> Tous les forums > Forum Sécurité
 Conduit Engine, asktoolbar, babylon toolbarSujet résolu
Ajouter un message à la discussion
Pages : [1] 2 3 ... Fin
Page 1 sur 3 [Fin]
Petit Louis
  Posté le 22/07/2011 @ 12:35 
Aller en bas de la page 
Astucien

Bonjour

J'ai un doute la flèche de ma souris des fois ce bloque ou est un peu folle et mon ordi est un peu lent est ce une infection ?????

Bonne journée Petit Louis



Modifié par Petit Louis le 30/07/2011 12:42
Publicité
Anonyme
 Posté le 22/07/2011 à 12:42 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Nouvel astucien

Bonjour

difficile à dire sans les rapports habituels (Malwarebytes,ZHPDiag).

Note : rapports à poster à l'attention du Groupe Sécurité.

@+



Modifié par Anonyme le 22/07/2011 12:43
Petit Louis
 Posté le 22/07/2011 à 13:28 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Voici le rapport MBA

Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org

Version de la base de données: 7209

Windows 6.0.6002 Service Pack 2
Internet Explorer 9.0.8112.16421

22/07/2011 13:23:25
mbam-log-2011-07-22 (13-23-25).txt

Type d'examen: Examen rapide
Elément(s) analysé(s): 159806
Temps écoulé: 3 minute(s), 23 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Anonyme
 Posté le 22/07/2011 à 13:45 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Nouvel astucien

Re....

ZHPDiag ?!

@+

Petit Louis
 Posté le 22/07/2011 à 13:46 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Rapport de ZHPDiag v1.27.2423 par Nicolas Coolman, Update du 21/07/2011
Run by Louis at 22/07/2011 13:38:01
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox v (Defaut)
GCIE: Google Chrome v14.0.814.0

---\\ System Information
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
~ Processor: x86 Family 15 Model 107 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
~ Boot mode: ~ Normal (Normal boot)
Total RAM: 1790 MB (51% free)
~ System Restore: Activé (Enable)
System drive C: has 84 GB (74%) free of 112 GB

---\\ Logged in mode
~ Computer Name: PC-DE-LOUIS
~ User Name: Louis
~ All Users Names: Louis, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O82
~ Logged in as Administrator

---\\ Environnement Variables
~ %AppData%=C:\Users\Louis\AppData\Roaming\
~ %Desktop%=C:\Users\Louis\Desktop\
~ %Favorites%=C:\Users\Louis\Favorites\
~ %LocalAppData%=C:\Users\Louis\AppData\Local\
~ %StartMenu%=C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 84 Go of 112 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 87 Go of 111 Go)
E:\ CD-ROM drive (Not Inserted)
F:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
G:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
H:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK



---\\ Recherche particulière de fichiers génériques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.16/09/2009 - 22:27:38.) -- C:\Windows\Explorer.exe [2926592]
[MD5.4B555106290BD117334E9A08761C035A] - (....) (.02/11/2006 - 10:45:37.) -- C:\Windows\system32\rundll32.exe [44544]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.13/09/2009 - 08:33:37.) -- C:\Windows\system32\Wininit.exe [96768]
[MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.31/03/2011 - 07:27:03.) -- C:\Windows\system32\wininet.dll [1126912]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.16/09/2009 - 22:28:14.) -- C:\Windows\system32\Winlogon.exe [314368]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.16/09/2009 - 22:32:28.) -- C:\Windows\system32\drivers\atapi.sys [19944]
[MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.16/09/2009 - 22:32:50.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 2/196
~ Mes Documents (My Documents) : 5/3795
~ Mon Bureau (My Desktop) : 2/72
~ Menu demarrer (Programs) : 6/34



---\\ Processus lancés
[MD5.E7CF222185411C6A3E68273C452B3283] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3493720]
[MD5.8B718E2C3AE1EA0B90BFA793F7B558A7] - (.Ask - Ask Updater.) -- C:\Program Files\Ask.com\Updater\Updater.exe [395144]
[MD5.C89B2956A12493FA137E670678D4E89D] - (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe [294912]
[MD5.DF105989C770C6AB43970A2CC0B9561A] - (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe [233472]
[MD5.5F8C39A444DA36FCCE9801AC0D84811E] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366024]
[MD5.8E37F9BAA54D26146654AE8F6181B4D9] - (.WASEO - ClickTray Calendar.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe [3495936]
[MD5.A6216DBB689EA1A63A47F30D89FEA670] - (.DreamStudio - Email Client.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe [1817088]
[MD5.87AA7CB031C57FE5ACB5F87C0BCCFD9B] - (.Efficient Software - Pas de description.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe [10275328]
[MD5.80D352BE20A74B3A44F2B4A4E79DDADD] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [263624]
[MD5.328E2F052BB2F4286360EFF7C7FC1C5B] - (.Axantum Software AB - AxCrypt File Encryption.) -- C:\Program Files\Axantum\AxCrypt\AxCrypt.exe [1126080]
[MD5.055713CD9E0C6AAC46AFBB3A5B95EF75] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344]
[MD5.55B35599E4B8C20904CF6BE6F50A1F8D] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16856]
[MD5.887BAA34C1B3AB4FBC54BF6545B59B49] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [658432]



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Louis\AppData\Roaming\Mozilla\Firefox\Profiles\rb4kum3u.default\prefs.js
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_22 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.69] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.69] - (.RealNetworks, Inc. - 6.0.12.69.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll
M0 - MFSP: prefs.js [Louis - rb4kum3u.default] http://fr.yahoo.com
M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{03B08592-E5B4-45ff-A0BE-C1D975458688}] [] Toolbar Buttons v1.0 (.Michael Buckley.)
M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}] [] Flagfox v4.1.5 (.Dave Garrett.)
M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20110704 (.WOT Services Oy.)



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://fr.yahoo.com
G2 - GCE: Preference [User Data\Default] [bdfkbdkkfmmckaadapdipihjfaacnkgd] Splendid v.3 (Activé)
G2 - GCE: Preference [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.1.2.2 (Activé)
G2 - GCE: Preference [User Data\Default] [ckibcdccnfeookdmbahgiakhnjcddpki] Capture de Page Web - Webpage Screenshot v.5.3.1 (Activé)
G2 - GCE: Preference [User Data\Default] [hhfceebbbinfckajnkhjiiefbpfljpid] ABonEntendeur v.0.0.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [jhejngphiacapbgllhagbpdkkdieeaej] Chrome Flags v.1.4 (Activé)
G2 - GCE: Preference [User Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Shockwave Flash v.10,3,181,35 (Activé)



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com
R0 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = yahoo! search
R1 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com
R1 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\system32\ieframe.dll
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} . (...) (No version) -- (.not file.)



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline
O2 - BHO: (no name) - {1d970ed5-3eda-438d-bffd-715931e2775b} Clé orpheline
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.HiTRUST - ActiveToolBand Module.) -- C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.HiTRUST - eDStoolbar Module.) -- C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O3 - Toolbar: Foxit PDF Creator Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe
O4 - HKLM\..\Run: [ApnUpdater] . (.Ask - Ask Updater.) -- C:\Program Files\Ask.com\Updater\Updater.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe
O4 - HKCU\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe
O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe
O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ClickTray Calendar.lnk . (.WASEO.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DreamMail.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EfficientPIM Free.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\Louis\Desktop\AMCap.lnk . (.Microsoft Corporation.) -- C:\Windows\amcap.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Conjugaison.lnk . (.ECHELARD.) -- D:\Documents\Logiciels installés\Conjugaison\Conjug.exe
O4 - Global Startup: C:\Users\Louis\Desktop\CUISINON.lnk . (...) -- D:\Documents\Logiciels installés\cuis110_full\CUISINON.EXE
O4 - Global Startup: C:\Users\Louis\Desktop\Dames.lnk . (...) -- D:\Documents\Dames.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Dictionnaire.lnk . (...) -- D:\Documents\Logiciels installés\Dictionnaire\dict.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Documents (2).lnk . (...) -- D:\Documents
O4 - Global Startup: C:\Users\Louis\Desktop\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Images.lnk . (...) -- D:\Pictures
O4 - Global Startup: C:\Users\Louis\Desktop\JkDefrag.lnk . (.J.C. Kessels.) -- D:\Documents\Logiciels installés\JkDefrag-3.33\JkDefrag.exe
O4 - Global Startup: C:\Users\Louis\Desktop\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc
O4 - Global Startup: C:\Users\Louis\Desktop\pinball.lnk . (.Cinematronics.) -- D:\Documents\Pinball\pinball.exe
O4 - Global Startup: C:\Users\Louis\Desktop\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk . (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Codes-doc - Raccourci.lnk . (...) -- D:\Documents\DOSSIERS\DOC PERSO\Codes-doc.axx
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Documents (2).lnk . (...) -- D:\Documents
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GénéaTique 2006.lnk . (.CDIP.) -- C:\Program Files\Geneatique2006\Genea2006.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Généatique 2009.lnk . (.CDIP.) -- C:\Program Files\Geneatique2009\Genea2009.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\IncrediMail 2.0.lnk . (.IncrediMail, Ltd..) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Jasc Paint Shop Pro 8 (2).lnk . (...) -- C:\Windows\Installer\{81A34902-9D0B-4920-A25C-4CDC5D14B328}\PaintShopPro8_TryAndBuy.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Picture It! Express 7.0.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Picture It! 7\Pip.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ordinateur - Raccourci.lnk - Clé orpheline
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Paint.NET.lnk . (.dotPDN LLC.) -- C:\Program Files\Paint.NET\PaintDotNet.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- D:\Documents\Logiciels installés\PhotoFiltre\PhotoFiltre.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\RegSupreme.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme\RegSupreme.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller.lnk . (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sidebar.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Snipping Tool.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\SnippingTool.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TomTom HOME 2.lnk . (.TomTom International B.V..) -- C:\Program Files\TomTom HOME 2\TomTomHOME.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Tomtomax Maxi-Box.lnk . (.Koak Design Development.) -- C:\Program Files\Tomtomax Maxi-Box\Tomtomax-MaxiBox.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Wallpaper.lnk . (...) -- C:\Program Files\Wallpaper\Wallpaper.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: ajouter cette page à vos favoris Orange - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\addfavorites_html\addfavorites.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~2\Office10\EXCEL.exe
O8 - Extra context menu item: envoyer le texte sélectionné par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html
O8 - Extra context menu item: envoyer par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html
O8 - Extra context menu item: envoyer un mail - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html
O8 - Extra context menu item: orange.fr - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html
O8 - Extra context menu item: rechercher le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html
O8 - Extra context menu item: traduire la page - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html
O8 - Extra context menu item: traduire le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CS2\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink - CLMSServer.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Pas de propriétaire - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project - Firebird SQL Server.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - Pas de description.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Orange update Core Service (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O23 - Service: Planificateur LiveUpdate automatique (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (.not file.)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Maintenance en 1 clic.job
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.7D4722E3A77B1D5B64F2D6ED0BD72A80] [APT] [Maintenance en 1 clic] (.TuneUp Software GmbH.) -- C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe
[MD5.4B5F5E8F51BE2541CD3E066CE175042A] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe
[MD5.00000000000000000000000000000000] [APT] [{04FC8B77-8E4C-46C5-A741-A6BA2FB45D10}] (...) -- J:\PSP.8\Jasc_Paint_Shop_Pro_8.03_Supergege\Crack.exe (.not file.)
[MD5.7C66F9B332F28433EF23FC6403BFDB87] [APT] [{3C9E5E46-3A9F-4C9B-86E6-053B5822167C}] (...) -- C:\Program Files\Geneatique2009\unins000.exe
[MD5.C77EB5E990478856A275991166D4E0EA] [APT] [{BE0F31A8-4B1C-4E8E-BF70-41793ED61734}] (.SEIKO EPSON CORP..) -- C:\Program Files\epson\escndv\setup\setup.exe



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: (SASDIFSV) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.)
O41 - Driver: (SASKUTIL) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.)
O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys



---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 4.65 - (.Pas de propriétaire.) [HKLM] -- 7-Zip
O42 - Logiciel: ATI Uninstaller - (.ATI Technologies, Inc..) [HKLM] -- ATI Uninstaller
O42 - Logiciel: Acer Arcade Live Main Page - (.Acer Inc..) [HKLM] -- {EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}
O42 - Logiciel: Acer DV Magician - (.Acer Inc..) [HKLM] -- {F6EFFB76-4A07-11DA-9D78-000129760D75}
O42 - Logiciel: Acer DVDivine - (.Acer Inc..) [HKLM] -- {B145EC69-66F5-11D8-9D75-000129760D75}
O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2}
O42 - Logiciel: Acer HomeMedia - (.Acer Inc..) [HKLM] -- {AA4BF92B-2AAF-11DA-9D78-000129760D75}
O42 - Logiciel: Acer HomeMedia Connect - (.Acer Inc..) [HKLM] -- {132888AE-EF67-41C5-BCA2-7D5D2488AB63}
O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}
O42 - Logiciel: Acer SlideShow DVD - (.Acer Inc..) [HKLM] -- {41581EF5-45A7-11DA-9D78-000129760D75}
O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35}
O42 - Logiciel: Acer VideoMagician - (.Acer Inc..) [HKLM] -- {F79A208D-D929-11D9-9D77-000129760D75}
O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36}
O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643}
O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Ancestrologie 2009 - (.PCM.) [HKLM] -- Ancestrologie_is1
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE}
O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
O42 - Logiciel: AxCrypt 1.7.2126.0 - (.Axantum Software AB.) [HKLM] -- {E4C1DBF1-67D9-4973-9DEC-677E695E7CE0}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Clean Virus MSN - (.AxBx.) [HKLM] -- Clean Virus MSN_is1
O42 - Logiciel: ClickTray Calendar - (.Pas de propriétaire.) [HKLM] -- ClickTray Calendar_is1
O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}
O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}
O42 - Logiciel: EPSON Copy Utility 3 - (.Pas de propriétaire.) [HKLM] -- {67EDD823-135A-4D59-87BD-950616D6E857}
O42 - Logiciel: EPSON Easy Photo Print - (.Pas de propriétaire.) [HKLM] -- {BC69DDB8-4840-4D9B-BB31-0D4DB2BA1312}
O42 - Logiciel: EPSON File Manager - (.Pas de propriétaire.) [HKLM] -- {E86BC406-944E-41F6-ADE6-2C136734C96B}
O42 - Logiciel: EPSON Logiciel imprimante - (.Pas de propriétaire.) [HKLM] -- EPSON Printer and Utilities
O42 - Logiciel: EPSON Scan - (.Pas de propriétaire.) [HKLM] -- EPSON Scanner
O42 - Logiciel: EPSON Scan Assistant - (.Pas de propriétaire.) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}
O42 - Logiciel: EPSON Web-To-Page - (.Pas de propriétaire.) [HKLM] -- {7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}
O42 - Logiciel: ESDX4000_4050_CX3900 - (.Pas de propriétaire.) [HKLM] -- ESDX4000_4050_CX3900
O42 - Logiciel: EVEREST Home Edition v2.20 - (.Lavalys Inc.) [HKLM] -- EVEREST Home Edition_is1
O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC}
O42 - Logiciel: FileZilla Client 3.3.5.1 - (.Pas de propriétaire.) [HKLM] -- FileZilla Client
O42 - Logiciel: Firebird 2.1.3.18185 (Win32) - (.Firebird Project.) [HKLM] -- FBDBServer_2_1_is1
O42 - Logiciel: France Bleu 1.1.1 - (.Radio France.) [HKLM] -- France Bleu_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: Généatique 2006 - (.CDIP.) [HKLM] -- {86D9FA99-F4BF-4D8F-B2CB-8E550C32BCBE}_is1
O42 - Logiciel: Généatique 2009 - (.CDIP.) [HKLM] -- {CEE31344-B227-4EE3-9D0C-74B7A52AC82E}_is1
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: IcoFX 1.6.4 - (.Pas de propriétaire.) [HKLM] -- IcoFX_is1
O42 - Logiciel: IncrediMail - (.IncrediMail.) [HKLM] -- {5E97F3BD-CDDC-4188-9D98-532E14FABB5D}
O42 - Logiciel: IncrediMail 2.0 - (.IncrediMail Ltd..) [HKLM] -- IncrediMail
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}
O42 - Logiciel: Jasc Paint Shop Pro 8 - (.Nom de votre société.) [HKLM] -- {81A34902-9D0B-4920-A25C-4CDC5D14B328}
O42 - Logiciel: Java(TM) 6 Update 22 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216016FF}
O42 - Logiciel: MSI to redistribute MS VS2005 CRT libraries - (.The Firebird Project.) [HKLM] -- {A8D93648-9F7F-407D-915C-62044644C3DA}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.1.1800 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Meteo Fusion 1.5.9.11 - (.Eggiz.) [HKLM] -- Meteo Fusion _is1
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
O42 - Logiciel: Microsoft Office XP Professional - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Office XP Professional avec FrontPage - (.Microsoft Corporation.) [HKLM] -- {9028040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Picture It! Express 7.0 - (.Microsoft Corporation.) [HKLM] -- {369B36BE-3D64-4641-9AEA-808D436FE130}
O42 - Logiciel: Microsoft Publisher 2002 - (.Microsoft Corporation.) [HKLM] -- {9119040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 - (.Microsoft Corporation.) [HKLM] -- {E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: Mozilla Firefox (3.6.18) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.18)
O42 - Logiciel: NTI Backup NOW! 4.7 - (.NewTech Infosystems.) [HKLM] -- {67ADE9AF-5CD9-4089-8825-55DE4B366799}
O42 - Logiciel: NTI CD & DVD-Maker - (.NewTech Infosystems.) [HKLM] -- InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}
O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: PDF-XChange 3 - (.Tracker Software.) [HKLM] -- PDF-XChange 3_is1
O42 - Logiciel: PIF DESIGNER - (.Pas de propriétaire.) [HKLM] -- {B90450DF-E781-46FD-B1F1-0C86DA40E443}
O42 - Logiciel: Paint.NET v3.5.8 - (.dotPDN LLC.) [HKLM] -- {9CF4A37B-A8C4-44D7-8C53-13B9D9594BB2}
O42 - Logiciel: Photo Notifier and Animation Creator - (.IncrediMail Ltd..) [HKLM] -- Photo Notifier and Animation Creator
O42 - Logiciel: Photo Notifier and Animation Creator - (.Nom de votre société.) [HKLM] -- {6B7F28D4-160E-40C6-B7C8-5EC6B9734DA7}
O42 - Logiciel: PhotoMail Maker - (.IncrediMail Ltd..) [HKLM] -- PhotoMail
O42 - Logiciel: PhotoMail Maker - (.Nom de votre société.) [HKLM] -- {75AE8014-1184-4BC0-B279-C879540719EE}
O42 - Logiciel: PowerpointImageExtractor - (.Pas de propriétaire.) [HKLM] -- PowerpointImageExtractor_is1
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: RegSupreme - (.Macecraft Software.) [HKLM] -- RegSupreme_is1
O42 - Logiciel: Revo Uninstaller 1.92 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2478663
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870
O42 - Logiciel: TomTom HOME 2.8.0.2146 - (.TomTom.) [HKLM] -- TomTom HOME
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: Tomtomax Maxi-Box V2.0.24 - (.Tomtomax et KoakDesign.) [HKLM] -- {A10F672B-01C4-498F-ADBD-3E5B144284B7}_is1
O42 - Logiciel: TuneUp Utilities 2007 - (.TuneUp Software.) [HKLM] -- {C8BB4912-12D9-42AE-B571-E580D8CD1B5B}
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: Vista Codec Package - (..) [HKLM] -- {F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}
O42 - Logiciel: Wallpaper - (.Silver76.) [HKLM] -- Wallpaper
O42 - Logiciel: Webcam Essentiel B Glob'mobile - (.Sonix.) [HKLM] -- {ECD03DA7-5952-406A-8156-5F0C93618D1F}
O42 - Logiciel: WinAncetre - (.Pas de propriétaire.) [HKLM] -- WinAncetre 5.2
O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}
O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D}

---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\ABBYY]
[HKCU\Software\ALWIL Software]
[HKCU\Software\APN]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\AVAST Software]
[HKCU\Software\Acer]
[HKCU\Software\Adobe]
[HKCU\Software\AncestrArbres]
[HKCU\Software\AppDataLow\Software\AskToolbar]
[HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\Orange]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Ask.com]
[HKCU\Software\Axantum]
[HKCU\Software\Axon Data]
[HKCU\Software\Babylon]
[HKCU\Software\CDIP]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CoreVorbis]
[HKCU\Software\CyberLink]
[HKCU\Software\EPSON]
[HKCU\Software\Foxit Software]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\IM]
[HKCU\Software\IZSoftware]
[HKCU\Software\ImInstaller]
[HKCU\Software\IncrediMail]
[HKCU\Software\JEDI-VCL]
[HKCU\Software\Jasc]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lavalys]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\NewTech Infosystems]
[HKCU\Software\ODBC]
[HKCU\Software\Orange]
[HKCU\Software\Paint.NET]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Radio France]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\SEAF]
[HKCU\Software\SUPERAntiSpyware.com]
[HKCU\Software\Softonic]
[HKCU\Software\TomTom]
[HKCU\Software\Tracker Software]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Xtralog]
[HKCU\Software\YB]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\kde.org]
[HKCU\Software\madFlac]
[HKLM\Software\ABBYY]
[HKLM\Software\ALWIL Software]
[HKLM\Software\APN]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\AVAST Software]
[HKLM\Software\Acer]
[HKLM\Software\Adobe]
[HKLM\Software\AskToolbar]
[HKLM\Software\Axantum]
[HKLM\Software\Axon Data]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Conduit]
[HKLM\Software\CyberLink]
[HKLM\Software\EPSON]
[HKLM\Software\EliaShim]
[HKLM\Software\FileZilla 3]
[HKLM\Software\Firebird Project]
[HKLM\Software\Foxit Software]
[HKLM\Software\GNU]
[HKLM\Software\Google]
[HKLM\Software\HaaliMkx]
[HKLM\Software\IZSoftware]
[HKLM\Software\ImInstaller]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\JGsoft]
[HKLM\Software\Jasc]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\LightScribe]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Martin Soft]
[HKLM\Software\MimarSinan]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NewTech Infosystems]
[HKLM\Software\ODBC]
[HKLM\Software\Orange]
[HKLM\Software\Paint.NET]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SONIX]
[HKLM\Software\SUPERAntiSpyware.com]
[HKLM\Software\Senfer]
[HKLM\Software\Services]
[HKLM\Software\Sonic]
[HKLM\Software\SymNRT]
[HKLM\Software\TomTom]
[HKLM\Software\Tracker Software]
[HKLM\Software\TuneUp]
[HKLM\Software\Windows]
[HKLM\Software\Yahoo]
[HKLM\Software\illiminable]
[HKLM\Software\mozilla.org]
[HKLM\Software\muvee Technologies]
[HKLM\Software\webtogo]

Petit Louis
 Posté le 22/07/2011 à 13:48 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 14/08/2010 - 10:56:42 - [3094515] ----D- C:\Program Files\7-Zip
O43 - CFD: 06/05/2007 - 21:33:42 - [513711356] ----D- C:\Program Files\Acer Arcade Live
O43 - CFD: 11/09/2009 - 10:47:38 - [364544] ----D- C:\Program Files\Acer Inc
O43 - CFD: 06/05/2007 - 21:22:48 - [12683094] ----D- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD: 12/08/2010 - 17:49:32 - [154058727] ----D- C:\Program Files\Alwil Software
O43 - CFD: 22/07/2011 - 11:28:56 - [74612847] ----D- C:\Program Files\Ancestrologie
O43 - CFD: 19/07/2011 - 09:09:40 - [2441801] ----D- C:\Program Files\Ask.com
O43 - CFD: 11/09/2009 - 10:39:48 - [14403668] ----D- C:\Program Files\ATI
O43 - CFD: 11/09/2009 - 10:41:24 - [200817172] ----D- C:\Program Files\ATI Technologies
O43 - CFD: 03/03/2011 - 14:49:20 - [2392759] ----D- C:\Program Files\Axantum
O43 - CFD: 12/10/2010 - 08:16:52 - [18788353] ----D- C:\Program Files\AxBx
O43 - CFD: 15/07/2011 - 10:53:16 - [3901432] ----D- C:\Program Files\CCleaner
O43 - CFD: 09/01/2011 - 12:59:04 - [10107640] ----D- C:\Program Files\ClickTray Calendar
O43 - CFD: 19/10/2010 - 15:43:00 - [567174930] ----D- C:\Program Files\Common Files
O43 - CFD: 06/05/2007 - 21:30:44 - [4655152] ----D- C:\Program Files\CyberLink
O43 - CFD: 12/08/2010 - 19:51:30 - [2056672] ----D- C:\Program Files\Eggiz
O43 - CFD: 21/09/2009 - 13:14:14 - [143615728] ----D- C:\Program Files\epson
O43 - CFD: 23/02/2011 - 10:06:38 - [2394144] ----D- C:\Program Files\Feedback Tool
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 08/01/2011 - 12:27:40 - [16451399] ----D- C:\Program Files\FileZilla FTP Client
O43 - CFD: 12/09/2009 - 19:04:08 - [18509688] ----D- C:\Program Files\Firebird
O43 - CFD: 19/07/2011 - 09:49:12 - [0] ----D- C:\Program Files\Foxit Software
O43 - CFD: 19/03/2011 - 10:11:30 - [4915511] ----D- C:\Program Files\France Bleu
O43 - CFD: 17/09/2009 - 08:28:14 - [293828252] ----D- C:\Program Files\Geneatique2006
O43 - CFD: 17/09/2009 - 08:49:08 - [228381375] ----D- C:\Program Files\Geneatique2009
O43 - CFD: 12/09/2009 - 10:31:08 - [3839420] ----D- C:\Program Files\IcoFX 1.6
O43 - CFD: 19/07/2011 - 13:24:36 - [27667014] ----D- C:\Program Files\IncrediMail
O43 - CFD: 21/09/2009 - 13:21:42 - [67479258] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 15/07/2011 - 10:44:40 - [6151545] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 19/09/2009 - 17:06:08 - [196088488] ----D- C:\Program Files\Jasc Software Inc
O43 - CFD: 19/10/2010 - 15:42:20 - [88594720] ----D- C:\Program Files\Java
O43 - CFD: 08/01/2011 - 15:47:04 - [1779786] ----D- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 16/09/2009 - 13:26:12 - [6813365] ----D- C:\Program Files\Lavalys
O43 - CFD: 16/07/2011 - 12:09:30 - [7099500] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 10/02/2011 - 10:32:18 - [752723] ----D- C:\Program Files\Microsoft
O43 - CFD: 13/09/2009 - 09:40:10 - [800662] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 21/09/2009 - 12:31:00 - [242387757] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 19/09/2009 - 17:24:12 - [26689688] ----D- C:\Program Files\Microsoft Picture It! 7
O43 - CFD: 15/07/2011 - 10:46:02 - [38411899] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 12/08/2010 - 19:48:04 - [150650442] ----D- C:\Program Files\Microsoft Works
O43 - CFD: 12/08/2010 - 19:45:26 - [15715] ----D- C:\Program Files\Microsoft.NET
O43 - CFD: 12/08/2010 - 20:08:14 - [99342446] ----D- C:\Program Files\Movie Maker
O43 - CFD: 15/07/2011 - 21:13:08 - [29910815] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 11/09/2009 - 12:50:04 - [0] ----D- C:\Program Files\MSXML 4.0
O43 - CFD: 06/05/2007 - 21:18:02 - [49022275] ----D- C:\Program Files\NewTech Infosystems
O43 - CFD: 16/07/2011 - 12:01:50 - [31080925] ----D- C:\Program Files\Paint.NET
O43 - CFD: 07/01/2011 - 13:47:40 - [2757956] ----D- C:\Program Files\Photo Notifier and Animation Creator
O43 - CFD: 12/08/2010 - 18:13:06 - [1873554] ----D- C:\Program Files\PhotoMail Maker
O43 - CFD: 14/08/2010 - 11:48:36 - [1757288] ----D- C:\Program Files\PowerpointImageExtractor_V1_2
O43 - CFD: 06/05/2007 - 21:05:50 - [14858316] ----D- C:\Program Files\Realtek
O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 13/08/2010 - 15:48:24 - [7086198] ----D- C:\Program Files\RegSupreme
O43 - CFD: 08/01/2011 - 12:26:34 - [1136439] ----D- C:\Program Files\SEAF
O43 - CFD: 12/09/2009 - 10:29:12 - [0] ----D- C:\Program Files\TomTom DesktopSuite
O43 - CFD: 12/09/2009 - 10:38:06 - [50469509] ----D- C:\Program Files\TomTom HOME 2
O43 - CFD: 12/09/2009 - 10:38:14 - [22486] ----D- C:\Program Files\TomTom International B.V
O43 - CFD: 26/02/2011 - 11:25:18 - [1950164] ----D- C:\Program Files\Tomtomax Maxi-Box
O43 - CFD: 11/09/2009 - 17:30:36 - [16610615] ----D- C:\Program Files\Tracker Software
O43 - CFD: 11/09/2009 - 14:41:58 - [25940251] ----D- C:\Program Files\TuneUp Utilities 2007
O43 - CFD: 02/11/2006 - 15:01:56 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 12/09/2009 - 15:45:30 - [48858307] ----D- C:\Program Files\VistaCodecPack
O43 - CFD: 12/08/2010 - 17:30:08 - [6812742] ----D- C:\Program Files\VS Revo Group
O43 - CFD: 11/09/2009 - 14:36:18 - [315523] ----D- C:\Program Files\Wallpaper
O43 - CFD: 09/01/2011 - 12:59:06 - [537808] ----D- C:\Program Files\WinAncetre
O43 - CFD: 16/09/2009 - 15:49:54 - [1016832] ----D- C:\Program Files\Windows Calendar
O43 - CFD: 16/09/2009 - 15:49:54 - [2737152] ----D- C:\Program Files\Windows Collaboration
O43 - CFD: 16/09/2009 - 15:49:52 - [4490624] ----D- C:\Program Files\Windows Defender
O43 - CFD: 16/09/2009 - 15:49:54 - [7084664] ----D- C:\Program Files\Windows Journal
O43 - CFD: 10/02/2011 - 10:32:12 - [45806173] ----D- C:\Program Files\Windows Live
O43 - CFD: 10/02/2011 - 10:32:00 - [245112] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 15/07/2011 - 10:44:40 - [9116344] ----D- C:\Program Files\Windows Mail
O43 - CFD: 14/10/2010 - 08:49:14 - [4498121] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 11/09/2009 - 10:32:56 - [7957544] ----D- C:\Program Files\Windows NT
O43 - CFD: 16/09/2009 - 15:49:54 - [13528738] ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD: 12/08/2010 - 20:08:18 - [134144] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 24/02/2011 - 09:32:00 - [6527558] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 22/07/2011 - 13:38:22 - [3931866] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 11/09/2009 - 20:02:32 - [86016] ----D- C:\Program Files\Common Files\Designer
O43 - CFD: 11/09/2009 - 14:51:20 - [12692156] ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD: 19/10/2010 - 15:43:00 - [1243079] ----D- C:\Program Files\Common Files\Java
O43 - CFD: 06/05/2007 - 21:17:32 - [7178034] ----D- C:\Program Files\Common Files\LightScribe
O43 - CFD: 10/02/2011 - 10:32:06 - [390433226] ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 06/05/2007 - 21:17:14 - [9706600] ----D- C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 06/05/2007 - 21:18:02 - [2290478] ----D- C:\Program Files\Common Files\NewTech Infosystems
O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 11/09/2009 - 18:07:48 - [24179451] ----D- C:\Program Files\Common Files\snpstd3
O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 11/09/2009 - 14:00:42 - [452776] ----D- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 16/09/2009 - 15:49:54 - [16393602] ----D- C:\Program Files\Common Files\System
O43 - CFD: 12/08/2010 - 17:59:28 - [51212410] ----D- C:\Program Files\Common Files\Windows Live
O43 - CFD: 14/09/2009 - 08:56:02 - [1108009] -SH-D- C:\Program Files\Common Files\WindowsLiveInstaller
O43 - CFD: 11/09/2009 - 14:39:14 - [9094656] ----D- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 12/08/2010 - 17:49:32 - [4675579] ----D- C:\ProgramData\Alwil Software
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 06/05/2007 - 21:34:10 - [23529] ----D- C:\ProgramData\CyberLink
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 21/09/2009 - 12:51:52 - [443878] ----D- C:\ProgramData\EPSON
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Favorites
O43 - CFD: 08/01/2011 - 13:06:04 - [0] ----D- C:\ProgramData\Google
O43 - CFD: 19/02/2011 - 15:38:02 - [220] ----D- C:\ProgramData\IM
O43 - CFD: 19/02/2011 - 15:37:06 - [6452763] ----D- C:\ProgramData\IncrediMail
O43 - CFD: 11/09/2009 - 14:21:44 - [16520603] ----D- C:\ProgramData\Malwarebytes
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 10/02/2011 - 10:11:16 - [212082389] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 11/09/2009 - 19:27:24 - [57028] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 15/07/2011 - 09:19:46 - [1943089] ----D- C:\ProgramData\Orange
O43 - CFD: 07/01/2011 - 13:47:42 - [1029545] ----D- C:\ProgramData\Photo Notifier and Animation Creator
O43 - CFD: 12/08/2010 - 18:13:06 - [712167] ----D- C:\ProgramData\PhotoMail
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Start Menu
O43 - CFD: 19/10/2010 - 15:43:00 - [119] ----D- C:\ProgramData\Sun
O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\ProgramData\SUPERAntiSpyware.com
O43 - CFD: 02/11/2006 - 15:02:06 - [0] -SH-D- C:\ProgramData\Templates
O43 - CFD: 12/09/2009 - 10:54:02 - [0] ----D- C:\ProgramData\TomTom
O43 - CFD: 11/09/2009 - 14:39:28 - [1492] ----D- C:\ProgramData\TuneUp Software
O43 - CFD: 21/09/2009 - 13:16:12 - [5081320] ----D- C:\ProgramData\UDL
O43 - CFD: 12/09/2009 - 15:44:10 - [19942400] ----D- C:\ProgramData\VistaCodecs
O43 - CFD: 10/01/2011 - 11:36:58 - [67] ----D- C:\ProgramData\WinAncetre
O43 - CFD: 14/09/2009 - 08:49:38 - [224508] ----D- C:\ProgramData\WLInstaller
O43 - CFD: 06/05/2007 - 21:22:50 - [6904815] ----D- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
O43 - CFD: 14/08/2010 - 11:31:48 - [3105610] ----D- C:\Users\Louis\AppData\Roaming\Adobe
O43 - CFD: 11/09/2009 - 20:23:24 - [8425708] ----D- C:\Users\Louis\AppData\Roaming\Ancestrologie
O43 - CFD: 18/07/2011 - 11:32:10 - [153] ----D- C:\Users\Louis\AppData\Roaming\EfficientPIM Free
O43 - CFD: 19/09/2009 - 21:14:14 - [512] ----D- C:\Users\Louis\AppData\Roaming\EPSON
O43 - CFD: 08/01/2011 - 12:27:52 - [14008] ----D- C:\Users\Louis\AppData\Roaming\FileZilla
O43 - CFD: 19/03/2011 - 10:30:02 - [769952] ----D- C:\Users\Louis\AppData\Roaming\France Bleu
O43 - CFD: 16/09/2009 - 11:11:10 - [23199473] ----D- C:\Users\Louis\AppData\Roaming\Généatique2009
O43 - CFD: 09/01/2011 - 12:59:14 - [28890] ----D- C:\Users\Louis\AppData\Roaming\IcoFX
O43 - CFD: 14/02/2011 - 19:38:44 - [21614] ----D- C:\Users\Louis\AppData\Roaming\Icones
O43 - CFD: 11/09/2009 - 10:37:32 - [0] ----D- C:\Users\Louis\AppData\Roaming\Identities
O43 - CFD: 11/09/2009 - 18:07:20 - [0] ----D- C:\Users\Louis\AppData\Roaming\InstallShield
O43 - CFD: 19/09/2009 - 17:06:08 - [3819066] ----D- C:\Users\Louis\AppData\Roaming\Jasc Software Inc
O43 - CFD: 11/09/2009 - 10:38:52 - [4124] ----D- C:\Users\Louis\AppData\Roaming\Macromedia
O43 - CFD: 11/09/2009 - 14:21:50 - [6336] ----D- C:\Users\Louis\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 14:37:36 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Center Programs
O43 - CFD: 08/01/2011 - 19:07:44 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Player Classic
O43 - CFD: 18/07/2011 - 10:34:46 - [4795433] -S--D- C:\Users\Louis\AppData\Roaming\Microsoft
O43 - CFD: 15/04/2011 - 08:42:00 - [5502602] ----D- C:\Users\Louis\AppData\Roaming\Mozilla
O43 - CFD: 21/07/2011 - 12:36:44 - [260] ----D- C:\Users\Louis\AppData\Roaming\PhotoFiltre
O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\Users\Louis\AppData\Roaming\SUPERAntiSpyware.com
O43 - CFD: 14/08/2010 - 15:08:14 - [8704] ----D- C:\Users\Louis\AppData\Roaming\Template
O43 - CFD: 12/09/2009 - 10:52:46 - [31743994] ----D- C:\Users\Louis\AppData\Roaming\TomTom
O43 - CFD: 11/09/2009 - 14:41:40 - [158929] ----D- C:\Users\Louis\AppData\Roaming\TuneUp Software
O43 - CFD: 08/01/2011 - 15:52:30 - [75985] ----D- C:\Users\Louis\AppData\Roaming\vlc
O43 - CFD: 11/09/2009 - 15:10:16 - [9443970] ----D- C:\Users\Louis\AppData\Roaming\Wallpaper
O43 - CFD: 14/08/2010 - 11:32:12 - [98138] ----D- C:\Users\Louis\AppData\Local\Adobe
O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Application Data
O43 - CFD: 12/08/2010 - 20:07:14 - [5115] ----D- C:\Users\Louis\AppData\Local\Eggiz
O43 - CFD: 15/07/2011 - 19:01:42 - [205974629] ----D- C:\Users\Louis\AppData\Local\Google
O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Historique
O43 - CFD: 19/02/2011 - 15:39:40 - [139365637] ----D- C:\Users\Louis\AppData\Local\IM
O43 - CFD: 08/01/2011 - 12:13:16 - [204007595] ----D- C:\Users\Louis\AppData\Local\Microsoft
O43 - CFD: 11/09/2009 - 10:49:22 - [108519646] ----D- C:\Users\Louis\AppData\Local\Mozilla
O43 - CFD: 16/03/2011 - 20:30:50 - [1466182] ----D- C:\Users\Louis\AppData\Local\Orange
O43 - CFD: 22/07/2011 - 10:09:28 - [0] ----D- C:\Users\Louis\AppData\Local\Paint.NET
O43 - CFD: 11/09/2009 - 10:37:46 - [0] ----D- C:\Users\Louis\AppData\Local\PowerCinema
O43 - CFD: 22/07/2011 - 13:36:36 - [14325451] ----D- C:\Users\Louis\AppData\Local\Temp
O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Temporary Internet Files
O43 - CFD: 12/09/2009 - 10:52:46 - [1888442] ----D- C:\Users\Louis\AppData\Local\TomTom
O43 - CFD: 14/08/2010 - 15:09:02 - [44978001] ----D- C:\Users\Louis\AppData\Local\VirtualStore
O43 - CFD: 13/09/2009 - 08:58:26 - [10002] ----D- C:\Users\Louis\AppData\Local\WindowsUpdate



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.54A284D6E44D3B1A1AAA3085FEFCBFE5] - 22/07/2011 - 08:36:40 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1960966]
O44 - LFC:[MD5.FB0B86BCE095899E10320B04862395A8] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1495948]
O44 - LFC:[MD5.E775B5BDB6545236DFCBD595FA2908A8] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfc009.dat [103872]
O44 - LFC:[MD5.BDBC643F06C398C483B8777F79E304F0] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [126420]
O44 - LFC:[MD5.D2591C6A65EAA06A71267C3180B8EA68] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfh009.dat [595798]
O44 - LFC:[MD5.F9940ADD46C583B349DEEB28746C54B2] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [678804]
O44 - LFC:[MD5.56E56150003D57FB5B596FC6BC75AD21] - 22/07/2011 - 06:35:30 ---A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.83EEB82E9ED7098EBC0C083C6BFD3116] - 17/07/2011 - 09:55:11 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [404640]
O44 - LFC:[MD5.7009400CC9C1BCA4C29CFFAEFAFAE424] - 15/07/2011 - 09:47:17 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [379800]
O44 - LFC:[MD5.F99DDD5E4F807B43E8B85DCD5F4B59EA] - 15/07/2011 - 09:12:26 ---A- . (.Microsoft - Legacy GDF resource DLL.) -- C:\Windows\System32\GameUXLegacyGDFs.dll [4240384]
O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 15/07/2011 - 08:34:38 ---A- . (...) -- C:\Windows\System32\config.nt [2577]
O44 - LFC:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [22712]
O44 - LFC:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [41272]
O44 - LFC:[MD5.2658AF3FBB06D7B5C731F9CC7CBFC1B3] - 04/07/2011 - 12:43:53 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [40112]
O44 - LFC:[MD5.C2E576B23D3969989AF90EF76B2979EA] - 04/07/2011 - 12:43:51 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [199304]
O44 - LFC:[MD5.17230708A2028CD995656DF455F2E303] - 04/07/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [441176]
O44 - LFC:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 04/07/2011 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [309848]
O44 - LFC:[MD5.984CFCE2168286C2511695C2F9621475] - 04/07/2011 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [43608]
O44 - LFC:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 04/07/2011 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [25432]
O44 - LFC:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 04/07/2011 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [54104]
O44 - LFC:[MD5.861CB512E4E850E87DD2316F88D69330] - 04/07/2011 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\drivers\aswFsBlk.sys [19544]



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys



---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm
O52 - TDSD: \Drivers32\"msacm.divxa32"="divxa32.acm" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm
O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\Windows\System32\xvidvfw.dll
O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm
O52 - TDSD: \drivers.desc\"divxa32.acm"="DivX Audio" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm
O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\Windows\System32\xvidvfw.dll
O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\Windows\System32\ff_vfw.dll



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\Acer Empowering Technology Monitor [Key] . (...) -- C:\Acer\Empowering Technology\SysMonitor.exe
O53 - SMSR:HKLM\...\startupreg\Acer Tour Reminder [Key] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe
O53 - SMSR:HKLM\...\startupreg\ccApp [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\ccApp.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\eDataSecurity Loader [Key] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O53 - SMSR:HKLM\...\startupreg\ehTray.exe [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O53 - SMSR:HKLM\...\startupreg\EPSON Stylus DX4000 Series [Key] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBEE.exe
O53 - SMSR:HKLM\...\startupreg\FixCamera [Key] . (.Pas de propriétaire - CameraFixer MFC Application.) -- C:\Windows\FixCamera.exe
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe
O53 - SMSR:HKLM\...\startupreg\IS CfgWiz [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF}\cltUIStb.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\MailNotifier [Key] . (...) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\MSConfig [Key] . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\Windows\system32\msconfig.exe
O53 - SMSR:HKLM\...\startupreg\orangeinside [Key] . (...) -- C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O53 - SMSR:HKLM\...\startupreg\snpstd3 [Key] . (.Pas de propriétaire - CameraMonitor Application.) -- C:\Windows\vsnpstd3.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
O53 - SMSR:HKLM\...\startupreg\tsnpstd3 [Key] . (.Pas de propriétaire - tsnp2std Microsoft.) -- C:\Windows\tsnpstd3.exe
O53 - SMSR:HKLM\...\startupreg\WarReg_PopUp [Key] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe
O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0



---\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [420968]
O58 - SDL:[MD5.B84088CA3CDCA97DA44A984C6CE1CCAD] - 02/11/2006 - 10:51:32 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [297576]
O58 - SDL:[MD5.7880C67BCCC27C86FD05AA2AFB5EA469] - 02/11/2006 - 10:50:35 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\system32\drivers\adpu160m.sys [98408]
O58 - SDL:[MD5.9AE713F8E30EFC2ABCCD84904333DF4D] - 02/11/2006 - 10:51:00 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\system32\drivers\adpu320.sys [147048]
O58 - SDL:[MD5.90395B64600EBB4552E26E178C94B2E4] - 02/11/2006 - 10:49:20 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [14952]
O58 - SDL:[MD5.5F673180268BB1FDB69C99B6619FE379] - 02/11/2006 - 10:50:09 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [67688]
O58 - SDL:[MD5.957F7540B5E7F602E44648C7DE5A1C05] - 02/11/2006 - 10:50:10 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [67688]
O58 - SDL:[MD5.861CB512E4E850E87DD2316F88D69330] - 12/08/2010 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [19544]
O58 - SDL:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 12/08/2010 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [54104]
O58 - SDL:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 12/08/2010 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [25432]
O58 - SDL:[MD5.17230708A2028CD995656DF455F2E303] - 24/02/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [441176]
O58 - SDL:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 12/08/2010 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [309848]
O58 - SDL:[MD5.984CFCE2168286C2511695C2F9621475] - 12/08/2010 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [43608]
O58 - SDL:[MD5.184E2B47542BADBE5CA606F0FC9A90CC] - 07/05/2007 - 15:04:28 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [2427392]
O58 - SDL:[MD5.A356E45E8432432C06981EA63A1E0FE8] - 06/05/2007 - 04:22:26 ---A- . (.ATI Technologies Inc. - ATI PCIE Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [8192]
O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 02/11/2006 - 09:24:45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [13568]
O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 02/11/2006 - 09:24:46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [5248]
O58 - SDL:[MD5.B304E75CFF293029EDDF094246747113] - 02/11/2006 - 09:25:24 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [71808]
O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [62336]
O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 02/11/2006 - 09:24:47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [11904]
O58 - SDL:[MD5.45201046C776FFDAF3FC8A0029C581C8] - 02/11/2006 - 10:49:28 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [16488]
O58 - SDL:[MD5.AE1FDF7BF7BB6C6A70F67699D880592A] - 02/11/2006 - 10:50:11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\system32\drivers\djsvs.sys [71272]
O58 - SDL:[MD5.F88FB26547FD2CE6D0A5AF2985892C48] - 02/11/2006 - 08:30:54 ---A- . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserialized driver.) -- C:\Windows\system32\drivers\E1G60I32.sys [117760]
O58 - SDL:[MD5.E8F3F21A71720C84BCF423B80028359F] - 02/11/2006 - 10:51:34 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [316520]
O58 - SDL:[MD5.DF353B401001246853763C4B7AAA6F50] - 02/11/2006 - 10:50:10 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\system32\drivers\HpCISSs.sys [37480]
O58 - SDL:[MD5.C957BF4B5D80B46C5017BF0101E6C906] - 02/11/2006 - 10:51:25 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\system32\drivers\iaStorV.sys [232040]
O58 - SDL:[MD5.2D077BF86E843F901D8DB709C95B49A5] - 02/11/2006 - 10:50:17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [41576]
O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\system32\drivers\iteatapi.sys [35944]
O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\system32\drivers\iteraid.sys [35944]
O58 - SDL:[MD5.A2262FB9F28935E862B4DB46438C80D2] - 02/11/2006 - 10:50:04 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [65640]
O58 - SDL:[MD5.30D73327D390F72A62F32C103DAF1D6D] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [65640]
O58 - SDL:[MD5.E1E36FEFD45849A95F1AB81DE0159FE3] - 02/11/2006 - 10:50:10 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [65640]
O58 - SDL:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 11/09/2009 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [22712]
O58 - SDL:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 16/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbamswissarmy.sys [41272]
O58 - SDL:[MD5.D153B14FC6598EAE8422A2037553ADCE] - 02/11/2006 - 10:49:53 ---A- . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\system32\drivers\megasas.sys [28776]
O58 - SDL:[MD5.4FBBB70D30FD20EC51F80061703B001E] - 02/11/2006 - 10:49:59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\system32\drivers\Mraid35x.sys [33384]
O58 - SDL:[MD5.2E7FB731D4790A1BC6270ACCEFACB36E] - 02/11/2006 - 10:50:19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [45160]
O58 - SDL:[MD5.7F1C1F78D709C4A54CBB46EDE7E0B48D] - 06/05/2007 - 20:16:50 ---A- . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [6144]
O58 - SDL:[MD5.E875C093AEC0C978A90F30C9E0DFBB72] - 02/11/2006 - 08:36:50 ---A- . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablette N-trig.) -- C:\Windows\system32\drivers\ntrigdigi.sys [20608]
O58 - SDL:[MD5.E69E946F80C1C31C53003BFBF50CBB7C] - 02/11/2006 - 10:50:24 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [88680]
O58 - SDL:[MD5.9E0BA19A28C498A6D323D065DB76DFFC] - 02/11/2006 - 10:50:13 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [40040]
O58 - SDL:[MD5.C2821F33B846A52FDC25FF554ACF11F2] - 06/05/2007 - 23:04:48 ---A- . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\system32\drivers\psdfilter.sys [20264]
O58 - SDL:[MD5.28D3A91FE7791B970E6B15C88F98DFBD] - 06/05/2007 - 23:04:54 ---A- . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\system32\drivers\PSDNServ.sys [16680]
O58 - SDL:[MD5.3A66F69459052DE13EF8A0F77D728A73] - 06/05/2007 - 23:04:50 ---A- . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\system32\drivers\psdvdisk.sys [60712]
O58 - SDL:[MD5.CCDAC889326317792480C0A67156A1EC] - 02/11/2006 - 10:51:45 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [900712]
O58 - SDL:[MD5.81A7E5C076E59995D54BC1ED3A16E60B] - 02/11/2006 - 10:50:35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [106088]
O58 - SDL:[MD5.2BD6633DB50A98534AA3262E0F9F5A14] - 06/05/2007 - 12:18:18 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHDA.sys [1761696]
O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 02/11/2006 - 07:37:21 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [20480]
O58 - SDL:[MD5.CEDD6F4E7D84E9F98B34B3FE988373AA] - 02/11/2006 - 10:50:10 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [38504]
O58 - SDL:[MD5.DF843C528C4F69D12CE41CE462E973A7] - 02/11/2006 - 10:50:16 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [71784]
O58 - SDL:[MD5.11BB0E11D42CC3A43D741D9B30839BE1] - 27/03/2007 - 17:19:36 ---A- . (.Sonix Co. Ltd. - USB PC Camera driver.) -- C:\Windows\system32\drivers\snpstd3.sys [10252544]
O58 - SDL:[MD5.192AA3AC01DF071B541094F251DEED10] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\system32\drivers\symc8xx.sys [35944]
O58 - SDL:[MD5.8C8EB8C76736EBAF3B13B633B2E64125] - 02/11/2006 - 10:49:56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_hi.sys [31848]
O58 - SDL:[MD5.8072AF52B5FD103BBBA387A1E49F62CB] - 02/11/2006 - 10:50:03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_u3.sys [34920]
O58 - SDL:[MD5.3CD4EA35A6221B85DCC25DAA46313F8D] - 02/11/2006 - 10:51:25 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\system32\drivers\uliahci.sys [235112]
O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\system32\drivers\ulsata.sys [98408]
O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 02/11/2006 - 10:50:45 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\system32\drivers\ulsata2.sys [115816]
O58 - SDL:[MD5.FD2E3175FCADA350C7AB4521DCA187EC] - 02/11/2006 - 10:49:30 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17512]
O58 - SDL:[MD5.D984439746D42B30FC65A4C3546C6829] - 02/11/2006 - 10:50:41 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\system32\drivers\vsmraid.sys [112232]
O58 - SDL:[MD5.2584DF81CC9F7E7BD3545691106F8CAE] - 13/09/2009 - 15:47:04 ---A- . (.Wasay - Wasay virtual disk driver.) -- C:\Windows\system32\drivers\WSVD.sys [80744]
O58 - SDL:[MD5.04E268ADFC81964C49DC0C082D520F7E] - 06/12/2007 - 08:51:00 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk60x86.sys [298496]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\system32\ANSI.SYS [9029]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\system32\country.sys [27097]
O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\system32\HIMEM.SYS [4768]
O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEY01.SYS [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEYBOARD.SYS [42537]
O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\system32\NTDOS.SYS [27866]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\system32\NTDOS404.SYS [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\system32\NTDOS411.SYS [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\system32\NTDOS412.SYS [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\system32\NTDOS804.SYS [29146]
O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\system32\NTIO.SYS [33952]
O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\system32\NTIO404.SYS [34672]
O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\system32\NTIO411.SYS [35776]
O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\system32\NTIO412.SYS [35536]
O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\system32\NTIO804.SYS [34672]



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: SEAF By C_XX - (.C_XX.) [HKLM] -- SEAF
O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 04/07/2011 - C:\Windows\system32\drivers\aswMonFlt.sys - aswMonFlt(aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 07/12/2006 - C:\Acer\Empowering Technology\eRecovery\int15.sys - int15 (int15) .(...) - LEGACY_INT15
O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\DRIVERS\psdfilter.sys - PSDFilter(PSDFilter) .(.HiTRUST - PSD Filter Driver.) - LEGACY_PSDFILTER
O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\PSDNServ.sys - PSDNSERVER(PSDNServ) .(.HiTRUST - PSD Named Pipe Driver.) - LEGACY_PSDNSERV
O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\psdvdisk.sys - psdvdisk(psdvdisk) .(.HiTRUST - PSD Virtual Disk Driver.) - LEGACY_PSDVDISK
O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.) - SASDIFSV (SASDIFSV) .(...) - LEGACY_SASDIFSV
O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.) - SASKUTIL (SASKUTIL) .(...) - LEGACY_SASKUTIL
O64 - Services: CurCS - 19/09/2006 - C:\Windows\system32\drivers\WSVD.sys - WSVD(WSVD) .(.Wasay - Wasay virtual disk driver.) - LEGACY_WSVD



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (. - .) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] %productIESearchGUID% - (MyStart Search) - http://mystart.incredimail.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {0B8B1BFE-7FE8-4B20-9B7A-0EE97A3FC97A} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://rws.search.ke.voila.fr
O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [DefaultScope] - (MyStart Search) - http://mystart.incredimail.com



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.518DDDB4C5AB132386FE75B4564382C9] [SPRF][14/08/2010] (.SpeedyFox - SpeedyFox program.) -- C:\Users\Louis\Desktop\Nettoyeur Firefox.exe [453000]
[MD5.CBCE2604DE732C3BDABD77848B820AA4] [SPRF][21/07/2011] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Louis\Desktop\ZHPDiag2.exe [2540536]
[MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [24576]
[MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [196608]
[MD5.0C78701C6F42345DFF2B2B6C3C3D01EF] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [172032]



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WinCollab-DFSR-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe
O87 - FAEL: "WinCollab-DFSR-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe
O87 - FAEL: "WinCollab-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "WinCollab-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "WinCollab-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "WinCollab-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "{F726BF72-BF4E-4B4F-B9FE-4CDF4E903131}" | In - None - P17 - TRUE | .(.Acer Incorporated - Acer Arcade Live.) -- C:\Program Files\Acer Arcade Live\Acer Arcade Live Main Page\Acer Arcade Live.exe
O87 - FAEL: "{51674872-C1F2-4F6E-9B9C-A757F38BE2C6}" | In - None - P17 - TRUE | .(.Cyberlink - Pas de description.) -- C:\Program Files\Acer Arcade Live\SlideShow DVD\Component\CLSLDVD.exe
O87 - FAEL: "{00717E99-5B5E-4D82-B899-5B920CE145A9}" | In - None - P17 - TRUE | .(.Cyberlink - ARA Work Process.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\ARAWP.exe
O87 - FAEL: "{F90A806B-AED4-4244-AC78-EA10F3E4F0E6}" | In - None - P17 - TRUE | .(.Pas de propriétaire - DVAX2Process MFC Application.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\DVAX2Process.exe
O87 - FAEL: "{2EACCE03-44AD-4451-AFA5-833B35CC35B9}" | In - None - P17 - TRUE | .(.Acer Incorporated - DVDivine.) -- C:\Program Files\Acer Arcade Live\Acer DVDivine\DVDivine.exe
O87 - FAEL: "{39E7738E-3D11-43B9-835D-D16D2F3B2B0D}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia\HomeMedia.exe
O87 - FAEL: "{59B339AA-E6E9-43D5-A0ED-DAC81D658E12}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia Connect.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\HomeMedia Connect.exe
O87 - FAEL: "{B70C9DFF-8065-445C-8092-F386899335A3}" | In - None - P17 - TRUE | .(.CyberLink - CLMSServer.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
O87 - FAEL: "{9F52794C-B028-4208-88E2-1D78370B9A3B}" | In - None - P17 - TRUE | .(.Acer Incorporated - VideoMagician.) -- C:\Program Files\Acer Arcade Live\Acer VideoMagician\VideoMagician.exe
O87 - FAEL: "{E9C996F9-7D3C-47CB-9418-E12D4C39FF30}" |In - Private - P6 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.)
O87 - FAEL: "{62AD61A2-E8F0-4778-A262-C0AF4BD83092}" |In - Private - P17 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.)
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus de l’autorité de sécurité locale.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{EB2903EC-4E0E-4950-811B-0A70F728770B}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe
O87 - FAEL: "{27467FCD-DA11-4617-B18B-785DF4334AF3}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe
O87 - FAEL: "{039F4044-7CE8-4A07-84EA-F0BAD32857AF}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe
O87 - FAEL: "{B7FFF15D-2A9D-4BD3-B82B-03A5572FC3D1}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O87 - FAEL: "{E7556FB8-8788-4117-8024-F4DAE12BA048}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{A2AC4271-B58F-4BDA-AF90-E45FC1AE448A}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{88B110E9-17F9-496B-B129-0DF8C2AD375B}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{827FD52E-5092-4044-AFBC-C757E9ADE5DD}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{ABB72582-43B9-47B3-BA51-25CBF8ECF627}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{900CDA3B-FE39-4E89-90C1-A12AF5D36EB9}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{89F2B2D8-47C7-4D9A-89BE-63E1ABC37403}" |In - Private - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{56F3A1CC-6F33-4CDA-8660-2552EA950563}" |In - Private - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{DF216603-12A4-460A-A780-AFBD20CA73A2}" |In - Public - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{240349EE-9C9F-44EA-932F-00568E5181FD}" |In - Public - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{F23C2826-966F-4739-AECD-4C4D95887A59}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{4C2BCE8D-6C96-432C-8376-AE2E26B18187}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{78E84DE1-69AB-4CB4-AD1F-F93A08ED8AD7}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{667A5F42-2BA8-4982-9C72-9A0E6F6F8ECA}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{5039316D-20DF-4A89-81B4-D7AAB86AC02F}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{15473CB5-7E55-48D3-9C75-EFAE6D3346F9}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{DFF3DA8E-5FB4-4FC1-9563-441499BEAC94}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{F4E9A626-A31B-46A7-AF7F-F44C444A5096}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{41169DA2-5A48-47FD-AB5D-638E9CF9C3EF}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{308E4FE9-0714-4C3F-82D5-3AA29C0E38C0}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{F9E756EE-34C2-4E15-AEEC-3ECE52CD90E3}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe



---\\ Scan Additionnel (O88)
Database Version : 8548 - (21/07/2011)
Clés trouvées (Keys found) : 28
Valeurs trouvées (Values found) : 1
Dossiers trouvés (Folders found) : 2
Fichiers trouvés (Files found) : 1

[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Toolbar.AskSBar
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1] =>Toolbar.AskTBar
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine] =>Toolbar.Conduit
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Toolbar.AskSBar
[HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Toolbar.AskSBar
[HKLM\Software\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}] =>Toolbar.AskTBar
[HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] =>Toolbar.AskSBar
[HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask
[HKLM\Software\Classes\Interface\{6e4c89cf-3061-4ee4-b22a-b7a8aaea5cb3}] =>Adware.Bandoo
[HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.AskSBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.AskSBar
[HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask
[HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.AskSBar
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.AskSBar
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.AskSBar
[HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.AskSBar
[HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.AskSBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.AskSBar
[HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AskSBar
[HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AskSBar
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AskSBar
[HKCU\Software\Ask.com] =>Toolbar.AskBar
[HKCU\Software\Ask.com] =>Toolbar.AskBarDis
[HKCU\Software\AppDataLow\Software\AskToolbar] =>Toolbar.AskTBar
[HKLM\Software\AskToolbar] =>Toolbar.AskTBar
[HKLM\Software\Conduit] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.AskSBar
C:\Program Files\Ask.com =>Toolbar.AskBar
C:\Users\Louis\AppData\LocalLow\IncrediMail_MediaBar_2 =>Toolbar.Conduit
C:\Windows\system32\Tasks\Scheduled Update for Ask Toolbar =>Toolbar.AskTBar



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 06/05/2007 266343 | (Acer HomeMedia Connect Service) . (.CyberLink.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
SR - | Auto 06/05/2007 28672 | (AcerMemUsageCheckService) . (...) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
SR - | Auto 07/05/2007 569344 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\system32\Ati2evxx.exe
SR - | Auto 04/07/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
SR - | Auto 06/05/2007 457512 | eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
SR - | Auto 11/09/2009 53248 | (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
SR - | Auto 12/09/2009 81920 | (FirebirdGuardianDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
SR - | Demand 12/09/2009 2736128 | (FirebirdServerDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
SR - | Auto 06/05/2007 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
SS - | Auto 30/12/1899 0 | (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe
SS - | Auto 30/12/1899 0 | (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
SR - | Auto 06/05/2007 143360 | (RichVideo) . (...) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
SR - | Auto 12/09/2009 92008 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
SR - | Auto 13/09/2009 21504 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software GmbH.) - C:\Windows\System32\svchost.exe
SR - | Auto 13/09/2009 21504 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net



End of the scan (1193 lines in 01mn 55s)(0)

à tous

Anonyme
 Posté le 22/07/2011 à 13:52 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Nouvel astucien

Il y a bien infections.

Désinstalle le Logiciel: Ask Toolbar

Pour la suite je laisse place au Groupe Sécurité.(comme indiqué dans mon premier message)

Bonne continuation



Modifié par Anonyme le 22/07/2011 13:58
Petit Louis
 Posté le 22/07/2011 à 14:02 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

{#} Denim

Je ne sais pas d'ou il vient car d'habitude je ne télécharge pas les Toolbars

A Bientôt



Modifié par Petit Louis le 22/07/2011 14:04
Anonyme
 Posté le 22/07/2011 à 14:11 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Nouvel astucien
Petit Louis a écrit :

{#} Denim

Je ne sais pas d'ou il vient car d'habitude je ne télécharge pas les Toolbars

A Bientôt

Il y a aussi Conduit en + de Ask via un des ces programmes peut être....il faut bien lire lors des installations de ces derniers

@+

Publicité
Petit Louis
 Posté le 22/07/2011 à 17:27 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Je viens de vérifier à par Ask en temps que moteur de recherche que j'ai viré il n'y a rien de tout ça

Anonyme
 Posté le 22/07/2011 à 18:13 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Nouvel astucien

Bonsoir

je vais contacter un GS qui va t'aider pour virer les scories restantes....

@+

Petit Louis
 Posté le 22/07/2011 à 18:18 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Merci Denim

A bientôt {#}

Labougie
 Posté le 22/07/2011 à 19:15 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

Hello,

je regarde tout cela et vous dis quoi .

labougie

Labougie
 Posté le 22/07/2011 à 19:19 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

Hello Petit louis,

Salut Denim,

Tu vas commencer par me recocher ceci dans msconfig, car le mises à jour il faut les faire, et avec cette aide c'est tout de même plus simple .

Va dans démarrer puis panneau de config. Recherche tout ce qui contient:

Ou par revounistaller si tu le maîtrises mieux

  • ask
  • conduit enduit
  • search conduit
  • puis tout tes cracks, ce n'est pas que je n'aime pas "super gégé", mais dans les tâches planifiées pas trop, voir pas du tout.
  • Edit: => rajoute regspreme aussi, c'est ccleaner, moins onl'utilise mieux on se porte

[MD5.00000000000000000000000000000000] [APT] [{04FC8B77-8E4C-46C5-A741-A6BA2FB45D10}] (...) -- J:\PSP.8\Jasc_Paint_Shop_Pro_8.03_Supergege\Crack.exe (.not file.)

1/ Uac si 7 &Vista

  • Tout d'abord tu vas désactiver l'uac en suivant ce tutoriel => désactiver l'UAC
  • Il faut redémarrer pour la désactivation, n'oublie pas .

2/ Ad-r

  • Charge cet Outil AD-R de C_XX.

Adr

Choisi la rubrique Scanner, puis poste le rapport. => Tutoriel de l'auteur

Choisi la rubrique Nettoyer, puis poste le rapport. => Tutoriel de l'auteur

Choisi la rubrique Désintaller pour désintaller.

L'outil va travailler longtemps, il demandera de redémarrer, le fonds de l'écran peut rester noir un long moment (5 ou 10 min), ne soit pas inquièt(e).

Note :

"Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.

Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.

Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.

Poste le rapport qui apparaît à la fin.

Le rapport est sauvegardé aussi sous C:\Ad-report(date).log.

3/ zhpdiag

tu le relances avec toutes les options suivantes.

Clique sur le Tourne Vis et clique sur "Tous"

les rapports

  • Ad-r
  • suppressions des cracks,
  • désinstallation
  • zhpdiag nouveau

labougie



Modifié par Labougie le 22/07/2011 19:21
Petit Louis
 Posté le 22/07/2011 à 20:14 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======

Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 20:13:16 le 22/07/2011, Mode normal

Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86)
Louis@PC-DE-LOUIS (Acer Aspire M3100)

============== RECHERCHE ==============



Clé trouvée: HKLM\Software\Classes\Interface\{6E4C89CF-3061-4EE4-B22A-B7A8AAEA5CB3}
Clé trouvée: HKLM\Software\Classes\SearchBar.Client
Clé trouvée: HKLM\Software\Conduit
Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1
Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}


============== SCAN ADDITIONNEL ==============

**** Mozilla Firefox Version [3.6.18 (fr)] ****


-- C:\Users\Louis\AppData\Roaming\Mozilla\FireFox\Profiles\rb4kum3u.default --
Extensions\{03B08592-E5B4-45ff-A0BE-C1D975458688} (Toolbar Buttons)
Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} (Flagfox)
Prefs.js - browser.download.dir, C:\\Users\\Louis\\Desktop
Prefs.js - browser.download.lastDir, C:\\Users\\Louis\\Desktop
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage, hxxp://fr.yahoo.com
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.18
Prefs.js - keyword.URL, hxxp://fr.search.yahoo.com/search?fr=ffds1&p=

========================================

**** Google Chrome Version [14.0.814.0] ****

Extension\icmlaeflemplmjndnaapfdbbnpncnbda (C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx) (?)

-- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default --
Preferences - default_search_provider: "Google" (Activé: true) (?)
Preferences - homepage: hxxp://fr.yahoo.com/
Preferences - homepage_is_newtabpage: false
Plugin - Chrome NaCl (Activé: false) (C:\Users\Louis\AppData\Local\Google\Chrome\Application\14.0.814.0\ppGoogleNaClPluginChrome.dll)
Plugin - "Java" (Activé: true)
Plugin - "Silverlight" (Activé: true)
Plugin - "Chrome NaCl" (Activé: false)

========================================

**** Internet Explorer Version [9.0.8112.16421] ****

HKCU_Main|SearchMigratedDefaultURL - hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
HKCU_Main|Search Page - hxxp://fr.rd.yahoo.com/customize/ycomp/defaults/sp/*hxxp://fr.yahoo.com
HKCU_Main|Start Page - hxxp://fr.yahoo.com
HKLM_Main|Default_Page_URL - hxxp://fr.yahoo.com
HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Start Page - hxxp://fr.yahoo.com
HKCU_URLSearchHooks|{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} (x)
HKCU_SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} - "Orange" (hxxp://rws.search.ke.voila.fr/RW/S/opensearch_orange?rdata={searchTerms})
HKCU_Toolbar\ShellBrowser|{5CBE3B7C-1E47-477E-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll)
HKCU_Toolbar\WebBrowser|{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0} (x)
HKLM_Toolbar|{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll)
HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)
HKCU_ElevationPolicy\{89A405EB-CFA8-4376-9B68-AD0D6DCEF426} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x)
HKCU_ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} - C:\PROGRA~1\Yahoo!\companion\installs\cpn\ytbb.exe (x)
HKCU_ElevationPolicy\{D3DE705E-0BB6-47E6-AB61-6FF78BE040A0} - C:\Program Files\Internet Explorer\minftnet.exe (Synersoft)
HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x)
HKLM_ElevationPolicy\{FFB0F286-4C8A-4C05-A335-A280573A3C66} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x)
BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?)
BHO\{1d970ed5-3eda-438d-bffd-715931e2775b} (?)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} (?)
BHO\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - "ShowBarObj Class" (C:\Windows\system32\ActiveToolBand.dll)
BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 1 Fichier(s)

C:\Ad-Report-SCAN[1].txt - 22/07/2011 20:13:22 (4866 Octet(s))

Fin à: 20:14:10, 22/07/2011

============== E.O.F ==============

Petit Louis
 Posté le 22/07/2011 à 20:24 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======

Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 20:18:39 le 22/07/2011, Mode normal

Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86)
Louis@PC-DE-LOUIS (Acer Aspire M3100)

============== ACTION(S) ==============



(!) -- Fichiers temporaires supprimés.


Clé supprimée: HKLM\Software\Classes\Interface\{6E4C89CF-3061-4EE4-B22A-B7A8AAEA5CB3}
Clé supprimée: HKLM\Software\Classes\SearchBar.Client
Clé supprimée: HKLM\Software\Conduit
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}


============== SCAN ADDITIONNEL ==============

**** Mozilla Firefox Version [3.6.18 (fr)] ****


-- C:\Users\Louis\AppData\Roaming\Mozilla\FireFox\Profiles\rb4kum3u.default --
Extensions\{03B08592-E5B4-45ff-A0BE-C1D975458688} (Toolbar Buttons)
Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} (Flagfox)
Prefs.js - browser.download.dir, C:\\Users\\Louis\\Desktop
Prefs.js - browser.download.lastDir, C:\\Users\\Louis\\Desktop
Prefs.js - browser.search.defaultenginename, Yahoo
Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p=
Prefs.js - browser.search.selectedEngine, Yahoo
Prefs.js - browser.startup.homepage, hxxp://fr.yahoo.com
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.18
Prefs.js - keyword.URL, hxxp://fr.search.yahoo.com/search?fr=ffds1&p=

========================================

**** Google Chrome Version [14.0.814.0] ****

Extension\icmlaeflemplmjndnaapfdbbnpncnbda (C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx) (?)

-- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default --
Preferences - default_search_provider: "Google" (Activé: true) (?)
Preferences - homepage: hxxp://fr.yahoo.com/
Preferences - homepage_is_newtabpage: false
Plugin - Chrome NaCl (Activé: false) (C:\Users\Louis\AppData\Local\Google\Chrome\Application\14.0.814.0\ppGoogleNaClPluginChrome.dll)
Plugin - "Java" (Activé: true)
Plugin - "Silverlight" (Activé: true)
Plugin - "Chrome NaCl" (Activé: false)

========================================

**** Internet Explorer Version [9.0.8112.16421] ****

HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} (x)
HKCU_SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} - "Orange" (hxxp://rws.search.ke.voila.fr/RW/S/opensearch_orange?rdata={searchTerms})
HKCU_Toolbar\ShellBrowser|{5CBE3B7C-1E47-477E-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll)
HKCU_Toolbar\WebBrowser|{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0} (x)
HKLM_Toolbar|{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll)
HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)
HKCU_ElevationPolicy\{89A405EB-CFA8-4376-9B68-AD0D6DCEF426} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x)
HKCU_ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} - C:\PROGRA~1\Yahoo!\companion\installs\cpn\ytbb.exe (x)
HKCU_ElevationPolicy\{D3DE705E-0BB6-47E6-AB61-6FF78BE040A0} - C:\Program Files\Internet Explorer\minftnet.exe (Synersoft)
HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x)
HKLM_ElevationPolicy\{FFB0F286-4C8A-4C05-A335-A280573A3C66} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x)
BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?)
BHO\{1d970ed5-3eda-438d-bffd-715931e2775b} (?)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} (?)
BHO\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - "ShowBarObj Class" (C:\Windows\system32\ActiveToolBand.dll)
BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 16 Fichier(s)

C:\Ad-Report-CLEAN[1].txt - 22/07/2011 20:18:55 (5094 Octet(s))
C:\Ad-Report-SCAN[1].txt - 22/07/2011 20:13:22 (5004 Octet(s))
C:\Ad-Report-SCAN[2].txt - 22/07/2011 20:16:54 (5069 Octet(s))

Fin à: 20:19:50, 22/07/2011

============== E.O.F ==============

Petit Louis
 Posté le 22/07/2011 à 20:54 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Rapport de ZHPDiag v1.27.2423 par Nicolas Coolman, Update du 21/07/2011
Run by Louis at 22/07/2011 20:43:50
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox v (Defaut)
GCIE: Google Chrome v14.0.814.0

---\\ System Information
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)
~ Processor: x86 Family 15 Model 107 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
~ Boot mode: ~ Normal (Normal boot)
Total RAM: 1790 MB (48% free)
~ System Restore: Activé (Enable)
System drive C: has 82 GB (73%) free of 112 GB

---\\ Logged in mode
~ Computer Name: PC-DE-LOUIS
~ User Name: Louis
~ All Users Names: Louis, Administrateur,
~ Unselected Option: None
~ Logged in as Administrator

---\\ Environnement Variables
~ %AppData%=C:\Users\Louis\AppData\Roaming\
~ %Desktop%=C:\Users\Louis\Desktop\
~ %Favorites%=C:\Users\Louis\Favorites\
~ %LocalAppData%=C:\Users\Louis\AppData\Local\
~ %StartMenu%=C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 82 Go of 112 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 87 Go of 111 Go)
E:\ CD-ROM drive (Not Inserted)
F:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
G:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
H:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK



---\\ Recherche particulière de fichiers génériques
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.16/09/2009 - 22:27:38.) -- C:\Windows\Explorer.exe [2926592]
[MD5.4B555106290BD117334E9A08761C035A] - (....) (.02/11/2006 - 10:45:37.) -- C:\Windows\system32\rundll32.exe [44544]
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.13/09/2009 - 08:33:37.) -- C:\Windows\system32\Wininit.exe [96768]
[MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.31/03/2011 - 07:27:03.) -- C:\Windows\system32\wininet.dll [1126912]
[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.16/09/2009 - 22:28:14.) -- C:\Windows\system32\Winlogon.exe [314368]
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.16/09/2009 - 22:32:28.) -- C:\Windows\system32\drivers\atapi.sys [19944]
[MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.16/09/2009 - 22:32:50.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Videos (My Videos) : 1/2
~ Mes Favoris (My Favorites) : 2/196
~ Mes Documents (My Documents) : 5/3795
~ Mon Bureau (My Desktop) : 2/71
~ Menu demarrer (Programs) : 6/34



---\\ Processus lancés
[MD5.E7CF222185411C6A3E68273C452B3283] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3493720]
[MD5.C89B2956A12493FA137E670678D4E89D] - (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe [294912]
[MD5.DF105989C770C6AB43970A2CC0B9561A] - (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe [233472]
[MD5.5F8C39A444DA36FCCE9801AC0D84811E] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366024]
[MD5.8E37F9BAA54D26146654AE8F6181B4D9] - (.WASEO - ClickTray Calendar.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe [3495936]
[MD5.A6216DBB689EA1A63A47F30D89FEA670] - (.DreamStudio - Email Client.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe [1817088]
[MD5.87AA7CB031C57FE5ACB5F87C0BCCFD9B] - (.Efficient Software - Pas de description.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe [10275328]
[MD5.80D352BE20A74B3A44F2B4A4E79DDADD] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [263624]
[MD5.055713CD9E0C6AAC46AFBB3A5B95EF75] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344]
[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120]
[MD5.887BAA34C1B3AB4FBC54BF6545B59B49] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [658432]



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Louis\AppData\Roaming\Mozilla\Firefox\Profiles\rb4kum3u.default\prefs.js
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_22 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.69] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.69] - (.RealNetworks, Inc. - 6.0.12.69.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll
M0 - MFSP: prefs.js [Louis - rb4kum3u.default] http://fr.yahoo.com
M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{03B08592-E5B4-45ff-A0BE-C1D975458688}] [] Toolbar Buttons v1.0 (.Michael Buckley.)
M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}] [] Flagfox v4.1.5 (.Dave Garrett.)
M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20110704 (.WOT Services Oy.)



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] None
G0 - GCSP: Preference [User Data\Default][HomePage] http://fr.yahoo.com
G2 - GCE: Preference [User Data\Default] [bdfkbdkkfmmckaadapdipihjfaacnkgd] Splendid v.3 (Activé)
G2 - GCE: Preference [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.1.2.2 (Activé)
G2 - GCE: Preference [User Data\Default] [hhfceebbbinfckajnkhjiiefbpfljpid] ABonEntendeur v.0.0.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [jhejngphiacapbgllhagbpdkkdieeaej] Chrome Flags v.1.4 (Activé)
G2 - GCE: Preference [User Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Shockwave Flash v.10,3,181,35 (Activé)



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\system32\ieframe.dll
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} . (...) (No version) -- (.not file.)



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline
O2 - BHO: (no name) - {1d970ed5-3eda-438d-bffd-715931e2775b} Clé orpheline
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.HiTRUST - ActiveToolBand Module.) -- C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.HiTRUST - eDStoolbar Module.) -- C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe
O4 - HKCU\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe
O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe
O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ClickTray Calendar.lnk . (.WASEO.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DreamMail.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EfficientPIM Free.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
O4 - Global Startup: C:\Users\Louis\Desktop\AD-R.lnk . (...) -- C:\Program Files\Ad-Remover\main.exe
O4 - Global Startup: C:\Users\Louis\Desktop\AMCap.lnk . (.Microsoft Corporation.) -- C:\Windows\amcap.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Conjugaison.lnk . (.ECHELARD.) -- D:\Documents\Logiciels installés\Conjugaison\Conjug.exe
O4 - Global Startup: C:\Users\Louis\Desktop\CUISINON.lnk . (...) -- D:\Documents\Logiciels installés\cuis110_full\CUISINON.EXE
O4 - Global Startup: C:\Users\Louis\Desktop\Dames.lnk . (...) -- D:\Documents\Dames.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Dictionnaire.lnk . (...) -- D:\Documents\Logiciels installés\Dictionnaire\dict.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Documents (2).lnk . (...) -- D:\Documents
O4 - Global Startup: C:\Users\Louis\Desktop\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe
O4 - Global Startup: C:\Users\Louis\Desktop\Images.lnk . (...) -- D:\Pictures
O4 - Global Startup: C:\Users\Louis\Desktop\JkDefrag.lnk . (.J.C. Kessels.) -- D:\Documents\Logiciels installés\JkDefrag-3.33\JkDefrag.exe
O4 - Global Startup: C:\Users\Louis\Desktop\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc
O4 - Global Startup: C:\Users\Louis\Desktop\pinball.lnk . (.Cinematronics.) -- D:\Documents\Pinball\pinball.exe
O4 - Global Startup: C:\Users\Louis\Desktop\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk . (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Codes-doc - Raccourci.lnk . (...) -- D:\Documents\DOSSIERS\DOC PERSO\Codes-doc.axx
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Documents (2).lnk . (...) -- D:\Documents
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GénéaTique 2006.lnk . (.CDIP.) -- C:\Program Files\Geneatique2006\Genea2006.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Généatique 2009.lnk . (.CDIP.) -- C:\Program Files\Geneatique2009\Genea2009.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\IncrediMail 2.0.lnk . (.IncrediMail, Ltd..) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Jasc Paint Shop Pro 8 (2).lnk - Clé orpheline
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Picture It! Express 7.0.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Picture It! 7\Pip.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ordinateur - Raccourci.lnk - Clé orpheline
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Paint.NET.lnk . (.dotPDN LLC.) -- C:\Program Files\Paint.NET\PaintDotNet.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- D:\Documents\Logiciels installés\PhotoFiltre\PhotoFiltre.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\RegSupreme.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme\RegSupreme.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller.lnk . (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sidebar.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Snipping Tool.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\SnippingTool.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TomTom HOME 2.lnk . (.TomTom International B.V..) -- C:\Program Files\TomTom HOME 2\TomTomHOME.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Tomtomax Maxi-Box.lnk . (.Koak Design Development.) -- C:\Program Files\Tomtomax Maxi-Box\Tomtomax-MaxiBox.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Wallpaper.lnk . (...) -- C:\Program Files\Wallpaper\Wallpaper.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe
O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: ajouter cette page à vos favoris Orange - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\addfavorites_html\addfavorites.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~2\Office10\EXCEL.exe
O8 - Extra context menu item: envoyer le texte sélectionné par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html
O8 - Extra context menu item: envoyer par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html
O8 - Extra context menu item: envoyer un mail - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html
O8 - Extra context menu item: orange.fr - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html
O8 - Extra context menu item: rechercher le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html
O8 - Extra context menu item: traduire la page - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html
O8 - Extra context menu item: traduire le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CS2\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll



---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink - CLMSServer.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Pas de propriétaire - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project - Firebird SQL Server.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - Pas de description.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Orange update Core Service (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O23 - Service: Planificateur LiveUpdate automatique (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (.not file.)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Maintenance en 1 clic.job
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.7D4722E3A77B1D5B64F2D6ED0BD72A80] [APT] [Maintenance en 1 clic] (.TuneUp Software GmbH.) -- C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe
[MD5.00000000000000000000000000000000] [APT] [{04FC8B77-8E4C-46C5-A741-A6BA2FB45D10}] (...) -- J:\PSP.8\Jasc_Paint_Shop_Pro_8.03_Supergege\Crack.exe (.not file.)
[MD5.7C66F9B332F28433EF23FC6403BFDB87] [APT] [{3C9E5E46-3A9F-4C9B-86E6-053B5822167C}] (...) -- C:\Program Files\Geneatique2009\unins000.exe
[MD5.C77EB5E990478856A275991166D4E0EA] [APT] [{BE0F31A8-4B1C-4E8E-BF70-41793ED61734}] (.SEIKO EPSON CORP..) -- C:\Program Files\epson\escndv\setup\setup.exe



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys
O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys
O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys
O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys
O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys
O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys
O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys
O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys
O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys
O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys
O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys
O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys
O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys
O41 - Driver: (SASDIFSV) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.)
O41 - Driver: (SASKUTIL) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.)
O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys
O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys
O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys



---\\ Logiciels installés (O42)
O42 - Logiciel: 7-Zip 4.65 - (.Pas de propriétaire.) [HKLM] -- 7-Zip
O42 - Logiciel: ATI Uninstaller - (.ATI Technologies, Inc..) [HKLM] -- ATI Uninstaller
O42 - Logiciel: Acer Arcade Live Main Page - (.Acer Inc..) [HKLM] -- {EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}
O42 - Logiciel: Acer DV Magician - (.Acer Inc..) [HKLM] -- {F6EFFB76-4A07-11DA-9D78-000129760D75}
O42 - Logiciel: Acer DVDivine - (.Acer Inc..) [HKLM] -- {B145EC69-66F5-11D8-9D75-000129760D75}
O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2}
O42 - Logiciel: Acer HomeMedia - (.Acer Inc..) [HKLM] -- {AA4BF92B-2AAF-11DA-9D78-000129760D75}
O42 - Logiciel: Acer HomeMedia Connect - (.Acer Inc..) [HKLM] -- {132888AE-EF67-41C5-BCA2-7D5D2488AB63}
O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}
O42 - Logiciel: Acer SlideShow DVD - (.Acer Inc..) [HKLM] -- {41581EF5-45A7-11DA-9D78-000129760D75}
O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35}
O42 - Logiciel: Acer VideoMagician - (.Acer Inc..) [HKLM] -- {F79A208D-D929-11D9-9D77-000129760D75}
O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36}
O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643}
O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Ancestrologie 2009 - (.PCM.) [HKLM] -- Ancestrologie_is1
O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
O42 - Logiciel: AxCrypt 1.7.2126.0 - (.Axantum Software AB.) [HKLM] -- {E4C1DBF1-67D9-4973-9DEC-677E695E7CE0}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Clean Virus MSN - (.AxBx.) [HKLM] -- Clean Virus MSN_is1
O42 - Logiciel: ClickTray Calendar - (.Pas de propriétaire.) [HKLM] -- ClickTray Calendar_is1
O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}
O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}
O42 - Logiciel: EPSON Copy Utility 3 - (.Pas de propriétaire.) [HKLM] -- {67EDD823-135A-4D59-87BD-950616D6E857}
O42 - Logiciel: EPSON Easy Photo Print - (.Pas de propriétaire.) [HKLM] -- {BC69DDB8-4840-4D9B-BB31-0D4DB2BA1312}
O42 - Logiciel: EPSON File Manager - (.Pas de propriétaire.) [HKLM] -- {E86BC406-944E-41F6-ADE6-2C136734C96B}
O42 - Logiciel: EPSON Logiciel imprimante - (.Pas de propriétaire.) [HKLM] -- EPSON Printer and Utilities
O42 - Logiciel: EPSON Scan - (.Pas de propriétaire.) [HKLM] -- EPSON Scanner
O42 - Logiciel: EPSON Scan Assistant - (.Pas de propriétaire.) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}
O42 - Logiciel: EPSON Web-To-Page - (.Pas de propriétaire.) [HKLM] -- {7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}
O42 - Logiciel: ESDX4000_4050_CX3900 - (.Pas de propriétaire.) [HKLM] -- ESDX4000_4050_CX3900
O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC}
O42 - Logiciel: FileZilla Client 3.3.5.1 - (.Pas de propriétaire.) [HKLM] -- FileZilla Client
O42 - Logiciel: Firebird 2.1.3.18185 (Win32) - (.Firebird Project.) [HKLM] -- FBDBServer_2_1_is1
O42 - Logiciel: France Bleu 1.1.1 - (.Radio France.) [HKLM] -- France Bleu_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome
O42 - Logiciel: Généatique 2006 - (.CDIP.) [HKLM] -- {86D9FA99-F4BF-4D8F-B2CB-8E550C32BCBE}_is1
O42 - Logiciel: Généatique 2009 - (.CDIP.) [HKLM] -- {CEE31344-B227-4EE3-9D0C-74B7A52AC82E}_is1
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: IcoFX 1.6.4 - (.Pas de propriétaire.) [HKLM] -- IcoFX_is1
O42 - Logiciel: IncrediMail - (.IncrediMail.) [HKLM] -- {5E97F3BD-CDDC-4188-9D98-532E14FABB5D}
O42 - Logiciel: IncrediMail 2.0 - (.IncrediMail Ltd..) [HKLM] -- IncrediMail
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3
O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8}
O42 - Logiciel: Java(TM) 6 Update 22 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216016FF}
O42 - Logiciel: MSI to redistribute MS VS2005 CRT libraries - (.The Firebird Project.) [HKLM] -- {A8D93648-9F7F-407D-915C-62044644C3DA}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.1.1800 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Meteo Fusion 1.5.9.11 - (.Eggiz.) [HKLM] -- Meteo Fusion _is1
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
O42 - Logiciel: Microsoft Office XP Professional - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Office XP Professional avec FrontPage - (.Microsoft Corporation.) [HKLM] -- {9028040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Picture It! Express 7.0 - (.Microsoft Corporation.) [HKLM] -- {369B36BE-3D64-4641-9AEA-808D436FE130}
O42 - Logiciel: Microsoft Publisher 2002 - (.Microsoft Corporation.) [HKLM] -- {9119040C-6000-11D3-8CFE-0050048383C9}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 - (.Microsoft Corporation.) [HKLM] -- {E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C}
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack
O42 - Logiciel: Mozilla Firefox (3.6.18) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.18)
O42 - Logiciel: NTI Backup NOW! 4.7 - (.NewTech Infosystems.) [HKLM] -- {67ADE9AF-5CD9-4089-8825-55DE4B366799}
O42 - Logiciel: NTI CD & DVD-Maker - (.NewTech Infosystems.) [HKLM] -- InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}
O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: PDF-XChange 3 - (.Tracker Software.) [HKLM] -- PDF-XChange 3_is1
O42 - Logiciel: PIF DESIGNER - (.Pas de propriétaire.) [HKLM] -- {B90450DF-E781-46FD-B1F1-0C86DA40E443}
O42 - Logiciel: Paint.NET v3.5.8 - (.dotPDN LLC.) [HKLM] -- {9CF4A37B-A8C4-44D7-8C53-13B9D9594BB2}
O42 - Logiciel: Photo Notifier and Animation Creator - (.IncrediMail Ltd..) [HKLM] -- Photo Notifier and Animation Creator
O42 - Logiciel: Photo Notifier and Animation Creator - (.Nom de votre société.) [HKLM] -- {6B7F28D4-160E-40C6-B7C8-5EC6B9734DA7}
O42 - Logiciel: PhotoMail Maker - (.IncrediMail Ltd..) [HKLM] -- PhotoMail
O42 - Logiciel: PhotoMail Maker - (.Nom de votre société.) [HKLM] -- {75AE8014-1184-4BC0-B279-C879540719EE}
O42 - Logiciel: PowerpointImageExtractor - (.Pas de propriétaire.) [HKLM] -- PowerpointImageExtractor_is1
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: RegSupreme - (.Macecraft Software.) [HKLM] -- RegSupreme_is1
O42 - Logiciel: Revo Uninstaller 1.92 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2478663
O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870
O42 - Logiciel: TomTom HOME 2.8.0.2146 - (.TomTom.) [HKLM] -- TomTom HOME
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: Tomtomax Maxi-Box V2.0.24 - (.Tomtomax et KoakDesign.) [HKLM] -- {A10F672B-01C4-498F-ADBD-3E5B144284B7}_is1
O42 - Logiciel: TuneUp Utilities 2007 - (.TuneUp Software.) [HKLM] -- {C8BB4912-12D9-42AE-B571-E580D8CD1B5B}
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: Vista Codec Package - (..) [HKLM] -- {F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}
O42 - Logiciel: Wallpaper - (.Silver76.) [HKLM] -- Wallpaper
O42 - Logiciel: Webcam Essentiel B Glob'mobile - (.Sonix.) [HKLM] -- {ECD03DA7-5952-406A-8156-5F0C93618D1F}
O42 - Logiciel: WinAncetre - (.Pas de propriétaire.) [HKLM] -- WinAncetre 5.2
O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B}
O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D}
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}

Publicité
Petit Louis
 Posté le 22/07/2011 à 20:55 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

---\\ HKCU & HKLM Software Keys
[HKCU\Software\7-Zip]
[HKCU\Software\ABBYY]
[HKCU\Software\ALWIL Software]
[HKCU\Software\ATI Technologies Inc.]
[HKCU\Software\AVAST Software]
[HKCU\Software\Acer]
[HKCU\Software\Ad-Remover]
[HKCU\Software\Adobe]
[HKCU\Software\AncestrArbres]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2]
[HKCU\Software\AppDataLow\Software\Macromedia]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\Orange]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Axantum]
[HKCU\Software\Axon Data]
[HKCU\Software\Babylon]
[HKCU\Software\CDIP]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CoreVorbis]
[HKCU\Software\CyberLink]
[HKCU\Software\EPSON]
[HKCU\Software\Foxit Software]
[HKCU\Software\GNU]
[HKCU\Software\Gabest]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\IM]
[HKCU\Software\IZSoftware]
[HKCU\Software\ImInstaller]
[HKCU\Software\IncrediMail]
[HKCU\Software\JEDI-VCL]
[HKCU\Software\Jasc]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lavalys]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\NewTech Infosystems]
[HKCU\Software\ODBC]
[HKCU\Software\Orange]
[HKCU\Software\Paint.NET]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Radio France]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\SUPERAntiSpyware.com]
[HKCU\Software\Softonic]
[HKCU\Software\TomTom]
[HKCU\Software\Tracker Software]
[HKCU\Software\Trolltech]
[HKCU\Software\TuneUp]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\VSRevoGroup]
[HKCU\Software\Xtralog]
[HKCU\Software\YB]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\kde.org]
[HKCU\Software\madFlac]
[HKCU\Software\shockwave.com]
[HKLM\Software\ABBYY]
[HKLM\Software\ALWIL Software]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\AVAST Software]
[HKLM\Software\Acer]
[HKLM\Software\Adobe]
[HKLM\Software\AppDataLow]
[HKLM\Software\Axantum]
[HKLM\Software\Axon Data]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\CyberLink]
[HKLM\Software\EPSON]
[HKLM\Software\EliaShim]
[HKLM\Software\FileZilla 3]
[HKLM\Software\Firebird Project]
[HKLM\Software\Foxit Software]
[HKLM\Software\GNU]
[HKLM\Software\Google]
[HKLM\Software\HaaliMkx]
[HKLM\Software\IZSoftware]
[HKLM\Software\ImInstaller]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\JGsoft]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\LightScribe]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Martin Soft]
[HKLM\Software\MimarSinan]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NewTech Infosystems]
[HKLM\Software\ODBC]
[HKLM\Software\Orange]
[HKLM\Software\Paint.NET]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SONIX]
[HKLM\Software\SUPERAntiSpyware.com]
[HKLM\Software\Senfer]
[HKLM\Software\Services]
[HKLM\Software\Sonic]
[HKLM\Software\SymNRT]
[HKLM\Software\TomTom]
[HKLM\Software\Tracker Software]
[HKLM\Software\TuneUp]
[HKLM\Software\Windows]
[HKLM\Software\Yahoo]
[HKLM\Software\illiminable]
[HKLM\Software\mozilla.org]
[HKLM\Software\muvee Technologies]
[HKLM\Software\webtogo]



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 14/08/2010 - 10:56:42 - [3094515] ----D- C:\Program Files\7-Zip
O43 - CFD: 06/05/2007 - 21:33:42 - [513711356] ----D- C:\Program Files\Acer Arcade Live
O43 - CFD: 11/09/2009 - 10:47:38 - [364544] ----D- C:\Program Files\Acer Inc
O43 - CFD: 06/05/2007 - 21:22:48 - [12683094] ----D- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD: 22/07/2011 - 20:13:18 - [125086882] ----D- C:\Program Files\Ad-Remover
O43 - CFD: 12/08/2010 - 17:49:32 - [154090505] ----D- C:\Program Files\Alwil Software
O43 - CFD: 22/07/2011 - 11:28:56 - [74612847] ----D- C:\Program Files\Ancestrologie
O43 - CFD: 11/09/2009 - 10:39:48 - [14403668] ----D- C:\Program Files\ATI
O43 - CFD: 11/09/2009 - 10:41:24 - [200817172] ----D- C:\Program Files\ATI Technologies
O43 - CFD: 03/03/2011 - 14:49:20 - [2392759] ----D- C:\Program Files\Axantum
O43 - CFD: 12/10/2010 - 08:16:52 - [18788353] ----D- C:\Program Files\AxBx
O43 - CFD: 15/07/2011 - 10:53:16 - [3901432] ----D- C:\Program Files\CCleaner
O43 - CFD: 09/01/2011 - 12:59:04 - [10107640] ----D- C:\Program Files\ClickTray Calendar
O43 - CFD: 19/10/2010 - 15:43:00 - [567174930] ----D- C:\Program Files\Common Files
O43 - CFD: 06/05/2007 - 21:30:44 - [4655152] ----D- C:\Program Files\CyberLink
O43 - CFD: 12/08/2010 - 19:51:30 - [2056672] ----D- C:\Program Files\Eggiz
O43 - CFD: 21/09/2009 - 13:14:14 - [143615728] ----D- C:\Program Files\epson
O43 - CFD: 23/02/2011 - 10:06:38 - [2394144] ----D- C:\Program Files\Feedback Tool
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\Program Files\Fichiers communs
O43 - CFD: 08/01/2011 - 12:27:40 - [16451399] ----D- C:\Program Files\FileZilla FTP Client
O43 - CFD: 12/09/2009 - 19:04:08 - [18510084] ----D- C:\Program Files\Firebird
O43 - CFD: 19/07/2011 - 09:49:12 - [0] ----D- C:\Program Files\Foxit Software
O43 - CFD: 19/03/2011 - 10:11:30 - [4915511] ----D- C:\Program Files\France Bleu
O43 - CFD: 17/09/2009 - 08:28:14 - [293828252] ----D- C:\Program Files\Geneatique2006
O43 - CFD: 17/09/2009 - 08:49:08 - [228381375] ----D- C:\Program Files\Geneatique2009
O43 - CFD: 12/09/2009 - 10:31:08 - [3839420] ----D- C:\Program Files\IcoFX 1.6
O43 - CFD: 19/07/2011 - 13:24:36 - [27667014] ----D- C:\Program Files\IncrediMail
O43 - CFD: 21/09/2009 - 13:21:42 - [67479258] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 15/07/2011 - 10:44:40 - [6151545] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 22/07/2011 - 20:12:32 - [66425366] ----D- C:\Program Files\Jasc Software Inc
O43 - CFD: 19/10/2010 - 15:42:20 - [88594720] ----D- C:\Program Files\Java
O43 - CFD: 08/01/2011 - 15:47:04 - [1779786] ----D- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 16/07/2011 - 12:09:30 - [7099500] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 10/02/2011 - 10:32:18 - [752723] ----D- C:\Program Files\Microsoft
O43 - CFD: 13/09/2009 - 09:40:10 - [800662] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 21/09/2009 - 12:31:00 - [242387757] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 19/09/2009 - 17:24:12 - [26689688] ----D- C:\Program Files\Microsoft Picture It! 7
O43 - CFD: 15/07/2011 - 10:46:02 - [38411899] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 12/08/2010 - 19:48:04 - [150650442] ----D- C:\Program Files\Microsoft Works
O43 - CFD: 12/08/2010 - 19:45:26 - [15715] ----D- C:\Program Files\Microsoft.NET
O43 - CFD: 12/08/2010 - 20:08:14 - [99342446] ----D- C:\Program Files\Movie Maker
O43 - CFD: 15/07/2011 - 21:13:08 - [29910815] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild
O43 - CFD: 11/09/2009 - 12:50:04 - [0] ----D- C:\Program Files\MSXML 4.0
O43 - CFD: 06/05/2007 - 21:18:02 - [49022275] ----D- C:\Program Files\NewTech Infosystems
O43 - CFD: 16/07/2011 - 12:01:50 - [31080925] ----D- C:\Program Files\Paint.NET
O43 - CFD: 07/01/2011 - 13:47:40 - [2757956] ----D- C:\Program Files\Photo Notifier and Animation Creator
O43 - CFD: 12/08/2010 - 18:13:06 - [1873554] ----D- C:\Program Files\PhotoMail Maker
O43 - CFD: 14/08/2010 - 11:48:36 - [1757288] ----D- C:\Program Files\PowerpointImageExtractor_V1_2
O43 - CFD: 06/05/2007 - 21:05:50 - [14858316] ----D- C:\Program Files\Realtek
O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 13/08/2010 - 15:48:24 - [7086198] ----D- C:\Program Files\RegSupreme
O43 - CFD: 12/09/2009 - 10:29:12 - [0] ----D- C:\Program Files\TomTom DesktopSuite
O43 - CFD: 12/09/2009 - 10:38:06 - [50469509] ----D- C:\Program Files\TomTom HOME 2
O43 - CFD: 12/09/2009 - 10:38:14 - [22486] ----D- C:\Program Files\TomTom International B.V
O43 - CFD: 26/02/2011 - 11:25:18 - [1950164] ----D- C:\Program Files\Tomtomax Maxi-Box
O43 - CFD: 11/09/2009 - 17:30:36 - [16610615] ----D- C:\Program Files\Tracker Software
O43 - CFD: 11/09/2009 - 14:41:58 - [25940251] ----D- C:\Program Files\TuneUp Utilities 2007
O43 - CFD: 02/11/2006 - 15:01:56 - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 12/09/2009 - 15:45:30 - [48858307] ----D- C:\Program Files\VistaCodecPack
O43 - CFD: 12/08/2010 - 17:30:08 - [6812742] ----D- C:\Program Files\VS Revo Group
O43 - CFD: 11/09/2009 - 14:36:18 - [315523] ----D- C:\Program Files\Wallpaper
O43 - CFD: 09/01/2011 - 12:59:06 - [537808] ----D- C:\Program Files\WinAncetre
O43 - CFD: 16/09/2009 - 15:49:54 - [1016832] ----D- C:\Program Files\Windows Calendar
O43 - CFD: 16/09/2009 - 15:49:54 - [2737152] ----D- C:\Program Files\Windows Collaboration
O43 - CFD: 16/09/2009 - 15:49:52 - [4490624] ----D- C:\Program Files\Windows Defender
O43 - CFD: 16/09/2009 - 15:49:54 - [7084664] ----D- C:\Program Files\Windows Journal
O43 - CFD: 10/02/2011 - 10:32:12 - [45806173] ----D- C:\Program Files\Windows Live
O43 - CFD: 10/02/2011 - 10:32:00 - [245112] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 15/07/2011 - 10:44:40 - [9116344] ----D- C:\Program Files\Windows Mail
O43 - CFD: 14/10/2010 - 08:49:14 - [4498121] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 11/09/2009 - 10:32:56 - [7957544] ----D- C:\Program Files\Windows NT
O43 - CFD: 16/09/2009 - 15:49:54 - [13528738] ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD: 12/08/2010 - 20:08:18 - [134144] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 24/02/2011 - 09:32:00 - [6527558] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 22/07/2011 - 20:44:06 - [4047867] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 11/09/2009 - 20:02:32 - [86016] ----D- C:\Program Files\Common Files\Designer
O43 - CFD: 11/09/2009 - 14:51:20 - [12692156] ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD: 19/10/2010 - 15:43:00 - [1243079] ----D- C:\Program Files\Common Files\Java
O43 - CFD: 06/05/2007 - 21:17:32 - [7178034] ----D- C:\Program Files\Common Files\LightScribe
O43 - CFD: 10/02/2011 - 10:32:06 - [390433226] ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 06/05/2007 - 21:17:14 - [9706600] ----D- C:\Program Files\Common Files\muvee Technologies
O43 - CFD: 06/05/2007 - 21:18:02 - [2290478] ----D- C:\Program Files\Common Files\NewTech Infosystems
O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 11/09/2009 - 18:07:48 - [24179451] ----D- C:\Program Files\Common Files\snpstd3
O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 11/09/2009 - 14:00:42 - [452776] ----D- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 16/09/2009 - 15:49:54 - [16393602] ----D- C:\Program Files\Common Files\System
O43 - CFD: 12/08/2010 - 17:59:28 - [51212410] ----D- C:\Program Files\Common Files\Windows Live
O43 - CFD: 14/09/2009 - 08:56:02 - [1108009] -SH-D- C:\Program Files\Common Files\WindowsLiveInstaller
O43 - CFD: 11/09/2009 - 14:39:14 - [9094656] ----D- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 12/08/2010 - 17:49:32 - [4815362] ----D- C:\ProgramData\Alwil Software
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Bureau
O43 - CFD: 06/05/2007 - 21:34:10 - [23529] ----D- C:\ProgramData\CyberLink
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Desktop
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 21/09/2009 - 12:51:52 - [443878] ----D- C:\ProgramData\EPSON
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Favoris
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Favorites
O43 - CFD: 08/01/2011 - 13:06:04 - [0] ----D- C:\ProgramData\Google
O43 - CFD: 19/02/2011 - 15:38:02 - [220] ----D- C:\ProgramData\IM
O43 - CFD: 19/02/2011 - 15:37:06 - [6452763] ----D- C:\ProgramData\IncrediMail
O43 - CFD: 11/09/2009 - 14:21:44 - [16520603] ----D- C:\ProgramData\Malwarebytes
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Menu Démarrer
O43 - CFD: 10/02/2011 - 10:11:16 - [213225586] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 11/09/2009 - 19:27:24 - [57028] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Modèles
O43 - CFD: 15/07/2011 - 09:19:46 - [1943089] ----D- C:\ProgramData\Orange
O43 - CFD: 07/01/2011 - 13:47:42 - [1029545] ----D- C:\ProgramData\Photo Notifier and Animation Creator
O43 - CFD: 12/08/2010 - 18:13:06 - [712167] ----D- C:\ProgramData\PhotoMail
O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Start Menu
O43 - CFD: 19/10/2010 - 15:43:00 - [119] ----D- C:\ProgramData\Sun
O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\ProgramData\SUPERAntiSpyware.com
O43 - CFD: 02/11/2006 - 15:02:06 - [0] -SH-D- C:\ProgramData\Templates
O43 - CFD: 12/09/2009 - 10:54:02 - [0] ----D- C:\ProgramData\TomTom
O43 - CFD: 11/09/2009 - 14:39:28 - [1492] ----D- C:\ProgramData\TuneUp Software
O43 - CFD: 21/09/2009 - 13:16:12 - [5081320] ----D- C:\ProgramData\UDL
O43 - CFD: 12/09/2009 - 15:44:10 - [19942400] ----D- C:\ProgramData\VistaCodecs
O43 - CFD: 10/01/2011 - 11:36:58 - [67] ----D- C:\ProgramData\WinAncetre
O43 - CFD: 14/09/2009 - 08:49:38 - [224508] ----D- C:\ProgramData\WLInstaller
O43 - CFD: 06/05/2007 - 21:22:50 - [6904815] ----D- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
O43 - CFD: 14/08/2010 - 11:31:48 - [3105610] ----D- C:\Users\Louis\AppData\Roaming\Adobe
O43 - CFD: 11/09/2009 - 20:23:24 - [8425708] ----D- C:\Users\Louis\AppData\Roaming\Ancestrologie
O43 - CFD: 18/07/2011 - 11:32:10 - [153] ----D- C:\Users\Louis\AppData\Roaming\EfficientPIM Free
O43 - CFD: 19/09/2009 - 21:14:14 - [512] ----D- C:\Users\Louis\AppData\Roaming\EPSON
O43 - CFD: 08/01/2011 - 12:27:52 - [14008] ----D- C:\Users\Louis\AppData\Roaming\FileZilla
O43 - CFD: 19/03/2011 - 10:30:02 - [769952] ----D- C:\Users\Louis\AppData\Roaming\France Bleu
O43 - CFD: 16/09/2009 - 11:11:10 - [23199473] ----D- C:\Users\Louis\AppData\Roaming\Généatique2009
O43 - CFD: 09/01/2011 - 12:59:14 - [28890] ----D- C:\Users\Louis\AppData\Roaming\IcoFX
O43 - CFD: 14/02/2011 - 19:38:44 - [21614] ----D- C:\Users\Louis\AppData\Roaming\Icones
O43 - CFD: 11/09/2009 - 10:37:32 - [0] ----D- C:\Users\Louis\AppData\Roaming\Identities
O43 - CFD: 11/09/2009 - 18:07:20 - [0] ----D- C:\Users\Louis\AppData\Roaming\InstallShield
O43 - CFD: 11/09/2009 - 10:38:52 - [4658] ----D- C:\Users\Louis\AppData\Roaming\Macromedia
O43 - CFD: 11/09/2009 - 14:21:50 - [6336] ----D- C:\Users\Louis\AppData\Roaming\Malwarebytes
O43 - CFD: 02/11/2006 - 14:37:36 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Center Programs
O43 - CFD: 08/01/2011 - 19:07:44 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Player Classic
O43 - CFD: 18/07/2011 - 10:34:46 - [4807379] -S--D- C:\Users\Louis\AppData\Roaming\Microsoft
O43 - CFD: 15/04/2011 - 08:42:00 - [5451766] ----D- C:\Users\Louis\AppData\Roaming\Mozilla
O43 - CFD: 21/07/2011 - 12:36:44 - [260] ----D- C:\Users\Louis\AppData\Roaming\PhotoFiltre
O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\Users\Louis\AppData\Roaming\SUPERAntiSpyware.com
O43 - CFD: 14/08/2010 - 15:08:14 - [8704] ----D- C:\Users\Louis\AppData\Roaming\Template
O43 - CFD: 12/09/2009 - 10:52:46 - [31743994] ----D- C:\Users\Louis\AppData\Roaming\TomTom
O43 - CFD: 11/09/2009 - 14:41:40 - [165527] ----D- C:\Users\Louis\AppData\Roaming\TuneUp Software
O43 - CFD: 08/01/2011 - 15:52:30 - [75985] ----D- C:\Users\Louis\AppData\Roaming\vlc
O43 - CFD: 11/09/2009 - 15:10:16 - [5766769] ----D- C:\Users\Louis\AppData\Roaming\Wallpaper
O43 - CFD: 14/08/2010 - 11:32:12 - [98138] ----D- C:\Users\Louis\AppData\Local\Adobe
O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Application Data
O43 - CFD: 12/08/2010 - 20:07:14 - [5115] ----D- C:\Users\Louis\AppData\Local\Eggiz
O43 - CFD: 15/07/2011 - 19:01:42 - [208491916] ----D- C:\Users\Louis\AppData\Local\Google
O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Historique
O43 - CFD: 19/02/2011 - 15:39:40 - [144400638] ----D- C:\Users\Louis\AppData\Local\IM
O43 - CFD: 08/01/2011 - 12:13:16 - [209995239] ----D- C:\Users\Louis\AppData\Local\Microsoft
O43 - CFD: 11/09/2009 - 10:49:22 - [102185467] ----D- C:\Users\Louis\AppData\Local\Mozilla
O43 - CFD: 16/03/2011 - 20:30:50 - [1466182] ----D- C:\Users\Louis\AppData\Local\Orange
O43 - CFD: 22/07/2011 - 10:09:28 - [0] ----D- C:\Users\Louis\AppData\Local\Paint.NET
O43 - CFD: 11/09/2009 - 10:37:46 - [0] ----D- C:\Users\Louis\AppData\Local\PowerCinema
O43 - CFD: 22/07/2011 - 20:23:20 - [14599780] ----D- C:\Users\Louis\AppData\Local\Temp
O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Temporary Internet Files
O43 - CFD: 12/09/2009 - 10:52:46 - [1888442] ----D- C:\Users\Louis\AppData\Local\TomTom
O43 - CFD: 14/08/2010 - 15:09:02 - [44976448] ----D- C:\Users\Louis\AppData\Local\VirtualStore
O43 - CFD: 13/09/2009 - 08:58:26 - [10002] ----D- C:\Users\Louis\AppData\Local\WindowsUpdate



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.FB0B86BCE095899E10320B04862395A8] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1495948]
O44 - LFC:[MD5.E775B5BDB6545236DFCBD595FA2908A8] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfc009.dat [103872]
O44 - LFC:[MD5.BDBC643F06C398C483B8777F79E304F0] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [126420]
O44 - LFC:[MD5.D2591C6A65EAA06A71267C3180B8EA68] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfh009.dat [595798]
O44 - LFC:[MD5.F9940ADD46C583B349DEEB28746C54B2] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [678804]
O44 - LFC:[MD5.EF8F082E544C4ECD801245F0BDACEAFB] - 22/07/2011 - 19:25:06 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1974049]
O44 - LFC:[MD5.D7535B4A18673C603761D844079165CC] - 22/07/2011 - 19:21:29 ---A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.122C5CDB6B737F32BEB2426186DCB361] - 22/07/2011 - 19:19:51 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [5363]
O44 - LFC:[MD5.369E919BF56ACA0982FE184EE315AA65] - 22/07/2011 - 19:17:37 ---A- . (...) -- C:\Ad-Report-SCAN[2].txt [5069]
O44 - LFC:[MD5.21EF3EAD1FB2AB77B3FBB31BCF5D3B8F] - 22/07/2011 - 19:14:10 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [5004]
O44 - LFC:[MD5.83EEB82E9ED7098EBC0C083C6BFD3116] - 17/07/2011 - 09:55:11 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [404640]
O44 - LFC:[MD5.7009400CC9C1BCA4C29CFFAEFAFAE424] - 15/07/2011 - 09:47:17 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [379800]
O44 - LFC:[MD5.F99DDD5E4F807B43E8B85DCD5F4B59EA] - 15/07/2011 - 09:12:26 ---A- . (.Microsoft - Legacy GDF resource DLL.) -- C:\Windows\System32\GameUXLegacyGDFs.dll [4240384]
O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 15/07/2011 - 08:34:38 ---A- . (...) -- C:\Windows\System32\config.nt [2577]
O44 - LFC:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [22712]
O44 - LFC:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [41272]
O44 - LFC:[MD5.2658AF3FBB06D7B5C731F9CC7CBFC1B3] - 04/07/2011 - 12:43:53 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [40112]
O44 - LFC:[MD5.C2E576B23D3969989AF90EF76B2979EA] - 04/07/2011 - 12:43:51 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [199304]
O44 - LFC:[MD5.17230708A2028CD995656DF455F2E303] - 04/07/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [441176]
O44 - LFC:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 04/07/2011 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [309848]
O44 - LFC:[MD5.984CFCE2168286C2511695C2F9621475] - 04/07/2011 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [43608]
O44 - LFC:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 04/07/2011 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [25432]
O44 - LFC:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 04/07/2011 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [54104]
O44 - LFC:[MD5.861CB512E4E850E87DD2316F88D69330] - 04/07/2011 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\drivers\aswFsBlk.sys [19544]



---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.6352564B43E607E8A347A780E878C54D] - 11/09/2009 - 15:35:58 ---A- - C:\Windows\Prefetch\Layout.ini
O45 - LFCP:[MD5.FEFCBCA2EA4142BF390369FAB9CE4B70] - 11/09/2009 - 18:52:55 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-820133507-2522050262-2837998324-1000.db
O45 - LFCP:[MD5.17C0DACBBB464A3D121E7FC1D0BD8F59] - 11/09/2009 - 18:52:56 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-820133507-2522050262-2837998324-1000.db
O45 - LFCP:[MD5.4C6A729D7BF275827092C555969B3311] - 11/09/2009 - 19:20:12 ---A- - C:\Windows\Prefetch\AgRobust.db
O45 - LFCP:[MD5.FDF114981725DAB9E7DC043D05039080] - 11/09/2009 - 19:20:12 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin
O45 - LFCP:[MD5.9CC0195D21322564EE4959AB99EA5EF9] - 11/09/2009 - 19:20:17 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db
O45 - LFCP:[MD5.22F7F87B76039291A9393372D1C4A408] - 11/09/2009 - 19:20:18 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db
O45 - LFCP:[MD5.367299360A1DD10D561499FB55A82929] - 11/09/2009 - 19:20:20 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db
O45 - LFCP:[MD5.236DBBC9DC0A61BB4CA0BA0BB3EC35BE] - 15/07/2011 - 16:31:18 ---A- - C:\Windows\Prefetch\CHROME.EXE-D8662730.pf
O45 - LFCP:[MD5.D5822DE5F3974DCB43880A64CBA8D987] - 15/07/2011 - 17:11:21 ---A- - C:\Windows\Prefetch\AVAST.SETUP-3DA1C849.pf
O45 - LFCP:[MD5.26BE5BDD30F2B71BCD2553D26D24A9ED] - 15/07/2011 - 17:21:59 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-C5E2284F.pf
O45 - LFCP:[MD5.8AD6C9FCC2E59C90256F86C7CB04332B] - 15/07/2011 - 17:26:27 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-BAD6BD53.pf
O45 - LFCP:[MD5.956567AC19905E096311938868424153] - 15/07/2011 - 18:13:59 ---A- - C:\Windows\Prefetch\IMNOTFY.EXE-E138605A.pf
O45 - LFCP:[MD5.74C812B3E6B6CE3BB395659594F2CFE6] - 15/07/2011 - 18:51:54 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
O45 - LFCP:[MD5.E7D5EAA1E994EC695C89B52C38849B09] - 15/07/2011 - 18:51:59 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf
O45 - LFCP:[MD5.B1516673ABAEC4A1238604911896F982] - 15/07/2011 - 18:59:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-9707038B.pf
O45 - LFCP:[MD5.412ADBD0D1DA276FE3EFF465A0BF6D19] - 15/07/2011 - 19:13:08 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-7226D1F8.pf
O45 - LFCP:[MD5.631404BC8965A4B5F31FB6D63E81E24C] - 15/07/2011 - 19:19:31 ---A- - C:\Windows\Prefetch\VERCLSID.EXE-7C52E31C.pf
O45 - LFCP:[MD5.7680AFF289B9199CF55A782BD78378E1] - 15/07/2011 - 19:20:06 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
O45 - LFCP:[MD5.46A512A3CD07E38823DD3406D50A71EE] - 15/07/2011 - 19:22:37 ---A- - C:\Windows\Prefetch\IMLPP.EXE-8B4B9E1E.pf
O45 - LFCP:[MD5.54816838C19C5F32D17FE46AA0FA8D85] - 15/07/2011 - 19:23:21 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-A606B53C.pf
O45 - LFCP:[MD5.2269135E81C0E0BF0AB8D48DEA927236] - 15/07/2011 - 19:36:45 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf
O45 - LFCP:[MD5.FFB24A099C675A5069CB7355CA06D7C2] - 15/07/2011 - 19:40:18 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
O45 - LFCP:[MD5.EFD946B74FB375A5EBA398BA6EED30DE] - 15/07/2011 - 19:42:07 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
O45 - LFCP:[MD5.03C2F1ACB157053D59D2228E44D88EB1] - 15/07/2011 - 19:42:07 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
O45 - LFCP:[MD5.151E46A619A024B8014D50E50D6A9F54] - 16/07/2011 - 19:08:50 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf
O45 - LFCP:[MD5.668A9815D9CDD3058FF4271AF1E942ED] - 16/07/2011 - 19:08:51 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf
O45 - LFCP:[MD5.9C62DAF566503E370C9E942F8F9F1BDD] - 16/07/2011 - 19:16:08 ---A- - C:\Windows\Prefetch\PDFXCVIEW.EXE-B5445CD8.pf
O45 - LFCP:[MD5.51B73585BC98CB88C9FFAD27BFC940C1] - 16/07/2011 - 19:22:37 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
O45 - LFCP:[MD5.65016F66CFDC2FDDEFCC73026D47F697] - 16/07/2011 - 19:23:16 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-272FF9F7.pf
O45 - LFCP:[MD5.1016DABAD14AB5C6516314B8702CE22A] - 16/07/2011 - 19:24:08 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf
O45 - LFCP:[MD5.911227E484A7971ACD930E0F4C61FBD2] - 16/07/2011 - 19:26:15 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
O45 - LFCP:[MD5.D3EA469C6E0FAE6E5D1313ED96E0CEC1] - 16/07/2011 - 19:34:00 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
O45 - LFCP:[MD5.5EEBF5932EB6D09AF4AADBBDE6960BE5] - 16/07/2011 - 19:34:36 ---A- - C:\Windows\Prefetch\WERCON.EXE-E36BD04E.pf
O45 - LFCP:[MD5.E431C3E0A11F89A6AFBC9F5AAA59C0BA] - 16/07/2011 - 19:34:36 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
O45 - LFCP:[MD5.ECFDF668D8FD9A77B0FD9B27702EAFE6] - 17/07/2011 - 19:08:31 ---A- - C:\Windows\Prefetch\REVOUNINSTALLER.EXE-34C92DCE.pf
O45 - LFCP:[MD5.B4308A9D74FE3ED2FAE792AF755F57EC] - 17/07/2011 - 19:09:14 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf
O45 - LFCP:[MD5.CA03D6D6B1510EB518FEE324E0A8AF5F] - 18/07/2011 - 08:43:03 ---A- - C:\Windows\Prefetch\OFFICELIVESIGNIN.EXE-B83AEDE8.pf
O45 - LFCP:[MD5.AD4B4003775C9614CE9EA750EE8D793F] - 18/07/2011 - 08:43:03 ---A- - C:\Windows\Prefetch\WINWORD.EXE-1A9ECF17.pf
O45 - LFCP:[MD5.7EB236EADC822098FE0528DA6F9B8131] - 18/07/2011 - 19:08:51 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-B2EB1806.pf
O45 - LFCP:[MD5.D31198BFD28283273C8C21402571B35C] - 19/07/2011 - 08:42:42 ---A- - C:\Windows\Prefetch\SF.BIN-1D41D4C0.pf
O45 - LFCP:[MD5.4180AAFFF3151746A146D5E981B3228A] - 19/07/2011 - 08:44:33 ---A- - C:\Windows\Prefetch\FOXITREADER501.0523_ENU_SETUP-DF77E53D.pf
O45 - LFCP:[MD5.F8DB146830B65BE10E2E3B562CD5F0A2] - 19/07/2011 - 12:20:58 ---A- - C:\Windows\Prefetch\INCREDIMAIL_INSTALL.EXE-D040FC28.pf
O45 - LFCP:[MD5.92CA4B2AF038DE46316150ED6699A51C] - 19/07/2011 - 12:23:42 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf
O45 - LFCP:[MD5.399092715ECC2D8D7F56D0BF23A0DAA4] - 19/07/2011 - 12:23:58 ---A- - C:\Windows\Prefetch\IMSETUP.EXE-F787A877.pf
O45 - LFCP:[MD5.B1E06E80EEBBBD0D6E89856EFFAD14D8] - 19/07/2011 - 12:24:37 ---A- - C:\Windows\Prefetch\IMPCNT.EXE-1B92DF1B.pf
O45 - LFCP:[MD5.3ACFD7F82991762FFB0C8F8531697E5C] - 19/07/2011 - 12:24:58 ---A- - C:\Windows\Prefetch\IMAPP.EXE-005076D7.pf
O45 - LFCP:[MD5.2A8A11E2429877DB1227F2DFABA4D91E] - 19/07/2011 - 14:20:33 ---A- - C:\Windows\Prefetch\DM2005.EXE-8320FB18.pf
O45 - LFCP:[MD5.A172E654B11CAC54E39DA0442160582F] - 19/07/2011 - 16:00:11 ---A- - C:\Windows\Prefetch\SYSTEMOPTIMIZER.EXE-786B21EC.pf
O45 - LFCP:[MD5.EB44FD7D15FE4ABF64E5028BBC26E737] - 19/07/2011 - 16:00:16 ---A- - C:\Windows\Prefetch\REGISTRYCLEANER.EXE-14D750E3.pf
O45 - LFCP:[MD5.CEEA2A688DFC2DFA33F99234FF06AD0D] - 19/07/2011 - 16:31:18 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-BE04F3C6.pf
O45 - LFCP:[MD5.088489B04FA2F929E0AF6D1E1278CF5A] - 19/07/2011 - 17:59:00 ---A- - C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-E0F6B244.pf
O45 - LFCP:[MD5.574D5557D6F024F84877970642B6B4E9] - 19/07/2011 - 18:03:45 ---A- - C:\Windows\Prefetch\INCMAIL.EXE-8674A44D.pf
O45 - LFCP:[MD5.A136B2E7D09BA5DD88D6068FCEDAE7C1] - 19/07/2011 - 19:29:08 ---A- - C:\Windows\Prefetch\DFRGNTFS.EXE-7E4077FE.pf
O45 - LFCP:[MD5.79452DA04AB94B3CB7289F2D8B01626C] - 20/07/2011 - 07:05:55 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-A6251510.pf
O45 - LFCP:[MD5.38476D4A469696ADBB2F729819289770] - 20/07/2011 - 07:06:06 ---A- - C:\Windows\Prefetch\FBSERVER.EXE-10461801.pf
O45 - LFCP:[MD5.759C23EBE9E152F707B7D4C9D0F73833] - 20/07/2011 - 07:06:09 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf
O45 - LFCP:[MD5.72BFFC35E29BEA906F3282D42A53B8D1] - 20/07/2011 - 07:07:38 ---A- - C:\Windows\Prefetch\POWERPNT.EXE-127DE6B0.pf
O45 - LFCP:[MD5.1444E3A056133D47B525086C0BB81B24] - 20/07/2011 - 07:12:00 ---A- - C:\Windows\Prefetch\EFFICIENTPIMFREE.EXE-94A1FF9B.pf
O45 - LFCP:[MD5.59FE71C0A8C7E4497D9F6BD15A658C0E] - 20/07/2011 - 07:35:35 ---A- - C:\Windows\Prefetch\AXCRYPT.EXE-2444D19E.pf
O45 - LFCP:[MD5.98F62449404773AD83A56AD201780FD7] - 20/07/2011 - 07:38:42 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf
O45 - LFCP:[MD5.281595A34F354AEDC3A5967E7B4CC288] - 20/07/2011 - 08:19:51 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-BE819C5E.pf
O45 - LFCP:[MD5.D2FE24075C002513B22BD9180823C2CE] - 20/07/2011 - 09:31:27 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-61AE5AB6.pf
O45 - LFCP:[MD5.CC7753795EBC5C3CD17A81E37555AA1D] - 20/07/2011 - 09:34:27 ---A- - C:\Windows\Prefetch\PAINT SHOP PRO.EXE-6D922CE6.pf
O45 - LFCP:[MD5.805391E1236C516C7B696C02C9A6FAAD] - 20/07/2011 - 11:15:33 ---A- - C:\Windows\Prefetch\MCUPDATE.EXE-62E74733.pf
O45 - LFCP:[MD5.B2CBC9A949F3D01C5EA8920842CEE873] - 20/07/2011 - 11:16:37 ---A- - C:\Windows\Prefetch\HDWWIZ.EXE-AA21B149.pf
O45 - LFCP:[MD5.A2A6EED9BB30EA7177A159487FF1E416] - 20/07/2011 - 12:20:04 ---A- - C:\Windows\Prefetch\MBAM.EXE-305FF92C.pf
O45 - LFCP:[MD5.1111764D209C45C41EE9765DC2C079F4] - 20/07/2011 - 13:00:02 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf
O45 - LFCP:[MD5.6272DE0114ABCCE3CAF86B5808F2F24F] - 20/07/2011 - 13:41:04 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf
O45 - LFCP:[MD5.B9325A6FEC85EE5453287BE0D0931571] - 20/07/2011 - 14:20:27 ---A- - C:\Windows\Prefetch\SF.BIN-0AD14463.pf
O45 - LFCP:[MD5.C83987DAC8696417831EF4AD41B0D6F1] - 20/07/2011 - 16:40:09 ---A- - C:\Windows\Prefetch\CLEANMGR.EXE-E3C5E89D.pf
O45 - LFCP:[MD5.A423D9371803C99EB45F9675C445587B] - 20/07/2011 - 16:41:56 ---A- - C:\Windows\Prefetch\CCLEANER.EXE-D4D76A60.pf
O45 - LFCP:[MD5.EBCD2414DA147A5D436FB013588CF04E] - 20/07/2011 - 17:17:28 ---A- - C:\Windows\Prefetch\WAB.EXE-8608506E.pf
O45 - LFCP:[MD5.7F65E68AF6C16E7D7161C25D27520794] - 20/07/2011 - 17:17:46 ---A- - C:\Windows\Prefetch\EXCEL.EXE-39DBC5F2.pf
O45 - LFCP:[MD5.060AD7578C3595CD64C28DFAC0D09937] - 20/07/2011 - 18:57:57 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
O45 - LFCP:[MD5.20D7E43BCF5160490E92942C1BE3AEB2] - 20/07/2011 - 19:08:59 ---A- - C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf
O45 - LFCP:[MD5.D63DFC3C23A302A96993BB9F86F5AD67] - 20/07/2011 - 19:25:04 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf
O45 - LFCP:[MD5.8F1B9D55E6EF3EE023E09E90410088D8] - 21/07/2011 - 06:37:00 ---A- - C:\Windows\Prefetch\MBRWRWIN.EXE-2144233B.pf
O45 - LFCP:[MD5.702B8C2DB2CB3340E733E46E7DEFD3E5] - 21/07/2011 - 07:42:54 ---A- - C:\Windows\Prefetch\WALLPAPER.EXE-EF900736.pf
O45 - LFCP:[MD5.F7C92141FF44EC2EABD16564CB971477] - 21/07/2011 - 08:00:32 ---A- - C:\Windows\Prefetch\OPTIONALFEATURES.EXE-27133C71.pf
O45 - LFCP:[MD5.9AB673136A9CF6C41588B03814A1FC2E] - 21/07/2011 - 08:06:52 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-90FEEA06.pf
O45 - LFCP:[MD5.EF4C674636912B2993187101BD0264E3] - 21/07/2011 - 10:28:57 ---A- - C:\Windows\Prefetch\ANCESTROLOGIE.EXE-056B7B9C.pf
O45 - LFCP:[MD5.FA738E75599188182D0CCB49ED294819] - 21/07/2011 - 10:55:50 ---A- - C:\Windows\Prefetch\SNIPPINGTOOL.EXE-EFFDAFDE.pf
O45 - LFCP:[MD5.E27D3D9CFAFA7BD01EEFFA020C541427] - 21/07/2011 - 10:55:51 ---A- - C:\Windows\Prefetch\WISPTIS.EXE-595A3677.pf
O45 - LFCP:[MD5.44A420BFFB5CC8376F1A40E1BAAA2B3F] - 21/07/2011 - 11:36:44 ---A- - C:\Windows\Prefetch\PHOTOFILTRE.EXE-8B395AB3.pf
O45 - LFCP:[MD5.C38AD0CC91A4B7C211B5A4E41252DD0D] - 21/07/2011 - 12:36:14 ---A- - C:\Windows\Prefetch\7ZFM.EXE-69B8961D.pf
O45 - LFCP:[MD5.0CE2F76E6DAD87149A749F6A324C8D1B] - 21/07/2011 - 16:24:26 ---A- - C:\Windows\Prefetch\PHOTOFILTRE.EXE-2239B248.pf
O45 - LFCP:[MD5.4BFB63CE164C36A9BA28BC19A46FC241] - 21/07/2011 - 16:59:31 ---A- - C:\Windows\Prefetch\SF.BIN-FCD81500.pf
O45 - LFCP:[MD5.55E9B20477FD647C0DED50309BC3EDFA] - 21/07/2011 - 17:35:58 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf
O45 - LFCP:[MD5.0F8054B638128A1886A9D86C07335ED0] - 22/07/2011 - 07:03:21 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
O45 - LFCP:[MD5.8A432FF63A33ADAFC09A2BA93ED26AE5] - 22/07/2011 - 07:03:34 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-52973AC5.pf
O45 - LFCP:[MD5.4B7CE78C77C7BF75554F57A319DFB45A] - 22/07/2011 - 07:03:39 ---A- - C:\Windows\Prefetch\MPAS-FE_BD.EXE-BB62FD5E.pf
O45 - LFCP:[MD5.DBEC1A75AE72E71C3332B63A8D90F4D8] - 22/07/2011 - 09:09:32 ---A- - C:\Windows\Prefetch\PAINTDOTNET.EXE-018D93AD.pf
O45 - LFCP:[MD5.365C5CA0B6914B547B9BF880FFEA3530] - 22/07/2011 - 09:42:44 ---A- - C:\Windows\Prefetch\SF.BIN-D37CE76D.pf
O45 - LFCP:[MD5.2C7BC128E41AEB2369666F84266782CD] - 22/07/2011 - 12:33:13 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-9A5C9DC2.pf
O45 - LFCP:[MD5.1FCA7F4A814E502735A9E4BDC4858922] - 22/07/2011 - 12:33:16 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-F0A65855.pf
O45 - LFCP:[MD5.F2EC15E3728D87C29DB14D8910E9D8A4] - 22/07/2011 - 12:33:16 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-3A57E73F.pf
O45 - LFCP:[MD5.BAEB729E4C4137CDDD9B7ABE2C39637D] - 22/07/2011 - 12:34:21 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-D5BD1EFD.pf
O45 - LFCP:[MD5.B569E27F9ADFD5CA47C112A1C4E420CE] - 22/07/2011 - 12:34:23 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-D3E8C3B8.pf
O45 - LFCP:[MD5.69D7E4911FF4BE47DA9B541AB2285F6B] - 22/07/2011 - 12:34:23 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-C1812522.pf
O45 - LFCP:[MD5.ABC43A3842DA8060DC0ACA1A22203B0E] - 22/07/2011 - 12:36:24 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-64157AC9.pf
O45 - LFCP:[MD5.A32924074FE4FEBA8D790886B469EC23] - 22/07/2011 - 12:36:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-36ECC8CB.pf
O45 - LFCP:[MD5.2F79427164BC330A24A714BC90835485] - 22/07/2011 - 12:36:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-A0FE1546.pf
O45 - LFCP:[MD5.A2B434C1F8CF92366E42DB2DA0B7276F] - 22/07/2011 - 12:37:21 ---A- - C:\Windows\Prefetch\ZHPFIX.EXE-85222C4E.pf
O45 - LFCP:[MD5.0AC6BA9691CCCC80C12E546D8C7723E6] - 22/07/2011 - 13:07:37 ---A- - C:\Windows\Prefetch\MSIA15B.TMP-B58AC499.pf
O45 - LFCP:[MD5.41F237383148AD77DE9251DA2A3B9C51] - 22/07/2011 - 13:07:44 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-E69F695A.pf
O45 - LFCP:[MD5.132072093BE94C1D7F0A256056CB9288] - 22/07/2011 - 13:08:33 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
O45 - LFCP:[MD5.6CC94FBAE0EB10F2C6BFD58FF60A6D26] - 22/07/2011 - 16:29:53 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6A473D35.pf
O45 - LFCP:[MD5.D65D86C8CDF7C4E671B5EF3CC784D997] - 22/07/2011 - 17:03:04 ---A- - C:\Windows\Prefetch\AU_.EXE-60064AF1.pf
O45 - LFCP:[MD5.5A8BC945FAAE86041804A7F28A4DF8DD] - 22/07/2011 - 17:03:04 ---A- - C:\Windows\Prefetch\UN-SEAF.EXE-35D6DBCC.pf
O45 - LFCP:[MD5.2C622F8EE01BC1D0173B437E079D4DC2] - 22/07/2011 - 17:04:04 ---A- - C:\Windows\Prefetch\UNINS000.EXE-64E326BE.pf
O45 - LFCP:[MD5.F1A3A4CD74A89406A403109B570D48D5] - 22/07/2011 - 17:04:06 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-E90818D6.pf
O45 - LFCP:[MD5.CD3B13E292719EBE522B37B59C44B818] - 22/07/2011 - 17:25:20 ---A- - C:\Windows\Prefetch\E_FPREBEE.EXE-5D5BAEF6.pf
O45 - LFCP:[MD5.6E3CFD8A6E2D955BD823907221DA6BF3] - 22/07/2011 - 17:25:22 ---A- - C:\Windows\Prefetch\E_FAMTBEE.EXE-8D8F5DAD.pf
O45 - LFCP:[MD5.C65E86476A7821BF85A51B91AB6BDEF7] - 22/07/2011 - 17:25:23 ---A- - C:\Windows\Prefetch\E_FARNBEE.EXE-BAC0DB98.pf
O45 - LFCP:[MD5.902E68E5A8E3415ACBED48FC2E7966AA] - 22/07/2011 - 17:58:29 ---A- - C:\Windows\Prefetch\SHOCKWAVE_INSTALLER_FF.EXE-3ED9AD54.pf
O45 - LFCP:[MD5.3AE00E97324CAF91A4292689152099D0] - 22/07/2011 - 17:59:49 ---A- - C:\Windows\Prefetch\SETUP.EXE-74743FFB.pf
O45 - LFCP:[MD5.E652448A15E9478D8EE71F596297F724] - 22/07/2011 - 17:59:52 ---A- - C:\Windows\Prefetch\SWDNLD.EXE-9A093387.pf
O45 - LFCP:[MD5.E71DD90AB2C75AC4D7AA3479DFE2D5F8] - 22/07/2011 - 18:00:49 ---A- - C:\Windows\Prefetch\SETUP.EXE-A2073B77.pf
O45 - LFCP:[MD5.0E9EE605B73793740B48B739FEB4993F] - 22/07/2011 - 18:00:59 ---A- - C:\Windows\Prefetch\SWHELPER_1160626.EXE-BC9DC39B.pf
O45 - LFCP:[MD5.81EEB3E0D0C7E7730E4AACCC569F0FA7] - 22/07/2011 - 18:52:04 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6BCB9FAA.pf
O45 - LFCP:[MD5.25DF85BCAA5D4D68FB4F4D18621EAE85] - 22/07/2011 - 19:13:16 ---A- - C:\Windows\Prefetch\AD-R.EXE-10401ADF.pf
O45 - LFCP:[MD5.24C03EB7836FBB2C6ACE2BC3DF36AA4A] - 22/07/2011 - 19:18:49 ---A- - C:\Windows\Prefetch\MAIN.EXE-6B3CA411.pf
O45 - LFCP:[MD5.99A71C5956035F4C7779C35806A0AA8C] - 22/07/2011 - 19:18:56 ---A- - C:\Windows\Prefetch\ERUNT.EXE-0F94B3E0.pf
O45 - LFCP:[MD5.8A5727153A7C35704E1D4EAA95A3E40D] - 22/07/2011 - 19:23:22 ---A- - C:\Windows\Prefetch\MFPMP.EXE-26F35380.pf
O45 - LFCP:[MD5.D2F925F581E732FF04F30011B1BEC3C8] - 22/07/2011 - 19:30:04 ---A- - C:\Windows\Prefetch\CONIME.EXE-9781FD5F.pf
O45 - LFCP:[MD5.D569DE27DEC65A2295FAF9AEF1EDB3A6] - 22/07/2011 - 19:31:21 ---A- - C:\Windows\Prefetch\LADS.EXE-3D3801BD.pf
O45 - LFCP:[MD5.65F1DAD155BD7B70B7A66FD420AF1440] - 22/07/2011 - 19:31:24 ---A- - C:\Windows\Prefetch\SETACL.EXE-ED98B555.pf
O45 - LFCP:[MD5.389EF483AA170CB8CE168E5C8842EAC5] - 22/07/2011 - 19:31:24 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-7FBD134E.pf
O45 - LFCP:[MD5.359730DB55DE8A55D1EC82A30621343D] - 22/07/2011 - 19:33:35 ---A- - C:\Windows\Prefetch\SIGCHECK.EXE-C8DFE9C6.pf
O45 - LFCP:[MD5.C2705D5856F3AB40E446990C6ED23677] - 22/07/2011 - 19:35:14 ---A- - C:\Windows\Prefetch\NSLOOKUP.EXE-3D06E09F.pf
O45 - LFCP:[MD5.282F1E4A2821F97AADC8410F9519E7BC] - 22/07/2011 - 19:35:20 ---A- - C:\Windows\Prefetch\MBR.EXE-3DE60006.pf
O45 - LFCP:[MD5.40AAD9939E608157651B39876B0DC671] - 22/07/2011 - 19:35:23 ---A- - C:\Windows\Prefetch\MBRCHECK.EXE-015A14A4.pf
O45 - LFCP:[MD5.62C95E3A970617C0A7B541A5437C942D] - 22/07/2011 - 19:42:51 ---A- - C:\Windows\Prefetch\SF.BIN-EEDEE59D.pf
O45 - LFCP:[MD5.DB52DE6B803FCC45C38A4D66DB75B76C] - 22/07/2011 - 19:43:09 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-5F50D22C.pf
O45 - LFCP:[MD5.37EF34757C3CD4E02F00D9198AFC99AA] - 22/07/2011 - 19:44:03 ---A- - C:\Windows\Prefetch\CMD.EXE-4A81B364.pf
O45 - LFCP:[MD5.573E8E70514AEEE589FC21EAC26C5203] - 22/07/2011 - 19:44:03 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-5CA45734.pf



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys



---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm
O52 - TDSD: \Drivers32\"msacm.divxa32"="divxa32.acm" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm
O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\Windows\System32\xvidvfw.dll
O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm
O52 - TDSD: \drivers.desc\"divxa32.acm"="DivX Audio" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm
O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\Windows\System32\xvidvfw.dll
O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\Windows\System32\ff_vfw.dll



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\Acer Empowering Technology Monitor [Key] . (...) -- C:\Acer\Empowering Technology\SysMonitor.exe
O53 - SMSR:HKLM\...\startupreg\Acer Tour Reminder [Key] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe
O53 - SMSR:HKLM\...\startupreg\ccApp [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\ccApp.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\eDataSecurity Loader [Key] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O53 - SMSR:HKLM\...\startupreg\ehTray.exe [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe
O53 - SMSR:HKLM\...\startupreg\EPSON Stylus DX4000 Series [Key] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBEE.exe
O53 - SMSR:HKLM\...\startupreg\FixCamera [Key] . (.Pas de propriétaire - CameraFixer MFC Application.) -- C:\Windows\FixCamera.exe
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe
O53 - SMSR:HKLM\...\startupreg\IS CfgWiz [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF}\cltUIStb.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\MailNotifier [Key] . (...) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\MSConfig [Key] . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\Windows\system32\msconfig.exe
O53 - SMSR:HKLM\...\startupreg\orangeinside [Key] . (...) -- C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O53 - SMSR:HKLM\...\startupreg\snpstd3 [Key] . (.Pas de propriétaire - CameraMonitor Application.) -- C:\Windows\vsnpstd3.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
O53 - SMSR:HKLM\...\startupreg\tsnpstd3 [Key] . (.Pas de propriétaire - tsnp2std Microsoft.) -- C:\Windows\tsnpstd3.exe
O53 - SMSR:HKLM\...\startupreg\WarReg_PopUp [Key] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe
O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe
O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

Petit Louis
 Posté le 22/07/2011 à 21:01 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

--\\ Microsoft Windows Policies Explorer (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [420968]
O58 - SDL:[MD5.B84088CA3CDCA97DA44A984C6CE1CCAD] - 02/11/2006 - 10:51:32 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [297576]
O58 - SDL:[MD5.7880C67BCCC27C86FD05AA2AFB5EA469] - 02/11/2006 - 10:50:35 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\system32\drivers\adpu160m.sys [98408]
O58 - SDL:[MD5.9AE713F8E30EFC2ABCCD84904333DF4D] - 02/11/2006 - 10:51:00 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\system32\drivers\adpu320.sys [147048]
O58 - SDL:[MD5.90395B64600EBB4552E26E178C94B2E4] - 02/11/2006 - 10:49:20 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [14952]
O58 - SDL:[MD5.5F673180268BB1FDB69C99B6619FE379] - 02/11/2006 - 10:50:09 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [67688]
O58 - SDL:[MD5.957F7540B5E7F602E44648C7DE5A1C05] - 02/11/2006 - 10:50:10 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [67688]
O58 - SDL:[MD5.861CB512E4E850E87DD2316F88D69330] - 12/08/2010 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [19544]
O58 - SDL:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 12/08/2010 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [54104]
O58 - SDL:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 12/08/2010 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [25432]
O58 - SDL:[MD5.17230708A2028CD995656DF455F2E303] - 24/02/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [441176]
O58 - SDL:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 12/08/2010 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [309848]
O58 - SDL:[MD5.984CFCE2168286C2511695C2F9621475] - 12/08/2010 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [43608]
O58 - SDL:[MD5.184E2B47542BADBE5CA606F0FC9A90CC] - 07/05/2007 - 15:04:28 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [2427392]
O58 - SDL:[MD5.A356E45E8432432C06981EA63A1E0FE8] - 06/05/2007 - 04:22:26 ---A- . (.ATI Technologies Inc. - ATI PCIE Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [8192]
O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 02/11/2006 - 09:24:45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [13568]
O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 02/11/2006 - 09:24:46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [5248]
O58 - SDL:[MD5.B304E75CFF293029EDDF094246747113] - 02/11/2006 - 09:25:24 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [71808]
O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [62336]
O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 02/11/2006 - 09:24:47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [11904]
O58 - SDL:[MD5.45201046C776FFDAF3FC8A0029C581C8] - 02/11/2006 - 10:49:28 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [16488]
O58 - SDL:[MD5.AE1FDF7BF7BB6C6A70F67699D880592A] - 02/11/2006 - 10:50:11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\system32\drivers\djsvs.sys [71272]
O58 - SDL:[MD5.F88FB26547FD2CE6D0A5AF2985892C48] - 02/11/2006 - 08:30:54 ---A- . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserialized driver.) -- C:\Windows\system32\drivers\E1G60I32.sys [117760]
O58 - SDL:[MD5.E8F3F21A71720C84BCF423B80028359F] - 02/11/2006 - 10:51:34 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [316520]
O58 - SDL:[MD5.DF353B401001246853763C4B7AAA6F50] - 02/11/2006 - 10:50:10 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\system32\drivers\HpCISSs.sys [37480]
O58 - SDL:[MD5.C957BF4B5D80B46C5017BF0101E6C906] - 02/11/2006 - 10:51:25 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\system32\drivers\iaStorV.sys [232040]
O58 - SDL:[MD5.2D077BF86E843F901D8DB709C95B49A5] - 02/11/2006 - 10:50:17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [41576]
O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\system32\drivers\iteatapi.sys [35944]
O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\system32\drivers\iteraid.sys [35944]
O58 - SDL:[MD5.A2262FB9F28935E862B4DB46438C80D2] - 02/11/2006 - 10:50:04 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [65640]
O58 - SDL:[MD5.30D73327D390F72A62F32C103DAF1D6D] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [65640]
O58 - SDL:[MD5.E1E36FEFD45849A95F1AB81DE0159FE3] - 02/11/2006 - 10:50:10 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [65640]
O58 - SDL:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 11/09/2009 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [22712]
O58 - SDL:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 16/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbamswissarmy.sys [41272]
O58 - SDL:[MD5.D153B14FC6598EAE8422A2037553ADCE] - 02/11/2006 - 10:49:53 ---A- . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\system32\drivers\megasas.sys [28776]
O58 - SDL:[MD5.4FBBB70D30FD20EC51F80061703B001E] - 02/11/2006 - 10:49:59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\system32\drivers\Mraid35x.sys [33384]
O58 - SDL:[MD5.2E7FB731D4790A1BC6270ACCEFACB36E] - 02/11/2006 - 10:50:19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [45160]
O58 - SDL:[MD5.7F1C1F78D709C4A54CBB46EDE7E0B48D] - 06/05/2007 - 20:16:50 ---A- . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [6144]
O58 - SDL:[MD5.E875C093AEC0C978A90F30C9E0DFBB72] - 02/11/2006 - 08:36:50 ---A- . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablette N-trig.) -- C:\Windows\system32\drivers\ntrigdigi.sys [20608]
O58 - SDL:[MD5.E69E946F80C1C31C53003BFBF50CBB7C] - 02/11/2006 - 10:50:24 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [88680]
O58 - SDL:[MD5.9E0BA19A28C498A6D323D065DB76DFFC] - 02/11/2006 - 10:50:13 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [40040]
O58 - SDL:[MD5.C2821F33B846A52FDC25FF554ACF11F2] - 06/05/2007 - 23:04:48 ---A- . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\system32\drivers\psdfilter.sys [20264]
O58 - SDL:[MD5.28D3A91FE7791B970E6B15C88F98DFBD] - 06/05/2007 - 23:04:54 ---A- . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\system32\drivers\PSDNServ.sys [16680]
O58 - SDL:[MD5.3A66F69459052DE13EF8A0F77D728A73] - 06/05/2007 - 23:04:50 ---A- . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\system32\drivers\psdvdisk.sys [60712]
O58 - SDL:[MD5.CCDAC889326317792480C0A67156A1EC] - 02/11/2006 - 10:51:45 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [900712]
O58 - SDL:[MD5.81A7E5C076E59995D54BC1ED3A16E60B] - 02/11/2006 - 10:50:35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [106088]
O58 - SDL:[MD5.2BD6633DB50A98534AA3262E0F9F5A14] - 06/05/2007 - 12:18:18 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHDA.sys [1761696]
O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 02/11/2006 - 07:37:21 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [20480]
O58 - SDL:[MD5.CEDD6F4E7D84E9F98B34B3FE988373AA] - 02/11/2006 - 10:50:10 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [38504]
O58 - SDL:[MD5.DF843C528C4F69D12CE41CE462E973A7] - 02/11/2006 - 10:50:16 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [71784]
O58 - SDL:[MD5.11BB0E11D42CC3A43D741D9B30839BE1] - 27/03/2007 - 17:19:36 ---A- . (.Sonix Co. Ltd. - USB PC Camera driver.) -- C:\Windows\system32\drivers\snpstd3.sys [10252544]
O58 - SDL:[MD5.192AA3AC01DF071B541094F251DEED10] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\system32\drivers\symc8xx.sys [35944]
O58 - SDL:[MD5.8C8EB8C76736EBAF3B13B633B2E64125] - 02/11/2006 - 10:49:56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_hi.sys [31848]
O58 - SDL:[MD5.8072AF52B5FD103BBBA387A1E49F62CB] - 02/11/2006 - 10:50:03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_u3.sys [34920]
O58 - SDL:[MD5.3CD4EA35A6221B85DCC25DAA46313F8D] - 02/11/2006 - 10:51:25 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\system32\drivers\uliahci.sys [235112]
O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\system32\drivers\ulsata.sys [98408]
O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 02/11/2006 - 10:50:45 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\system32\drivers\ulsata2.sys [115816]
O58 - SDL:[MD5.FD2E3175FCADA350C7AB4521DCA187EC] - 02/11/2006 - 10:49:30 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17512]
O58 - SDL:[MD5.D984439746D42B30FC65A4C3546C6829] - 02/11/2006 - 10:50:41 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\system32\drivers\vsmraid.sys [112232]
O58 - SDL:[MD5.2584DF81CC9F7E7BD3545691106F8CAE] - 13/09/2009 - 15:47:04 ---A- . (.Wasay - Wasay virtual disk driver.) -- C:\Windows\system32\drivers\WSVD.sys [80744]
O58 - SDL:[MD5.04E268ADFC81964C49DC0C082D520F7E] - 06/12/2007 - 08:51:00 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk60x86.sys [298496]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\system32\ANSI.SYS [9029]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\system32\country.sys [27097]
O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\system32\HIMEM.SYS [4768]
O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEY01.SYS [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEYBOARD.SYS [42537]
O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\system32\NTDOS.SYS [27866]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\system32\NTDOS404.SYS [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\system32\NTDOS411.SYS [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\system32\NTDOS412.SYS [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\system32\NTDOS804.SYS [29146]
O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\system32\NTIO.SYS [33952]
O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\system32\NTIO404.SYS [34672]
O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\system32\NTIO411.SYS [35776]
O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\system32\NTIO412.SYS [35536]
O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\system32\NTIO804.SYS [34672]



---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC:Last File Created 01/04/2011 - 19:19:59 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\imsl.dat [3843]
O61 - LFC:Last File Created 03/02/2011 - 19:33:52 ---A- C:\Users\All Users\Alwil Software\Avast5\URL.db [1123328]
O61 - LFC:Last File Created 08/07/2011 - 21:42:28 ----- C:\Users\Louis\AppData\Local\Temp\7zOD0FB.tmp\ZHPDiag2.exe [2540536]
O61 - LFC:Last File Created 08/07/2011 - 21:42:28 ----- C:\Users\Louis\AppData\Local\Temp\7zOE3DF.tmp\ZHPDiag2.exe [2540536]
O61 - LFC:Last File Created 11/09/2009 - 07:07:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\PowerP10.pip [1492]
O61 - LFC:Last File Created 11/09/2009 - 07:47:41 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Épreuve\PERSO.DIC [177]
O61 - LFC:Last File Created 11/09/2009 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Word10.pip [1756]
O61 - LFC:Last File Created 11/09/2009 - 08:43:38 --H-- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\index.dat [980]
O61 - LFC:Last File Created 11/09/2009 - 19:20:07 --HA- C:\Users\Louis\AppData\Local\IconCache.db [6291456]
O61 - LFC:Last File Created 11/09/2009 - 19:44:09 ---A- C:\Users\Louis\AppData\Roaming\Wallpaper\Wallpaper.bmp [5760054]
O61 - LFC:Last File Created 11/09/2009 - 19:44:10 ---A- C:\Users\Louis\AppData\Roaming\Wallpaper\image.xml [6722]
O61 - LFC:Last File Created 12/08/2010 - 07:35:24 ---A- C:\Users\All Users\Alwil Software\Avast5\db1ca257252ebdd82-20d0e056.dat [199680]
O61 - LFC:Last File Created 12/08/2010 - 13:12:18 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\IdentityCRL\Production\MetaConfig.xml [163]
O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\BehaviorShield.txt [45605]
O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\EmailShield.txt [33565]
O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\FileSystemShield.txt [33153]
O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\IMShield.txt [33153]
O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\NetworkShield.txt [33153]
O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\P2PShield.txt [33153]
O61 - LFC:Last File Created 12/08/2010 - 19:21:35 ---A- C:\Users\All Users\Alwil Software\Avast5\report\WebShield.txt [33153]
O61 - LFC:Last File Created 12/08/2010 - 19:36:33 ---A- C:\Users\All Users\Alwil Software\Avast5\Log.db [61440]
O61 - LFC:Last File Created 13/09/2009 - 07:07:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\PowerPoint\PPT10.pcb [6969]
O61 - LFC:Last File Created 13/10/2010 - 08:22:01 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu [148]
O61 - LFC:Last File Created 14/08/2010 - 17:18:13 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Excel10.pip [1484]
O61 - LFC:Last File Created 14/08/2010 - 17:18:13 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\VB10.pip [144]
O61 - LFC:Last File Created 15/07/2011 - 07:09:30 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Sent Items.imm [1679527]
O61 - LFC:Last File Created 15/07/2011 - 10:55:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Login Data [16384]
O61 - LFC:Last File Created 15/07/2011 - 10:58:28 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak [98656]
O61 - LFC:Last File Created 15/07/2011 - 15:52:35 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Favicons [47104]
O61 - LFC:Last File Created 15/07/2011 - 16:31:04 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Web Data [67584]
O61 - LFC:Last File Created 15/07/2011 - 16:33:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Filter 2 [1873940]
O61 - LFC:Last File Created 15/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\History [167936]
O61 - LFC:Last File Created 15/07/2011 - 19:20:13 ---A- C:\Users\All Users\Alwil Software\Avast5\db1cc42beddffa832-e4d7fb6f.dat [151248]
O61 - LFC:Last File Created 15/07/2011 - 19:22:17 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cookies [33792]
O61 - LFC:Last File Created 16/07/2011 - 11:05:52 ---A- C:\Users\Louis\Documents\Ancestrologie\database\ANCESTROLOGIE (2).BDD090921-0930090921-0939100802-1527 [75227136]
O61 - LFC:Last File Created 16/07/2011 - 11:31:18 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\build.conf [260]
O61 - LFC:Last File Created 16/07/2011 - 11:31:18 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [7050965]
O61 - LFC:Last File Created 16/07/2011 - 15:42:09 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bhmmomiinigofkjcapegjjndpbikblnp_0.localstorage [305152]
O61 - LFC:Last File Created 16/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [0]
O61 - LFC:Last File Created 17/03/2011 - 12:17:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\IncrediMail_Install.exe [473424]
O61 - LFC:Last File Created 17/09/2010 - 17:07:48 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\cacheSize.txt [8]
O61 - LFC:Last File Created 18/04/2011 - 12:36:58 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\Order.dat [304]
O61 - LFC:Last File Created 18/04/2011 - 19:23:23 R--A- C:\Users\All Users\IncrediMail\Data\Licenses\IM_PREM.imk [3120]
O61 - LFC:Last File Created 19/02/2011 - 07:03:28 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{09839FAD-7FFF-417F-9614-D1B5C38A7C08}\101\incredicenter_v2.bmp [5348]
O61 - LFC:Last File Created 19/02/2011 - 07:07:24 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\AddressBook\AddrBook.db3 [192512]
O61 - LFC:Last File Created 19/02/2011 - 07:07:24 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\AddressBook\AddrBook.db3.bak [192512]
O61 - LFC:Last File Created 19/02/2011 - 09:44:58 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Lex\private.tlx [445]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\angelic.ims [17490]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\classic.ims [11610]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\fantasy.ims [15062]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\frosted.ims [12584]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\im2.ims [1511058]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\paper.ims [20832]
O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\premium.ims [229847]
O61 - LFC:Last File Created 19/02/2011 - 12:24:52 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Pictures\Pictures.db [33792]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\history.ix [1033239]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\imit.dat [7168]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_d_1.ix [393216]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_di_1.ix [65536]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_kl_1.ix [1474560]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_r_1.ix [601783]
O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\indexlog.dat [2725]
O61 - LFC:Last File Created 19/02/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_d_1.ix [393216]
O61 - LFC:Last File Created 19/02/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_di_1.ix [65536]
O61 - LFC:Last File Created 19/02/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_r_1.ix [2316065]
O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\history.ix [1010392]
O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\imit.dat [16384]
O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_kl_1.ix [3334144]
O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\indexlog.dat [2756]
O61 - LFC:Last File Created 19/02/2011 - 19:21:56 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\AccountsOrder.dat [160]
O61 - LFC:Last File Created 19/02/2011 - 19:23:03 ---A- C:\Users\Louis\AppData\Local\IM\content.xml [27883]
O61 - LFC:Last File Created 19/02/2011 - 19:23:07 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Containers.db [2491392]
O61 - LFC:Last File Created 19/02/2011 - 19:43:44 ---A- C:\Users\Louis\AppData\Local\IM\Lex\IMSTP12.gif [47958]
O61 - LFC:Last File Created 19/07/2011 - 07:26:39 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\2BA82155-283B-42E3-A4AA-953CDCA0CA8E.htm [55036]
O61 - LFC:Last File Created 19/07/2011 - 07:29:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\362A641E-0EA3-4D88-9F14-0BD46E852822.htm [55036]
O61 - LFC:Last File Created 19/07/2011 - 07:29:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\3BEE0681-8035-497E-BD1D-EE70A21BB76B.htm [46298]
O61 - LFC:Last File Created 19/07/2011 - 07:30:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\7F5B6F24-F367-4118-86D7-EEAC962E5835.htm [46442]
O61 - LFC:Last File Created 19/07/2011 - 07:30:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\E1A5D7C1-2779-4A20-9F30-08798FE91C81.htm [46526]
O61 - LFC:Last File Created 19/07/2011 - 07:31:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\D7BEBC0E-6DEA-4276-9FB3-E844347E4E08.htm [47924]
O61 - LFC:Last File Created 19/07/2011 - 07:36:41 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\FB3FB6F0-0967-44EF-8137-B2983E9A85A2.htm [69408]
O61 - LFC:Last File Created 19/07/2011 - 07:38:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\A675E7B1-0647-45D7-BD2B-597E1A4FC9F6.htm [46526]
O61 - LFC:Last File Created 19/07/2011 - 07:39:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\C1F74E16-6E6A-422D-B41A-F396F195D9BA.htm [69408]
O61 - LFC:Last File Created 19/07/2011 - 07:42:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\AAB28A1E-9A56-4BB1-A345-31D8CEFDE9D7.htm [46530]
O61 - LFC:Last File Created 19/07/2011 - 08:24:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\{CFA907A5-D587-47B0-8DCE-F335A5C79A1A}\Elvis.wmv_thumb.bmp [24174]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\angelic_light.ims [17490]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\classic_light.ims [11610]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\fantasy_light.ims [15062]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\frosted_light.ims [12584]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\im2.ims [1511058]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\paper_light.ims [20832]
O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\premium.ims [229847]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\Facebook\congratulations_screenshot.gif [14253]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\Facebook\congratulations_title_image.gif [4310]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\box_bottom.gif [3527]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\box_top.gif [229]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_1.gif [4425]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_10.gif [6110]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_2.gif [4927]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_3.gif [5285]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_4.gif [8639]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_5.gif [6664]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_6.gif [3963]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_7.gif [3370]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_8.gif [4891]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_9.gif [4407]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_x.gif [4238]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\ok_button.png [1347]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\ok_icon.png [1373]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\top_ten_tips.gif [3867]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\bg.png [953]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\btn_gonow_center.png [976]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\btn_gonow_left.png [2555]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\btn_gonow_right.png [1436]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\main_center.png [1005]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\main_left.png [17578]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\main_right.png [1470]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_chevron_left.png [264]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_chevron_right.png [260]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_left.png [254]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_only_x_hover.png [311]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_right.png [242]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_tile.png [165]
O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_x.png [288]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\RDDlg.dat [6476]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934\RDDlg.dat [3557]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\935\RDDlg.dat [3558]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\RDDlg.dat [3703]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\SW\SWH.dat [300]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\SW\SWSB.dat [156]
O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\Welcome\Welcome2.eml [91123]

Petit Louis
 Posté le 22/07/2011 à 21:06 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

O61 - LFC:Last File Created 19/07/2011 - 12:24:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Resource\Manager\get_started12.swf [4463]
O61 - LFC:Last File Created 19/07/2011 - 15:57:43 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\LOUIS MARYVONNE.lnk [595]
O61 - LFC:Last File Created 19/07/2011 - 16:00:55 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000111.rcb [6814]
O61 - LFC:Last File Created 19/07/2011 - 17:07:48 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\3C82B2A2455B252B8595FD0113249AA19D7E8BDD.swz [569996]
O61 - LFC:Last File Created 19/07/2011 - 17:07:57 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\3C82B2A2455B252B8595FD0113249AA19D7E8BDD.heu [148]
O61 - LFC:Last File Created 19/07/2011 - 18:00:29 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Documents.lnk [392]
O61 - LFC:Last File Created 19/07/2011 - 18:12:26 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Service State [52]
O61 - LFC:Last File Created 19/09/2009 - 09:50:15 ---A- C:\Users\Louis\AppData\Roaming\Ancestrologie\Settings\W_REPERTOIRE.Ini [3276]
O61 - LFC:Last File Created 20/07/2011 - 09:43:21 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\5DBC30AA-56F0-4810-A2E3-B92CFC89A7EE.htm [46674]
O61 - LFC:Last File Created 20/07/2011 - 09:50:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\33330ABE-B8E7-4493-8EBB-8D5745C1D5A1.htm [47940]
O61 - LFC:Last File Created 20/07/2011 - 10:58:28 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Bookmarks [98656]
O61 - LFC:Last File Created 20/07/2011 - 11:10:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\8FC6B012-79C1-43D9-B2DB-AB8486156414.htm [48084]
O61 - LFC:Last File Created 20/07/2011 - 11:10:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\9F18EB09-4893-402A-BA3F-F0C8552F0E85.htm [46530]
O61 - LFC:Last File Created 20/07/2011 - 11:25:22 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\BD332B3B-9E51-4B03-B329-CDAC12E96075.htm [46674]
O61 - LFC:Last File Created 20/07/2011 - 11:25:36 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\43A845AA-61D6-4158-B39C-D305D0825253.htm [47940]
O61 - LFC:Last File Created 20/07/2011 - 12:12:38 ---A- C:\Users\Louis\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2011-07-20 (13-12-37).txt [1066]
O61 - LFC:Last File Created 20/07/2011 - 12:26:36 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\848ADA77-0153-4018-9B17-A3E0D6FEDFF4.htm [48084]
O61 - LFC:Last File Created 20/07/2011 - 12:32:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\napoleon2.gif [13524]
O61 - LFC:Last File Created 20/07/2011 - 12:32:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\usa_flag.gif [36053]
O61 - LFC:Last File Created 20/07/2011 - 12:32:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\french_flag2.gif [36694]
O61 - LFC:Last File Created 20/07/2011 - 12:32:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\german_flag.gif [34306]
O61 - LFC:Last File Created 20/07/2011 - 12:32:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\italy_flag.gif [34572]
O61 - LFC:Last File Created 20/07/2011 - 12:32:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\british_flag.gif [36889]
O61 - LFC:Last File Created 20/07/2011 - 12:32:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\eagle.gif [15431]
O61 - LFC:Last File Created 20/07/2011 - 12:32:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\british_big_ben.gif [17550]
O61 - LFC:Last File Created 20/07/2011 - 12:32:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\chubby_brazil_flag.gif [35349]
O61 - LFC:Last File Created 20/07/2011 - 12:32:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\capoeira.gif [78092]
O61 - LFC:Last File Created 20/07/2011 - 12:32:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\spanish_flag.gif [35009]
O61 - LFC:Last File Created 20/07/2011 - 12:32:51 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\chubby_german_beer.gif [39938]
O61 - LFC:Last File Created 20/07/2011 - 12:32:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\canada_flag.gif [35828]
O61 - LFC:Last File Created 20/07/2011 - 12:32:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dutch_flag.gif [35304]
O61 - LFC:Last File Created 20/07/2011 - 12:32:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_iloveyou_small_230608.gif [10997]
O61 - LFC:Last File Created 20/07/2011 - 12:32:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_shy_230608.gif [9560]
O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\7_small.gif [6477]
O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_hearts_eyes_230608.gif [5710]
O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_hug_230608.gif [13457]
O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_laugh_230608.gif [13912]
O61 - LFC:Last File Created 20/07/2011 - 12:32:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\1_small.gif [11783]
O61 - LFC:Last File Created 20/07/2011 - 12:32:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\6_small.gif [6700]
O61 - LFC:Last File Created 20/07/2011 - 12:32:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_angel_230608.gif [23781]
O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\3_small.gif [5147]
O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_bored_230608.gif [9874]
O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_smile2_230608.gif [3585]
O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_wave2_230608.gif [19235]
O61 - LFC:Last File Created 20/07/2011 - 12:32:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_beer_230608.gif [17058]
O61 - LFC:Last File Created 20/07/2011 - 12:32:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_crazy_230608.gif [12641]
O61 - LFC:Last File Created 20/07/2011 - 12:32:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_shy_manga_230608.gif [9471]
O61 - LFC:Last File Created 20/07/2011 - 12:32:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\11_small.gif [15614]
O61 - LFC:Last File Created 20/07/2011 - 12:32:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\12_small.gif [25484]
O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_baby_230608.gif [2592]
O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_cry_230608.gif [10454]
O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_sad_230608.gif [6328]
O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_screaming_230608.gif [18765]
O61 - LFC:Last File Created 20/07/2011 - 12:33:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_cheers_wine_230608.gif [16062]
O61 - LFC:Last File Created 20/07/2011 - 12:33:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_crazy_hair_230608.gif [16014]
O61 - LFC:Last File Created 20/07/2011 - 12:33:07 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\5_small.png [1519]
O61 - LFC:Last File Created 20/07/2011 - 12:33:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\most_populer_wave1_020708.gif [16848]
O61 - LFC:Last File Created 20/07/2011 - 12:33:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\yes_text.gif [11904]
O61 - LFC:Last File Created 20/07/2011 - 12:33:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\most_populer_thumbup1_020708.gif [15384]
O61 - LFC:Last File Created 20/07/2011 - 12:33:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\140109_glitter_butterfly.gif [28221]
O61 - LFC:Last File Created 20/07/2011 - 12:33:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\140109_love.gif [12086]
O61 - LFC:Last File Created 20/07/2011 - 12:33:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_no.gif [48261]
O61 - LFC:Last File Created 20/07/2011 - 12:33:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\thanks2.gif [18784]
O61 - LFC:Last File Created 20/07/2011 - 12:34:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709kissing_kitten.gif [54422]
O61 - LFC:Last File Created 20/07/2011 - 12:34:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709sorry_kitten.gif [39045]
O61 - LFC:Last File Created 20/07/2011 - 12:34:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709angry_kitten.gif [42775]
O61 - LFC:Last File Created 20/07/2011 - 12:34:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709no_kitten.gif [18329]
O61 - LFC:Last File Created 20/07/2011 - 12:34:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709surprised_kitten.gif [37211]
O61 - LFC:Last File Created 20/07/2011 - 12:34:07 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\no_text.gif [7693]
O61 - LFC:Last File Created 20/07/2011 - 12:34:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109_ok.gif [11048]
O61 - LFC:Last File Created 20/07/2011 - 12:34:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\love_smaller.gif [40469]
O61 - LFC:Last File Created 20/07/2011 - 12:34:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\070109hey.gif [12438]
O61 - LFC:Last File Created 20/07/2011 - 12:34:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109_i_love_u.gif [7243]
O61 - LFC:Last File Created 20/07/2011 - 12:34:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\kiss_2.gif [20365]
O61 - LFC:Last File Created 20/07/2011 - 12:34:10 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109gr8.gif [23217]
O61 - LFC:Last File Created 20/07/2011 - 12:34:10 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109miss_you.gif [24704]
O61 - LFC:Last File Created 20/07/2011 - 12:34:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109cu.gif [25811]
O61 - LFC:Last File Created 20/07/2011 - 12:34:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\love_ya.gif [28146]
O61 - LFC:Last File Created 20/07/2011 - 12:34:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_sad.gif [13059]
O61 - LFC:Last File Created 20/07/2011 - 12:34:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\later.gif [11276]
O61 - LFC:Last File Created 20/07/2011 - 12:34:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_sleep.gif [63963]
O61 - LFC:Last File Created 20/07/2011 - 12:34:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_poop.gif [32879]
O61 - LFC:Last File Created 20/07/2011 - 12:34:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\cat_gray.gif [36907]
O61 - LFC:Last File Created 20/07/2011 - 12:34:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\bird.gif [92533]
O61 - LFC:Last File Created 20/07/2011 - 12:34:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\pig.gif [63284]
O61 - LFC:Last File Created 20/07/2011 - 12:34:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dogg.gif [46901]
O61 - LFC:Last File Created 20/07/2011 - 12:34:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dino.gif [65199]
O61 - LFC:Last File Created 20/07/2011 - 12:34:21 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\black_cat.gif [72956]
O61 - LFC:Last File Created 20/07/2011 - 12:34:22 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\pil.gif [76873]
O61 - LFC:Last File Created 20/07/2011 - 12:34:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\bat.gif [26305]
O61 - LFC:Last File Created 20/07/2011 - 12:34:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dev.gif [21994]
O61 - LFC:Last File Created 20/07/2011 - 12:34:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dracula.gif [17392]
O61 - LFC:Last File Created 20/07/2011 - 12:34:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\grim.gif [28137]
O61 - LFC:Last File Created 20/07/2011 - 12:34:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\wit.gif [27374]
O61 - LFC:Last File Created 20/07/2011 - 12:34:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\frank.gif [9136]
O61 - LFC:Last File Created 20/07/2011 - 12:34:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\spider.gif [22178]
O61 - LFC:Last File Created 20/07/2011 - 12:34:26 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\ghost.gif [17311]
O61 - LFC:Last File Created 20/07/2011 - 12:34:26 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\mum.gif [20790]
O61 - LFC:Last File Created 20/07/2011 - 12:34:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_7.gif [8711]
O61 - LFC:Last File Created 20/07/2011 - 12:34:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105i_angry_steaming.gif [17895]
O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_1.gif [7313]
O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_4.gif [4832]
O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_1.gif [1477]
O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_hair.gif [12598]
O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105out.gif [5222]
O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_8.gif [7171]
O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_shut_up.gif [5340]
O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105hell_no_cut.gif [2762]
O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105ooo_thats_bad_cut.gif [6793]
O61 - LFC:Last File Created 20/07/2011 - 12:34:31 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_11.gif [1845]
O61 - LFC:Last File Created 20/07/2011 - 12:34:31 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_2_3.gif [6365]
O61 - LFC:Last File Created 20/07/2011 - 12:34:31 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_red.gif [27541]
O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_5_2hands.gif [8550]
O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_4.gif [9376]
O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_9.gif [5379]
O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105words_cut.gif [4147]
O61 - LFC:Last File Created 20/07/2011 - 12:34:33 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105dont_make_me_mad_cut.gif [12688]
O61 - LFC:Last File Created 20/07/2011 - 12:34:33 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105emot07_angry.gif [5596]
O61 - LFC:Last File Created 20/07/2011 - 12:34:36 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105h_hit_3.gif [31232]
O61 - LFC:Last File Created 20/07/2011 - 12:34:37 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_2_1.gif [10016]
O61 - LFC:Last File Created 20/07/2011 - 12:34:37 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105outside_3_cut.gif [6710]
O61 - LFC:Last File Created 20/07/2011 - 12:34:37 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060104puter_6.gif [12886]
O61 - LFC:Last File Created 20/07/2011 - 12:34:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_shake_us.gif [8756]
O61 - LFC:Last File Created 20/07/2011 - 12:34:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_table_puter.gif [15411]
O61 - LFC:Last File Created 20/07/2011 - 12:34:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060104puter_3.gif [13388]
O61 - LFC:Last File Created 20/07/2011 - 12:34:39 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105a_hit.gif [21284]
O61 - LFC:Last File Created 20/07/2011 - 12:34:39 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105punch_3.gif [9988]
O61 - LFC:Last File Created 20/07/2011 - 12:34:40 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_slap_3.gif [21221]
O61 - LFC:Last File Created 20/07/2011 - 12:34:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_3_text.gif [9049]
O61 - LFC:Last File Created 20/07/2011 - 12:34:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_2_text.gif [2696]
O61 - LFC:Last File Created 20/07/2011 - 12:34:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104words.gif [6074]
O61 - LFC:Last File Created 20/07/2011 - 12:34:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_3_text.gif [6667]
O61 - LFC:Last File Created 20/07/2011 - 12:34:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_7_text.gif [18587]
O61 - LFC:Last File Created 20/07/2011 - 12:34:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_8_text1.gif [11191]
O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_8_text2.gif [11668]
O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104moan2.gif [3333]
O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104shucks.gif [3820]
O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110105out_text.gif [6763]
O61 - LFC:Last File Created 20/07/2011 - 12:34:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_4_text.gif [7774]
O61 - LFC:Last File Created 20/07/2011 - 12:34:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_shut_up_text.gif [15940]
O61 - LFC:Last File Created 20/07/2011 - 12:34:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104that_sucks.gif [5235]
O61 - LFC:Last File Created 20/07/2011 - 12:34:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105annoying.gif [7761]
O61 - LFC:Last File Created 20/07/2011 - 12:34:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\100104furious.gif [43102]
O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104f_14waiting_blue_1.gif [1647]
O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104i_13sleepy_3.gif [6479]
O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104love_you4_cut.gif [2763]
O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zf_uh_2c_silly_cut.gif [1570]
O61 - LFC:Last File Created 20/07/2011 - 12:34:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104ka_chewingum.gif [6606]
O61 - LFC:Last File Created 20/07/2011 - 12:34:51 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_1.gif [12797]
O61 - LFC:Last File Created 20/07/2011 - 12:34:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105stay_cool_2_blue_cut.gif [3784]
O61 - LFC:Last File Created 20/07/2011 - 12:34:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_26.gif [11607]
O61 - LFC:Last File Created 20/07/2011 - 12:34:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_29.gif [11181]
O61 - LFC:Last File Created 20/07/2011 - 12:34:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_8.gif [9791]
O61 - LFC:Last File Created 20/07/2011 - 12:34:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105glasses_hand.gif [23077]
O61 - LFC:Last File Created 20/07/2011 - 12:34:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_20.gif [12831]
O61 - LFC:Last File Created 20/07/2011 - 12:34:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_4.gif [12558]
O61 - LFC:Last File Created 20/07/2011 - 12:34:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_42.gif [30946]

Petit Louis
 Posté le 22/07/2011 à 21:07 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105aced_it_cut.gif [4793]
O61 - LFC:Last File Created 20/07/2011 - 12:34:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_12.gif [13122]
O61 - LFC:Last File Created 20/07/2011 - 12:34:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_5.gif [5340]
O61 - LFC:Last File Created 20/07/2011 - 12:34:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_15.gif [19399]
O61 - LFC:Last File Created 20/07/2011 - 12:34:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_2.gif [19553]
O61 - LFC:Last File Created 20/07/2011 - 12:34:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_36.gif [19188]
O61 - LFC:Last File Created 20/07/2011 - 12:34:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_24_text.gif [24414]
O61 - LFC:Last File Created 20/07/2011 - 12:34:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_1_text.gif [17929]
O61 - LFC:Last File Created 20/07/2011 - 12:34:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_27_text.gif [29097]
O61 - LFC:Last File Created 20/07/2011 - 12:34:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_14_text.gif [4526]
O61 - LFC:Last File Created 20/07/2011 - 12:34:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_15_text.gif [26368]
O61 - LFC:Last File Created 20/07/2011 - 12:34:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_32_text.gif [26173]
O61 - LFC:Last File Created 20/07/2011 - 12:35:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_22_text.gif [18123]
O61 - LFC:Last File Created 20/07/2011 - 12:35:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104stay_cool_red.gif [8052]
O61 - LFC:Last File Created 20/07/2011 - 12:35:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104z_cool_c.gif [2225]
O61 - LFC:Last File Created 20/07/2011 - 12:35:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_42_text.gif [47774]
O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_14.gif [3235]
O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060104hit_on_head2.gif [3583]
O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_12_text.gif [26671]
O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104wee_hee2_cut.gif [3292]
O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zg_06duh_7b_cut.gif [3797]
O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105crazy05.gif [3243]
O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\020105annoying_cut.gif [4621]
O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\020105thinking3_cut.gif [2114]
O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104shocking_cut.gif [2639]
O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104crazy01.gif [5056]
O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104l_08hit_on_head10.gif [9051]
O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_11.gif [4898]
O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104baa_cut.gif [6928]
O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104loser_3_cut.gif [2435]
O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104oh_well2_cut.gif [4638]
O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_2.gif [1498]
O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_16.gif [4623]
O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104b_shake.gif [17179]
O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104h_angry.gif [499]
O61 - LFC:Last File Created 20/07/2011 - 12:35:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_07.gif [8374]
O61 - LFC:Last File Created 20/07/2011 - 12:35:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_08.gif [1575]
O61 - LFC:Last File Created 20/07/2011 - 12:35:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_14.gif [3007]
O61 - LFC:Last File Created 20/07/2011 - 12:35:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_17.gif [2096]
O61 - LFC:Last File Created 20/07/2011 - 12:35:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\2.gif [4015]
O61 - LFC:Last File Created 20/07/2011 - 12:35:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\5.gif [19203]
O61 - LFC:Last File Created 20/07/2011 - 12:35:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\9.gif [11437]
O61 - LFC:Last File Created 20/07/2011 - 12:35:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105v_smilie_rainbow.gif [19252]
O61 - LFC:Last File Created 20/07/2011 - 12:35:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120105cord.gif [4342]
O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104t_thumbdown.gif [5637]
O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105full_of_it_cut.gif [3713]
O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\10.gif [54783]
O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104t_thumbdown.gif [5637]
O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\6.gif [4364]
O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot20_thumbsdown.gif [8012]
O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot37_finger.gif [4934]
O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104get_lost_cut.gif [6192]
O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104moan2_cut.gif [2140]
O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104n_no.gif [1163]
O61 - LFC:Last File Created 20/07/2011 - 12:35:24 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104t_thumbdown.png [1619]
O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010104ok.gif [5703]
O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105bravo_2_cut.gif [2579]
O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105number_one_cut.gif [6741]
O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot42_rainbow.gif [5310]
O61 - LFC:Last File Created 20/07/2011 - 12:35:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010104a_ok.gif [12036]
O61 - LFC:Last File Created 20/07/2011 - 12:35:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105peace_2_cut.gif [20260]
O61 - LFC:Last File Created 20/07/2011 - 12:35:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105yes_3_cut.gif [4914]
O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105bravo_2.gif [3664]
O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105fantastic_2.gif [17633]
O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105good.gif [8344]
O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105za_thanx.gif [1487]
O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105ace.gif [4348]
O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105awesome.gif [18291]
O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105full_of_it.gif [4730]
O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104yesn_6.gif [6016]
O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105blackeye.gif [996]
O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105caramba.gif [7174]
O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105fantastic.gif [5967]
O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105j_sad.gif [829]
O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105k_crying.gif [3758]
O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104feeling_blue2_cut.gif [2867]
O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105loser_3_new.gif [2435]
O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105mommy_cut.gif [3894]
O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105oops_1e_cut.gif [1529]
O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105shucks_cut.gif [3207]
O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105worried_cut_new.gif [2102]
O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105zf_uh_2c_silly_new.gif [1570]
O61 - LFC:Last File Created 20/07/2011 - 12:36:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105black_day_cut.gif [4491]
O61 - LFC:Last File Created 20/07/2011 - 12:36:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105wee_hee.gif [25691]
O61 - LFC:Last File Created 20/07/2011 - 12:36:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105party_on_dude.gif [20901]
O61 - LFC:Last File Created 20/07/2011 - 12:36:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105peace_hippy.gif [28904]
O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105terrific.gif [6813]
O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105wonderful.gif [3891]
O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105yes_4.gif [27072]
O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105you_rock.gif [13215]
O61 - LFC:Last File Created 20/07/2011 - 12:36:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105aced_it.gif [7439]
O61 - LFC:Last File Created 20/07/2011 - 12:36:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105party_on.gif [17368]
O61 - LFC:Last File Created 20/07/2011 - 12:36:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105whoo.gif [13977]
O61 - LFC:Last File Created 20/07/2011 - 12:36:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105peace_3_down.gif [29814]
O61 - LFC:Last File Created 20/07/2011 - 12:36:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110105no.gif [1586]
O61 - LFC:Last File Created 20/07/2011 - 12:36:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104sorry_2c.gif [1804]
O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\070104zd_help_4_movebig.gif [11195]
O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104black_day.gif [9377]
O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104feeling_blue_3.gif [2548]
O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104mommy.gif [5153]
O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104gross_2.gif [9447]
O61 - LFC:Last File Created 20/07/2011 - 12:36:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105chicken.gif [10445]
O61 - LFC:Last File Created 20/07/2011 - 12:36:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104baa.gif [10896]
O61 - LFC:Last File Created 20/07/2011 - 12:36:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104get_lost.gif [10082]
O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105goof_3.gif [2992]
O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104embarrassed.gif [6930]
O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104big_mouth.gif [12513]
O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zc_argg_b.gif [1742]
O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105loser.gif [6305]
O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104blah_2move.gif [4259]
O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104hell_no.gif [3392]
O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104oh_well2.gif [6917]
O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104full_of_it_2.gif [13047]
O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104moan.gif [16215]
O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104ooo_thats_bad.gif [15443]
O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104outside_4.gif [9192]
O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104shut_up.gif [7038]
O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104worried.gif [4574]
O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104you_are_bad.gif [4417]
O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120105ooops.gif [8668]
O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\050104help_up_2big_one.gif [10762]
O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105nerd_4.gif [4362]
O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120102zb_sorry_c.gif [1498]
O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zf_uh_2c_silly.gif [1055]
O61 - LFC:Last File Created 20/07/2011 - 12:36:20 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105wimp.gif [17253]
O61 - LFC:Last File Created 20/07/2011 - 12:36:20 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104dont_make_me_mad.gif [26516]
O61 - LFC:Last File Created 20/07/2011 - 12:36:41 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105emot10_tears.gif [7532]
O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105emot47_sorry_new.gif [1983]
O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104feeling_blue_3_cut.gif [1660]
O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot09_sad.gif [3983]
O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104g_04bigeyes_3_blue72b.gif [1792]
O61 - LFC:Last File Created 20/07/2011 - 12:36:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104beer_new.gif [50133]
O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105l_bhuhhh333.gif [1678]
O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104frightened.gif [1149]
O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104z_what_cut.gif [3786]
O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zd_help_4_movebig_cut.gif [10411]
O61 - LFC:Last File Created 20/07/2011 - 12:36:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104shy_5new.gif [6142]
O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104new_shy2.gif [5980]
O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_flower.gif [10127]
O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_new_3.gif [1436]
O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104goof_3_cut.gif [2039]
O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot31_embarrass.gif [7561]
O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy2_3_3.gif [1296]
O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_new_7.gif [5537]
O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104h_12shy_3.gif [4605]
O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104o_stupid.gif [1545]
O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zb_sorry_c_cut.gif [1720]
O61 - LFC:Last File Created 20/07/2011 - 12:36:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_flowers.gif [12504]
O61 - LFC:Last File Created 20/07/2011 - 12:36:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104embarrassed_cut.gif [5921]
O61 - LFC:Last File Created 20/07/2011 - 12:36:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104ooops_cut.gif [5207]
O61 - LFC:Last File Created 20/07/2011 - 12:36:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104new_shy.gif [12928]
O61 - LFC:Last File Created 20/07/2011 - 12:36:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104worried2_cut.gif [2135]
O61 - LFC:Last File Created 20/07/2011 - 12:36:51 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104tongue_2_07.gif [3150]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104j_11sealed_3blue_b.gif [5791]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104crazynew2.gif [2075]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104f_eyebrows.gif [1555]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104hands_down01.gif [6961]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104j_11sealed_3blue_b.gif [5791]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter06.gif [3860]
O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter09.gif [1351]
O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104crazynew3.gif [2282]
O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter01.gif [11703]
O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104nana_2_cut.gif [5440]
O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104p_03bad_1.gif [3918]
O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104pointing02.gif [1894]
O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104k_tongue_1.gif [1969]
O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter02.gif [20204]
O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter10.gif [1124]
O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104tongue_2_06.gif [8348]
O61 - LFC:Last File Created 20/07/2011 - 12:36:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104m_rolling_1.gif [6306]
O61 - LFC:Last File Created 20/07/2011 - 12:36:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120105tongue_out.gif [13159]
O61 - LFC:Last File Created 20/07/2011 - 12:36:58 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104j_11sealed_3blue_b.png [1591]
O61 - LFC:Last File Created 20/07/2011 - 12:38:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\ADF4D771-6A48-4558-A21D-2198A9D24A96.htm [46298]
O61 - LFC:Last File Created 20/07/2011 - 13:09:34 ---A- C:\Users\All Users\Alwil Software\Avast5\log\AshWebSv.ws.ori [25318]
O61 - LFC:Last File Created 20/07/2011 - 16:00:51 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000112.rcb [3952]
O61 - LFC:Last File Created 20/07/2011 - 17:11:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\F5E5D67F-69FB-461F-A436-C6B1E1520D97.htm [46442]
O61 - LFC:Last File Created 20/07/2011 - 17:11:20 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\2D3B0739-58AF-862E-3D9B-6388E4286F9A\9730D604-791C-4600-A758-C384D8368AEE.htm [50512]
O61 - LFC:Last File Created 20/07/2011 - 17:17:37 ----- C:\Users\Louis\AppData\Local\Temp\VBE\MSForms.exd [147284]
O61 - LFC:Last File Created 20/07/2011 - 17:17:37 ----- C:\Users\Louis\AppData\Local\Temp\VBE\RefEdit.exd [15040]
O61 - LFC:Last File Created 20/07/2011 - 17:17:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Contacts Windows Line.lnk [816]
O61 - LFC:Last File Created 20/07/2011 - 17:17:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Macrolib.lnk [901]
O61 - LFC:Last File Created 20/07/2011 - 17:17:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Sauvegarde Carnet adresses.lnk [670]
O61 - LFC:Last File Created 20/07/2011 - 17:18:12 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Excel\Excel10.xlb [21503]
O61 - LFC:Last File Created 20/07/2011 - 17:25:02 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\SANTE.lnk [561]
O61 - LFC:Last File Created 20/07/2011 - 17:25:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\FICHIERS Louis Maryvonne.lnk [700]
O61 - LFC:Last File Created 20/07/2011 - 17:27:41 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU TRAVAUX.lnk [711]
O61 - LFC:Last File Created 20/07/2011 - 17:35:12 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\TRAVAUX MAISON.lnk [592]
O61 - LFC:Last File Created 20/07/2011 - 17:36:39 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\SCENIC.lnk [676]
O61 - LFC:Last File Created 20/07/2011 - 17:39:28 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\DOC PERSO.lnk [577]
O61 - LFC:Last File Created 20/07/2011 - 17:39:28 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\PEUGEOT 1007.lnk [696]
O61 - LFC:Last File Created 20/07/2011 - 17:51:23 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Deleted Items.imm [4408480]
O61 - LFC:Last File Created 20/07/2011 - 18:29:03 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\POMMADE_MIRACLE.pps [81920]
O61 - LFC:Last File Created 21/07/2011 - 07:03:50 ----- C:\Users\Louis\AppData\Local\Temp\DreamMail\20113828083804873\64319\20110721080348491 [8874]
O61 - LFC:Last File Created 21/07/2011 - 07:27:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\84A4365C-9407-4B39-ABF6-50E132B2C797.htm [73582]
O61 - LFC:Last File Created 21/07/2011 - 07:30:34 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\6244DB65-E315-8087-1DBE-62268C578FC2\4964508F-A138-42AF-B9C0-7E8F465B08A0.htm [49282]
O61 - LFC:Last File Created 21/07/2011 - 07:32:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\A45E2E66-EC3A-49AF-9D4B-2D78F6407826.htm [54276]
O61 - LFC:Last File Created 21/07/2011 - 07:32:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\80DA16A7-B839-44A109FA5-AE2686DDA12C\5FD652ED-9ADA-4EB9-B945-2C88394F4B03.htm [48558]
O61 - LFC:Last File Created 21/07/2011 - 07:35:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\2769A399-51FD-4780-859A-805EAD52DD48.htm [66286]
O61 - LFC:Last File Created 21/07/2011 - 07:37:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\8B8CA6EA-68AC-4F47-B1D8-B823B3282CAB.htm [47924]
O61 - LFC:Last File Created 21/07/2011 - 08:07:27 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Archived History [53248]
O61 - LFC:Last File Created 21/07/2011 - 08:07:27 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\index [524656]
O61 - LFC:Last File Created 21/07/2011 - 08:07:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002 [25463]
O61 - LFC:Last File Created 21/07/2011 - 08:07:31 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003 [30247]
O61 - LFC:Last File Created 21/07/2011 - 08:07:34 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004 [17175]
O61 - LFC:Last File Created 21/07/2011 - 08:07:36 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005 [125978]
O61 - LFC:Last File Created 21/07/2011 - 08:07:38 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006 [47650]
O61 - LFC:Last File Created 21/07/2011 - 08:07:50 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007 [17141]
O61 - LFC:Last File Created 21/07/2011 - 08:07:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008 [31759]
O61 - LFC:Last File Created 21/07/2011 - 08:07:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009 [22776]
O61 - LFC:Last File Created 21/07/2011 - 08:07:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000a [24037]
O61 - LFC:Last File Created 21/07/2011 - 08:07:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000b [24500]
O61 - LFC:Last File Created 21/07/2011 - 08:07:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000c [17284]
O61 - LFC:Last File Created 21/07/2011 - 08:07:57 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000d [24788]
O61 - LFC:Last File Created 21/07/2011 - 08:07:58 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000e [51585]
O61 - LFC:Last File Created 21/07/2011 - 08:08:01 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000f [50989]
O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000010 [112300]
O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000011 [69832]
O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000012 [68974]
O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000013 [120519]
O61 - LFC:Last File Created 21/07/2011 - 08:08:07 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Top Sites [49152]
O61 - LFC:Last File Created 21/07/2011 - 08:08:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000014 [24086]
O61 - LFC:Last File Created 21/07/2011 - 08:08:33 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000015 [49067]
O61 - LFC:Last File Created 21/07/2011 - 08:08:33 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000016 [24374]
O61 - LFC:Last File Created 21/07/2011 - 08:08:36 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000018 [23392]
O61 - LFC:Last File Created 21/07/2011 - 08:08:38 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000019 [40370]
O61 - LFC:Last File Created 21/07/2011 - 08:08:39 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000017 [95327]
O61 - LFC:Last File Created 21/07/2011 - 09:18:22 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\tg94Ja69mjX2dwg1y42FxoBb6aks= [26822]
O61 - LFC:Last File Created 21/07/2011 - 10:21:00 ----- C:\Users\Louis\AppData\Local\Temp\{C3E55754-237A-4392-B174-977AC66FFB25}\cookies.sqlite [97280]
O61 - LFC:Last File Created 21/07/2011 - 13:50:25 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\PlYfNGGAhqc045gNUCv6AHWZmZY= [2828]
O61 - LFC:Last File Created 21/07/2011 - 15:21:45 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3848.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 15:21:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E9E1FD81-12DF-4D6C-AD87-C38AFA1FD987}\Show\htmlStrWithoutSource_Prev_7.htm [61844]
O61 - LFC:Last File Created 21/07/2011 - 15:21:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E9E1FD81-12DF-4D6C-AD87-C38AFA1FD987}\Show\htmlStrWithoutSource_Prev_9.htm [10890]
O61 - LFC:Last File Created 21/07/2011 - 15:51:00 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\qx6WjE1Rp2pdTIyVxXStpcqIiic= [2540]
O61 - LFC:Last File Created 21/07/2011 - 15:52:54 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Visited Links [131072]
O61 - LFC:Last File Created 21/07/2011 - 16:00:49 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000113.rcb [3017]
O61 - LFC:Last File Created 21/07/2011 - 16:30:06 ----- C:\Users\Louis\AppData\Local\Temp\eDatasecurity\FileList.txt [74]
O61 - LFC:Last File Created 21/07/2011 - 16:31:16 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\History Index 2011-07 [200704]
O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 [45056]
O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 [532480]
O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 [1056768]
O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 [4202496]
O61 - LFC:Last File Created 21/07/2011 - 17:23:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\a vous Cognacq-Jay Rms.pps [6875648]
O61 - LFC:Last File Created 21/07/2011 - 17:23:26 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\a vous Cognacq-Jay Rms.pps [6875648]
O61 - LFC:Last File Created 21/07/2011 - 17:46:34 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\OlqQ6PulU6kgK+BjgsnopDi4x6s= [2586]
O61 - LFC:Last File Created 21/07/2011 - 19:22:00 ---A- C:\Users\Louis\AppData\Local\Temp\Louis.bmp [31832]
O61 - LFC:Last File Created 21/07/2011 - 19:53:34 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\Soyons_fiers_de_nos_Soldats.pps [1204224]
O61 - LFC:Last File Created 21/07/2011 - 20:21:13 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv6373.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 20:21:21 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv8076.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 20:21:21 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{B9CBC291-EF12-4C50-A2F4-DA9E9C9F225A}\Show\textPart.html [8972]
O61 - LFC:Last File Created 21/07/2011 - 20:22:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv72D0.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 20:22:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085039BE-96D3-4E98-99FC-5FB9B3BEDFF3}\Show\textPart.html [8900]
O61 - LFC:Last File Created 21/07/2011 - 21:15:59 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\Fm1Ie68e18UEnuwMvJhG8bI8ojk= [2112]
O61 - LFC:Last File Created 21/07/2011 - 21:27:18 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE15D.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 21:27:19 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE6DA.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 21:27:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA2.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 21:27:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3FD.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 22:00:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE642.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 22:00:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvEFA5.htm [78]
O61 - LFC:Last File Created 21/07/2011 - 22:00:08 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvF34E.htm [78]

Petit Louis
 Posté le 22/07/2011 à 21:08 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

---A- C:\Users\Louis\Documents\Ancestrologie\database\Backup\ANCESTROLOGIE (2).GBK [70024192]
O61 - LFC:Last File Created 21/09/2009 - 11:05:52 ---A- C:\Users\Louis\AppData\Roaming\Ancestrologie\Settings\W_MAIN.Ini [16532]
O61 - LFC:Last File Created 22/07/2011 - 06:37:02 ----- C:\Users\Louis\AppData\Local\Temp\DreamMail\20113828083804873\62650\20110722073702406 [8874]
O61 - LFC:Last File Created 22/07/2011 - 06:37:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{1F45A9D6-FDF8-4B50-A735-3A09B6A9C559}\Show\htmlStrWithoutSource_Prev_7.htm [23392]
O61 - LFC:Last File Created 22/07/2011 - 06:37:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{1F45A9D6-FDF8-4B50-A735-3A09B6A9C559}\Show\htmlStrWithoutSource_Prev_9.htm [10890]
O61 - LFC:Last File Created 22/07/2011 - 06:37:13 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3AED.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 06:37:31 ----- C:\Users\Louis\AppData\Local\Temp\wmplog00.sqm [1352]
O61 - LFC:Last File Created 22/07/2011 - 06:44:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvCA8F.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 06:44:30 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE4E4.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 06:58:58 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv23B9.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 06:58:59 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2ABC.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 06:59:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E9E1FD81-12DF-4D6C-AD87-C38AFA1FD987}\Show\htmlStrWithoutSource_7.htm [68472]
O61 - LFC:Last File Created 22/07/2011 - 06:59:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E276CA62-A0A5-45D9-B318-CF9305B64514}\Show\htmlStrWithoutSource_7.htm [6718]
O61 - LFC:Last File Created 22/07/2011 - 06:59:28 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\a vous Cognacq-Jay Rms.lnk [1075]
O61 - LFC:Last File Created 22/07/2011 - 07:02:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{CB26894B-8CFF-403B-89FE-74AA0B50C6BC}\Show\htmlStrWithoutSource_7.htm [22324]
O61 - LFC:Last File Created 22/07/2011 - 07:02:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Show\DRAPEA~111.JPG [69594]
O61 - LFC:Last File Created 22/07/2011 - 07:02:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Show\htmlStrWithoutSource_7.htm [17974]
O61 - LFC:Last File Created 22/07/2011 - 07:02:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Show\monkey_line_hyper+btn_fr2.gif [44434]
O61 - LFC:Last File Created 22/07/2011 - 07:05:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\5FBD7419-D0B8-4B80-A571-17A882472772.htm [55618]
O61 - LFC:Last File Created 22/07/2011 - 07:05:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Forward\DRAPEA~111.JPG [69594]
O61 - LFC:Last File Created 22/07/2011 - 07:05:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Forward\monkey_line_hyper+btn_fr2.gif [44434]
O61 - LFC:Last File Created 22/07/2011 - 07:07:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\14A96000-F47F-4020-A4CD-BC552726126A.htm [47940]
O61 - LFC:Last File Created 22/07/2011 - 07:07:35 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\IM.lnk [872]
O61 - LFC:Last File Created 22/07/2011 - 07:07:35 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Soyons_fiers_de_nos_Soldats.lnk [1100]
O61 - LFC:Last File Created 22/07/2011 - 07:07:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{BAD752DD-BB16-4900-80F8-F5BAAAA6EFCB}\Show\htmlStrWithoutSource_7.htm [44810]
O61 - LFC:Last File Created 22/07/2011 - 07:07:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{1F45A9D6-FDF8-4B50-A735-3A09B6A9C559}\Show\htmlStrWithoutSource_7.htm [30134]
O61 - LFC:Last File Created 22/07/2011 - 07:09:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E8083724-3992-44F2-86F4-A9FA3D6D5EED}\Show\htmlStrWithoutSource_7.htm [108282]
O61 - LFC:Last File Created 22/07/2011 - 07:11:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{B36FF99E-2E60-4A93-A183-77F670191F38}\Show\htmlStrWithoutSource_7.htm [147136]
O61 - LFC:Last File Created 22/07/2011 - 07:21:45 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Adresses connexion Orange.lnk [913]
O61 - LFC:Last File Created 22/07/2011 - 07:22:31 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvB511.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 07:22:35 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC538.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 07:22:36 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC9AC.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 07:22:38 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvCEFA.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 07:26:14 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU DOSSIERS BUREAU.lnk [610]
O61 - LFC:Last File Created 22/07/2011 - 07:26:14 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU DOSSIERS.lnk [732]
O61 - LFC:Last File Created 22/07/2011 - 07:26:17 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\LOGICIELS et ASTUCES.lnk [610]
O61 - LFC:Last File Created 22/07/2011 - 07:26:17 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU LOGICIELS et ASTUCES.lnk [768]
O61 - LFC:Last File Created 22/07/2011 - 07:26:43 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU Orange et Internet.lnk [907]
O61 - LFC:Last File Created 22/07/2011 - 07:26:44 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Astuces Orange et Internet.lnk [755]
O61 - LFC:Last File Created 22/07/2011 - 07:29:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv4D20.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 07:47:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\21881872-E42C-40C9-B602-06FA45073C80.htm [48084]
O61 - LFC:Last File Created 22/07/2011 - 07:47:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\80DA16A7-B839-44A109FA5-AE2686DDA12C\62FCEF15-995C-4FCA-811E-DEE99497C78E.htm [48558]
O61 - LFC:Last File Created 22/07/2011 - 07:55:22 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC839.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 07:55:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{3AA077BD-0A58-4114-AB1D-0DAC22B6C993}\Show\textPart.html [8904]
O61 - LFC:Last File Created 22/07/2011 - 08:43:36 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Bureau.lnk [295]
O61 - LFC:Last File Created 22/07/2011 - 08:43:36 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Traduction langue bretonne.lnk [518]
O61 - LFC:Last File Created 22/07/2011 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Modèles\Normal.dot [688640]
O61 - LFC:Last File Created 22/07/2011 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Modèles.lnk [896]
O61 - LFC:Last File Created 22/07/2011 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Normal.lnk [1017]
O61 - LFC:Last File Created 22/07/2011 - 08:56:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv66DA.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 08:56:10 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{99402062-81F6-40B6-8127-580D6EEC5E69}\Show\textPart.html [8976]
O61 - LFC:Last File Created 22/07/2011 - 09:30:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC8D9.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 09:30:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvD22D.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 09:30:27 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E8C1F031-AC5C-4BB2-856F-DB6366E37E9B}\Show\htmlStrWithoutSource_7.htm [199392]
O61 - LFC:Last File Created 22/07/2011 - 09:30:29 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvDEAC.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 09:30:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{BCE5B4FA-37C5-427D-BFB8-0066397E6742}\Show\htmlStrWithoutSource_7.htm [59292]
O61 - LFC:Last File Created 22/07/2011 - 09:31:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{AEEB5574-BBA1-4351-8D92-ADEE57D3048B}\Show\textPart.html [8904]
O61 - LFC:Last File Created 22/07/2011 - 09:54:13 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv99A2.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 09:54:16 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA557.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 09:54:17 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvAA66.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 09:54:18 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvAD06.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:02:51 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\bords_de_champs en FRANCE.pps [1764864]
O61 - LFC:Last File Created 22/07/2011 - 10:19:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv5DD0.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:19:08 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv685B.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:19:09 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv6BC6.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:20:16 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\0Concours_Nat_GeoJPB.PPS [5921280]
O61 - LFC:Last File Created 22/07/2011 - 10:25:54 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv9D14.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:25:55 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv9F75.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:25:56 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA550.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:10 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvD94B.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{C4D99AE9-28CB-402B-A9F1-7C0ED25DF9D2}\Show\ATT00013111.gif [226859]
O61 - LFC:Last File Created 22/07/2011 - 10:26:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{C4D99AE9-28CB-402B-A9F1-7C0ED25DF9D2}\Show\htmlStrWithoutSource_7.htm [21682]
O61 - LFC:Last File Created 22/07/2011 - 10:26:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{C4D99AE9-28CB-402B-A9F1-7C0ED25DF9D2}\Show\stampa_girl_line_fr2.gif [47958]
O61 - LFC:Last File Created 22/07/2011 - 10:26:25 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1311.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv19D6.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1B0F.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1C86.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1E3C.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:28 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1F94.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:28 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2189.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:29 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2503.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:30 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2A22.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:31 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2CE1.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:26:32 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv309A.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:27:11 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC700.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:57:44 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC09B.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 10:57:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{251C9C3E-ADDF-4B1A-B9D3-8573AC42C1F2}\Show\htmlStrWithoutSource_7.htm [44532]
O61 - LFC:Last File Created 22/07/2011 - 10:57:58 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvF820.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 11:05:55 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3EA3.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 12:19:45 ----- C:\Users\Louis\AppData\Local\Temp\{1D24FD29-3A2A-4741-B779-7672514A8314}\cookies.sqlite [97280]
O61 - LFC:Last File Created 22/07/2011 - 12:23:25 ---A- C:\Users\Louis\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2011-07-22 (13-23-25).txt [1054]
O61 - LFC:Last File Created 22/07/2011 - 12:38:41 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2CF9.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 12:38:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{DFD33B3B-11C1-4030-846D-F997AB758CD8}\Show\textPart.html [8904]
O61 - LFC:Last File Created 22/07/2011 - 12:42:03 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv4386.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 12:50:48 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv4646.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 12:50:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{998F8363-3A3A-431F-9A49-CA69B62F690F}\Show\textPart.html [8904]
O61 - LFC:Last File Created 22/07/2011 - 12:51:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{B7811252-2471-4C92-B135-420ABDAAE341}\Show\textPart.html [8976]
O61 - LFC:Last File Created 22/07/2011 - 13:01:22 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{A81A5A5A-BD3E-468E-99D6-BD076F2F7029}\Show\textPart.html [8904]
O61 - LFC:Last File Created 22/07/2011 - 13:01:38 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv323A.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 13:07:41 ----- C:\Users\Louis\AppData\Local\Temp\MSI7064d.LOG [377560]
O61 - LFC:Last File Created 22/07/2011 - 13:11:02 ---A- C:\Users\All Users\Alwil Software\Avast5\log\AshWebSv.ws [0]
O61 - LFC:Last File Created 22/07/2011 - 13:11:08 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_plus_incredibackup[1].swf [11811]
O61 - LFC:Last File Created 22/07/2011 - 13:11:09 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_potection_center_spam[1].swf [12912]
O61 - LFC:Last File Created 22/07/2011 - 13:11:28 ----- C:\Users\Louis\AppData\Local\Temp\wmplog01.sqm [1272]
O61 - LFC:Last File Created 22/07/2011 - 13:11:37 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_book_winter_banner[1].swf [34733]
O61 - LFC:Last File Created 22/07/2011 - 13:11:37 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_im_facebook_present_fr[1].swf [9390]
O61 - LFC:Last File Created 22/07/2011 - 13:12:11 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_potection_center_inbox[1].swf [11896]
O61 - LFC:Last File Created 22/07/2011 - 13:12:12 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_plus_get_more[1].swf [16131]
O61 - LFC:Last File Created 22/07/2011 - 13:12:16 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvD39.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 13:12:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{A0C7B3E0-1FDB-4B4B-8CBC-3B60A4C8D86D}\Show\htmlStrWithoutSource_Prev_9.htm [10890]
O61 - LFC:Last File Created 22/07/2011 - 13:12:18 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv11DB.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 13:13:03 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC591.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 13:13:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvCB7B.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:17:44 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvEB5D.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:41:28 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001b [25463]
O61 - LFC:Last File Created 22/07/2011 - 15:41:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001c [40232]
O61 - LFC:Last File Created 22/07/2011 - 15:41:38 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001d [28709]
O61 - LFC:Last File Created 22/07/2011 - 15:42:18 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001f [40047]
O61 - LFC:Last File Created 22/07/2011 - 15:42:50 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000020 [40570]
O61 - LFC:Last File Created 22/07/2011 - 15:43:08 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000021 [214101]
O61 - LFC:Last File Created 22/07/2011 - 15:43:25 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000022 [36351]
O61 - LFC:Last File Created 22/07/2011 - 15:44:20 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000023 [27100]
O61 - LFC:Last File Created 22/07/2011 - 15:44:55 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000024 [18014]
O61 - LFC:Last File Created 22/07/2011 - 15:44:57 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000025 [38596]
O61 - LFC:Last File Created 22/07/2011 - 15:44:59 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000026 [42553]
O61 - LFC:Last File Created 22/07/2011 - 15:45:00 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000027 [47684]
O61 - LFC:Last File Created 22/07/2011 - 15:45:00 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000028 [45384]
O61 - LFC:Last File Created 22/07/2011 - 15:45:01 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000029 [40698]
O61 - LFC:Last File Created 22/07/2011 - 15:45:01 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002a [48747]
O61 - LFC:Last File Created 22/07/2011 - 15:45:19 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_icmlaeflemplmjndnaapfdbbnpncnbda_0.localstorage [3072]
O61 - LFC:Last File Created 22/07/2011 - 15:46:20 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002b [62350]
O61 - LFC:Last File Created 22/07/2011 - 15:46:21 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002c [17700]
O61 - LFC:Last File Created 22/07/2011 - 15:46:22 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002d [17472]
O61 - LFC:Last File Created 22/07/2011 - 15:46:24 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002e [31828]
O61 - LFC:Last File Created 22/07/2011 - 15:46:25 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002f [51613]
O61 - LFC:Last File Created 22/07/2011 - 15:46:29 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000030 [18738]
O61 - LFC:Last File Created 22/07/2011 - 15:46:29 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000031 [18174]
O61 - LFC:Last File Created 22/07/2011 - 15:46:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000032 [27750]
O61 - LFC:Last File Created 22/07/2011 - 15:46:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000033 [40714]
O61 - LFC:Last File Created 22/07/2011 - 15:46:32 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000034 [76348]
O61 - LFC:Last File Created 22/07/2011 - 15:46:33 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000035 [17064]
O61 - LFC:Last File Created 22/07/2011 - 15:46:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000036 [168976]
O61 - LFC:Last File Created 22/07/2011 - 15:46:50 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000037 [61941]
O61 - LFC:Last File Created 22/07/2011 - 15:52:04 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000038 [24384]
O61 - LFC:Last File Created 22/07/2011 - 15:52:05 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000039 [38050]
O61 - LFC:Last File Created 22/07/2011 - 15:52:07 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003a [30856]
O61 - LFC:Last File Created 22/07/2011 - 15:52:08 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003b [41322]
O61 - LFC:Last File Created 22/07/2011 - 15:52:09 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003c [33726]
O61 - LFC:Last File Created 22/07/2011 - 15:52:10 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003d [39317]
O61 - LFC:Last File Created 22/07/2011 - 15:52:11 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003e [56977]
O61 - LFC:Last File Created 22/07/2011 - 15:52:12 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003f [39078]
O61 - LFC:Last File Created 22/07/2011 - 15:52:12 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000040 [34614]
O61 - LFC:Last File Created 22/07/2011 - 15:52:13 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000041 [32646]
O61 - LFC:Last File Created 22/07/2011 - 15:52:14 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000042 [20869]
O61 - LFC:Last File Created 22/07/2011 - 15:52:22 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000043 [33377]
O61 - LFC:Last File Created 22/07/2011 - 15:52:23 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000044 [20008]
O61 - LFC:Last File Created 22/07/2011 - 15:52:23 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000045 [16907]
O61 - LFC:Last File Created 22/07/2011 - 15:52:24 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000046 [30846]
O61 - LFC:Last File Created 22/07/2011 - 15:52:24 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000047 [17134]
O61 - LFC:Last File Created 22/07/2011 - 15:52:25 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000048 [20140]
O61 - LFC:Last File Created 22/07/2011 - 15:52:54 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Last Session [572839]
O61 - LFC:Last File Created 22/07/2011 - 15:52:54 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Last Tabs [70590]
O61 - LFC:Last File Created 22/07/2011 - 15:53:37 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC3A4.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:53:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvDE36.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:53:55 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA75.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:53:56 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1197.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:54:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv311A.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:54:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3436.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:54:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3BD5.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 15:57:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\80DA16A7-B839-44A109FA5-AE2686DDA12C\E9C5C756-E9C9-4282-AC74-93D4A19B2569.htm [48702]
O61 - LFC:Last File Created 22/07/2011 - 15:57:33 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\10FF2FAC-D4FC-44EA-8012-6CD0AA5AB496.htm [47924]
O61 - LFC:Last File Created 22/07/2011 - 16:00:49 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000114.rcb [6598]
O61 - LFC:Last File Created 22/07/2011 - 16:28:15 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv7C31.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 16:28:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{82D54F09-08CC-4B73-9F38-49087477D798}\Show\htmlStrWithoutSource_7.htm [11992]
O61 - LFC:Last File Created 22/07/2011 - 16:28:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA9E6.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 16:31:06 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000049 [44687]
O61 - LFC:Last File Created 22/07/2011 - 16:31:10 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004a [50641]
O61 - LFC:Last File Created 22/07/2011 - 16:33:52 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [173316]
O61 - LFC:Last File Created 22/07/2011 - 16:33:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [6340740]
O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Current Session [2256]
O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Current Tabs [1858]
O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Preferences [22867]
O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Local State [7250]
O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [4]
O61 - LFC:Last File Created 22/07/2011 - 17:04:24 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv9281.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:04:26 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{65DB9AFE-42A3-45D4-A051-8549840711E2}\Show\textPart.html [8972]
O61 - LFC:Last File Created 22/07/2011 - 17:15:09 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv6BFF.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:17:42 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC2A7.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:17:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{27093D46-194B-4EAA-89CF-D1C213FC485A}\Show\textPart.html [8900]
O61 - LFC:Last File Created 22/07/2011 - 17:18:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2206.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:19:54 ----- C:\Users\Louis\AppData\Local\Temp\{38CCC4B9-FE14-416C-9DBB-D1403E426309}\cookies.sqlite [97280]
O61 - LFC:Last File Created 22/07/2011 - 17:40:01 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\j2zfky9xGrY2FiHlip9AjIr9Z5+I= [26577]
O61 - LFC:Last File Created 22/07/2011 - 17:41:32 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\E1+dsLLfYLPUaVqo1XfcKiDM2FhE= [4116]
O61 - LFC:Last File Created 22/07/2011 - 17:50:17 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv95B1.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:50:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E115EA55-EA89-41FB-8412-63CD21A0ACD6}\Show\textPart.html [8900]
O61 - LFC:Last File Created 22/07/2011 - 17:51:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv97E3.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:51:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv998A.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 17:58:25 ----- C:\Users\Louis\AppData\Local\Temp\Shockwave_Installer_FF.exe [185192]
O61 - LFC:Last File Created 22/07/2011 - 18:03:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\F33D814C-C3B6-4C5B-A993-3AB6EF20F996.htm [48068]
O61 - LFC:Last File Created 22/07/2011 - 18:03:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\108AAAA9-F41D-401B-BCC2-7F22B2F57BC7\89E089AF-2E3E-4AAB-B002-37F4AE4D6AFB.htm [46414]
O61 - LFC:Last File Created 22/07/2011 - 18:13:45 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\5Idiots_0002.wmv [4615571]
O61 - LFC:Last File Created 22/07/2011 - 18:13:46 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Inbox.imm [3005]
O61 - LFC:Last File Created 22/07/2011 - 18:14:01 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_k_2374.ix [65536]
O61 - LFC:Last File Created 22/07/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_i_2374.ix [10235]
O61 - LFC:Last File Created 22/07/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_klh_2374.ix [618]
O61 - LFC:Last File Created 22/07/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_v.ix [296]
O61 - LFC:Last File Created 22/07/2011 - 18:15:04 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\5Idiots_0002.wmv_thumb.bmp [24174]
O61 - LFC:Last File Created 22/07/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_i_464.ix [2550]
O61 - LFC:Last File Created 22/07/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_k_464.ix [65536]
O61 - LFC:Last File Created 22/07/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_klh_464.ix [1634]
O61 - LFC:Last File Created 22/07/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_v.ix [293]
O61 - LFC:Last File Created 22/07/2011 - 18:17:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvB297.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 18:17:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvB4F8.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 18:55:27 ----- C:\Users\Louis\AppData\Local\Temp\DreamMail\20113828083804873\58937\20110722195527831 [8874]
O61 - LFC:Last File Created 22/07/2011 - 18:55:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{AC4EDA39-EAB4-47F7-AA3E-30E15D92A1C0}\Show\htmlStrWithoutSource_Prev_7.htm [966]
O61 - LFC:Last File Created 22/07/2011 - 18:55:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{AC4EDA39-EAB4-47F7-AA3E-30E15D92A1C0}\Show\htmlStrWithoutSource_Prev_9.htm [10890]
O61 - LFC:Last File Created 22/07/2011 - 18:55:47 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvDF4.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 19:20:05 ---A- C:\Users\Louis\AppData\Local\Eggiz\Meteo_Fusion.exe_Url_5cmoxx1fd5gueyccpshzf1q3h23ui3c2\1.5.9.11\user.config [5115]
O61 - LFC:Last File Created 22/07/2011 - 19:23:19 ---A- C:\Users\Louis\AppData\Local\Temp\IM\imv3D8C.htm [78]
O61 - LFC:Last File Created 22/07/2011 - 19:38:40 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\1D0E9CF2-E9B7-43A9-974C-738B82088545_data.bak [990]
O61 - LFC:Last File Created 22/07/2011 - 19:43:45 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\1D0E9CF2-E9B7-43A9-974C-738B82088545_data.msg [990]
O61 - LFC:Last File Created 22/07/2011 - 19:53:34 ----- C:\Users\Louis\AppData\Local\Temp\IM\Soyons_fiers_de_nos_Soldats.pps [1208320]
O61 - LFC:Last File Created 22/07/2011 - 19:53:34 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\{BC0F3723-723E-406E-9C53-1E5D610F3CB2}\Soyons_fiers_de_nos_Soldats.pps [1204224]
O61 - LFC:Last File Created 24/02/2011 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\ScriptShield.txt [14468]
O61 - LFC:Last File Created 24/02/2011 - 19:26:18 ---A- C:\Users\All Users\Alwil Software\Avast5\snx_lconfig.xml [446]



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: Ad-Remover par C_XX - (.C_XX.) [HKLM] -- Ad-Remover
O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 04/07/2011 - C:\Windows\system32\drivers\aswMonFlt.sys - aswMonFlt(aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 07/12/2006 - C:\Acer\Empowering Technology\eRecovery\int15.sys - int15 (int15) .(...) - LEGACY_INT15
O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\DRIVERS\psdfilter.sys - PSDFilter(PSDFilter) .(.HiTRUST - PSD Filter Driver.) - LEGACY_PSDFILTER
O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\PSDNServ.sys - PSDNSERVER(PSDNServ) .(.HiTRUST - PSD Named Pipe Driver.) - LEGACY_PSDNSERV
O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\psdvdisk.sys - psdvdisk(psdvdisk) .(.HiTRUST - PSD Virtual Disk Driver.) - LEGACY_PSDVDISK
O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.) - SASDIFSV (SASDIFSV) .(...) - LEGACY_SASDIFSV
O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.) - SASKUTIL (SASKUTIL) .(...)

Petit Louis
 Posté le 22/07/2011 à 21:09 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

O64 - Services: CurCS - 19/09/2006 - C:\Windows\system32\drivers\WSVD.sys - WSVD(WSVD) .(.Wasay - Wasay virtual disk driver.) - LEGACY_WSVD



---\\ Liste des fichiers non signés (O65)
O65 - LUF:09/12/2005 (. - .) (1.0.2169.16560) - c:\windows\system32\ClearEvent.exe
O65 - LUF:15/12/2005 (.Pas de propriétaire - PortDrv ??????? ??? ??????.) (1, 0, 2, 1) - c:\windows\system32\EPSPTDV.DLL
O65 - LUF:22/11/2006 (. - Assembly imported from type library 'Shell32'..) (1.0.0.0) - c:\windows\system32\Interop.Shell32.dll
O65 - LUF:02/11/2007 (. - ResourceDLL.) (1, 1, 3, 5) - c:\windows\system32\rsnpstd3.dll



---\\ Observateur d'évènement d'application (O66)
O66 - EventLog: ID=11905 (MsiInstaller) - (...) -- C:\Program Files\IncrediMail\Bin
O66 - EventLog: ID=8193 (System Restore) - (...) -- C:\Program Files\Common Files\Windows Live\.cache\93bfc4221cb70f219



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.)
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %*
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] ${searchCLSID} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com
O69 - SBI: SearchScopes [HKCU] %productIESearchGUID% - (MyStart Search) - http://mystart.incredimail.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {0B8B1BFE-7FE8-4B20-9B7A-0EE97A3FC97A} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://rws.search.ke.voila.fr
O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - (MyStart Search) - http://mystart.incredimail.com



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.3A049F13FD7BB9AA1E70C68F397222DA] [SPRF][22/07/2011] (.Adobe Systems Inc. - Adobe Shockwave Player.) -- C:\Users\Louis\AppData\Local\Temp\Shockwave_Installer_FF.exe [185192]
[MD5.518DDDB4C5AB132386FE75B4564382C9] [SPRF][14/08/2010] (.SpeedyFox - SpeedyFox program.) -- C:\Users\Louis\Desktop\Nettoyeur Firefox.exe [453000]
[MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [24576]
[MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [196608]
[MD5.0C78701C6F42345DFF2B2B6C3C3D01EF] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [172032]



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "WinCollab-DFSR-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe
O87 - FAEL: "WinCollab-DFSR-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe
O87 - FAEL: "WinCollab-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "WinCollab-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "WinCollab-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "WinCollab-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe
O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe
O87 - FAEL: "{F726BF72-BF4E-4B4F-B9FE-4CDF4E903131}" | In - None - P17 - TRUE | .(.Acer Incorporated - Acer Arcade Live.) -- C:\Program Files\Acer Arcade Live\Acer Arcade Live Main Page\Acer Arcade Live.exe
O87 - FAEL: "{51674872-C1F2-4F6E-9B9C-A757F38BE2C6}" | In - None - P17 - TRUE | .(.Cyberlink - Pas de description.) -- C:\Program Files\Acer Arcade Live\SlideShow DVD\Component\CLSLDVD.exe
O87 - FAEL: "{00717E99-5B5E-4D82-B899-5B920CE145A9}" | In - None - P17 - TRUE | .(.Cyberlink - ARA Work Process.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\ARAWP.exe
O87 - FAEL: "{F90A806B-AED4-4244-AC78-EA10F3E4F0E6}" | In - None - P17 - TRUE | .(.Pas de propriétaire - DVAX2Process MFC Application.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\DVAX2Process.exe
O87 - FAEL: "{2EACCE03-44AD-4451-AFA5-833B35CC35B9}" | In - None - P17 - TRUE | .(.Acer Incorporated - DVDivine.) -- C:\Program Files\Acer Arcade Live\Acer DVDivine\DVDivine.exe
O87 - FAEL: "{39E7738E-3D11-43B9-835D-D16D2F3B2B0D}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia\HomeMedia.exe
O87 - FAEL: "{59B339AA-E6E9-43D5-A0ED-DAC81D658E12}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia Connect.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\HomeMedia Connect.exe
O87 - FAEL: "{B70C9DFF-8065-445C-8092-F386899335A3}" | In - None - P17 - TRUE | .(.CyberLink - CLMSServer.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
O87 - FAEL: "{9F52794C-B028-4208-88E2-1D78370B9A3B}" | In - None - P17 - TRUE | .(.Acer Incorporated - VideoMagician.) -- C:\Program Files\Acer Arcade Live\Acer VideoMagician\VideoMagician.exe
O87 - FAEL: "{E9C996F9-7D3C-47CB-9418-E12D4C39FF30}" |In - Private - P6 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.)
O87 - FAEL: "{62AD61A2-E8F0-4778-A262-C0AF4BD83092}" |In - Private - P17 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.)
O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus de l’autorité de sécurité locale.) -- C:\Windows\system32\lsass.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{EB2903EC-4E0E-4950-811B-0A70F728770B}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe
O87 - FAEL: "{27467FCD-DA11-4617-B18B-785DF4334AF3}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe
O87 - FAEL: "{039F4044-7CE8-4A07-84EA-F0BAD32857AF}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe
O87 - FAEL: "{B7FFF15D-2A9D-4BD3-B82B-03A5572FC3D1}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O87 - FAEL: "{E7556FB8-8788-4117-8024-F4DAE12BA048}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{A2AC4271-B58F-4BDA-AF90-E45FC1AE448A}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{88B110E9-17F9-496B-B129-0DF8C2AD375B}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{827FD52E-5092-4044-AFBC-C757E9ADE5DD}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{ABB72582-43B9-47B3-BA51-25CBF8ECF627}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{900CDA3B-FE39-4E89-90C1-A12AF5D36EB9}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{89F2B2D8-47C7-4D9A-89BE-63E1ABC37403}" |In - Private - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{56F3A1CC-6F33-4CDA-8660-2552EA950563}" |In - Private - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{DF216603-12A4-460A-A780-AFBD20CA73A2}" |In - Public - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{240349EE-9C9F-44EA-932F-00568E5181FD}" |In - Public - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.)
O87 - FAEL: "{F23C2826-966F-4739-AECD-4C4D95887A59}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{4C2BCE8D-6C96-432C-8376-AE2E26B18187}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{78E84DE1-69AB-4CB4-AD1F-F93A08ED8AD7}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe
O87 - FAEL: "{667A5F42-2BA8-4982-9C72-9A0E6F6F8ECA}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{5039316D-20DF-4A89-81B4-D7AAB86AC02F}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.)
O87 - FAEL: "{308E4FE9-0714-4C3F-82D5-3AA29C0E38C0}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{F9E756EE-34C2-4E15-AEEC-3ECE52CD90E3}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
O87 - FAEL: "{BC480930-5787-45E8-901A-CDD0E6E98625}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{85F00E8F-07FE-4006-AA32-D59CD53712DA}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe
O87 - FAEL: "{00BA6119-9731-4A13-816C-401A728B7F06}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
O87 - FAEL: "{F583168D-3E58-42D5-A029-AAC89E1222E2}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe



---\\ Scan Additionnel (O88)
Database Version : 8548 - (21/07/2011)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 0

C:\Users\Louis\AppData\LocalLow\IncrediMail_MediaBar_2 =>Toolbar.Conduit



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 06/05/2007 266343 | (Acer HomeMedia Connect Service) . (.CyberLink.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
SR - | Auto 06/05/2007 28672 | (AcerMemUsageCheckService) . (...) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
SR - | Auto 07/05/2007 569344 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\system32\Ati2evxx.exe
SR - | Auto 04/07/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
SR - | Auto 06/05/2007 457512 | eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
SR - | Auto 11/09/2009 53248 | (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
SR - | Auto 12/09/2009 81920 | (FirebirdGuardianDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe
SR - | Demand 12/09/2009 2736128 | (FirebirdServerDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe
SR - | Auto 06/05/2007 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
SS - | Auto 30/12/1899 0 | (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe
SS - | Auto 30/12/1899 0 | (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
SR - | Auto 06/05/2007 143360 | (RichVideo) . (...) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
SR - | Auto 12/09/2009 92008 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
SR - | Auto 13/09/2009 21504 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software GmbH.) - C:\Windows\System32\svchost.exe
SR - | Auto 13/09/2009 21504 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe



---\\ Recherche Master Boot Record Infection (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Louis at 22/07/2011 20:47:55

device: opened successfully
user: MBR read successfully

Disk trace:
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys
1 ntkrnlpa!IofCallDriver[0x82A82912] -> \Device\Harddisk0\DR0[0x8571BAC8]
3 CLASSPNP[0x881BD8B3] -> ntkrnlpa!IofCallDriver[0x82A82912] -> [0x8572C858]
5 acpi[0x87A0F6BC] -> ntkrnlpa!IofCallDriver[0x82A82912] -> \Device\Ide\IdeDeviceP0T0L0-0[0x85702B98]
kernel: MBR read successfully
user & kernel MBR OK



End of the scan (2095 lines in 04mn 06s)(0)

Labougie
 Posté le 22/07/2011 à 21:26 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

je vais être dure avec toi .

Peux tu mettre le rapport avec l'option "Insérer un rapport", si toutefois il est trop lourd, passe par cjoint.

Va dans msconfig, vu que tu as décoché plein de choses . et recoche java update. C'est utile pour les mises à jour.

Aussi pourquoi il y a ceci dans tes programmes.

Clean Virus MSN_is1

labougie

Petit Louis
 Posté le 22/07/2011 à 22:01 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Clean Virus MSN_is1 Je l'avais installer pour MSN

Petit Louis
 Posté le 22/07/2011 à 22:50 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Astucien

Je seche pour envoyer Insérer un rapport comment fait-on ????

Publicité
Pages : [1] 2 3 ... Fin
Page 1 sur 3 [Fin]

Vous devez être connecté pour participer à la discussion.
Cliquez ici pour vous identifier.

Vous n'avez pas de compte ? Créez-en un gratuitement !
Recevoir PC Astuces par e-mail


La Lettre quotidienne +226 000 inscrits
Avec l'actu, des logiciels, des applis, des astuces, des bons plans, ...

Les bonnes affaires
Une fois par semaine, un récap des meilleurs offres.

Les fonds d'écran
De jolies photos pour personnaliser votre bureau. Une fois par semaine.

Les nouveaux Bons Plans
Des notifications pour ne pas rater les bons plans publiés sur le site.

Les bons plans du moment PC Astuces

Tous les Bons Plans
16,54 €Webcam Elephone Ecam (FullHD, 5MP, autofocus) à 16,54 € livrée
Valable jusqu'au 21 Janvier

Gearbest fait une promotion sur la Webcam Elephone Ecam (FullHD, 5MP, autofocus) qui passe à 14,94 €. Comptez 1,60 € pour la livraison et l'assurance soit un total de 16,54 € livrée. Cette très bonne webcam à brancher sur un port USB de votre ordinateur possède un micro intégrée et un système de pose universelle qui vous permettre de la mettre sur votre écran ou sur votre bureau.

Ce marchand sérieux se trouvant en Chine, la livraison peut prendre une vingtaine de jours. Vous pouvez payer par carte bancaire ou par Paypal (conseillé pour bénéficier de la garantie Paypal).


> Voir l'offre
58,95 €Disque dur Seagate BarraCuda 2 To à 58,95 €
Valable jusqu'au 20 Janvier

Amazon propose actuellement le disque dur Seagate BarraCuda - 2 To (ST2000DM008) à 58,95 € livré gratuitement. On le trouve ailleurs autour de 69 €. Ce disque dur 3.5 pouces SATA III tourne à 7200tr/min et possède 64Mo de cache. 


> Voir l'offre
349,99 €Casque réalité virtuelle Oculus Rift S à 349,99 €
Valable jusqu'au 21 Janvier

Amazon fait une promotion sur le casque de réalité virtuelle Oculus Rift S avec ses 2 manettes Oculus Touch à 349,99 € alors qu'on le trouve ailleurs à partir de 449 €. La livraison est gratuite. L'Oculus Rift S est un casque de Réalité Virtuelle pour PC qui vous permettra de tirer parti du meilleur de votre machine en matière de VR. Ce casque VR pour PC est le plus perfectionné conçu par Oculus. Plus ergonomique et plus performant, il est aussi plus confortable et plus efficace que ses prédécesseurs. L'immersion est parfaite, le rendu spectaculaire, les images éclatantes et bluffantes de réalisme. Sensations fortes garanties !


> Voir l'offre

Sujets relatifs
Toolbar Conduit et Forumer sous Win 8.1
Toolbar.Conduit Adware.ShoppingReport etc...
Babylon search, toolbar, etc.
Conduit Engine Vuze Bar
Conduit engine,Fissa,Offerbox et autres
Infection toolbar babylon
Infection Conduit engine/Favorit et j'en passe...
Conduit Engine à quoi cela sert
INFECTION PAR CONDUIT ENGINE !!
toolbar babylon
Plus de sujets relatifs à Conduit Engine, asktoolbar, babylon toolbar
 > Tous les forums > Forum Sécurité