Rapport de ZHPDiag v1.27.215 par Nicolas Coolman, Update du 27/05/2011 Run by ArouG at 30/05/2011 10:30:47 Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html ---\\ Web Browser MSIE: Internet Explorer v8.0.7600.16385 OPIE: Opera v11.01 MFIE: Mozilla Firefox v3.6.10 (fr) (Defaut) GCIE: Google Chrome v11.0.696.71 ---\\ System Information Windows 7 Home Premium Edition, 64-bit (Build 7600) Processor: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 2812 MB (45% free) System Restore: Activé (Enable) System drive C: has 205 GB (72%) free of 284 GB ---\\ Logged in mode Computer Name: AROUG-PORTABLE User Name: ArouG All Users Names: HomeGroupUser$, ArouG, Administrateur, Unselected Option: O82 Logged in as Administrator ---\\ Environnement Variables %AppData%=C:\Users\ArouG\AppData\Roaming %LocalAppData%=C:\Users\ArouG\AppData\Local %StartMenu%=C:\Users\ArouG\AppData\Roaming\Microsoft\Windows\Start Menu ---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 205 Go of 284 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 2 Go of 13 Go) E:\ Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go) F:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] DisableRegistryTools: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] NoDispScrSavPage: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK ---\\ Recherche particulière de fichiers génériques [MD5.0862495E0C825893DB75EF44FAEA8E93] - (.Microsoft Corporation - Explorateur Windows.) (.26/02/2011 07:23:14.) -- C:\Windows\Explorer.exe [2870272] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 02:14:45.) -- C:\Windows\system32\Wininit.exe [96256] [MD5.214605C48AE416BC067C39D227CFCC57] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.24/02/2011 06:32:44.) -- C:\Windows\system32\wininet.dll [981504] ---\\ Processus lancés [MD5.E02E715FA2BC8D88FF9362374E309D76] - (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392] [MD5.276AC7BAE1F596A3A1D4B6D43AEF099C] - (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe [399736] [MD5.CAC9A2027E84E6E4A131EE9E26233380] - (.FSL - Powerful replacement of Win Built-In Search.) -- C:\Program Files (x86)\FSL\SuperFinder\SuperFinder.exe [738816] [MD5.8F89E6CB82E6DB45BC993D423CD0FDBD] - (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe [323640] [MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe [54576] [MD5.4C6898F15701AE7C41775C14E423FE25] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3459712] [MD5.1568FF282E268082C67CF0C3EBCC9179] - (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [976320] [MD5.2E5212A0BFB98FE0167C92C76C87AFE3] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [249064] [MD5.B114DB354D13A21C1AC2B1807EE2F500] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [273544] [MD5.A26898623D61508C2FA3F5672C11FA5D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [910296] [MD5.0DE3C7622EC33126579B1742260F08C2] - (.Pas de propriétaire - HpqToaster Module.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe [632888] [MD5.D61ACEBA5AC21AB4EA814BBC5BF9E5BE] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [14808] [MD5.DA86F4F7F48B2E4ED225E7A8A23E5C1F] - (.Prog-Soft s.r.o. - PSPad editor.) -- C:\Program Files (x86)\PSPad editor\PSPad.exe [4426608] [MD5.32850FC23289E67DE2924B48C2639A58] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [657408] ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\acpro.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\fcmdSrchost.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [ArouG] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-france.xml P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npdeployJava1.dll P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npnul32.dll P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\NPOFFICE.DLL P2 - FPN:Firefox Plugin Navigator . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.4".) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppl3260.dll P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nprjplug.dll P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 12.0.1.647.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nprpjplug.dll P2 - FPN:Firefox Plugin Navigator . (.Pas de propriétaire - Pas de description.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npsibelius.dll M0 - MFSP: prefs.js [ArouG - cgjz33sz.default] http://start.facemoods.com/?a=ost M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\ffxtlbr@Facemoods.com] [] Facemoods v1.2.1 (.Volo-Net.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\firebug@software.joehewitt.com] [] Firebug v1.7.1 (.Joe Hewitt.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\SQLiteManager@mrinalkant.blogspot.com] [] SQLite Manager v0.6.8 (.Mrinal Kant.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\support@predictad.com] [] AutocompletePro - Your handy search suggestions tool v0.6.8 (.Yossi Marouani; http://www.predictad.com.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{340c2bbc-ce74-4362-90b5-7c26312808ef}] [] Firefox Sync v1.7 (.Mozilla.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{3b56bcc7-54e5-44a2-9b44-66c3ef58c13e}] [] Html Validator v0.8.6.1 (.Marc Gueury.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20110323 (.WOT Services Oy.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}] [] FireFTP v1.0.10 (.Mime Čuvalo.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}] [dwhelper] DownloadHelper v4.8.6 (.Michel Gutierrez.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{c45c406e-ab73-11d8-be73-000a95be3b12}] [] Web Developer v1.1.9 (.Chris Pederick.) M2 - MFEP: prefs.js [ArouG - cgjz33sz.default\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}] [adblockplus] Adblock Plus v1.3.8 (.Wladimir Palant.) ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preference [User Data\Default] http://www.google.fr G2 - GCE: Preference [User Data\Default] [defdhglnppeioeflggkmglipcecffkhk] AutocompletePro plugin for chrome v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [dpicnlijpdlebkhpegfenfjpglinfdhm] OfferBox v.5.1.2276.19 (Activé) G2 - GCE: Preference [User Data\Default] [ihflimipbcaljfnojhhknppphnnciiif] Facemoods v.1.3.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.4 (Activé) G2 - GCE: Preference [User Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Chrome PDF Viewer v. (Désactivé) ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com R0 - HKUS\S-1-5-21-2101528099-1914257027-513674023-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.autocompletepro.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.autocompletepro.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKUS\S-1-5-21-2101528099-1914257027-513674023-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.autocompletepro.com R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 0 ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe ---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: SuggestMeYesBHO [64Bits] - {0FB6A909-6086-458F-BD92-1F8EE10042A0} . (.SimplyGen - AutocompletePro - Helps you search the web.) -- C:\Program Files (x86)\AutocompletePro\64\AutocompletePro64.dll O2 - BHO: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: AcroIEHelperStub [64Bits] - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer [64Bits] - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugi O2 - BHO: (no name) [64Bits] - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline O2 - BHO: facemoods Helper [64Bits] - {64182481-4F71-486b-A045-B233BD0DA8FC} . (.facemoods.com BHO - Pas de description.) -- C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll O2 - BHO: Search Helper [64Bits] - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corp. - Microsoft Search Helper Extention.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: OfferBox [64Bits] - {703740c1-0f1a-4cec-a4df-d78db0158477} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files (x86)\OfferBox\extensions-3.1.3878.129\offerbox_air_iexplorer.dll O2 - BHO: avast! WebRep [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin O2 - BHO: Windows Live Toolbar Helper [64Bits] - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} . (.Microsoft Corporation - Windows Live Toolbar Core.) -- C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll ---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll ---\\ ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe O4 - HKCU\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe O4 - HKCU\..\Run: [Epson Stylus SX525WD(Réseau)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGAE.exe O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [QlbCtrl.exe] . (. Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe O4 - HKLM\..\Wow6432Node\Run: [NortonOnlineBackupReminder] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - Pas de description.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Wow6432Node\Run: [WirelessAssistant] . (.Hewlett-Packard - HP Wireless Assistant Main Program.) -- C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe O4 - HKLM\..\Wow6432Node\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Wow6432Node\Run: [EEventManager] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe O4 - HKLM\..\Wow6432Node\Run: [facemoods] . (.facemoods.com - Pas de description.) -- C:\Program Files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-2101528099-1914257027-513674023-1000\..\Run: [LightScribe Control Panel] . (.Hewlett-Packard Company - Pas de description.) -- C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe O4 - HKUS\S-1-5-21-2101528099-1914257027-513674023-1000\..\Run: [Epson Stylus SX525WD(Réseau)] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGAE.exe O4 - HKUS\S-1-5-21-2101528099-1914257027-513674023-1000\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.) O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (.not file.) O4 - Global Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\OpenVPN Client.lnk . (...) -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\uiboot.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Super Finder.lnk . (.FSL.) -- C:\Program Files (x86)\FSL\SuperFinder\SuperFinder.exe ---\\ ---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\ArouG\Desktop\Bit Che.lnk . (.Convivea, Inc..) -- C:\Program Files (x86)\Bit Che\Bit_Che.exe O4 - Global Startup: C:\Users\ArouG\Desktop\GIMPPortable.exe - Raccourci.lnk . (.PortableApps.com.) -- C:\data\GIMPPortable\GIMPPortable.exe O4 - Global Startup: C:\Users\ArouG\Desktop\GoldWave.lnk . (.GoldWave Inc..) -- C:\Program Files (x86)\GoldWave\GoldWave.exe O4 - Global Startup: C:\Users\ArouG\Desktop\portablewebap.lnk . (...) -- C:\data\PortableWebAp3.5.1\portablewebap.exe O4 - Global Startup: C:\Users\ArouG\Desktop\PSPad.lnk . (.Prog-Soft s.r.o..) -- C:\Program Files (x86)\PSPad editor\PSPad.exe O4 - Global Startup: C:\Users\ArouG\Desktop\SuperFinder.lnk . (.FSL.) -- C:\Program Files (x86)\FSL\SuperFinder\SuperFinder.exe O4 - Global Startup: C:\Users\ArouG\Desktop\UwAmp.lnk . (...) -- C:\UwAmp\UwAmp.exe O4 - Global Startup: C:\Users\ArouG\Desktop\VirtualDubMOD.lnk . (...) -- C:\Program Files (x86)\VirtualDubMOD\VirtualDubMod.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk . (...) -- C:\Windows\Installer\{6C1E7AA1-44E9-446D-AAB2-0DE6D9EFEAB1}\SafariIco.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PSPad.lnk . (.Prog-Soft s.r.o..) -- C:\Program Files (x86)\PSPad editor\PSPad.exe O4 - Global Startup: C:\Users\ArouG\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk . (.BitTorrent, Inc..) -- C:\Program Files (x86)\uTorrent\uTorrent.exe ---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\PROGRA~2\MICROS~4\OFFICE11\EXCEL.exe ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll ---\\ Site dans la Zone de confiance d'Internet Explorer (O15) O15 - Trusted Zone: [HKCU\...\Domains] http.aroug.eu O15 - Trusted Zone: [HKCU\...\Domains\www] http.aroug.eu ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{88C9C30F-F651-4785-88A0-898B5FFA0BA4}: DhcpNameServer = 10.1.3.10 88.191.90.195 O17 - HKLM\System\CCS\Services\Tcpip\..\{C4C90C03-53BA-417A-B44D-33453C60EE13}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{C9A564D4-203C-4798-A427-11E5D05C0D08}: DhcpNameServer = 40.1.1.100 O17 - HKLM\System\CS1\Services\Tcpip\..\{88C9C30F-F651-4785-88A0-898B5FFA0BA4}: DhcpNameServer = 10.1.3.10 88.191.90.195 O17 - HKLM\System\CS1\Services\Tcpip\..\{C4C90C03-53BA-417A-B44D-33453C60EE13}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{C9A564D4-203C-4798-A427-11E5D05C0D08}: DhcpNameServer = 40.1.1.100 O17 - HKLM\System\CS2\Services\Tcpip\..\{88C9C30F-F651-4785-88A0-898B5FFA0BA4}: DhcpNameServer = 10.1.3.10 88.191.90.195 O17 - HKLM\System\CS2\Services\Tcpip\..\{C4C90C03-53BA-417A-B44D-33453C60EE13}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{C9A564D4-203C-4798-A427-11E5D05C0D08}: DhcpNameServer = 40.1.1.100 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe O23 - Service: (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe O23 - Service: C:\Windows\system32\Alg.exe (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe O23 - Service: (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P. - Com for QLB application.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe O23 - Service: (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION - eEBAPI Core Process module.) - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe O23 - Service: (EpsonCustomerResearchParticipation) . (.SEIKO EPSON CORPORATION - Epson Customer Research Participation.) - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe O23 - Service: (GameConsoleService) . (.WildTangent, Inc. - GameConsoleService.) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe O23 - Service: (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: (gupdatem) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: (HP Health Check Service) . (.Hewlett-Packard Company - HP Support Assistant.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: (HPDrvMntSvc.exe) . (.Hewlett-Packard Company - HP Quick Synchronization Service.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe O23 - Service: (hpqwmiex) . (.Hewlett-Packard Company - hpqwmiex Module.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe O23 - Service: (OpenVPNAccessClient) . (...) - C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\capiws.exe O23 - Service: (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (...) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe O23 - Service: (SeaPort) . (.Microsoft Corp. - Microsoft SeaPort Search Enhancement Broker.) - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe O23 - Service: (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\HPCeeScheduleForArouG.job [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.455B6AF8235787AB6E36193FBD9BB0AA] [APT] [HPCeeScheduleForArouG] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [MD5.FD8DCAE8AAE888D8BAD0E6C2DAAAFB6D] [APT] [RealUpgradeLogonTaskS-1-5-21-2101528099-1914257027-513674023-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [MD5.FD8DCAE8AAE888D8BAD0E6C2DAAAFB6D] [APT] [RealUpgradeScheduledTaskS-1-5-21-2101528099-1914257027-513674023-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [MD5.FAFF0AC316183FF563E0B24D53F793D0] [APT] [{0FDCF941-D013-45F6-9306-CE21877FC15C}] (.eRightSoft.) -- C:\Program Files (x86)\eRightSoft\SUPER\SUPER.exe [MD5.A315D2E40459371D16B58818DB1BE388] [APT] [{101E9B43-133E-4D37-9630-26221E57E45E}] (.Pas de propriétaire.) -- C:\Users\ArouG\Documents\VMCL 9.4.4\setup_vmc.exe [MD5.ACCABACDBBF991A7010D5209F2483F3C] [APT] [{C8380634-1847-49CA-B664-61AE97D1ED1B}] (.Pas de propriétaire.) -- C:\data\PortableWebAp3.5.1\portablewebap.exe [MD5.ACCABACDBBF991A7010D5209F2483F3C] [APT] [{EBEE533B-8540-41C1-9ACF-8D599AB45D7F}] (.Pas de propriétaire.) -- C:\data\PortableWebAp3.5.1\portablewebap.exe [MD5.7B43567B4C32AD7ADED537CD3B1342B9] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Health Analysis] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [MD5.FDC7C934ADB8C3B51A3C21781B608673] [APT] [PC Tuneup] (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\DRIVERS\blbdrive.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\System32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\DRIVERS\mssmbios.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\System32\drivers\rdprefmp.sys O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\system32\DRIVERS\serial.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\System32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\System32\DRIVERS\wfplwf.sys ---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM] -- {23170F69-40C1-2702-0920-000001000000} O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- ABBYY FineReader 9.0 Sprint O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- {F9000000-0018-0000-0000-074957833700} O42 - Logiciel: AMD USB Filter Driver - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5271C0D4-24E4-4C3D-A782-C012033FD3CF} O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} O42 - Logiciel: ActiveCheck component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {254C37AA-6B72-4300-84F6-98A82419187E} O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM][64Bits] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader 9.4.4 MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001} O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM][64Bits] -- {AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11} O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {853A4763-6643-4604-8D64-28BDD8925F4C} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033} O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7} O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} O42 - Logiciel: AutocompletePro - (.Pas de propriétaire.) [HKLM][64Bits] -- AutocompletePro3_is1 O42 - Logiciel: Autopano Giga - (.Kolor.) [HKLM][64Bits] -- Autopano Giga O42 - Logiciel: Bit Che - (.Convivea, Inc..) [HKLM][64Bits] -- {D9DA5C41-964F-455F-B5E7-3664519440E8}_is1 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {E0897770-46C9-4322-AD44-8BFA6BE217B2} O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB} O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- {80E158EA-7181-40FE-A701-301CE6BE64AB} O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} O42 - Logiciel: CyberLink PowerDVD 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47} O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: EPSON SX525WD Series Manuel - (.Pas de propriétaire.) [HKLM][64Bits] -- EPSON SX525WD Series Manual O42 - Logiciel: EPSON SX525WD Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX525WD Series O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner O42 - Logiciel: Epson Customer Research Participation - (.EPSON.) [HKLM] -- {0459FAF6-D4CA-406C-BA6F-9A3D225ABD1A} O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {39F58DDB-B2B8-4B86-AF20-4706A80EB30D} O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178} O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {03B8AA32-F23C-4178-B8E6-09ECD07EAA47} O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3E31400D-274E-4647-916C-2CACC3741799} O42 - Logiciel: EpsonNet Setup 3.3 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {C9D8A041-2963-4B31-8FFC-1500F3DB9293} O42 - Logiciel: Eric's TelNet98 - (.Friedrich Datentechnik GmbH.) [HKLM][64Bits] -- Eric's TelNet98 O42 - Logiciel: Facemoods Toolbar - (.Pas de propriétaire.) [HKLM][64Bits] -- facemoods O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {B131E59D-202C-43C6-84C9-68F0C37541F1} O42 - Logiciel: GoldWave v5.55 - (.Pas de propriétaire.) [HKLM][64Bits] -- GoldWave v5.55 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Guide réseau pour EPSON SX525WD Series - (.Pas de propriétaire.) [HKLM][64Bits] -- EPSON SX525WD Series Network Guide O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B} O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355} O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {17B4760F-334B-475D-829F-1A3E94A6A4E6} O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {08DB3902-2CE0-474D-BCE3-0177766CE9F1} O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {D46D081B-F60E-467E-A7C4-117B70D76731} O42 - Logiciel: HP User Guides 0148 - (.Hewlett-Packard.) [HKLM][64Bits] -- {9D3318E1-5A9F-4A95-A7A1-7E045403AE34} O42 - Logiciel: HP Wireless Assistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {54CC7901-804D-4155-B353-21F0CC9112AB} O42 - Logiciel: HPAsset component for HP Active Support Library - (.Hewlett-Packard.) [HKLM][64Bits] -- {669D4A35-146B-4314-89F1-1AC3D7B88367} O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- WinLiveSuite_Wave3 O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {46ABBC54-1872-4AA3-95E2-F2C063A63F31} O42 - Logiciel: Java(TM) 6 Update 24 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216022FF} O42 - Logiciel: Java(TM) SE Development Kit 6 Update 15 (64-bit) - (.Sun Microsystems, Inc..) [HKLM] -- {64A3A4F4-B792-11D6-A78A-00B0D0160150} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {E2DFE069-083E-4631-9B6C-43C48E991DE5} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {CC8E94A2-55C7-4460-953C-2A790180578C} O42 - Logiciel: Logiciel d'archivage WinRAR - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: MediaInfo 0.7.39 - (.MediaArea.net.) [HKLM] -- MediaInfo O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Microsoft Office Professional Edition 2003 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9011040C-6000-11D3-8CFE-0150048383C9} O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {9C9CEB9D-53FD-49A7-85D2-FE674F72F24E} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5} O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM] -- {071c9b48-7c32-4621-a0ac-3f809523288f} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B160861-7250-451E-B5EE-8B92BF30A710} O42 - Logiciel: Movie Subtitles Searcher 1.0 - (.Opensubtitles.org.) [HKLM][64Bits] -- {0428932D-FEAE-4FA2-953B-0437ABE9ADF3}_is1 O42 - Logiciel: Mozilla Firefox (3.6.10) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox (3.6.10) O42 - Logiciel: Norton Online Backup - (.Symantec.) [HKLM][64Bits] -- {C57BCDE1-7CB9-467D-B3BA-7E119916CDC1} O42 - Logiciel: OpenVPN Client - (.OpenVPN Technologies.) [HKLM][64Bits] -- {072A5217-8165-4AB7-8366-36CB3245DB60} O42 - Logiciel: Opera 11.01 - (.Opera Software ASA.) [HKLM][64Bits] -- Opera 11.01.1190 O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM][64Bits] -- {205C6BDD-7B73-42DE-8505-9A093F35A238} O42 - Logiciel: PSPad editor - (.Jan Fiala.) [HKLM][64Bits] -- PSPad editor_is1 O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A} O42 - Logiciel: RealNetworks - Microsoft Visual C++ 2008 Runtime - (.RealNetworks, Inc.) [HKLM][64Bits] -- {7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA} O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 12.0 O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} O42 - Logiciel: Realtek 8136 8168 8169 Ethernet Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} O42 - Logiciel: SUPER © v2011.build.48 (April 23, 2011) version v2011.build.48 - (.eRightSoft.) [HKLM][64Bits] -- {B93DCF58-AA57-41EC-8D69-B05C66C6312D}_is1 O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {6C1E7AA1-44E9-446D-AAB2-0DE6D9EFEAB1} O42 - Logiciel: Super Finder 1.5.2.0 - (.FSL - FreeSoftLand.) [HKLM][64Bits] -- Super Finder_is1 O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey O42 - Logiciel: TmNationsForever - (.Nadeo.) [HKLM][64Bits] -- TmNationsForever_is1 O42 - Logiciel: TubeMaster++ version 2.0 - (.GgSofts.) [HKLM][64Bits] -- {AA4D4EE3-0195-49F6-B0BF-C2789FD9C582}_is1 O42 - Logiciel: UwAmp (Uninstall) - (.Pas de propriétaire.) [HKLM][64Bits] -- UwAmp O42 - Logiciel: VC80_CRT_x86 - (.kolor.) [HKLM][64Bits] -- {AFC02C27-473F-4EC5-9372-30771EFFB35F} O42 - Logiciel: VLC media player 1.1.9 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: VirtualDubMOD 1.5.10.3 Fr - (.Trad-Fr.) [HKLM][64Bits] -- {B158F76F-76AB-4115-A4F0-4C6EF6956093}_is1 O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM][64Bits] -- {3B4E636E-9D65-4D67-BA61-189800823F52} O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM][64Bits] -- {2075CB0A-D26F-4DAA-B424-5079296B43BA} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM][64Bits] -- {5DD76286-9BE7-4894-A990-E905E91AC818} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {770F1BEC-2871-4E70-B837-FB8525FFA3B1} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM][64Bits] -- {53B20C18-D8D4-4588-8737-9BBFE303C354} O42 - Logiciel: Windows Live Toolbar - (.Microsoft Corporation.) [HKLM][64Bits] -- {F7D27C70-90F5-49B9-B188-0A133C0CE353} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM][64Bits] -- {4634B21A-CC07-4396-890C-2B8168661FEA} O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast O42 - Logiciel: muvee Reveal - (.muvee Technologies Pte Ltd.) [HKLM][64Bits] -- {43BA31BA-04BD-2EA3-0A60-A9C54E06D3F2} O42 - Logiciel: µTorrent - (.Pas de propriétaire.) [HKLM][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\ABBYY] [HKCU\Software\AC3Filter] [HKCU\Software\ALWIL Software] [HKCU\Software\ATI] [HKCU\Software\AVAST Software] [HKCU\Software\Adobe] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Apple Inc.] [HKCU\Software\Autocompletepro] [HKCU\Software\BitTorrent] [HKCU\Software\Bugsplat] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Core Services] [HKCU\Software\CyberLink] [HKCU\Software\EasyBits] [HKCU\Software\Epson] [HKCU\Software\FreeSoftLand] [HKCU\Software\Freeware] [HKCU\Software\Friedrich Datentechnik] [HKCU\Software\GoldWave] [HKCU\Software\Google] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IDT] [HKCU\Software\IGA] [HKCU\Software\Image Power] [HKCU\Software\JavaSoft] [HKCU\Software\Kolor] [HKCU\Software\LightScribe] [HKCU\Software\Macromedia] [HKCU\Software\MainConcept (Muvee Consumer)] [HKCU\Software\MainConcept (Muvee)] [HKCU\Software\MainConcept (Muvee2)] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\My Application] [HKCU\Software\Netscape] [HKCU\Software\Norton] [HKCU\Software\ODBC] [HKCU\Software\OfferBox] [HKCU\Software\OpenVPN Technologies] [HKCU\Software\Opera Software] [HKCU\Software\PSPad] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\RealNetworks] [HKCU\Software\Shared Components] [HKCU\Software\SimonTatham] [HKCU\Software\Synaptics] [HKCU\Software\Trolltech] [HKCU\Software\UwAmp] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\facemoods.com] [HKLM\Software\7-Zip] [HKLM\Software\ABBYY] [HKLM\Software\ALWIL Software] [HKLM\Software\AMD] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\AVAST Software] [HKLM\Software\Adobe] [HKLM\Software\Agere] [HKLM\Software\AppDataLow] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\Atheros] [HKLM\Software\AviSynth] [HKLM\Software\CDDB] [HKLM\Software\CXT] [HKLM\Software\Caphyon] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Cyberlink] [HKLM\Software\Debug] [HKLM\Software\EPSON] [HKLM\Software\EasyBits] [HKLM\Software\EpsonNet] [HKLM\Software\Friedrich Datentechnik] [HKLM\Software\Google] [HKLM\Software\HPQLOG] [HKLM\Software\HPQ] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IDT] [HKLM\Software\InstallMonetizer] [HKLM\Software\InstallShield] [HKLM\Software\InstalledOptions] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\Kolor] [HKLM\Software\LSI] [HKLM\Software\LightScribe] [HKLM\Software\Macromedia] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\Netscape] [HKLM\Software\ODBC] [HKLM\Software\OfferBox] [HKLM\Software\On2 Technologies] [HKLM\Software\Opera Software] [HKLM\Software\P2G_Upgrade] [HKLM\Software\PDR_Upgrade] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\Product_Upgrade] [HKLM\Software\RTLSetup] [HKLM\Software\RealNetworks] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SEIKO EPSON CORPORATION] [HKLM\Software\Sibelius Software] [HKLM\Software\Sonic] [HKLM\Software\Sony Corporation] [HKLM\Software\Symantec] [HKLM\Software\Synaptics] [HKLM\Software\Trad-FR] [HKLM\Software\VideoLAN] [HKLM\Software\Volatile] [HKLM\Software\WildTangent] [HKLM\Software\WinPcap] [HKLM\Software\WinRAR] [HKLM\Software\Windows] [HKLM\Software\Wow6432Node] [HKLM\Software\Xing Technology Corp.] [HKLM\Software\eRightSoft] [HKLM\Software\facemoods.com] [HKLM\Software\mozilla.org] [HKLM\Software\muvee Technologies] ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 09/05/2011 - 23:02:24 - [4588532] ----D- C:\Program Files\7-Zip O43 - CFD: 20/09/2010 - 19:26:18 - [175076721] ----D- C:\Program Files\Alwil Software O43 - CFD: 11/04/2010 - 02:24:58 - [19031373] ----D- C:\Program Files\ATI O43 - CFD: 31/12/2010 - 10:42:22 - [6905392] ----D- C:\Program Files\CCleaner O43 - CFD: 15/12/2010 - 21:38:54 - [30547765] ----D- C:\Program Files\Common Files O43 - CFD: 11/04/2010 - 02:27:18 - [931896] ----D- C:\Program Files\DIFX O43 - CFD: 11/04/2010 - 11:17:40 - [90257428] ----D- C:\Program Files\DVD Maker O43 - CFD: 15/12/2010 - 21:41:10 - [3128797] ----D- C:\Program Files\EPSON O43 - CFD: 15/12/2010 - 21:35:02 - [369032] ----D- C:\Program Files\Epson Software O43 - CFD: 15/12/2010 - 21:29:44 - [4565616] ----D- C:\Program Files\EpsonNet O43 - CFD: 20/09/2010 - 18:39:36 - [0] -SH-D- C:\Program Files\Fichiers communs O43 - CFD: 14/11/2009 - 09:36:36 - [171008] ----D- C:\Program Files\Hewlett-Packard O43 - CFD: 11/04/2010 - 02:29:04 - [42017387] ----D- C:\Program Files\IDT O43 - CFD: 05/05/2011 - 21:08:50 - [5176332] ----D- C:\Program Files\Internet Explorer O43 - CFD: 17/12/2010 - 20:27:24 - [182436280] ----D- C:\Program Files\Java O43 - CFD: 09/01/2011 - 14:19:36 - [10761422] ----D- C:\Program Files\MediaInfo O43 - CFD: 11/04/2010 - 11:17:40 - [149236786] ----D- C:\Program Files\Microsoft Games O43 - CFD: 14/07/2009 - 07:32:40 - [25757] ----D- C:\Program Files\MSBuild O43 - CFD: 14/07/2009 - 07:32:40 - [36253865] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 11/04/2010 - 02:26:42 - [32322202] ----D- C:\Program Files\Synaptics O43 - CFD: 14/07/2009 - 07:09:28 - [0] --H-D- C:\Program Files\Uninstall Information O43 - CFD: 14/11/2009 - 18:24:34 - [4039168] ----D- C:\Program Files\Windows Defender O43 - CFD: 16/12/2010 - 08:59:50 - [6667264] ----D- C:\Program Files\Windows Mail O43 - CFD: 16/10/2010 - 21:00:38 - [7687085] ----D- C:\Program Files\Windows Media Player O43 - CFD: 20/09/2010 - 18:39:36 - [12627124] ----D- C:\Program Files\Windows NT O43 - CFD: 14/11/2009 - 18:24:34 - [5516568] ----D- C:\Program Files\Windows Photo Viewer O43 - CFD: 14/07/2009 - 07:32:40 - [235008] ----D- C:\Program Files\Windows Portable Devices O43 - CFD: 20/09/2010 - 18:41:38 - [11521400] ----D- C:\Program Files\Windows Sidebar O43 - CFD: 17/10/2010 - 14:40:00 - [5742497] ----D- C:\Program Files\Winrar3.93 O43 - CFD: 15/12/2010 - 21:38:54 - [294912] ----D- C:\Program Files\Common Files\EPSON O43 - CFD: 16/10/2010 - 10:37:10 - [17631412] ----D- C:\Program Files\Common Files\Microsoft Shared O43 - CFD: 14/07/2009 - 05:20:10 - [2702] ----D- C:\Program Files\Common Files\Services O43 - CFD: 14/07/2009 - 05:20:10 - [608768] ----D- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 14/11/2009 - 18:24:34 - [12009971] ----D- C:\Program Files\Common Files\System O43 - CFD: 15/12/2010 - 21:31:16 - [1917030] ----D- C:\ProgramData\ABBYY O43 - CFD: 09/05/2011 - 07:43:16 - [767] ----D- C:\ProgramData\Adobe O43 - CFD: 20/09/2010 - 19:26:18 - [7817728] ----D- C:\ProgramData\Alwil Software O43 - CFD: 15/03/2011 - 19:02:16 - [37761536] ----D- C:\ProgramData\Apple O43 - CFD: 15/03/2011 - 19:04:02 - [36093520] ----D- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Application Data O43 - CFD: 11/04/2010 - 02:28:04 - [8972] ----D- C:\ProgramData\Atheros O43 - CFD: 11/04/2010 - 03:01:38 - [188] ----D- C:\ProgramData\ATI O43 - CFD: 20/09/2010 - 18:39:36 - [0] -SH-D- C:\ProgramData\Bureau O43 - CFD: 11/04/2010 - 02:37:12 - [35105] ----D- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Documents O43 - CFD: 15/12/2010 - 21:38:54 - [8873380] ----D- C:\ProgramData\EPSON O43 - CFD: 08/05/2011 - 10:46:50 - [0] ----D- C:\ProgramData\Eric's TelNet98 O43 - CFD: 20/09/2010 - 18:39:36 - [0] -SH-D- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Favorites O43 - CFD: 17/10/2010 - 15:40:56 - [495104] ----D- C:\ProgramData\GoldWave O43 - CFD: 15/12/2010 - 21:00:34 - [55550355] ----D- C:\ProgramData\Hewlett-Packard O43 - CFD: 28/05/2011 - 09:57:06 - [6759691] ----D- C:\ProgramData\Malwarebytes O43 - CFD: 20/09/2010 - 18:39:36 - [0] -SH-D- C:\ProgramData\Menu Démarrer O43 - CFD: 28/02/2011 - 15:30:40 - [339129047] -S--D- C:\ProgramData\Microsoft O43 - CFD: 16/10/2010 - 10:39:16 - [57676] ----D- C:\ProgramData\Microsoft Help O43 - CFD: 20/09/2010 - 18:39:36 - [0] -SH-D- C:\ProgramData\Modèles O43 - CFD: 20/09/2010 - 19:19:24 - [336] ----D- C:\ProgramData\Norton O43 - CFD: 11/04/2010 - 02:42:08 - [10072334] ----D- C:\ProgramData\NortonInstaller O43 - CFD: 15/05/2011 - 14:39:30 - [1415979] ----D- C:\ProgramData\Real O43 - CFD: 26/02/2011 - 12:00:44 - [8676] ----D- C:\ProgramData\Recovery O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Start Menu O43 - CFD: 22/09/2010 - 00:16:30 - [259] ----D- C:\ProgramData\Sun O43 - CFD: 14/11/2009 - 10:20:46 - [942] ----D- C:\ProgramData\Symantec O43 - CFD: 11/04/2010 - 02:40:58 - [614826] ----D- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - 07:08:58 - [0] -SH-D- C:\ProgramData\Templates O43 - CFD: 18/04/2011 - 17:00:12 - [13185879] ----D- C:\ProgramData\TmForever O43 - CFD: 15/12/2010 - 21:36:22 - [3498] ----D- C:\ProgramData\UDL O43 - CFD: 14/11/2009 - 10:08:40 - [1461358937] ----D- C:\ProgramData\WildTangent O43 - CFD: 01/10/2010 - 10:17:22 - [2710740] ----D- C:\Users\ArouG\AppData\Roaming\Adobe O43 - CFD: 15/03/2011 - 19:04:40 - [2151311] ----D- C:\Users\ArouG\AppData\Roaming\Apple Computer O43 - CFD: 20/09/2010 - 18:48:16 - [0] ----D- C:\Users\ArouG\AppData\Roaming\ATI O43 - CFD: 21/02/2011 - 18:42:22 - [821651] ----D- C:\Users\ArouG\AppData\Roaming\Convivea O43 - CFD: 16/12/2010 - 21:44:06 - [6769] ----D- C:\Users\ArouG\AppData\Roaming\Epson O43 - CFD: 23/05/2011 - 18:30:34 - [3467] ----D- C:\Users\ArouG\AppData\Roaming\Eric's TelNet98 O43 - CFD: 22/09/2010 - 21:27:56 - [132814] ----D- C:\Users\ArouG\AppData\Roaming\Hewlett-Packard O43 - CFD: 22/09/2010 - 19:11:56 - [0] ----D- C:\Users\ArouG\AppData\Roaming\HP Support Assistant O43 - CFD: 18/11/2010 - 07:34:30 - [27295] ----D- C:\Users\ArouG\AppData\Roaming\hpqlog O43 - CFD: 22/09/2010 - 19:12:00 - [882] ----D- C:\Users\ArouG\AppData\Roaming\HpUpdate O43 - CFD: 20/09/2010 - 18:46:46 - [0] ----D- C:\Users\ArouG\AppData\Roaming\Identities O43 - CFD: 15/12/2010 - 21:29:42 - [0] ----D- C:\Users\ArouG\AppData\Roaming\InstallShield O43 - CFD: 20/09/2010 - 18:49:18 - [9134] ----D- C:\Users\ArouG\AppData\Roaming\Macromedia O43 - CFD: 28/05/2011 - 09:57:14 - [0] ----D- C:\Users\ArouG\AppData\Roaming\Malwarebytes O43 - CFD: 11/04/2010 - 11:17:40 - [0] ----D- C:\Users\ArouG\AppData\Roaming\Media Center Programs O43 - CFD: 07/05/2011 - 15:01:38 - [6934155] -S--D- C:\Users\ArouG\AppData\Roaming\Microsoft O43 - CFD: 20/09/2010 - 18:59:50 - [37572379] ----D- C:\Users\ArouG\AppData\Roaming\Mozilla O43 - CFD: 18/05/2011 - 08:08:56 - [156] ----D- C:\Users\ArouG\AppData\Roaming\OfferBox O43 - CFD: 21/11/2010 - 09:47:00 - [390647] ----D- C:\Users\ArouG\AppData\Roaming\OpenVPN Technologies O43 - CFD: 15/03/2011 - 19:00:32 - [229140] ----D- C:\Users\ArouG\AppData\Roaming\Opera O43 - CFD: 18/04/2011 - 12:44:54 - [8107] ----D- C:\Users\ArouG\AppData\Roaming\PSpad O43 - CFD: 15/05/2011 - 14:40:34 - [1397592] ----D- C:\Users\ArouG\AppData\Roaming\Real O43 - CFD: 30/05/2011 - 10:25:38 - [3169290] ----D- C:\Users\ArouG\AppData\Roaming\uTorrent O43 - CFD: 31/03/2011 - 08:03:02 - [1710855] ----D- C:\Users\ArouG\AppData\Roaming\vlc O43 - CFD: 17/10/2010 - 14:42:12 - [1237116] ----D- C:\Users\ArouG\AppData\Roaming\WinRAR O43 - CFD: 20/09/2010 - 19:44:52 - [7192] ----D- C:\Users\ArouG\AppData\Roaming\_MDLogs O43 - CFD: 15/12/2010 - 21:32:32 - [0] ----D- C:\Users\ArouG\Appdata\Local\ABBYY O43 - CFD: 22/12/2010 - 11:40:00 - [444040] ----D- C:\Users\ArouG\Appdata\Local\Adobe O43 - CFD: 15/03/2011 - 19:02:22 - [0] ----D- C:\Users\ArouG\Appdata\Local\Apple O43 - CFD: 15/03/2011 - 19:04:16 - [80410580] ----D- C:\Users\ArouG\Appdata\Local\Apple Computer O43 - CFD: 20/09/2010 - 18:39:46 - [0] -SH-D- C:\Users\ArouG\Appdata\Local\Application Data O43 - CFD: 20/09/2010 - 18:48:16 - [60478] ----D- C:\Users\ArouG\Appdata\Local\ATI O43 - CFD: 24/05/2011 - 19:21:44 - [170985] ----D- C:\Users\ArouG\Appdata\Local\Diagnostics O43 - CFD: 08/01/2011 - 23:52:24 - [117813969] ----D- C:\Users\ArouG\Appdata\Local\Google O43 - CFD: 20/09/2010 - 19:42:40 - [730006] ----D- C:\Users\ArouG\Appdata\Local\Hewlett-Packard O43 - CFD: 20/09/2010 - 18:39:46 - [0] -SH-D- C:\Users\ArouG\Appdata\Local\Historique O43 - CFD: 10/01/2011 - 00:24:32 - [0] ----D- C:\Users\ArouG\Appdata\Local\Kolor O43 - CFD: 26/05/2011 - 09:45:10 - [111537854] ----D- C:\Users\ArouG\Appdata\Local\Microsoft O43 - CFD: 20/09/2010 - 18:59:40 - [94200524] ----D- C:\Users\ArouG\Appdata\Local\Mozilla O43 - CFD: 21/11/2010 - 09:47:00 - [1806104] ----D- C:\Users\ArouG\Appdata\Local\OpenVPN Technologies O43 - CFD: 15/03/2011 - 19:00:32 - [14045983] ----D- C:\Users\ArouG\Appdata\Local\Opera O43 - CFD: 30/05/2011 - 09:39:30 - [20319265] ----D- C:\Users\ArouG\Appdata\Local\Temp O43 - CFD: 20/09/2010 - 18:39:46 - [0] -SH-D- C:\Users\ArouG\Appdata\Local\Temporary Internet Files O43 - CFD: 07/05/2011 - 10:17:50 - [8292821] ----D- C:\Users\ArouG\Appdata\Local\VirtualStore O43 - CFD: 15/12/2010 - 21:33:08 - [181729851] ----D- C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint O43 - CFD: 14/11/2009 - 11:06:20 - [688367463] ----D- C:\Program Files (x86)\Adobe O43 - CFD: 11/04/2010 - 02:27:16 - [76515] ----D- C:\Program Files (x86)\AMD O43 - CFD: 15/03/2011 - 19:02:18 - [2221118] ----D- C:\Program Files (x86)\Apple Software Update O43 - CFD: 11/04/2010 - 02:28:02 - [1511498] ----D- C:\Program Files (x86)\Atheros O43 - CFD: 11/04/2010 - 02:26:16 - [84649253] ----D- C:\Program Files (x86)\ATI Technologies O43 - CFD: 17/12/2010 - 21:08:02 - [1017846] ----D- C:\Program Files (x86)\AutocompletePro O43 - CFD: 09/01/2011 - 14:26:34 - [146393] ----D- C:\Program Files (x86)\AviSynth 2.5 O43 - CFD: 21/02/2011 - 18:42:22 - [1084772] ----D- C:\Program Files (x86)\Bit Che O43 - CFD: 15/05/2011 - 14:39:08 - [846267636] ----D- C:\Program Files (x86)\Common Files O43 - CFD: 15/03/2011 - 19:54:14 - [2576892] ----D- C:\Program Files (x86)\Core Services O43 - CFD: 11/04/2010 - 02:41:14 - [1600146057] ----D- C:\Program Files (x86)\CyberLink O43 - CFD: 20/09/2010 - 19:46:10 - [94376212] ----D- C:\Program Files (x86)\EasyBits For Kids O43 - CFD: 15/12/2010 - 21:33:38 - [17668822] ----D- C:\Program Files (x86)\epson O43 - CFD: 15/12/2010 - 21:35:32 - [168219772] ----D- C:\Program Files (x86)\Epson Software O43 - CFD: 15/12/2010 - 21:28:38 - [29053134] ----D- C:\Program Files (x86)\EpsonNet O43 - CFD: 08/05/2011 - 10:46:50 - [6113755] ----D- C:\Program Files (x86)\Eric's TelNet98 O43 - CFD: 15/05/2011 - 14:36:18 - [38636538] ----D- C:\Program Files (x86)\eRightSoft O43 - CFD: 19/02/2011 - 10:41:08 - [1798084] ----D- C:\Program Files (x86)\facemoods.com O43 - CFD: 21/05/2011 - 09:10:32 - [2171000] ----D- C:\Program Files (x86)\FSL O43 - CFD: 17/10/2010 - 14:42:30 - [6893487] ----D- C:\Program Files (x86)\GoldWave O43 - CFD: 31/12/2010 - 10:42:12 - [355574321] ----D- C:\Program Files (x86)\Google O43 - CFD: 15/12/2010 - 21:16:12 - [426593858] ----D- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 14/11/2009 - 12:30:40 - [3116216] ----D- C:\Program Files (x86)\Hp O43 - CFD: 14/11/2009 - 10:08:42 - [230637006] ----D- C:\Program Files (x86)\HP Games O43 - CFD: 15/12/2010 - 21:35:28 - [219709677] --H-D- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 05/05/2011 - 21:08:50 - [4478992] ----D- C:\Program Files (x86)\Internet Explorer O43 - CFD: 21/02/2011 - 01:55:36 - [88363043] ----D- C:\Program Files (x86)\Java O43 - CFD: 10/01/2011 - 07:28:00 - [44929314] ----D- C:\Program Files (x86)\Kolor O43 - CFD: 28/05/2011 - 09:57:10 - [4935593] ----D- C:\Program Files (x86)\Malwarebytes' Anti-Malware O43 - CFD: 14/11/2009 - 09:41:34 - [854520] ----D- C:\Program Files (x86)\Microsoft O43 - CFD: 16/10/2010 - 14:03:04 - [254781386] ----D- C:\Program Files (x86)\Microsoft Office O43 - CFD: 14/11/2009 - 11:54:28 - [15457915] ----D- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 14/11/2009 - 09:42:22 - [1829877] ----D- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 11/04/2010 - 02:52:00 - [2188837] ----D- C:\Program Files (x86)\Microsoft Sync Framework O43 - CFD: 16/10/2010 - 10:39:08 - [144696470] ----D- C:\Program Files (x86)\Microsoft Works O43 - CFD: 16/10/2010 - 14:02:54 - [315392] ----D- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 19/02/2011 - 10:41:08 - [955422] ----D- C:\Program Files (x86)\Movie Subtitles Searcher O43 - CFD: 20/09/2010 - 18:59:36 - [34613450] ----D- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 14/07/2009 - 07:32:40 - [25757] ----D- C:\Program Files (x86)\MSBuild O43 - CFD: 11/04/2010 - 02:41:54 - [61148631] ----D- C:\Program Files (x86)\muvee Technologies O43 - CFD: 18/05/2011 - 08:08:56 - [162896] ----D- C:\Program Files (x86)\OfferBox O43 - CFD: 20/09/2010 - 18:41:44 - [21107901] R---D- C:\Program Files (x86)\Online Services O43 - CFD: 21/11/2010 - 09:46:26 - [52425207] ----D- C:\Program Files (x86)\OpenVPN Technologies O43 - CFD: 15/03/2011 - 19:00:28 - [28878021] ----D- C:\Program Files (x86)\Opera O43 - CFD: 15/03/2011 - 19:05:44 - [69398844] ----D- C:\Program Files (x86)\PortableWebAp3.5.1 O43 - CFD: 21/09/2010 - 07:12:08 - [13856419] ----D- C:\Program Files (x86)\PSPad editor O43 - CFD: 26/03/2011 - 23:35:42 - [4104928] ----D- C:\Program Files (x86)\Quickpartitions O43 - CFD: 15/05/2011 - 14:39:12 - [91633764] ----D- C:\Program Files (x86)\Real O43 - CFD: 11/04/2010 - 02:27:28 - [9545191] ----D- C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - 07:32:40 - [38597377] ----D- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 16/04/2011 - 14:03:06 - [42294986] ----D- C:\Program Files (x86)\Safari O43 - CFD: 14/11/2009 - 10:20:46 - [1846542] ----D- C:\Program Files (x86)\Symantec O43 - CFD: 11/04/2011 - 09:02:58 - [763152052] ----D- C:\Program Files (x86)\TmNationsForever O43 - CFD: 17/12/2010 - 21:36:56 - [11751492] ----D- C:\Program Files (x86)\TubeMaster++ O43 - CFD: 14/07/2009 - 06:57:08 - [0] --H-D- C:\Program Files (x86)\Uninstall Information O43 - CFD: 18/04/2011 - 04:54:52 - [399736] ----D- C:\Program Files (x86)\uTorrent O43 - CFD: 21/09/2010 - 07:18:26 - [83362186] ----D- C:\Program Files (x86)\VideoLAN O43 - CFD: 09/01/2011 - 15:50:42 - [6334377] ----D- C:\Program Files (x86)\VirtualDubMOD O43 - CFD: 14/11/2009 - 18:24:34 - [524800] ----D- C:\Program Files (x86)\Windows Defender O43 - CFD: 11/04/2010 - 02:48:12 - [151085716] ----D- C:\Program Files (x86)\Windows Live O43 - CFD: 14/11/2009 - 09:41:18 - [245112] ----D- C:\Program Files (x86)\Windows Live SkyDrive O43 - CFD: 16/12/2010 - 08:59:50 - [6180864] ----D- C:\Program Files (x86)\Windows Mail O43 - CFD: 16/10/2010 - 21:00:38 - [5336849] ----D- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - 07:32:40 - [12197556] ----D- C:\Program Files (x86)\Windows NT O43 - CFD: 14/11/2009 - 18:24:34 - [4417800] ----D- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 14/07/2009 - 07:32:42 - [189440] ----D- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 20/09/2010 - 18:41:38 - [5994166] ----D- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 17/12/2010 - 20:20:34 - [237576] ----D- C:\Program Files (x86)\WinPcap O43 - CFD: 30/05/2011 - 10:30:56 - [3884059] ----D- C:\Program Files (x86)\ZHPDiag O43 - CFD: 15/12/2010 - 21:31:16 - [8098844] ----D- C:\Program Files (x86)\Common Files\ABBYY O43 - CFD: 09/05/2011 - 06:11:24 - [16460255] ----D- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 14/11/2009 - 11:06:16 - [31787256] ----D- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 15/03/2011 - 19:02:42 - [52832453] ----D- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 11/04/2010 - 02:41:26 - [128512] ----D- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 16/10/2010 - 14:03:04 - [86016] ----D- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 15/12/2010 - 21:39:00 - [4314831] ----D- C:\Program Files (x86)\Common Files\EPSON O43 - CFD: 14/11/2009 - 09:38:56 - [2075653] ----D- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 21/02/2011 - 01:56:00 - [1247175] ----D- C:\Program Files (x86)\Common Files\Java O43 - CFD: 11/04/2010 - 02:33:04 - [36759139] ----D- C:\Program Files (x86)\Common Files\LightScribe O43 - CFD: 16/10/2010 - 14:03:26 - [146332212] ----D- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 11/04/2010 - 02:41:56 - [99079628] ----D- C:\Program Files (x86)\Common Files\muvee Technologies O43 - CFD: 14/07/2009 - 05:20:10 - [2702] ----D- C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - 05:20:10 - [41103783] ----D- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 14/11/2009 - 18:24:34 - [17434083] ----D- C:\Program Files (x86)\Common Files\System O43 - CFD: 14/11/2009 - 09:40:04 - [388172838] ----D- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 15/05/2011 - 14:39:08 - [352256] ----D- C:\Program Files (x86)\Common Files\xing shared ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.2C000000000000000000000054EF1800] - 30/05/2011 - 08:34:05 ---A- . (...) -- C:\Windows\WindowsUpdate.log [2012146] O44 - LFC:[MD5.31A8EFE13C7AAF7ADFF4A45D1E752241] - 30/05/2011 - 07:21:50 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [23248] O44 - LFC:[MD5.31A8EFE13C7AAF7ADFF4A45D1E752241] - 30/05/2011 - 07:21:50 --HA- . (...) -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [23248] O44 - LFC:[MD5.B365A3FA489E9E19541AE449113CAFB0] - 30/05/2011 - 07:20:39 ---A- . (...) -- C:\Windows\SysNative\PerfStringBackup.INI [1524562] O44 - LFC:[MD5.C6F145E3793460A56028E54B6A084431] - 30/05/2011 - 07:20:39 ---A- . (...) -- C:\Windows\SysNative\perfc009.dat [103568] O44 - LFC:[MD5.0D4607DA081946EDD91C2D0431E232BD] - 30/05/2011 - 07:20:39 ---A- . (...) -- C:\Windows\SysNative\perfc00C.dat [127684] O44 - LFC:[MD5.08CE9D1E38ABB5E24C9B53ABFE5D454F] - 30/05/2011 - 07:20:39 ---A- . (...) -- C:\Windows\SysNative\perfh009.dat [607190] O44 - LFC:[MD5.8062FB9A9A3B257B1DA8122828C5823E] - 30/05/2011 - 07:20:39 ---A- . (...) -- C:\Windows\SysNative\perfh00C.dat [695004] O44 - LFC:[MD5.D77162D3C8B13D018F52D4A244249DBD] - 30/05/2011 - 07:14:28 ---A- . (...) -- C:\Windows\setupact.log [8434] O44 - LFC:[MD5.59E4F3D21F281ABCDA4F3CCF58C79B52] - 30/05/2011 - 07:14:26 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.8723C7DA0631F08D525810C3B3761CE4] - 15/05/2011 - 13:42:43 ---A- . (...) -- C:\Windows\PFRO.log [1166] O44 - LFC:[MD5.B8576757416F471C9D7F83B2B04B1F9D] - 10/05/2011 - 13:10:59 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [40112] O44 - LFC:[MD5.95C17AB35101EEBB1182668E19915ECC] - 10/05/2011 - 13:10:55 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [199304] O44 - LFC:[MD5.95C17AB35101EEBB1182668E19915ECC] - 10/05/2011 - 13:10:44 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\SysNative\aswBoot.exe [253888] O44 - LFC:[MD5.75F8619025425AC6DBFFE6ADC1D69CEA] - 05/05/2011 - 19:51:08 ---A- . (...) -- C:\Windows\IE9_main.log [2204] O44 - LFC:[MD5.4D2D2DAB73D9CBAD6139417DBEAA3804] - 26/02/2011 - 07:23:16 -SH-- . (...) -- C:\Windows\camcodec100.ini [38] O44 - LFC:[MD5.1D86B6B73AD1ACF4CAB7B668351172F8] - 26/02/2011 - 07:23:16 -SH-- . (...) -- C:\Windows\lagarith.ini [28] ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.9DF6DA5F96DC05DF382950342BB2F563] - 18/05/2011 - 04:16:33 ---A- - C:\Windows\Prefetch\AgCx_SC1.db.trx O45 - LFCP:[MD5.1947AAE3638B2196A5FE316A6752100C] - 18/05/2011 - 04:17:35 ---A- - C:\Windows\Prefetch\AgCx_SC1.db O45 - LFCP:[MD5.512188F8E764AFE2D9070FD17AA5CD01] - 27/05/2011 - 08:09:18 ---A- - C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf O45 - LFCP:[MD5.8078AD02D9AAC9D06DDF0C3ECF0B6A9F] - 27/05/2011 - 08:09:51 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-40DD444D.pf O45 - LFCP:[MD5.4210E63AA6B9BBD49915F02462723345] - 27/05/2011 - 08:13:03 ---A- - C:\Windows\Prefetch\HTTPD.EXE-98ADE301.pf O45 - LFCP:[MD5.F20B9601394ACD55D50CE6B9F0C5060D] - 27/05/2011 - 13:01:27 ---A- - C:\Windows\Prefetch\MPAS-D_BD1.EXE-97E29C40.pf O45 - LFCP:[MD5.090015077A7E0E2E9C39F579C02025F5] - 27/05/2011 - 13:01:27 ---A- - C:\Windows\Prefetch\MPMINISIGSTUB.EXE-4BD7D13F.pf O45 - LFCP:[MD5.8D9DB663DE97364627CABB97DDDB5EAC] - 27/05/2011 - 13:01:27 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-6CB27A06.pf O45 - LFCP:[MD5.2B5E8C858658E5BA79CF3F9E3D4E9002] - 27/05/2011 - 16:02:17 ---A- - C:\Windows\Prefetch\SETUP.EXE-704624B2.pf O45 - LFCP:[MD5.6264BB23D22BF10801CC5BDD2863A183] - 27/05/2011 - 16:02:40 ---A- - C:\Windows\Prefetch\CHROME_UPDATER.EXE-83B17147.pf O45 - LFCP:[MD5.0B0D25A378C334E1E22315F6C06C8321] - 27/05/2011 - 16:03:06 ---A- - C:\Windows\Prefetch\SETUP.EXE-0AD0F299.pf O45 - LFCP:[MD5.5D767269E9C46959DDDDBE25DE177D82] - 27/05/2011 - 17:44:33 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-09583D22.pf O45 - LFCP:[MD5.A174828841422F917552DAA84C167D70] - 27/05/2011 - 17:59:11 ---A- - C:\Windows\Prefetch\CHROME.EXE-D999B1BA.pf O45 - LFCP:[MD5.F6E491F89F8A67E0A408260A038F58FB] - 28/05/2011 - 00:13:18 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-411A328D.pf O45 - LFCP:[MD5.ED776B98ABE42950F6C396840E8460B2] - 28/05/2011 - 00:16:14 ---A- - C:\Windows\Prefetch\SF.BIN-14BE9381.pf O45 - LFCP:[MD5.03C7DB966DB8A3A0EF3645B8807DA07A] - 28/05/2011 - 03:23:53 ---A- - C:\Windows\Prefetch\CALC.EXE-77FDF17F.pf O45 - LFCP:[MD5.3F97185D9EB9389E49F85BC123374A00] - 28/05/2011 - 03:49:31 ---A- - C:\Windows\Prefetch\ACRORD32.EXE-96B65281.pf O45 - LFCP:[MD5.A3D8030FF6083DA64CD6665C42038277] - 28/05/2011 - 03:49:39 ---A- - C:\Windows\Prefetch\OSASOI.EXE-32436F8B.pf O45 - LFCP:[MD5.E2006715AF5D2A2F6AA45333CDF604EB] - 28/05/2011 - 08:08:49 ---A- - C:\Windows\Prefetch\REALSCHED.EXE-5D662E50.pf O45 - LFCP:[MD5.520069CA1A6E578577EF7270245452D7] - 28/05/2011 - 08:56:35 ---A- - C:\Windows\Prefetch\MALWAREBYTES-ANTI-MALWARE_MAL-0422EB7F.pf O45 - LFCP:[MD5.3E5C94540DD8352E0E150EF847CAB4CE] - 28/05/2011 - 08:56:35 ---A- - C:\Windows\Prefetch\MALWAREBYTES-ANTI-MALWARE_MAL-123133D7.pf O45 - LFCP:[MD5.36C89A8E17E4C814F835E50774FDAA22] - 28/05/2011 - 08:57:03 ---A- - C:\Windows\Prefetch\MBAMGUI.EXE-1CA97248.pf O45 - LFCP:[MD5.741B9E43E7B53A92A3BBFF8CDD44B300] - 28/05/2011 - 08:57:32 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf O45 - LFCP:[MD5.F44A7095F2DCD43689698A28E26FF88C] - 28/05/2011 - 08:57:32 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-D5170E12.pf O45 - LFCP:[MD5.A13CFEB8C3ADD5113C49905B754A6C3C] - 28/05/2011 - 09:00:10 ---A- - C:\Windows\Prefetch\SDCLT.EXE-E10B972A.pf O45 - LFCP:[MD5.9932F834BE16BF46079111A5CC688D66] - 28/05/2011 - 09:54:46 ---A- - C:\Windows\Prefetch\MBAM.EXE-80210E2F.pf O45 - LFCP:[MD5.29EFF2CAD713FA3C21E6C935FAD4C070] - 28/05/2011 - 09:54:57 ---A- - C:\Windows\Prefetch\HH.EXE-0A439DDA.pf O45 - LFCP:[MD5.8E89F74E175328D79A9F5CA5DB0DDA1C] - 28/05/2011 - 10:39:08 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-97229F6A.pf O45 - LFCP:[MD5.68450A3FB70E0355CDD779F1D0F635C7] - 28/05/2011 - 10:45:04 ---A- - C:\Windows\Prefetch\WLMAIL.EXE-303CEB39.pf O45 - LFCP:[MD5.8EAC8900FAE4B0773B201292C0424677] - 28/05/2011 - 10:45:06 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-324C9362.pf O45 - LFCP:[MD5.F2932F36AEA940F84B57B2C87F2AA880] - 28/05/2011 - 10:47:54 ---A- - C:\Windows\Prefetch\EXCEL.EXE-D00E728A.pf O45 - LFCP:[MD5.BBFA0D1E42D271B258AC378173B34EDB] - 28/05/2011 - 10:50:51 ---A- - C:\Windows\Prefetch\DEVICEDISPLAYOBJECTPROVIDER.E-17410B90.pf O45 - LFCP:[MD5.41BDD13F706DAEBD918582A308919944] - 28/05/2011 - 10:50:54 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-FF1B52EA.pf O45 - LFCP:[MD5.5C4150E026B2D4F3BF678CB0A17408A4] - 28/05/2011 - 11:17:22 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.DDF79341396357302BC5D59C43457D7A] - 28/05/2011 - 14:06:05 ---A- - C:\Windows\Prefetch\FILE-PNG.EXE-C787A606.pf O45 - LFCP:[MD5.99BAA10A78285FBDC0A2D43340AA582A] - 28/05/2011 - 14:06:05 ---A- - C:\Windows\Prefetch\GIMP-2.6.EXE-CF1C9D8E.pf O45 - LFCP:[MD5.3BFAFDF69F6788783A491D7020FBDAE8] - 28/05/2011 - 14:06:05 ---A- - C:\Windows\Prefetch\GIMPPORTABLE.EXE-0C5FDCB5.pf O45 - LFCP:[MD5.E665B717CF332E84A38C9BA314F14FC5] - 28/05/2011 - 14:06:12 ---A- - C:\Windows\Prefetch\SCRIPT-FU.EXE-ACEC7555.pf O45 - LFCP:[MD5.6B07C48275E6B746E43F823371070FE5] - 28/05/2011 - 14:07:48 ---A- - C:\Windows\Prefetch\PRINT.EXE-D466A9A5.pf O45 - LFCP:[MD5.4BA9D41FF9C9A0840821BF9789F65BF7] - 28/05/2011 - 14:07:50 ---A- - C:\Windows\Prefetch\SPLWOW64.EXE-297C4568.pf O45 - LFCP:[MD5.D6DF993AAAF08EBB4AE07CDA93C172BE] - 28/05/2011 - 14:07:58 ---A- - C:\Windows\Prefetch\E_IARNGAE.EXE-96544604.pf O45 - LFCP:[MD5.616323A60055E4586702EBEBD5B56B81] - 28/05/2011 - 14:09:30 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf O45 - LFCP:[MD5.4DA635230B17C4345D042DDD1FA69EBD] - 28/05/2011 - 23:00:11 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf O45 - LFCP:[MD5.3DD11E6F7A8421FDB7A47D626806CE76] - 28/05/2011 - 23:00:11 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf O45 - LFCP:[MD5.61E3B562273D46C3D686E0E20A3DCFDF] - 29/05/2011 - 15:02:11 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-BBA78CB4.pf O45 - LFCP:[MD5.90C971E6757E77BCB1E6F4590FAAF52D] - 29/05/2011 - 15:05:30 ---A- - C:\Windows\Prefetch\HPWAMAIN.EXE-49A005BE.pf O45 - LFCP:[MD5.43157A8F6E5E260DC9440D75788488F6] - 29/05/2011 - 15:05:46 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-29388D79.pf O45 - LFCP:[MD5.99ECF89D0CA84A648CA29A01A2C5861F] - 29/05/2011 - 15:05:47 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-ECB71776.pf O45 - LFCP:[MD5.D81D6B2F9A404595C90D9FB65D2A1165] - 29/05/2011 - 15:07:18 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf O45 - LFCP:[MD5.46CF24AEC162B8E0C9EB09CAF642598E] - 29/05/2011 - 15:27:59 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-C0FEA49F.pf O45 - LFCP:[MD5.DDEE874B00A5E3A22723D30EC8CEF730] - 29/05/2011 - 15:27:59 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-5AC42CAD.pf O45 - LFCP:[MD5.F6B3413FF74354C421B20CDD160620F1] - 29/05/2011 - 15:28:12 ---A- - C:\Windows\Prefetch\SF.BIN-2227624E.pf O45 - LFCP:[MD5.874E04A881AB2C6E265E1E0C376B4BF0] - 29/05/2011 - 15:52:03 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-E69F695A.pf O45 - LFCP:[MD5.0FC19CC52DFBB8F8070A851CECDB984D] - 29/05/2011 - 16:14:27 ---A- - C:\Windows\Prefetch\VLC.EXE-CC6F4A79.pf O45 - LFCP:[MD5.88FE8775B5E51B11781CC6704F9220BA] - 29/05/2011 - 16:15:15 ---A- - C:\Windows\Prefetch\EXPLORER.EXE-A80E4F97.pf O45 - LFCP:[MD5.1CCFB8FD9B560B49AC905CA31230A8EB] - 29/05/2011 - 18:51:23 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf O45 - LFCP:[MD5.6B0DDDC07FBA0ECFCE3AD4F47A691D90] - 29/05/2011 - 18:58:42 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-DE9673F9.pf O45 - LFCP:[MD5.85A2F6B49DD8E1D34EDE479D306BB7DF] - 29/05/2011 - 18:59:05 ---A- - C:\Windows\Prefetch\WUDFHOST.EXE-AFFEF87C.pf O45 - LFCP:[MD5.9BCDA61353E66B9EF284EEA2F64D22FF] - 29/05/2011 - 21:51:51 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-2101528099-1914257027-513674023-1000.db O45 - LFCP:[MD5.C1E17C5D2A4D55DBC572A403B90BF34F] - 29/05/2011 - 21:51:51 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-2101528099-1914257027-513674023-1000.db O45 - LFCP:[MD5.88B4F086926A6C1C3FB6A78E88EE94C6] - 29/05/2011 - 22:11:01 ---A- - C:\Windows\Prefetch\REALUPGRADE.EXE-0C798C51.pf O45 - LFCP:[MD5.7D9C19CCFCC2F9E83F625B0D0A405D9D] - 29/05/2011 - 22:12:05 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.512D903513FCD2290F4484B20DB2014F] - 30/05/2011 - 07:15:23 ---A- - C:\Windows\Prefetch\COM4QLBEX.EXE-00B1505B.pf O45 - LFCP:[MD5.53EAAA59C7D6389FADAAB1117CB245ED] - 30/05/2011 - 07:15:23 ---A- - C:\Windows\Prefetch\HPCASLNOTIFICATION.EXE-F1274B82.pf O45 - LFCP:[MD5.A53FC9CE34E897FFBC0213FFB4C94190] - 30/05/2011 - 07:15:23 ---A- - C:\Windows\Prefetch\HPQTOASTER.EXE-9F5223FF.pf O45 - LFCP:[MD5.1DA1AF00196FB869830D27BF37E6A837] - 30/05/2011 - 07:15:23 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.C54A35EADE1DC593C28C10290A68CE3A] - 30/05/2011 - 07:15:24 ---A- - C:\Windows\Prefetch\AVAST.SETUP-3DA1C849.pf O45 - LFCP:[MD5.805D12360C762F8CFCEBBE095A0E3535] - 30/05/2011 - 07:15:36 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-18ACFCFF.pf O45 - LFCP:[MD5.3E2A57737AA941AECC1C17D22655F641] - 30/05/2011 - 07:16:02 ---A- - C:\Windows\Prefetch\MOM.EXE-42E9F9DF.pf O45 - LFCP:[MD5.E8F58CEDA5EBC60C15AFC0D87202FDC9] - 30/05/2011 - 07:16:10 ---A- - C:\Windows\Prefetch\CCC.EXE-B637C9BF.pf O45 - LFCP:[MD5.5A8D81FE2B8FB5E5327B6695C0A53A8B] - 30/05/2011 - 07:16:18 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-F1B02F03.pf O45 - LFCP:[MD5.E35A3E1FE728CB6F386A3AFD40E9552E] - 30/05/2011 - 07:16:40 ---A- - C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-641337FA.pf O45 - LFCP:[MD5.ED64F8679CD1AE8F9B9E20E23D2D66EC] - 30/05/2011 - 07:16:49 ---A- - C:\Windows\Prefetch\HPHC_SERVICE.EXE-5151F760.pf O45 - LFCP:[MD5.4E764AF231C025915046F8F8253E3577] - 30/05/2011 - 07:16:50 ---A- - C:\Windows\Prefetch\SPPSVC.EXE-B0F8131B.pf O45 - LFCP:[MD5.4AF73BE38D0BA417543D403C3E655367] - 30/05/2011 - 07:16:50 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-05F624AB.pf O45 - LFCP:[MD5.753B9B3FD7530A82E3590A812093BFAB] - 30/05/2011 - 07:16:52 ---A- - C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf O45 - LFCP:[MD5.1218DE1EAE9936A10EB679169D1A9061] - 30/05/2011 - 07:17:42 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.4CCFFFA1C333E0676D055349EE863DD3] - 30/05/2011 - 07:17:44 ---A- - C:\Windows\Prefetch\TASKHOST.EXE-7238F31D.pf O45 - LFCP:[MD5.37B4B93FF0594BDFF231020CD14795D2] - 30/05/2011 - 07:17:52 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf O45 - LFCP:[MD5.43B99B46075865FAF94AEB7B3649D7CB] - 30/05/2011 - 07:18:49 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf O45 - LFCP:[MD5.EB564C3F164065BDF04F6244967B57AB] - 30/05/2011 - 07:27:35 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf O45 - LFCP:[MD5.408E6757A104548541E4441E02E8C0EF] - 30/05/2011 - 07:38:12 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-26C72A86.pf O45 - LFCP:[MD5.CA2AE5987D6063E7A731FD2463F90612] - 30/05/2011 - 08:00:25 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.2A11BD549AB58632C8CB206C6DD3909F] - 30/05/2011 - 08:00:25 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.10C1D427418AF873840AC653617D0611] - 30/05/2011 - 08:00:25 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.6254F1E0CEED38F0C4D87DEAFDADE6C3] - 30/05/2011 - 08:00:26 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.4412F722AA5FCC929576C869D4C76D5F] - 30/05/2011 - 08:00:47 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf O45 - LFCP:[MD5.748303E632DEF1878997568F5E28347C] - 30/05/2011 - 08:00:47 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.932E09A53BB416981C86CEB0C8B33318] - 30/05/2011 - 08:01:53 ---A- - C:\Windows\Prefetch\MBRCHECK.EXE-2CA9EB2F.pf O45 - LFCP:[MD5.FBE10E237D94A7725482CAC84B139284] - 30/05/2011 - 08:02:01 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-B95715F5.pf O45 - LFCP:[MD5.ED3D357D9CA30A05BF9164F3F0B42008] - 30/05/2011 - 08:02:10 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf O45 - LFCP:[MD5.833E516BCA57994186E4589343879262] - 30/05/2011 - 08:08:52 ---A- - C:\Windows\Prefetch\LADS.EXE-046BC4A8.pf O45 - LFCP:[MD5.DC52AB70CAE68C38F39D1D47FE1C7F7F] - 30/05/2011 - 08:08:58 ---A- - C:\Windows\Prefetch\SETACL.EXE-82C2BC90.pf O45 - LFCP:[MD5.60B2B58FE0F43248F8A83BE86DFEB871] - 30/05/2011 - 08:08:58 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-AB0CE9D9.pf O45 - LFCP:[MD5.8EDEB1BB64B36B1AEEE285299671CBF5] - 30/05/2011 - 08:39:27 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf O45 - LFCP:[MD5.862E381ADD11C4B44F7F32D4FB67DC8A] - 30/05/2011 - 08:39:28 ---A- - C:\Windows\Prefetch\CSC.EXE-BE9AC2DF.pf O45 - LFCP:[MD5.CF3CC95938EA219B3D685D7805DC433E] - 30/05/2011 - 08:39:28 ---A- - C:\Windows\Prefetch\CVTRES.EXE-2B9D810D.pf O45 - LFCP:[MD5.834A6A71F06DE1DDEECA9065BC5F4BE8] - 30/05/2011 - 08:39:28 ---A- - C:\Windows\Prefetch\SDIAGNHOST.EXE-8D72177C.pf O45 - LFCP:[MD5.937C832C00B00F95746FBC0C4F807CCE] - 30/05/2011 - 08:39:32 ---A- - C:\Windows\Prefetch\W32TM.EXE-1101AF41.pf O45 - LFCP:[MD5.FA586329FDF11FD80F221815E3E27FFD] - 30/05/2011 - 08:39:41 ---A- - C:\Windows\Prefetch\PING.EXE-7E94E73E.pf O45 - LFCP:[MD5.CA02BEE88BDF1E8177E1626E6A7DFC9E] - 30/05/2011 - 09:17:26 ---A- - C:\Windows\Prefetch\SIGCHECK.EXE-F42FC051.pf O45 - LFCP:[MD5.1CE05A6E7B7439458E916CB4AC034DEE] - 30/05/2011 - 09:20:13 ---A- - C:\Windows\Prefetch\NSLOOKUP.EXE-8DBC12C3.pf O45 - LFCP:[MD5.E96EEEBCB4C1A6A6E5F6A57CCBB94104] - 30/05/2011 - 09:20:16 ---A- - C:\Windows\Prefetch\MBR.EXE-836B8DE9.pf O45 - LFCP:[MD5.41D1B364BF746273A91361EFA2CDE074] - 30/05/2011 - 09:26:25 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.D809E9E72320607A2A188D7C42C0633B] - 30/05/2011 - 09:26:27 ---A- - C:\Windows\Prefetch\PSPAD.EXE-D675E3AC.pf O45 - LFCP:[MD5.02D48CB5FB77FB40E6E821429D9717AC] - 30/05/2011 - 09:27:52 ---A- - C:\Windows\Prefetch\EBAPIX32.EXE-03E0E5F3.pf O45 - LFCP:[MD5.DEA41D960D93C75544D2159FC2D222C6] - 30/05/2011 - 09:30:11 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.5113D1B4B8DBEEC4148E1AFA221F74DF] - 30/05/2011 - 09:30:15 ---A- - C:\Windows\Prefetch\SF.BIN-F8CC34BB.pf O45 - LFCP:[MD5.E04F2A06E9289819F622FE80BD03BFC7] - 30/05/2011 - 09:30:16 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.EADC7FD62DB8A9E4C3009770D1D6CB7B] - 30/05/2011 - 09:30:19 ---A- - C:\Windows\Prefetch\AUDIODG.EXE-BDFD3029.pf O45 - LFCP:[MD5.BB84A0DDFF15C24758989AEB7E3DE75C] - 30/05/2011 - 09:30:24 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-0D117CAF.pf O45 - LFCP:[MD5.E3751371236DB643EA742A94B6012284] - 30/05/2011 - 09:30:54 ---A- - C:\Windows\Prefetch\CMD.EXE-AC113AA8.pf O45 - LFCP:[MD5.5B54218ECDDAAB5E4C2A0F045A97C6D6] - 30/05/2011 - 09:30:54 ---A- - C:\Windows\Prefetch\CONHOST.EXE-1F3E9D7E.pf O45 - LFCP:[MD5.A4760C04327A3982B545F90F28FDB70A] - 30/05/2011 - 09:30:54 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-AD598958.pf O45 - LFCP:[MD5.12250B4F3584C6281226997C0C028733] - 30/05/2011 - 09:30:59 ---A- - C:\Windows\Prefetch\REALPLAY.EXE-BBD23B10.pf O45 - LFCP:[MD5.55A29AB8357FA3A37400E8949667FA17] - 30/05/2011 - 09:31:17 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-80F4A784.pf ---\\ MountPoints2 Shell Key (O51) O51 - MPSK:{d005ff15-d9eb-11df-a41b-c80aa9626019}\AutoRun\command. (.Pas de propriétaire - Pas de description.) -- G:\setup_vmc_lite.exe (.not file.) O51 - MPSK:{fdb7e57d-e9a4-11df-9323-c80aa9626019}\AutoRun\command. (.Pas de propriétaire - Pas de description.) -- G:\setup_vmc_lite.exe (.not file.) ---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe ---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll ---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "HideFastUserSwitching"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableLockWorkstation"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableTaskMgr"=0 O55 - MWPS:[HKCU\...\Policies\System] - "DisableChangePassword"=0 ---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 ---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2F6B34B83843F0C5118B63AC634F5BF4] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [491088] O58 - SDL:[MD5.597F78224EE9224EA1A13D6350CED962] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [339536] O58 - SDL:[MD5.E109549C90F62FB570B9540C4B148E54] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\system32\drivers\adpu320.sys [182864] O58 - SDL:[MD5.98022774D9930ECBB292E70DB7601DF6] - 10/06/2009 - 22:01:06 ---A- . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\system32\drivers\agrsm64.sys [1146880] O58 - SDL:[MD5.5812713A477A3AD7363C7438CA2EE038] - 14/07/2009 - 02:52:21 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [15440] O58 - SDL:[MD5.EC7EBAB00A4D8448BAB68D1E49B4BEB9] - 11/03/2011 - 07:22:41 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [107904] O58 - SDL:[MD5.F67F933E79241ED32FF46A4F29B5120B] - 14/07/2009 - 02:52:20 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\system32\drivers\amdsbs.sys [194128] O58 - SDL:[MD5.DB27766102C7BF7E95140A2AA81D042E] - 11/03/2011 - 07:22:40 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [27008] O58 - SDL:[MD5.C484F8CEB1717C540242531DB7845C4E] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [87632] O58 - SDL:[MD5.019AF6924AEFE7839F61C830227FE79C] - 14/07/2009 - 02:52:21 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [97856] O58 - SDL:[MD5.F1DBE3D02FFCDEE5246F29B0ECEBE6E0] - 10/05/2011 - 12:59:37 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [22360] O58 - SDL:[MD5.F3E75DD1BCC358FB4629357AD09E7C84] - 10/05/2011 - 12:59:48 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [64344] O58 - SDL:[MD5.FCCBDC045DC12AFD1508205117E7ED11] - 10/05/2011 - 12:59:59 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [31064] O58 - SDL:[MD5.5824DCA602A0A30E866BC2AC98C6D970] - 10/05/2011 - 13:04:08 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [600920] O58 - SDL:[MD5.AF07B4BEF920F90205148F3A05E2974C] - 10/05/2011 - 13:04:07 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [287576] O58 - SDL:[MD5.A3ECA5AF3B4823A523C285A8DF0F9E4F] - 10/05/2011 - 13:02:41 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [53592] O58 - SDL:[MD5.38562A6A9CB10844759EAF2B01A7FCD3] - 21/09/2009 - 18:47:14 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athrx.sys [1484800] O58 - SDL:[MD5.3B9014FB7CE9E20FD726321C7DB7D8B0] - 24/07/2009 - 08:49:00 ---A- . (.ATI Technologies, Inc. - ATI High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\AtiHdmi.sys [119312] O58 - SDL:[MD5.A29087680A1C3B049E3C05438E8FF2B8] - 05/08/2009 - 06:23:00 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [6038016] O58 - SDL:[MD5.7C5D273E29DCC5505469B299C6F29163] - 05/05/2009 - 06:30:28 ---A- . (.Advanced Micro Devices Inc. - AMD PCIE Filter Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [16440] O58 - SDL:[MD5.B5ACE6968304A3900EEB1EBFD9622DF2] - 10/06/2009 - 21:34:23 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\system32\drivers\b57nd60a.sys [270848] O58 - SDL:[MD5.F09EEE9EDC320B5E1501F749FDE686C8] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [18432] O58 - SDL:[MD5.B114D3098E9BDB8BEA8B053685831BE6] - 10/06/2009 - 21:41:06 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [8704] O58 - SDL:[MD5.43BEA8D483BF1870F018E2D02E06A5BD] - 14/07/2009 - 02:19:07 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [286720] O58 - SDL:[MD5.A6ECA2151B08A09CACECA35C07F05B42] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [47104] O58 - SDL:[MD5.B79968002C277E869CF38BD22CD61524] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [14976] O58 - SDL:[MD5.A87528880231C54E75EA7A44943B38BF] - 10/06/2009 - 21:41:10 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [14720] O58 - SDL:[MD5.3E5B191307609F7514148C6832BB0842] - 10/06/2009 - 21:34:28 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbda.sys [468480] O58 - SDL:[MD5.E19D3F095812725D88F9001985B94EDD] - 14/07/2009 - 02:52:31 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [17488] O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [530496] O58 - SDL:[MD5.DC5D737F51BE844D8C82C695EB17372F] - 10/06/2009 - 21:34:33 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbda.sys [3286016] O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [31232] O58 - SDL:[MD5.9AF482D058BE59CC28BCE52E7C4B747C] - 29/04/2009 - 08:48:32 ---A- . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\system32\drivers\HpqKbFiltr.sys [18432] O58 - SDL:[MD5.0886D440058F203EBA0E1825E4355914] - 14/07/2009 - 02:47:48 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [77888] O58 - SDL:[MD5.B75E45C564E944A2657167D197AB29DA] - 11/03/2011 - 07:23:00 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\system32\drivers\iaStorV.sys [410496] O58 - SDL:[MD5.A87261EF1546325B559374F5689CF5BC] - 10/06/2009 - 21:37:05 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd64.sys [6108416] O58 - SDL:[MD5.5C18831C61933628F5BB0EA2675B9D21] - 14/07/2009 - 02:48:04 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [44112] O58 - SDL:[MD5.1A93E54EB0ECE102495A51266DCDB6A6] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [114752] O58 - SDL:[MD5.1047184A9FDC8BDBFF857175875EE810] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [106560] O58 - SDL:[MD5.30F5C0DE1EE8B5BC9306C1F0E4A75F93] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [65600] O58 - SDL:[MD5.0504EACAFF0D3C8AED161C4B0D369D4A] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [115776] O58 - SDL:[MD5.3D3C4B63F11F63F50253E734F0ACE9F2] - 20/12/2010 - 17:08:40 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [24152] O58 - SDL:[MD5.A55805F747C6EDB6A9080D7C633BD0F4] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7\Server 2008 R2 for.) -- C:\Windows\system32\drivers\megasas.sys [35392] O58 - SDL:[MD5.BAF74CE0072480C3B6B7C13B2A94D6B3] - 14/07/2009 - 02:48:04 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [284736] O58 - SDL:[MD5.64428DFDAF6E88366CB51F45A79C5F69] - 10/06/2009 - 21:35:28 ---A- . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\system32\drivers\netw5v64.sys [5434368] O58 - SDL:[MD5.77889813BE4D166CDAB78DDBA990DA92] - 14/07/2009 - 02:48:26 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [51264] O58 - SDL:[MD5.351533ACC2A069B94E80BBFC177E8FDF] - 25/06/2010 - 18:07:26 ---A- . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\system32\drivers\npf.sys [35344] O58 - SDL:[MD5.A4D9C9A608A97F59307C2F2600EDC6A4] - 11/03/2011 - 07:23:06 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [148352] O58 - SDL:[MD5.6C1D5F70E7A6A3FD1C90D840EDC048B9] - 11/03/2011 - 07:23:06 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [166272] O58 - SDL:[MD5.A53A15A11EBFD21077463EE2C7AFEEF0] - 14/07/2009 - 02:45:46 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1524816] O58 - SDL:[MD5.4F6D12B51DE1AAEFF7DC58C4D75423C8] - 14/07/2009 - 02:45:45 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [128592] O58 - SDL:[MD5.B49DC435AE3695BAC5623DD94B05732D] - 23/05/2009 - 07:52:30 ---A- . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Driver.) -- C:\Windows\system32\drivers\Rt64win7.sys [215040] O58 - SDL:[MD5.A5DF2F732A6C95554E548FCB6932BD31] - 24/06/2009 - 20:00:18 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/Vista/Win7.) -- C:\Windows\system32\drivers\RtsUStor.sys [216576] O58 - SDL:[MD5.3EA8A16169C26AFBEB544E0E48421186] - 10/06/2009 - 21:37:19 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [23040] O58 - SDL:[MD5.843CAF1E5FDE1FFD5FF768F23A51E2E1] - 14/07/2009 - 02:45:45 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [43584] O58 - SDL:[MD5.6A6C106D42E9FFFF8B9FCB4F754F6DA4] - 14/07/2009 - 02:45:46 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [80464] O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [24656] O58 - SDL:[MD5.ED1722F43CE61409EF68340402D6267D] - 22/07/2009 - 02:33:32 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\system32\drivers\stwrt64.sys [487936] O58 - SDL:[MD5.929C9FA0B18AD2EBC8340591C4BF00FF] - 15/07/2009 - 00:16:34 ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\system32\drivers\SynTP.sys [273456] O58 - SDL:[MD5.927D0CDB3F96EFC1E98FB1A2C9FB67AD] - 03/08/2010 - 16:25:30 ---A- . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\Windows\system32\drivers\tapoas.sys [30720] O58 - SDL:[MD5.44D9C773FEBFF10593B50DDFC2D6BC27] - 09/03/2009 - 05:49:08 ---A- . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\system32\drivers\usbfilter.sys [36408] O58 - SDL:[MD5.E5689D93FFE4E5D66C0178761240DD54] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17488] O58 - SDL:[MD5.5E2016EA6EBACA03C04FEAC5F330D997] - 14/07/2009 - 02:45:55 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [161872] O58 - SDL:[MD5.0C4540311E11664B245A263E1154CEF8] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\system32\drivers\VSTAZL6.SYS [292864] O58 - SDL:[MD5.18E40C245DBFAF36FD0134A7EF2DF396] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\system32\drivers\VSTCNXT6.SYS [740864] O58 - SDL:[MD5.02071D207A9858FBE3A48CBFD59C4A04] - 10/06/2009 - 22:01:11 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\system32\drivers\VSTDPV6.SYS [1485312] O58 - SDL:[MD5.B3EEACF62445E24FBB2CD4B0FB4DB026] - 10/06/2009 - 21:35:33 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk62x64.sys [389120] O58 - SDL:[MD5.D68E165C3123ABA3B1282EDDB4213BD8] - 20/12/2010 - 17:09:00 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\SysWOW64\drivers\mbamswissarmy.sys [38224] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC:Last File Created 10/05/2003 - 19:09:04 ---A- C:\Users\ArouG\Documents\sauvegardes clefs USB 2010_10_01\KINGSTON\ikernel.ex_ [346602] O61 - LFC:Last File Created 27/05/2011 - 04:44:38 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\OIS\Toolbars.dat [666] O61 - LFC:Last File Created 27/05/2011 - 04:44:39 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\OIS11.pip [424] O61 - LFC:Last File Created 27/05/2011 - 08:06:47 ---A- C:\Users\ArouG\AppData\Roaming\Eric's TelNet98\.random [1028] O61 - LFC:Last File Created 27/05/2011 - 16:03:06 ---A- C:\Users\ArouG\AppData\Local\Temp\chrome_installer.log [0] O61 - LFC:Last File Created 27/05/2011 - 17:23:55 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\bg.html [351] O61 - LFC:Last File Created 27/05/2011 - 17:23:55 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\contentscript.js [1152] O61 - LFC:Last File Created 27/05/2011 - 17:23:55 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\256.png [9347] O61 - LFC:Last File Created 27/05/2011 - 17:23:55 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\64.png [1903] O61 - LFC:Last File Created 27/05/2011 - 17:23:55 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\Thumbs.db [13312] O61 - LFC:Last File Created 27/05/2011 - 17:23:56 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\128.png [3882] O61 - LFC:Last File Created 27/05/2011 - 17:23:56 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\16.png [364] O61 - LFC:Last File Created 27/05/2011 - 17:23:56 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\32.png [841] O61 - LFC:Last File Created 27/05/2011 - 17:23:56 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\icons\48.png [1361] O61 - LFC:Last File Created 27/05/2011 - 17:23:56 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.0_0\manifest.json [751] O61 - LFC:Last File Created 27/05/2011 - 17:23:58 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ihflimipbcaljfnojhhknppphnnciiif_0.localstorage [3072] O61 - LFC:Last File Created 27/05/2011 - 17:24:26 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Extension Cookies [6144] O61 - LFC:Last File Created 27/05/2011 - 17:25:39 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000212 [38120] O61 - LFC:Last File Created 27/05/2011 - 17:25:39 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000213 [26209] O61 - LFC:Last File Created 27/05/2011 - 17:25:39 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000214 [67742] O61 - LFC:Last File Created 27/05/2011 - 17:26:32 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Service State [52] O61 - LFC:Last File Created 27/05/2011 - 17:26:37 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\.ChromotingConfig.json [1764] O61 - LFC:Last File Created 27/05/2011 - 17:27:35 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Web Data [73728] O61 - LFC:Last File Created 27/05/2011 - 17:29:04 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000215 [28141] O61 - LFC:Last File Created 27/05/2011 - 17:29:05 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000216 [31410] O61 - LFC:Last File Created 27/05/2011 - 17:29:06 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000217 [18177] O61 - LFC:Last File Created 27/05/2011 - 17:29:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000218 [31410] O61 - LFC:Last File Created 27/05/2011 - 17:29:25 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000219 [34175] O61 - LFC:Last File Created 27/05/2011 - 17:29:26 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00021a [20587] O61 - LFC:Last File Created 27/05/2011 - 17:29:26 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00021b [27883] O61 - LFC:Last File Created 27/05/2011 - 17:29:26 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00021c [52403] O61 - LFC:Last File Created 27/05/2011 - 17:29:27 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00021d [16836] O61 - LFC:Last File Created 27/05/2011 - 17:29:27 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00021e [28346] O61 - LFC:Last File Created 27/05/2011 - 17:30:15 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00021f [17306] O61 - LFC:Last File Created 27/05/2011 - 17:30:15 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000220 [32060] O61 - LFC:Last File Created 27/05/2011 - 17:30:15 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000221 [37651] O61 - LFC:Last File Created 27/05/2011 - 17:30:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000222 [16674] O61 - LFC:Last File Created 27/05/2011 - 17:30:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000223 [21885] O61 - LFC:Last File Created 27/05/2011 - 17:30:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000224 [61545] O61 - LFC:Last File Created 27/05/2011 - 17:30:17 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000225 [29340] O61 - LFC:Last File Created 27/05/2011 - 17:30:17 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000226 [23098] O61 - LFC:Last File Created 27/05/2011 - 17:30:20 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.batteriedeportable.com_0.localstorage [3072] O61 - LFC:Last File Created 27/05/2011 - 17:34:24 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000227 [63048] O61 - LFC:Last File Created 27/05/2011 - 17:34:41 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000228 [45055] O61 - LFC:Last File Created 27/05/2011 - 17:34:44 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000229 [20353] O61 - LFC:Last File Created 27/05/2011 - 17:35:42 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00022a [21390] O61 - LFC:Last File Created 27/05/2011 - 17:35:49 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00022b [24606] O61 - LFC:Last File Created 27/05/2011 - 17:35:50 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00022c [16782] O61 - LFC:Last File Created 27/05/2011 - 17:42:22 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00022d [27475] O61 - LFC:Last File Created 27/05/2011 - 17:44:20 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00022e [39889] O61 - LFC:Last File Created 27/05/2011 - 17:44:23 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00022f [16897] O61 - LFC:Last File Created 27/05/2011 - 17:54:41 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000230 [34958] O61 - LFC:Last File Created 27/05/2011 - 17:54:43 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000231 [29084] O61 - LFC:Last File Created 27/05/2011 - 17:54:44 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000232 [31878] O61 - LFC:Last File Created 27/05/2011 - 17:55:00 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000233 [33561] O61 - LFC:Last File Created 27/05/2011 - 17:55:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000234 [28617] O61 - LFC:Last File Created 27/05/2011 - 17:55:08 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000235 [34189] O61 - LFC:Last File Created 27/05/2011 - 17:55:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000236 [36207] O61 - LFC:Last File Created 27/05/2011 - 17:55:22 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Favicons [34816] O61 - LFC:Last File Created 27/05/2011 - 18:04:11 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000237 [33854] O61 - LFC:Last File Created 27/05/2011 - 18:04:15 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000238 [34958] O61 - LFC:Last File Created 27/05/2011 - 18:24:26 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\flagsbe.png [449] O61 - LFC:Last File Created 27/05/2011 - 18:24:26 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\jquery.js [21240] O61 - LFC:Last File Created 27/05/2011 - 18:24:26 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\satisfait.gif [9112] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\avw.gif [43] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\btn_add.gif [2881] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\btn_pay.gif [2384] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\btn_top.gif [2020] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\btn_view_cart.gif [1908] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\dts.js [488] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\email_go.gif [1030] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\enable.js [8397] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\flagsengland.png [496] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\flagses.png [469] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\flagsfr.png [545] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\flagsit.png [420] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\ga.js [27026] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\getseal [13] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\img_footer.jpg [28346] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\jquery-1.js [78601] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\logo-neoteo.jpg [3819] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\logo.jpg [5611] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\logo_besel.jpg [16836] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\prettyPhoto.css [16890] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\raynox.gif [972] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\style.css [18014] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\style_002.css [18014] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\telephone.gif [1044] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\vertical_solution_PP.gif [4499] O61 - LFC:Last File Created 27/05/2011 - 18:24:27 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\zoom.gif [528] O61 - LFC:Last File Created 27/05/2011 - 18:24:29 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\avw.jpg [16139] O61 - LFC:Last File Created 27/05/2011 - 18:24:30 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\avw_002.gif [52403] O61 - LFC:Last File Created 27/05/2011 - 18:24:30 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp_fichiers\avw_002.jpg [15381] O61 - LFC:Last File Created 27/05/2011 - 18:24:32 ---A- C:\Users\ArouG\Documents\paypal_callbackok.asp.htm [25259] O61 - LFC:Last File Created 27/05/2011 - 18:25:07 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Documents_scan2.log [0] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a.htm [958565] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_002.htm [613] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_003.htm [125] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data\a [108] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data\media-api.swf [74917] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data_002\chatsound.swf [7607] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data_002\sound.swf [7106] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data_004\cleardot.gif [43] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data_004\rpc.js [28594] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data_004\sem_ed641342425dad707558dbe5e8566f0d.js [13778] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_data_004\uploaderapi2.swf [3933] O61 - LFC:Last File Created 27/05/2011 - 18:28:35 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\dn-w.gif [60] O61 - LFC:Last File Created 27/05/2011 - 18:28:36 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com_fichiers\a_004.htm [502325] O61 - LFC:Last File Created 27/05/2011 - 18:28:37 ---A- C:\Users\ArouG\Documents\Gmail - Pedido en DigitalToyShop - francois.dantigny@gmail.com.htm [353908] O61 - LFC:Last File Created 27/05/2011 - 18:28:40 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [5276956] O61 - LFC:Last File Created 27/05/2011 - 18:28:42 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Filter 2 [1963578] O61 - LFC:Last File Created 27/05/2011 - 18:29:10 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Documents_scan.log [0] O61 - LFC:Last File Created 27/05/2011 - 18:31:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7CE2.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7CF3.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7CF4.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7CF5.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:07 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7D05.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:08 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7D06.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:08 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld\7D46.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons\8DDA.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons\8DEA.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons\8DEB.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons\8DFC.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons\8E1C.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:12 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons\8E2D.tmp [150798] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 [2344448] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 [16621568] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 [2105344] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 [8396800] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_4 [16621568] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_5 [16621568] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_6 [2105344] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cache\data_7 [45056] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Cookies [45056] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Current Session [63137] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Current Tabs [97660] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\History [409600] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\History Index 2011-05 [802816] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Preferences [20452] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Default\Visited Links [131072] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\Local State [6612] O61 - LFC:Last File Created 27/05/2011 - 18:31:16 ---A- C:\Users\ArouG\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [4] O61 - LFC:Last File Created 28/05/2011 - 03:52:05 ---A- C:\Users\ArouG\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents [3072] O61 - LFC:Last File Created 28/05/2011 - 03:54:51 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\calculs2010_v2.xls.lnk [572] O61 - LFC:Last File Created 28/05/2011 - 03:54:51 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\data.lnk [405] O61 - LFC:Last File Created 28/05/2011 - 04:39:25 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\VB11.pip [144] O61 - LFC:Last File Created 28/05/2011 - 08:56:03 ---A- C:\Users\ArouG\Downloads\malwarebytes-anti-malware_malwarebytes_anti-malware_1.50.1_francais_215092.exe [7734208] O61 - LFC:Last File Created 28/05/2011 - 08:56:19 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Downloads_scan2.log [494] O61 - LFC:Last File Created 28/05/2011 - 08:57:21 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\config.dat [778] O61 - LFC:Last File Created 28/05/2011 - 08:57:21 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\link.txt [115] O61 - LFC:Last File Created 28/05/2011 - 08:57:21 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\local.dat [94] O61 - LFC:Last File Created 28/05/2011 - 08:57:21 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\news.txt [78] O61 - LFC:Last File Created 28/05/2011 - 08:57:21 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [6758626] O61 - LFC:Last File Created 28/05/2011 - 08:57:30 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\ignore.dat [0] O61 - LFC:Last File Created 28/05/2011 - 08:57:30 ---A- C:\Users\ArouG\AppData\Local\Temp\~DF84914E64E38CC6DC.TMP [81920] O61 - LFC:Last File Created 28/05/2011 - 09:54:57 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\HTML Help\hh.dat [9136] O61 - LFC:Last File Created 28/05/2011 - 10:08:06 ---A- C:\Users\All Users\Alwil Software\Avast5\db1cb594fb9b1c30c-5229c179.dat [24] O61 - LFC:Last File Created 28/05/2011 - 10:39:54 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\CA20110528_1140.slk.lnk [1184] O61 - LFC:Last File Created 28/05/2011 - 10:39:54 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\Temp.lnk [1012] O61 - LFC:Last File Created 28/05/2011 - 10:47:46 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\Bibliothèque.lnk [1116] O61 - LFC:Last File Created 28/05/2011 - 10:47:46 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\CA20110505_2050.slk.lnk [1059] O61 - LFC:Last File Created 28/05/2011 - 10:47:46 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\EUROTOOL.XLA.lnk [1253] O61 - LFC:Last File Created 28/05/2011 - 10:47:46 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\Téléchargements.lnk [887] O61 - LFC:Last File Created 28/05/2011 - 10:47:46 --H-- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Récent\index.dat [1263] O61 - LFC:Last File Created 28/05/2011 - 12:38:22 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Excel\Excel11.xlb [17546] O61 - LFC:Last File Created 28/05/2011 - 12:38:23 ---A- C:\Users\ArouG\AppData\Roaming\Microsoft\Office\Excel11.pip [1640] O61 - LFC:Last File Created 28/05/2011 - 14:06:23 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Pictures_scan2.log [403] O61 - LFC:Last File Created 28/05/2011 - 14:07:12 -SHA- C:\Users\ArouG\Pictures\Thumbs.db [10752] O61 - LFC:Last File Created 28/05/2011 - 14:07:23 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Pictures_scan.log [403] O61 - LFC:Last File Created 28/05/2011 - 14:08:10 ---A- C:\Users\All Users\EPSON\PRINTER\EPLG000.DAT [1452] O61 - LFC:Last File Created 28/05/2011 - 14:09:37 ---A- C:\Users\All Users\Alwil Software\Avast5\log\AshWebSv.ws.ori [797] O61 - LFC:Last File Created 29/05/2011 - 15:01:07 ---A- C:\Users\All Users\Alwil Software\Avast5\log\AshWebSv.ws [0] O61 - LFC:Last File Created 29/05/2011 - 15:27:25 ---A- C:\Users\ArouG\Downloads\ZHPDiag2.exe [2497601] O61 - LFC:Last File Created 29/05/2011 - 15:27:30 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Downloads_scan.log [494] O61 - LFC:Last File Created 29/05/2011 - 16:13:29 -SH-- C:\Users\Public\Music\Sample Music\AlbumArtSmall.jpg [5209] O61 - LFC:Last File Created 29/05/2011 - 16:13:29 -SH-- C:\Users\Public\Music\Sample Music\AlbumArt_{FB668DE7-47AE-47DB-8A87-BA0854BD5F36}_Large.jpg [23226] O61 - LFC:Last File Created 29/05/2011 - 16:13:29 -SH-- C:\Users\Public\Music\Sample Music\AlbumArt_{FB668DE7-47AE-47DB-8A87-BA0854BD5F36}_Small.jpg [5209] O61 - LFC:Last File Created 29/05/2011 - 16:13:29 -SH-- C:\Users\Public\Music\Sample Music\Folder.jpg [23226] O61 - LFC:Last File Created 29/05/2011 - 16:13:31 ---A- C:\Users\Public\Music\Sample Music\Maid with the Flaxen Hair.mp3 [4113874] O61 - LFC:Last File Created 29/05/2011 - 16:27:09 --HA- C:\Users\ArouG\AppData\Local\IconCache.db [2624204] O61 - LFC:Last File Created 29/05/2011 - 16:27:10 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\dht.dat.old [451] O61 - LFC:Last File Created 29/05/2011 - 16:27:10 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\rss.dat.old [99] O61 - LFC:Last File Created 29/05/2011 - 16:27:16 ---A- C:\Users\All Users\Alwil Software\Avast5\URL.db [2647040] O61 - LFC:Last File Created 29/05/2011 - 22:11:59 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\dht.dat [633] O61 - LFC:Last File Created 29/05/2011 - 22:11:59 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\rss.dat [99] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\chest\index.xml [114] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\log\Chest.log [4323] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\log\Mail.log [106048] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\BehaviorShield.txt [24003] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\EmailShield.txt [19111] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\FileSystemShield.txt [19111] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\IMShield.txt [19111] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\NetworkShield.txt [19111] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\P2PShield.txt [19111] O61 - LFC:Last File Created 30/05/2011 - 07:14:33 ---A- C:\Users\All Users\Alwil Software\Avast5\report\ScriptShield.txt [1204] O61 - LFC:Last File Created 30/05/2011 - 07:14:35 ---A- C:\Users\All Users\Alwil Software\Avast5\report\WebShield.txt [19111] O61 - LFC:Last File Created 30/05/2011 - 07:14:36 ---A- C:\Users\All Users\ABBYY\FineReaderSprint\9.00\Licenses\ProductLicensing.log [29756] O61 - LFC:Last File Created 30/05/2011 - 07:14:36 --HA- C:\Users\All Users\EPSON\PRINTER\EPAUDF01.AUD [22883] O61 - LFC:Last File Created 30/05/2011 - 07:14:41 ---A- C:\Users\All Users\Real\RealUpgrade\RealUpgrade_12_0.xml [618] O61 - LFC:Last File Created 30/05/2011 - 07:14:52 ---A- C:\Users\ArouG\AppData\Local\Temp\AdobeARM.log [29156] O61 - LFC:Last File Created 30/05/2011 - 07:14:52 ---A- C:\Users\ArouG\AppData\Local\Temp\Twain001.Mtx [4] O61 - LFC:Last File Created 30/05/2011 - 07:14:52 ---A- C:\Users\ArouG\AppData\Local\Temp\Twunk001.MTX [156] O61 - LFC:Last File Created 30/05/2011 - 07:14:53 ---A- C:\Users\All Users\HPWALog.txt [179] O61 - LFC:Last File Created 30/05/2011 - 07:14:53 ---A- C:\Users\ArouG\AppData\Local\Temp\TWAIN.LOG [890] O61 - LFC:Last File Created 30/05/2011 - 07:14:53 ---A- C:\Users\ArouG\AppData\Roaming\Epson\Event Manager\AllEpsonDS.ini [179] O61 - LFC:Last File Created 30/05/2011 - 07:15:39 ---A- C:\Users\All Users\Alwil Software\Avast5\log\Setup.log [3577452] O61 - LFC:Last File Created 30/05/2011 - 07:16:00 ---A- C:\Users\ArouG\AppData\Local\ATI\ACE\Manifest.Bin [27796] O61 - LFC:Last File Created 30/05/2011 - 07:16:00 ---A- C:\Users\ArouG\AppData\Local\ATI\ACE\Manifest.xml [20186] O61 - LFC:Last File Created 30/05/2011 - 07:16:19 ---A- C:\Users\ArouG\AppData\Local\Temp\plugtmp-14\plugin-viewer.xml [812] O61 - LFC:Last File Created 30/05/2011 - 07:16:20 ---A- C:\Users\ArouG\AppData\Local\Temp\plugtmp-14\plugin-home.xml [694] O61 - LFC:Last File Created 30/05/2011 - 07:19:52 ---A- C:\Users\ArouG\AppData\Local\Temp\jusched.log [70847] O61 - LFC:Last File Created 30/05/2011 - 07:24:14 ---A- C:\Users\All Users\Alwil Software\Avast5\log\aswAr.log [49518] O61 - LFC:Last File Created 30/05/2011 - 07:29:15 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog00.sqm [1526] O61 - LFC:Last File Created 30/05/2011 - 07:29:55 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog01.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:31:50 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog02.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:33:35 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog03.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:34:22 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog04.sqm [1742] O61 - LFC:Last File Created 30/05/2011 - 07:35:13 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog05.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:38:00 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog06.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:38:49 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog07.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:39:50 ---A- C:\Users\ArouG\AppData\Local\Temp\wmplog08.sqm [1478] O61 - LFC:Last File Created 30/05/2011 - 07:59:50 ---A- C:\Users\ArouG\AppData\Local\Temp\plugtmp-14\plugin-home-1.xml [694] O61 - LFC:Last File Created 30/05/2011 - 07:59:50 ---A- C:\Users\ArouG\AppData\Local\Temp\plugtmp-14\plugin-viewer-1.xml [812] O61 - LFC:Last File Created 30/05/2011 - 08:00:54 ---A- C:\Users\ArouG\AppData\Roaming\Real\RealPlayer\WatchFolders\C__Users_ArouG_Desktop_scan.log [0] O61 - LFC:Last File Created 30/05/2011 - 08:01:44 ---A- C:\Users\All Users\Alwil Software\Avast5\snx_lconfig.xml [444] O61 - LFC:Last File Created 30/05/2011 - 08:44:19 ---A- C:\Users\All Users\Alwil Software\Avast5\db1ca64fc6d57261b-20f79613.dat [780936] O61 - LFC:Last File Created 30/05/2011 - 08:44:50 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\settings.dat.old [6796] O61 - LFC:Last File Created 30/05/2011 - 09:14:51 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\settings.dat [6817] O61 - LFC:Last File Created 30/05/2011 - 09:15:36 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\resume.dat.old [3065] O61 - LFC:Last File Created 30/05/2011 - 09:19:55 ---A- C:\Users\ArouG\AppData\Local\ATI\ACE\Profiles.xml [12496] O61 - LFC:Last File Created 30/05/2011 - 09:21:40 ---A- C:\Users\All Users\Alwil Software\Avast5\log\usntr.log [39790] O61 - LFC:Last File Created 30/05/2011 - 09:22:00 ---A- C:\Users\ArouG\AppData\Roaming\PSpad\PSPad.INI [4576] O61 - LFC:Last File Created 30/05/2011 - 09:25:37 ---A- C:\Users\ArouG\AppData\Roaming\uTorrent\resume.dat [3047] O61 - LFC:Last File Created 30/05/2011 - 09:27:12 ---A- C:\Users\ArouG\AppData\Roaming\PSpad\Recent.INI [3037] O61 - LFC:Last File Created 30/05/2011 - 09:27:33 ---A- C:\Users\All Users\EPSON\EPSON SX525WD Series\040c.E_FCF0GAE.WAT [13482] O61 - LFC:Last File Created 30/05/2011 - 09:30:03 ---A- C:\Users\All Users\Alwil Software\Avast5\Log.db [81920] O61 - LFC:Last File Created 30/05/2011 - 09:30:04 ---A- C:\Users\All Users\Alwil Software\Avast5\avast5.ini [6690] O61 - LFC:Last File Created 30/05/2011 - 09:30:14 ---A- C:\Users\All Users\Alwil Software\Avast5\log\autosandbox.log [22528] ---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1 ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\adp94xx.sys - adp94xx(adp94xx) .(.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - LEGACY_ADP94XX O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\adpahci.sys - adpahci(adpahci) .(.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - LEGACY_ADPAHCI O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\adpu320.sys - adpu320(adpu320) .(.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) - LEGACY_ADPU320 O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\aliide.sys - aliide(aliide) .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\drivers\amdsata.sys - amdsata(amdsata) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\amdsbs.sys - amdsbs(amdsbs) .(.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) - LEGACY_AMDSBS O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\arc.sys - arc(arc) .(.Adaptec, Inc. - Adaptec RAID Storport Driver.) - LEGACY_ARC O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\arcsas.sys - Pilote miniport de boîte de réception Windows Adaptec SAS/SATA-II RAID(arcsas) .(.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - LEGACY_ARCSAS O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWFSBLK.sys - (.not file.) - aswFsBlk (aswFsBlk) .(...) - LEGACY_ASWFSBLK O64 - Services: CurCS - 30/12/1899 - C:\Windows\system32\drivers\aswMonFlt.sys - aswMonFlt(aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWRDR.sys - (.not file.) - aswRdr (aswRdr) .(...) - LEGACY_ASWRDR O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWSNX.sys - (.not file.) - aswSnx (aswSnx) .(...) - LEGACY_ASWSNX O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWSP.sys - (.not file.) - aswSP (aswSP) .(...) - LEGACY_ASWSP O64 - Services: CurCS - C:\Windows\system32\Drivers\ASWTDI.sys - (.not file.) - avast! Network Shield Support (aswTdi) .(...) - LEGACY_ASWTDI O64 - Services: CurCS - C:\Windows\system32\Drivers\BEEP.sys - (.not file.) - Beep (Beep) .(...) - LEGACY_BEEP O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\cmdide.sys - cmdide(cmdide) .(.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) - LEGACY_CMDIDE O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\elxstor.sys - elxstor(elxstor) .(.Emulex - Storport Miniport Driver for LightPulse HBA.) - LEGACY_ELXSTOR O64 - Services: CurCS - C:\Windows\system32\Drivers\FASTFAT.sys - (.not file.) - FAT12/16/32 File System Driver (fastfat) .(...) - LEGACY_FASTFAT O64 - Services: CurCS - C:\Windows\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(...) - LEGACY_FS_REC O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\HpSAMD.sys - HpSAMD(HpSAMD) .(.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) - LEGACY_HPSAMD O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\drivers\iaStorV.sys - Contrôleur RAID Intel Windows 7(iaStorV) .(.Intel Corporation - Intel Matrix Storage Manager driver - x64.) - LEGACY_IASTORV O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\iirsp.sys - iirsp(iirsp) .(.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - LEGACY_IIRSP O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\lsi_fc.sys - LSI_FC(LSI_FC) .(.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) - LEGACY_LSI_FC O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\lsi_sas.sys - LSI_SAS(LSI_SAS) .(.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) - LEGACY_LSI_SAS O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\lsi_sas2.sys - LSI_SAS2(LSI_SAS2) .(.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) - LEGACY_LSI_SAS2 O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\lsi_scsi.sys - LSI_SCSI(LSI_SCSI) .(.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) - LEGACY_LSI_SCSI O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\megasas.sys - megasas(megasas) .(.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) - LEGACY_MEGASAS O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\MegaSR.sys - MegaSR(MegaSR) .(.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) - LEGACY_MEGASR O64 - Services: CurCS - C:\Windows\system32\Drivers\MSFS.sys - Msfs (Msfs) .(...) - LEGACY_MSFS O64 - Services: CurCS - C:\Windows\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(...) - LEGACY_NDPROXY O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\nfrd960.sys - nfrd960(nfrd960) .(.IBM Corporation - IBM ServeRAID Controller Driver.) - LEGACY_NFRD960 O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\drivers\npf.sys - NetGroup Packet Filter Driver(NPF) .(.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) - LEGACY_NPF O64 - Services: CurCS - C:\Windows\system32\Drivers\NPFS.sys - Npfs (Npfs) .(...) - LEGACY_NPFS O64 - Services: CurCS - C:\Windows\system32\Drivers\NTFS.sys - Ntfs (Ntfs) .(...) - LEGACY_NTFS O64 - Services: CurCS - C:\Windows\system32\Drivers\NULL.sys - Null (Null) .(...) - LEGACY_NULL O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\drivers\nvraid.sys - nvraid(nvraid) .(.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - LEGACY_NVRAID O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\drivers\nvstor.sys - nvstor(nvstor) .(.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - LEGACY_NVSTOR O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\ql2300.sys - Pilote de miniport QLogic Fibre Channel(ql2300) .(.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) - LEGACY_QL2300 O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\ql40xx.sys - Pilote de miniport QLogic iSCSI(ql40xx) .(.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) - LEGACY_QL40XX O64 - Services: CurCS - C:\Windows\system32\Drivers\SECDRV.sys - (.not file.) - Security Driver (secdrv) .(...) - LEGACY_SECDRV O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\SiSRaid2.sys - SiSRaid2(SiSRaid2) .(.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) - LEGACY_SISRAID2 O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\sisraid4.sys - SiSRaid4(SiSRaid4) .(.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) - LEGACY_SISRAID4 O64 - Services: CurCS - C:\Windows\system32\Drivers\SPLDR.sys - (.not file.) - Security Processor Loader Driver (spldr) .(...) - LEGACY_SPLDR O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\stexstor.sys - stexstor(stexstor) .(.Promise Technology - Promise SuperTrak EX Series Driver for Win.) - LEGACY_STEXSTOR O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\viaide.sys - viaide(viaide) .(.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) - LEGACY_VIAIDE O64 - Services: CurCS - 30/12/1899 - C:\Windows\System32\DRIVERS\vsmraid.sys - vsmraid(vsmraid) .(.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) - LEGACY_VSMRAID ---\\ Observateur d'évènement d'application (O66) O66 - EventLog: ID=1000 (Application Error) - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.EXE ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.com> [HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.com> [HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Opera.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] {0D7562AE-8EF6-416d-A838-AB665251703A} - (Facemoods Search) - http://start.facemoods.com O69 - SBI: SearchScopes [HKCU] {806C9BF5-7C40-4590-BDC3-EBFC9481C9AF} [DefaultScope] - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} - (Web Search) - http://search.autocompletepro.com ---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.34908E446D09432BD17830458D242BD2] [SPRF] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\ArouG\AppData\Local\Temp\jre-6u23-windows-i586-iftw-rv.exe [884512] [MD5.D0FEACECAECBDE99FA13E1836ED58950] [SPRF] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\ArouG\AppData\Local\Temp\jre-6u24-windows-i586-iftw-rv.exe [885536] [MD5.006E59FCDC96865469034572047343EA] [SPRF] (.Aedge Performance BCN SL - OfferBox Browser setup.) -- C:\Users\ArouG\AppData\Local\Temp\OB.exe [1586208] [MD5.F04A7BADEA1118A2D43D59C667954962] [SPRF] (.Symantec Corporation - SCC.) -- C:\Users\ArouG\AppData\Local\Temp\SCC.dll [140728] ---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.) O87 - FAEL: "FPS-SpoolSvc-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.) O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" |Out - Domain - P6 - TRUE | .(...) -- C:\Windows\system32\lsass.exe (.not file.) O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.) O87 - FAEL: "RemoteSvcAdmin-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\services.exe (.not file.) O87 - FAEL: "{436454D3-9DF9-45A3-AA8F-A0D57DB26D1F}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe O87 - FAEL: "{1012B240-4EFC-48FC-B68B-34D3C1D70F0F}" | In - None - P6 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe O87 - FAEL: "{B1A95725-1BDA-4747-9CED-9C4EB30EA118}" | In - None - P17 - TRUE | .(.CyberLink Corp. - PowerDirector.) -- C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe O87 - FAEL: "NetPres-In-TCP-NoScope" |In - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP-NoScope" |Out - Domain - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-In-UDP" |In - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-WSD-Out-UDP" |Out - None - P17 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-In-TCP" |In - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "NetPres-Out-TCP" |Out - Public - P6 - FALSE | .(...) -- C:\Windows\system32\netproj.exe (.not file.) O87 - FAEL: "{C1F02DF4-C7C8-4CA5-9E04-BA4A20ABE7C9}" | In - None - P6 - TRUE | .(.CyberLink Corp. - PowerDVD 8.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PowerDVD8.exe O87 - FAEL: "{3587D23E-8E0C-445E-BE80-B5599E70C818}" | In - None - P6 - TRUE | .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe O87 - FAEL: "{F0EB8D17-3FAA-443D-8A4D-72E4D78C7AD0}" | In - None - P17 - TRUE | .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe O87 - FAEL: "{6F302B0A-3499-46AB-9FFC-82214304BB92}" |In - Private - P6 - TRUE | .(...) -- C:\Windows\system32\spoolsv.exe (.not file.) O87 - FAEL: "{7B5564E0-C7F2-4A51-ADE9-BD559B797782}" | In - Private - P6 - TRUE | .(.SEIKO EPSON CORPORATION - EpsonNet Setup.) -- C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe O87 - FAEL: "{613CD55E-3098-4DAB-9EAE-8F36BF79E739}" | In - Private - P17 - TRUE | .(.SEIKO EPSON CORPORATION - EpsonNet Setup.) -- C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe O87 - FAEL: "TCP Query User{C3DC43B1-1CC1-47AC-8646-1F1C1B84B19A}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Public - P6 - TRUE | .(.SEIKO EPSON CORPORATION.) -- C:\program files (x86)\epson software\event manager\eevent O87 - FAEL: "UDP Query User{E43F7B1B-CC30-4418-8B9F-016801EE8CEC}C:\program files (x86)\epson software\event manager\eeventmanager.exe" | In - Public - P17 - TRUE | .(.SEIKO EPSON CORPORATION.) -- C:\program files (x86)\epson software\event manager\eeven O87 - FAEL: "{C1332A16-B572-4096-9907-15EB208645BD}" | In - Private - P17 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files (x86)\epson software\event manager\eeventmanager.exe O87 - FAEL: "{E5576C79-D73B-45B0-AE92-AE2EC3941EB8}" | In - Private - P6 - TRUE | .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\program files (x86)\epson software\event manager\eeventmanager.exe O87 - FAEL: "TCP Query User{455C8EDE-74FE-4D9C-9BFB-60225B1AF3CA}C:\program files (x86)\winpcap\rpcapd.exe" | In - Private - P6 - TRUE | .(.CACE Technologies, Inc. - Remote Packet Capture Daemon.) -- C:\program files (x86)\winpcap\rpcapd.exe O87 - FAEL: "UDP Query User{6BE6D960-8B54-402A-9700-0AC72D930E33}C:\program files (x86)\winpcap\rpcapd.exe" | In - Private - P17 - TRUE | .(.CACE Technologies, Inc. - Remote Packet Capture Daemon.) -- C:\program files (x86)\winpcap\rpcapd.exe O87 - FAEL: "TCP Query User{006BE9A7-C636-4D0C-B79F-1CEFFBE33C9D}C:\portablewebap3.5.1\program\bin\portablewebapsrv.exe" |In - Private - P6 - TRUE | .(...) -- C:\portablewebap3.5.1\program\bin\portablewebapsrv.exe (.not file.) O87 - FAEL: "UDP Query User{3CFECE2C-A699-4419-802D-4E63FB1561C1}C:\portablewebap3.5.1\program\bin\portablewebapsrv.exe" |In - Private - P17 - TRUE | .(...) -- C:\portablewebap3.5.1\program\bin\portablewebapsrv.exe (.not file.) O87 - FAEL: "TCP Query User{2F939456-E911-4856-B5DA-5F3EDB291A1B}C:\vamp\bin\apache\bin\httpd.exe" | In - Private - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\vamp\bin\apache\bin\httpd.exe O87 - FAEL: "UDP Query User{1AB8ED5E-7ABC-4C28-8DA8-2EAFD993847C}C:\vamp\bin\apache\bin\httpd.exe" | In - Private - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\vamp\bin\apache\bin\httpd.exe O87 - FAEL: "TCP Query User{B318915A-3E16-46CA-9757-09F9C8A2298E}C:\vamp\bin\database\mysql-5.5.9\bin\mysqld.exe" | In - Private - P6 - TRUE | .(...) -- C:\vamp\bin\database\mysql-5.5.9\bin\mysqld.exe O87 - FAEL: "UDP Query User{13CB4BF2-7A6B-4FCE-851A-9F136DCB0CD5}C:\vamp\bin\database\mysql-5.5.9\bin\mysqld.exe" | In - Private - P17 - TRUE | .(...) -- C:\vamp\bin\database\mysql-5.5.9\bin\mysqld.exe O87 - FAEL: "{E4C32E1D-0D0C-442C-89E3-A58A0A8CAF3E}" | In - Private - P6 - TRUE | .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe O87 - FAEL: "{E55888E1-1EC5-46FB-A070-4248E5A0C395}" | In - Private - P17 - TRUE | .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\opera.exe O87 - FAEL: "TCP Query User{C405E29A-430D-46F4-8879-33AAE6DC2B55}C:\program files (x86)\portablewebap3.5.1\program\bin\portablewebapsrv.exe" | In - Public - P6 - TRUE | .(.Apache Software Foundation.) -- C:\program files (x86)\portablewebap3.5.1\program\ O87 - FAEL: "UDP Query User{4B30A5A0-BCE2-4507-B672-23C19BC04018}C:\program files (x86)\portablewebap3.5.1\program\bin\portablewebapsrv.exe" | In - Public - P17 - TRUE | .(.Apache Software Foundation.) -- C:\program files (x86)\portablewebap3.5.1\program O87 - FAEL: "TCP Query User{02AF7CE7-B7F5-4298-918D-97485518EB8B}C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe" | In - Public - P6 - TRUE | .(.Apache Software Foundation.) -- C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe O87 - FAEL: "UDP Query User{182773AC-2E7D-47E6-96FA-FAC8E53075BE}C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe" | In - Public - P17 - TRUE | .(.Apache Software Foundation.) -- C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe O87 - FAEL: "TCP Query User{DA76DA65-5A4D-4858-9A4D-529E32120229}C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe" | In - Private - P6 - TRUE | .(.Apache Software Foundation.) -- C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe O87 - FAEL: "UDP Query User{ECBE54EA-1357-43A0-93A6-EFA20F224537}C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe" | In - Private - P17 - TRUE | .(.Apache Software Foundation.) -- C:\data\portablewebap3.5.1\program\bin\portablewebapsrv.exe O87 - FAEL: "TCP Query User{B15217E6-5980-461F-B6C2-8B9C255F6F35}C:\program files (x86)\tmnationsforever\tmforever.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files (x86)\tmnationsforever\tmforever.exe O87 - FAEL: "UDP Query User{F026ECB9-C0DE-4B49-BBFA-8D18CD427CF9}C:\program files (x86)\tmnationsforever\tmforever.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files (x86)\tmnationsforever\tmforever.exe O87 - FAEL: "{11C130D2-0B73-4F62-9F07-CB3FF00EB12D}" | In - Private - P6 - TRUE | .(.Friedrich Datentechnik GmbH - Eric's TelNet98 - Standard Edition.) -- C:\Program Files (x86)\Eric's TelNet98\Telnet98.exe O87 - FAEL: "{46E7E55E-E922-48C9-B9B1-0CA31DF12CC2}" | In - Private - P17 - TRUE | .(.Friedrich Datentechnik GmbH - Eric's TelNet98 - Standard Edition.) -- C:\Program Files (x86)\Eric's TelNet98\Telnet98.exe O87 - FAEL: "TCP Query User{0DE3FC72-3E59-4CEE-ADB3-5ACB7D343791}G:\wampee\wampee-2.1-beta-2\bin\mysql\mysql5.5.8\bin\wampeemysqld.exe" |In - Private - P6 - TRUE | .(...) -- G:\wampee\wampee-2.1-beta-2\bin\mysql\mysql5.5.8\bin\wampeemysqld.exe (.not file O87 - FAEL: "UDP Query User{20C8BD9B-A922-4A5C-B21D-10F467F9AECB}G:\wampee\wampee-2.1-beta-2\bin\mysql\mysql5.5.8\bin\wampeemysqld.exe" |In - Private - P17 - TRUE | .(...) -- G:\wampee\wampee-2.1-beta-2\bin\mysql\mysql5.5.8\bin\wampeemysqld.exe (.not fil O87 - FAEL: "TCP Query User{FCD63508-F91F-4A6A-B0B2-758B1BBA8821}G:\wampee\wampee-2.1-beta-2\bin\apache\apache2.2.17\bin\wampeehttpd.exe" |In - Private - P6 - TRUE | .(...) -- G:\wampee\wampee-2.1-beta-2\bin\apache\apache2.2.17\bin\wampeehttpd.exe (.not O87 - FAEL: "UDP Query User{0E184B63-5238-4B05-BAC8-A4039B42B297}G:\wampee\wampee-2.1-beta-2\bin\apache\apache2.2.17\bin\wampeehttpd.exe" |In - Private - P17 - TRUE | .(...) -- G:\wampee\wampee-2.1-beta-2\bin\apache\apache2.2.17\bin\wampeehttpd.exe (.not O87 - FAEL: "TCP Query User{7AFFE361-8143-4E4B-BFA7-9B299480ACD1}C:\uwamp\bin\apache\bin\httpd.exe" | In - Private - P6 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\uwamp\bin\apache\bin\httpd.exe O87 - FAEL: "UDP Query User{48C13732-B540-4B0A-912B-85226520DD9B}C:\uwamp\bin\apache\bin\httpd.exe" | In - Private - P17 - TRUE | .(.Apache Software Foundation - Apache HTTP Server.) -- C:\uwamp\bin\apache\bin\httpd.exe O87 - FAEL: "TCP Query User{0B76EA89-22CF-4F07-9504-6F307F984F42}C:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe" | In - Private - P6 - TRUE | .(...) -- C:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe O87 - FAEL: "UDP Query User{68B33F26-4B8D-4F0D-9217-E6D26A721608}C:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe" | In - Private - P17 - TRUE | .(...) -- C:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe O87 - FAEL: "TCP Query User{EDD7B061-4125-4E48-956A-50C1BD84C6B2}H:\uwamp\bin\apache\bin\httpd.exe" |In - Private - P6 - TRUE | .(...) -- H:\uwamp\bin\apache\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{42DD0602-D295-44D9-823A-01846E030465}H:\uwamp\bin\apache\bin\httpd.exe" |In - Private - P17 - TRUE | .(...) -- H:\uwamp\bin\apache\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{7F0DD621-F0E1-498C-8F3F-B275A42A5B39}H:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe" |In - Private - P6 - TRUE | .(...) -- H:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe (.not file.) O87 - FAEL: "UDP Query User{049D7252-358C-4E4D-B0F7-370C1B065217}H:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe" |In - Private - P17 - TRUE | .(...) -- H:\uwamp\bin\database\mysql-5.5.9\bin\mysqld.exe (.not file.) O87 - FAEL: "TCP Query User{736784E6-E371-4C73-8EDF-159E296108E6}H:\uwamp\utils\xdebugclient\xdc.exe" |In - Private - P6 - TRUE | .(...) -- H:\uwamp\utils\xdebugclient\xdc.exe (.not file.) O87 - FAEL: "UDP Query User{85337CFF-4411-49C4-9116-CF3A19B4B426}H:\uwamp\utils\xdebugclient\xdc.exe" |In - Private - P17 - TRUE | .(...) -- H:\uwamp\utils\xdebugclient\xdc.exe (.not file.) ---\\ Scan Additionnel (O88) Database Version : 8314 - (27/05/2011) Clés trouvées (Keys found) : 68 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 3 Fichiers trouvés (Files found) : 0 [HKCR\esrv.escrtSrvc] =>Toolbar.Facemood [HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\ForceRenive] =>PUP.OfferBox [HKLM\Software\Classes\AppID\autocompletepro.dll] =>Adware.PredictAd [HKLM\Software\Wow6432Node\Classes\AppID\autocompletepro.dll] =>Adware.PredictAd [HKLM\Software\Classes\AppID\SoftwareUpdate.exe] =>PUP.Eorezo [HKLM\Software\Wow6432Node\Classes\AppID\SoftwareUpdate.exe] =>PUP.Eorezo [HKLM\Software\Classes\suggestmeyes.suggestmeyesbho] =>Adware.PredictAd [HKLM\Software\Wow6432Node\Classes\suggestmeyes.suggestmeyesbho] =>Adware.PredictAd [HKLM\Software\Classes\suggestmeyes.suggestmeyesbho.1] =>Adware.PredictAd [HKLM\Software\Wow6432Node\Classes\suggestmeyes.suggestmeyesbho.1] =>Adware.PredictAd [HKCR\TypeLib\{01bcb858-2f62-4f06-a8f4-48f927c15333}] =>Adware.PredictAd [HKLM\Software\Classes\Wow6432Node\TypeLib\{01bcb858-2f62-4f06-a8f4-48f927c15333}] =>Adware.PredictAd [HKLM\Software\Classes\TypeLib\{01bcb858-2f62-4f06-a8f4-48f927c15333}] =>Adware.PredictAd [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}] =>Adware.PredictAd [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}] =>Adware.PredictAd [HKCR\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}] =>Adware.PredictAd [HKLM\Software\Classes\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0}] =>Adware.PredictAd [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}] =>Adware.PredictAd [HKCR\AppID\{442f13bc-2031-42d5-9520-437f65271153}] =>Adware.PredictAd [HKLM\Software\Classes\AppID\{442f13bc-2031-42d5-9520-437f65271153}] =>Adware.PredictAd [HKLM\Software\Wow6432Node\Classes\AppID\{442f13bc-2031-42d5-9520-437f65271153}] =>Adware.PredictAd [HKCR\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}] =>Toolbar.Facemood [HKCR\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}] =>Toolbar.Facemood [HKCR\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}] =>Toolbar.Facemood [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486b-A045-B233BD0DA8FC}] =>Toolbar.Facemood [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{64182481-4F71-486b-A045-B233BD0DA8FC}] =>Toolbar.Facemood [HKCR\CLSID\{64182481-4F71-486b-A045-B233BD0DA8FC}] =>Toolbar.Facemood [HKLM\Software\Classes\CLSID\{64182481-4F71-486b-A045-B233BD0DA8FC}] =>Toolbar.Facemood [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64182481-4F71-486b-A045-B233BD0DA8FC}] =>Toolbar.Facemood [HKCR\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}] =>Toolbar.Facemood [HKCR\Interface\{74C012C4-00FB-4F04-9AFB-4AD5449D2018}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{74C012C4-00FB-4F04-9AFB-4AD5449D2018}] =>Toolbar.Facemood [HKCR\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}] =>Toolbar.Facemood [HKCR\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}] =>Toolbar.Facemood [HKCR\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}] =>Toolbar.Facemood [HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}] =>Toolbar.Conduit [HKCR\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}] =>Toolbar.Facemood [HKCR\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}] =>Toolbar.Babylon [HKLM\Software\Classes\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}] =>Toolbar.Babylon [HKCR\Interface\{c9ae652b-8c99-4ac2-b556-8b501182874e}] =>Adware.PredictAd [HKLM\Software\Classes\Interface\{c9ae652b-8c99-4ac2-b556-8b501182874e}] =>Adware.PredictAd [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}] =>Toolbar.Facemood [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}] =>Toolbar.Facemood [HKCR\CLSID\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}] =>Toolbar.Facemood [HKLM\Software\Classes\CLSID\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}] =>Toolbar.Facemood [HKCR\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}] =>Toolbar.Facemood [HKCR\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}] =>Toolbar.Facemood [HKLM\Software\Classes\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}] =>Toolbar.Facemood [HKLM\Software\Google\Chrome\Extensions\defdhglnppeioeflggkmglipcecffkhk] =>Adware.PredictAd [HKCU\Software\AutocompletePro] =>Adware.PredictAd [HKLM\Software\eRightSoft\OpenCandy] =>Adware.OpenCandy [HKLM\Software\Wow6432Node\eRightSoft\OpenCandy] =>Adware.OpenCandy [HKCU\Software\facemoods.com] =>Toolbar.Facemoods [HKLM\Software\facemoods.com] =>Toolbar.Facemoods [HKLM\Software\Wow6432Node\facemoods.com] =>Toolbar.Facemoods [HKCU\Software\OfferBox] =>PUP.OfferBox [HKLM\Software\OfferBox] =>PUP.OfferBox [HKLM\Software\Wow6432Node\OfferBox] =>PUP.OfferBox [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\autocompletepro3_is1] =>Adware.PredictAd C:\Users\ArouG\AppData\Roaming\OfferBox =>PUP.OfferBox C:\Program Files (x86)\AutocompletePro =>Adware.PredictAd C:\Program Files (x86)\OfferBox =>PUP.OfferBox ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 14/05/2009 759048 | ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe SR - | Auto 02/03/2009 89600 | (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe SR - | Auto 02/03/2009 0 | (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe SR - | Auto 10/05/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Demand 25/02/2010 227896 | (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe SR - | Auto 19/12/2006 94208 | (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe SR - | Auto 29/09/2010 503168 | (EpsonCustomerResearchParticipation) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe SS - | Demand 06/06/2009 250616 | (GameConsoleService) . (.WildTangent, Inc..) - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe SS - | Auto 31/12/2010 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 31/12/2010 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - | Auto 15/11/2010 126520 | (HP Health Check Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe SR - | Auto 14/10/2010 92216 | (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe SR - | Demand 14/10/2010 751672 | (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe SR - | Auto 20/08/2009 73728 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe SR - | Auto 12/08/2010 24064 | (OpenVPNAccessClient) . (...) - C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\capiws.exe SR - | Auto 06/07/2009 247152 | (RichVideo) . (...) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe SS - | Demand 06/07/2009 0 | Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (...) - %ProgramFiles(x86)%\WinPcap\rpcapd.exe SR - | Auto 22/07/2009 240128 | (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe ---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by ArouG at 30/05/2011 10:38:20 device: opened successfully user: error reading MBR Disk trace: error: Read Descripteur non valide kernel: error reading MBR End of the scan (1618 lines in 07mn 35s)(0)