9] - 05/11/2011 - 16:47:01 ---A- - C:\Windows\Prefetch\EPOWERTRAY.EXE-856809ED.pf

O45 - LFCP:[MD5.089EBA2E5AA749058B0AB6BF0D3062A5] - 05/11/2011 - 16:47:01 ---A- - C:\Windows\Prefetch\RAVCPL64.EXE-4BB80510.pf

O45 - LFCP:[MD5.75C3B84E1DA4D2A67A24E83D3A0D35FF] - 05/11/2011 - 16:47:01 ---A- - C:\Windows\Prefetch\SYNTPENH.EXE-8A564A20.pf

O45 - LFCP:[MD5.26C81CE28835DD422237FD9A4E20852D] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\ATHBTTRAY.EXE-215BB68D.pf

O45 - LFCP:[MD5.BC5AE018D200DEAFEBE3199ABDD19298] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\BTVSTACK.EXE-5374F098.pf

O45 - LFCP:[MD5.FF0B94C7C6207BFF106A26F198C5A125] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\LXCYTIME.EXE-48D2169D.pf

O45 - LFCP:[MD5.3214255CA2EF26BF88D4E20A9285D230] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\SIDEBAR.EXE-BA7094F6.pf

O45 - LFCP:[MD5.1D6E04026CFF0E5C76DA0DD4734FCCCF] - 05/11/2011 - 16:47:04 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B6001A63.pf

O45 - LFCP:[MD5.6BB6DB9D9FB1F1C6522B58FD6B0F664E] - 05/11/2011 - 16:47:11 ---A- - C:\Windows\Prefetch\LXCYJSWX.EXE-5632BAAE.pf

O45 - LFCP:[MD5.00998614ED0A1C8566A5634276DC358C] - 05/11/2011 - 16:47:12 ---A- - C:\Windows\Prefetch\LXCYCOMS.EXE-4BA6152F.pf

O45 - LFCP:[MD5.45388A14AB1B47184EB4BB1EDF128DE7] - 05/11/2011 - 16:47:13 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-B597A9D1.pf

O45 - LFCP:[MD5.BC713A55E6E2171C1915818F7DC487D1] - 05/11/2011 - 16:47:14 ---A- - C:\Windows\Prefetch\HTTPD.EXE-2BD0D2E2.pf

O45 - LFCP:[MD5.8D92221258EA79223359305D1E53F7FB] - 05/11/2011 - 16:47:35 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2599719406-2373148968-441932854-1001.db

O45 - LFCP:[MD5.A537FD350E6138C1757F84E6030BAA03] - 05/11/2011 - 16:47:35 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2599719406-2373148968-441932854-1001.db

O45 - LFCP:[MD5.26AC243F397F2D28E2B0CBB83227EA9F] - 05/11/2011 - 16:47:36 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-F639BD7E.pf

O45 - LFCP:[MD5.7B117CCC5B754D6B79BDAA5985F6A25E] - 05/11/2011 - 16:47:38 ---A- - C:\Windows\Prefetch\AgRobust.db

O45 - LFCP:[MD5.5667BEE496813249FF7D2439E9F12BB6] - 05/11/2011 - 16:47:38 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin

O45 - LFCP:[MD5.44F0CD24AEC96B09202B7DAE123367A4] - 05/11/2011 - 16:47:39 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db

O45 - LFCP:[MD5.D471DCC842A3CFB18A3F337A35F620AA] - 05/11/2011 - 16:47:39 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db

O45 - LFCP:[MD5.99B3EE57D4BD3EA63048989FB8791A9A] - 05/11/2011 - 16:47:39 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db

O45 - LFCP:[MD5.1693FEE5D121F183316E210174E94520] - 05/11/2011 - 16:49:50 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-DAB4D60B.pf

O45 - LFCP:[MD5.44011416AF81FDF5FCEAC2E929DE6D4C] - 05/11/2011 - 16:49:50 ---A- - C:\Windows\Prefetch\UNSECAPP.EXE-72B9DDB3.pf

O45 - LFCP:[MD5.4EFAE9463E994C8AFC87F5ECFC926DF3] - 05/11/2011 - 16:50:22 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-2E02FDCA.pf

O45 - LFCP:[MD5.FA8C3BD6FCA0886155B28AE601CDA541] - 05/11/2011 - 16:51:13 ---A- - C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-70161F5F.pf

O45 - LFCP:[MD5.C2F635911F24E53B21BED12C62688B4C] - 05/11/2011 - 16:51:23 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-96070FE0.pf

O45 - LFCP:[MD5.DA093E43554EADAAC905E5D461E56F9E] - 05/11/2011 - 16:51:24 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-F31BDE28.pf

O45 - LFCP:[MD5.E538222DB83B7CD066DE635CE5FEAF51] - 05/11/2011 - 16:52:15 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-E8B8DD29.pf

O45 - LFCP:[MD5.9465FC87F3FE44CC251D02A38C678436] - 05/11/2011 - 16:52:32 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-81BAE51F.pf

O45 - LFCP:[MD5.CEA8C890BEC72A9EB7B8AC13D050EEF3] - 05/11/2011 - 16:53:03 ---A- - C:\Windows\Prefetch\THUNDERBIRD.EXE-69F6F4B4.pf

O45 - LFCP:[MD5.BCE4ED3D6A2C3FF3BA9918F1C462F52B] - 05/11/2011 - 16:53:07 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-BB21CD77.pf

O45 - LFCP:[MD5.0360B354219878B709DC8B44E7035FB2] - 05/11/2011 - 16:53:44 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-6E1A6101.pf

O45 - LFCP:[MD5.93E304122FB7BABBD83BAB188628B801] - 05/11/2011 - 16:53:53 ---A- - C:\Windows\Prefetch\FLASHUTIL64_10_3_162_ACTIVEX.-E20B3992.pf

O45 - LFCP:[MD5.15DC50BACAFD196628EE391E5CD9A040] - 05/11/2011 - 16:54:08 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-CFE81CB7.pf

O45 - LFCP:[MD5.D61CC8F91A267C3495E6DA3BF6CC396D] - 05/11/2011 - 16:54:28 ---A- - C:\Windows\Prefetch\JAVA.EXE-2AB52D6A.pf

O45 - LFCP:[MD5.B9BB2C85E3D4071D0542FBACBAF6D634] - 05/11/2011 - 16:54:38 ---A- - C:\Windows\Prefetch\JUCHECK.EXE-CA293356.pf

O45 - LFCP:[MD5.08D8DCFE5FDF890383489476B1704F05] - 05/11/2011 - 16:56:45 ---A- - C:\Windows\Prefetch\SF.BIN-759072B8.pf

O45 - LFCP:[MD5.EA74A4C62EE54C2BD71CDD3441800E94] - 05/11/2011 - 16:56:53 ---A- - C:\Windows\Prefetch\CONSENT.EXE-40419367.pf

O45 - LFCP:[MD5.77A3BA80627DF7ABA0EC5592DC6D1326] - 05/11/2011 - 16:56:58 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6389524F.pf

O45 - LFCP:[MD5.0DC74B851948AC1C314D623669C04337] - 05/11/2011 - 16:56:58 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-18FC9E64.pf

O45 - LFCP:[MD5.2D188D3F2F59DF8BE68F401D44DA1B94] - 05/11/2011 - 16:57:08 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-6A1D0894.pf

O45 - LFCP:[MD5.D4DC66D1D8E481F6D3584D8984C5EE43] - 05/11/2011 - 16:57:30 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-058FE8F5.pf

O45 - LFCP:[MD5.F6F9CEB74E5B1FFB81C06E17FCF20DBD] - 05/11/2011 - 16:59:37 ---A- - C:\Windows\Prefetch\AUTOUPDATEAPILIB.EXE-8741AF33.pf

O45 - LFCP:[MD5.272E3BCEF5F0CCACCBB4052C68737DA9] - 05/11/2011 - 17:00:58 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf

O45 - LFCP:[MD5.BBAB907CF2774087B3844BAB73735DB6] - 05/11/2011 - 17:00:59 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-44162447.pf

O45 - LFCP:[MD5.A63C84B8C721E418E5E587827D5BF2B2] - 05/11/2011 - 17:01:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-0E1E7B82.pf

O45 - LFCP:[MD5.C8FE9F345C9C384FD0F2701C0FD59681] - 05/11/2011 - 17:01:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-35FA9C06.pf

O45 - LFCP:[MD5.548612F9B1E0FF3A7AE0EF0FE5D4000B] - 05/11/2011 - 17:01:57 ---A- - C:\Windows\Prefetch\WERMGR.EXE-F439C551.pf

O45 - LFCP:[MD5.4821C71ADB77A51814D5AD2BD440456C] - 05/11/2011 - 17:03:48 ---A- - C:\Windows\Prefetch\CMD.EXE-6D6290C5.pf

O45 - LFCP:[MD5.7CBFF54A971FE0D86859A806AA0B9295] - 05/11/2011 - 17:03:48 ---A- - C:\Windows\Prefetch\CONHOST.EXE-0C6456FB.pf

O45 - LFCP:[MD5.A68CC82FE419A405111E4D90CC23543B] - 05/11/2011 - 17:03:48 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-DC1676CD.pf

O45 - LFCP:[MD5.E13ABC7A7507948943E1B5B03F778280] - 15/10/2011 - 08:51:00 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx

O45 - LFCP:[MD5.0F57B75C26B9D2B5A704C3E4D6CA28AF] - 15/10/2011 - 08:52:01 ---A- - C:\Windows\Prefetch\AgCx_SC1.db

 

 

---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)

O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

 

 

---\\ Déni du service (Local Security Authority) (LSA) (O48)

O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

 

 

---\\ Trojan Driver Search Data (HKLM)(TDSD) (O52)

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\SysWOW64\l3codeca.acm" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll

O52 - TDSD: \Drivers32\"vidc.divx"="divx.dll" . (.DivX, Inc. - DivX.) -- C:\Windows\System32\divx.dll

O52 - TDSD: \Drivers32\"vidc.yv12"="divx.dll" . (.DivX, Inc. - DivX.) -- C:\Windows\System32\divx.dll

O52 - TDSD: \Drivers32\"vidc.xvid"="xvidvfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\xvidvfw.dll

O52 - TDSD: \Drivers32\"vidc.ffds"="ff_vfw.dll" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\ff_vfw.dll

O52 - TDSD: \Drivers32\"vidc.vp60"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll

O52 - TDSD: \Drivers32\"vidc.vp61"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll

O52 - TDSD: \Drivers32\"vidc.vp62"="vp6vfw.dll" . (.On2.com - VP6 VIDEO FOR WINDOWS CODEC.) -- C:\Windows\System32\vp6vfw.dll

O52 - TDSD: \Drivers32\"msacm.ac3filter"="ac3filter.acm" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\ac3filter.acm

O52 - TDSD: \Drivers32\"msacm.divxa32"="DivXa32.acm" . (.Packed With Joy ! - DivX;-) Audio Codec.) -- C:\Windows\System32\DivXa32.acm

O52 - TDSD: \Drivers32\"msacm.lameacm"="LameACM.acm" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\LameACM.acm

O52 - TDSD: \drivers.desc\"C:\Windows\SysWOW64\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"divx.dll"="DivX® 7.4 Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD 1.2.2 Video Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow Video Codec" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\ff_vfw.dll

O52 - TDSD: \drivers.desc\"vp6vfw.dll"="On2 VP6 6.4.2 Video Codec" . (.Pas de propriétaire - Pas de description.) -- (.not file.)

O52 - TDSD: \drivers.desc\"ac3filter.acm"="AC3Filter ACM codec" . (.Pas de propriétaire - Pas de description.) -- C:\Windows\System32\ac3filter.acm

O52 - TDSD: \drivers.desc\"DivXa32.acm"="DivX Audio Codec" . (.Packed With Joy ! - DivX;-) Audio Codec.) -- C:\Windows\System32\DivXa32.acm

O52 - TDSD: \drivers.desc\"LameACM.acm"="Lame ACM MP3 Codec" . (.http://www.mp3dev.org/ - Lame MP3 codec engine.) -- C:\Windows\System32\LameACM.acm

 

 

---\\ Microsoft Control Security Providers (MCSP) (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

 

 

---\\ Microsoft Windows Policies System (MWPS) (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3

O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1

O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1

O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0

 

 

---\\ Microsoft Windows Policies Explorer (MWPE) (O56)

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0

 

 

---\\ Liste des Drivers Système (SDL) (O58)

O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]

O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]

O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]

O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]

O58 - SDL:[MD5.6EC6D772EAE38DC17C14AED9B178D24B] - 20/11/2010 - 14:32:46 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904]

O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]

O58 - SDL:[MD5.1142A21DB581A84EA5597B03A26EBAA0] - 20/11/2010 - 14:32:47 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008]

O58 - SDL:[MD5.1F8E9426219263CB3CE9AC1735A68D9E] - 09/06/2011 - 22:05:13 ---A- . (.SlySoft, Inc. - AnyDVD Filter Driver.) -- C:\Windows\system32\drivers\AnyDVD.sys [138872]

O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]

O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]

O58 - SDL:[MD5.5A68B880C16AD5A6AA20B49A47FFFF24] - 06/09/2011 - 21:36:14 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [24408]

O58 - SDL:[MD5.230613BE2D3DA8053879BE5ED2848F2D] - 06/09/2011 - 21:36:30 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [65368]

O58 - SDL:[MD5.0DC1996AE4178D7D14744EF6B3082313] - 06/09/2011 - 21:36:41 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [42328]

O58 - SDL:[MD5.B6FF911C23775CDFDD49612D92637AF4] - 06/09/2011 - 21:38:18 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [601944]

O58 - SDL:[MD5.5A590D8516376AED1829FC07D3BDAA4B] - 06/09/2011 - 21:38:16 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [301912]

O58 - SDL:[MD5.3239C0082FB0C1C4EE323730B85690A5] - 06/09/2011 - 21:36:41 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [58200]

O58 - SDL:[MD5.4119870B90E1B5E7797D6433D21F9216] - 14/10/2010 - 10:57:48 ---A- . (.Windows ® Win 7 DDK provider - BulkUsb Driver.) -- C:\Windows\system32\drivers\AthDfu.sys [51872]

O58 - SDL:[MD5.0ACC06FCF46F64ED4F11E57EE461C1F4] - 05/10/2009 - 02:34:00 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athrx.sys [1542656]

O58 - SDL:[MD5.2DB9047AAC9D981F59CE06D04D70C4D8] - 04/09/2009 - 03:15:12 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [6038016]

O58 - SDL:[MD5.0464BAFB3B38DE9D89ABDEEFA9CB58DA] - 04/09/2009 - 03:14:24 ---A- . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\system32\drivers\atikmpag.sys [134144]

O58 - SDL:[MD5.7C5D273E29DCC5505469B299C6F29163] - 04/09/2009 - 03:15:16 ---A- . (.Advanced Micro Devices Inc. - AMD PCIE Filter Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [16440]

O58 - SDL:[MD5.2DB9047AAC9D981F59CE06D04D70C4D8] - 04/09/2009 - 03:15:12 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atipmdag.sys [6038016]

O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]

O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]

O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]

O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]

O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]

O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]

O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]

O58 - SDL:[MD5.227C8F308DE4AF4808E587465CEAB838] - 14/10/2010 - 10:57:48 ---A- . (.Atheros - Atheros A2DP driver.) -- C:\Windows\system32\drivers\btath_a2dp.sys [298144]

O58 - SDL:[MD5.A83A91D07D1FE6BBE7A9DB46CA00434B] - 14/10/2010 - 10:57:48 ---A- . (.Atheros - Atheros BUS driver.) -- C:\Windows\system32\drivers\btath_bus.sys [28832]

O58 - SDL:[MD5.CBE61B4494165F458BD87E37181EE934] - 14/10/2010 - 10:57:50 ---A- . (.Atheros - Atheros FILTER driver.) -- C:\Windows\system32\drivers\btath_flt.sys [36000]

O58 - SDL:[MD5.C864FF85EE16D61C2BDD5EF76824625F] - 14/10/2010 - 10:57:50 ---A- . (.Atheros - Atheros HCRP driver.) -- C:\Windows\system32\drivers\btath_hcrp.sys [201376]

O58 - SDL:[MD5.0DEA505EFB5D771826D177EF8B8A208F] - 14/10/2010 - 10:57:50 ---A- . (.Atheros - Atheros FILTER driver.) -- C:\Windows\system32\drivers\btath_lwflt.sys [55456]

O58 - SDL:[MD5.724C8088C96EFE7A3E63FEC21D4681C0] - 14/10/2010 - 10:57:50 ---A- . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\system32\drivers\btath_rcp.sys [154272]

O58 - SDL:[MD5.DA96B275806CFBBB09F3E2A7849C2931] - 14/10/2010 - 10:57:50 ---A- . (.Atheros - BtFilter Driver.) -- C:\Windows\system32\drivers\btfilter.sys [275104]

O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]

O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]

O58 - SDL:[MD5.A05FC7ECA0966EBB70E4D17B855A853B] - 16/12/2010 - 23:58:14 ---A- . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\Windows\system32\drivers\ElbyCDIO.sys [40816]

O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]

O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]

O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]

O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 20/11/2010 - 14:33:35 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [78720]

O58 - SDL:[MD5.3DF4395A7CF8B7A72A5F4606366B8C2D] - 20/11/2010 - 14:33:38 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496]

O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]

O58 - SDL:[MD5.08DD34F74D65E1C8F238565570952630] - 06/06/2009 - 17:36:46 ---A- . (.Broadcom Corporation - Broadcom NetLink Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\k57nd60a.sys [317480]

O58 - SDL:[MD5.C8B3131857931AE76798A741CC52B021] - 18/08/2011 - 15:25:12 ---A- . (.Lavasoft AB - Boot Driver.) -- C:\Windows\system32\drivers\Lbd.sys [69376]

O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]

O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]

O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]

O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]

O58 - SDL:[MD5.23A854450DAB5C9B7A42AB9BE6F2E4BD] - 31/08/2011 - 17:00:50 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [25416]

O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]

O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]

O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]

O58 - SDL:[MD5.351533ACC2A069B94E80BBFC177E8FDF] - 25/06/2010 - 18:07:26 ---A- . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\system32\drivers\npf.sys [35344]

O58 - SDL:[MD5.64DDD0DEE976302F4BD93E5EFCC2F013] - 06/05/2009 - 00:46:08 ---A- . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [18432]

O58 - SDL:[MD5.5D9FD91F3D38DC9DA01E3CB5FA89CD48] - 20/11/2010 - 14:33:48 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352]

O58 - SDL:[MD5.F7CD50FE7139F07E77DA8AC8033D1832] - 20/11/2010 - 14:33:48 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272]

O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]

O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]

O58 - SDL:[MD5.8015D36E5AB9B231507B2BCF0CEB0C73] - 16/02/2007 - 01:56:51 ---A- . (.Elaborate Bytes AG - Elby Delay Lower Filter Driver.) -- C:\Windows\system32\drivers\RegKill.sys [14032]

O58 - SDL:[MD5.7421A35C45484B95E83B5E9E107CEFC2] - 24/06/2009 - 11:23:24 ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RtHDMIVX.sys [205472]

O58 - SDL:[MD5.0C3CF4B3BAE28E121A1689E3538F8712] - 28/07/2009 - 14:00:14 ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHD64.sys [1966624]

O58 - SDL:[MD5.DB30AA4DAA0D492FA5D7717D8181FFA1] - 02/09/2009 - 02:58:08 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [225280]

O58 - SDL:[MD5.FD833BEE2FD9BEFDC0AFD1941A306D9E] - 04/11/2011 - 17:15:11 ---A- . (.Sunbelt Software - 64-bit Anti-Rootkit Engine.) -- C:\Windows\system32\drivers\SBREDrv.sys [55384]

O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]

O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]

O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]

O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]

O58 - SDL:[MD5.5AEEC2BB8065B563ADBC88CA22588953] - 03/09/2009 - 11:15:26 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [292400]

O58 - SDL:[MD5.2E22C1FD397A5A9FFEF55E9D1FC96C00] - 06/05/2009 - 00:46:08 ---A- . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\system32\drivers\UBHelper.sys [16896]

O58 - SDL:[MD5.6648C6D7323A2CE0C4776C36CEFBCB14] - 03/04/2009 - 06:39:58 ---A- . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\system32\drivers\usbfilter.sys [34872]

O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]

O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]

O58 - SDL:[MD5.1F8E9426219263CB3CE9AC1735A68D9E] - 09/06/2011 - 22:05:13 ---A- . (.SlySoft, Inc. - AnyDVD Filter Driver.) -- C:\Windows\SysWOW64\drivers\AnyDVD.sys [138872]

O58 - SDL:[MD5.D5BCB77BE83CF99F508943945D46343D] - 26/03/2009 - 04:16:08 ---A- . (.Dritek System Inc. - Dritek 64-bit PS/2 Keyboard Filter Driver.) -- C:\Windows\SysWOW64\drivers\DKbFltr.sys [25608]

O58 - SDL:[MD5.8015D36E5AB9B231507B2BCF0CEB0C73] - 16/02/2007 - 01:56:51 ---A- . (.Elaborate Bytes AG - Elby Delay Lower Filter Driver.) -- C:\Windows\SysWOW64\drivers\RegKill.sys [14032]

O58 - SDL:[MD5.DB30AA4DAA0D492FA5D7717D8181FFA1] - 02/09/2009 - 02:58:08 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\SysWOW64\drivers\RtsUStor.sys [225280]

O58 - SDL:[MD5.729248B54AFF21E740054ACEBFDBCB1C] - 13/07/2001 - 13:56:14 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\Windows\SysWOW64\drivers\SBKUPNT.SYS [14976]

 

 

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)

O61 - LFC:Last File Created 02/11/2011 - 05:27:56 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\mime0.std [23808]

O61 - LFC:Last File Created 02/11/2011 - 09:18:01 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\Office\Excel12.pip [1572]

O61 - LFC:Last File Created 03/11/2011 - 10:58:57 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\defs0.std [5298904]

O61 - LFC:Last File Created 03/11/2011 - 19:00:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\apprules.dat [1566]

O61 - LFC:Last File Created 03/11/2011 - 19:00:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\networkrules.dat [4760]

O61 - LFC:Last File Created 03/11/2011 - 19:00:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\apincl.dat [682]

O61 - LFC:Last File Created 03/11/2011 - 19:00:02 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\hstn.vtd [96714]

O61 - LFC:Last File Created 03/11/2011 - 19:00:02 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ip.vtd [592]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\EPSigs.vdx [65429]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\FastSigs.vdx [187429]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\JSSigs.vdx [63247]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\VVSSigs.vdx [36116]

O61 - LFC:Last File Created 04/11/2011 - 02:22:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\kbu.dat [5553016]

O61 - LFC:Last File Created 04/11/2011 - 03:25:24 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ThreatDT.vdx [2779501]

O61 - LFC:Last File Created 04/11/2011 - 03:25:24 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ThreatID.vdx [509840]

O61 - LFC:Last File Created 04/11/2011 - 03:25:59 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\AdviceTx.vdx [10245]

O61 - LFC:Last File Created 04/11/2011 - 03:26:00 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\CatDesc.vdx [180180]

O61 - LFC:Last File Created 04/11/2011 - 03:26:00 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\CatID.vdx [9660]

O61 - LFC:Last File Created 04/11/2011 - 03:26:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ThreatCategoryGlossary.xml [47016]

O61 - LFC:Last File Created 04/11/2011 - 03:31:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ctid.vtd [26321010]

O61 - LFC:Last File Created 04/11/2011 - 03:31:27 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\cblk.vtd [46577988]

O61 - LFC:Last File Created 04/11/2011 - 03:32:04 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\FileDT.vdx [163836]

O61 - LFC:Last File Created 04/11/2011 - 03:32:04 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\FolderDT.vdx [80088]

O61 - LFC:Last File Created 04/11/2011 - 03:32:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\Cookies.vdx [82968]

O61 - LFC:Last File Created 04/11/2011 - 03:32:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\RegDT.vdx [1104984]

O61 - LFC:Last File Created 04/11/2011 - 03:32:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\dnrl.vdx [149520]

O61 - LFC:Last File Created 04/11/2011 - 03:32:14 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ih.vdx [81624]

O61 - LFC:Last File Created 04/11/2011 - 03:32:56 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\cname.wtd [53128]

O61 - LFC:Last File Created 04/11/2011 - 03:32:56 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\white.wtd [33402648]

O61 - LFC:Last File Created 04/11/2011 - 03:32:57 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\hcol.wtd [19446]

O61 - LFC:Last File Created 04/11/2011 - 03:32:58 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\whsl.wtd [341568]

O61 - LFC:Last File Created 04/11/2011 - 03:34:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\bhsl.vtd [1825520]

O61 - LFC:Last File Created 04/11/2011 - 08:20:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\DefVer.txt [26]

O61 - LFC:Last File Created 04/11/2011 - 09:03:25 ----- C:\Users\chris33\AppData\Local\Temp\GBMBEAC.xml [938]

O61 - LFC:Last File Created 04/11/2011 - 09:03:25 ----- C:\Users\chris33\AppData\Local\Temp\GBMBEBD.xml [7144]

O61 - LFC:Last File Created 04/11/2011 - 09:03:43 ----- C:\Users\chris33\AppData\Local\Temp\~DF7F7CF6DA5E610DAA.TMP [163840]

O61 - LFC:Last File Created 04/11/2011 - 17:01:49 ----- C:\Users\chris33\AppData\Local\Temp\GBMEF9B.xml [938]

O61 - LFC:Last File Created 04/11/2011 - 17:01:49 ----- C:\Users\chris33\AppData\Local\Temp\GBMEF9C.xml [7144]

O61 - LFC:Last File Created 04/11/2011 - 17:01:59 ----- C:\Users\chris33\AppData\Local\Temp\~DFCEA184AE7785335C.TMP [163840]

O61 - LFC:Last File Created 04/11/2011 - 17:03:03 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\IdentityCRL\Production\MetaConfig.xml [163]

O61 - LFC:Last File Created 04/11/2011 - 17:06:41 ---A- C:\Users\chris33\Downloads\Ad-Aware95Install.msi [10268672]

O61 - LFC:Last File Created 04/11/2011 - 17:12:35 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\DriverTool.log [2840]

O61 - LFC:Last File Created 04/11/2011 - 17:12:54 ---A- C:\Users\All Users\Lavasoft\License\adaware.da2 [0]

O61 - LFC:Last File Created 04/11/2011 - 17:12:58 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\nag.ng [16]

O61 - LFC:Last File Created 04/11/2011 - 17:13:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.598.aawdef [16260]

O61 - LFC:Last File Created 04/11/2011 - 17:13:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.599.aawdef [67876]

O61 - LFC:Last File Created 04/11/2011 - 17:13:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-ttl-90-build-150.597.aawdef [5610532]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.600.aawdef [40292]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.601.aawdef [38004]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.602.aawdef [85508]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.603.aawdef [516484]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.604.aawdef [68164]

O61 - LFC:Last File Created 04/11/2011 - 17:13:11 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.605.aawdef [19204]

O61 - LFC:Last File Created 04/11/2011 - 17:13:11 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.606.aawdef [18884]

O61 - LFC:Last File Created 04/11/2011 - 17:14:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\cert.car [132668]

O61 - LFC:Last File Created 04/11/2011 - 17:14:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\cert.car [132668]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\genocode.ows [850318]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\thorax.aaw [508776]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\genocode.ows [850318]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\thorax.aaw [508776]

O61 - LFC:Last File Created 04/11/2011 - 17:14:50 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef [6481208]

O61 - LFC:Last File Created 04/11/2011 - 17:14:50 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\core.aawdef [6481208]

O61 - LFC:Last File Created 04/11/2011 - 17:15:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWService.exe.compressed [565490]

O61 - LFC:Last File Created 04/11/2011 - 17:15:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWService.exe [2152152]

O61 - LFC:Last File Created 04/11/2011 - 17:15:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWTray.exe [1191216]

O61 - LFC:Last File Created 04/11/2011 - 17:15:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWTray.exe.compressed [279443]

O61 - LFC:Last File Created 04/11/2011 - 17:15:02 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-Aware.exe [1896192]

O61 - LFC:Last File Created 04/11/2011 - 17:15:02 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-Aware.exe.compressed [427325]

O61 - LFC:Last File Created 04/11/2011 - 17:15:03 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe [1744312]

O61 - LFC:Last File Created 04/11/2011 - 17:15:03 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe.compressed [477533]

O61 - LFC:Last File Created 04/11/2011 - 17:15:03 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe.compressed [300067]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe [1254568]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AutoLaunch.exe [658688]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AutoLaunch.exe.compressed [166000]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\CEAPI.dll.compressed [441954]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\CEAPI.dll [1636144]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe [704520]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe.compressed [216374]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\64\AAWDriverTool.exe [822488]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\64\AAWDriverTool.exe.compressed [235956]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\ResourceAdmin.xml [50964]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\ResourceAdmin.xml.compressed [7065]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_de-DE.xml [80886]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_de-DE.xml.compressed [14384]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_en-US.xml [75688]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_en-US.xml.compressed [13296]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_es-ES.xml [77354]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_es-ES.xml.compressed [13474]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_fr-FR.xml [80483]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_fr-FR.xml.compressed [14134]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_it-IT.xml.compressed [13857]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_it-IT.xml [79407]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\PrivacyClean.dll [794640]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\PrivacyClean.dll.compressed [278253]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\RPAPI.dll [589184]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\RPAPI.dll.compressed [155240]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Rebrand.dat [54244]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt.dll [493344]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt.dll.compressed [114512]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\UpdateManager.dll [929056]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\UpdateManager.dll.compressed [230759]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\VipreBridge.dll [430568]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\VipreBridge.dll.compressed [116421]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aawapi.dll [923872]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aawapi.dll.compressed [196675]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavalicense.dll [664856]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavalicense.dll.compressed [164605]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavamessage.dll [540752]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavamessage.dll.compressed [129365]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lsdelete.exe [16432]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lsdelete.exe.compressed [7538]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys.compressed [25339]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt_64.dll [808072]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt_64.dll.compressed [230638]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\kernexplorer64.sys [17152]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\kernexplorer64.sys.compressed [8807]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\threatwork.exe [1159232]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\threatwork.exe.compressed [280853]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\version.dat [10]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\version.dat [10]

O61 - LFC:Last File Created 04/11/2011 - 17:15:11 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys [55384]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\RTmem.vdx [3256]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\TImem.vdx [1254]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\bhmem.vtd [8964]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\bmem.vtd [68302]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\cmem.vtd [64364]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\whmem.wtd [1348]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\wmem.wtd [48982]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\CoreVer.txt [32]

O61 - LFC:Last File Created 04/11/2011 - 17:15:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\metafile.dat.cached [142961]

O61 - LFC:Last File Created 04/11/2011 - 17:15:34 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Update.log [23748]

O61 - LFC:Last File Created 04/11/2011 - 17:15:34 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\aawadmin.log [18772]

O61 - LFC:Last File Created 04/11/2011 - 17:16:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef.hashdiskcache.bin [6327588]

O61 - LFC:Last File Created 04/11/2011 - 17:16:23 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef.fingerprintdiskcache.bin [905752]

O61 - LFC:Last File Created 04/11/2011 - 17:16:23 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef.regdiskcache.bin [12181630]

O61 - LFC:Last File Created 04/11/2011 - 18:06:34 ----- C:\Users\chris33\AppData\Local\Temp\etilqs_go1ECXfLv6lvLbA [3088]

O61 - LFC:Last File Created 04/11/2011 - 18:09:17 ----- C:\Users\chris33\AppData\Local\Temp\GBM5CA.xml [938]

O61 - LFC:Last File Created 04/11/2011 - 18:09:17 ----- C:\Users\chris33\AppData\Local\Temp\GBM5CB.xml [7144]

O61 - LFC:Last File Created 04/11/2011 - 18:09:51 ----- C:\Users\chris33\AppData\Local\Temp\~DFC70690669DA61465.TMP [163840]

O61 - LFC:Last File Created 04/11/2011 - 18:18:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Quarantine\Setup_FreeConverter.exe.d8f8decc9ab4c54f8cd37d244ac31f5c.7a8d014483d71ece7e838078a377c.aawqff [458084]

O61 - LFC:Last File Created 04/11/2011 - 18:18:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\packard bell game console.exe.30 [4648932]

O61 - LFC:Last File Created 04/11/2011 - 18:18:22 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\1-7-00095772.lsf [2240]

O61 - LFC:Last File Created 04/11/2011 - 18:24:02 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-04-18-08-46.log [55712]

O61 - LFC:Last File Created 04/11/2011 - 18:24:02 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-04-18-08-46.log [154]

O61 - LFC:Last File Created 04/11/2011 - 18:24:58 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\3-0-00007B18.lsf [7543]

O61 - LFC:Last File Created 04/11/2011 - 18:25:39 ----- C:\Users\chris33\AppData\Local\Temp\GBM1E2A.xml [938]

O61 - LFC:Last File Created 04/11/2011 - 18:25:39 ----- C:\Users\chris33\AppData\Local\Temp\GBM1E3A.xml [7144]

O61 - LFC:Last File Created 04/11/2011 - 18:25:52 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-04-18-24-57.log [154]

O61 - LFC:Last File Created 04/11/2011 - 18:25:53 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-04-18-24-57.log [174]

O61 - LFC:Last File Created 04/11/2011 - 18:26:06 ----- C:\Users\chris33\AppData\Local\Temp\~DFA4B1893391717D67.TMP [163840]

O61 - LFC:Last File Created 04/11/2011 - 18:33:42 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.sfr.fr\Inbox [106185]

O61 - LFC:Last File Created 04/11/2011 - 18:34:48 ---A- C:\Users\chris33\Downloads\AD-R.exe [1563105]

O61 - LFC:Last File Created 04/11/2011 - 18:37:14 ----- C:\Users\chris33\AppData\Local\Temp\chris33.bmp [31832]

O61 - LFC:Last File Created 04/11/2011 - 18:37:22 ----- C:\Users\chris33\AppData\Local\Temp\Invité.bmp [49208]

O61 - LFC:Last File Created 04/11/2011 - 18:37:49 ---A- C:\Users\chris33\Downloads\ZHPDiag.exe [2265732]

O61 - LFC:Last File Created 04/11/2011 - 18:54:11 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\HTML Help\hh.dat [8678]

O61 - LFC:Last File Created 04/11/2011 - 19:23:36 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\addons.sqlite [262144]

O61 - LFC:Last File Created 04/11/2011 - 19:25:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\blocklist.xml [6314]

O61 - LFC:Last File Created 04/11/2011 - 19:45:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\cookies.sqlite [524288]

O61 - LFC:Last File Created 04/11/2011 - 19:45:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\history.mab [8528]

O61 - LFC:Last File Created 04/11/2011 - 19:45:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\permissions.sqlite [2048]

O61 - LFC:Last File Created 04/11/2011 - 19:45:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\places.sqlite [10485760]

O61 - LFC:Last File Created 04/11/2011 - 19:48:01 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Drafts [0]

O61 - LFC:Last File Created 04/11/2011 - 19:48:01 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Drafts.msf [1891]

O61 - LFC:Last File Created 04/11/2011 - 19:48:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Trash [176676]

O61 - LFC:Last File Created 04/11/2011 - 19:48:07 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Sent [27226910]

O61 - LFC:Last File Created 04/11/2011 - 19:57:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Sent.msf [36498]

O61 - LFC:Last File Created 04/11/2011 - 19:57:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Trash.msf [19493]

O61 - LFC:Last File Created 04/11/2011 - 19:57:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.sfr.fr\Inbox.msf [7629]

O61 - LFC:Last File Created 04/11/2011 - 19:59:11 ---A- C:\Users\chris33\AppData\Local\Temp\GBMCAAD.xml [938]

O61 - LFC:Last File Created 04/11/2011 - 19:59:11 ---A- C:\Users\chris33\AppData\Local\Temp\GBMCAAE.xml [7144]

O61 - LFC:Last File Created 04/11/2011 - 20:00:00 ---A- C:\Users\chris33\AppData\Local\Temp\~DFBA9BC2E4A45FA251.TMP [163840]

O61 - LFC:Last File Created 04/11/2011 - 20:04:18 ---A- C:\Users\chris33\AppData\Local\Temp\7B47.tmp [349136]

O61 - LFC:Last File Created 04/11/2011 - 20:09:47 ---A- C:\Users\chris33\Documents\Mes Txt\bookmarks.html [69888]

O61 - LFC:Last File Created 04/11/2011 - 20:13:39 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-04-19-58-45.log [174]

O61 - LFC:Last File Created 04/11/2011 - 20:13:39 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-04-19-58-45.log [154]

O61 - LFC:Last File Created 04/11/2011 - 20:15:11 ---A- C:\Users\chris33\AppData\Local\Temp\GBM914.xml [938]

O61 - LFC:Last File Created 04/11/2011 - 20:15:11 ---A- C:\Users\chris33\AppData\Local\Temp\GBM915.xml [7144]

O61 - LFC:Last File Created 04/11/2011 - 20:15:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-04-20-14-35.log [174]

O61 - LFC:Last File Created 04/11/2011 - 20:15:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-04-20-14-35.log [154]

O61 - LFC:Last File Created 04/11/2011 - 20:15:30 ---A- C:\Users\chris33\AppData\Local\Temp\~DFCD4EC46A2AE51944.TMP [163840]

O61 - LFC:Last File Created 04/11/2011 - 21:32:34 ---A- C:\Users\All Users\Alwil Software\Avast5\db1caca015e0f957d-9cf5932d.dat [7944]

O61 - LFC:Last File Created 04/11/2011 - 21:32:34 ---A- C:\Users\All Users\Alwil Software\Avast5\db1caca015e6a09c7-10f5e8f5.dat [864]

O61 - LFC:Last File Created 05/11/2011 - 08:04:55 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\3-0-0000E2BF.lsf [597]

O61 - LFC:Last File Created 05/11/2011 - 08:05:14 ---A- C:\Users\chris33\AppData\Local\Temp\GBM2E21.xml [938]

O61 - LFC:Last File Created 05/11/2011 - 08:05:14 ---A- C:\Users\chris33\AppData\Local\Temp\GBM2E31.xml [7144]

O61 - LFC:Last File Created 05/11/2011 - 08:05:43 ---A- C:\Users\chris33\AppData\Local\Temp\~DF60E4B070639E87A8.TMP [163840]

O61 - LFC:Last File Created 05/11/2011 - 08:15:29 ---A- C:\Users\chris33\AppData\Local\Temp\URL8D50.url [195]

O61 - LFC:Last File Created 05/11/2011 - 08:52:49 ---A- C:\Users\chris33\AppData\Local\Temp\BB72.tmp [349136]

O61 - LFC:Last File Created 05/11/2011 - 09:13:56 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\config.conf [2399]

O61 - LFC:Last File Created 05/11/2011 - 09:13:56 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\custom.conf [5]

O61 - LFC:Last File Created 05/11/2011 - 09:13:56 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\news.conf [250]

O61 - LFC:Last File Created 05/11/2011 - 09:14:06 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\build.conf [261]

O61 - LFC:Last File Created 05/11/2011 - 09:14:06 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [7322133]

O61 - LFC:Last File Created 05/11/2011 - 09:14:16 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\ignore.dat [0]

O61 - LFC:Last File Created 05/11/2011 - 09:17:15 ---A- C:\Users\chris33\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2011-11-05 (09-17-15).txt [1054]

O61 - LFC:Last File Created 05/11/2011 - 09:41:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-05-08-04-55.log [174]

O61 - LFC:Last File Created 05/11/2011 - 09:41:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-05-08-04-55.log [154]

O61 - LFC:Last File Created 05/11/2011 - 09:42:45 ---A- C:\Users\chris33\AppData\Local\Temp\GBM2D37.xml [938]

O61 - LFC:Last File Created 05/11/2011 - 09:42:45 ---A- C:\Users\chris33\AppData\Local\Temp\GBM2D47.xml [7144]

O61 - LFC:Last File Created 05/11/2011 - 09:42:49 ---A- C:\Users\chris33\AppData\Local\Temp\~DF99B42C34ADCD9398.TMP [163840]

O61 - LFC:Last File Created 05/11/2011 - 09:54:38 ---A- C:\Users\chris33\Documents\Mes Txt\ZHPDiag.Txt [182473]

O61 - LFC:Last File Created 05/11/2011 - 10:23:40 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-05-09-41-56.log [174]

O61 - LFC:Last File Created 05/11/2011 - 10:23:40 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-05-09-41-56.log [154]

O61 - LFC:Last File Created 05/11/2011 - 10:24:53 ---A- C:\Users\chris33\AppData\Local\Temp\GBMC753.xml [938]

O61 - LFC:Last File Created 05/11/2011 - 10:24:53 ---A- C:\Users\chris33\AppData\Local\Temp\GBMC774.xml [7144]

O61 - LFC:Last File Created 05/11/2011 - 10:25:34 ---A- C:\Users\chris33\AppData\Local\Temp\~DFEEB5086AE12D84EA.TMP [163840]

O61 - LFC:Last File Created 05/11/2011 - 10:46:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-05-10-24-29.log [174]

O61 - LFC:Last File Created 05/11/2011 - 10:46:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-05-10-24-29.log [154]

O61 - LFC:Last File Created 05/11/2011 - 10:47:32 ---A- C:\Users\chris33\AppData\Local\Temp\GBM9ECD.xml [938]

O61 - LFC:Last File Created 05/11/2011 - 10:47:32 ---A- C:\Users\chris33\AppData\Local\Temp\GBM9ECE.xml [7144]

O61 - LFC:Last File Created 05/11/2011 - 10:47:48 ---A- C:\Users\chris33\AppData\Local\Temp\~DF2506001CE91B2234.TMP [163840]

O61 - LFC:Last File Created 05/11/2011 - 10:47:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-05-10-47-18.log [56960]

O61 - LFC:Last File Created 05/11/2011 - 10:47:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-05-10-47-18.log [154]

O61 - LFC:Last File Created 05/11/2011 - 12:42:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\runningScanLog.log [2908]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass.dll.8 [92740]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass.dll.8_1 [92740]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_aac.dll.8 [150532]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_aac.dll.8_1 [150532]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_alac.dll.8 [12788]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_alac.dll.8_1 [12788]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_ape.dll.8 [33252]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_ape.dll.8_1 [33252]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_flac.dll.8 [23620]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_flac.dll.8_1 [23620]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_mpc.dll.8 [18900]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_mpc.dll.8_1 [18900]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_tta.dll.8 [8676]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_tta.dll.8_1 [8676]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_wv.dll.8 [28100]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_wv.dll.8_1 [28100]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\d3dramp.dll.8 [593924]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\dcbasssource.ax.8 [245764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\dcbasssource.ax.8_1 [245764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divx.dll.8 [696324]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divx.dll.8_1 [696324]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divxdech264.ax.8 [629764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divxdech264.ax.8_1 [629764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ivinav.ax.8 [601604]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ivinav.ax.8_1 [601604]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\minicalc.exe.8 [23044]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\minicalc.exe.8_1 [23044]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ogmcalc.exe.8 [9220]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ogmcalc.exe.8_1 [9220]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\packard bell game console.exe.30_1 [4648932]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\statsreader.exe.8 [13828]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\statsreader.exe.8_1 [13828]

O61 - LFC:Last File Created 05/11/2011 - 12:47:27 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Quarantine\AnyDVD.HD.6.8.4.0.Final-RES-patch.exe.cd631b175679f57d09a7e96f566b066.d9f1ebfdbe8e8bae16d7e59b59df4e1.aawqff [132612]

O61 - LFC:Last File Created 05/11/2011 - 12:47:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\1-7-006E6CC8.lsf [3097]

O61 - LFC:Last File Created 05/11/2011 - 12:53:33 -SH-- C:\Users\chris33\AppData\Local\Temp\Cookies\desktop.ini [67]

O61 - LFC:Last File Created 05/11/2011 - 12:53:36 -SH-- C:\Users\chris33\AppData\Local\Temp\History\History.IE5\desktop.ini [67]

O61 - LFC:Last File Created 05/11/2011 - 12:56:22 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\Local Folders\SUIVI COMMANDE [4460108]

O61 - LFC:Last File Created 05/11/2011 - 12:56:25 ---A- C:\Users\chris33\AppData\Local\Thunderbird\Profiles\jpfngemt.default\Cache\6\1F\6EE76d01 [16392]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Local\Thunderbird\Profiles\jpfngemt.default\Cache\_CACHE_003_ [111420]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Local\Thunderbird\Profiles\jpfngemt.default\Cache\_CACHE_MAP_ [8468]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\cert8.db [65536]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\folderTree.json [1207]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\key3.db [16384]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\prefs.js [17873]

O61 - LFC:Last File Created 05/11/2011 - 12:59:35 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\virtualFolders.dat [748]

O61 - LFC:Last File Created 05/11/2011 - 13:24:16 --HA- C:\Users\chris33\AppData\Local\IconCache.db [9953339]

O61 - LFC:Last File Created 05/11/2011 - 13:25:25 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\3-0-0000730C.lsf [17464]

O61 - LFC:Last File Created 05/11/2011 - 13:25:25 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\usage_statistics.dat [9]

O61 - LFC:Last File Created 05/11/2011 - 13:25:35 ---A- C:\Users\All Users\Alwil Software\Avast5\URL.db [2033664]

O61 - LFC:Last File Created 05/11/2011 - 13:25:54 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Quarantine\AAWQF20111105132554.aawqif [1034]

O61 - LFC:Last File Created 05/11/2011 - 16:46:55 ---A- C:\Users\chris33\AppData\Local\Temp\GBMF154.xml [938]

O61 - LFC:Last File Created 05/11/2011 - 16:46:55 ---A- C:\Users\chris33\AppData\Local\Temp\GBMF164.xml [7144]

O61 - LFC:Last File Created 05/11/2011 - 16:47:01 ---A- C:\Users\chris33\AppData\Local\Temp\~DFB62BCA8B9BE9C861.TMP [163840]

O61 - LFC:Last File Created 05/11/2011 - 16:47:38 ---A- C:\Users\All Users\Alwil Software\Avast5\Log.db [72704]

O61 - LFC:Last File Created 05/11/2011 - 16:47:38 ---A- C:\Users\All Users\Alwil Software\Avast5\db1ca9d611b393ea9-50f6e5af.dat [3068448]

O61 - LFC:Last File Created 05/11/2011 - 16:47:38 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\quarantine.dat [8092]

O61 - LFC:Last File Created 05/11/2011 - 16:47:38 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\rp_rules.dat [44]

O61 - LFC:Last File Created 05/11/2011 - 16:47:38 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\rp_stats.dat [470]

O61 - LFC:Last File Created 05/11/2011 - 16:47:38 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\whitelist.dat [9]

O61 - LFC:Last File Created 05/11/2011 - 16:47:39 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\rc.dat [9]

O61 - LFC:Last File Created 05/11/2011 - 16:47:40 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Debug.log [2102686]

O61 - LFC:Last File Created 05/11/2011 - 16:47:40 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-05-13-25-24.log [174]

O61 - LFC:Last File Created 05/11/2011 - 16:47:40 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-05-13-25-24.log [154]

O61 - LFC:Last File Created 05/11/2011 - 16:48:09 ---A- C:\Users\All Users\Alwil Software\Avast5\snx_lconfig.xml [446]

O61 - LFC:Last File Created 05/11/2011 - 16:48:31 ---A- C:\Users\All Users\Alwil Software\Avast5\avast5.ini [7152]

O61 - LFC:Last File Created 05/11/2011 - 16:48:33 ---A- C:\Users\All Users\Alwil Software\Avast5\log\Chest.log [325]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\EmailShield.txt [135081]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\FileSystemShield.txt [135263]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\IMShield.txt [135081]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\NetworkShield.txt [135081]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\P2PShield.txt [135081]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\ScriptShield.txt [45895]

O61 - LFC:Last File Created 05/11/2011 - 16:48:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\WebShield.txt [135300]

O61 - LFC:Last File Created 05/11/2011 - 16:48:52 ---A- C:\Users\All Users\Alwil Software\Avast5\report\BehaviorShield.txt [165563]

O61 - LFC:Last File Created 05/11/2011 - 16:48:52 ---A- C:\Users\chris33\AppData\Local\Temp\GBMBA2A.xml [938]

O61 - LFC:Last File Created 05/11/2011 - 16:48:52 ---A- C:\Users\chris33\AppData\Local\Temp\GBMBA2B.xml [7144]

O61 - LFC:Last File Created 05/11/2011 - 16:48:56 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\httpd.conf [1846]

O61 - LFC:Last File Created 05/11/2011 - 16:48:56 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\shares.conf [349]

O61 - LFC:Last File Created 05/11/2011 - 16:48:58 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\access.log [0]

O61 - LFC:Last File Created 05/11/2011 - 16:48:58 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\error.log [1815]

O61 - LFC:Last File Created 05/11/2011 - 16:48:58 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\httpd.pid [6]

O61 - LFC:Last File Created 05/11/2011 - 16:48:58 ---A- C:\Users\chris33\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0]

O61 - LFC:Last File Created 05/11/2011 - 16:49:01 ---A- C:\Users\Public\Documents\AtherosServiceConfig.ini [35]

O61 - LFC:Last File Created 05/11/2011 - 16:49:14 R--A- C:\Users\All Users\BackupManager\Logs\SyncJob.log [175206]

O61 - LFC:Last File Created 05/11/2011 - 16:49:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Scan_2011-11-05-16-48-31.log [174]

O61 - LFC:Last File Created 05/11/2011 - 16:49:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Logs\Service_2011-11-05-16-48-31.log [154]

O61 - LFC:Last File Created 05/11/2011 - 16:49:21 ---A- C:\Users\All Users\Lavasoft\License\guid.dat [72]

O61 - LFC:Last File Created 05/11/2011 - 16:49:21 ---A- C:\Users\chris33\AppData\Local\Temp\ArmUI.ini [148526]

O61 - LFC:Last File Created 05/11/2011 - 16:49:22 ---A- C:\Users\chris33\AppData\Local\Temp\~DF980EEC483E302756.TMP [163840]

O61 - LFC:Last File Created 05/11/2011 - 16:49:38 ---A- C:\Users\All Users\Alwil Software\Avast5\log\Setup.log [187072]

O61 - LFC:Last File Created 05/11/2011 - 16:49:39 ---A- C:\Users\chris33\AppData\Local\ATI\ACE\Manifest.Bin [27796]

O61 - LFC:Last File Created 05/11/2011 - 16:49:39 ---A- C:\Users\chris33\AppData\Local\ATI\ACE\Manifest.xml [20446]

O61 - LFC:Last File Created 05/11/2011 - 16:49:41 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Backup\backup.dat [462]

O61 - LFC:Last File Created 05/11/2011 - 16:49:41 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Backup\userinit.exe.e51d9f118b27f9953dd23f46acaf5708.61ac3efdfacfdd3f0f11dd4fd4044223.aawbackup [26628]

O61 - LFC:Last File Created 05/11/2011 - 16:49:41 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\statistics.dat [307467]

O61 - LFC:Last File Created 05/11/2011 - 16:49:42 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\settings.dat [82297]

O61 - LFC:Last File Created 05/11/2011 - 16:49:59 ---A- C:\Users\chris33\AppData\Local\ATI\ACE\Profiles.xml [12492]

O61 - LFC:Last File Created 05/11/2011 - 16:50:02 ---A- C:\Users\chris33\AppData\Local\Temp\AdobeARM.log [635379]

O61 - LFC:Last File Created 05/11/2011 - 16:51:27 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\news.dat [728]

O61 - LFC:Last File Created 05/11/2011 - 16:52:31 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\54J10PPS.txt [306]

O61 - LFC:Last File Created 05/11/2011 - 16:52:31 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\CSTNRS6V.txt [269]

O61 - LFC:Last File Created 05/11/2011 - 16:52:31 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\IRRK6IAJ.txt [68]

O61 - LFC:Last File Created 05/11/2011 - 16:52:31 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\NLK3WAOC.txt [259]

O61 - LFC:Last File Created 05/11/2011 - 16:52:31 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\QE1HIP0A.txt [241]

O61 - LFC:Last File Created 05/11/2011 - 16:52:32 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\TNVBDB9J.txt [67]

O61 - LFC:Last File Created 05/11/2011 - 16:52:34 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\43ROE6LB.txt [101]

O61 - LFC:Last File Created 05/11/2011 - 16:52:39 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\L0L2WJPE.txt [117]

O61 - LFC:Last File Created 05/11/2011 - 16:52:39 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\OH70BEDO.txt [204]

O61 - LFC:Last File Created 05/11/2011 - 16:52:40 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\66Y50CXW.txt [420]

O61 - LFC:Last File Created 05/11/2011 - 16:52:40 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\PELRLC0B.txt [204]

O61 - LFC:Last File Created 05/11/2011 - 16:52:40 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\R392VPE4.txt [68]

O61 - LFC:Last File Created 05/11/2011 - 16:52:41 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\1C9PSF2K.txt [71]

O61 - LFC:Last File Created 05/11/2011 - 16:52:41 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\NOJKOVD1.txt [499]

O61 - LFC:Last File Created 05/11/2011 - 16:52:42 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\DZUDFW32.txt [447]

O61 - LFC:Last File Created 05/11/2011 - 16:52:42 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\E983HQZ2.txt [100]

O61 - LFC:Last File Created 05/11/2011 - 16:52:42 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\EU3BMAQH.txt [408]

O61 - LFC:Last File Created 05/11/2011 - 16:52:58 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\cookies.sqlite-shm [32768]

O61 - LFC:Last File Created 05/11/2011 - 16:52:58 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\cookies.sqlite-wal [0]

O61 - LFC:Last File Created 05/11/2011 - 16:53:00 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\Local Folders\SUIVI COMMANDE.msf [114315]

O61 - LFC:Last File Created 05/11/2011 - 16:53:01 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Inbox [2818]

O61 - LFC:Last File Created 05/11/2011 - 16:53:02 ---A- C:\Users\chris33\AppData\Local\Thunderbird\Profiles\jpfngemt.default\Cache\_CACHE_001_ [41861]

O61 - LFC:Last File Created 05/11/2011 - 16:53:02 ---A- C:\Users\chris33\AppData\Local\Thunderbird\Profiles\jpfngemt.default\Cache\_CACHE_002_ [35916]

O61 - LFC:Last File Created 05/11/2011 - 16:53:03 ---A- C:\Users\chris33\AppData\Local\Thunderbird\Profiles\jpfngemt.default\Cache\A\C1\F3C01d01 [58543]

O61 - LFC:Last File Created 05/11/2011 - 16:53:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\smart mailboxes\Inbox.msf [2344]

O61 - LFC:Last File Created 05/11/2011 - 16:53:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\places.sqlite-shm [32768]

O61 - LFC:Last File Created 05/11/2011 - 16:53:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\places.sqlite-wal [0]

O61 - LFC:Last File Created 05/11/2011 - 16:53:11 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Trash [2662231]

O61 - LFC:Last File Created 05/11/2011 - 16:53:12 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Trash.msf [66400]

O61 - LFC:Last File Created 05/11/2011 - 16:53:12 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\smart mailboxes\Trash.msf [3051]

O61 - LFC:Last File Created 05/11/2011 - 16:53:25 -SHA- C:\Users\chris33\AppData\Local\Temp\History\History.IE5\MSHist012011110520111106\index.dat [32768]

O61 - LFC:Last File Created 05/11/2011 - 16:53:43 ---A- C:\Users\chris33\AppData\Local\Temp\2C0E.tmp [349136]

O61 - LFC:Last File Created 05/11/2011 - 16:53:46 ---A- C:\Users\All Users\Alwil Software\Avast5\log\usntr.log [28056]

O61 - LFC:Last File Created 05/11/2011 - 16:54:29 ---A- C:\Users\chris33\AppData\Local\Temp\au-descriptor-1.6.0_29-b110.xml [7805]

O61 - LFC:Last File Created 05/11/2011 - 16:54:29 ---A- C:\Users\chris33\AppData\Local\Temp\jusched.log [25973]

O61 - LFC:Last File Created 05/11/2011 - 16:56:45 ---A- C:\Users\All Users\Alwil Software\Avast5\log\aswAr.log [65390]

O61 - LFC:Last File Created 05/11/2011 - 16:56:45 ---A- C:\Users\All Users\Alwil Software\Avast5\log\autosandbox.log [9468]

O61 - LFC:Last File Created 05/11/2011 - 16:57:02 ---A- C:\Users\All Users\Alwil Software\Avast5\log\Mail.log [10264]

O61 - LFC:Last File Created 05/11/2011 - 16:57:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Inbox.msf [3004]

O61 - LFC:Last File Created 05/11/2011 - 16:57:11 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Inbox [55770870]

O61 - LFC:Last File Created 05/11/2011 - 16:57:58 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\session.json [468]

O61 - LFC:Last File Created 05/11/2011 - 16:59:06 ---A- C:\Users\All Users\Packard Bell\Packard Bell Updater\_UpdaterService_LOG.txt [1416649]

O61 - LFC:Last File Created 05/11/2011 - 16:59:10 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\global-messages-db.sqlite [3665920]

O61 - LFC:Last File Created 05/11/2011 - 17:00:49 -SH-- C:\Users\chris33\AppData\Local\Temp\Cookies\index.dat [49152]

O61 - LFC:Last File Created 05/11/2011 - 17:00:49 -SH-- C:\Users\chris33\AppData\Local\Temp\History\History.IE5\index.dat [114688]

O61 - LFC:Last File Created 05/11/2011 - 17:02:56 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\popstate.dat [656]

O61 - LFC:Last File Created 05/11/2011 - 17:02:56 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.sfr.fr\popstate.dat [129]

O61 - LFC:Last File Created 05/11/2011 - 17:02:57 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Inbox.msf [94109]

O61 - LFC:Last File Created 05/11/2011 - 17:02:57 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\popstate.dat [125]

O61 - LFC:Last File Created 05/11/2011 - 17:02:59 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\panacea.dat [22023]

 

 

---\\ Liste des outils de nettoyage (LATC) (O63)

O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1

O63 - Logiciel: Ad-Remover - (.Pas de propriétaire.) [HKCU] -- Ad-Remover

 

 

---\\ Liste des services Legacy (LALS) (O64)

O64 - Services: CurCS - C:\Windows\system32\drivers\afd.sys (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD

O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWFSBLK.sys - (.not file.) - aswFsBlk (aswFsBlk) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWFSBLK

O64 - Services: CurCS - C:\Windows\system32\drivers\aswMonFlt.sys - aswMonFlt (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT

O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWRDR.sys - (.not file.) - aswRdr (aswRdr) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWRDR

O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWSNX.sys - (.not file.) - aswSnx (aswSnx) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWSNX

O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWSP.sys - (.not file.) - aswSP (aswSP) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWSP

O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWTDI.sys - (.not file.) - avast! Network Shield Support (aswTdi) .(.Pas de propriétaire - Pas de description.) - LEGACY_ASWTDI

O64 - Services: CurCS - C:\Windows\System32\drivers\atapi.sys - IDE Channel (atapi) .(.Microsoft Corporation - ATAPI IDE Miniport Driver.) - LEGACY_ATAPI

O64 - Services: CurCS - C:\Windows\system32\Drivers\BEEP.sys - (.not file.) - Beep (Beep) .(.Pas de propriétaire - Pas de description.) - LEGACY_BEEP

O64 - Services: CurCS - C:\Windows\system32\browser.dll (bowser) .(.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) - LEGACY_BOWSER

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\cdfs.sys - CD/DVD File System Reader (cdfs) .(.Microsoft Corporation - CD-ROM File System Driver.) - LEGACY_CDFS

O64 - Services: CurCS - C:\Windows\system32\clfs.sys (CLFS) .(.Microsoft Corporation - Common Log File System Driver.) - LEGACY_CLFS

O64 - Services: CurCS - C:\Windows\System32\Drivers\cng.sys - CNG (CNG) .(.Microsoft Corporation - Kernel Cryptography, Next Generation.) - LEGACY_CNG

O64 - Services: CurCS - C:\Users\chris33\AppData\Local\Temp\cpuz132\cpuz132_x64.sys (.not file.) - cpuz132 (cpuz132) .(.Pas de propriétaire - Pas de description.) - LEGACY_CPUZ132

O64 - Services: CurCS - C:\Windows\system32\drivers\dfsc.sys (DfsC) .(.Microsoft Corporation - DFS Namespace Client Driver.) - LEGACY_DFSC

O64 - Services: CurCS - C:\Windows\system32\drivers\discache.sys (discache) .(.Microsoft Corporation - System Indexer/Cache Driver.) - LEGACY_DISCACHE

O64 - Services: CurCS - C:\Windows\system32\drivers\dxgkrnl.sys - LDDM Graphics Subsystem (DXGKrnl) .(.Microsoft Corporation - DirectX Graphics Kernel.) - LEGACY_DXGKRNL

O64 - Services: CurCS - (.not file.) - Symantec Eraser Control driver (eeCtrl) .(.Pas de propriétaire - Pas de description.) - LEGACY_EECTRL

O64 - Services: CurCS - C:\Windows\System32\Drivers\ElbyCDIO.sys - ElbyCDIO Driver (ElbyCDIO) .(.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) - LEGACY_ELBYCDIO

O64 - Services: CurCS - (.not file.) - EraserUtilDrvI9 (EraserUtilDrvI9) .(.Pas de propriétaire - Pas de description.) - LEGACY_ERASERUTILDRVI9

O64 - Services: CurCS - (.not file.) - EraserUtilRebootDrv (EraserUtilRebootDrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_ERASERUTILREBOOTDRV

O64 - Services: CurCS - C:\Windows\system32\Drivers\EXFAT.sys - (.not file.) - exFAT File System Driver (exfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_EXFAT

O64 - Services: CurCS - C:\Windows\system32\Drivers\FASTFAT.sys - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_FASTFAT

O64 - Services: CurCS - C:\Windows\system32\drivers\fileinfo.sys (FileInfo) .(.Microsoft Corporation - FileInfo Filter Driver.) - LEGACY_FILEINFO

O64 - Services: CurCS - C:\Windows\system32\drivers\fltmgr.sys (FltMgr) .(.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) - LEGACY_FLTMGR

O64 - Services: CurCS - C:\Windows\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(.Pas de propriétaire - Pas de description.) - LEGACY_FS_REC

O64 - Services: CurCS - C:\Windows\system32\drivers\fvevol.sys (fvevol) .(.Microsoft Corporation - BitLocker Drive Encryption Driver.) - LEGACY_FVEVOL

O64 - Services: CurCS - C:\Windows\system32\drivers\http.sys (HTTP) .(.Microsoft Corporation - HTTP Pile du protocole.) - LEGACY_HTTP

O64 - Services: CurCS - C:\Windows\system32\drivers\hwpolicy.sys (hwpolicy) .(.Microsoft Corporation - Hardware Policy Driver.) - LEGACY_HWPOLICY

O64 - Services: CurCS - (.not file.) - IDSVia64 (IDSVia64) .(.Pas de propriétaire - Pas de description.) - LEGACY_IDSVIA64

O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecdd.sys - KSecDD (KSecDD) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECDD

O64 - Services: CurCS - C:\Windows\System32\Drivers\ksecpkg.sys - KSecPkg (KSecPkg) .(.Microsoft Corporation - Kernel Security Support Provider Interface.) - LEGACY_KSECPKG

O64 - Services: CurCS - C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys - Lavasoft helper driver (Lavasoft Kernexplorer) .(.Pas de propriétaire - Pas de description.) - LEGACY_LAVASOFT_KERNEXPLORER

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\Lbd.sys - Lbd (Lbd) .(.Lavasoft AB - Boot Driver.) - LEGACY_LBD

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\lltdio.sys - Link-Layer Topology Discovery Mapper I/O Driver (lltdio) .(.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) - LEGACY_LLTDIO

O64 - Services: CurCS - C:\Windows\system32\drivers\luafv.sys (luafv) .(.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) - LEGACY_LUAFV

O64 - Services: CurCS - C:\Windows\system32\drivers\mountmgr.sys (mountmgr) .(.Microsoft Corporation - Gestionnaire des points de montage.) - LEGACY_MOUNTMGR

O64 - Services: CurCS - C:\Windows\system32\FirewallAPI.dll (mpsdrv) .(.Microsoft Corporation - API du Pare-feu Windows.) - LEGACY_MPSDRV

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb10) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB10

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (mrxsmb20) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_MRXSMB20

O64 - Services: CurCS - C:\Windows\System32\drivers\msahci.sys - msahci (msahci) .(.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) - LEGACY_MSAHCI

O64 - Services: CurCS - C:\Windows\system32\Drivers\MSFS.sys - Msfs (Msfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSFS

O64 - Services: CurCS - C:\Windows\System32\drivers\msisadrv.sys - msisadrv (msisadrv) .(.Microsoft Corporation - ISA Driver.) - LEGACY_MSISADRV

O64 - Services: CurCS - C:\Windows\system32\drivers\mup.sys (Mup) .(.Microsoft Corporation - Multiple UNC Provider Driver.) - LEGACY_MUP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\nwifi.sys - NativeWiFi Filter (NativeWifiP) .(.Microsoft Corporation - Pilote de miniport WiFi natif.) - LEGACY_NATIVEWIFIP

O64 - Services: CurCS - C:\Windows\system32\drivers\ndis.sys (NDIS) .(.Microsoft Corporation - Pilote NDIS 6.20.) - LEGACY_NDIS

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\ndisuio.sys - NDIS Usermode I/O Protocol (Ndisuio) .(.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) - LEGACY_NDISUIO

O64 - Services: CurCS - C:\Windows\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDPROXY

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\netbios.sys - NetBIOS Interface (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS

O64 - Services: CurCS - C:\Windows\system32\drivers\netbt.sys (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT

O64 - Services: CurCS - C:\Windows\System32\drivers\npf.sys - NetGroup Packet Filter Driver (NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF

O64 - Services: CurCS - C:\Windows\system32\Drivers\NPFS.sys - Npfs (Npfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NPFS

O64 - Services: CurCS - C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) .(.Microsoft Corporation - NSI Proxy.) - LEGACY_NSIPROXY

O64 - Services: CurCS - C:\Windows\system32\Drivers\NTFS.sys - Ntfs (Ntfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NTFS

O64 - Services: CurCS - C:\Windows\system32\Drivers\NULL.sys - Null (Null) .(.Pas de propriétaire - Pas de description.) - LEGACY_NULL

O64 - Services: CurCS - C:\Windows\System32\drivers\pcw.sys - Performance Counters for Windows Driver (pcw) .(.Microsoft Corporation - Performance Counters for Windows Driver.) - LEGACY_PCW

O64 - Services: CurCS - C:\Windows\System32\drivers\peauth.sys - PEAUTH (PEAUTH) .(.Microsoft Corporation - Protected Environment Authentication and Au.) - LEGACY_PEAUTH

O64 - Services: CurCS - C:\Windows\system32\drivers\pacer.sys (Psched) .(.Microsoft Corporation - Planificateur de paquets QoS.) - LEGACY_PSCHED

O64 - Services: CurCS - C:\Windows\system32\drivers\qwavedrv.sys (QWAVEdrv) .(.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) - LEGACY_QWAVEDRV

O64 - Services: CurCS - C:\Windows\system32\wkssvc.dll (rdbss) .(.Microsoft Corporation - DLL du service Station de travail.) - LEGACY_RDBSS

O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD

O64 - Services: CurCS - C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) .(.Microsoft Corporation - RDP Encoder Miniport.) - LEGACY_RDPENCDD

O64 - Services: CurCS - C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) .(.Microsoft Corporation - RDP Reflector Driver Miniport.) - LEGACY_RDPREFMP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\rspndr.sys - Link-Layer Topology Discovery Responder (rspndr) .(.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) - LEGACY_RSPNDR

O64 - Services: CurCS - C:\Windows\system32\Drivers\SECDRV.sys - (.not file.) - Security Driver (secdrv) .(.Pas de propriétaire - Pas de description.) - LEGACY_SECDRV

O64 - Services: CurCS - C:\Windows\system32\Drivers\SPLDR.sys - (.not file.) - Security Processor Loader Driver (spldr) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPLDR

O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV

O64 - Services: CurCS - C:\Windows\system32\srvsvc.dll (srv2) .(.Microsoft Corporation - DLL du service Serveur.) - LEGACY_SRV2

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\srvnet.sys - srvnet (srvnet) .(.Microsoft Corporation - Server Network driver.) - LEGACY_SRVNET

O64 - Services: CurCS - (.not file.) - Symantec Extended File Attributes (SymEFA) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMEFA

O64 - Services: CurCS - (.not file.) - Symantec Network Filter Driver (SYMFW) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMFW

O64 - Services: CurCS - (.not file.) - Symantec Network Filter Driver (SYMNDISV) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMNDISV

O64 - Services: CurCS - (.not file.) - Symantec Network Dispatch Driver (SYMTDI) .(.Pas de propriétaire - Pas de description.) - LEGACY_SYMTDI

O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (Tcpip) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TCPIP

O64 - Services: CurCS - C:\Windows\System32\drivers\tcpipreg.sys - TCP/IP Registry Compatibility (tcpipreg) .(.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) - LEGACY_TCPIPREG

O64 - Services: CurCS - C:\Windows\system32\tcpipcfg.dll (tdx) .(.Microsoft Corporation - Objets de configuration du réseau.) - LEGACY_TDX

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\udfs.sys - udfs (udfs) .(.Microsoft Corporation - UDF File System Driver.) - LEGACY_UDFS

O64 - Services: CurCS - C:\Windows\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE

O64 - Services: CurCS - C:\Windows\system32\Pilotes\vmm.sys - Virtual Machine Monitor (vmm) .(.Microsoft Corporation - Virtual Machine Monitor.) - LEGACY_VMM

O64 - Services: CurCS - C:\Windows\system32\drivers\volmgrx.sys (volmgrx) .(.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) - LEGACY_VOLMGRX

O64 - Services: CurCS - C:\Windows\System32\drivers\volsnap.sys - Volumes de stockage (volsnap) .(.Microsoft Corporation - Pilote de cliché instantané du volume.) - LEGACY_VOLSNAP

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\vwififlt.sys - Virtual WiFi Filter Driver (vwififlt) .(.Microsoft Corporation - Virtual WiFi Filter Driver.) - LEGACY_VWIFIFLT

O64 - Services: CurCS - C:\Windows\system32\rascfg.dll (Wanarpv6) .(.Microsoft Corporation - Objets de configuration RAS.) - LEGACY_WANARPV6

O64 - Services: CurCS - C:\Windows\System32\drivers\Wdf01000.sys - Kernel Mode Driver Frameworks service (Wdf01000) .(.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) - LEGACY_WDF01000

O64 - Services: CurCS - C:\Windows\System32\DRIVERS\wfplwf.sys - WFP Lightweight Filter (WfpLwf) .(.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - LEGACY_WFPLWF

O64 - Services: CurCS - C:\Windows\System32\drivers\WudfPf.sys - User Mode Driver Frameworks Platform Driver (WudfPf) .(.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - LEGACY_WUDFPF

 

 

---\\ Observateur d'évènement d'application (OEA) (O66)

O66 - EventLog: ID=1000 (Application Error) - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe

O66 - EventLog: ID=80 (SideBySide) - (.Pas de propriétaire - Pas de description.) -- C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest

O66 - EventLog: ID=1000 (Application Error) - (.Acer - Acer Update Service.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe

O66 - EventLog: ID=1000 (Application Error) - (.NewTech Infosystems, Inc. - Backup Manager Module.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe

O66 - EventLog: ID=1000 (Application Error) - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe

O66 - EventLog: ID=1000 (Application Error) - (.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) -- c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

O66 - EventLog: ID=1000 (Application Error) - (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE

O66 - EventLog: ID=1000 (Application Error) - (.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) -- C:\Program Files\Windows Media Player\wmpnetwk.exe

O66 - EventLog: ID=1000 (Application Error) - (.SAMSUNG - SAMSUNG PC Share Manager MFC ?? ????.) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\SAMSUNG PC Share Manager.exe

 

 

---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.)

O67 - Shell Spawning: <.html> <htmlfile>[HKCR\..\open\Command] (.Pas de propriétaire - Pas de description.) -- "C:\Program Files (x86)\Internet Explorer\iexplore.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

 

 

---\\ Start Menu Internet (SMI) (O68)

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

 

 

---\\ Search Browser Infection (SBI) (O69)

O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - {searchTerms} - Bing

O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - {searchTerms} - Bing

O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} [DefaultScope] - (Google) - {searchTerms} - Recherche Google

O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - {searchTerms} - Recherche Google

 

 

---\\ Recherche des services démarrés par Svchost (SSS) (O83)

O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [0]

O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [0]

O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\Windows\System32\certprop.dll [0]

O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [0]

O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [0]

O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [0]

O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\Windows\System32\rasauto.dll [0]

O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [0]

O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]

O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\Windows\System32\sens.dll [49664]

O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\Windows\System32\ipnathlp.dll [0]

O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows.) -- C:\Windows\System32\tapisrv.dll [242176]

O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\Windows\System32\termsrv.dll [0]

O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\Windows\system32\wuaueng.dll [0]

O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\Windows\System32\qmgr.dll [0]

O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]

O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\Windows\System32\iphlpsvc.dll [0]

O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [0]

O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [0]

O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\Windows\system32\sessenv.dll [113664]

O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [0]

 

 

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)

SR - | Auto 08/12/2008 169312 | c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe (AdobeActiveFileMonitor7.0) . (.Adobe Systems Incorporated.) - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

SR - | Auto 08/12/2008 0 | C:\Windows\system32\atiesrxx.exe (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe

SR - | Auto 14/10/2010 52896 | C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

SR - | Auto 06/09/2011 44768 | "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

SS - | Demand 23/04/2007 94208 | "C:\Program Files (x86)\Common Files\Droppix\DxService.exe (Droppix Service) . (.Droppix.) - C:\Program Files (x86)\Common Files\Droppix\DxService.exe

SR - | Auto 30/09/2009 844320 | C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe

SS - | Demand 25/01/2010 651720 | "C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

SR - | Auto 28/08/2009 1150496 | C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe (Greg_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe

SS - | Auto 21/03/2010 135664 | C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

SS - | Demand 21/03/2010 135664 | C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

SR - | Auto 04/11/2011 2152152 | "C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Ad-Aware Service) . (.Lavasoft Limited.) - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe

SS - | Demand 04/11/2011 0 | C:\Windows\system32\lxcycoms.exe (lxcy_device) . (.Pas de propriétaire.) - C:\Windows\system32\lxcycoms.exe

SS - | Demand 28/07/2009 935208 | C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe

SR - | Auto 24/09/2009 62720 | C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe (NTI IScheduleSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe

SR - | Auto 29/08/2009 44312 | "C:\Program Files (x86)\Packard Bell GameZone\GameConsole\OberonGameConsoleService.exe (OberonGameConsoleService) . (.Pas de propriétaire.) - C:\Program Files (x86)\Packard Bell GameZone\GameConsole\OberonGameConsoleService.exe

SR - | Auto 14/07/2009 20992 | C:\Windows\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe

SS - | Demand 14/07/2009 0 | "%ProgramFiles(x86)%\WinPcap\rpcapd.exe (rpcapd) . (.Pas de propriétaire.) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe

SR - | Auto 04/07/2009 240160 | C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (Updater Service) . (.Acer.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe

SR - | Auto 14/07/2009 20992 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SS - | Demand 08/01/2009 4136960 | C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe (WiselinkPro) . (.Pas de propriétaire.) - C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe

SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe

 

 

---\\ Recherche Master Boot Record Infection (MBR)(O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.1 by Gmer, GMER - Rootkit Detector and Remover

Run by chris33 at 05/11/2011 17:10:35

 

device: opened successfully

user: error reading MBR

 

Disk trace:

error: Read Descripteur non valide

kernel: error reading MBR

 

 

---\\ Recherche Master Boot Record Infection (MBRCheck)(O80)

Written by ad13, http://ad13.geekstog

Run by chris33 at 05/11/2011 17:10:35

Use the desktop link 'MBRCheck' to have full report

 

 

 

 

End of the scan (1570 lines in 06mn 54s)(0)

 

je vous remercie d'avance pour votre aide

Lien vers le commentaire
Partager sur d’autres sites

Bonsoir,

 

Rapport de ZHPDiag v1.27.1421 par Nicolas Coolman, Update du 16/12/2010

 

Cette version de zhpdiag est obsolète.

mettez à jour.

Téléchargez ZhpDiag de Coolman

 

Téléchargez TFC par OldTimer sur votre Bureau pour supprimer vos fichiers temporaires

Faites un double clic sur TFC.exe pour le lancer.

Sous Vista, faites un clic droit sur le fichier et choisissez Exécuter en tant qu'Administrateur

L'outil va fermer tous les programmes lors de son exécution, donc vérifiez que vous avez sauvegardé tout votre travail en cours auparavant.

Cliquez sur le bouton Start pour lancer le processus.

Selon la fréquence à laquelle vous supprimez vos fichiers temporaires, cela peut durer de quelques secondes à une minute ou deux.

Laissez le programme s'exécuter sans l'interrompre.

Lorsqu'il aura terminé, l'outil devrait faire redémarrer votre systèmepour parachever le nettoyage..

S'il ne le faisait pas,faites redémarrer manuellement le PC

 

Vérifiez si vous avez encore ce message, svp.

Lien vers le commentaire
Partager sur d’autres sites

bonjour et merci Pear pour cette réponse.

 

j'ai exécuté TFC.EXE, mais le problème n'est pas résolu.

j'ai téléchargé la derniere version de ZHPdiag

en voici le rapport :

 

Rapport de ZHPDiag v1.28.22 par Nicolas Coolman, Update du 04/11/2011

Run by chris33 at 06/11/2011 08:50:12

Web site : ZHPDiag Outil de diagnostic

State : Version à jour.

 

 

---\\ Web Browser

MSIE: Internet Explorer v9.0.8112.16421 (Defaut)

 

---\\ Windows Product Information

Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

Windows Server License Manager Script : OK

~ Windows® 7, OEM_SLP channel

System Locked Preinstallation (OEM_SLP) : OK

Windows ID Activation : OK

~ Windows Partial Key : 7QJB7

Windows License : OK

~ Windows Remaining Initializations Number : 3

Software Protection Service (Protection logicielle) : OK

Windows Automatic Updates : OK

Windows Activation Technologies : OK

 

---\\ System Information

~ Processor: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD

~ Operating System: 64 Bits

Boot mode: Normal (Normal boot)

Total RAM: 3836 MB (52% free)

System Restore: Activé (Enable)

System drive C: has 180 GB (39%) free of 454 GB

 

---\\ Logged in mode

~ Computer Name: CHRIS-PORTABLE

~ User Name: chris33

~ All Users Names: HomeGroupUser$, chris33, Administrateur,

~ Unselected Option: O65

Logged in as Administrator

 

---\\ Environnement Variables

~ System Unit : C:\

~ %AppData% : C:\Users\chris33\AppData\Roaming\

~ %Desktop% : C:\Users\chris33\Desktop\

~ %Favorites% : C:\Users\chris33\Favorites\

~ %LocalAppData% : C:\Users\chris33\AppData\Local\

~ %StartMenu% : C:\Users\chris33\AppData\Roaming\Microsoft\Windows\Start Menu\

~ %Windir% : C:\Windows\

~ %System% : C:\Windows\system32\

 

---\\ DOS/Devices

C:\ Hard drive, Flash drive, Thumb drive (Free 180 Go of 454 Go)

D:\ CD-ROM drive (Not Inserted)

 

 

 

---\\ Security Center & Tools Informations

[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK

[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK

[HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK

~ Scan Security Center in 00mn 00s

 

 

 

---\\ Recherche particulière de fichiers génériques

[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Explorateur Windows.) (.02/07/2011 - 14:24:45.) -- C:\Windows\Explorer.exe [2872320]

[MD5.DD81D91FF3B0763C392422865C9AC12E] - (....) (.14/07/2009 - 02:39:31.) -- C:\Windows\system32\rundll32.exe [45568]

[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\system32\Wininit.exe [129024]

[MD5.271E8FB1354AA205A214F280A6766E30] - (.Microsoft Corporation - Internet Extensions for Win32.) (.12/10/2011 - 06:17:57.) -- C:\Windows\system32\wininet.dll [1389056]

[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.02/07/2011 - 14:25:30.) -- C:\Windows\system32\Winlogon.exe [390656]

[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.02/07/2011 - 14:27:26.) -- C:\Windows\system32\sppcomapi.dll [232448]

[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (....) (.02/07/2011 - 14:07:20.) -- C:\Windows\system32\fr-FR\user32.dll.mui [20480]

[MD5.D5B031C308A409A0A576BFF4CF083D30] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.16/06/2011 - 03:34:03.) -- C:\Windows\system32\drivers\AFD.sys [499200]

[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\drivers\atapi.sys [24128]

[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\drivers\Cdfs.sys [92160]

[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.02/07/2011 - 10:19:21.) -- C:\Windows\system32\drivers\Cdrom.sys [147456]

[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.02/07/2011 - 10:26:32.) -- C:\Windows\system32\drivers\DfsC.sys [102400]

[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.02/07/2011 - 11:43:43.) -- C:\Windows\system32\drivers\HDAudBus.sys [122368]

[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\drivers\i8042prt.sys [105472]

[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 01:10:03.) -- C:\Windows\system32\drivers\IpNat.sys [116224]

[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.16/06/2011 - 03:40:40.) -- C:\Windows\system32\drivers\MRxSmb.sys [158208]

[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.02/07/2011 - 10:23:20.) -- C:\Windows\system32\drivers\netBT.sys [261632]

[MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/07/2011 - 14:33:46.) -- C:\Windows\system32\drivers\ntfs.sys [1659776]

[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\drivers\Parport.sys [97280]

[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.02/07/2011 - 11:52:35.) -- C:\Windows\system32\drivers\Rasl2tp.sys [129536]

[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\drivers\smb.sys [93184]

[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.02/07/2011 - 10:21:56.) -- C:\Windows\system32\drivers\tdx.sys [119296]

~ Scan Generic Processes in 00mn 00s

 

 

 

---\\ Etat des fichiers cachés (Caché/Total)

~ Mes images (My Pictures) : 90/2630

~ Mes musiques (My Musics) : 174/1835

~ Mes Videos (My Videos) : 161/770

~ Mes Favoris (My Favorites) : 3/132

~ Mes Documents (My Documents) : 11/255

~ Mon Bureau (My Desktop) : 1/14

~ Menu demarrer (Programs) : 8/29

~ Scan Hidden Files in 00mn 19s

 

 

 

---\\ Processus lancés

[MD5.390679F7A217A5E73D756276C40AE887] - (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480] [PID.2056]

[MD5.FCBA15DD6E51399A66BC7816E4589DBF] - (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe [726336] [PID.2072]

[MD5.4ADA227EC4E1BBAD144EAABF02221853] - (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe [189056] [PID.2084]

[MD5.9ECBFD27FCC8E1D6CDD9D407A12E23F4] - (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe [262912] [PID.2324]

[MD5.07D0AF06A5D2445C9DC5824C567E36B8] - (.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe [24635] [PID.2448]

[MD5.5D70631ED11867458E3D69A24C22DC64] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1157128] [PID.4272]

[MD5.0E7C460A63E43D9A76E91430B50F254C] - (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe [1507448] [PID.4352]

[MD5.28FD28A29C637C9AFEFE0A26E27C6DFE] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe [91432] [PID.4428]

[MD5.E2B4488830B9F047930BB5FE0E4FD71B] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3722416] [PID.4436]

[MD5.47C1DE0A890613FFCFF1D67648EEDF90] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920] [PID.4452]

[MD5.6E3245DF783E58375B3465F03274743E] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254696] [PID.4732]

[MD5.4566BBE928EF23E1C5A55D02D64C2872] - (.Lavasoft Limited - Ad-Aware Tray Application.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe [1191216] [PID.5060]

[MD5.6EE99B6BC3F93C4F68A780781F2A638D] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [697344] [PID.3860]

[MD5.C76769F246250EDAD34A5581419E9D60] - (.AVAST Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [44768] [PID.]

[MD5.4D99FCA201B72E0F2CA996E357BAA170] - (.Lavasoft Limited - Ad-Aware Service Application.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2152152] [PID.]

[MD5.6D9FC1E7EA3C548F4D3455F0C3FEEF8C] - (.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) -- c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [169312] [PID.]

[MD5.816FD5A6F3C2F3D600900096632FC60E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe [1150496] [PID.]

[MD5.14E66F603FB187713AEB02AD3B0390CF] - (.NewTech Infosystems, Inc. - Backup Manager Module.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [62720] [PID.]

[MD5.70DDE3A86DBEB1D6C3C30AD687B1877A] - (.Acer - Acer Update Service.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [240160] [PID.]

~ Scan Processes Running in 00mn 00s

 

 

 

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)

R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google

R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.packardbell.com

R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = MSN Hotmail, Messenger, Actualité, Sport, People, Femmes - MSN France

R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Microsoft Corporation

R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Microsoft Corporation

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk

R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons

R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk

R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm

R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\System32\ieframe.dll

R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0

R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0

~ Scan IE Browser in 00mn 00s

 

 

 

---\\ Internet Explorer, Proxy Management (R5)

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

~ Scan Proxy management in 00mn 00s

 

 

 

---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)

F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,

F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Redirection du fichier Hosts (O1)

~ Le fichier hosts est sain (The hosts file is clean).

~ Scan Hosts File in 00mn 00s

 

 

 

---\\ Browser Helper Objects de navigateur (O2)

O2 - BHO: Lexmark Barre d'outils [64Bits] - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} . (...) -- C:\Program Files\Lexmark Toolbar\toolband.dll

O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Spybot-S&D IE Protection [64Bits] - {53707962-6F74-2D53-2644-206D7942484F} . (.Safer Networking Limited - SBSD IE Protection.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: (no name) [64Bits] - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline

O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin

O2 - BHO: Java Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

~ Scan BHO in 00mn 00s

 

 

 

---\\ Applications démarrées par registre & par dossier (O4)

O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

O4 - HKLM\..\Run: [Acer ePower Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe

O4 - HKLM\..\Run: [synTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [LXCYCATS] rundll32 C:\Windows\system32\spool\DRIVERS\x64\3\LXCYtime.dll, (.not file.)

O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe

O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe

O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O4 - HKCU\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [Neuf Media Center] . (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe

O4 - HKCU\..\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKCU\..\Run: [AnyDVD] . (.SlySoft, Inc. - AnyDVD Application.) -- C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

O4 - HKCU\..\RunOnce: [!SearchquDSFF] C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dll, (.not file.)

O4 - HKCU\..\RunOnce: [!SearchquFFHP] C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll, (.not file.)

O4 - HKLM\..\Wow6432Node\Run: [backupManagerTray] . (.NewTech Infosystems, Inc. - Packard Bell MyBackup.) -- C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe

O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe

O4 - HKLM\..\Wow6432Node\Run: [startCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe

O4 - HKLM\..\Wow6432Node\Run: [VideoWebCamera] . (.Suyin - Video Web Camera.) -- C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe

O4 - HKLM\..\Wow6432Node\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe

O4 - HKLM\..\Wow6432Node\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe

O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

O4 - HKLM\..\Wow6432Node\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe

O4 - HKLM\..\Wow6432Node\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKLM\..\Wow6432Node\Run: [TQ566808] D:\Setup.exe (.not file.)

O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe

O4 - HKLM\..\Wow6432Node\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [Neuf Media Center] . (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [GBMLite8AgentLaCie] . (.Genie-soft - Genie Backup Agent.) -- C:\Program Files (x86)\LaCie\Genie Backup Assistant\GBMAgent.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [AnyDVD] . (.SlySoft, Inc. - AnyDVD Application.) -- C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\RunOnce: [!SearchquDSFF] C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dll, (.not file.)

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\RunOnce: [!SearchquFFHP] C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll, (.not file.)

~ Scan Application in 00mn 00s

 

 

 

---\\ Autres liens utilisateurs (O4)

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\chris33\Desktop\Ad-Remover.lnk . (...) -- C:\Program Files (x86)\Ad-Remover\main.exe

O4 - Global Startup: C:\Users\chris33\Desktop\Audacity.lnk . (...) -- C:\Program Files (x86)\Audacity\audacity.exe

O4 - Global Startup: C:\Users\chris33\Desktop\DVD Shrink 3.2.lnk . (.DVD Shrink.) -- C:\Program Files (x86)\DVD Shrink\DVD Shrink 3.2.exe

O4 - Global Startup: C:\Users\chris33\Desktop\DVDFab HD Decrypter 4.lnk . (.Fengtao Software Inc..) -- C:\Program Files (x86)\DVDFab HD Decrypter 4\DVDFabHDDecrypter.exe

O4 - Global Startup: C:\Users\chris33\Desktop\DVDTHEQUE -.lnk . (...) -- C:\Users\chris33\Documents\Mes Excel\DVDTHEQUE.xlsx

O4 - Global Startup: C:\Users\chris33\Desktop\Easy Graphic Converter 1.2.lnk . (...) -- C:\Program Files (x86)\Easy Graphic Converter\ImageConverter.exe

O4 - Global Startup: C:\Users\chris33\Desktop\FIFA12.lnk . (...) -- C:\Users\chris33\Documents\Mes Excel\FIFA12.xls

O4 - Global Startup: C:\Users\chris33\Desktop\Formulaone2010.lnk . (...) -- C:\Users\chris33\Documents\Mes Excel\Formulaone2010.xlsx

O4 - Global Startup: C:\Users\chris33\Desktop\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe

O4 - Global Startup: C:\Users\chris33\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DVDFab HD Decrypter 4.lnk . (.Fengtao Software Inc..) -- C:\Program Files (x86)\DVDFab HD Decrypter 4\DVDFabHDDecrypter.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Easy Graphic Converter.lnk . (...) -- C:\Program Files (x86)\Easy Graphic Converter\ImageConverter.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk . (.Mozilla Messaging.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe

~ Scan Global Startup in 00mn 00s

 

 

 

---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)

O8 - Extra context menu item: E&xport to Microsoft Excel - (.not file.) - C:\PROGRA~2\MICROS~1\Office12\EXCEL.exe\

O8 - Extra context menu item: Envoyer à &Bluetooth - (.not file.) - C:\Program Files (x86)\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm

O8 - Extra context menu item: Google Sidewiki... - (.not file.) - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll\

~ Scan IE Menu Contextuel in 00mn 00s

 

 

 

---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)

O9 - Extra button: Send by Bluetooth to [64Bits] - {7815BE26-237D-41A8-A98F-F7BD75F71086} -- Clé orpheline

~ Scan IE Extra Buttons in 00mn 00s

 

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll

O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll

O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll

~ Scan Winsock in 00mn 00s

 

 

 

---\\ Modification Domaine/Adresses DNS (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{5B925DDF-5FBB-4DD4-87FA-1942590BE2E8}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS1\Services\Tcpip\..\{5B925DDF-5FBB-4DD4-87FA-1942590BE2E8}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CS2\Services\Tcpip\..\{5B925DDF-5FBB-4DD4-87FA-1942590BE2E8}: DhcpNameServer = 192.168.1.1

~ Scan Domain in 00mn 00s

 

 

 

---\\ Protocole additionnel (O18)

O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\Windows\System32\mshtml.dll

O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll

O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: grooveLocalGWS [64Bits] - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll

O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll

O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\Windows\System32\mshtml.dll

O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL

O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\Windows\System32\mshtml.dll

O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll

O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\system32\urlmon.dll

O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll

O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll

O18 - Handler: ms-itss [64Bits] - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll

O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL

O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\Windows\System32\mshtml.dll

O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll

O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft ® HTML Viewer.) -- C:\Windows\System32\mshtml.dll

O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll

O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll

O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll

O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll

O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

~ Scan Protocole Additionnel in 00mn 00s

 

 

 

---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

~ Scan SSODL in 00mn 00s

 

 

 

---\\ Liste des services NT non Microsoft et non désactivés (O23)

O23 - Service: Adobe Active File Monitor V7 (AdobeActiveFileMonitor7.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe

O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe

O23 - Service: GRegService (Greg_Service) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe

O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Lavasoft Ad-Aware Service (Lavasoft Ad-Aware Service) . (.Lavasoft Limited - Ad-Aware Service Application.) - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe

O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NewTech Infosystems, Inc. - Backup Manager Module.) - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe

O23 - Service: Oberon Media Game Console service (OberonGameConsoleService) . (.Pas de propriétaire - OberonGameConsoleService.) - C:\Program Files (x86)\Packard Bell GameZone\GameConsole\OberonGameConsoleService.exe

O23 - Service: Updater Service (Updater Service) . (.Acer - Acer Update Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe

~ Scan Services in 00mn 00s

 

 

 

---\\ Enumération Active Desktop & MHTML Editor (O24)

O24 - Default MHTML Editor: Last - .(...) - (.not file.)

~ Scan Desktop Component in 00mn 00s

 

 

 

---\\ BootExecute (O34)

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

O34 - HKLM BootExecute: (lsdelete) - File not found

~ Scan Keys in 00mn 00s

 

 

 

---\\ Tâches planifiées en automatique (O39)

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Ad-Aware Update (Weekly).job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

[MD5.5608E451B9D69B548103BA9CF39A3527] [APT] [Ad-Aware Update (Weekly)] (.Lavasoft Limited.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

[MD5.00000000000000000000000000000000] [APT] [{B17649F9-8207-4CF9-99C3-02FC464234B2}] (...) -- C:\Windows\SysWOW64\btcpl.cpl (.not file.)

[MD5.00000000000000000000000000000000] [APT] [{B55D92F6-41B4-4D45-A886-3CAF13709FA7}] (...) -- C:\Windows\SysWOW64\btcpl.cpl (.not file.)

[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe

~ Scan Scheduled Task in 00mn 05s

 

 

 

---\\ Composants installés (ActiveSetup Installed Components) (O40)

O40 - ASIC: Internet Explorer [64Bits] - >{26923b43-4d38-484f-9b9e-de460746276c} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: Browser Customizations [64Bits] - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Offline Browsing Pack [64Bits] - {3af36230-a269-11d1-b5bf-0000f8051515} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: DirectDrawEx [64Bits] - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Internet Explorer Help [64Bits] - {45ea75a0-a269-11d1-b5bf-0000f8051515} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Microsoft Windows Script 5.6 [64Bits] - {4f645220-306d-11d2-995d-00c04f98bbc9} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Internet Explorer Setup Tools [64Bits] - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: MSN Site Access [64Bits] - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Address Book 7 [64Bits] - {7790769C-0471-11d2-AF11-00C04FA35D02} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (...) -- C:\Windows\System32\iedkcs32.dll,

O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: Dynamic HTML Data Binding [64Bits] - {9381D8F2-0288-11D0-9501-00AA00B911A5} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: Internet Explorer Core Fonts [64Bits] - {C9E9A340-D1F1-11D0-821E-444553540600} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: HTML Help [64Bits] - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: Active Directory Service Interface [64Bits] - {E92B03AB-B707-11d2-9CBD-0000F87A369E} . (...) -- C:\Windows\System32\ie4uinit.exe,

O40 - ASIC: .NET Framework [64Bits] - {FEBEF00C-046D-438D-8A88-BF94A6C9E703} . (...) -- C:\Windows\System32\ie4uinit.exe,

~ Scan Active Setup in 00mn 00s

 

 

 

---\\ Pilotes lancés au démarrage (O41)

O41 - Driver: C:\Windows\system32\drivers\afd.sys, (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys

O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys

O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys

O41 - Driver: C:\Windows\system32\drivers\dfsc.sys, (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\system32\Drivers\dfsc.sys

O41 - Driver: C:\Windows\system32\drivers\discache.sys, (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\system32\drivers\discache.sys

O41 - Driver: (ElbyCDIO) . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) - C:\Windows\system32\Drivers\ElbyCDIO.sys

O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys

O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\system32\DRIVERS\netbios.sys

O41 - Driver: C:\Windows\system32\drivers\netbt.sys, (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\system32\DRIVERS\netbt.sys

O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys, (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\system32\drivers\nsiproxy.sys

O41 - Driver: C:\Windows\system32\drivers\pacer.sys, (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys

O41 - Driver: C:\Windows\system32\wkssvc.dll, (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\system32\DRIVERS\rdbss.sys

O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys, (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\DRIVERS\RDPCDD.sys

O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys, (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\system32\drivers\rdpencdd.sys

O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys, (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\system32\drivers\rdprefmp.sys

O41 - Driver: C:\Windows\system32\tcpipcfg.dll, (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys

O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys

O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys

O41 - Driver: (vmm) . (.Microsoft Corporation - Virtual Machine Monitor.) - C:\Windows\system32\Pilotes\vmm.sys

O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys

O41 - Driver: C:\Windows\system32\rascfg.dll, (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys

O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\system32\DRIVERS\wfplwf.sys

~ Scan Drivers in 00mn 00s

 

 

 

---\\ Logiciels installés (O42)

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_ENTERPRISE_{14809F99-C601-4D4A-9391-F1E8FAA964C5}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_ENTERPRISE_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}_ENTERPRISE_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_ENTERPRISE_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 2 (SP2) - (.Microsoft.) [HKLM] -- {90120000-00BA-040C-0000-0000000FF1CE}_ENTERPRISE_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

O42 - Logiciel: AMD USB Filter Driver - (.Advanced Micro Devices, Inc..) [HKLM] -- {82809116-D1EE-443C-AE31-F19E709DDF7A}

O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}

O42 - Logiciel: Ad-Aware - (.Lavasoft Limited.) [HKLM] -- {D56B3391-1DAB-4AB3-AFF5-D55457911BBB}

O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR

O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {AFF7E080-1974-45BF-9310-10DE1A1F5ED0}

O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX

O42 - Logiciel: Adobe Flash Player 10 ActiveX 64-bit - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX 64

O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin

O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Photoshop Elements 7

O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM] -- {5511C07D-A83C-45AD-92B6-42DF99729A3C}

O42 - Logiciel: Adobe Photoshop Elements 7.0 - (.Adobe Systems Incorporated.) [HKLM] -- {CB6075D9-F912-40AE-BEA6-E590DA24F16B}

O42 - Logiciel: Adobe Reader 9.4.5 MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001}

O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM] -- {b2ec4a38-b545-4a00-8214-13fe0e915e6d}

O42 - Logiciel: AnyDVD - (.SlySoft.) [HKLM] -- AnyDVD

O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {6A3F9D74-BB80-4451-8CA1-4B3A857F1359}

O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}

O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}

O42 - Logiciel: Audacity 1.2.6 - (.Pas de propriétaire.) [HKLM] -- Audacity_is1

O42 - Logiciel: Backup Manager Basic - (.NewTech Infosystems.) [HKLM] -- {72B776E5-4530-4C4B-9453-751DF87D9D93}

O42 - Logiciel: Bluetooth Win7 Suite (64) - (.Atheros Communications.) [HKLM] -- {230D1595-57DA-4933-8C4E-375797EBB7E1}

O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner

O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {8B999A44-8314-493B-877E-A1DA5B54D9B8}

O42 - Logiciel: CompuApps SwissKnife - (.Pas de propriétaire.) [HKLM] -- CompuApps SwissKnife

O42 - Logiciel: Convertyme Media Converter 1.0 - (.Convertym.com.) [HKLM] -- Convertyme Media Converter

O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}

O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}

O42 - Logiciel: DVD Shrink 3.2 - (.DVD Shrink.) [HKLM] -- DVD Shrink_is1

O42 - Logiciel: DVDFab HD Decrypter 4.0.5.0 - (.Fengtao Software Inc..) [HKLM] -- DVDFab HD Decrypter 4_is1

O42 - Logiciel: Droppix Label Maker 2.8.4 - (.Droppix.) [HKLM] -- Droppix Label Maker_is1

O42 - Logiciel: Easy Graphic Converter 1.2 - (.Etru Software Development.) [HKLM] -- Easy Graphic Converter 1.2_is1

O42 - Logiciel: FastStone Image Viewer 4.2 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer

O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {1EE04769-91C4-4A06-92B7-FCAFE6BABDD9}

O42 - Logiciel: Genie Backup Assistant - (.LaCie.) [HKLM] -- {C9A162C1-031F-4EBF-A3E6-C45F7FCCBB9E}_is1

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM] -- Identity Card

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3

O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}

O42 - Logiciel: Java 6 Update 29 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF}

O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619}

O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM] -- LManager

O42 - Logiciel: Lexmark 3400 Series - (.Lexmark International, Inc..) [HKLM] -- Lexmark 3400 Series

O42 - Logiciel: Lexmark Barre d'outils - (.Pas de propriétaire.) [HKLM] -- {1017A80C-6F09-4548-A84D-EDD6AC9525F0}

O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}

O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}

O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}

O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.2.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: Media Player Codec Pack 3.9.5 - (.Media Player Codec Pack.) [HKLM] -- Media Player - Codec Pack

O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}

O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Enterprise 2007 - (.Microsoft Corporation.) [HKLM] -- ENTERPRISE

O42 - Logiciel: Microsoft Office Enterprise 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM] -- {90140000-2005-0000-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Groove MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00BA-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0044-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}

O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office PowerPoint Viewer 2007 (French) - (.Microsoft Corporation.) [HKLM] -- {95120000-00AF-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002A-040C-1000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}

O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}

O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}

O42 - Logiciel: Microsoft Virtual PC 2007 - (.Microsoft Corporation.) [HKLM] -- {8A7CAA24-7B23-410B-A7C3-F994B0944160}

O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 - (.Microsoft Corporation.) [HKLM] -- {6AFCA4E1-9B78-3640-8F72-A7BF33448200}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}

O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}

O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {0214A441-A4AB-43A8-8DEF-2F73C5364673}

O42 - Logiciel: Module de compatibilité pour Microsoft Office System 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-040C-0000-0000000FF1CE}

O42 - Logiciel: Mozilla Thunderbird (7.0.1) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird (7.0.1)

O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}

O42 - Logiciel: Nero 9 Essentials - (.Nero AG.) [HKLM] -- {5d3f2e4c-cf1a-4558-b6ea-039aafb15a10}

O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {bd5ca0da-71ad-43da-b19e-6eee0c9adc9a}

O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM] -- {f4041dce-3fe1-4e18-8a9e-9de65231ee36}

O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM] -- {869200db-287a-4dc0-b02b-2b6787fbcd4c}

O42 - Logiciel: Nero DiscSpeed Help - (.Nero AG.) [HKLM] -- {cc019e3f-59d2-4486-8d4b-878105b62a71}

O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM] -- {33cf58f5-48d8-4575-83d6-96f574e4d83a}

O42 - Logiciel: Nero DriveSpeed Help - (.Nero AG.) [HKLM] -- {e5c7d048-f9b4-4219-b323-8bdb01a2563d}

O42 - Logiciel: Nero Express Help - (.Nero AG.) [HKLM] -- {83202942-84b3-4c50-8622-b8c0aa2d2885}

O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM] -- {fbcdfd61-7dcf-4e71-9226-873ba0053139}

O42 - Logiciel: Nero InfoTool Help - (.Nero AG.) [HKLM] -- {20400dbd-e6db-45b8-9b6b-1dd7033818ec}

O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM] -- {e8a80433-302b-4ff1-815d-fcc8eac482ff}

O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM] -- {dba84796-8503-4ff0-af57-1747dd9a166d}

O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM] -- {7748ac8c-18e3-43bb-959b-088faea16fb2}

O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM] -- {2348b586-c9ae-46ce-936c-a68e9426e214}

O42 - Logiciel: Nero StartSmart OEM - (.Nero AG.) [HKLM] -- {4D43D635-6FDA-4fa5-AA9B-23CF73D058EA}

O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM] -- {595a3116-40bb-4e0f-a2e8-d7951da56270}

O42 - Logiciel: OpenAL - (.Pas de propriétaire.) [HKLM] -- OpenAL

O42 - Logiciel: Oubliette 1.9.5 - (.Pas de propriétaire.) [HKLM] -- Oubliette_is1

O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}

O42 - Logiciel: Packard Bell GameZone Console - (.Oberon Media, Inc..) [HKLM] -- {117E3AE2-10D1-41C1-9FA6-F4C382F767A8}_is1

O42 - Logiciel: Packard Bell InfoCentre - (.Packard Bell.) [HKLM] -- Packard Bell InfoCentre

O42 - Logiciel: Packard Bell MyBackup - (.NewTech Infosystems.) [HKLM] -- InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}

O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964}

O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}

O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM] -- Packard Bell Registration

O42 - Logiciel: Packard Bell ScreenSaver - (.Packard Bell Incorporated.) [HKLM] -- Packard Bell Screensaver

O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM] -- {EE171732-BEB4-4576-887D-CB62727F01CA}

O42 - Logiciel: PhotoFiltre - (.Pas de propriétaire.) [HKCU] -- PhotoFiltre

O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {C9E14402-3631-4182-B377-6B0DFB1C0339}

O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}

O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {96AE7E41-E34E-47D0-AC07-1091A8127911}

O42 - Logiciel: SAMSUNG PC Share Manager - (.SAMSUNG.) [HKLM] -- InstallShield_{2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}

O42 - Logiciel: SAMSUNG PC Share Manager - (.SAMSUNG.) [HKLM] -- {2A2E822B-3B0E-46C1-9E3B-ACD7D1E95139}

O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM] -- SFR_Media Center

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288621) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5C497F0B-2061-4CC9-A61C-6B45B867354D}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2288931) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CD769337-C8AC-46DB-A7DC-643E50089263}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2345043) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{536FB502-775F-4494-BACE-C02CC90B7A5B}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2553074) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5729F1AE-5895-468F-9165-BAD161C9E982}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2553089) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{01D4CA59-7070-4420-9BCC-0EFA7C5D76BE}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2553090) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{643C12A2-AF9A-4712-B8BE-3B7650AFE00A}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB2584063) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BF3F1CBD-B05C-4644-AE43-6EE0FCC227A4}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB969559) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{69F52148-9BF6-4CDC-BF76-103DEAF3DD08}

O42 - Logiciel: Security Update for 2007 Microsoft Office System (KB976321) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7F207DCA-3399-40CB-A968-6E5991B1421A}

O42 - Logiciel: Security Update for Microsoft Office Access 2007 (KB979440) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}

O42 - Logiciel: Security Update for Microsoft Office Access 2007 (KB979440) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5A4E43D5-858F-49BD-BA72-8F30E1793060}

O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB2553073) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{65EA4836-B5A3-4C1D-8883-0C35E471003A}

O42 - Logiciel: Security Update for Microsoft Office Groove 2007 (KB2552997) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A1CBF7D-4704-40BC-B31C-AA761884A3E4}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2510061) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{5D930261-AA5B-48D1-931F-425C9D767490}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}

O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB979441) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2535818) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8588DD11-6BD7-4400-B55C-DD5AB74B43E1}

O42 - Logiciel: Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{D75E6D0C-BADF-4F41-98B2-0C0F02C15062}

O42 - Logiciel: Security Update for Microsoft Office Publisher 2007 (KB2284697) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3A4CDE54-2403-483D-8D9A-15E3264410DF}

O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB973709) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{71127777-8B2C-4F97-AF7A-6CF8CAC8224D}

O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB2344993) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (972581) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}

O42 - Logiciel: Security Update for Microsoft Office system 2007 (KB974234) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{FCD742B9-7A55-44BC-A776-F795F21FEDDC}

O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey

O42 - Logiciel: TV sur PC - (.SFR.) [HKLM] -- Neuf_TV_PC

O42 - Logiciel: Update for 2007 Microsoft Office System (KB2284654) - (.Microsoft.) [HKLM] -- {90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{FB166E7C-8AA6-48C8-B726-1F25BEE7825A}

O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}

O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}

O42 - Logiciel: Update for Microsoft Office 2007 System (KB2539530) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}

O42 - Logiciel: Update for Microsoft Office OneNote 2007 (KB980729) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{329050A9-EF80-40F9-B633-74508F54C1FF}

O42 - Logiciel: Update for Microsoft Office Outlook 2007 (KB2583910) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BDC21583-5601-4B2B-88F3-7919F6DE8FB1}

O42 - Logiciel: Update for Outlook 2007 Junk Email Filter (KB2596560) - (.Microsoft.) [HKLM] -- {90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{2964DDE1-4925-4DF1-AF2C-0A36B3442228}

O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM] -- VLC media player

O42 - Logiciel: Video Web Camera - (.SuYin.) [HKLM] -- {6D9021DC-CF1B-4148-8C80-6D8E8A8A33EB}

O42 - Logiciel: Welcome Center - (.Packard Bell.) [HKLM] -- Packard Bell Welcome Center

O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM] -- WinPcapInst

O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver

O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}

O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}

O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709-A7D3-468D-9167-A1780C1E766C}

O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {5DD76286-9BE7-4894-A990-E905E91AC818}

O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}

O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {230B83A5-7D88-4B95-B71E-F44C0C78B002}

O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {4634B21A-CC07-4396-890C-2B8168661FEA}

O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast

O42 - Logiciel: calibre - (.Kovid Goyal.) [HKLM] -- {5A39E27B-BFFB-48B5-886F-D3038AD176BF}

O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\AC3Filter]

[HKCU\Software\ALWIL Software]

[HKCU\Software\ATI]

[HKCU\Software\AVAST Software]

[HKCU\Software\Acer]

[HKCU\Software\Adobe]

[HKCU\Software\AppDataLow\Software\Google]

[HKCU\Software\AppDataLow\Software\Microsoft]

[HKCU\Software\AppDataLow\Software]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\Atheros]

[HKCU\Software\Audacity]

[HKCU\Software\Cazitel]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\Compal]

[HKCU\Software\CyberLink]

[HKCU\Software\DVD Decrypter]

[HKCU\Software\DVD Shrink]

[HKCU\Software\DVDFab]

[HKCU\Software\DivXNetworks]

[HKCU\Software\Freeware]

[HKCU\Software\GNU]

[HKCU\Software\GSpot Appliance Corp]

[HKCU\Software\Gabest]

[HKCU\Software\Genie-Soft]

[HKCU\Software\Google]

[HKCU\Software\HP]

[HKCU\Software\Haali]

[HKCU\Software\Hewlett-Packard]

[HKCU\Software\IM Providers]

[HKCU\Software\InterVideo]

[HKCU\Software\JavaSoft]

[HKCU\Software\Lake]

[HKCU\Software\Lavasoft]

[HKCU\Software\Lexmark]

[HKCU\Software\Local AppWizard-Generated Applications]

[HKCU\Software\Macromedia]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\Media Player - Codec Pack]

[HKCU\Software\Nero]

[HKCU\Software\Netscape]

[HKCU\Software\Neuf]

[HKCU\Software\ODBC]

[HKCU\Software\OEM]

[HKCU\Software\Orange]

[HKCU\Software\Piriform]

[HKCU\Software\Policies]

[HKCU\Software\Realtek]

[HKCU\Software\SWISSKNIFE]

[HKCU\Software\Safer Networking Limited]

[HKCU\Software\SearchCore for Browsers]

[HKCU\Software\SlySoft]

[HKCU\Software\Suyin]

[HKCU\Software\Synaptics]

[HKCU\Software\Trolltech]

[HKCU\Software\WinRAR SFX]

[HKCU\Software\WinRAR]

[HKCU\Software\Wow6432Node]

[HKCU\Software\YahooPartnerToolbar]

[HKCU\Software\http://www.ecran-de-veille.com]

[HKLM\Software\<company>]

[HKLM\Software\AGEIA Technologies]

[HKLM\Software\ALWIL Software]

[HKLM\Software\AMD]

[HKLM\Software\ATHEROS]

[HKLM\Software\ATI Technologies]

[HKLM\Software\ATI]

[HKLM\Software\AVAST Software]

[HKLM\Software\Acer]

[HKLM\Software\Adobe]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Apple Inc.]

[HKLM\Software\Audible]

[HKLM\Software\BrowserChoice]

[HKLM\Software\Classes]

[HKLM\Software\Clients]

[HKLM\Software\Compal]

[HKLM\Software\CompuApps]

[HKLM\Software\CyberLink]

[HKLM\Software\DVDFab]

[HKLM\Software\Droppix]

[HKLM\Software\GNU]

[HKLM\Software\Google]

[HKLM\Software\HaaliMkx]

[HKLM\Software\Hewlett-Packard]

[HKLM\Software\InstalledOptions]

[HKLM\Software\Intel]

[HKLM\Software\JavaSoft]

[HKLM\Software\JreMetrics]

[HKLM\Software\Lake]

[HKLM\Software\Lavasoft]

[HKLM\Software\LexmarkInkjet]

[HKLM\Software\Lexmark]

[HKLM\Software\Macromedia]

[HKLM\Software\Macrovision]

[HKLM\Software\Malwarebytes' Anti-Malware]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Nero]

[HKLM\Software\Neuf]

[HKLM\Software\NewTech Infosystems]

[HKLM\Software\ODBC]

[HKLM\Software\OEM]

[HKLM\Software\OemSetup]

[HKLM\Software\OldTimer Tools]

[HKLM\Software\On2 Technologies]

[HKLM\Software\Packard Bell]

[HKLM\Software\Piriform]

[HKLM\Software\Policies]

[HKLM\Software\PowerDVD8_Upgrade]

[HKLM\Software\Realtek Semiconductor Corp.]

[HKLM\Software\Realtek]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\SRS Labs]

[HKLM\Software\Safer Networking Limited]

[HKLM\Software\SearchCore for Browsers]

[HKLM\Software\SecureDigitalServices]

[HKLM\Software\SlySoft]

[HKLM\Software\Sonic]

[HKLM\Software\SuYin]

[HKLM\Software\Symantec]

[HKLM\Software\Synaptics]

[HKLM\Software\TQ566808]

[HKLM\Software\Uniblue]

[HKLM\Software\VideoLAN]

[HKLM\Software\Volatile]

[HKLM\Software\W3i]

[HKLM\Software\Waves Audio]

[HKLM\Software\WinPcap]

[HKLM\Software\WinRAR]

[HKLM\Software\Windows]

[HKLM\Software\Wow6432Node]

[HKLM\Software\mozilla.org]

~ Scan Softwares in 00mn 00s

 

 

 

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)

O43 - CFD: 28/05/2010 - 16:38:28 - [186015224] ----D- C:\Program Files\Alwil Software

O43 - CFD: 25/01/2010 - 02:55:58 - [19031608] ----D- C:\Program Files\ATI

O43 - CFD: 06/11/2011 - 08:13:04 - [8732888] ----D- C:\Program Files\CCleaner

O43 - CFD: 11/06/2010 - 17:16:26 - [71300942] ----D- C:\Program Files\Common Files

O43 - CFD: 25/01/2010 - 02:57:48 - [931896] ----D- C:\Program Files\DIFX

O43 - CFD: 15/07/2011 - 19:10:56 - [90256916] ----D- C:\Program Files\DVD Maker

O43 - CFD: 22/03/2010 - 21:41:50 - [0] -SH-D- C:\Program Files\Fichiers communs

O43 - CFD: 21/12/2010 - 11:43:26 - [0] ----D- C:\Program Files\Google

O43 - CFD: 13/10/2011 - 07:54:20 - [5964878] ----D- C:\Program Files\Internet Explorer

O43 - CFD: 12/06/2010 - 13:40:26 - [30814630] ----D- C:\Program Files\Lexmark 3400 Series

O43 - CFD: 12/06/2010 - 13:43:18 - [354709] ----D- C:\Program Files\Lexmark Toolbar

O43 - CFD: 12/06/2010 - 13:42:06 - [4844] ----D- C:\Program Files\lx_cats

O43 - CFD: 14/07/2009 - 08:45:56 - [148931122] ----D- C:\Program Files\Microsoft Games

O43 - CFD: 04/09/2010 - 08:03:52 - [1141526] ----D- C:\Program Files\Microsoft Office

O43 - CFD: 14/07/2009 - 06:32:40 - [25757] ----D- C:\Program Files\MSBuild

O43 - CFD: 23/10/2009 - 22:53:40 - [23369518] ----D- C:\Program Files\Packard Bell

O43 - CFD: 22/03/2010 - 21:42:20 - [245633] ----D- C:\Program Files\PB Accessory Store

O43 - CFD: 23/10/2009 - 22:18:02 - [14519644] ----D- C:\Program Files\Realtek

O43 - CFD: 14/07/2009 - 06:32:40 - [36813993] ----D- C:\Program Files\Reference Assemblies

O43 - CFD: 25/01/2010 - 03:05:10 - [29739330] ----D- C:\Program Files\Synaptics

O43 - CFD: 14/07/2009 - 06:09:28 - [0] --H-D- C:\Program Files\Uninstall Information

O43 - CFD: 15/07/2011 - 19:10:50 - [4039680] ----D- C:\Program Files\Windows Defender

O43 - CFD: 15/07/2011 - 19:10:56 - [9224824] ----D- C:\Program Files\Windows Journal

O43 - CFD: 15/07/2011 - 19:10:56 - [6667776] ----D- C:\Program Files\Windows Mail

O43 - CFD: 15/07/2011 - 19:10:56 - [7687085] ----D- C:\Program Files\Windows Media Player

O43 - CFD: 22/03/2010 - 21:41:50 - [12627636] ----D- C:\Program Files\Windows NT

O43 - CFD: 15/07/2011 - 19:10:54 - [5516056] ----D- C:\Program Files\Windows Photo Viewer

O43 - CFD: 15/07/2011 - 19:10:56 - [244736] ----D- C:\Program Files\Windows Portable Devices

O43 - CFD: 15/07/2011 - 19:10:56 - [7192060] ----D- C:\Program Files\Windows Sidebar

O43 - CFD: 27/03/2010 - 15:00:00 - [4358123] ----D- C:\Program Files\WinRAR

O43 - CFD: 04/09/2010 - 08:05:24 - [58495181] ----D- C:\Program Files\Common Files\Microsoft Shared

O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files\Common Files\Services

O43 - CFD: 14/07/2009 - 04:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 25/01/2010 - 11:49:10 - [12194291] ----D- C:\Program Files\Common Files\System

O43 - CFD: 11/06/2010 - 16:57:06 - [512348011] ----D- C:\ProgramData\Adobe

O43 - CFD: 28/05/2010 - 16:38:28 - [6841902] ----D- C:\ProgramData\Alwil Software

O43 - CFD: 10/09/2011 - 09:18:52 - [22216704] ----D- C:\ProgramData\Apple

O43 - CFD: 10/09/2011 - 09:21:04 - [26755072] ----D- C:\ProgramData\Apple Computer

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Application Data

O43 - CFD: 10/08/2011 - 18:22:46 - [1990] ----D- C:\ProgramData\Atheros

O43 - CFD: 25/01/2010 - 03:04:12 - [187] ----D- C:\ProgramData\ATI

O43 - CFD: 23/10/2009 - 22:35:50 - [175602] ----D- C:\ProgramData\BackupManager

O43 - CFD: 01/11/2011 - 05:13:08 - [12] ----D- C:\ProgramData\boost_interprocess

O43 - CFD: 22/03/2010 - 21:41:50 - [0] -SH-D- C:\ProgramData\Bureau

O43 - CFD: 10/06/2010 - 19:54:46 - [15989] ----D- C:\ProgramData\CyberLink

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Desktop

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Documents

O43 - CFD: 04/08/2011 - 06:50:56 - [144] ----D- C:\ProgramData\Driver Whiz

O43 - CFD: 13/11/2010 - 09:23:44 - [375] ----D- C:\ProgramData\Droppix

O43 - CFD: 05/11/2010 - 20:15:06 - [183580] ----D- C:\ProgramData\DVD Shrink

O43 - CFD: 22/03/2010 - 21:41:50 - [0] -SH-D- C:\ProgramData\Favoris

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Favorites

O43 - CFD: 04/04/2010 - 16:44:16 - [670] ----D- C:\ProgramData\FLEXnet

O43 - CFD: 21/12/2010 - 09:05:20 - [1019104] ----D- C:\ProgramData\Google

O43 - CFD: 04/11/2011 - 17:12:34 - [239432367] ----D- C:\ProgramData\Lavasoft

O43 - CFD: 05/11/2011 - 09:13:50 - [7325371] ----D- C:\ProgramData\Malwarebytes

O43 - CFD: 22/03/2010 - 21:41:50 - [0] -SH-D- C:\ProgramData\Menu Démarrer

O43 - CFD: 04/11/2011 - 18:53:34 - [259402699] -S--D- C:\ProgramData\Microsoft

O43 - CFD: 12/10/2011 - 21:53:08 - [123666] ----D- C:\ProgramData\Microsoft Help

O43 - CFD: 22/03/2010 - 21:41:50 - [0] -SH-D- C:\ProgramData\Modèles

O43 - CFD: 23/10/2009 - 22:42:58 - [11378166] ----D- C:\ProgramData\Nero

O43 - CFD: 11/06/2010 - 17:18:30 - [16142] ----D- C:\ProgramData\Norton

O43 - CFD: 23/10/2009 - 22:48:52 - [9903252] ----D- C:\ProgramData\NortonInstaller

O43 - CFD: 22/03/2010 - 21:42:30 - [7982] ----D- C:\ProgramData\OEM

O43 - CFD: 23/10/2009 - 22:37:06 - [1419285] ----D- C:\ProgramData\Packard Bell

O43 - CFD: 14/04/2010 - 17:53:54 - [1311] ----D- C:\ProgramData\Partner

O43 - CFD: 12/06/2010 - 09:33:32 - [144] ----D- C:\ProgramData\PC Drivers HeadQuarters

O43 - CFD: 17/05/2010 - 09:12:10 - [0] ----D- C:\ProgramData\PlayFirst

O43 - CFD: 03/05/2010 - 18:53:48 - [0] ----D- C:\ProgramData\SlySoft

O43 - CFD: 06/11/2011 - 08:15:18 - [112668] ----D- C:\ProgramData\Spybot - Search & Destroy

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Start Menu

O43 - CFD: 17/07/2010 - 07:24:22 - [365] ----D- C:\ProgramData\Sun

O43 - CFD: 01/11/2011 - 20:00:58 - [64] ----D- C:\ProgramData\Symantec

O43 - CFD: 15/10/2011 - 12:14:06 - [106638] ---AD- C:\ProgramData\Temp

O43 - CFD: 14/07/2009 - 06:08:58 - [0] -SH-D- C:\ProgramData\Templates

O43 - CFD: 19/03/2011 - 08:37:46 - [18494174] ----D- C:\Users\chris33\AppData\Roaming\Adobe

O43 - CFD: 22/03/2010 - 21:44:56 - [0] ----D- C:\Users\chris33\AppData\Roaming\ATI

O43 - CFD: 19/12/2010 - 10:43:30 - [19736] ----D- C:\Users\chris33\AppData\Roaming\calibre

O43 - CFD: 10/06/2010 - 19:54:38 - [2418] ----D- C:\Users\chris33\AppData\Roaming\CyberLink

O43 - CFD: 19/06/2010 - 10:09:22 - [0] ----D- C:\Users\chris33\AppData\Roaming\DivX

O43 - CFD: 05/11/2010 - 19:10:30 - [647] ----D- C:\Users\chris33\AppData\Roaming\dvdcss

O43 - CFD: 30/10/2010 - 17:53:06 - [3086976] ----D- C:\Users\chris33\AppData\Roaming\FastStone

O43 - CFD: 17/10/2011 - 16:27:38 - [436] ----D- C:\Users\chris33\AppData\Roaming\FreeAudioPack

O43 - CFD: 13/02/2011 - 09:16:08 - [0] ----D- C:\Users\chris33\AppData\Roaming\Genie-Soft

O43 - CFD: 22/03/2010 - 21:51:58 - [0] ----D- C:\Users\chris33\AppData\Roaming\Google

O43 - CFD: 22/03/2010 - 21:43:22 - [0] ----D- C:\Users\chris33\AppData\Roaming\Identities

O43 - CFD: 19/03/2011 - 08:38:46 - [1977] ----D- C:\Users\chris33\AppData\Roaming\it.clementoni.SapAlfabetoFR.290A939A40FB4C06653AD1460C6BEBD4C065087B.1

O43 - CFD: 22/03/2010 - 21:44:12 - [456] ----D- C:\Users\chris33\AppData\Roaming\Macromedia

O43 - CFD: 05/11/2011 - 09:13:56 - [0] ----D- C:\Users\chris33\AppData\Roaming\Malwarebytes

O43 - CFD: 14/07/2009 - 08:44:40 - [0] ----D- C:\Users\chris33\AppData\Roaming\Media Center Programs

O43 - CFD: 22/10/2011 - 08:57:08 - [14892559] -S--D- C:\Users\chris33\AppData\Roaming\Microsoft

O43 - CFD: 18/06/2010 - 18:42:08 - [3145782] ----D- C:\Users\chris33\AppData\Roaming\Mozilla

O43 - CFD: 31/03/2010 - 19:47:30 - [314228] ----D- C:\Users\chris33\AppData\Roaming\Nero

O43 - CFD: 06/08/2011 - 08:04:42 - [37] ----D- C:\Users\chris33\AppData\Roaming\Packard Bell

O43 - CFD: 22/04/2010 - 13:01:10 - [750] ----D- C:\Users\chris33\AppData\Roaming\PhotoFiltre

O43 - CFD: 17/05/2010 - 09:12:10 - [1892] ----D- C:\Users\chris33\AppData\Roaming\PlayFirst

O43 - CFD: 27/03/2010 - 22:25:46 - [13824] ----D- C:\Users\chris33\AppData\Roaming\Template

O43 - CFD: 30/03/2010 - 17:48:18 - [126008851] ----D- C:\Users\chris33\AppData\Roaming\Thunderbird

O43 - CFD: 12/06/2010 - 08:14:52 - [229096] ----D- C:\Users\chris33\AppData\Roaming\Uniblue

O43 - CFD: 29/05/2010 - 13:46:18 - [10456] ----D- C:\Users\chris33\AppData\Roaming\ViquaSoft

O43 - CFD: 15/08/2011 - 17:17:26 - [479343] ----D- C:\Users\chris33\AppData\Roaming\vlc

O43 - CFD: 27/03/2010 - 14:54:04 - [12] ----D- C:\Users\chris33\AppData\Roaming\WinRAR

O43 - CFD: 19/04/2011 - 08:15:48 - [567704] ----D- C:\Users\chris33\AppData\Local\Adobe

O43 - CFD: 10/09/2011 - 09:18:54 - [0] ----D- C:\Users\chris33\AppData\Local\Apple

O43 - CFD: 15/10/2011 - 12:47:08 - [0] ----D- C:\Users\chris33\AppData\Local\Apple Computer

O43 - CFD: 22/03/2010 - 21:42:06 - [0] -SH-D- C:\Users\chris33\AppData\Local\Application Data

O43 - CFD: 22/03/2010 - 21:44:56 - [60734] ----D- C:\Users\chris33\AppData\Local\ATI

O43 - CFD: 19/08/2011 - 16:59:48 - [0] ----D- C:\Users\chris33\AppData\Local\Axialis

O43 - CFD: 10/08/2011 - 17:37:10 - [224] ----D- C:\Users\chris33\AppData\Local\BMExplorer

O43 - CFD: 06/11/2011 - 08:15:16 - [0] ----D- C:\Users\chris33\AppData\Local\CrashDumps

O43 - CFD: 12/12/2010 - 01:00:18 - [0] ----D- C:\Users\chris33\AppData\Local\Diagnostics

O43 - CFD: 22/10/2011 - 08:56:02 - [739328] ----D- C:\Users\chris33\AppData\Local\Frameworkx

O43 - CFD: 22/10/2011 - 08:54:28 - [934] ----D- C:\Users\chris33\AppData\Local\Frameworkx.com

O43 - CFD: 21/12/2010 - 09:05:20 - [0] ----D- C:\Users\chris33\AppData\Local\Google

O43 - CFD: 22/03/2010 - 21:42:06 - [0] -SH-D- C:\Users\chris33\AppData\Local\Historique

O43 - CFD: 11/09/2010 - 07:12:12 - [590609359] ----D- C:\Users\chris33\AppData\Local\Microsoft

O43 - CFD: 12/07/2011 - 03:27:42 - [180856] ----D- C:\Users\chris33\AppData\Local\Microsoft Help

O43 - CFD: 18/06/2010 - 18:42:08 - [0] ----D- C:\Users\chris33\AppData\Local\Mozilla

O43 - CFD: 29/01/2011 - 08:30:58 - [4016] ----D- C:\Users\chris33\AppData\Local\Neuf

O43 - CFD: 02/04/2011 - 11:32:36 - [171312280] ----D- C:\Users\chris33\AppData\Local\Oberon Games

O43 - CFD: 06/08/2011 - 08:15:00 - [12520] ----D- C:\Users\chris33\AppData\Local\Packard Bell

O43 - CFD: 06/11/2011 - 08:49:08 - [1189650] ----D- C:\Users\chris33\AppData\Local\Temp

O43 - CFD: 22/03/2010 - 21:42:06 - [0] -SH-D- C:\Users\chris33\AppData\Local\Temporary Internet Files

O43 - CFD: 30/03/2010 - 17:48:20 - [1967726] ----D- C:\Users\chris33\AppData\Local\Thunderbird

O43 - CFD: 05/08/2010 - 16:01:56 - [477352] ----D- C:\Users\chris33\AppData\Local\VirtualStore

O43 - CFD: 04/11/2011 - 19:51:56 - [97828474] ----D- C:\Program Files (x86)\Ad-Remover

O43 - CFD: 19/04/2011 - 08:16:06 - [1093206594] ----D- C:\Program Files (x86)\Adobe

O43 - CFD: 14/08/2011 - 14:35:20 - [123382454] ----D- C:\Program Files (x86)\AGEIA Technologies

O43 - CFD: 25/01/2010 - 02:57:46 - [74020] ----D- C:\Program Files (x86)\AMD

O43 - CFD: 10/09/2011 - 09:18:52 - [2428606] ----D- C:\Program Files (x86)\Apple Software Update

O43 - CFD: 25/01/2010 - 02:57:24 - [71937052] ----D- C:\Program Files (x86)\ATI Technologies

O43 - CFD: 24/03/2010 - 22:01:24 - [8691435] ----D- C:\Program Files (x86)\Audacity

O43 - CFD: 10/08/2011 - 17:18:06 - [44129652] ----D- C:\Program Files (x86)\Bluetooth Suite

O43 - CFD: 19/12/2010 - 10:42:14 - [103108060] ----D- C:\Program Files (x86)\Calibre2

O43 - CFD: 06/11/2011 - 07:53:56 - [1060572973] ----D- C:\Program Files (x86)\Common Files

O43 - CFD: 08/05/2010 - 11:12:38 - [73214533] ----D- C:\Program Files (x86)\Convertym Media Converter

O43 - CFD: 25/01/2010 - 03:21:16 - [102870967] ----D- C:\Program Files (x86)\CyberLink

O43 - CFD: 13/11/2010 - 09:23:26 - [11807695] ----D- C:\Program Files (x86)\Droppix

O43 - CFD: 03/05/2010 - 18:51:14 - [979905] ----D- C:\Program Files (x86)\DVD Shrink

O43 - CFD: 03/05/2010 - 18:51:54 - [4624692] ----D- C:\Program Files (x86)\DVDFab HD Decrypter 4

O43 - CFD: 24/03/2010 - 22:00:48 - [1234692] ----D- C:\Program Files (x86)\Easy Graphic Converter

O43 - CFD: 30/10/2010 - 17:53:04 - [8595129] ----D- C:\Program Files (x86)\FastStone Image Viewer

O43 - CFD: 01/11/2011 - 18:49:24 - [33174] ----D- C:\Program Files (x86)\Free Offers from Freeze.com

O43 - CFD: 21/12/2010 - 11:43:26 - [4638688] ----D- C:\Program Files (x86)\Google

O43 - CFD: 27/02/2011 - 09:53:58 - [70428087] --H-D- C:\Program Files (x86)\InstallShield Installation Information

O43 - CFD: 13/10/2011 - 07:54:20 - [6038462] ----D- C:\Program Files (x86)\Internet Explorer

O43 - CFD: 06/11/2011 - 07:53:30 - [89536315] ----D- C:\Program Files (x86)\Java

O43 - CFD: 13/02/2011 - 09:15:26 - [35805786] ----D- C:\Program Files (x86)\LaCie

O43 - CFD: 25/01/2010 - 03:05:34 - [4715358] ----D- C:\Program Files (x86)\Launch Manager

O43 - CFD: 04/11/2011 - 17:12:28 - [40379326] ----D- C:\Program Files (x86)\Lavasoft

O43 - CFD: 12/06/2010 - 13:40:20 - [13396067] ----D- C:\Program Files (x86)\Lexmark 3400 Series

O43 - CFD: 05/11/2011 - 09:13:50 - [7017358] ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware

O43 - CFD: 25/01/2010 - 03:11:18 - [226432] ----D- C:\Program Files (x86)\Microsoft

O43 - CFD: 15/07/2011 - 18:55:04 - [697278102] ----D- C:\Program Files (x86)\Microsoft Office

O43 - CFD: 13/10/2011 - 07:54:08 - [38412395] ----D- C:\Program Files (x86)\Microsoft Silverlight

O43 - CFD: 25/01/2010 - 03:12:08 - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition

O43 - CFD: 02/10/2010 - 08:52:58 - [38372324] ----D- C:\Program Files (x86)\Microsoft Virtual PC

O43 - CFD: 04/09/2010 - 08:07:04 - [14904] ----D- C:\Program Files (x86)\Microsoft Visual Studio

O43 - CFD: 04/09/2010 - 08:03:46 - [1387249] ----D- C:\Program Files (x86)\Microsoft Visual Studio 8

O43 - CFD: 16/12/2010 - 15:01:00 - [146453974] ----D- C:\Program Files (x86)\Microsoft Works

O43 - CFD: 04/09/2010 - 08:06:30 - [8152064] ----D- C:\Program Files (x86)\Microsoft.NET

O43 - CFD: 05/10/2011 - 17:32:34 - [38660736] ----D- C:\Program Files (x86)\Mozilla Thunderbird

O43 - CFD: 04/09/2010 - 08:07:20 - [26521] ----D- C:\Program Files (x86)\MSBuild

O43 - CFD: 24/03/2010 - 13:18:28 - [0] ----D- C:\Program Files (x86)\MSXML 4.0

O43 - CFD: 23/10/2009 - 22:44:02 - [382291649] ----D- C:\Program Files (x86)\Nero

O43 - CFD: 23/10/2009 - 22:35:38 - [28605255] ----D- C:\Program Files (x86)\NewTech Infosystems

O43 - CFD: 14/08/2011 - 14:35:00 - [782336] ----D- C:\Program Files (x86)\OpenAL

O43 - CFD: 05/09/2010 - 09:50:44 - [2031261] ----D- C:\Program Files (x86)\Oubliette

O43 - CFD: 27/02/2011 - 09:38:54 - [55862481] ----D- C:\Program Files (x86)\Packard Bell

O43 - CFD: 01/11/2011 - 19:59:10 - [39960317] ----D- C:\Program Files (x86)\Packard Bell GameZone

O43 - CFD: 22/04/2010 - 12:59:44 - [3688680] ----D- C:\Program Files (x86)\PhotoFiltre

O43 - CFD: 10/09/2011 - 09:21:22 - [75697179] ----D- C:\Program Files (x86)\QuickTime

O43 - CFD: 23/10/2009 - 22:17:58 - [13192169] ----D- C:\Program Files (x86)\Realtek

O43 - CFD: 14/07/2009 - 06:32:40 - [39159041] ----D- C:\Program Files (x86)\Reference Assemblies

O43 - CFD: 29/01/2011 - 08:40:46 - [34022571] ----D- C:\Program Files (x86)\Samsung

O43 - CFD: 29/01/2011 - 08:29:02 - [25650667] ----D- C:\Program Files (x86)\SFR

O43 - CFD: 21/12/2010 - 08:18:12 - [15706487] ----D- C:\Program Files (x86)\SlySoft

O43 - CFD: 01/11/2011 - 18:56:04 - [68315725] ----D- C:\Program Files (x86)\Spybot - Search & Destroy

O43 - CFD: 30/01/2011 - 10:13:22 - [7262449] ----D- C:\Program Files (x86)\SWISSKNIFE

O43 - CFD: 23/10/2009 - 22:18:28 - [0] --H-D- C:\Program Files (x86)\Temp

O43 - CFD: 14/07/2009 - 05:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information

O43 - CFD: 12/06/2010 - 08:18:14 - [78593361] ----D- C:\Program Files (x86)\VideoLAN

O43 - CFD: 25/01/2010 - 03:05:52 - [26602153] ----D- C:\Program Files (x86)\VideoWebCamera

O43 - CFD: 25/01/2010 - 11:49:10 - [524800] ----D- C:\Program Files (x86)\Windows Defender

O43 - CFD: 07/02/2011 - 21:08:56 - [147804972] ----D- C:\Program Files (x86)\Windows Live

O43 - CFD: 25/01/2010 - 03:10:58 - [245112] ----D- C:\Program Files (x86)\Windows Live SkyDrive

O43 - CFD: 15/07/2011 - 19:10:58 - [6181376] ----D- C:\Program Files (x86)\Windows Mail

O43 - CFD: 15/07/2011 - 19:10:56 - [5024017] ----D- C:\Program Files (x86)\Windows Media Player

O43 - CFD: 14/07/2009 - 06:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT

O43 - CFD: 15/07/2011 - 19:10:56 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer

O43 - CFD: 15/07/2011 - 19:10:56 - [189952] ----D- C:\Program Files (x86)\Windows Portable Devices

O43 - CFD: 15/07/2011 - 19:10:58 - [5994626] ----D- C:\Program Files (x86)\Windows Sidebar

O43 - CFD: 25/07/2010 - 08:42:54 - [237576] ----D- C:\Program Files (x86)\WinPcap

O43 - CFD: 06/11/2011 - 08:50:58 - [8941069] ----D- C:\Program Files (x86)\ZHPDiag

O43 - CFD: 10/06/2010 - 21:10:30 - [69672698] ----D- C:\Program Files (x86)\Common Files\Adobe

O43 - CFD: 19/04/2011 - 08:19:40 - [31116142] ----D- C:\Program Files (x86)\Common Files\Adobe AIR

O43 - CFD: 10/09/2011 - 09:19:08 - [62253589] ----D- C:\Program Files (x86)\Common Files\Apple

O43 - CFD: 10/08/2011 - 17:18:22 - [8924] ----D- C:\Program Files (x86)\Common Files\Atheros

O43 - CFD: 10/06/2010 - 20:17:56 - [133928] ----D- C:\Program Files (x86)\Common Files\CyberLink

O43 - CFD: 04/09/2010 - 08:07:04 - [92976] ----D- C:\Program Files (x86)\Common Files\DESIGNER

O43 - CFD: 13/11/2010 - 09:23:38 - [3007049] ----D- C:\Program Files (x86)\Common Files\Droppix

O43 - CFD: 23/10/2009 - 22:17:52 - [2106564] ----D- C:\Program Files (x86)\Common Files\InstallShield

O43 - CFD: 06/11/2011 - 07:53:56 - [1258951] ----D- C:\Program Files (x86)\Common Files\Java

O43 - CFD: 25/01/2010 - 03:07:40 - [651983] ----D- C:\Program Files (x86)\Common Files\Macrovision Shared

O43 - CFD: 10/08/2011 - 17:17:58 - [265541289] ----D- C:\Program Files (x86)\Common Files\microsoft shared

O43 - CFD: 23/10/2009 - 22:45:52 - [121337560] ----D- C:\Program Files (x86)\Common Files\Nero

O43 - CFD: 23/10/2009 - 22:19:32 - [354896] ----D- C:\Program Files (x86)\Common Files\Oberon Media

O43 - CFD: 25/01/2010 - 03:07:26 - [4226896] ----D- C:\Program Files (x86)\Common Files\PX Storage Engine

O43 - CFD: 14/07/2009 - 04:20:10 - [2702] ----D- C:\Program Files (x86)\Common Files\Services

O43 - CFD: 25/01/2010 - 03:07:26 - [339523] ----D- C:\Program Files (x86)\Common Files\Sonic Shared

O43 - CFD: 14/07/2009 - 04:20:10 - [41103783] ----D- C:\Program Files (x86)\Common Files\SpeechEngines

O43 - CFD: 11/06/2010 - 17:16:32 - [0] ----D- C:\Program Files (x86)\Common Files\Symantec Shared

O43 - CFD: 04/09/2010 - 08:10:02 - [44307943] ----D- C:\Program Files (x86)\Common Files\System

O43 - CFD: 25/01/2010 - 03:09:34 - [378102451] ----D- C:\Program Files (x86)\Common Files\Windows Live

O43 - CFD: 14/08/2011 - 14:35:04 - [34176512] ----D- C:\Program Files (x86)\Common Files\Wise Installation Wizard

~ Scan Program Folder in 00mn 30s

 

 

 

---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)

O44 - LFC:[MD5.0FB830D39DCE9E5A4F1F57EC389CDC12] - 06/11/2011 - 08:49:17 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1487778]

O44 - LFC:[MD5.AC849B99E032F4017BB1CE37934DD4AF] - 06/11/2011 - 08:44:34 ---A- . (...) -- C:\Windows\setupact.log [112]

O44 - LFC:[MD5.92AE8FED83A283110B1585F161FC6BFB] - 06/11/2011 - 08:44:33 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]

O44 - LFC:[MD5.F187EFA0E52FC4C67E24A0F2DDD7FDCF] - 06/11/2011 - 08:44:28 ---A- . (...) -- C:\aaw7boot.log [3109]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 06/11/2011 - 08:36:38 ---A- . (...) -- C:\Windows\setuperr.log [0]

O44 - LFC:[MD5.B365A3FA489E9E19541AE449113CAFB0] - 05/11/2011 - 10:55:15 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1524562]

O44 - LFC:[MD5.0709BBCCCD2C973CEAB41FA5682DD131] - 05/11/2011 - 10:55:15 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [104242]

O44 - LFC:[MD5.854FF13838BE19C394DA25E31F41CB1B] - 05/11/2011 - 10:55:15 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [128400]

O44 - LFC:[MD5.D414484671CAC06C80028F19948C6926] - 05/11/2011 - 10:55:15 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [607864]

O44 - LFC:[MD5.FE1FBB6430BF88AF0FA80031D3FBC103] - 05/11/2011 - 10:55:15 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [696680]

O44 - LFC:[MD5.B365A3FA489E9E19541AE449113CAFB0] - 05/11/2011 - 10:55:15 RSHAD . (...) -- C:\Windows\system32\PerfStringBackup.INI [1524562]

O44 - LFC:[MD5.0709BBCCCD2C973CEAB41FA5682DD131] - 05/11/2011 - 10:55:15 RSHAD . (...) -- C:\Windows\system32\perfc009.dat [104242]

O44 - LFC:[MD5.854FF13838BE19C394DA25E31F41CB1B] - 05/11/2011 - 10:55:15 RSHAD . (...) -- C:\Windows\system32\perfc00C.dat [128400]

O44 - LFC:[MD5.D414484671CAC06C80028F19948C6926] - 05/11/2011 - 10:55:15 RSHAD . (...) -- C:\Windows\system32\perfh009.dat [607864]

O44 - LFC:[MD5.FE1FBB6430BF88AF0FA80031D3FBC103] - 05/11/2011 - 10:55:15 RSHAD . (...) -- C:\Windows\system32\perfh00C.dat [696680]

O44 - LFC:[MD5.ED094A11E89C94127E6606C202CFDF2E] - 05/11/2011 - 10:46:00 ---A- . (...) -- C:\ZHPExportRegistry-05-11-2011-10-46-00.txt [4110]

O44 - LFC:[MD5.7BAD0E899034C7CF9B7047D31870AD67] - 05/11/2011 - 10:44:26 ---A- . (...) -- C:\ZHPExportRegistry-05-11-2011-10-44-26.txt [21576]

O44 - LFC:[MD5.8AA1C3D465C275420AE5718303AF868C] - 05/11/2011 - 10:21:54 ---A- . (...) -- C:\ZHPExportRegistry-05-11-2011-10-21-54.txt [4110]

O44 - LFC:[MD5.23A854450DAB5C9B7A42AB9BE6F2E4BD] - 05/11/2011 - 09:13:45 RSHAD . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [25416]

O44 - LFC:[MD5.24A607DF79A1CEB8CF48D0700AB7B81E] - 04/11/2011 - 19:57:39 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [5825]

O44 - LFC:[MD5.71E0EEBA6F1269BEE5252E48A76F88C7] - 04/11/2011 - 19:53:10 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [6353]

O44 - LFC:[MD5.FD833BEE2FD9BEFDC0AFD1941A306D9E] - 04/11/2011 - 17:15:11 RSHAD . (.Sunbelt Software - 64-bit Anti-Rootkit Engine.) -- C:\Windows\system32\drivers\SBREDrv.sys [55384]

O44 - LFC:[MD5.C324F24924675A18B4876A7346FEE23A] - 04/11/2011 - 17:15:09 ---A- . (...) -- C:\Windows\SysNative\lsdelete.exe [16432]

O44 - LFC:[MD5.C324F24924675A18B4876A7346FEE23A] - 04/11/2011 - 17:15:09 RSHAD . (...) -- C:\Windows\system32\lsdelete.exe [16432]

O44 - LFC:[MD5.C8B3131857931AE76798A741CC52B021] - 04/11/2011 - 17:12:34 RSHAD . (.Lavasoft AB - Boot Driver.) -- C:\Windows\system32\drivers\Lbd.sys [69376]

O44 - LFC:[MD5.38EFFC4A86D8674FC9CA3585A28C6F16] - 01/11/2011 - 18:14:24 ---A- . (...) -- C:\Windows\wininit.ini [123]

O44 - LFC:[MD5.096D283D182D402738CE457AA822AAA4] - 13/10/2011 - 07:55:18 ---A- . (...) -- C:\Windows\SysNative\FNTCACHE.DAT [441968]

O44 - LFC:[MD5.096D283D182D402738CE457AA822AAA4] - 13/10/2011 - 07:55:18 RSHAD . (...) -- C:\Windows\system32\FNTCACHE.DAT [441968]

~ Scan Files in 00mn 11s

 

 

 

---\\ Derniers fichiers créés dans Windows Prefetcher (O45)

O45 - LFCP:[MD5.2555B3F1AEDC8D1D7482B50332A6CC32] - 01/07/2011 - 07:52:48 ---A- - C:\Windows\Prefetch\THUNDERBIRD.EXE-69F6F4B4.pf

O45 - LFCP:[MD5.66499BCEDD632F0FEABA06CEED2C497E] - 02/04/2010 - 06:34:56 ---A- - C:\Windows\Prefetch\Layout.ini

O45 - LFCP:[MD5.FB1B95A751CB3A69328142648D5F44BC] - 04/05/2010 - 08:48:58 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-766EFF52.pf

O45 - LFCP:[MD5.4950D5FFC7E6BD3952986EB976884580] - 04/11/2011 - 07:03:09 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-B31EC963.pf

O45 - LFCP:[MD5.5327516FBDCA3D55FBE5476209D36A44] - 04/11/2011 - 08:47:30 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-058FE8F5.pf

O45 - LFCP:[MD5.C701F1EE9E66927EE7EAF1B8C087E04C] - 04/11/2011 - 12:47:29 ---A- - C:\Windows\Prefetch\AD-AWAREADMIN.EXE-86832AEB.pf

O45 - LFCP:[MD5.2F2352863942E6CE9C744F55C9414669] - 04/11/2011 - 17:29:24 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E44DBC4C.pf

O45 - LFCP:[MD5.7DF702489C45FE5F8EE516E78839B745] - 05/07/2011 - 08:48:06 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-D5E97654.pf

O45 - LFCP:[MD5.42966BF5B8966D193AEAEF34E3961807] - 05/11/2011 - 06:38:07 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-6FD72002.pf

O45 - LFCP:[MD5.8BBC3F5F53F92A86F92F33DBBBCAB099] - 05/11/2011 - 06:45:05 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-51CCB287.pf

O45 - LFCP:[MD5.FF7DAF09553A6F3A7417AF67C0705FC1] - 05/11/2011 - 07:51:48 ---A- - C:\Windows\Prefetch\JAVA.EXE-2AB52D6A.pf

O45 - LFCP:[MD5.3E2DEEFF7A147A3A9983A31A2E2AEB32] - 05/11/2011 - 07:51:58 ---A- - C:\Windows\Prefetch\JUCHECK.EXE-CA293356.pf

O45 - LFCP:[MD5.B078687F129293C8EDE16C7E5E980D5C] - 05/11/2011 - 07:52:39 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-6A249820.pf

O45 - LFCP:[MD5.55C02DD1C53DD2D1ED7398EA0764656C] - 05/11/2011 - 07:52:39 ---A- - C:\Windows\Prefetch\VSSVC.EXE-6C8F0C66.pf

O45 - LFCP:[MD5.1F9601C41B8FB539CB1B7D408993DC03] - 05/11/2011 - 07:55:45 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-B6001A63.pf

O45 - LFCP:[MD5.65BFF94FF18D3E3BDBCEF22FCE70031F] - 05/11/2011 - 08:29:19 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-F639BD7E.pf

O45 - LFCP:[MD5.0A6D5C1D464856514A34A44AFF1A69D4] - 05/11/2011 - 08:38:17 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-DAB4D60B.pf

O45 - LFCP:[MD5.272D54925041D4DEB3E40BBC8596AEA2] - 05/11/2011 - 08:46:10 ---A- - C:\Windows\Prefetch\LXCYCOMS.EXE-4BA6152F.pf

O45 - LFCP:[MD5.6155DF4B9042705767F99386857863C1] - 05/11/2011 - 08:46:11 ---A- - C:\Windows\Prefetch\UNSECAPP.EXE-72B9DDB3.pf

O45 - LFCP:[MD5.B9592F89C0F9E10C3DD6899C1C55CD9A] - 05/11/2011 - 08:47:02 ---A- - C:\Windows\Prefetch\FLASHUTIL64_10_3_162_ACTIVEX.-E20B3992.pf

O45 - LFCP:[MD5.1A8F1E588AE9D1402004E24657EDA49A] - 05/11/2011 - 08:49:35 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-6A1D0894.pf

O45 - LFCP:[MD5.1C7B834134C403FF2C7D237AF492D36B] - 05/11/2011 - 08:51:04 ---A- - C:\Windows\Prefetch\CMD.EXE-6D6290C5.pf

O45 - LFCP:[MD5.B05C747354E68837ACFBDC43E6137114] - 05/11/2011 - 08:51:04 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-DC1676CD.pf

O45 - LFCP:[MD5.95E319AC7C0B3724B004874255932869] - 05/11/2011 - 16:46:52 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-1DE46615.pf

O45 - LFCP:[MD5.B4463187A30FB4676E96B35FC83786B9] - 05/11/2011 - 16:47:01 ---A- - C:\Windows\Prefetch\EPOWERTRAY.EXE-856809ED.pf

O45 - LFCP:[MD5.089EBA2E5AA749058B0AB6BF0D3062A5] - 05/11/2011 - 16:47:01 ---A- - C:\Windows\Prefetch\RAVCPL64.EXE-4BB80510.pf

O45 - LFCP:[MD5.75C3B84E1DA4D2A67A24E83D3A0D35FF] - 05/11/2011 - 16:47:01 ---A- - C:\Windows\Prefetch\SYNTPENH.EXE-8A564A20.pf

O45 - LFCP:[MD5.26C81CE28835DD422237FD9A4E20852D] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\ATHBTTRAY.EXE-215BB68D.pf

O45 - LFCP:[MD5.BC5AE018D200DEAFEBE3199ABDD19298] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\BTVSTACK.EXE-5374F098.pf

O45 - LFCP:[MD5.FF0B94C7C6207BFF106A26F198C5A125] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\LXCYTIME.EXE-48D2169D.pf

O45 - LFCP:[MD5.3214255CA2EF26BF88D4E20A9285D230] - 05/11/2011 - 16:47:02 ---A- - C:\Windows\Prefetch\SIDEBAR.EXE-BA7094F6.pf

O45 - LFCP:[MD5.6BB6DB9D9FB1F1C6522B58FD6B0F664E] - 05/11/2011 - 16:47:11 ---A- - C:\Windows\Prefetch\LXCYJSWX.EXE-5632BAAE.pf

O45 - LFCP:[MD5.45388A14AB1B47184EB4BB1EDF128DE7] - 05/11/2011 - 16:47:13 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-B597A9D1.pf

O45 - LFCP:[MD5.9465FC87F3FE44CC251D02A38C678436] - 05/11/2011 - 16:52:32 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-81BAE51F.pf

O45 - LFCP:[MD5.08D8DCFE5FDF890383489476B1704F05] - 05/11/2011 - 16:56:45 ---A- - C:\Windows\Prefetch\SF.BIN-759072B8.pf

O45 - LFCP:[MD5.BD423A14497F106D9E860F7C5917D020] - 05/11/2011 - 17:06:27 ---A- - C:\Windows\Prefetch\LADS.EXE-E07AE0E5.pf

O45 - LFCP:[MD5.4E40BF0637C8A939237A390F78B4B061] - 05/11/2011 - 17:06:29 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-3DCC0576.pf

O45 - LFCP:[MD5.9E68FA356DA4E26B78272F9A906E3FF3] - 05/11/2011 - 17:06:30 ---A- - C:\Windows\Prefetch\SETACL.EXE-BC6C89FD.pf

O45 - LFCP:[MD5.2E756936D33A7FD0DFD5DBA7D271BC5E] - 05/11/2011 - 17:10:35 ---A- - C:\Windows\Prefetch\MBR.EXE-8BFEEB6E.pf

O45 - LFCP:[MD5.B446279CC785A13AB583C59877F85988] - 05/11/2011 - 17:51:18 ---A- - C:\Windows\Prefetch\EXCEL.EXE-DF9C9784.pf

O45 - LFCP:[MD5.3306E4075C09EBE1F717BD12ABAF991E] - 06/11/2011 - 06:04:05 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-0D53616E.pf

O45 - LFCP:[MD5.B30E5B15660CF394CE9FA0B1D80BFF93] - 06/11/2011 - 06:07:15 ---A- - C:\Windows\Prefetch\CONTROL.EXE-6EA5489A.pf

O45 - LFCP:[MD5.33A9BBAC1688D6670F492584FD1209AB] - 06/11/2011 - 06:07:20 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-D9DCD0F3.pf

O45 - LFCP:[MD5.58F0D4CDB6D6D8C39CE724ACA19936E4] - 06/11/2011 - 06:08:46 ---A- - C:\Windows\Prefetch\FLASHUTIL10M_ACTIVEX.EXE-6DF2FE80.pf

O45 - LFCP:[MD5.C17EA4845676357801312A851598B37D] - 06/11/2011 - 06:35:05 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-3D9E8D72.pf

O45 - LFCP:[MD5.783AEAD4A6701FC81514FDBA652DA132] - 06/11/2011 - 06:35:07 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-67EC2DA7.pf

O45 - LFCP:[MD5.A1FE21CD0DA5075C13EC42800418563E] - 06/11/2011 - 06:45:06 ---A- - C:\Windows\Prefetch\CVTRES.EXE-F4BA0E72.pf

O45 - LFCP:[MD5.D9C4ACDA4714FD9089AC224027128BC7] - 06/11/2011 - 06:45:06 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-B3171AA1.pf

O45 - LFCP:[MD5.770BDFF1B252E14EE5EC381321214DC6] - 06/11/2011 - 06:45:07 ---A- - C:\Windows\Prefetch\CSC.EXE-0E09149C.pf

O45 - LFCP:[MD5.86942B599F86C6D47784003A03147D18] - 06/11/2011 - 06:45:11 ---A- - C:\Windows\Prefetch\W32TM.EXE-C4E0F88E.pf

O45 - LFCP:[MD5.343594724FC96361D6F69A61F45F9D94] - 06/11/2011 - 06:45:20 ---A- - C:\Windows\Prefetch\PING.EXE-4A8A6853.pf

O45 - LFCP:[MD5.DB484C18F47556F343E7F5164158300F] - 06/11/2011 - 07:52:24 ---A- - C:\Windows\Prefetch\JRE-6U29-WINDOWS-I586-IFTW-RV-513AE78E.pf

O45 - LFCP:[MD5.38A2AF585057A81A47C6ED14F8B92F50] - 06/11/2011 - 07:52:28 ---A- - C:\Windows\Prefetch\MSI8B0B.TMP-DA9029C5.pf

O45 - LFCP:[MD5.AB29848AECE3C0AF5B03C669EE3EEFB0] - 06/11/2011 - 07:52:34 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-8FFB1633.pf

O45 - LFCP:[MD5.262BCFBAA5941C08476D2BB75EF239B6] - 06/11/2011 - 07:53:09 ---A- - C:\Windows\Prefetch\PATCHJRE.EXE-199B446C.pf

O45 - LFCP:[MD5.0586339EF066E36CA896B04953334176] - 06/11/2011 - 07:53:52 ---A- - C:\Windows\Prefetch\JAVAW.EXE-CE5F3A8D.pf

O45 - LFCP:[MD5.F1FE7C5D3411F85A7882564F958438BF] - 06/11/2011 - 07:53:52 ---A- - C:\Windows\Prefetch\JAVAWS.EXE-B96890A4.pf

O45 - LFCP:[MD5.9D399565CC0786497BF1A18DE6B5B28B] - 06/11/2011 - 07:53:52 ---A- - C:\Windows\Prefetch\WMIC.EXE-311B5CB4.pf

O45 - LFCP:[MD5.E01D077522D0C9CEE67436ACD72A184A] - 06/11/2011 - 07:53:54 ---A- - C:\Windows\Prefetch\JAUREG.EXE-031516E3.pf

O45 - LFCP:[MD5.AFD2E686D25D129B8562F950FFABDD24] - 06/11/2011 - 07:53:54 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-CDBFC0F7.pf

O45 - LFCP:[MD5.81C0197D2945E302FF6265136B8BD4CD] - 06/11/2011 - 07:55:39 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-5F7A25F2.pf

O45 - LFCP:[MD5.92D8C8934F5FCCFE59DA8B1734122E7C] - 06/11/2011 - 08:12:06 ---A- - C:\Windows\Prefetch\CCSETUP312.EXE-A1028D3D.pf

O45 - LFCP:[MD5.1C8CC645786A6FD236E3D70422A1B095] - 06/11/2011 - 08:13:01 ---A- - C:\Windows\Prefetch\PING.EXE-0314C2F7.pf

O45 - LFCP:[MD5.9943559F94DD9AE31AFE1B59985FE00A] - 06/11/2011 - 08:14:33 ---A- - C:\Windows\Prefetch\CCLEANER64.EXE-4469D777.pf

O45 - LFCP:[MD5.54C7AF511634CD96BC08EBA9E4C575CB] - 06/11/2011 - 08:18:02 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-CFB281E1.pf

O45 - LFCP:[MD5.6A12011B68F44B5A8183D3B379AD4AC1] - 06/11/2011 - 08:18:05 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-A033F7A0.pf

O45 - LFCP:[MD5.74A6895A604EAB7B2F3136F9D60F5C84] - 06/11/2011 - 08:18:05 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-E06B9CB6.pf

O45 - LFCP:[MD5.9B691CA872CE582D4DDFED222D431673] - 06/11/2011 - 08:24:37 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-F0A166BD.pf

O45 - LFCP:[MD5.F3AF8188FC80E6E8B62004E3CD15814B] - 06/11/2011 - 08:24:40 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-A3E9FE52.pf

O45 - LFCP:[MD5.830FF002E7740EAA9F1A62BFC764D87C] - 06/11/2011 - 08:27:05 ---A- - C:\Windows\Prefetch\SF.BIN-4C354525.pf

O45 - LFCP:[MD5.71180DFC3E3BE8F200BD8788F98DDEC3] - 06/11/2011 - 08:27:43 ---A- - C:\Windows\Prefetch\TFC.EXE-367C2B45.pf

O45 - LFCP:[MD5.46F4ED902D28AABF872DDD2A729169FA] - 06/11/2011 - 08:28:08 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-155C56CF.pf

O45 - LFCP:[MD5.67A54B4DC9015FC15785321514D03E6D] - 06/11/2011 - 08:38:35 ---A- - C:\Windows\Prefetch\JUSCHED.EXE-D6111BFB.pf

O45 - LFCP:[MD5.105C900CC71AB7C288EE9D1DED8CCD27] - 06/11/2011 - 08:38:38 ---A- - C:\Windows\Prefetch\AWSC.EXE-972A99AA.pf

O45 - LFCP:[MD5.83406CB21E99C1000DD3959B04FC3E83] - 06/11/2011 - 08:38:56 ---A- - C:\Windows\Prefetch\ZHPDIAG_1.27.1421.EXE-D8E9B43D.pf

O45 - LFCP:[MD5.FEC47512A90A180CE3B451DFFFA536A9] - 06/11/2011 - 08:38:58 ---A- - C:\Windows\Prefetch\ZHPDIAG_1.27.1421.TMP-21B313B2.pf

O45 - LFCP:[MD5.1B030597FF6ECA64461032343C040D9A] - 06/11/2011 - 08:42:22 ---A- - C:\Windows\Prefetch\TFC.EXE-20D28A58.pf

O45 - LFCP:[MD5.25CF48D82E0EF4B9C99FC0C38B8373A8] - 06/11/2011 - 08:42:26 ---A- - C:\Windows\Prefetch\AAWTRAY.EXE-5B79BC01.pf

O45 - LFCP:[MD5.74E79A6434E76BF80B45DFDF724D0963] - 06/11/2011 - 08:46:11 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-4ED41433.pf

O45 - LFCP:[MD5.A868A4DAD4C4698EBB3643D871569322] - 06/11/2011 - 08:46:11 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-CAC3A18F.pf

O45 - LFCP:[MD5.88B401E7159E58C740DFF11F5A887E08] - 06/11/2011 - 08:46:11 ---A- - C:\Windows\Prefetch\UPDATERSERVICE.EXE-EC463760.pf

O45 - LFCP:[MD5.A9149A069E448195C0890BA6A42683F2] - 06/11/2011 - 08:48:46 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-1CC53D93.pf

O45 - LFCP:[MD5.FA9139C0D3D813707C9B98BA3DCEB6C7] - 06/11/2011 - 08:48:52 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-34F5DB11.pf

O45 - LFCP:[MD5.98D81C11407C3260F25066B0C324D7D3] - 06/11/2011 - 08:48:52 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-FC290FDA.pf

O45 - LFCP:[MD5.27041069DBA01395E18FA720FF392831] - 06/11/2011 - 08:48:57 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-5D573F0E.pf

O45 - LFCP:[MD5.9113C29AE72AC3AD76541E0D6A5AB1D8] - 06/11/2011 - 08:48:58 ---A- - C:\Windows\Prefetch\SF.BIN-BA4D9E7B.pf

O45 - LFCP:[MD5.F69BD42843FF6C3B22A744220F8B13D0] - 06/11/2011 - 08:50:23 ---A- - C:\Windows\Prefetch\CSCRIPT.EXE-FCD9ABA9.pf

O45 - LFCP:[MD5.ABDDB7F1A2E750DD2BEA8E420E1C92F4] - 06/11/2011 - 08:50:23 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-39F97B2D.pf

O45 - LFCP:[MD5.891CE224928BDA1E16238B7AA3D1FDD3] - 06/11/2011 - 08:50:56 ---A- - C:\Windows\Prefetch\PV.EXE-0748338F.pf

O45 - LFCP:[MD5.68158FC647C85BBBADED8AF09BA56512] - 09/06/2010 - 08:01:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-35FA9C06.pf

O45 - LFCP:[MD5.358E8F12FA3B7E90C07DA6878F8C8869] - 09/06/2010 - 08:47:31 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-0E1E7B82.pf

O45 - LFCP:[MD5.75228F347402327141AADDA64934D6E9] - 12/08/2011 - 08:48:46 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6389524F.pf

O45 - LFCP:[MD5.9B94BF84EEA9B6D5C382FF89FE82C65C] - 15/10/2011 - 09:43:29 ---A- - C:\Windows\Prefetch\MOM.EXE-F911D5BC.pf

O45 - LFCP:[MD5.BC713A55E6E2171C1915818F7DC487D1] - 15/10/2011 - 16:47:14 ---A- - C:\Windows\Prefetch\HTTPD.EXE-2BD0D2E2.pf

O45 - LFCP:[MD5.0360B354219878B709DC8B44E7035FB2] - 15/10/2011 - 16:53:44 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-6E1A6101.pf

O45 - LFCP:[MD5.E67CC6A97E20459171BFDFD0453D3E63] - 21/03/2010 - 08:43:51 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin

O45 - LFCP:[MD5.B0701A05A29A7D60AD85C33C50B680B0] - 21/03/2010 - 08:43:52 ---A- - C:\Windows\Prefetch\AgRobust.db

O45 - LFCP:[MD5.512DA6576092130AC58807F2ECC5396F] - 21/03/2010 - 08:43:53 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db

O45 - LFCP:[MD5.552202E55C8BB4CC1F585E8881DD5339] - 21/03/2010 - 08:43:53 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db

O45 - LFCP:[MD5.DE5AFF23C8DBEBDBF467FA30E0760B2A] - 21/03/2010 - 08:43:53 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db

O45 - LFCP:[MD5.3E9EAA8F83AC6998AE04952C4E3BA4BB] - 22/03/2010 - 06:05:08 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-2E02FDCA.pf

O45 - LFCP:[MD5.8BC6115005A193761072C83C50058DD2] - 22/03/2010 - 06:13:58 ---A- - C:\Windows\Prefetch\AUTOUPDATEAPILIB.EXE-8741AF33.pf

O45 - LFCP:[MD5.17C437D751A6C570542F1BA40A74D34B] - 22/03/2010 - 06:16:16 ---A- - C:\Windows\Prefetch\WERMGR.EXE-F439C551.pf

O45 - LFCP:[MD5.69263A7618880100F1C03751C265A623] - 22/03/2010 - 08:17:42 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-AB22E9A6.pf

O45 - LFCP:[MD5.9B65BEB1554E198E0DE792AF12E0AAFC] - 22/03/2010 - 08:38:17 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-A0F5E092.pf

O45 - LFCP:[MD5.8D8C3A720BAAE98C851AF5E8EF473393] - 22/03/2010 - 08:46:16 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-18FC9E64.pf

O45 - LFCP:[MD5.3F6D942338B4192063DBE9796951CDA6] - 22/03/2010 - 08:47:41 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-96070FE0.pf

O45 - LFCP:[MD5.0ED0A4F16FB5E2C6F5AF35FED0EA3E92] - 22/03/2010 - 08:48:16 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4B6CB38A.pf

O45 - LFCP:[MD5.5B7FDF2FD514DD06876C10402A135A6F] - 22/03/2010 - 08:48:35 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-E8B8DD29.pf

O45 - LFCP:[MD5.52EA0CBC9F8B10A6354BAF881811BF61] - 22/03/2010 - 08:48:58 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-44162447.pf

O45 - LFCP:[MD5.9A5D092646181E7291B033C8AE48918D] - 22/03/2010 - 08:48:58 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-69C456C3.pf

O45 - LFCP:[MD5.2661262E3161AF74EBD467DC20326169] - 22/03/2010 - 08:49:26 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-BB21CD77.pf

O45 - LFCP:[MD5.35957EF7CD883B6D1B53A4F19EF87550] - 22/03/2010 - 08:50:22 ---A- - C:\Windows\Prefetch\CONHOST.EXE-0C6456FB.pf

O45 - LFCP:[MD5.2E508E3762BEE81191F8C862D16FCB6F] - 22/03/2010 - 13:26:21 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf

O45 - LFCP:[MD5.DF6C04AF2D25AEB339AB01A892861BFD] - 22/10/2011 - 08:48:41 ---A- - C:\Windows\Prefetch\CONSENT.EXE-40419367.pf

O45 - LFCP:[MD5.F07CC2379506E77348AE0170E990F9D6] - 24/03/2010 - 07:55:51 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2599719406-2373148968-441932854-1001.db

O45 - LFCP:[MD5.40BF472A17630B7D05188085824D28C9] - 24/03/2010 - 07:55:51 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2599719406-2373148968-441932854-1001.db

O45 - LFCP:[MD5.A16551A3160E8EE16A6BE827E4EC7C31] - 24/03/2010 - 16:55:06 ---A- - C:\Windows\Prefetch\AgCx_SC4.db

O45 - LFCP:[MD5.D08280F7182BDAF63F607DE68453EE34] - 25/07/2010 - 20:11:18 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-6B605020.pf

O45 - LFCP:[MD5.16278C8DDBC548689532BC4D0E37E676] - 26/03/2010 - 13:02:23 ---A- - C:\Windows\Prefetch\AgCx_SC2.db

O45 - LFCP:[MD5.B8A0E7EA2F8F5F78BC41E9E7BA5218C7] - 26/10/2011 - 08:47:31 ---A- - C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-70161F5F.pf

O45 - LFCP:[MD5.E13ABC7A7507948943E1B5B03F778280] - 27/03/2010 - 08:51:00 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx

O45 - LFCP:[MD5.0F57B75C26B9D2B5A704C3E4D6CA28AF] - 27/03/2010 - 08:52:01 ---A- - C:\Windows\Prefetch\AgCx_SC1.db

O45 - LFCP:[MD5.56C0AE2A7EDC9A4E802A73A16FDCCF34] - 28/05/2010 - 08:46:24 ---A- - C:\Windows\Prefetch\AVAST.SETUP-0294E3FE.pf

O45 - LFCP:[MD5.745F93F5374B6C4035D3A9B022528CE1] - 29/06/2010 - 08:47:41 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-F31BDE28.pf

O45 - LFCP:[MD5.4D7DAEC6A92D7325B308230CF7822404] - 29/06/2010 - 08:50:28 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-CFE81CB7.pf

~ Scan Prefetcher in 00mn 02s

 

 

 

---\\ Déni du service (Local Security Authority) (O48)

O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\system32\msv1_0.dll

O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\system32\scecli.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\system32\kerberos.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\system32\msv1_0.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\system32\schannel.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\system32\wdigest.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\system32\tspkg.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\system32\pku2u.dll

~ Scan Keys in 00mn 00s

 

 

 

---\\ Contrôle du Safe Boot (CSB) (O49)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\system32\Drivers\ipnat.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\system32\Drivers\nsiproxy.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\system32\Drivers\rdpencdd.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys

~ Scan CSB in 00mn 00s

 

 

 

---\\ Trojan Driver Search Data (HKLM) (O52)

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

~ Scan Keys in 00mn 00s

 

 

 

---\\ ShareTools MSconfig StartupReg (O53)

O53 - SMSR:HKLM\...\startupreg\!SearchquDSFF [Key] . (...) -- C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dll, (.not file.)

O53 - SMSR:HKLM\...\startupreg\!SearchquFFHP [Key] . (...) -- C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll, (.not file.)

~ Scan SMSR Keys in 00mn 00s

 

 

 

---\\ Microsoft Control Security Providers (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll

~ Scan Keys in 00mn 00s

 

 

 

---\\ Microsoft Windows Policies System (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3

O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1

O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1

O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=

O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0

~ Scan Keys in 00mn 00s

 

 

 

---\\ Microsoft Windows Policies Explorer (O56)

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1

O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0

~ Scan Keys in 00mn 00s

 

 

 

---\\ Liste des Drivers Système (O58)

O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 10/06/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088]

O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536]

O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864]

O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 RSHAD . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440]

O58 - SDL:[MD5.6EC6D772EAE38DC17C14AED9B178D24B] - 02/07/2011 - 14:32:46 RSHAD . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904]

O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 10/06/2009 - 02:52:20 RSHAD . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128]

O58 - SDL:[MD5.1142A21DB581A84EA5597B03A26EBAA0] - 02/07/2011 - 14:32:47 RSHAD . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008]

O58 - SDL:[MD5.1F8E9426219263CB3CE9AC1735A68D9E] - 16/07/2011 - 22:05:13 ---A- . (.SlySoft, Inc. - AnyDVD Filter Driver.) -- C:\Windows\system32\drivers\AnyDVD.sys [138872]

O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632]

O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 13/07/2009 - 02:52:21 RSHAD . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856]

O58 - SDL:[MD5.5A68B880C16AD5A6AA20B49A47FFFF24] - 28/05/2010 - 21:36:14 RSHAD . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [24408]

O58 - SDL:[MD5.230613BE2D3DA8053879BE5ED2848F2D] - 28/05/2010 - 21:36:30 RSHAD . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [65368]

O58 - SDL:[MD5.0DC1996AE4178D7D14744EF6B3082313] - 28/05/2010 - 21:36:41 RSHAD . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [42328]

O58 - SDL:[MD5.B6FF911C23775CDFDD49612D92637AF4] - 26/05/2011 - 21:38:18 RSHAD . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [601944]

O58 - SDL:[MD5.5A590D8516376AED1829FC07D3BDAA4B] - 28/05/2010 - 21:38:16 RSHAD . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [301912]

O58 - SDL:[MD5.3239C0082FB0C1C4EE323730B85690A5] - 28/05/2010 - 21:36:41 RSHAD . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [58200]

O58 - SDL:[MD5.4119870B90E1B5E7797D6433D21F9216] - 10/08/2011 - 10:57:48 RSHAD . (.Windows ® Win 7 DDK provider - BulkUsb Driver.) -- C:\Windows\system32\drivers\AthDfu.sys [51872]

O58 - SDL:[MD5.0ACC06FCF46F64ED4F11E57EE461C1F4] - 20/10/2009 - 02:34:00 RSHAD . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athrx.sys [1542656]

O58 - SDL:[MD5.2DB9047AAC9D981F59CE06D04D70C4D8] - 23/10/2009 - 03:15:12 RSHAD . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [6038016]

O58 - SDL:[MD5.0464BAFB3B38DE9D89ABDEEFA9CB58DA] - 23/10/2009 - 03:14:24 RSHAD . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\system32\drivers\atikmpag.sys [134144]

O58 - SDL:[MD5.7C5D273E29DCC5505469B299C6F29163] - 23/10/2009 - 03:15:16 RSHAD . (.Advanced Micro Devices Inc. - AMD PCIE Filter Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [16440]

O58 - SDL:[MD5.2DB9047AAC9D981F59CE06D04D70C4D8] - 23/10/2009 - 03:15:12 RSHAD . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atipmdag.sys [6038016]

O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 RSHAD . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848]

O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 14/07/2009 - 21:41:06 RSHAD . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432]

O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 14/07/2009 - 21:41:06 RSHAD . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704]

O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 RSHAD . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720]

O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 14/07/2009 - 21:41:10 RSHAD . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104]

O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 14/07/2009 - 21:41:10 RSHAD . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976]

O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 14/07/2009 - 21:41:10 RSHAD . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720]

O58 - SDL:[MD5.227C8F308DE4AF4808E587465CEAB838] - 10/08/2011 - 10:57:48 RSHAD . (.Atheros - Atheros A2DP driver.) -- C:\Windows\system32\drivers\btath_a2dp.sys [298144]

O58 - SDL:[MD5.A83A91D07D1FE6BBE7A9DB46CA00434B] - 10/08/2011 - 10:57:48 RSHAD . (.Atheros - Atheros BUS driver.) -- C:\Windows\system32\drivers\btath_bus.sys [28832]

O58 - SDL:[MD5.CBE61B4494165F458BD87E37181EE934] - 10/08/2011 - 10:57:50 RSHAD . (.Atheros - Atheros FILTER driver.) -- C:\Windows\system32\drivers\btath_flt.sys [36000]

O58 - SDL:[MD5.C864FF85EE16D61C2BDD5EF76824625F] - 10/08/2011 - 10:57:50 RSHAD . (.Atheros - Atheros HCRP driver.) -- C:\Windows\system32\drivers\btath_hcrp.sys [201376]

O58 - SDL:[MD5.0DEA505EFB5D771826D177EF8B8A208F] - 10/08/2011 - 10:57:50 RSHAD . (.Atheros - Atheros FILTER driver.) -- C:\Windows\system32\drivers\btath_lwflt.sys [55456]

O58 - SDL:[MD5.724C8088C96EFE7A3E63FEC21D4681C0] - 10/08/2011 - 10:57:50 RSHAD . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\system32\drivers\btath_rcp.sys [154272]

O58 - SDL:[MD5.DA96B275806CFBBB09F3E2A7849C2931] - 10/08/2011 - 10:57:50 RSHAD . (.Atheros - BtFilter Driver.) -- C:\Windows\system32\drivers\btfilter.sys [275104]

O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 RSHAD . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480]

O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 RSHAD . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488]

O58 - SDL:[MD5.A05FC7ECA0966EBB70E4D17B855A853B] - 16/07/2011 - 23:58:14 RSHAD . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\Windows\system32\drivers\ElbyCDIO.sys [40816]

O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 10/06/2009 - 02:47:48 RSHAD . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496]

O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 RSHAD . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016]

O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 13/07/2009 - 21:31:59 RSHAD . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232]

O58 - SDL:[MD5.39D2ABCD392F3D8A6DCE7B60AE7B8EFC] - 02/07/2011 - 14:33:35 RSHAD . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [78720]

O58 - SDL:[MD5.3DF4395A7CF8B7A72A5F4606366B8C2D] - 02/07/2011 - 14:33:38 RSHAD . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496]

O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 13/07/2009 - 02:48:04 RSHAD . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112]

O58 - SDL:[MD5.08DD34F74D65E1C8F238565570952630] - 23/10/2009 - 17:36:46 RSHAD . (.Broadcom Corporation - Broadcom NetLink Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\k57nd60a.sys [317480]

O58 - SDL:[MD5.C8B3131857931AE76798A741CC52B021] - 04/11/2011 - 15:25:12 RSHAD . (.Lavasoft AB - Boot Driver.) -- C:\Windows\system32\drivers\Lbd.sys [69376]

O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752]

O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560]

O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600]

O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776]

O58 - SDL:[MD5.23A854450DAB5C9B7A42AB9BE6F2E4BD] - 05/11/2011 - 17:00:50 RSHAD . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [25416]

O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 10/06/2009 - 02:48:04 RSHAD . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392]

O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 13/07/2009 - 02:48:04 RSHAD . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736]

O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 13/07/2009 - 02:48:26 RSHAD . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264]

O58 - SDL:[MD5.351533ACC2A069B94E80BBFC177E8FDF] - 20/07/2010 - 18:07:26 RSHAD . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\system32\drivers\npf.sys [35344]

O58 - SDL:[MD5.64DDD0DEE976302F4BD93E5EFCC2F013] - 23/10/2009 - 00:46:08 RSHAD . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [18432]

O58 - SDL:[MD5.5D9FD91F3D38DC9DA01E3CB5FA89CD48] - 02/07/2011 - 14:33:48 RSHAD . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352]

O58 - SDL:[MD5.F7CD50FE7139F07E77DA8AC8033D1832] - 02/07/2011 - 14:33:48 RSHAD . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272]

O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 10/06/2009 - 02:45:46 RSHAD . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816]

O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 13/07/2009 - 02:45:45 RSHAD . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592]

O58 - SDL:[MD5.8015D36E5AB9B231507B2BCF0CEB0C73] - 16/07/2011 - 01:56:51 ---A- . (.Elaborate Bytes AG - Elby Delay Lower Filter Driver.) -- C:\Windows\system32\drivers\RegKill.sys [14032]

O58 - SDL:[MD5.7421A35C45484B95E83B5E9E107CEFC2] - 23/10/2009 - 11:23:24 RSHAD . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RtHDMIVX.sys [205472]

O58 - SDL:[MD5.0C3CF4B3BAE28E121A1689E3538F8712] - 23/10/2009 - 14:00:14 RSHAD . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHD64.sys [1966624]

O58 - SDL:[MD5.DB30AA4DAA0D492FA5D7717D8181FFA1] - 23/10/2009 - 02:58:08 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [225280]

O58 - SDL:[MD5.FD833BEE2FD9BEFDC0AFD1941A306D9E] - 04/11/2011 - 17:15:11 RSHAD . (.Sunbelt Software - 64-bit Anti-Rootkit Engine.) -- C:\Windows\system32\drivers\SBREDrv.sys [55384]

O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 14/07/2009 - 21:37:19 RSHAD . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040]

O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 10/06/2009 - 02:45:45 RSHAD . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584]

O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 13/07/2009 - 02:45:46 RSHAD . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464]

O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 13/07/2009 - 02:45:55 RSHAD . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656]

O58 - SDL:[MD5.5AEEC2BB8065B563ADBC88CA22588953] - 23/10/2009 - 11:15:26 RSHAD . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [292400]

O58 - SDL:[MD5.2E22C1FD397A5A9FFEF55E9D1FC96C00] - 23/10/2009 - 00:46:08 RSHAD . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\system32\drivers\UBHelper.sys [16896]

O58 - SDL:[MD5.6648C6D7323A2CE0C4776C36CEFBCB14] - 25/01/2010 - 06:39:58 RSHAD . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\system32\drivers\usbfilter.sys [34872]

O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 RSHAD . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488]

O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 10/06/2009 - 02:45:55 RSHAD . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872]

O58 - SDL:[MD5.1F8E9426219263CB3CE9AC1735A68D9E] - 16/07/2011 - 22:05:13 ---A- . (.SlySoft, Inc. - AnyDVD Filter Driver.) -- C:\Windows\SysWOW64\drivers\AnyDVD.sys [138872]

O58 - SDL:[MD5.D5BCB77BE83CF99F508943945D46343D] - 23/10/2009 - 04:16:08 ---A- . (.Dritek System Inc. - Dritek 64-bit PS/2 Keyboard Filter Driver.) -- C:\Windows\SysWOW64\drivers\DKbFltr.sys [25608]

O58 - SDL:[MD5.8015D36E5AB9B231507B2BCF0CEB0C73] - 16/07/2011 - 01:56:51 ---A- . (.Elaborate Bytes AG - Elby Delay Lower Filter Driver.) -- C:\Windows\SysWOW64\drivers\RegKill.sys [14032]

O58 - SDL:[MD5.DB30AA4DAA0D492FA5D7717D8181FFA1] - 23/10/2009 - 02:58:08 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\SysWOW64\drivers\RtsUStor.sys [225280]

O58 - SDL:[MD5.729248B54AFF21E740054ACEBFDBCB1C] - 29/01/2011 - 13:56:14 ---A- . (...) -- C:\Windows\SysWOW64\drivers\SBKUPNT.SYS [14976]

~ Scan Drivers in 00mn 09s

 

 

 

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)

O61 - LFC:Last File Created 01/11/2011 - 08:17:34 ---A- C:\Users\chris33\Documents\Mes Txt\startup.txt [5970]

O61 - LFC:Last File Created 02/06/2010 - 18:54:11 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\HTML Help\hh.dat [8678]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\EPSigs.vdx [65429]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\FastSigs.vdx [187429]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\JSSigs.vdx [63247]

O61 - LFC:Last File Created 04/11/2011 - 00:00:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\VVSSigs.vdx [36116]

O61 - LFC:Last File Created 04/11/2011 - 02:22:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\kbu.dat [5553016]

O61 - LFC:Last File Created 04/11/2011 - 03:25:24 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ThreatDT.vdx [2779501]

O61 - LFC:Last File Created 04/11/2011 - 03:25:24 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ThreatID.vdx [509840]

O61 - LFC:Last File Created 04/11/2011 - 03:25:59 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\AdviceTx.vdx [10245]

O61 - LFC:Last File Created 04/11/2011 - 03:26:00 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\CatDesc.vdx [180180]

O61 - LFC:Last File Created 04/11/2011 - 03:26:00 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\CatID.vdx [9660]

O61 - LFC:Last File Created 04/11/2011 - 03:26:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ThreatCategoryGlossary.xml [47016]

O61 - LFC:Last File Created 04/11/2011 - 03:31:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ctid.vtd [26321010]

O61 - LFC:Last File Created 04/11/2011 - 03:31:27 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\cblk.vtd [46577988]

O61 - LFC:Last File Created 04/11/2011 - 03:32:04 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\FileDT.vdx [163836]

O61 - LFC:Last File Created 04/11/2011 - 03:32:04 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\FolderDT.vdx [80088]

O61 - LFC:Last File Created 04/11/2011 - 03:32:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\Cookies.vdx [82968]

O61 - LFC:Last File Created 04/11/2011 - 03:32:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\RegDT.vdx [1104984]

O61 - LFC:Last File Created 04/11/2011 - 03:32:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\dnrl.vdx [149520]

O61 - LFC:Last File Created 04/11/2011 - 03:32:14 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ih.vdx [81624]

O61 - LFC:Last File Created 04/11/2011 - 03:32:56 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\cname.wtd [53128]

O61 - LFC:Last File Created 04/11/2011 - 03:32:56 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\white.wtd [33402648]

O61 - LFC:Last File Created 04/11/2011 - 03:32:57 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\hcol.wtd [19446]

O61 - LFC:Last File Created 04/11/2011 - 03:32:58 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\whsl.wtd [341568]

O61 - LFC:Last File Created 04/11/2011 - 03:34:01 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\bhsl.vtd [1825520]

O61 - LFC:Last File Created 04/11/2011 - 06:18:43 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\MiniMessage\3 [132]

O61 - LFC:Last File Created 04/11/2011 - 07:52:58 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Inbox [55782311]

O61 - LFC:Last File Created 04/11/2011 - 07:52:58 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Trash [2677238]

O61 - LFC:Last File Created 04/11/2011 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Inbox.msf [100876]

O61 - LFC:Last File Created 04/11/2011 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Trash.msf [74418]

O61 - LFC:Last File Created 04/11/2011 - 08:20:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\DefVer.txt [26]

O61 - LFC:Last File Created 04/11/2011 - 08:43:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\quarantine.dat [8092]

O61 - LFC:Last File Created 04/11/2011 - 08:43:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\rc.dat [9]

O61 - LFC:Last File Created 04/11/2011 - 08:43:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\rp_rules.dat [44]

O61 - LFC:Last File Created 04/11/2011 - 08:43:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\rp_stats.dat [470]

O61 - LFC:Last File Created 04/11/2011 - 08:43:51 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\whitelist.dat [9]

O61 - LFC:Last File Created 04/11/2011 - 08:45:27 ---A- C:\Users\All Users\Lavasoft\License\guid.dat [72]

O61 - LFC:Last File Created 04/11/2011 - 08:46:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Backup\backup.dat [462]

O61 - LFC:Last File Created 04/11/2011 - 08:46:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Backup\userinit.exe.e51d9f118b27f9953dd23f46acaf5708.61ac3efdfacfdd3f0f11dd4fd4044223.aawbackup [26628]

O61 - LFC:Last File Created 04/11/2011 - 08:46:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\settings.dat [82297]

O61 - LFC:Last File Created 04/11/2011 - 08:46:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\statistics.dat [307467]

O61 - LFC:Last File Created 04/11/2011 - 08:47:45 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\news.dat [728]

O61 - LFC:Last File Created 04/11/2011 - 09:54:38 ---A- C:\Users\chris33\Documents\Mes Txt\ZHPDiag.Txt [182473]

O61 - LFC:Last File Created 04/11/2011 - 10:58:57 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\defs0.std [5298904]

O61 - LFC:Last File Created 04/11/2011 - 13:25:25 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\usage_statistics.dat [9]

O61 - LFC:Last File Created 04/11/2011 - 16:53:01 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Inbox [2818]

O61 - LFC:Last File Created 04/11/2011 - 16:57:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Inbox.msf [3004]

O61 - LFC:Last File Created 04/11/2011 - 17:06:41 ---A- C:\Users\chris33\Downloads\Ad-Aware95Install.msi [10268672]

O61 - LFC:Last File Created 04/11/2011 - 17:12:54 ---A- C:\Users\All Users\Lavasoft\License\adaware.da2 [0]

O61 - LFC:Last File Created 04/11/2011 - 17:12:58 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\nag.ng [16]

O61 - LFC:Last File Created 04/11/2011 - 17:13:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.598.aawdef [16260]

O61 - LFC:Last File Created 04/11/2011 - 17:13:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.599.aawdef [67876]

O61 - LFC:Last File Created 04/11/2011 - 17:13:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-ttl-90-build-150.597.aawdef [5610532]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.600.aawdef [40292]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.601.aawdef [38004]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.602.aawdef [85508]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.603.aawdef [516484]

O61 - LFC:Last File Created 04/11/2011 - 17:13:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.604.aawdef [68164]

O61 - LFC:Last File Created 04/11/2011 - 17:13:11 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.605.aawdef [19204]

O61 - LFC:Last File Created 04/11/2011 - 17:13:11 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aaw2009-excluded-build-150.606.aawdef [18884]

O61 - LFC:Last File Created 04/11/2011 - 17:14:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\cert.car [132668]

O61 - LFC:Last File Created 04/11/2011 - 17:14:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\cert.car [132668]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\genocode.ows [850318]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\thorax.aaw [508776]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\genocode.ows [850318]

O61 - LFC:Last File Created 04/11/2011 - 17:14:29 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\thorax.aaw [508776]

O61 - LFC:Last File Created 04/11/2011 - 17:14:50 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef [6481208]

O61 - LFC:Last File Created 04/11/2011 - 17:14:50 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\core.aawdef [6481208]

O61 - LFC:Last File Created 04/11/2011 - 17:15:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWService.exe.compressed [565490]

O61 - LFC:Last File Created 04/11/2011 - 17:15:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWService.exe [2152152]

O61 - LFC:Last File Created 04/11/2011 - 17:15:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWTray.exe [1191216]

O61 - LFC:Last File Created 04/11/2011 - 17:15:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AAWTray.exe.compressed [279443]

O61 - LFC:Last File Created 04/11/2011 - 17:15:02 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-Aware.exe [1896192]

O61 - LFC:Last File Created 04/11/2011 - 17:15:02 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-Aware.exe.compressed [427325]

O61 - LFC:Last File Created 04/11/2011 - 17:15:03 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe [1744312]

O61 - LFC:Last File Created 04/11/2011 - 17:15:03 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe.compressed [477533]

O61 - LFC:Last File Created 04/11/2011 - 17:15:03 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe.compressed [300067]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe [1254568]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AutoLaunch.exe [658688]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\AutoLaunch.exe.compressed [166000]

O61 - LFC:Last File Created 04/11/2011 - 17:15:04 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\CEAPI.dll.compressed [441954]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\CEAPI.dll [1636144]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe [704520]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe.compressed [216374]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\64\AAWDriverTool.exe [822488]

O61 - LFC:Last File Created 04/11/2011 - 17:15:05 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\64\AAWDriverTool.exe.compressed [235956]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\ResourceAdmin.xml [50964]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\ResourceAdmin.xml.compressed [7065]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_de-DE.xml [80886]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_de-DE.xml.compressed [14384]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_en-US.xml [75688]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_en-US.xml.compressed [13296]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_es-ES.xml [77354]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_es-ES.xml.compressed [13474]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_fr-FR.xml [80483]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_fr-FR.xml.compressed [14134]

O61 - LFC:Last File Created 04/11/2011 - 17:15:06 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_it-IT.xml.compressed [13857]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Languages\resource_it-IT.xml [79407]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\PrivacyClean.dll [794640]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\PrivacyClean.dll.compressed [278253]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\RPAPI.dll [589184]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\RPAPI.dll.compressed [155240]

O61 - LFC:Last File Created 04/11/2011 - 17:15:07 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Rebrand.dat [54244]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt.dll [493344]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt.dll.compressed [114512]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\UpdateManager.dll [929056]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\UpdateManager.dll.compressed [230759]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\VipreBridge.dll [430568]

O61 - LFC:Last File Created 04/11/2011 - 17:15:08 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\VipreBridge.dll.compressed [116421]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aawapi.dll [923872]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\aawapi.dll.compressed [196675]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavalicense.dll [664856]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavalicense.dll.compressed [164605]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavamessage.dll [540752]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lavamessage.dll.compressed [129365]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lsdelete.exe [16432]

O61 - LFC:Last File Created 04/11/2011 - 17:15:09 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\lsdelete.exe.compressed [7538]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys.compressed [25339]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt_64.dll [808072]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\ShellExt_64.dll.compressed [230638]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\kernexplorer64.sys [17152]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\kernexplorer64.sys.compressed [8807]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\threatwork.exe [1159232]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\threatwork.exe.compressed [280853]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\version.dat [10]

O61 - LFC:Last File Created 04/11/2011 - 17:15:10 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\version.dat [10]

O61 - LFC:Last File Created 04/11/2011 - 17:15:11 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\Drivers\SBREDrv.sys [55384]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\RTmem.vdx [3256]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\TImem.vdx [1254]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\bhmem.vtd [8964]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\bmem.vtd [68302]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\cmem.vtd [64364]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\whmem.wtd [1348]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\wmem.wtd [48982]

O61 - LFC:Last File Created 04/11/2011 - 17:15:12 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\CoreVer.txt [32]

O61 - LFC:Last File Created 04/11/2011 - 17:15:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Update\metafile.dat.cached [142961]

O61 - LFC:Last File Created 04/11/2011 - 17:16:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef.hashdiskcache.bin [6327588]

O61 - LFC:Last File Created 04/11/2011 - 17:16:23 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef.fingerprintdiskcache.bin [905752]

O61 - LFC:Last File Created 04/11/2011 - 17:16:23 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\core.aawdef.regdiskcache.bin [12181630]

O61 - LFC:Last File Created 04/11/2011 - 18:18:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Quarantine\Setup_FreeConverter.exe.d8f8decc9ab4c54f8cd37d244ac31f5c.7a8d014483d71ece7e838078a377c.aawqff [458084]

O61 - LFC:Last File Created 04/11/2011 - 18:18:21 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\packard bell game console.exe.30 [4648932]

O61 - LFC:Last File Created 04/11/2011 - 18:18:22 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\1-7-00095772.lsf [2240]

O61 - LFC:Last File Created 04/11/2011 - 18:24:58 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\3-0-00007B18.lsf [7543]

O61 - LFC:Last File Created 04/11/2011 - 18:34:48 ---A- C:\Users\chris33\Downloads\AD-R.exe [1563105]

O61 - LFC:Last File Created 04/11/2011 - 18:37:49 ---A- C:\Users\chris33\Downloads\ZHPDiag.exe [2265732]

O61 - LFC:Last File Created 04/11/2011 - 19:00:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\apprules.dat [1566]

O61 - LFC:Last File Created 04/11/2011 - 19:00:00 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\networkrules.dat [4760]

O61 - LFC:Last File Created 04/11/2011 - 19:00:01 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\apincl.dat [682]

O61 - LFC:Last File Created 04/11/2011 - 19:00:02 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\hstn.vtd [96714]

O61 - LFC:Last File Created 04/11/2011 - 19:00:02 ----- C:\Users\All Users\Lavasoft\Ad-Aware\Defs\Extended\ip.vtd [592]

O61 - LFC:Last File Created 04/11/2011 - 19:25:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\blocklist.xml [6314]

O61 - LFC:Last File Created 04/11/2011 - 19:48:01 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Drafts [0]

O61 - LFC:Last File Created 04/11/2011 - 19:48:01 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Drafts.msf [1891]

O61 - LFC:Last File Created 04/11/2011 - 19:48:07 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Sent [27226910]

O61 - LFC:Last File Created 04/11/2011 - 19:57:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\Sent.msf [36498]

O61 - LFC:Last File Created 04/11/2011 - 20:09:47 ---A- C:\Users\chris33\Documents\Mes Txt\bookmarks.html [69888]

O61 - LFC:Last File Created 04/11/2011 - 21:32:34 ---A- C:\Users\All Users\Alwil Software\Avast5\db1caca015e0f957d-9cf5932d.dat [7944]

O61 - LFC:Last File Created 04/11/2011 - 21:32:34 ---A- C:\Users\All Users\Alwil Software\Avast5\db1caca015e6a09c7-10f5e8f5.dat [864]

O61 - LFC:Last File Created 05/11/2011 - 08:04:55 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\3-0-0000E2BF.lsf [597]

O61 - LFC:Last File Created 05/11/2011 - 09:13:56 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\config.conf [2399]

O61 - LFC:Last File Created 05/11/2011 - 09:13:56 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\custom.conf [5]

O61 - LFC:Last File Created 05/11/2011 - 09:13:56 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\news.conf [250]

O61 - LFC:Last File Created 05/11/2011 - 09:14:06 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\build.conf [261]

O61 - LFC:Last File Created 05/11/2011 - 09:14:06 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [7322133]

O61 - LFC:Last File Created 05/11/2011 - 09:14:16 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\ignore.dat [0]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass.dll.8 [92740]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass.dll.8_1 [92740]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_aac.dll.8 [150532]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_aac.dll.8_1 [150532]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_alac.dll.8 [12788]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_alac.dll.8_1 [12788]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_ape.dll.8 [33252]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_ape.dll.8_1 [33252]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_flac.dll.8 [23620]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_flac.dll.8_1 [23620]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_mpc.dll.8 [18900]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_mpc.dll.8_1 [18900]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_tta.dll.8 [8676]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_tta.dll.8_1 [8676]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_wv.dll.8 [28100]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\bass_wv.dll.8_1 [28100]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\d3dramp.dll.8 [593924]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\dcbasssource.ax.8 [245764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\dcbasssource.ax.8_1 [245764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divx.dll.8 [696324]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divx.dll.8_1 [696324]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divxdech264.ax.8 [629764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\divxdech264.ax.8_1 [629764]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ivinav.ax.8 [601604]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ivinav.ax.8_1 [601604]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\minicalc.exe.8 [23044]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\minicalc.exe.8_1 [23044]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ogmcalc.exe.8 [9220]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\ogmcalc.exe.8_1 [9220]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\packard bell game console.exe.30_1 [4648932]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\statsreader.exe.8 [13828]

O61 - LFC:Last File Created 05/11/2011 - 12:47:26 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit\statsreader.exe.8_1 [13828]

O61 - LFC:Last File Created 05/11/2011 - 12:47:27 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Quarantine\AnyDVD.HD.6.8.4.0.Final-RES-patch.exe.cd631b175679f57d09a7e96f566b066.d9f1ebfdbe8e8bae16d7e59b59df4e1.aawqff [132612]

O61 - LFC:Last File Created 05/11/2011 - 12:47:28 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\1-7-006E6CC8.lsf [3097]

O61 - LFC:Last File Created 05/11/2011 - 13:25:25 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Statistics\3-0-0000730C.lsf [17464]

O61 - LFC:Last File Created 05/11/2011 - 13:25:54 ---A- C:\Users\All Users\Lavasoft\Ad-Aware\Quarantine\AAWQF20111105132554.aawqif [1034]

O61 - LFC:Last File Created 06/11/2011 - 07:56:39 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\pluginreg.dat [6891]

O61 - LFC:Last File Created 06/11/2011 - 07:57:36 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\session.json [362]

O61 - LFC:Last File Created 06/11/2011 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\prefs.js [17873]

O61 - LFC:Last File Created 06/11/2011 - 08:11:20 ---A- C:\Users\chris33\Downloads\ccsetup312.exe [3511776]

O61 - LFC:Last File Created 06/11/2011 - 08:27:17 ---A- C:\Users\chris33\Downloads\TFC.exe [446464]

O61 - LFC:Last File Created 06/11/2011 - 08:36:57 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\MSN Messenger\sqmnoopt00.sqm [296]

O61 - LFC:Last File Created 06/11/2011 - 08:45:06 ---A- C:\Users\chris33\AppData\Local\Temp\GBMC071.xml [938]

O61 - LFC:Last File Created 06/11/2011 - 08:45:08 ---A- C:\Users\chris33\AppData\Local\Temp\GBMC85E.xml [7144]

O61 - LFC:Last File Created 06/11/2011 - 08:45:14 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\MSN Messenger\sqmnoopt01.sqm [296]

O61 - LFC:Last File Created 06/11/2011 - 08:45:15 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\0ESS34XD.txt [66]

O61 - LFC:Last File Created 06/11/2011 - 08:45:16 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\GGMQ5DDO.txt [257]

O61 - LFC:Last File Created 06/11/2011 - 08:45:16 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\MZ89WJGV.txt [241]

O61 - LFC:Last File Created 06/11/2011 - 08:45:16 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\QMXMOKVT.txt [267]

O61 - LFC:Last File Created 06/11/2011 - 08:45:16 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\S03FRZAD.txt [239]

O61 - LFC:Last File Created 06/11/2011 - 08:45:16 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\U5OETP05.txt [236]

O61 - LFC:Last File Created 06/11/2011 - 08:45:16 ---A- C:\Users\chris33\AppData\Local\Temp\Cookies\WLMMV67Y.txt [239]

O61 - LFC:Last File Created 06/11/2011 - 08:45:17 ---A- C:\Users\chris33\Tracing\WindowsLiveMessenger-uccapi-0.uccapilog [0]

O61 - LFC:Last File Created 06/11/2011 - 08:45:33 -SHA- C:\Users\chris33\AppData\Local\Temp\History\History.IE5\MSHist012011110620111107\index.dat [32768]

O61 - LFC:Last File Created 06/11/2011 - 08:45:47 ---A- C:\Users\chris33\AppData\Local\Temp\~DFAA42BFDA1F43FDA4.TMP [163840]

O61 - LFC:Last File Created 06/11/2011 - 08:47:46 ---A- C:\Users\chris33\Downloads\ZHPDiag2.exe [2817200]

O61 - LFC:Last File Created 06/11/2011 - 08:49:25 -SHA- C:\Users\chris33\AppData\Local\Temp\Cookies\index.dat [32768]

O61 - LFC:Last File Created 06/11/2011 - 08:49:25 -SHA- C:\Users\chris33\AppData\Local\Temp\History\History.IE5\index.dat [32768]

O61 - LFC:Last File Created 06/11/2011 - 08:49:43 ---A- C:\Users\All Users\Alwil Software\Avast5\aswAr.run [0]

O61 - LFC:Last File Created 06/12/2010 - 17:03:03 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\IdentityCRL\Production\MetaConfig.xml [163]

O61 - LFC:Last File Created 15/01/2011 - 08:49:17 ---A- C:\Users\All Users\Alwil Software\Avast5\URL.db [2071552]

O61 - LFC:Last File Created 15/08/2010 - 07:52:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.sfr.fr\popstate.dat [129]

O61 - LFC:Last File Created 15/08/2010 - 07:52:44 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\popstate.dat [125]

O61 - LFC:Last File Created 15/08/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\smart mailboxes\Inbox.msf [2543]

O61 - LFC:Last File Created 17/07/2010 - 07:53:54 ---A- C:\Users\All Users\Sun\Java\Java Update\jaureglist.xml [365]

O61 - LFC:Last File Created 19/07/2011 - 07:56:41 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\addons.sqlite [262144]

O61 - LFC:Last File Created 19/07/2011 - 08:15:15 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\webappsstore.sqlite [98304]

O61 - LFC:Last File Created 19/07/2011 - 19:45:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\places.sqlite [10485760]

O61 - LFC:Last File Created 21/03/2010 - 08:43:47 --HA- C:\Users\chris33\AppData\Local\IconCache.db [9955634]

O61 - LFC:Last File Created 21/06/2010 - 18:11:12 ---A- C:\Users\chris33\AppData\Roaming\Microsoft\Office\Excel12.pip [1572]

O61 - LFC:Last File Created 22/03/2010 - 08:46:03 ---A- C:\Users\chris33\AppData\Local\ATI\ACE\Manifest.xml [20446]

O61 - LFC:Last File Created 22/03/2010 - 08:46:04 ---A- C:\Users\chris33\AppData\Local\ATI\ACE\Manifest.Bin [27796]

O61 - LFC:Last File Created 22/03/2010 - 08:46:21 ---A- C:\Users\chris33\AppData\Local\ATI\ACE\Profiles.xml [12492]

O61 - LFC:Last File Created 23/07/2011 - 12:56:22 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\Local Folders\SUIVI COMMANDE [4460108]

O61 - LFC:Last File Created 23/07/2011 - 16:53:00 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\Local Folders\SUIVI COMMANDE.msf [114315]

O61 - LFC:Last File Created 23/07/2011 - 18:33:42 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.sfr.fr\Inbox [106185]

O61 - LFC:Last File Created 23/07/2011 - 19:57:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.sfr.fr\Inbox.msf [7629]

O61 - LFC:Last File Created 23/10/2009 - 08:45:25 ---A- C:\Users\All Users\Packard Bell\Packard Bell Updater\_UpdaterService_LOG.txt [1419188]

O61 - LFC:Last File Created 27/05/2011 - 08:44:23 ---A- C:\Users\All Users\Alwil Software\Avast5\snx_lconfig.xml [446]

O61 - LFC:Last File Created 27/05/2011 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\ScriptShield.txt [46312]

O61 - LFC:Last File Created 27/08/2010 - 07:53:12 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\global-messages-db.sqlite [3665920]

O61 - LFC:Last File Created 28/05/2010 - 08:43:51 ---A- C:\Users\All Users\Alwil Software\Avast5\Log.db [71680]

O61 - LFC:Last File Created 28/05/2010 - 08:43:51 ---A- C:\Users\All Users\Alwil Software\Avast5\db1ca9d611b393ea9-50f6e5af.dat [3068976]

O61 - LFC:Last File Created 28/05/2010 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\EmailShield.txt [135498]

O61 - LFC:Last File Created 28/05/2010 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\FileSystemShield.txt [135680]

O61 - LFC:Last File Created 28/05/2010 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\IMShield.txt [135498]

O61 - LFC:Last File Created 28/05/2010 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\NetworkShield.txt [135498]

O61 - LFC:Last File Created 28/05/2010 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\P2PShield.txt [135498]

O61 - LFC:Last File Created 28/05/2010 - 08:44:43 ---A- C:\Users\All Users\Alwil Software\Avast5\report\WebShield.txt [135717]

O61 - LFC:Last File Created 28/05/2010 - 08:45:09 ---A- C:\Users\All Users\Alwil Software\Avast5\report\BehaviorShield.txt [167206]

O61 - LFC:Last File Created 29/01/2011 - 08:45:06 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\httpd.conf [1846]

O61 - LFC:Last File Created 29/01/2011 - 08:45:06 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\shares.conf [349]

O61 - LFC:Last File Created 30/03/2010 - 07:52:58 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\cegetel.net\popstate.dat [716]

O61 - LFC:Last File Created 30/03/2010 - 07:57:36 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\folderTree.json [1207]

O61 - LFC:Last File Created 30/03/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\smart mailboxes\Trash.msf [3248]

O61 - LFC:Last File Created 30/03/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\cert8.db [65536]

O61 - LFC:Last File Created 30/03/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\key3.db [16384]

O61 - LFC:Last File Created 30/03/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\panacea.dat [18546]

O61 - LFC:Last File Created 30/03/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\permissions.sqlite [2048]

O61 - LFC:Last File Created 30/03/2010 - 07:57:37 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\virtualFolders.dat [748]

O61 - LFC:Last File Created 30/03/2010 - 08:15:15 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\cookies.sqlite [524288]

O61 - LFC:Last File Created 30/03/2010 - 19:45:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\history.mab [8528]

O61 - LFC:Last File Created 30/07/2011 - 08:45:08 ---A- C:\Users\chris33\AppData\Local\Neuf\Media Center\httpd.pid [6]

O61 - LFC:Last File Created 30/08/2011 - 19:48:03 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Trash [176676]

O61 - LFC:Last File Created 30/08/2011 - 19:57:43 ---A- C:\Users\chris33\AppData\Roaming\Thunderbird\Profiles\jpfngemt.default\Mail\pop.laposte-1.net\Trash.msf [19493]

~ Scan Files in 02mn 25s

 

 

 

---\\ Liste des outils de nettoyage (O63)

O63 - Logiciel: Ad-Remover - (.Pas de propriétaire.) [HKCU] -- Ad-Remover

O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1

~ Scan ADS in 00mn 00s

 

 

 

---\\ Liste des services Legacy (O64)

O64 - Services: CurCS - 06/09/2011 - C:\Windows\system32\drivers\aswMonFlt.sys - No object(No service) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT

O64 - Services: CurCS - ??/??/???? - C:\Users\chris33\AppData\Local\Temp\cpuz132\cpuz132_x64.sys (.not file.) - No object (No service) .(...) - LEGACY_CPUZ132

O64 - Services: CurCS - 16/12/2010 - C:\Windows\system32\Drivers\ElbyCDIO.sys - No object(No service) .(.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) - LEGACY_ELBYCDIO

O64 - Services: CurCS - 18/08/2011 - C:\Windows\system32\DRIVERS\Lbd.sys - No object(No service) .(.Lavasoft AB - Boot Driver.) - LEGACY_LBD

O64 - Services: CurCS - 25/06/2010 - C:\Windows\system32\drivers\npf.sys - No object(No service) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF

~ Scan Services in 00mn 02s

 

 

 

---\\ File Associations Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*

O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe

O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*

O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*

O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.html> <htmlfile>[HKCR\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Start Menu Internet (O68)

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

~ Scan Keys in 00mn 00s

 

 

 

---\\ Search Browser Infection (O69)

O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - Bing

O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - Bing

O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} [DefaultScope] - (Google) - Google

O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - Google

~ Scan Keys in 00mn 00s

 

 

 

---\\ Recherche particuliere à la racine de certains dossiers (O84)

[MD5.D394A2D5B37C450837CDBC45CB0437EA] [sPRF][12/06/2010] (.Media Player - Codec Pack.) -- C:\Users\chris33\Desktop\media.player.codec.pack.v3.9.5.setup.exe [21242575]

[MD5.5B5D56738C261634C281C7BA1CA1A2DF] [sPRF][06/11/2011] (.OldTimer Tools - Pas de description.) -- C:\Users\chris33\Desktop\TFC.exe [446464]

~ Scan Files in 00mn 00s

 

 

 

---\\ Firewall Active Exception List (FirewallRules) (O87)

O87 - FAEL: "SNMPTRAP-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Windows\system32\snmptrap.exe| (.not file.)

O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\snmptrap.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-QWave-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMPNSS-UPnP-Out-TCP" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RVM-VDS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\vds.exe| (.not file.)

O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RVM-VDS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\vds.exe| (.not file.)

O87 - FAEL: "RVM-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Collab-PNRP-In-UDP" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Collab-PNRP-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe| (.not file.)

O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe| (.not file.)

O87 - FAEL: "FPS-LLMNR-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "FPS-LLMNR-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-DHCP-In" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-DHCP-Out" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-DHCPV6-In" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-DHCPV6-Out" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-Teredo-In" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-Teredo-Out" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-IPHTTPS-Out" |Out - None - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "CoreNet-DNS-Out-UDP" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MsiScsi-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MsiScsi-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MsiScsi-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MsiScsi-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMI-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMI-WINMGMT-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WMI-WINMGMT-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-UPnP-Out-TCP" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDPHOST-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-LLMNR-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-LLMNR-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteTask-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteTask-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteTask-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MSDTC-KTMRM-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MSDTC-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteEventLogSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteFwAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" |In - Public - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" |Out - Public - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" |In - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" |In - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" |Out - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" |In - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" |In - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" |Out - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-QWave-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-QWave-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-QWave-In-TCP" |In - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-QWave-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-MCX2SVC-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-PlayTo-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-PlayTo-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "MCX-FDPHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "WPDMTP-UPnP-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{8D825084-7A77-4DFC-A27A-F810FC43E985}" | In - Public - P6 - FALSE | .(.Adobe Systems Incorporated - Adobe Photoshop Elements 7.0 (component).) -- C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\AdobePhotoshopElementsMediaServer.exe

O87 - FAEL: "{29728CE0-7FC0-46BA-843D-EC50559BE046}" | In - Public - P17 - FALSE | .(.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\AdobePhotoshopElementsMediaServer.exe

O87 - FAEL: "{5BF2F0C4-E144-40E9-9644-B742AA9E147B}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDVD 8.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PowerDVD8.exe

O87 - FAEL: "{706A9CF9-9CF7-4787-B8CE-93807EC449A5}" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{481C2F7F-214A-4357-8BD2-9BB550A79226}" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{D2D1589F-3C7F-46B8-B4C0-38B3BE535ABC}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{35BEC074-0942-44CB-B4E5-87F59A5A7FB1}" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{EC5DE3DA-D674-4882-B325-3F2A9C537D98}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{7A266318-8AA1-4086-8165-C0D7CC33D686}" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{112C610E-194C-4A8E-BE87-3A3F0E238C8D}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{B421858E-5DA1-491F-BACE-BFBC28E0FC0F}" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{427661F7-B75C-41E6-90C5-8052AA6FB3A2}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{6B41A815-7282-400E-B22A-589C5118BFEC}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe| (.not file.)

O87 - FAEL: "{204D21EC-64DF-4261-9ECC-ED89EFB1F75E}" | In - Private - P6 - TRUE | .(.Pas de propriétaire - Printer Communication System.) -- C:\Windows\System32\lxcycoms.exe

O87 - FAEL: "{D63544B4-AD18-4890-9EB9-DFF4E1D14011}" | In - Private - P17 - TRUE | .(.Pas de propriétaire - Printer Communication System.) -- C:\Windows\System32\lxcycoms.exe

O87 - FAEL: "{32B9E8C0-D210-4C74-9C06-7330CC2F6209}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe

O87 - FAEL: "{BC5A3DED-58B3-4430-A942-0EEA0C19373A}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe

O87 - FAEL: "{88441837-183D-4DFD-9C40-800EDDC4171F}" | In - Private - P6 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\http_ss_win_pro.exe

O87 - FAEL: "{EACA8A70-7651-452E-B94C-AFB750434831}" | In - Private - P17 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\http_ss_win_pro.exe

O87 - FAEL: "{ED542CDC-F5F6-448E-B545-1C84FFE9911F}" |Out - Public - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{DAEB3A15-E643-4491-BA69-E077268350E8}" |In - Public - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.)

O87 - FAEL: "{BB75A246-5250-4182-9B09-3EA9E1C5797F}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe

O87 - FAEL: "{4F53BFD5-91D4-4E96-B4B8-78498C60F01A}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe

O87 - FAEL: "{A18EE931-09EE-4245-A34F-175EE7CA633C}" | In - Public - P6 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\http_ss_win_pro.exe

O87 - FAEL: "{7EE5813D-C0DD-41D3-A2FA-33B9B630B412}" | In - Public - P17 - TRUE | .(...) -- C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\http_ss_win_pro.exe

O87 - FAEL: "{5AFC3FF1-FDB9-4B23-9089-7CA54038AB92}" | In - Private - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe

O87 - FAEL: "{149BAE7A-6CAE-4BC4-9147-2DF8F9FBEAD3}" | In - Private - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe

O87 - FAEL: "TCP Query User{E513C015-B27D-4440-A629-2313557EDF36}C:\program files (x86)\sfr\media center\httpd\httpd.exe" | In - Public - P6 - TRUE | .(.Apache Software Foundation.) -- C:\program files (x86)\sfr\media center\httpd\httpd.exe

O87 - FAEL: "UDP Query User{524686F2-F9B4-4D82-B875-5DE3B9DC0A8E}C:\program files (x86)\sfr\media center\httpd\httpd.exe" | In - Public - P17 - TRUE | .(.Apache Software Foundation.) -- C:\program files (x86)\sfr\media center\httpd\httpd.exe

O87 - FAEL: "{B83E062D-F95E-4505-8FFD-8DBDFC539727}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe

~ Scan Firewall in 00mn 01s

 

 

 

---\\ Recherche détournement de DNS routeur (O89)

Serveur : neufbox

Address: 192.168.1.1

Nom : www.l.google.com

Addresses: 209.85.148.147

209.85.148.104

209.85.148.103

209.85.148.106

209.85.148.99

209.85.148.105

Aliases: www.google.fr

www.google.com

~ Scan DNS in 00mn 02s

 

 

 

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)

SR - | Auto 25/01/2010 169312 | (AdobeActiveFileMonitor7.0) . (.Adobe Systems Incorporated.) - c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe

SR - | Auto 23/10/2009 203264 | (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe

SR - | Auto 10/08/2011 52896 | (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

SR - | Auto 06/09/2011 44768 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

SS - | Demand 13/11/2010 94208 | (Droppix Service) . (.Droppix.) - C:\Program Files (x86)\Common Files\Droppix\DxService.exe

SR - | Auto 23/10/2009 844320 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe

SS - | Demand 25/01/2010 651720 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

SR - | Auto 23/10/2009 1150496 | (Greg_Service) . (.Acer Incorporated.) - C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe

SS - | Auto 21/03/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

SS - | Demand 21/03/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

SR - | Auto 04/11/2011 2152152 | (Lavasoft Ad-Aware Service) . (.Lavasoft Limited.) - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe

SS - | Demand 465408 | (lxcy_device) . (...) - C:\Windows\system32\lxcycoms.exe

SS - | Demand 23/10/2009 935208 | Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe

SR - | Auto 23/10/2009 62720 | (NTI IScheduleSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe

SR - | Auto 44312 | (OberonGameConsoleService) . (...) - C:\Program Files (x86)\Packard Bell GameZone\GameConsole\OberonGameConsoleService.exe

SS - | Demand 0 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (...) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe

SR - | Auto 23/10/2009 240160 | (Updater Service) . (.Acer.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe

SS - | Demand 4136960 | (WiselinkPro) . (...) - C:\Program Files (x86)\Samsung\SAMSUNG PC Share Manager\WiselinkPro.exe

SR - | Auto 14/07/2009 27136 | C:\Windows\system32\wuaueng.dll, (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe

~ Scan Services in 00mn 03s

 

 

 

---\\ Recherche Master Boot Record Infection (MBR)(O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, GMER - Rootkit Detector and Remover

Run by chris33 at 06/11/2011 08:55:35

 

device: opened successfully

user: error reading MBR

 

Disk trace:

error: Read Descripteur non valide

kernel: error reading MBR

~ Scan MBR in 00mn 05s

 

 

 

End of the scan (1847 lines in 05mn 25s)(0)

 

 

 

 

 

Bonsoir,

 

Rapport de ZHPDiag v1.27.1421 par Nicolas Coolman, Update du 16/12/2010

 

Cette version de zhpdiag est obsolète.

mettez à jour.

Téléchargez ZhpDiag de Coolman

 

Téléchargez TFC par OldTimer sur votre Bureau pour supprimer vos fichiers temporaires

Faites un double clic sur TFC.exe pour le lancer.

Sous Vista, faites un clic droit sur le fichier et choisissez Exécuter en tant qu'Administrateur

L'outil va fermer tous les programmes lors de son exécution, donc vérifiez que vous avez sauvegardé tout votre travail en cours auparavant.

Cliquez sur le bouton Start pour lancer le processus.

Selon la fréquence à laquelle vous supprimez vos fichiers temporaires, cela peut durer de quelques secondes à une minute ou deux.

Laissez le programme s'exécuter sans l'interrompre.

Lorsqu'il aura terminé, l'outil devrait faire redémarrer votre systèmepour parachever le nettoyage..

S'il ne le faisait pas,faites redémarrer manuellement le PC

 

Vérifiez si vous avez encore ce message, svp.

Lien vers le commentaire
Partager sur d’autres sites

Bonjour,

 

 

Spybot, totalement obsolète( comme aussi Ad_Aware) va être désinstallé.Vous pourrez utiliser Mbam pour le remplacer.

Auparavant, vous devez faire ceci, avant de lancer Zhpfix:

Pour désactiver TeaTimer qui ne sert à rien et peut faire échouer une désinfection:!

Sous Vista, exécuter avec privilèges Administrateur

Afficher d'abord le Mode Avancé dans SpyBot

->Options Avancées :

- >menu Mode, Mode Avancé.

Une colonne de menus apparaît dans la partie gauche :

- >cliquer sur Outils,

- >cliquer sur Résident,

Dans Résident :

- >décocher Résident "TeaTimer" pour le désactiver.

Effacer le contenu du dossier Snapshots(le contenu de snapshots, pas le fichier snapshots) , sous XP :

C:\Documents and Settings\All Users\Application Data\Spybot - Search &Destroy\Snapshots

Et sous Vista :

C:\ProgramData\Spybot - Search & Destroy\Snapshots

Si vous ne trouvez pas Snapshots, poursuivez la procédure sans vous en préoccuper

 

Vous devez trouver sur le bureau ou ,sinon, dans le dossier où vous avez installé Zhpdiag ces 3 icônes .

zhp0710.png

Cliquer sur l'icône Zhpfix

Sous Vista/7 clic-droit, "Exécuter En tant qu'Administrateur

Copiez/Collez les lignes vertes dans le cadre ci dessous:

pour cela;

Clic gauche maintenu enfoncé, Balayer l'ensemble du texte à copier avec la souris pour le mettre en surbrillance ,de gauche à droite et de haut en bas

Ctrl+c mettre le tout en mémoire

Ctrl+v pour inscrire le texte dans le Document

 

O4 - HKLM\..\Run: [LXCYCATS] rundll32 C:\Windows\system32\spool\DRIVERS\x64\3\LXCYtime.dll, (.not file.) => Fichier absent

O4 - HKCU\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe => Safer Net Working®Spybot S&D

O4 - HKCU\..\RunOnce: [!SearchquDSFF] C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dll, (.not file.) => Fichier absent

O4 - HKCU\..\RunOnce: [!SearchquFFHP] C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll, (.not file.) => Fichier absent

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\Run: [spybotSD TeaTimer] . (.Safer-Networking Ltd. - System settings protector.) -- C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe => Safer Net Working®Spybot S&D

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\RunOnce: [!SearchquDSFF] C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dll, (.not file.) => Fichier absent

O4 - HKUS\S-1-5-21-2599719406-2373148968-441932854-1001\..\RunOnce: [!SearchquFFHP] C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll, (.not file.) => Fichier absent

O4 - Global Startup: C:\Users\chris33\Desktop\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe => Safer Net Working®Spybot S&D

O4 - Global Startup: C:\Users\chris33\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Spybot - Search & Destroy.lnk . (.Safer Networking Limited.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe => Safer Net Working®Spybot S&D

O9 - Extra button: Send by Bluetooth to [64Bits] - {7815BE26-237D-41A8-A98F-F7BD75F71086} -- Clé orpheline => Orphean Key not necessary

O23 - Service: Lavasoft Ad-Aware Service (Lavasoft Ad-Aware Service) . (.Lavasoft Limited - Ad-Aware Service Application.) - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe => Lavasoft®Ad-Aware Service

[MD5.5608E451B9D69B548103BA9CF39A3527] [APT] [Ad-Aware Update (Weekly)] (.Lavasoft Limited.) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

[MD5.00000000000000000000000000000000] [APT] [{B17649F9-8207-4CF9-99C3-02FC464234B2}] (...) -- C:\Windows\SysWOW64\btcpl.cpl (.not file.) => Fichier absent

[MD5.00000000000000000000000000000000] [APT] [{B55D92F6-41B4-4D45-A886-3CAF13709FA7}] (...) -- C:\Windows\SysWOW64\btcpl.cpl (.not file.) => Fichier absent

O42 - Logiciel: Spybot - Search & Destroy - (.Safer Networking Limited.) [HKLM] -- {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1 => Safer Networking Limited Spybot - S&D

O43 - CFD: 14/04/2010 - 17:53:54 - [1311] ----D- C:\ProgramData\Partner => Game

O43 - CFD: 06/11/2011 - 08:15:18 - [112668] ----D- C:\ProgramData\Spybot - Search & Destroy => Spybot - Search & Destroy

O43 - CFD: 01/11/2011 - 18:56:04 - [68315725] ----D- C:\Program Files (x86)\Spybot - Search & Destroy => Spybot - Search & Destroy

O44 - LFC:[MD5.24A607DF79A1CEB8CF48D0700AB7B81E] - 04/11/2011 - 19:57:39 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [5825]

O44 - LFC:[MD5.71E0EEBA6F1269BEE5252E48A76F88C7] - 04/11/2011 - 19:53:10 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [6353]

O53 - SMSR:HKLM\...\startupreg\!SearchquDSFF [Key] . (...) -- C:\Users\chris33\AppData\Local\Temp\SRASSE~1.dll, (.not file.) => Fichier absent

O53 - SMSR:HKLM\...\startupreg\!SearchquFFHP [Key] . (...) -- C:\Users\chris33\AppData\Local\Temp\INSTAL~1.dll, (.not file.) => Fichier absent

O87 - FAEL: "SNMPTRAP-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Windows\system32\snmptrap.exe| (.not file.) => Fichier absent

O87 - FAEL: "SNMPTRAP-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\snmptrap.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-In-UDP-NoScope" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-Out-UDP-NoScope" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-In-UDP" |In - Public - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-Out-UDP" |Out - Public - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-QWave-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-SSDPSrv-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-SSDPSrv-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMPNSS-UPnP-Out-TCP" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "PNRPMNRS-PNRP-In-UDP" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "PNRPMNRS-PNRP-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "PNRPMNRS-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "PNRPMNRS-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RVM-VDS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\vds.exe| (.not file.) => Fichier absent

O87 - FAEL: "RVM-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RVM-VDS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\vds.exe| (.not file.) => Fichier absent

O87 - FAEL: "RVM-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Collab-PNRP-In-UDP" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Collab-PNRP-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Collab-PNRP-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "Collab-PNRP-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe| (.not file.) => Fichier absent

O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe| (.not file.) => Fichier absent

O87 - FAEL: "FPS-LLMNR-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "FPS-LLMNR-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-DHCP-In" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-DHCP-Out" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-DHCPV6-In" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-DHCPV6-Out" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-Teredo-In" |In - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-Teredo-Out" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-IPHTTPS-Out" |Out - None - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "CoreNet-DNS-Out-UDP" |Out - None - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "PerfLogsAlerts-DCOM-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MsiScsi-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MsiScsi-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MsiScsi-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MsiScsi-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMI-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMI-WINMGMT-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMI-WINMGMT-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMI-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMI-WINMGMT-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WMI-WINMGMT-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-SSDPSrv-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-UPnP-Out-TCP-Active" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDPHOST-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDPHOST-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-LLMNR-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-LLMNR-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP-Active" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP-Active" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-SSDPSrv-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-SSDPSrv-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-UPnP-Out-TCP" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDPHOST-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDPHOST-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-LLMNR-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-LLMNR-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDRESPUB-WSD-In-UDP" |In - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "NETDIS-FDRESPUB-WSD-Out-UDP" |Out - Domain - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteSvcAdmin-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteTask-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteTask-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteTask-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteTask-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MSDTC-KTMRM-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MSDTC-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MSDTC-KTMRM-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MSDTC-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteEventLogSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteEventLogSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteEventLogSvc-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteFwAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteFwAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteFwAdmin-RPCSS-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope" |In - Public - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT" |Out - Public - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-DCOM-In-TCP-NoScope-Active" |In - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-SSDPSrv-In-UDP-Active" |In - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-UDP-Active" |Out - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-SSDPSrv-In-TCP-Active" |In - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-SSDPSrv-Out-TCP-Active" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active" |In - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "RemoteAssistance-PnrpSvc-UDP-OUT-Active" |Out - Domain - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-QWave-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-QWave-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-QWave-In-TCP" |In - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-QWave-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-MCX2SVC-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-PlayTo-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-PlayTo-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "MCX-FDPHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WPDMTP-SSDPSrv-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WPDMTP-SSDPSrv-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WPDMTP-UPnPHost-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "WPDMTP-UPnP-Out-TCP" |Out - None - P6 - FALSE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{706A9CF9-9CF7-4787-B8CE-93807EC449A5}" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{481C2F7F-214A-4357-8BD2-9BB550A79226}" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{D2D1589F-3C7F-46B8-B4C0-38B3BE535ABC}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{35BEC074-0942-44CB-B4E5-87F59A5A7FB1}" |Out - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{EC5DE3DA-D674-4882-B325-3F2A9C537D98}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{7A266318-8AA1-4086-8165-C0D7CC33D686}" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{112C610E-194C-4A8E-BE87-3A3F0E238C8D}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{B421858E-5DA1-491F-BACE-BFBC28E0FC0F}" |Out - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{427661F7-B75C-41E6-90C5-8052AA6FB3A2}" |In - Private - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{6B41A815-7282-400E-B22A-589C5118BFEC}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe| (.not file.) => Fichier absent

O87 - FAEL: "{ED542CDC-F5F6-448E-B545-1C84FFE9911F}" |Out - Public - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

O87 - FAEL: "{DAEB3A15-E643-4491-BA69-E077268350E8}" |In - Public - P17 - TRUE | .(...) -- C:\Windows\system32\svchost.exe| (.not file.) => Fichier absent

SR - | Auto 04/11/2011 2152152 | (Lavasoft Ad-Aware Service) . (.Lavasoft Limited.) - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe => Lavasoft®Ad-Aware Service

 

 

EmptyFlash

EmptyTemp

110926125340285987.jpg

 

Cliquez ensuite sur le H- PanelHelper.jpg

Cliquer sur "OK", ce qui fait apparaître un carré à gauche de chaque ligne.

110515101159971677.jpg

Cliquer sur "Tous" puis sur "Nettoyer" .

Redémarrer pour achever le nettoyage.

Un rapport apparait:

Capture1Rapport.JPG

Si le rapport n'apparait pas,cliquer surPanelRapport.jpg

Copier-coller le rapport de suppression dans la prochaine réponse.

Lien vers le commentaire
Partager sur d’autres sites

bonjour Pear,

 

j'ai suivi vos instructions et je n'ai plus de message au demarrage du pc.

ça m'a l'air bon,

voici ci dessous le rapport de dhpfix :

 

Rapport de ZHPFix 1.12.3367 par Nicolas Coolman, Update du 29/10/2011

Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-06-11-2011-12-37-20.txt

Run by chris33 at 06/11/2011 12:37:20

Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

Web site : ZHPFix Fix de rapport

 

========== Logiciel(s) ==========

ABSENT Software Key: {B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1

 

========== Processus mémoire ==========

SUPPRIME Memory Process: C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe

 

========== Clé(s) du Registre ==========

SUPPRIME Key**: CLSID Extra Buttons: {7815BE26-237D-41A8-A98F-F7BD75F71086}

SUPPRIME Key: Service: Lavasoft Ad-Aware Service

SUPPRIME Key**: StartupReg: !SearchquDSFF

SUPPRIME Key**: StartupReg: !SearchquFFHP

ABSENT Key: Service: Lavasoft Ad-Aware Service

 

========== Valeur(s) du Registre ==========

SUPPRIME RunValue: LXCYCATS

ABSENT RunValue: SpybotSD TeaTimer

ABSENT RunValue: !SearchquDSFF

ABSENT RunValue: !SearchquFFHP

SUPPRIME SNMPTRAP-In-UDP

SUPPRIME SNMPTRAP-In-UDP-NoScope

SUPPRIME WMPNSS-QWave-In-UDP-NoScope

SUPPRIME WMPNSS-QWave-Out-UDP-NoScope

SUPPRIME WMPNSS-QWave-In-TCP-NoScope

SUPPRIME WMPNSS-QWave-Out-TCP-NoScope

SUPPRIME WMPNSS-QWave-In-UDP

SUPPRIME WMPNSS-QWave-Out-UDP

SUPPRIME WMPNSS-QWave-In-TCP

SUPPRIME WMPNSS-QWave-Out-TCP

SUPPRIME WMPNSS-SSDPSrv-In-UDP

SUPPRIME WMPNSS-SSDPSrv-Out-UDP

SUPPRIME WMPNSS-UPnP-Out-TCP

SUPPRIME Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-In

SUPPRIME Microsoft-Windows-HomeGroup-ProvSvc-TCP3587-Out

SUPPRIME Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-In

SUPPRIME Microsoft-Windows-HomeGroup-ProvSvc-UDP3540-Out

SUPPRIME PNRPMNRS-PNRP-In-UDP

SUPPRIME PNRPMNRS-PNRP-Out-UDP

SUPPRIME PNRPMNRS-SSDPSrv-In-UDP

SUPPRIME PNRPMNRS-SSDPSrv-Out-UDP

SUPPRIME RVM-VDS-In-TCP-NoScope

SUPPRIME RVM-RPCSS-In-TCP-NoScope

SUPPRIME RVM-VDS-In-TCP

SUPPRIME RVM-RPCSS-In-TCP

SUPPRIME Collab-PNRP-In-UDP

SUPPRIME Collab-PNRP-Out-UDP

SUPPRIME Collab-PNRP-SSDPSrv-In-UDP

SUPPRIME Collab-PNRP-SSDPSrv-Out-UDP

SUPPRIME FPS-SpoolSvc-In-TCP-NoScope

SUPPRIME FPS-SpoolSvc-In-TCP

SUPPRIME FPS-LLMNR-In-UDP

SUPPRIME FPS-LLMNR-Out-UDP

SUPPRIME CoreNet-DHCP-In

SUPPRIME CoreNet-DHCP-Out

SUPPRIME CoreNet-DHCPV6-In

SUPPRIME CoreNet-DHCPV6-Out

SUPPRIME CoreNet-Teredo-In

SUPPRIME CoreNet-Teredo-Out

SUPPRIME CoreNet-IPHTTPS-Out

SUPPRIME CoreNet-DNS-Out-UDP

SUPPRIME PerfLogsAlerts-DCOM-In-TCP

SUPPRIME PerfLogsAlerts-DCOM-In-TCP-NoScope

SUPPRIME MsiScsi-In-TCP-NoScope

SUPPRIME MsiScsi-Out-TCP-NoScope

SUPPRIME MsiScsi-In-TCP

SUPPRIME MsiScsi-Out-TCP

SUPPRIME WMI-RPCSS-In-TCP-NoScope

SUPPRIME WMI-WINMGMT-In-TCP-NoScope

SUPPRIME WMI-WINMGMT-Out-TCP-NoScope

SUPPRIME WMI-RPCSS-In-TCP

SUPPRIME WMI-WINMGMT-In-TCP

SUPPRIME WMI-WINMGMT-Out-TCP

SUPPRIME NETDIS-SSDPSrv-In-UDP-Active

SUPPRIME NETDIS-SSDPSrv-Out-UDP-Active

SUPPRIME NETDIS-UPnP-Out-TCP-Active

SUPPRIME NETDIS-FDPHOST-In-UDP-Active

SUPPRIME NETDIS-FDPHOST-Out-UDP-Active

SUPPRIME NETDIS-LLMNR-In-UDP-Active

SUPPRIME NETDIS-LLMNR-Out-UDP-Active

SUPPRIME NETDIS-FDRESPUB-WSD-In-UDP-Active

SUPPRIME NETDIS-FDRESPUB-WSD-Out-UDP-Active

SUPPRIME NETDIS-SSDPSrv-In-UDP

SUPPRIME NETDIS-SSDPSrv-Out-UDP

SUPPRIME NETDIS-UPnP-Out-TCP

SUPPRIME NETDIS-FDPHOST-In-UDP

SUPPRIME NETDIS-FDPHOST-Out-UDP

SUPPRIME NETDIS-LLMNR-In-UDP

SUPPRIME NETDIS-LLMNR-Out-UDP

SUPPRIME NETDIS-FDRESPUB-WSD-In-UDP

SUPPRIME NETDIS-FDRESPUB-WSD-Out-UDP

SUPPRIME RemoteSvcAdmin-RPCSS-In-TCP-NoScope

SUPPRIME RemoteSvcAdmin-RPCSS-In-TCP

SUPPRIME RemoteTask-In-TCP-NoScope

SUPPRIME RemoteTask-RPCSS-In-TCP-NoScope

SUPPRIME RemoteTask-In-TCP

SUPPRIME RemoteTask-RPCSS-In-TCP

SUPPRIME MSDTC-KTMRM-In-TCP-NoScope

SUPPRIME MSDTC-RPCSS-In-TCP-NoScope

SUPPRIME MSDTC-KTMRM-In-TCP

SUPPRIME MSDTC-RPCSS-In-TCP

SUPPRIME RemoteEventLogSvc-In-TCP-NoScope

SUPPRIME RemoteEventLogSvc-RPCSS-In-TCP-NoScope

SUPPRIME RemoteEventLogSvc-In-TCP

SUPPRIME RemoteEventLogSvc-RPCSS-In-TCP

SUPPRIME RemoteFwAdmin-In-TCP-NoScope

SUPPRIME RemoteFwAdmin-RPCSS-In-TCP-NoScope

SUPPRIME RemoteFwAdmin-In-TCP

SUPPRIME RemoteFwAdmin-RPCSS-In-TCP

SUPPRIME RemoteAssistance-PnrpSvc-UDP-In-EdgeScope

SUPPRIME RemoteAssistance-PnrpSvc-UDP-OUT

SUPPRIME RemoteAssistance-DCOM-In-TCP-NoScope-Active

SUPPRIME RemoteAssistance-SSDPSrv-In-UDP-Active

SUPPRIME RemoteAssistance-SSDPSrv-Out-UDP-Active

SUPPRIME RemoteAssistance-SSDPSrv-In-TCP-Active

SUPPRIME RemoteAssistance-SSDPSrv-Out-TCP-Active

SUPPRIME RemoteAssistance-PnrpSvc-UDP-In-EdgeScope-Active

SUPPRIME RemoteAssistance-PnrpSvc-UDP-OUT-Active

SUPPRIME MCX-SSDPSrv-In-UDP

SUPPRIME MCX-SSDPSrv-Out-UDP

SUPPRIME MCX-QWave-In-UDP

SUPPRIME MCX-QWave-Out-UDP

SUPPRIME MCX-QWave-In-TCP

SUPPRIME MCX-QWave-Out-TCP

SUPPRIME MCX-MCX2SVC-Out-TCP

SUPPRIME MCX-PlayTo-Out-TCP

SUPPRIME MCX-PlayTo-Out-UDP

SUPPRIME MCX-FDPHost-Out-TCP

SUPPRIME WPDMTP-SSDPSrv-In-UDP

SUPPRIME WPDMTP-SSDPSrv-Out-UDP

SUPPRIME WPDMTP-UPnPHost-Out-TCP

SUPPRIME WPDMTP-UPnP-Out-TCP

SUPPRIME {706A9CF9-9CF7-4787-B8CE-93807EC449A5}

SUPPRIME {481C2F7F-214A-4357-8BD2-9BB550A79226}

SUPPRIME {D2D1589F-3C7F-46B8-B4C0-38B3BE535ABC}

SUPPRIME {35BEC074-0942-44CB-B4E5-87F59A5A7FB1}

SUPPRIME {EC5DE3DA-D674-4882-B325-3F2A9C537D98}

SUPPRIME {7A266318-8AA1-4086-8165-C0D7CC33D686}

SUPPRIME {112C610E-194C-4A8E-BE87-3A3F0E238C8D}

SUPPRIME {B421858E-5DA1-491F-BACE-BFBC28E0FC0F}

SUPPRIME {427661F7-B75C-41E6-90C5-8052AA6FB3A2}

SUPPRIME {6B41A815-7282-400E-B22A-589C5118BFEC}

SUPPRIME {ED542CDC-F5F6-448E-B545-1C84FFE9911F}

SUPPRIME {DAEB3A15-E643-4491-BA69-E077268350E8}

 

========== Dossier(s) ==========

SUPPRIME Folder: C:\ProgramData\Partner

SUPPRIME Folder: C:\ProgramData\Spybot - Search & Destroy

SUPPRIME Folder: C:\Program Files (x86)\Spybot - Search & Destroy

SUPPRIME Flash Cookies: 1

SUPPRIME Temporaires Windows: : 14

 

========== Fichier(s) ==========

SUPPRIME File: c:\windows\system32\spool\drivers\x64\3\lxcytime.dll

SUPPRIME Reboot c:\program files (x86)\spybot - search & destroy\teatimer.exe

ABSENT File: c:\users\chris33\appdata\local\temp\srasse~1.dll

ABSENT File: c:\users\chris33\appdata\local\temp\instal~1.dll

SUPPRIME File: c:\users\chris33\desktop\spybot - search & destroy.lnk

SUPPRIME File: c:\users\chris33\appdata\roaming\microsoft\internet explorer\quick launch\spybot - search & destroy.lnk

SUPPRIME File: c:\program files (x86)\lavasoft\ad-aware\ad-awareadmin.exe

SUPPRIME File: c:\ad-report-clean[1].txt

SUPPRIME File: c:\ad-report-scan[1].txt

SUPPRIME Flash Cookies: 0

SUPPRIME Temporaires Windows: : 20

 

========== Tache planifiée ==========

SUPPRIME Task: Ad-Aware Update (Weekly)

SUPPRIME Task: {B17649F9-8207-4CF9-99C3-02FC464234B2}

SUPPRIME Task: {B55D92F6-41B4-4D45-A886-3CAF13709FA7}

 

 

========== Récapitulatif ==========

1 : Processus mémoire

5 : Clé(s) du Registre

128 : Valeur(s) du Registre

5 : Dossier(s)

11 : Fichier(s)

1 : Logiciel(s)

3 : Tache planifiée

 

 

End of clean in 00mn 27s

 

je vous remercie pour votre aide

Lien vers le commentaire
Partager sur d’autres sites

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...