|
 Posté le 22/07/2011 @ 12:35 |
| Bonjour
J'ai un doute la flèche de ma souris des fois ce bloque ou est un peu folle et mon ordi est un peu lent est ce une infection ?????
Bonne journée Petit Louis

Modifié par Petit Louis le 30/07/2011 12:42
|
|
|
|
|
|
Posté le 22/07/2011 à 12:42 |
Nouvel astucien
| Bonjour
difficile à dire sans les rapports habituels (Malwarebytes,ZHPDiag).
Note : rapports à poster à l'attention du Groupe Sécurité.
@+ Modifié par Anonyme le 22/07/2011 12:43 |
|
Posté le 22/07/2011 à 13:28 |
| Voici le rapport MBA
Malwarebytes' Anti-Malware 1.51.1.1800 www.malwarebytes.org
Version de la base de données: 7209
Windows 6.0.6002 Service Pack 2 Internet Explorer 9.0.8112.16421
22/07/2011 13:23:25 mbam-log-2011-07-22 (13-23-25).txt
Type d'examen: Examen rapide Elément(s) analysé(s): 159806 Temps écoulé: 3 minute(s), 23 seconde(s)
Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0
Processus mémoire infecté(s): (Aucun élément nuisible détecté)
Module(s) mémoire infecté(s): (Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté)
Dossier(s) infecté(s): (Aucun élément nuisible détecté)
Fichier(s) infecté(s): (Aucun élément nuisible détecté) |
|
Posté le 22/07/2011 à 13:45 |
Nouvel astucien
| Re....
ZHPDiag ?! 
@+ |
|
Posté le 22/07/2011 à 13:46 |
| Rapport de ZHPDiag v1.27.2423 par Nicolas Coolman, Update du 21/07/2011 Run by Louis at 22/07/2011 13:38:01 Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser MSIE: Internet Explorer v9.0.8112.16421 MFIE: Mozilla Firefox v (Defaut) GCIE: Google Chrome v14.0.814.0
---\\ System Information Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002) ~ Processor: x86 Family 15 Model 107 Stepping 1, AuthenticAMD ~ Operating System: 32 Bits ~ Boot mode: ~ Normal (Normal boot) Total RAM: 1790 MB (51% free) ~ System Restore: Activé (Enable) System drive C: has 84 GB (74%) free of 112 GB
---\\ Logged in mode ~ Computer Name: PC-DE-LOUIS ~ User Name: Louis ~ All Users Names: Louis, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O82 ~ Logged in as Administrator
---\\ Environnement Variables ~ %AppData%=C:\Users\Louis\AppData\Roaming\ ~ %Desktop%=C:\Users\Louis\Desktop\ ~ %Favorites%=C:\Users\Louis\Favorites\ ~ %LocalAppData%=C:\Users\Louis\AppData\Local\ ~ %StartMenu%=C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\
---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 84 Go of 112 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 87 Go of 111 Go) E:\ CD-ROM drive (Not Inserted) F:\ Floppy drive, Flash card reader, USB Key (Not Inserted) G:\ Floppy drive, Flash card reader, USB Key (Not Inserted) H:\ Floppy drive, Flash card reader, USB Key (Not Inserted) I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK
---\\ Recherche particulière de fichiers génériques [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.16/09/2009 - 22:27:38.) -- C:\Windows\Explorer.exe [2926592] [MD5.4B555106290BD117334E9A08761C035A] - (....) (.02/11/2006 - 10:45:37.) -- C:\Windows\system32\rundll32.exe [44544] [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.13/09/2009 - 08:33:37.) -- C:\Windows\system32\Wininit.exe [96768] [MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.31/03/2011 - 07:27:03.) -- C:\Windows\system32\wininet.dll [1126912] [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.16/09/2009 - 22:28:14.) -- C:\Windows\system32\Winlogon.exe [314368] [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.16/09/2009 - 22:32:28.) -- C:\Windows\system32\drivers\atapi.sys [19944] [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.16/09/2009 - 22:32:50.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]
---\\ Etat des fichiers cachés (Caché/Total) ~ Mes Videos (My Videos) : 1/2 ~ Mes Favoris (My Favorites) : 2/196 ~ Mes Documents (My Documents) : 5/3795 ~ Mon Bureau (My Desktop) : 2/72 ~ Menu demarrer (Programs) : 6/34
---\\ Processus lancés [MD5.E7CF222185411C6A3E68273C452B3283] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3493720] [MD5.8B718E2C3AE1EA0B90BFA793F7B558A7] - (.Ask - Ask Updater.) -- C:\Program Files\Ask.com\Updater\Updater.exe [395144] [MD5.C89B2956A12493FA137E670678D4E89D] - (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe [294912] [MD5.DF105989C770C6AB43970A2CC0B9561A] - (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe [233472] [MD5.5F8C39A444DA36FCCE9801AC0D84811E] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366024] [MD5.8E37F9BAA54D26146654AE8F6181B4D9] - (.WASEO - ClickTray Calendar.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe [3495936] [MD5.A6216DBB689EA1A63A47F30D89FEA670] - (.DreamStudio - Email Client.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe [1817088] [MD5.87AA7CB031C57FE5ACB5F87C0BCCFD9B] - (.Efficient Software - Pas de description.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe [10275328] [MD5.80D352BE20A74B3A44F2B4A4E79DDADD] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [263624] [MD5.328E2F052BB2F4286360EFF7C7FC1C5B] - (.Axantum Software AB - AxCrypt File Encryption.) -- C:\Program Files\Axantum\AxCrypt\AxCrypt.exe [1126080] [MD5.055713CD9E0C6AAC46AFBB3A5B95EF75] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344] [MD5.55B35599E4B8C20904CF6BE6F50A1F8D] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16856] [MD5.887BAA34C1B3AB4FBC54BF6545B59B49] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [658432]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Louis\AppData\Roaming\Mozilla\Firefox\Profiles\rb4kum3u.default\prefs.js M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_22 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.69] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.69] - (.RealNetworks, Inc. - 6.0.12.69.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll M0 - MFSP: prefs.js [Louis - rb4kum3u.default] http://fr.yahoo.com M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{03B08592-E5B4-45ff-A0BE-C1D975458688}] [] Toolbar Buttons v1.0 (.Michael Buckley.) M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}] [] Flagfox v4.1.5 (.Dave Garrett.) M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20110704 (.WOT Services Oy.)
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default][HomePage] http://fr.yahoo.com G2 - GCE: Preference [User Data\Default] [bdfkbdkkfmmckaadapdipihjfaacnkgd] Splendid v.3 (Activé) G2 - GCE: Preference [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.1.2.2 (Activé) G2 - GCE: Preference [User Data\Default] [ckibcdccnfeookdmbahgiakhnjcddpki] Capture de Page Web - Webpage Screenshot v.5.3.1 (Activé) G2 - GCE: Preference [User Data\Default] [hhfceebbbinfckajnkhjiiefbpfljpid] ABonEntendeur v.0.0.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [jhejngphiacapbgllhagbpdkkdieeaej] Chrome Flags v.1.4 (Activé) G2 - GCE: Preference [User Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Shockwave Flash v.10,3,181,35 (Activé)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com R0 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = yahoo! search R1 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com R1 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\system32\ieframe.dll R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} . (...) (No version) -- (.not file.) R3 - URLSearchHook: (no name) - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} . (...) (No version) -- (.not file.)
---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline O2 - BHO: (no name) - {1d970ed5-3eda-438d-bffd-715931e2775b} Clé orpheline O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.HiTRUST - ActiveToolBand Module.) -- C:\Windows\system32\ActiveToolBand.dll O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.HiTRUST - eDStoolbar Module.) -- C:\Windows\system32\eDStoolbar.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O3 - Toolbar: Foxit PDF Creator Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files\Ask.com\GenericAskToolbar.dll
---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKLM\..\Run: [ApnUpdater] . (.Ask - Ask Updater.) -- C:\Program Files\Ask.com\Updater\Updater.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe O4 - HKCU\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKCU\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ClickTray Calendar.lnk . (.WASEO.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DreamMail.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EfficientPIM Free.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe
---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Users\Louis\Desktop\AMCap.lnk . (.Microsoft Corporation.) -- C:\Windows\amcap.exe O4 - Global Startup: C:\Users\Louis\Desktop\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe O4 - Global Startup: C:\Users\Louis\Desktop\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe O4 - Global Startup: C:\Users\Louis\Desktop\Conjugaison.lnk . (.ECHELARD.) -- D:\Documents\Logiciels installés\Conjugaison\Conjug.exe O4 - Global Startup: C:\Users\Louis\Desktop\CUISINON.lnk . (...) -- D:\Documents\Logiciels installés\cuis110_full\CUISINON.EXE O4 - Global Startup: C:\Users\Louis\Desktop\Dames.lnk . (...) -- D:\Documents\Dames.exe O4 - Global Startup: C:\Users\Louis\Desktop\Dictionnaire.lnk . (...) -- D:\Documents\Logiciels installés\Dictionnaire\dict.exe O4 - Global Startup: C:\Users\Louis\Desktop\Documents (2).lnk . (...) -- D:\Documents O4 - Global Startup: C:\Users\Louis\Desktop\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe O4 - Global Startup: C:\Users\Louis\Desktop\Images.lnk . (...) -- D:\Pictures O4 - Global Startup: C:\Users\Louis\Desktop\JkDefrag.lnk . (.J.C. Kessels.) -- D:\Documents\Logiciels installés\JkDefrag-3.33\JkDefrag.exe O4 - Global Startup: C:\Users\Louis\Desktop\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc O4 - Global Startup: C:\Users\Louis\Desktop\pinball.lnk . (.Cinematronics.) -- D:\Documents\Pinball\pinball.exe O4 - Global Startup: C:\Users\Louis\Desktop\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk . (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Codes-doc - Raccourci.lnk . (...) -- D:\Documents\DOSSIERS\DOC PERSO\Codes-doc.axx O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Documents (2).lnk . (...) -- D:\Documents O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GénéaTique 2006.lnk . (.CDIP.) -- C:\Program Files\Geneatique2006\Genea2006.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Généatique 2009.lnk . (.CDIP.) -- C:\Program Files\Geneatique2009\Genea2009.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\IncrediMail 2.0.lnk . (.IncrediMail, Ltd..) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Jasc Paint Shop Pro 8 (2).lnk . (...) -- C:\Windows\Installer\{81A34902-9D0B-4920-A25C-4CDC5D14B328}\PaintShopPro8_TryAndBuy.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Picture It! Express 7.0.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Picture It! 7\Pip.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ordinateur - Raccourci.lnk - Clé orpheline O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Paint.NET.lnk . (.dotPDN LLC.) -- C:\Program Files\Paint.NET\PaintDotNet.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- D:\Documents\Logiciels installés\PhotoFiltre\PhotoFiltre.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\RegSupreme.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme\RegSupreme.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller.lnk . (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sidebar.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Snipping Tool.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\SnippingTool.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TomTom HOME 2.lnk . (.TomTom International B.V..) -- C:\Program Files\TomTom HOME 2\TomTomHOME.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Tomtomax Maxi-Box.lnk . (.Koak Design Development.) -- C:\Program Files\Tomtomax Maxi-Box\Tomtomax-MaxiBox.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Wallpaper.lnk . (...) -- C:\Program Files\Wallpaper\Wallpaper.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: ajouter cette page à vos favoris Orange - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\addfavorites_html\addfavorites.html O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~2\Office10\EXCEL.exe O8 - Extra context menu item: envoyer le texte sélectionné par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html O8 - Extra context menu item: envoyer par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html O8 - Extra context menu item: envoyer un mail - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html O8 - Extra context menu item: orange.fr - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html O8 - Extra context menu item: rechercher le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html O8 - Extra context menu item: traduire la page - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html O8 - Extra context menu item: traduire le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html
---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CS2\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1 O17 - HKLM\System\CS3\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink - CLMSServer.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Pas de propriétaire - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project - Firebird SQL Server.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - Pas de description.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: Orange update Core Service (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O23 - Service: Planificateur LiveUpdate automatique (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (.not file.) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe
---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Maintenance en 1 clic.job [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.7D4722E3A77B1D5B64F2D6ED0BD72A80] [APT] [Maintenance en 1 clic] (.TuneUp Software GmbH.) -- C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe [MD5.4B5F5E8F51BE2541CD3E066CE175042A] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe [MD5.00000000000000000000000000000000] [APT] [{04FC8B77-8E4C-46C5-A741-A6BA2FB45D10}] (...) -- J:\PSP.8\Jasc_Paint_Shop_Pro_8.03_Supergege\Crack.exe (.not file.) [MD5.7C66F9B332F28433EF23FC6403BFDB87] [APT] [{3C9E5E46-3A9F-4C9B-86E6-053B5822167C}] (...) -- C:\Program Files\Geneatique2009\unins000.exe [MD5.C77EB5E990478856A275991166D4E0EA] [APT] [{BE0F31A8-4B1C-4E8E-BF70-41793ED61734}] (.SEIKO EPSON CORP..) -- C:\Program Files\epson\escndv\setup\setup.exe
---\\ Pilotes lancés au démarrage (O41) O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: (SASDIFSV) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.) O41 - Driver: (SASKUTIL) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.) O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 4.65 - (.Pas de propriétaire.) [HKLM] -- 7-Zip O42 - Logiciel: ATI Uninstaller - (.ATI Technologies, Inc..) [HKLM] -- ATI Uninstaller O42 - Logiciel: Acer Arcade Live Main Page - (.Acer Inc..) [HKLM] -- {EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37} O42 - Logiciel: Acer DV Magician - (.Acer Inc..) [HKLM] -- {F6EFFB76-4A07-11DA-9D78-000129760D75} O42 - Logiciel: Acer DVDivine - (.Acer Inc..) [HKLM] -- {B145EC69-66F5-11D8-9D75-000129760D75} O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2} O42 - Logiciel: Acer HomeMedia - (.Acer Inc..) [HKLM] -- {AA4BF92B-2AAF-11DA-9D78-000129760D75} O42 - Logiciel: Acer HomeMedia Connect - (.Acer Inc..) [HKLM] -- {132888AE-EF67-41C5-BCA2-7D5D2488AB63} O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} O42 - Logiciel: Acer SlideShow DVD - (.Acer Inc..) [HKLM] -- {41581EF5-45A7-11DA-9D78-000129760D75} O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35} O42 - Logiciel: Acer VideoMagician - (.Acer Inc..) [HKLM] -- {F79A208D-D929-11D9-9D77-000129760D75} O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36} O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643} O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Ancestrologie 2009 - (.PCM.) [HKLM] -- Ancestrologie_is1 O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7} O42 - Logiciel: AxCrypt 1.7.2126.0 - (.Axantum Software AB.) [HKLM] -- {E4C1DBF1-67D9-4973-9DEC-677E695E7CE0} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: Clean Virus MSN - (.AxBx.) [HKLM] -- Clean Virus MSN_is1 O42 - Logiciel: ClickTray Calendar - (.Pas de propriétaire.) [HKLM] -- ClickTray Calendar_is1 O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3} O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5} O42 - Logiciel: EPSON Copy Utility 3 - (.Pas de propriétaire.) [HKLM] -- {67EDD823-135A-4D59-87BD-950616D6E857} O42 - Logiciel: EPSON Easy Photo Print - (.Pas de propriétaire.) [HKLM] -- {BC69DDB8-4840-4D9B-BB31-0D4DB2BA1312} O42 - Logiciel: EPSON File Manager - (.Pas de propriétaire.) [HKLM] -- {E86BC406-944E-41F6-ADE6-2C136734C96B} O42 - Logiciel: EPSON Logiciel imprimante - (.Pas de propriétaire.) [HKLM] -- EPSON Printer and Utilities O42 - Logiciel: EPSON Scan - (.Pas de propriétaire.) [HKLM] -- EPSON Scanner O42 - Logiciel: EPSON Scan Assistant - (.Pas de propriétaire.) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64} O42 - Logiciel: EPSON Web-To-Page - (.Pas de propriétaire.) [HKLM] -- {7F14F68C-17FA-4F88-B3FD-7F449C1EBF32} O42 - Logiciel: ESDX4000_4050_CX3900 - (.Pas de propriétaire.) [HKLM] -- ESDX4000_4050_CX3900 O42 - Logiciel: EVEREST Home Edition v2.20 - (.Lavalys Inc.) [HKLM] -- EVEREST Home Edition_is1 O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC} O42 - Logiciel: FileZilla Client 3.3.5.1 - (.Pas de propriétaire.) [HKLM] -- FileZilla Client O42 - Logiciel: Firebird 2.1.3.18185 (Win32) - (.Firebird Project.) [HKLM] -- FBDBServer_2_1_is1 O42 - Logiciel: France Bleu 1.1.1 - (.Radio France.) [HKLM] -- France Bleu_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome O42 - Logiciel: Généatique 2006 - (.CDIP.) [HKLM] -- {86D9FA99-F4BF-4D8F-B2CB-8E550C32BCBE}_is1 O42 - Logiciel: Généatique 2009 - (.CDIP.) [HKLM] -- {CEE31344-B227-4EE3-9D0C-74B7A52AC82E}_is1 O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595 O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484 O42 - Logiciel: IcoFX 1.6.4 - (.Pas de propriétaire.) [HKLM] -- IcoFX_is1 O42 - Logiciel: IncrediMail - (.IncrediMail.) [HKLM] -- {5E97F3BD-CDDC-4188-9D98-532E14FABB5D} O42 - Logiciel: IncrediMail 2.0 - (.IncrediMail Ltd..) [HKLM] -- IncrediMail O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3 O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8} O42 - Logiciel: Jasc Paint Shop Pro 8 - (.Nom de votre société.) [HKLM] -- {81A34902-9D0B-4920-A25C-4CDC5D14B328} O42 - Logiciel: Java(TM) 6 Update 22 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216016FF} O42 - Logiciel: MSI to redistribute MS VS2005 CRT libraries - (.The Firebird Project.) [HKLM] -- {A8D93648-9F7F-407D-915C-62044644C3DA} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF} O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.1.1800 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Meteo Fusion 1.5.9.11 - (.Eggiz.) [HKLM] -- Meteo Fusion _is1 O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31} O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1 O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262} O42 - Logiciel: Microsoft Office XP Professional - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Office XP Professional avec FrontPage - (.Microsoft Corporation.) [HKLM] -- {9028040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Picture It! Express 7.0 - (.Microsoft Corporation.) [HKLM] -- {369B36BE-3D64-4641-9AEA-808D436FE130} O42 - Logiciel: Microsoft Publisher 2002 - (.Microsoft Corporation.) [HKLM] -- {9119040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 - (.Microsoft Corporation.) [HKLM] -- {E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack O42 - Logiciel: Mozilla Firefox (3.6.18) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.18) O42 - Logiciel: NTI Backup NOW! 4.7 - (.NewTech Infosystems.) [HKLM] -- {67ADE9AF-5CD9-4089-8825-55DE4B366799} O42 - Logiciel: NTI CD & DVD-Maker - (.NewTech Infosystems.) [HKLM] -- InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238} O42 - Logiciel: PDF-XChange 3 - (.Tracker Software.) [HKLM] -- PDF-XChange 3_is1 O42 - Logiciel: PIF DESIGNER - (.Pas de propriétaire.) [HKLM] -- {B90450DF-E781-46FD-B1F1-0C86DA40E443} O42 - Logiciel: Paint.NET v3.5.8 - (.dotPDN LLC.) [HKLM] -- {9CF4A37B-A8C4-44D7-8C53-13B9D9594BB2} O42 - Logiciel: Photo Notifier and Animation Creator - (.IncrediMail Ltd..) [HKLM] -- Photo Notifier and Animation Creator O42 - Logiciel: Photo Notifier and Animation Creator - (.Nom de votre société.) [HKLM] -- {6B7F28D4-160E-40C6-B7C8-5EC6B9734DA7} O42 - Logiciel: PhotoMail Maker - (.IncrediMail Ltd..) [HKLM] -- PhotoMail O42 - Logiciel: PhotoMail Maker - (.Nom de votre société.) [HKLM] -- {75AE8014-1184-4BC0-B279-C879540719EE} O42 - Logiciel: PowerpointImageExtractor - (.Pas de propriétaire.) [HKLM] -- PowerpointImageExtractor_is1 O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: RegSupreme - (.Macecraft Software.) [HKLM] -- RegSupreme_is1 O42 - Logiciel: Revo Uninstaller 1.92 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2478663 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870 O42 - Logiciel: TomTom HOME 2.8.0.2146 - (.TomTom.) [HKLM] -- TomTom HOME O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} O42 - Logiciel: Tomtomax Maxi-Box V2.0.24 - (.Tomtomax et KoakDesign.) [HKLM] -- {A10F672B-01C4-498F-ADBD-3E5B144284B7}_is1 O42 - Logiciel: TuneUp Utilities 2007 - (.TuneUp Software.) [HKLM] -- {C8BB4912-12D9-42AE-B571-E580D8CD1B5B} O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707 O42 - Logiciel: Vista Codec Package - (..) [HKLM] -- {F9FD80CE-0448-4D4F-8BCD-77FC514C3F99} O42 - Logiciel: Wallpaper - (.Silver76.) [HKLM] -- Wallpaper O42 - Logiciel: Webcam Essentiel B Glob'mobile - (.Sonix.) [HKLM] -- {ECD03DA7-5952-406A-8156-5F0C93618D1F} O42 - Logiciel: WinAncetre - (.Pas de propriétaire.) [HKLM] -- WinAncetre 5.2 O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B} O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D}
---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\ABBYY] [HKCU\Software\ALWIL Software] [HKCU\Software\APN] [HKCU\Software\ATI Technologies Inc.] [HKCU\Software\AVAST Software] [HKCU\Software\Acer] [HKCU\Software\Adobe] [HKCU\Software\AncestrArbres] [HKCU\Software\AppDataLow\Software\AskToolbar] [HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software\Orange] [HKCU\Software\AppDataLow\Software\Yahoo] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Ask.com] [HKCU\Software\Axantum] [HKCU\Software\Axon Data] [HKCU\Software\Babylon] [HKCU\Software\CDIP] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\CoreVorbis] [HKCU\Software\CyberLink] [HKCU\Software\EPSON] [HKCU\Software\Foxit Software] [HKCU\Software\GNU] [HKCU\Software\Gabest] [HKCU\Software\Google] [HKCU\Software\Haali] [HKCU\Software\HookNetwork] [HKCU\Software\IM Providers] [HKCU\Software\IM] [HKCU\Software\IZSoftware] [HKCU\Software\ImInstaller] [HKCU\Software\IncrediMail] [HKCU\Software\JEDI-VCL] [HKCU\Software\Jasc] [HKCU\Software\JavaSoft] [HKCU\Software\Lavalys] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Netscape] [HKCU\Software\NewTech Infosystems] [HKCU\Software\ODBC] [HKCU\Software\Orange] [HKCU\Software\Paint.NET] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Radio France] [HKCU\Software\RealNetworks] [HKCU\Software\Realtek] [HKCU\Software\SEAF] [HKCU\Software\SUPERAntiSpyware.com] [HKCU\Software\Softonic] [HKCU\Software\TomTom] [HKCU\Software\Tracker Software] [HKCU\Software\Trolltech] [HKCU\Software\TuneUp] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\VSRevoGroup] [HKCU\Software\Xtralog] [HKCU\Software\YB] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\Yahoo] [HKCU\Software\kde.org] [HKCU\Software\madFlac] [HKLM\Software\ABBYY] [HKLM\Software\ALWIL Software] [HKLM\Software\APN] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\AVAST Software] [HKLM\Software\Acer] [HKLM\Software\Adobe] [HKLM\Software\AskToolbar] [HKLM\Software\Axantum] [HKLM\Software\Axon Data] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\Conduit] [HKLM\Software\CyberLink] [HKLM\Software\EPSON] [HKLM\Software\EliaShim] [HKLM\Software\FileZilla 3] [HKLM\Software\Firebird Project] [HKLM\Software\Foxit Software] [HKLM\Software\GNU] [HKLM\Software\Google] [HKLM\Software\HaaliMkx] [HKLM\Software\IZSoftware] [HKLM\Software\ImInstaller] [HKLM\Software\InstallShield] [HKLM\Software\Intel] [HKLM\Software\JGsoft] [HKLM\Software\Jasc] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\LightScribe] [HKLM\Software\Macromedia] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\Martin Soft] [HKLM\Software\MimarSinan] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NewTech Infosystems] [HKLM\Software\ODBC] [HKLM\Software\Orange] [HKLM\Software\Paint.NET] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RealNetworks] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SONIX] [HKLM\Software\SUPERAntiSpyware.com] [HKLM\Software\Senfer] [HKLM\Software\Services] [HKLM\Software\Sonic] [HKLM\Software\SymNRT] [HKLM\Software\TomTom] [HKLM\Software\Tracker Software] [HKLM\Software\TuneUp] [HKLM\Software\Windows] [HKLM\Software\Yahoo] [HKLM\Software\illiminable] [HKLM\Software\mozilla.org] [HKLM\Software\muvee Technologies] [HKLM\Software\webtogo] |
|
Posté le 22/07/2011 à 13:48 |
| ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 14/08/2010 - 10:56:42 - [3094515] ----D- C:\Program Files\7-Zip O43 - CFD: 06/05/2007 - 21:33:42 - [513711356] ----D- C:\Program Files\Acer Arcade Live O43 - CFD: 11/09/2009 - 10:47:38 - [364544] ----D- C:\Program Files\Acer Inc O43 - CFD: 06/05/2007 - 21:22:48 - [12683094] ----D- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites O43 - CFD: 12/08/2010 - 17:49:32 - [154058727] ----D- C:\Program Files\Alwil Software O43 - CFD: 22/07/2011 - 11:28:56 - [74612847] ----D- C:\Program Files\Ancestrologie O43 - CFD: 19/07/2011 - 09:09:40 - [2441801] ----D- C:\Program Files\Ask.com O43 - CFD: 11/09/2009 - 10:39:48 - [14403668] ----D- C:\Program Files\ATI O43 - CFD: 11/09/2009 - 10:41:24 - [200817172] ----D- C:\Program Files\ATI Technologies O43 - CFD: 03/03/2011 - 14:49:20 - [2392759] ----D- C:\Program Files\Axantum O43 - CFD: 12/10/2010 - 08:16:52 - [18788353] ----D- C:\Program Files\AxBx O43 - CFD: 15/07/2011 - 10:53:16 - [3901432] ----D- C:\Program Files\CCleaner O43 - CFD: 09/01/2011 - 12:59:04 - [10107640] ----D- C:\Program Files\ClickTray Calendar O43 - CFD: 19/10/2010 - 15:43:00 - [567174930] ----D- C:\Program Files\Common Files O43 - CFD: 06/05/2007 - 21:30:44 - [4655152] ----D- C:\Program Files\CyberLink O43 - CFD: 12/08/2010 - 19:51:30 - [2056672] ----D- C:\Program Files\Eggiz O43 - CFD: 21/09/2009 - 13:14:14 - [143615728] ----D- C:\Program Files\epson O43 - CFD: 23/02/2011 - 10:06:38 - [2394144] ----D- C:\Program Files\Feedback Tool O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\Program Files\Fichiers communs O43 - CFD: 08/01/2011 - 12:27:40 - [16451399] ----D- C:\Program Files\FileZilla FTP Client O43 - CFD: 12/09/2009 - 19:04:08 - [18509688] ----D- C:\Program Files\Firebird O43 - CFD: 19/07/2011 - 09:49:12 - [0] ----D- C:\Program Files\Foxit Software O43 - CFD: 19/03/2011 - 10:11:30 - [4915511] ----D- C:\Program Files\France Bleu O43 - CFD: 17/09/2009 - 08:28:14 - [293828252] ----D- C:\Program Files\Geneatique2006 O43 - CFD: 17/09/2009 - 08:49:08 - [228381375] ----D- C:\Program Files\Geneatique2009 O43 - CFD: 12/09/2009 - 10:31:08 - [3839420] ----D- C:\Program Files\IcoFX 1.6 O43 - CFD: 19/07/2011 - 13:24:36 - [27667014] ----D- C:\Program Files\IncrediMail O43 - CFD: 21/09/2009 - 13:21:42 - [67479258] --H-D- C:\Program Files\InstallShield Installation Information O43 - CFD: 15/07/2011 - 10:44:40 - [6151545] ----D- C:\Program Files\Internet Explorer O43 - CFD: 19/09/2009 - 17:06:08 - [196088488] ----D- C:\Program Files\Jasc Software Inc O43 - CFD: 19/10/2010 - 15:42:20 - [88594720] ----D- C:\Program Files\Java O43 - CFD: 08/01/2011 - 15:47:04 - [1779786] ----D- C:\Program Files\K-Lite Codec Pack O43 - CFD: 16/09/2009 - 13:26:12 - [6813365] ----D- C:\Program Files\Lavalys O43 - CFD: 16/07/2011 - 12:09:30 - [7099500] ----D- C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 10/02/2011 - 10:32:18 - [752723] ----D- C:\Program Files\Microsoft O43 - CFD: 13/09/2009 - 09:40:10 - [800662] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games O43 - CFD: 21/09/2009 - 12:31:00 - [242387757] ----D- C:\Program Files\Microsoft Office O43 - CFD: 19/09/2009 - 17:24:12 - [26689688] ----D- C:\Program Files\Microsoft Picture It! 7 O43 - CFD: 15/07/2011 - 10:46:02 - [38411899] ----D- C:\Program Files\Microsoft Silverlight O43 - CFD: 12/08/2010 - 19:48:04 - [150650442] ----D- C:\Program Files\Microsoft Works O43 - CFD: 12/08/2010 - 19:45:26 - [15715] ----D- C:\Program Files\Microsoft.NET O43 - CFD: 12/08/2010 - 20:08:14 - [99342446] ----D- C:\Program Files\Movie Maker O43 - CFD: 15/07/2011 - 21:13:08 - [29910815] ----D- C:\Program Files\Mozilla Firefox O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild O43 - CFD: 11/09/2009 - 12:50:04 - [0] ----D- C:\Program Files\MSXML 4.0 O43 - CFD: 06/05/2007 - 21:18:02 - [49022275] ----D- C:\Program Files\NewTech Infosystems O43 - CFD: 16/07/2011 - 12:01:50 - [31080925] ----D- C:\Program Files\Paint.NET O43 - CFD: 07/01/2011 - 13:47:40 - [2757956] ----D- C:\Program Files\Photo Notifier and Animation Creator O43 - CFD: 12/08/2010 - 18:13:06 - [1873554] ----D- C:\Program Files\PhotoMail Maker O43 - CFD: 14/08/2010 - 11:48:36 - [1757288] ----D- C:\Program Files\PowerpointImageExtractor_V1_2 O43 - CFD: 06/05/2007 - 21:05:50 - [14858316] ----D- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 13/08/2010 - 15:48:24 - [7086198] ----D- C:\Program Files\RegSupreme O43 - CFD: 08/01/2011 - 12:26:34 - [1136439] ----D- C:\Program Files\SEAF O43 - CFD: 12/09/2009 - 10:29:12 - [0] ----D- C:\Program Files\TomTom DesktopSuite O43 - CFD: 12/09/2009 - 10:38:06 - [50469509] ----D- C:\Program Files\TomTom HOME 2 O43 - CFD: 12/09/2009 - 10:38:14 - [22486] ----D- C:\Program Files\TomTom International B.V O43 - CFD: 26/02/2011 - 11:25:18 - [1950164] ----D- C:\Program Files\Tomtomax Maxi-Box O43 - CFD: 11/09/2009 - 17:30:36 - [16610615] ----D- C:\Program Files\Tracker Software O43 - CFD: 11/09/2009 - 14:41:58 - [25940251] ----D- C:\Program Files\TuneUp Utilities 2007 O43 - CFD: 02/11/2006 - 15:01:56 - [0] --H-D- C:\Program Files\Uninstall Information O43 - CFD: 12/09/2009 - 15:45:30 - [48858307] ----D- C:\Program Files\VistaCodecPack O43 - CFD: 12/08/2010 - 17:30:08 - [6812742] ----D- C:\Program Files\VS Revo Group O43 - CFD: 11/09/2009 - 14:36:18 - [315523] ----D- C:\Program Files\Wallpaper O43 - CFD: 09/01/2011 - 12:59:06 - [537808] ----D- C:\Program Files\WinAncetre O43 - CFD: 16/09/2009 - 15:49:54 - [1016832] ----D- C:\Program Files\Windows Calendar O43 - CFD: 16/09/2009 - 15:49:54 - [2737152] ----D- C:\Program Files\Windows Collaboration O43 - CFD: 16/09/2009 - 15:49:52 - [4490624] ----D- C:\Program Files\Windows Defender O43 - CFD: 16/09/2009 - 15:49:54 - [7084664] ----D- C:\Program Files\Windows Journal O43 - CFD: 10/02/2011 - 10:32:12 - [45806173] ----D- C:\Program Files\Windows Live O43 - CFD: 10/02/2011 - 10:32:00 - [245112] ----D- C:\Program Files\Windows Live SkyDrive O43 - CFD: 15/07/2011 - 10:44:40 - [9116344] ----D- C:\Program Files\Windows Mail O43 - CFD: 14/10/2010 - 08:49:14 - [4498121] ----D- C:\Program Files\Windows Media Player O43 - CFD: 11/09/2009 - 10:32:56 - [7957544] ----D- C:\Program Files\Windows NT O43 - CFD: 16/09/2009 - 15:49:54 - [13528738] ----D- C:\Program Files\Windows Photo Gallery O43 - CFD: 12/08/2010 - 20:08:18 - [134144] ----D- C:\Program Files\Windows Portable Devices O43 - CFD: 24/02/2011 - 09:32:00 - [6527558] ----D- C:\Program Files\Windows Sidebar O43 - CFD: 22/07/2011 - 13:38:22 - [3931866] ----D- C:\Program Files\ZHPDiag O43 - CFD: 11/09/2009 - 20:02:32 - [86016] ----D- C:\Program Files\Common Files\Designer O43 - CFD: 11/09/2009 - 14:51:20 - [12692156] ----D- C:\Program Files\Common Files\InstallShield O43 - CFD: 19/10/2010 - 15:43:00 - [1243079] ----D- C:\Program Files\Common Files\Java O43 - CFD: 06/05/2007 - 21:17:32 - [7178034] ----D- C:\Program Files\Common Files\LightScribe O43 - CFD: 10/02/2011 - 10:32:06 - [390433226] ----D- C:\Program Files\Common Files\microsoft shared O43 - CFD: 06/05/2007 - 21:17:14 - [9706600] ----D- C:\Program Files\Common Files\muvee Technologies O43 - CFD: 06/05/2007 - 21:18:02 - [2290478] ----D- C:\Program Files\Common Files\NewTech Infosystems O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services O43 - CFD: 11/09/2009 - 18:07:48 - [24179451] ----D- C:\Program Files\Common Files\snpstd3 O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 11/09/2009 - 14:00:42 - [452776] ----D- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 16/09/2009 - 15:49:54 - [16393602] ----D- C:\Program Files\Common Files\System O43 - CFD: 12/08/2010 - 17:59:28 - [51212410] ----D- C:\Program Files\Common Files\Windows Live O43 - CFD: 14/09/2009 - 08:56:02 - [1108009] -SH-D- C:\Program Files\Common Files\WindowsLiveInstaller O43 - CFD: 11/09/2009 - 14:39:14 - [9094656] ----D- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 12/08/2010 - 17:49:32 - [4675579] ----D- C:\ProgramData\Alwil Software O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Application Data O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Bureau O43 - CFD: 06/05/2007 - 21:34:10 - [23529] ----D- C:\ProgramData\CyberLink O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Documents O43 - CFD: 21/09/2009 - 12:51:52 - [443878] ----D- C:\ProgramData\EPSON O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Favorites O43 - CFD: 08/01/2011 - 13:06:04 - [0] ----D- C:\ProgramData\Google O43 - CFD: 19/02/2011 - 15:38:02 - [220] ----D- C:\ProgramData\IM O43 - CFD: 19/02/2011 - 15:37:06 - [6452763] ----D- C:\ProgramData\IncrediMail O43 - CFD: 11/09/2009 - 14:21:44 - [16520603] ----D- C:\ProgramData\Malwarebytes O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Menu Démarrer O43 - CFD: 10/02/2011 - 10:11:16 - [212082389] -S--D- C:\ProgramData\Microsoft O43 - CFD: 11/09/2009 - 19:27:24 - [57028] ----D- C:\ProgramData\Microsoft Help O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Modèles O43 - CFD: 15/07/2011 - 09:19:46 - [1943089] ----D- C:\ProgramData\Orange O43 - CFD: 07/01/2011 - 13:47:42 - [1029545] ----D- C:\ProgramData\Photo Notifier and Animation Creator O43 - CFD: 12/08/2010 - 18:13:06 - [712167] ----D- C:\ProgramData\PhotoMail O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Start Menu O43 - CFD: 19/10/2010 - 15:43:00 - [119] ----D- C:\ProgramData\Sun O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\ProgramData\SUPERAntiSpyware.com O43 - CFD: 02/11/2006 - 15:02:06 - [0] -SH-D- C:\ProgramData\Templates O43 - CFD: 12/09/2009 - 10:54:02 - [0] ----D- C:\ProgramData\TomTom O43 - CFD: 11/09/2009 - 14:39:28 - [1492] ----D- C:\ProgramData\TuneUp Software O43 - CFD: 21/09/2009 - 13:16:12 - [5081320] ----D- C:\ProgramData\UDL O43 - CFD: 12/09/2009 - 15:44:10 - [19942400] ----D- C:\ProgramData\VistaCodecs O43 - CFD: 10/01/2011 - 11:36:58 - [67] ----D- C:\ProgramData\WinAncetre O43 - CFD: 14/09/2009 - 08:49:38 - [224508] ----D- C:\ProgramData\WLInstaller O43 - CFD: 06/05/2007 - 21:22:50 - [6904815] ----D- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3} O43 - CFD: 14/08/2010 - 11:31:48 - [3105610] ----D- C:\Users\Louis\AppData\Roaming\Adobe O43 - CFD: 11/09/2009 - 20:23:24 - [8425708] ----D- C:\Users\Louis\AppData\Roaming\Ancestrologie O43 - CFD: 18/07/2011 - 11:32:10 - [153] ----D- C:\Users\Louis\AppData\Roaming\EfficientPIM Free O43 - CFD: 19/09/2009 - 21:14:14 - [512] ----D- C:\Users\Louis\AppData\Roaming\EPSON O43 - CFD: 08/01/2011 - 12:27:52 - [14008] ----D- C:\Users\Louis\AppData\Roaming\FileZilla O43 - CFD: 19/03/2011 - 10:30:02 - [769952] ----D- C:\Users\Louis\AppData\Roaming\France Bleu O43 - CFD: 16/09/2009 - 11:11:10 - [23199473] ----D- C:\Users\Louis\AppData\Roaming\Généatique2009 O43 - CFD: 09/01/2011 - 12:59:14 - [28890] ----D- C:\Users\Louis\AppData\Roaming\IcoFX O43 - CFD: 14/02/2011 - 19:38:44 - [21614] ----D- C:\Users\Louis\AppData\Roaming\Icones O43 - CFD: 11/09/2009 - 10:37:32 - [0] ----D- C:\Users\Louis\AppData\Roaming\Identities O43 - CFD: 11/09/2009 - 18:07:20 - [0] ----D- C:\Users\Louis\AppData\Roaming\InstallShield O43 - CFD: 19/09/2009 - 17:06:08 - [3819066] ----D- C:\Users\Louis\AppData\Roaming\Jasc Software Inc O43 - CFD: 11/09/2009 - 10:38:52 - [4124] ----D- C:\Users\Louis\AppData\Roaming\Macromedia O43 - CFD: 11/09/2009 - 14:21:50 - [6336] ----D- C:\Users\Louis\AppData\Roaming\Malwarebytes O43 - CFD: 02/11/2006 - 14:37:36 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Center Programs O43 - CFD: 08/01/2011 - 19:07:44 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Player Classic O43 - CFD: 18/07/2011 - 10:34:46 - [4795433] -S--D- C:\Users\Louis\AppData\Roaming\Microsoft O43 - CFD: 15/04/2011 - 08:42:00 - [5502602] ----D- C:\Users\Louis\AppData\Roaming\Mozilla O43 - CFD: 21/07/2011 - 12:36:44 - [260] ----D- C:\Users\Louis\AppData\Roaming\PhotoFiltre O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\Users\Louis\AppData\Roaming\SUPERAntiSpyware.com O43 - CFD: 14/08/2010 - 15:08:14 - [8704] ----D- C:\Users\Louis\AppData\Roaming\Template O43 - CFD: 12/09/2009 - 10:52:46 - [31743994] ----D- C:\Users\Louis\AppData\Roaming\TomTom O43 - CFD: 11/09/2009 - 14:41:40 - [158929] ----D- C:\Users\Louis\AppData\Roaming\TuneUp Software O43 - CFD: 08/01/2011 - 15:52:30 - [75985] ----D- C:\Users\Louis\AppData\Roaming\vlc O43 - CFD: 11/09/2009 - 15:10:16 - [9443970] ----D- C:\Users\Louis\AppData\Roaming\Wallpaper O43 - CFD: 14/08/2010 - 11:32:12 - [98138] ----D- C:\Users\Louis\AppData\Local\Adobe O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Application Data O43 - CFD: 12/08/2010 - 20:07:14 - [5115] ----D- C:\Users\Louis\AppData\Local\Eggiz O43 - CFD: 15/07/2011 - 19:01:42 - [205974629] ----D- C:\Users\Louis\AppData\Local\Google O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Historique O43 - CFD: 19/02/2011 - 15:39:40 - [139365637] ----D- C:\Users\Louis\AppData\Local\IM O43 - CFD: 08/01/2011 - 12:13:16 - [204007595] ----D- C:\Users\Louis\AppData\Local\Microsoft O43 - CFD: 11/09/2009 - 10:49:22 - [108519646] ----D- C:\Users\Louis\AppData\Local\Mozilla O43 - CFD: 16/03/2011 - 20:30:50 - [1466182] ----D- C:\Users\Louis\AppData\Local\Orange O43 - CFD: 22/07/2011 - 10:09:28 - [0] ----D- C:\Users\Louis\AppData\Local\Paint.NET O43 - CFD: 11/09/2009 - 10:37:46 - [0] ----D- C:\Users\Louis\AppData\Local\PowerCinema O43 - CFD: 22/07/2011 - 13:36:36 - [14325451] ----D- C:\Users\Louis\AppData\Local\Temp O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Temporary Internet Files O43 - CFD: 12/09/2009 - 10:52:46 - [1888442] ----D- C:\Users\Louis\AppData\Local\TomTom O43 - CFD: 14/08/2010 - 15:09:02 - [44978001] ----D- C:\Users\Louis\AppData\Local\VirtualStore O43 - CFD: 13/09/2009 - 08:58:26 - [10002] ----D- C:\Users\Louis\AppData\Local\WindowsUpdate
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.54A284D6E44D3B1A1AAA3085FEFCBFE5] - 22/07/2011 - 08:36:40 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1960966] O44 - LFC:[MD5.FB0B86BCE095899E10320B04862395A8] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1495948] O44 - LFC:[MD5.E775B5BDB6545236DFCBD595FA2908A8] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfc009.dat [103872] O44 - LFC:[MD5.BDBC643F06C398C483B8777F79E304F0] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [126420] O44 - LFC:[MD5.D2591C6A65EAA06A71267C3180B8EA68] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfh009.dat [595798] O44 - LFC:[MD5.F9940ADD46C583B349DEEB28746C54B2] - 22/07/2011 - 06:43:15 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [678804] O44 - LFC:[MD5.56E56150003D57FB5B596FC6BC75AD21] - 22/07/2011 - 06:35:30 ---A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.83EEB82E9ED7098EBC0C083C6BFD3116] - 17/07/2011 - 09:55:11 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [404640] O44 - LFC:[MD5.7009400CC9C1BCA4C29CFFAEFAFAE424] - 15/07/2011 - 09:47:17 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [379800] O44 - LFC:[MD5.F99DDD5E4F807B43E8B85DCD5F4B59EA] - 15/07/2011 - 09:12:26 ---A- . (.Microsoft - Legacy GDF resource DLL.) -- C:\Windows\System32\GameUXLegacyGDFs.dll [4240384] O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 15/07/2011 - 08:34:38 ---A- . (...) -- C:\Windows\System32\config.nt [2577] O44 - LFC:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [22712] O44 - LFC:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [41272] O44 - LFC:[MD5.2658AF3FBB06D7B5C731F9CC7CBFC1B3] - 04/07/2011 - 12:43:53 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [40112] O44 - LFC:[MD5.C2E576B23D3969989AF90EF76B2979EA] - 04/07/2011 - 12:43:51 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [199304] O44 - LFC:[MD5.17230708A2028CD995656DF455F2E303] - 04/07/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [441176] O44 - LFC:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 04/07/2011 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [309848] O44 - LFC:[MD5.984CFCE2168286C2511695C2F9621475] - 04/07/2011 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [43608] O44 - LFC:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 04/07/2011 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [25432] O44 - LFC:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 04/07/2011 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [54104] O44 - LFC:[MD5.861CB512E4E850E87DD2316F88D69330] - 04/07/2011 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\drivers\aswFsBlk.sys [19544]
---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm O52 - TDSD: \Drivers32\"msacm.divxa32"="divxa32.acm" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\Windows\System32\xvidvfw.dll O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm O52 - TDSD: \drivers.desc\"divxa32.acm"="DivX Audio" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\Windows\System32\xvidvfw.dll O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\Windows\System32\ff_vfw.dll
---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\Acer Empowering Technology Monitor [Key] . (...) -- C:\Acer\Empowering Technology\SysMonitor.exe O53 - SMSR:HKLM\...\startupreg\Acer Tour Reminder [Key] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe O53 - SMSR:HKLM\...\startupreg\ccApp [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\ccApp.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\eDataSecurity Loader [Key] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe O53 - SMSR:HKLM\...\startupreg\ehTray.exe [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe O53 - SMSR:HKLM\...\startupreg\EPSON Stylus DX4000 Series [Key] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBEE.exe O53 - SMSR:HKLM\...\startupreg\FixCamera [Key] . (.Pas de propriétaire - CameraFixer MFC Application.) -- C:\Windows\FixCamera.exe O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe O53 - SMSR:HKLM\...\startupreg\IS CfgWiz [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF}\cltUIStb.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\MailNotifier [Key] . (...) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\MSConfig [Key] . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\Windows\system32\msconfig.exe O53 - SMSR:HKLM\...\startupreg\orangeinside [Key] . (...) -- C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O53 - SMSR:HKLM\...\startupreg\snpstd3 [Key] . (.Pas de propriétaire - CameraMonitor Application.) -- C:\Windows\vsnpstd3.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe O53 - SMSR:HKLM\...\startupreg\tsnpstd3 [Key] . (.Pas de propriétaire - tsnp2std Microsoft.) -- C:\Windows\tsnpstd3.exe O53 - SMSR:HKLM\...\startupreg\WarReg_PopUp [Key] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll
---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
---\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0
---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [420968] O58 - SDL:[MD5.B84088CA3CDCA97DA44A984C6CE1CCAD] - 02/11/2006 - 10:51:32 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [297576] O58 - SDL:[MD5.7880C67BCCC27C86FD05AA2AFB5EA469] - 02/11/2006 - 10:50:35 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\system32\drivers\adpu160m.sys [98408] O58 - SDL:[MD5.9AE713F8E30EFC2ABCCD84904333DF4D] - 02/11/2006 - 10:51:00 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\system32\drivers\adpu320.sys [147048] O58 - SDL:[MD5.90395B64600EBB4552E26E178C94B2E4] - 02/11/2006 - 10:49:20 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [14952] O58 - SDL:[MD5.5F673180268BB1FDB69C99B6619FE379] - 02/11/2006 - 10:50:09 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [67688] O58 - SDL:[MD5.957F7540B5E7F602E44648C7DE5A1C05] - 02/11/2006 - 10:50:10 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [67688] O58 - SDL:[MD5.861CB512E4E850E87DD2316F88D69330] - 12/08/2010 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [19544] O58 - SDL:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 12/08/2010 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [54104] O58 - SDL:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 12/08/2010 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [25432] O58 - SDL:[MD5.17230708A2028CD995656DF455F2E303] - 24/02/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [441176] O58 - SDL:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 12/08/2010 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [309848] O58 - SDL:[MD5.984CFCE2168286C2511695C2F9621475] - 12/08/2010 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [43608] O58 - SDL:[MD5.184E2B47542BADBE5CA606F0FC9A90CC] - 07/05/2007 - 15:04:28 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [2427392] O58 - SDL:[MD5.A356E45E8432432C06981EA63A1E0FE8] - 06/05/2007 - 04:22:26 ---A- . (.ATI Technologies Inc. - ATI PCIE Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [8192] O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 02/11/2006 - 09:24:45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [13568] O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 02/11/2006 - 09:24:46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [5248] O58 - SDL:[MD5.B304E75CFF293029EDDF094246747113] - 02/11/2006 - 09:25:24 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [71808] O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [62336] O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [12160] O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 02/11/2006 - 09:24:47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [11904] O58 - SDL:[MD5.45201046C776FFDAF3FC8A0029C581C8] - 02/11/2006 - 10:49:28 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [16488] O58 - SDL:[MD5.AE1FDF7BF7BB6C6A70F67699D880592A] - 02/11/2006 - 10:50:11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\system32\drivers\djsvs.sys [71272] O58 - SDL:[MD5.F88FB26547FD2CE6D0A5AF2985892C48] - 02/11/2006 - 08:30:54 ---A- . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserialized driver.) -- C:\Windows\system32\drivers\E1G60I32.sys [117760] O58 - SDL:[MD5.E8F3F21A71720C84BCF423B80028359F] - 02/11/2006 - 10:51:34 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [316520] O58 - SDL:[MD5.DF353B401001246853763C4B7AAA6F50] - 02/11/2006 - 10:50:10 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\system32\drivers\HpCISSs.sys [37480] O58 - SDL:[MD5.C957BF4B5D80B46C5017BF0101E6C906] - 02/11/2006 - 10:51:25 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\system32\drivers\iaStorV.sys [232040] O58 - SDL:[MD5.2D077BF86E843F901D8DB709C95B49A5] - 02/11/2006 - 10:50:17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [41576] O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\system32\drivers\iteatapi.sys [35944] O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\system32\drivers\iteraid.sys [35944] O58 - SDL:[MD5.A2262FB9F28935E862B4DB46438C80D2] - 02/11/2006 - 10:50:04 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [65640] O58 - SDL:[MD5.30D73327D390F72A62F32C103DAF1D6D] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [65640] O58 - SDL:[MD5.E1E36FEFD45849A95F1AB81DE0159FE3] - 02/11/2006 - 10:50:10 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [65640] O58 - SDL:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 11/09/2009 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [22712] O58 - SDL:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 16/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbamswissarmy.sys [41272] O58 - SDL:[MD5.D153B14FC6598EAE8422A2037553ADCE] - 02/11/2006 - 10:49:53 ---A- . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\system32\drivers\megasas.sys [28776] O58 - SDL:[MD5.4FBBB70D30FD20EC51F80061703B001E] - 02/11/2006 - 10:49:59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\system32\drivers\Mraid35x.sys [33384] O58 - SDL:[MD5.2E7FB731D4790A1BC6270ACCEFACB36E] - 02/11/2006 - 10:50:19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [45160] O58 - SDL:[MD5.7F1C1F78D709C4A54CBB46EDE7E0B48D] - 06/05/2007 - 20:16:50 ---A- . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [6144] O58 - SDL:[MD5.E875C093AEC0C978A90F30C9E0DFBB72] - 02/11/2006 - 08:36:50 ---A- . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablette N-trig.) -- C:\Windows\system32\drivers\ntrigdigi.sys [20608] O58 - SDL:[MD5.E69E946F80C1C31C53003BFBF50CBB7C] - 02/11/2006 - 10:50:24 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [88680] O58 - SDL:[MD5.9E0BA19A28C498A6D323D065DB76DFFC] - 02/11/2006 - 10:50:13 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [40040] O58 - SDL:[MD5.C2821F33B846A52FDC25FF554ACF11F2] - 06/05/2007 - 23:04:48 ---A- . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\system32\drivers\psdfilter.sys [20264] O58 - SDL:[MD5.28D3A91FE7791B970E6B15C88F98DFBD] - 06/05/2007 - 23:04:54 ---A- . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\system32\drivers\PSDNServ.sys [16680] O58 - SDL:[MD5.3A66F69459052DE13EF8A0F77D728A73] - 06/05/2007 - 23:04:50 ---A- . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\system32\drivers\psdvdisk.sys [60712] O58 - SDL:[MD5.CCDAC889326317792480C0A67156A1EC] - 02/11/2006 - 10:51:45 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [900712] O58 - SDL:[MD5.81A7E5C076E59995D54BC1ED3A16E60B] - 02/11/2006 - 10:50:35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [106088] O58 - SDL:[MD5.2BD6633DB50A98534AA3262E0F9F5A14] - 06/05/2007 - 12:18:18 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHDA.sys [1761696] O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 02/11/2006 - 07:37:21 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [20480] O58 - SDL:[MD5.CEDD6F4E7D84E9F98B34B3FE988373AA] - 02/11/2006 - 10:50:10 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [38504] O58 - SDL:[MD5.DF843C528C4F69D12CE41CE462E973A7] - 02/11/2006 - 10:50:16 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [71784] O58 - SDL:[MD5.11BB0E11D42CC3A43D741D9B30839BE1] - 27/03/2007 - 17:19:36 ---A- . (.Sonix Co. Ltd. - USB PC Camera driver.) -- C:\Windows\system32\drivers\snpstd3.sys [10252544] O58 - SDL:[MD5.192AA3AC01DF071B541094F251DEED10] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\system32\drivers\symc8xx.sys [35944] O58 - SDL:[MD5.8C8EB8C76736EBAF3B13B633B2E64125] - 02/11/2006 - 10:49:56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_hi.sys [31848] O58 - SDL:[MD5.8072AF52B5FD103BBBA387A1E49F62CB] - 02/11/2006 - 10:50:03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_u3.sys [34920] O58 - SDL:[MD5.3CD4EA35A6221B85DCC25DAA46313F8D] - 02/11/2006 - 10:51:25 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\system32\drivers\uliahci.sys [235112] O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\system32\drivers\ulsata.sys [98408] O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 02/11/2006 - 10:50:45 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\system32\drivers\ulsata2.sys [115816] O58 - SDL:[MD5.FD2E3175FCADA350C7AB4521DCA187EC] - 02/11/2006 - 10:49:30 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17512] O58 - SDL:[MD5.D984439746D42B30FC65A4C3546C6829] - 02/11/2006 - 10:50:41 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\system32\drivers\vsmraid.sys [112232] O58 - SDL:[MD5.2584DF81CC9F7E7BD3545691106F8CAE] - 13/09/2009 - 15:47:04 ---A- . (.Wasay - Wasay virtual disk driver.) -- C:\Windows\system32\drivers\WSVD.sys [80744] O58 - SDL:[MD5.04E268ADFC81964C49DC0C082D520F7E] - 06/12/2007 - 08:51:00 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk60x86.sys [298496] O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\system32\ANSI.SYS [9029] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\system32\country.sys [27097] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\system32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\system32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\system32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\system32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\system32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\system32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\system32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\system32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\system32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\system32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\system32\NTIO804.SYS [34672]
---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: SEAF By C_XX - (.C_XX.) [HKLM] -- SEAF O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 04/07/2011 - C:\Windows\system32\drivers\aswMonFlt.sys - aswMonFlt(aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 07/12/2006 - C:\Acer\Empowering Technology\eRecovery\int15.sys - int15 (int15) .(...) - LEGACY_INT15 O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\DRIVERS\psdfilter.sys - PSDFilter(PSDFilter) .(.HiTRUST - PSD Filter Driver.) - LEGACY_PSDFILTER O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\PSDNServ.sys - PSDNSERVER(PSDNServ) .(.HiTRUST - PSD Named Pipe Driver.) - LEGACY_PSDNSERV O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\psdvdisk.sys - psdvdisk(psdvdisk) .(.HiTRUST - PSD Virtual Disk Driver.) - LEGACY_PSDVDISK O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.) - SASDIFSV (SASDIFSV) .(...) - LEGACY_SASDIFSV O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.) - SASKUTIL (SASKUTIL) .(...) - LEGACY_SASKUTIL O64 - Services: CurCS - 19/09/2006 - C:\Windows\system32\drivers\WSVD.sys - WSVD(WSVD) .(.Wasay - Wasay virtual disk driver.) - LEGACY_WSVD
---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (. - .) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
---\\ Start Menu Internet (O68) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] %productIESearchGUID% - (MyStart Search) - http://mystart.incredimail.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {0B8B1BFE-7FE8-4B20-9B7A-0EE97A3FC97A} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://rws.search.ke.voila.fr O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} [DefaultScope] - (MyStart Search) - http://mystart.incredimail.com
---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.518DDDB4C5AB132386FE75B4564382C9] [SPRF][14/08/2010] (.SpeedyFox - SpeedyFox program.) -- C:\Users\Louis\Desktop\Nettoyeur Firefox.exe [453000] [MD5.CBCE2604DE732C3BDABD77848B820AA4] [SPRF][21/07/2011] (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Louis\Desktop\ZHPDiag2.exe [2540536] [MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [24576] [MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [196608] [MD5.0C78701C6F42345DFF2B2B6C3C3D01EF] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [172032]
---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "WinCollab-DFSR-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe O87 - FAEL: "WinCollab-DFSR-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe O87 - FAEL: "WinCollab-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "WinCollab-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "WinCollab-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "WinCollab-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "{F726BF72-BF4E-4B4F-B9FE-4CDF4E903131}" | In - None - P17 - TRUE | .(.Acer Incorporated - Acer Arcade Live.) -- C:\Program Files\Acer Arcade Live\Acer Arcade Live Main Page\Acer Arcade Live.exe O87 - FAEL: "{51674872-C1F2-4F6E-9B9C-A757F38BE2C6}" | In - None - P17 - TRUE | .(.Cyberlink - Pas de description.) -- C:\Program Files\Acer Arcade Live\SlideShow DVD\Component\CLSLDVD.exe O87 - FAEL: "{00717E99-5B5E-4D82-B899-5B920CE145A9}" | In - None - P17 - TRUE | .(.Cyberlink - ARA Work Process.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\ARAWP.exe O87 - FAEL: "{F90A806B-AED4-4244-AC78-EA10F3E4F0E6}" | In - None - P17 - TRUE | .(.Pas de propriétaire - DVAX2Process MFC Application.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\DVAX2Process.exe O87 - FAEL: "{2EACCE03-44AD-4451-AFA5-833B35CC35B9}" | In - None - P17 - TRUE | .(.Acer Incorporated - DVDivine.) -- C:\Program Files\Acer Arcade Live\Acer DVDivine\DVDivine.exe O87 - FAEL: "{39E7738E-3D11-43B9-835D-D16D2F3B2B0D}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia\HomeMedia.exe O87 - FAEL: "{59B339AA-E6E9-43D5-A0ED-DAC81D658E12}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia Connect.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\HomeMedia Connect.exe O87 - FAEL: "{B70C9DFF-8065-445C-8092-F386899335A3}" | In - None - P17 - TRUE | .(.CyberLink - CLMSServer.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe O87 - FAEL: "{9F52794C-B028-4208-88E2-1D78370B9A3B}" | In - None - P17 - TRUE | .(.Acer Incorporated - VideoMagician.) -- C:\Program Files\Acer Arcade Live\Acer VideoMagician\VideoMagician.exe O87 - FAEL: "{E9C996F9-7D3C-47CB-9418-E12D4C39FF30}" |In - Private - P6 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.) O87 - FAEL: "{62AD61A2-E8F0-4778-A262-C0AF4BD83092}" |In - Private - P17 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.) O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus de l’autorité de sécurité locale.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{EB2903EC-4E0E-4950-811B-0A70F728770B}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe O87 - FAEL: "{27467FCD-DA11-4617-B18B-785DF4334AF3}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe O87 - FAEL: "{039F4044-7CE8-4A07-84EA-F0BAD32857AF}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe O87 - FAEL: "{B7FFF15D-2A9D-4BD3-B82B-03A5572FC3D1}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O87 - FAEL: "{E7556FB8-8788-4117-8024-F4DAE12BA048}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{A2AC4271-B58F-4BDA-AF90-E45FC1AE448A}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{88B110E9-17F9-496B-B129-0DF8C2AD375B}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{827FD52E-5092-4044-AFBC-C757E9ADE5DD}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{ABB72582-43B9-47B3-BA51-25CBF8ECF627}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{900CDA3B-FE39-4E89-90C1-A12AF5D36EB9}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{89F2B2D8-47C7-4D9A-89BE-63E1ABC37403}" |In - Private - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{56F3A1CC-6F33-4CDA-8660-2552EA950563}" |In - Private - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{DF216603-12A4-460A-A780-AFBD20CA73A2}" |In - Public - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{240349EE-9C9F-44EA-932F-00568E5181FD}" |In - Public - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{F23C2826-966F-4739-AECD-4C4D95887A59}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{4C2BCE8D-6C96-432C-8376-AE2E26B18187}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{78E84DE1-69AB-4CB4-AD1F-F93A08ED8AD7}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{667A5F42-2BA8-4982-9C72-9A0E6F6F8ECA}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{5039316D-20DF-4A89-81B4-D7AAB86AC02F}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{15473CB5-7E55-48D3-9C75-EFAE6D3346F9}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{DFF3DA8E-5FB4-4FC1-9563-441499BEAC94}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{F4E9A626-A31B-46A7-AF7F-F44C444A5096}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{41169DA2-5A48-47FD-AB5D-638E9CF9C3EF}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{308E4FE9-0714-4C3F-82D5-3AA29C0E38C0}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{F9E756EE-34C2-4E15-AEEC-3ECE52CD90E3}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe
---\\ Scan Additionnel (O88) Database Version : 8548 - (21/07/2011) Clés trouvées (Keys found) : 28 Valeurs trouvées (Values found) : 1 Dossiers trouvés (Folders found) : 2 Fichiers trouvés (Files found) : 1
[HKLM\Software\Classes\AppID\GenericAskToolbar.DLL] =>Toolbar.AskSBar [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1] =>Toolbar.AskTBar [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine] =>Toolbar.Conduit [HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd] =>Toolbar.AskSBar [HKLM\Software\Classes\GenericAskToolbar.ToolbarWnd.1] =>Toolbar.AskSBar [HKLM\Software\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}] =>Toolbar.AskTBar [HKLM\Software\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] =>Toolbar.AskSBar [HKLM\Software\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}] =>Toolbar.Ask [HKLM\Software\Classes\Interface\{6e4c89cf-3061-4ee4-b22a-b7a8aaea5cb3}] =>Adware.Bandoo [HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.AskSBar [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}] =>Toolbar.AskSBar [HKLM\Software\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}] =>Toolbar.Ask [HKLM\Software\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}] =>Toolbar.AskSBar [HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.AskSBar [HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.AskSBar [HKLM\Software\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}] =>Toolbar.Ask [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.AskSBar [HKLM\Software\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.AskSBar [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] =>Toolbar.AskSBar [HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AskSBar [HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AskSBar [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF] =>Toolbar.AskSBar [HKCU\Software\Ask.com] =>Toolbar.AskBar [HKCU\Software\Ask.com] =>Toolbar.AskBarDis [HKCU\Software\AppDataLow\Software\AskToolbar] =>Toolbar.AskTBar [HKLM\Software\AskToolbar] =>Toolbar.AskTBar [HKLM\Software\Conduit] =>Toolbar.Conduit [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{D4027C7F-154A-4066-A1AD-4243D8127440} =>Toolbar.AskSBar C:\Program Files\Ask.com =>Toolbar.AskBar C:\Users\Louis\AppData\LocalLow\IncrediMail_MediaBar_2 =>Toolbar.Conduit C:\Windows\system32\Tasks\Scheduled Update for Ask Toolbar =>Toolbar.AskTBar
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 06/05/2007 266343 | (Acer HomeMedia Connect Service) . (.CyberLink.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe SR - | Auto 06/05/2007 28672 | (AcerMemUsageCheckService) . (...) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe SR - | Auto 07/05/2007 569344 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\system32\Ati2evxx.exe SR - | Auto 04/07/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 06/05/2007 457512 | eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe SR - | Auto 11/09/2009 53248 | (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe SR - | Auto 12/09/2009 81920 | (FirebirdGuardianDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe SR - | Demand 12/09/2009 2736128 | (FirebirdServerDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe SR - | Auto 06/05/2007 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe SS - | Auto 30/12/1899 0 | (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe SS - | Auto 30/12/1899 0 | (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe SR - | Auto 06/05/2007 143360 | (RichVideo) . (...) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe SR - | Auto 12/09/2009 92008 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe SR - | Auto 13/09/2009 21504 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software GmbH.) - C:\Windows\System32\svchost.exe SR - | Auto 13/09/2009 21504 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe
---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
End of the scan (1193 lines in 01mn 55s)(0)
à tous 
|
|
Posté le 22/07/2011 à 13:52 |
Nouvel astucien
| Il y a bien infections.
Désinstalle le Logiciel: Ask Toolbar
Pour la suite je laisse place au Groupe Sécurité.(comme indiqué dans mon premier message)
Bonne continuation  Modifié par Anonyme le 22/07/2011 13:58 |
|
Posté le 22/07/2011 à 14:02 |
| Denim
Je ne sais pas d'ou il vient car d'habitude je ne télécharge pas les Toolbars
A Bientôt Modifié par Petit Louis le 22/07/2011 14:04 |
|
Posté le 22/07/2011 à 14:11 |
Nouvel astucien
| Petit Louis a écrit :
Denim
Je ne sais pas d'ou il vient car d'habitude je ne télécharge pas les Toolbars
A Bientôt
Il y a aussi Conduit en + de Ask via un des ces programmes peut être....il faut bien lire lors des installations de ces derniers
@+ |
|
|
|
|
|
Posté le 22/07/2011 à 17:27 |
| Je viens de vérifier à par Ask en temps que moteur de recherche que j'ai viré il n'y a rien de tout ça |
|
Posté le 22/07/2011 à 18:13 |
Nouvel astucien
| Bonsoir
je vais contacter un GS qui va t'aider pour virer les scories restantes....
@+ |
|
Posté le 22/07/2011 à 18:18 |
| Merci Denim
A bientôt  |
|
Posté le 22/07/2011 à 19:15 |
| Hello,
je regarde tout cela et vous dis quoi .
labougie |
|
Posté le 22/07/2011 à 19:19 |
| Hello Petit louis,
Salut Denim,
Tu vas commencer par me recocher ceci dans msconfig, car le mises à jour il faut les faire, et avec cette aide c'est tout de même plus simple .
Va dans démarrer puis panneau de config. Recherche tout ce qui contient:
Ou par revounistaller si tu le maîtrises mieux
- ask
- conduit enduit
- search conduit
- puis tout tes cracks, ce n'est pas que je n'aime pas "super gégé", mais dans les tâches planifiées pas trop, voir pas du tout.
- Edit: => rajoute regspreme aussi, c'est ccleaner, moins onl'utilise mieux on se porte
[MD5.00000000000000000000000000000000] [APT] [{04FC8B77-8E4C-46C5-A741-A6BA2FB45D10}] (...) -- J:\PSP.8\Jasc_Paint_Shop_Pro_8.03_Supergege\Crack.exe (.not file.)
1/ Uac si 7 &Vista
- Tout d'abord tu vas désactiver l'uac en suivant ce tutoriel => désactiver l'UAC
- Il faut redémarrer pour la désactivation, n'oublie pas
.
2/ Ad-r
- Charge cet Outil AD-R de C_XX.

Choisi la rubrique Scanner, puis poste le rapport. => Tutoriel de l'auteur
Choisi la rubrique Nettoyer, puis poste le rapport. => Tutoriel de l'auteur
Choisi la rubrique Désintaller pour désintaller.
L'outil va travailler longtemps, il demandera de redémarrer, le fonds de l'écran peut rester noir un long moment (5 ou 10 min), ne soit pas inquièt(e).
Note :
"Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
Poste le rapport qui apparaît à la fin.
Le rapport est sauvegardé aussi sous C:\Ad-report(date).log.
3/ zhpdiag
tu le relances avec toutes les options suivantes.
Clique sur le et clique sur "Tous"
les rapports
- Ad-r
- suppressions des cracks,
- désinstallation
- zhpdiag nouveau
labougie Modifié par Labougie le 22/07/2011 19:21 |
|
Posté le 22/07/2011 à 20:14 |
| ======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======
Mis à jour par TeamXscript le 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 20:13:16 le 22/07/2011, Mode normal
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86) Louis@PC-DE-LOUIS (Acer Aspire M3100) ============== RECHERCHE ==============
Clé trouvée: HKLM\Software\Classes\Interface\{6E4C89CF-3061-4EE4-B22A-B7A8AAEA5CB3} Clé trouvée: HKLM\Software\Classes\SearchBar.Client Clé trouvée: HKLM\Software\Conduit Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1 Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine Clé trouvée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
============== SCAN ADDITIONNEL ==============
**** Mozilla Firefox Version [3.6.18 (fr)] ****
-- C:\Users\Louis\AppData\Roaming\Mozilla\FireFox\Profiles\rb4kum3u.default -- Extensions\{03B08592-E5B4-45ff-A0BE-C1D975458688} (Toolbar Buttons) Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} (Flagfox) Prefs.js - browser.download.dir, C:\\Users\\Louis\\Desktop Prefs.js - browser.download.lastDir, C:\\Users\\Louis\\Desktop Prefs.js - browser.search.defaultenginename, Yahoo Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p= Prefs.js - browser.search.selectedEngine, Yahoo Prefs.js - browser.startup.homepage, hxxp://fr.yahoo.com Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.18 Prefs.js - keyword.URL, hxxp://fr.search.yahoo.com/search?fr=ffds1&p=
========================================
**** Google Chrome Version [14.0.814.0] ****
Extension\icmlaeflemplmjndnaapfdbbnpncnbda (C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx) (?)
-- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default -- Preferences - default_search_provider: "Google" (Activé: true) (?) Preferences - homepage: hxxp://fr.yahoo.com/ Preferences - homepage_is_newtabpage: false Plugin - Chrome NaCl (Activé: false) (C:\Users\Louis\AppData\Local\Google\Chrome\Application\14.0.814.0\ppGoogleNaClPluginChrome.dll) Plugin - "Java" (Activé: true) Plugin - "Silverlight" (Activé: true) Plugin - "Chrome NaCl" (Activé: false)
========================================
**** Internet Explorer Version [9.0.8112.16421] ****
HKCU_Main|SearchMigratedDefaultURL - hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 HKCU_Main|Search Page - hxxp://fr.rd.yahoo.com/customize/ycomp/defaults/sp/*hxxp://fr.yahoo.com HKCU_Main|Start Page - hxxp://fr.yahoo.com HKLM_Main|Default_Page_URL - hxxp://fr.yahoo.com HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Start Page - hxxp://fr.yahoo.com HKCU_URLSearchHooks|{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} (x) HKCU_SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} - "Orange" (hxxp://rws.search.ke.voila.fr/RW/S/opensearch_orange?rdata={searchTerms}) HKCU_Toolbar\ShellBrowser|{5CBE3B7C-1E47-477E-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll) HKCU_Toolbar\WebBrowser|{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0} (x) HKLM_Toolbar|{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll) HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll) HKCU_ElevationPolicy\{89A405EB-CFA8-4376-9B68-AD0D6DCEF426} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x) HKCU_ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} - C:\PROGRA~1\Yahoo!\companion\installs\cpn\ytbb.exe (x) HKCU_ElevationPolicy\{D3DE705E-0BB6-47E6-AB61-6FF78BE040A0} - C:\Program Files\Internet Explorer\minftnet.exe (Synersoft) HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x) HKLM_ElevationPolicy\{FFB0F286-4C8A-4C05-A335-A280573A3C66} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x) BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?) BHO\{1d970ed5-3eda-438d-bffd-715931e2775b} (?) BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} (?) BHO\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - "ShowBarObj Class" (C:\Windows\system32\ActiveToolBand.dll) BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s) C:\Program Files\Ad-Remover\Backup: 1 Fichier(s)
C:\Ad-Report-SCAN[1].txt - 22/07/2011 20:13:22 (4866 Octet(s))
Fin à: 20:14:10, 22/07/2011 ============== E.O.F ============== |
|
Posté le 22/07/2011 à 20:24 |
| ======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======
Mis à jour par TeamXscript le 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 20:18:39 le 22/07/2011, Mode normal
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 (X86) Louis@PC-DE-LOUIS (Acer Aspire M3100) ============== ACTION(S) ==============
(!) -- Fichiers temporaires supprimés.
Clé supprimée: HKLM\Software\Classes\Interface\{6E4C89CF-3061-4EE4-B22A-B7A8AAEA5CB3} Clé supprimée: HKLM\Software\Classes\SearchBar.Client Clé supprimée: HKLM\Software\Conduit Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Ask Toolbar_is1 Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
============== SCAN ADDITIONNEL ==============
**** Mozilla Firefox Version [3.6.18 (fr)] ****
-- C:\Users\Louis\AppData\Roaming\Mozilla\FireFox\Profiles\rb4kum3u.default -- Extensions\{03B08592-E5B4-45ff-A0BE-C1D975458688} (Toolbar Buttons) Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} (Flagfox) Prefs.js - browser.download.dir, C:\\Users\\Louis\\Desktop Prefs.js - browser.download.lastDir, C:\\Users\\Louis\\Desktop Prefs.js - browser.search.defaultenginename, Yahoo Prefs.js - browser.search.defaulturl, hxxp://fr.search.yahoo.com/search?fr=ffsp1&p= Prefs.js - browser.search.selectedEngine, Yahoo Prefs.js - browser.startup.homepage, hxxp://fr.yahoo.com Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.18 Prefs.js - keyword.URL, hxxp://fr.search.yahoo.com/search?fr=ffds1&p=
========================================
**** Google Chrome Version [14.0.814.0] ****
Extension\icmlaeflemplmjndnaapfdbbnpncnbda (C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx) (?)
-- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default -- Preferences - default_search_provider: "Google" (Activé: true) (?) Preferences - homepage: hxxp://fr.yahoo.com/ Preferences - homepage_is_newtabpage: false Plugin - Chrome NaCl (Activé: false) (C:\Users\Louis\AppData\Local\Google\Chrome\Application\14.0.814.0\ppGoogleNaClPluginChrome.dll) Plugin - "Java" (Activé: true) Plugin - "Silverlight" (Activé: true) Plugin - "Chrome NaCl" (Activé: false)
========================================
**** Internet Explorer Version [9.0.8112.16421] ****
HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896 HKCU_Main|Start Page - hxxp://fr.msn.com/ HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Start Page - hxxp://fr.msn.com/ HKCU_URLSearchHooks|{d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} (x) HKCU_SearchScopes\{814C76CB-2623-43F4-AAD0-58A0E5190A20} - "Orange" (hxxp://rws.search.ke.voila.fr/RW/S/opensearch_orange?rdata={searchTerms}) HKCU_Toolbar\ShellBrowser|{5CBE3B7C-1E47-477E-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll) HKCU_Toolbar\WebBrowser|{D40B90B4-D3B1-4D6B-A5D7-DC041C1B76C0} (x) HKLM_Toolbar|{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} (C:\Windows\system32\eDStoolbar.dll) HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll) HKCU_ElevationPolicy\{89A405EB-CFA8-4376-9B68-AD0D6DCEF426} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x) HKCU_ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} - C:\PROGRA~1\Yahoo!\companion\installs\cpn\ytbb.exe (x) HKCU_ElevationPolicy\{D3DE705E-0BB6-47E6-AB61-6FF78BE040A0} - C:\Program Files\Internet Explorer\minftnet.exe (Synersoft) HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x) HKLM_ElevationPolicy\{FFB0F286-4C8A-4C05-A335-A280573A3C66} - C:\Program Files\Orange\ToolbarFR\ToolbarHelper.exe (x) BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?) BHO\{1d970ed5-3eda-438d-bffd-715931e2775b} (?) BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} (?) BHO\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - "ShowBarObj Class" (C:\Windows\system32\ActiveToolBand.dll) BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)
========================================
C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s) C:\Program Files\Ad-Remover\Backup: 16 Fichier(s)
C:\Ad-Report-CLEAN[1].txt - 22/07/2011 20:18:55 (5094 Octet(s)) C:\Ad-Report-SCAN[1].txt - 22/07/2011 20:13:22 (5004 Octet(s)) C:\Ad-Report-SCAN[2].txt - 22/07/2011 20:16:54 (5069 Octet(s))
Fin à: 20:19:50, 22/07/2011 ============== E.O.F ============== |
|
Posté le 22/07/2011 à 20:54 |
| Rapport de ZHPDiag v1.27.2423 par Nicolas Coolman, Update du 21/07/2011 Run by Louis at 22/07/2011 20:43:50 Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
---\\ Web Browser MSIE: Internet Explorer v9.0.8112.16421 MFIE: Mozilla Firefox v (Defaut) GCIE: Google Chrome v14.0.814.0
---\\ System Information Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002) ~ Processor: x86 Family 15 Model 107 Stepping 1, AuthenticAMD ~ Operating System: 32 Bits ~ Boot mode: ~ Normal (Normal boot) Total RAM: 1790 MB (48% free) ~ System Restore: Activé (Enable) System drive C: has 82 GB (73%) free of 112 GB
---\\ Logged in mode ~ Computer Name: PC-DE-LOUIS ~ User Name: Louis ~ All Users Names: Louis, Administrateur, ~ Unselected Option: None ~ Logged in as Administrator
---\\ Environnement Variables ~ %AppData%=C:\Users\Louis\AppData\Roaming\ ~ %Desktop%=C:\Users\Louis\Desktop\ ~ %Favorites%=C:\Users\Louis\Favorites\ ~ %LocalAppData%=C:\Users\Louis\AppData\Local\ ~ %StartMenu%=C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\
---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 82 Go of 112 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 87 Go of 111 Go) E:\ CD-ROM drive (Not Inserted) F:\ Floppy drive, Flash card reader, USB Key (Not Inserted) G:\ Floppy drive, Flash card reader, USB Key (Not Inserted) H:\ Floppy drive, Flash card reader, USB Key (Not Inserted) I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK
---\\ Recherche particulière de fichiers génériques [MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Explorateur Windows.) (.16/09/2009 - 22:27:38.) -- C:\Windows\Explorer.exe [2926592] [MD5.4B555106290BD117334E9A08761C035A] - (....) (.02/11/2006 - 10:45:37.) -- C:\Windows\system32\rundll32.exe [44544] [MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Application de démarrage de Windows.) (.13/09/2009 - 08:33:37.) -- C:\Windows\system32\Wininit.exe [96768] [MD5.A1236375B74EA63C75657D564890C436] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.31/03/2011 - 07:27:03.) -- C:\Windows\system32\wininet.dll [1126912] [MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.16/09/2009 - 22:28:14.) -- C:\Windows\system32\Winlogon.exe [314368] [MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.16/09/2009 - 22:32:28.) -- C:\Windows\system32\drivers\atapi.sys [19944] [MD5.6A4A98CEE84CF9E99564510DDA4BAA47] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.16/09/2009 - 22:32:50.) -- C:\Windows\system32\drivers\ntfs.sys [1083880]
---\\ Etat des fichiers cachés (Caché/Total) ~ Mes Videos (My Videos) : 1/2 ~ Mes Favoris (My Favorites) : 2/196 ~ Mes Documents (My Documents) : 5/3795 ~ Mon Bureau (My Desktop) : 2/71 ~ Menu demarrer (Programs) : 6/34
---\\ Processus lancés [MD5.E7CF222185411C6A3E68273C452B3283] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3493720] [MD5.C89B2956A12493FA137E670678D4E89D] - (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe [294912] [MD5.DF105989C770C6AB43970A2CC0B9561A] - (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe [233472] [MD5.5F8C39A444DA36FCCE9801AC0D84811E] - (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe [366024] [MD5.8E37F9BAA54D26146654AE8F6181B4D9] - (.WASEO - ClickTray Calendar.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe [3495936] [MD5.A6216DBB689EA1A63A47F30D89FEA670] - (.DreamStudio - Email Client.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe [1817088] [MD5.87AA7CB031C57FE5ACB5F87C0BCCFD9B] - (.Efficient Software - Pas de description.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe [10275328] [MD5.80D352BE20A74B3A44F2B4A4E79DDADD] - (.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe [263624] [MD5.055713CD9E0C6AAC46AFBB3A5B95EF75] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [912344] [MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [MD5.887BAA34C1B3AB4FBC54BF6545B59B49] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [658432]
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Louis\AppData\Roaming\Mozilla\Firefox\Profiles\rb4kum3u.default\prefs.js M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [Louis] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_22 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.69] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.69] - (.RealNetworks, Inc. - 6.0.12.69.) -- C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\Louis\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll M0 - MFSP: prefs.js [Louis - rb4kum3u.default] http://fr.yahoo.com M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{03B08592-E5B4-45ff-A0BE-C1D975458688}] [] Toolbar Buttons v1.0 (.Michael Buckley.) M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{1018e4d6-728f-4b20-ad56-37578a4de76b}] [] Flagfox v4.1.5 (.Dave Garrett.) M2 - MFEP: prefs.js [Louis - rb4kum3u.default\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}] [WOT] WOT v20110704 (.WOT Services Oy.)
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G0 - GCSP: Preference [User Data\Default][HomePage] http://fr.yahoo.com G2 - GCE: Preference [User Data\Default] [bdfkbdkkfmmckaadapdipihjfaacnkgd] Splendid v.3 (Activé) G2 - GCE: Preference [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT v.1.2.2 (Activé) G2 - GCE: Preference [User Data\Default] [hhfceebbbinfckajnkhjiiefbpfljpid] ABonEntendeur v.0.0.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [jhejngphiacapbgllhagbpdkkdieeaej] Chrome Flags v.1.4 (Activé) G2 - GCE: Preference [User Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Shockwave Flash v.10,3,181,35 (Activé)
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\system32\ieframe.dll R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} . (...) (No version) -- (.not file.) R3 - URLSearchHook: (no name) - {d40b90b4-d3b1-4d6b-a5d7-dc041c1b76c0} . (...) (No version) -- (.not file.)
---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline O2 - BHO: (no name) - {1d970ed5-3eda-438d-bffd-715931e2775b} Clé orpheline O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} Clé orpheline O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.HiTRUST - ActiveToolBand Module.) -- C:\Windows\system32\ActiveToolBand.dll O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.HiTRUST - eDStoolbar Module.) -- C:\Windows\system32\eDStoolbar.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} . (.SEIKO EPSON CORPORATION - EPSON Web-To-Page.) -- C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe O4 - HKCU\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKCU\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe O4 - HKUS\S-1-5-18\..\Run: [StartCCC] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKUS\S-1-5-18\..\Run: [Acer Tour Reminder] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] oobefldr.dll O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] oobefldr.dll O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Meteo Fusion] . (.Eggiz - Meteo Fusion.) -- C:\Program Files\Eggiz\Meteo Fusion\Meteo Fusion.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [Wallpaper] . (.Pas de propriétaire - Logiciel Wallpaper.) -- C:\Program Files\Wallpaper\Wallpaper.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-21-820133507-2522050262-2837998324-1000\..\Run: [IncrediMail] . (.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\bin\IncMail.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ClickTray Calendar.lnk . (.WASEO.) -- C:\Program Files\ClickTray Calendar\ClickTray.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DreamMail.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EfficientPIM Free.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe
---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Mail\WinMail.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Users\Louis\Desktop\AD-R.lnk . (...) -- C:\Program Files\Ad-Remover\main.exe O4 - Global Startup: C:\Users\Louis\Desktop\AMCap.lnk . (.Microsoft Corporation.) -- C:\Windows\amcap.exe O4 - Global Startup: C:\Users\Louis\Desktop\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe O4 - Global Startup: C:\Users\Louis\Desktop\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe O4 - Global Startup: C:\Users\Louis\Desktop\Conjugaison.lnk . (.ECHELARD.) -- D:\Documents\Logiciels installés\Conjugaison\Conjug.exe O4 - Global Startup: C:\Users\Louis\Desktop\CUISINON.lnk . (...) -- D:\Documents\Logiciels installés\cuis110_full\CUISINON.EXE O4 - Global Startup: C:\Users\Louis\Desktop\Dames.lnk . (...) -- D:\Documents\Dames.exe O4 - Global Startup: C:\Users\Louis\Desktop\Dictionnaire.lnk . (...) -- D:\Documents\Logiciels installés\Dictionnaire\dict.exe O4 - Global Startup: C:\Users\Louis\Desktop\Documents (2).lnk . (...) -- D:\Documents O4 - Global Startup: C:\Users\Louis\Desktop\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe O4 - Global Startup: C:\Users\Louis\Desktop\Images.lnk . (...) -- D:\Pictures O4 - Global Startup: C:\Users\Louis\Desktop\JkDefrag.lnk . (.J.C. Kessels.) -- D:\Documents\Logiciels installés\JkDefrag-3.33\JkDefrag.exe O4 - Global Startup: C:\Users\Louis\Desktop\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc O4 - Global Startup: C:\Users\Louis\Desktop\pinball.lnk . (.Cinematronics.) -- D:\Documents\Pinball\pinball.exe O4 - Global Startup: C:\Users\Louis\Desktop\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ancestrologie.lnk . (.PCM.) -- C:\Program Files\Ancestrologie\Ancestrologie.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner.lnk . (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Clean Virus MSN.lnk . (.AxBx.) -- C:\Program Files\AxBx\Clean Virus MSN\CleanVirusMSN.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Codes-doc - Raccourci.lnk . (...) -- D:\Documents\DOSSIERS\DOC PERSO\Codes-doc.axx O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DM2005.lnk . (.DreamStudio.) -- D:\Documents\Logiciels installés\DreamMail4\DM2005.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Documents (2).lnk . (...) -- D:\Documents O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\EfficientPIMFree.lnk . (.Efficient Software.) -- D:\Documents\Logiciels installés\Calendrier EfficientPIMF\EfficientPIMFree.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GénéaTique 2006.lnk . (.CDIP.) -- C:\Program Files\Geneatique2006\Genea2006.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Généatique 2009.lnk . (.CDIP.) -- C:\Program Files\Geneatique2009\Genea2009.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\IncrediMail 2.0.lnk . (.IncrediMail, Ltd..) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Jasc Paint Shop Pro 8 (2).lnk - Clé orpheline O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Malwarebytes' Anti-Malware.lnk . (.Malwarebytes Corporation.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MENU DOSSIERS.lnk . (...) -- D:\Documents\DOSSIERS\MENU DOSSIERS BUREAU\MENU DOSSIERS.doc O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Picture It! Express 7.0.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Picture It! 7\Pip.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ordinateur - Raccourci.lnk - Clé orpheline O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Paint.NET.lnk . (.dotPDN LLC.) -- C:\Program Files\Paint.NET\PaintDotNet.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- D:\Documents\Logiciels installés\PhotoFiltre\PhotoFiltre.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\RegSupreme.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme\RegSupreme.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller.lnk . (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sidebar.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Snipping Tool.lnk . (.Microsoft Corporation.) -- C:\Windows\System32\SnippingTool.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TomTom HOME 2.lnk . (.TomTom International B.V..) -- C:\Program Files\TomTom HOME 2\TomTomHOME.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Tomtomax Maxi-Box.lnk . (.Koak Design Development.) -- C:\Program Files\Tomtomax Maxi-Box\Tomtomax-MaxiBox.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Wallpaper.lnk . (...) -- C:\Program Files\Wallpaper\Wallpaper.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinAncetre.lnk . (...) -- C:\Program Files\WinAncetre\WinAncetre.exe O4 - Global Startup: C:\Users\Louis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8) O8 - Extra context menu item: ajouter cette page à vos favoris Orange - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\addfavorites_html\addfavorites.html O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Excel.) -- C:\PROGRA~1\MICROS~2\Office10\EXCEL.exe O8 - Extra context menu item: envoyer le texte sélectionné par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html O8 - Extra context menu item: envoyer par sms - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html O8 - Extra context menu item: envoyer un mail - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html O8 - Extra context menu item: orange.fr - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html O8 - Extra context menu item: rechercher le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html O8 - Extra context menu item: traduire la page - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html O8 - Extra context menu item: traduire le texte sélectionné - (.not file.) - C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html
---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d'affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll
---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CS2\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1 O17 - HKLM\System\CS3\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: NameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{56D60E9E-19DA-4D02-B7DD-E1A619B5BEE3}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Contrôleur de site Web.) -- C:\Windows\System32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\Windows\system32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Acer HomeMedia Connect Service (Acer HomeMedia Connect Service) . (.CyberLink - CLMSServer.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe O23 - Service: ePerformance Service (AcerMemUsageCheckService) . (.Pas de propriétaire - MemCheck.Service.) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe O23 - Service: (Ati External Event Utility) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\Windows\system32\Ati2evxx.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: eDSService.exe (eDataSecurity Service) . (.HiTRSUT - eDataSecurity Service.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe O23 - Service: eRecovery Service (eRecoveryService) . (.Acer Inc. - eRecoveryService.) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) . (.Firebird Project - Firebird SQL Server.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - Pas de description.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: Orange update Core Service (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O23 - Service: Planificateur LiveUpdate automatique (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (.not file.) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Pas de propriétaire - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Word.) - C:\Program Files\Microsoft Office\Office10\WINWORD.exe
---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Maintenance en 1 clic.job [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000Core] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-820133507-2522050262-2837998324-1000UA] (.Google Inc..) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe [MD5.7D4722E3A77B1D5B64F2D6ED0BD72A80] [APT] [Maintenance en 1 clic] (.TuneUp Software GmbH.) -- C:\Program Files\TuneUp Utilities 2007\SystemOptimizer.exe [MD5.00000000000000000000000000000000] [APT] [{04FC8B77-8E4C-46C5-A741-A6BA2FB45D10}] (...) -- J:\PSP.8\Jasc_Paint_Shop_Pro_8.03_Supergege\Crack.exe (.not file.) [MD5.7C66F9B332F28433EF23FC6403BFDB87] [APT] [{3C9E5E46-3A9F-4C9B-86E6-053B5822167C}] (...) -- C:\Program Files\Geneatique2009\unins000.exe [MD5.C77EB5E990478856A275991166D4E0EA] [APT] [{BE0F31A8-4B1C-4E8E-BF70-41793ED61734}] (.SEIKO EPSON CORP..) -- C:\Program Files\epson\escndv\setup\setup.exe
---\\ Pilotes lancés au démarrage (O41) O41 - Driver: (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: (i8042prt) . (.Microsoft Corporation - Pilote de port i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys O41 - Driver: (kbdclass) . (.Microsoft Corporation - Pilote de la classe Clavier.) - C:\Windows\System32\DRIVERS\kbdclass.sys O41 - Driver: (kbdhid) . (.Microsoft Corporation - Pilote de filtre clavier HID.) - C:\Windows\System32\DRIVERS\kbdhid.sys O41 - Driver: (mouclass) . (.Microsoft Corporation - Pilote de la classe Souris.) - C:\Windows\System32\DRIVERS\mouclass.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\system32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\System32\DRIVERS\pacer.sys O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys O41 - Driver: (SASDIFSV) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.) O41 - Driver: (SASKUTIL) . (. - .) - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.) O41 - Driver: (Serial) . (.Microsoft Corporation - Pilote de périphérique série.) - C:\Windows\System32\DRIVERS\serial.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys
---\\ Logiciels installés (O42) O42 - Logiciel: 7-Zip 4.65 - (.Pas de propriétaire.) [HKLM] -- 7-Zip O42 - Logiciel: ATI Uninstaller - (.ATI Technologies, Inc..) [HKLM] -- ATI Uninstaller O42 - Logiciel: Acer Arcade Live Main Page - (.Acer Inc..) [HKLM] -- {EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37} O42 - Logiciel: Acer DV Magician - (.Acer Inc..) [HKLM] -- {F6EFFB76-4A07-11DA-9D78-000129760D75} O42 - Logiciel: Acer DVDivine - (.Acer Inc..) [HKLM] -- {B145EC69-66F5-11D8-9D75-000129760D75} O42 - Logiciel: Acer Empowering Technology - (.Acer Inc..) [HKLM] -- {AB6097D9-D722-4987-BD9E-A076E2848EE2} O42 - Logiciel: Acer HomeMedia - (.Acer Inc..) [HKLM] -- {AA4BF92B-2AAF-11DA-9D78-000129760D75} O42 - Logiciel: Acer HomeMedia Connect - (.Acer Inc..) [HKLM] -- {132888AE-EF67-41C5-BCA2-7D5D2488AB63} O42 - Logiciel: Acer ScreenSaver - (.Acer Inc..) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC} O42 - Logiciel: Acer SlideShow DVD - (.Acer Inc..) [HKLM] -- {41581EF5-45A7-11DA-9D78-000129760D75} O42 - Logiciel: Acer Tour - (.Acer Inc..) [HKLM] -- {94389919-B0AA-4882-9BE8-9F0B004ECA35} O42 - Logiciel: Acer VideoMagician - (.Acer Inc..) [HKLM] -- {F79A208D-D929-11D9-9D77-000129760D75} O42 - Logiciel: Acer eDataSecurity Management - (.HiTRUST Inc..) [HKLM] -- {AEEAE013-92F1-4515-B278-139F1A692A36} O42 - Logiciel: Acer ePerformance Management - (.Acer Inc..) [HKLM] -- {D462BF9E-0C35-4705-BF9B-3DF9F3816643} O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites - (.Microsoft Corporation.) [HKLM] -- Activation Assistant for the 2007 Microsoft Office suites O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player O42 - Logiciel: Ancestrologie 2009 - (.PCM.) [HKLM] -- Ancestrologie_is1 O42 - Logiciel: Assistant de connexion Windows Live - (.Microsoft Corporation.) [HKLM] -- {DCE8CD14-FBF5-4464-B9A4-E18E473546C7} O42 - Logiciel: AxCrypt 1.7.2126.0 - (.Axantum Software AB.) [HKLM] -- {E4C1DBF1-67D9-4973-9DEC-677E695E7CE0} O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: Clean Virus MSN - (.AxBx.) [HKLM] -- Clean Virus MSN_is1 O42 - Logiciel: ClickTray Calendar - (.Pas de propriétaire.) [HKLM] -- ClickTray Calendar_is1 O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3} O42 - Logiciel: EPSON Attach To Email - (.SEIKO EPSON.) [HKLM] -- InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5} O42 - Logiciel: EPSON Copy Utility 3 - (.Pas de propriétaire.) [HKLM] -- {67EDD823-135A-4D59-87BD-950616D6E857} O42 - Logiciel: EPSON Easy Photo Print - (.Pas de propriétaire.) [HKLM] -- {BC69DDB8-4840-4D9B-BB31-0D4DB2BA1312} O42 - Logiciel: EPSON File Manager - (.Pas de propriétaire.) [HKLM] -- {E86BC406-944E-41F6-ADE6-2C136734C96B} O42 - Logiciel: EPSON Logiciel imprimante - (.Pas de propriétaire.) [HKLM] -- EPSON Printer and Utilities O42 - Logiciel: EPSON Scan - (.Pas de propriétaire.) [HKLM] -- EPSON Scanner O42 - Logiciel: EPSON Scan Assistant - (.Pas de propriétaire.) [HKLM] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64} O42 - Logiciel: EPSON Web-To-Page - (.Pas de propriétaire.) [HKLM] -- {7F14F68C-17FA-4F88-B3FD-7F449C1EBF32} O42 - Logiciel: ESDX4000_4050_CX3900 - (.Pas de propriétaire.) [HKLM] -- ESDX4000_4050_CX3900 O42 - Logiciel: Feedback Tool - (.Microsoft Corporation.) [HKLM] -- {13A5E785-5197-4EAD-8EE3-D660271E49BC} O42 - Logiciel: FileZilla Client 3.3.5.1 - (.Pas de propriétaire.) [HKLM] -- FileZilla Client O42 - Logiciel: Firebird 2.1.3.18185 (Win32) - (.Firebird Project.) [HKLM] -- FBDBServer_2_1_is1 O42 - Logiciel: France Bleu 1.1.1 - (.Radio France.) [HKLM] -- France Bleu_is1 O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome O42 - Logiciel: Généatique 2006 - (.CDIP.) [HKLM] -- {86D9FA99-F4BF-4D8F-B2CB-8E550C32BCBE}_is1 O42 - Logiciel: Généatique 2009 - (.CDIP.) [HKLM] -- {CEE31344-B227-4EE3-9D0C-74B7A52AC82E}_is1 O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595 O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484 O42 - Logiciel: IcoFX 1.6.4 - (.Pas de propriétaire.) [HKLM] -- IcoFX_is1 O42 - Logiciel: IncrediMail - (.IncrediMail.) [HKLM] -- {5E97F3BD-CDDC-4188-9D98-532E14FABB5D} O42 - Logiciel: IncrediMail 2.0 - (.IncrediMail Ltd..) [HKLM] -- IncrediMail O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite_Wave3 O42 - Logiciel: Installation Windows Live - (.Microsoft Corporation.) [HKLM] -- {133742BA-6F46-4D3E-85AF-78631D9AD8B8} O42 - Logiciel: Java(TM) 6 Update 22 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216016FF} O42 - Logiciel: MSI to redistribute MS VS2005 CRT libraries - (.The Firebird Project.) [HKLM] -- {A8D93648-9F7F-407D-915C-62044644C3DA} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF} O42 - Logiciel: MSXML 4.0 SP2 (KB941833) - (.Microsoft Corporation.) [HKLM] -- {C523D256-313D-4866-B36A-F3DE528246EF} O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Malwarebytes' Anti-Malware version 1.51.1.1800 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Meteo Fusion 1.5.9.11 - (.Eggiz.) [HKLM] -- Meteo Fusion _is1 O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra - (.Microsoft Corporation.) [HKLM] -- {3E31821C-7917-367E-938E-E65FC413EA31} O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1 O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E} O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262} O42 - Logiciel: Microsoft Office XP Professional - (.Microsoft Corporation.) [HKLM] -- {9011040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Office XP Professional avec FrontPage - (.Microsoft Corporation.) [HKLM] -- {9028040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Picture It! Express 7.0 - (.Microsoft Corporation.) [HKLM] -- {369B36BE-3D64-4641-9AEA-808D436FE130} O42 - Logiciel: Microsoft Publisher 2002 - (.Microsoft Corporation.) [HKLM] -- {9119040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - KB2467175 - (.Microsoft Corporation.) [HKLM] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 - (.Microsoft Corporation.) [HKLM] -- {E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 Language Pack SP1 - fra O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack O42 - Logiciel: Mozilla Firefox (3.6.18) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.18) O42 - Logiciel: NTI Backup NOW! 4.7 - (.NewTech Infosystems.) [HKLM] -- {67ADE9AF-5CD9-4089-8825-55DE4B366799} O42 - Logiciel: NTI CD & DVD-Maker - (.NewTech Infosystems.) [HKLM] -- InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238} O42 - Logiciel: PDF-XChange 3 - (.Tracker Software.) [HKLM] -- PDF-XChange 3_is1 O42 - Logiciel: PIF DESIGNER - (.Pas de propriétaire.) [HKLM] -- {B90450DF-E781-46FD-B1F1-0C86DA40E443} O42 - Logiciel: Paint.NET v3.5.8 - (.dotPDN LLC.) [HKLM] -- {9CF4A37B-A8C4-44D7-8C53-13B9D9594BB2} O42 - Logiciel: Photo Notifier and Animation Creator - (.IncrediMail Ltd..) [HKLM] -- Photo Notifier and Animation Creator O42 - Logiciel: Photo Notifier and Animation Creator - (.Nom de votre société.) [HKLM] -- {6B7F28D4-160E-40C6-B7C8-5EC6B9734DA7} O42 - Logiciel: PhotoMail Maker - (.IncrediMail Ltd..) [HKLM] -- PhotoMail O42 - Logiciel: PhotoMail Maker - (.Nom de votre société.) [HKLM] -- {75AE8014-1184-4BC0-B279-C879540719EE} O42 - Logiciel: PowerpointImageExtractor - (.Pas de propriétaire.) [HKLM] -- PowerpointImageExtractor_is1 O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: RegSupreme - (.Macecraft Software.) [HKLM] -- RegSupreme_is1 O42 - Logiciel: Revo Uninstaller 1.92 - (.VS Revo Group.) [HKLM] -- Revo Uninstaller O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906 O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2478663 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870 O42 - Logiciel: TomTom HOME 2.8.0.2146 - (.TomTom.) [HKLM] -- TomTom HOME O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} O42 - Logiciel: Tomtomax Maxi-Box V2.0.24 - (.Tomtomax et KoakDesign.) [HKLM] -- {A10F672B-01C4-498F-ADBD-3E5B144284B7}_is1 O42 - Logiciel: TuneUp Utilities 2007 - (.TuneUp Software.) [HKLM] -- {C8BB4912-12D9-42AE-B571-E580D8CD1B5B} O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707 O42 - Logiciel: Vista Codec Package - (..) [HKLM] -- {F9FD80CE-0448-4D4F-8BCD-77FC514C3F99} O42 - Logiciel: Wallpaper - (.Silver76.) [HKLM] -- Wallpaper O42 - Logiciel: Webcam Essentiel B Glob'mobile - (.Sonix.) [HKLM] -- {ECD03DA7-5952-406A-8156-5F0C93618D1F} O42 - Logiciel: WinAncetre - (.Pas de propriétaire.) [HKLM] -- WinAncetre 5.2 O42 - Logiciel: Windows Live Call - (.Microsoft Corporation.) [HKLM] -- {B3B487E7-6171-4376-9074-B28082CEB504} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {3175E049-F9A9-4A3D-8F19-AC9FB04514D1} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {445B183D-F4F1-45C8-B9DB-F11355CA657B} O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} |
|
|
|
|
|
Posté le 22/07/2011 à 20:55 |
| ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\ABBYY] [HKCU\Software\ALWIL Software] [HKCU\Software\ATI Technologies Inc.] [HKCU\Software\AVAST Software] [HKCU\Software\Acer] [HKCU\Software\Ad-Remover] [HKCU\Software\Adobe] [HKCU\Software\AncestrArbres] [HKCU\Software\AppDataLow\Software\Adobe] [HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_2] [HKCU\Software\AppDataLow\Software\Macromedia] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software\Orange] [HKCU\Software\AppDataLow\Software\Yahoo] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Axantum] [HKCU\Software\Axon Data] [HKCU\Software\Babylon] [HKCU\Software\CDIP] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\CoreVorbis] [HKCU\Software\CyberLink] [HKCU\Software\EPSON] [HKCU\Software\Foxit Software] [HKCU\Software\GNU] [HKCU\Software\Gabest] [HKCU\Software\Google] [HKCU\Software\Haali] [HKCU\Software\HookNetwork] [HKCU\Software\IM Providers] [HKCU\Software\IM] [HKCU\Software\IZSoftware] [HKCU\Software\ImInstaller] [HKCU\Software\IncrediMail] [HKCU\Software\JEDI-VCL] [HKCU\Software\Jasc] [HKCU\Software\JavaSoft] [HKCU\Software\Lavalys] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\MozillaPlugins] [HKCU\Software\Netscape] [HKCU\Software\NewTech Infosystems] [HKCU\Software\ODBC] [HKCU\Software\Orange] [HKCU\Software\Paint.NET] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Radio France] [HKCU\Software\RealNetworks] [HKCU\Software\Realtek] [HKCU\Software\SUPERAntiSpyware.com] [HKCU\Software\Softonic] [HKCU\Software\TomTom] [HKCU\Software\Tracker Software] [HKCU\Software\Trolltech] [HKCU\Software\TuneUp] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\VSRevoGroup] [HKCU\Software\Xtralog] [HKCU\Software\YB] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\Yahoo] [HKCU\Software\kde.org] [HKCU\Software\madFlac] [HKCU\Software\shockwave.com] [HKLM\Software\ABBYY] [HKLM\Software\ALWIL Software] [HKLM\Software\ATI Technologies] [HKLM\Software\ATI] [HKLM\Software\AVAST Software] [HKLM\Software\Acer] [HKLM\Software\Adobe] [HKLM\Software\AppDataLow] [HKLM\Software\Axantum] [HKLM\Software\Axon Data] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\CyberLink] [HKLM\Software\EPSON] [HKLM\Software\EliaShim] [HKLM\Software\FileZilla 3] [HKLM\Software\Firebird Project] [HKLM\Software\Foxit Software] [HKLM\Software\GNU] [HKLM\Software\Google] [HKLM\Software\HaaliMkx] [HKLM\Software\IZSoftware] [HKLM\Software\ImInstaller] [HKLM\Software\InstallShield] [HKLM\Software\Intel] [HKLM\Software\JGsoft] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\LightScribe] [HKLM\Software\Macromedia] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\Martin Soft] [HKLM\Software\MimarSinan] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NewTech Infosystems] [HKLM\Software\ODBC] [HKLM\Software\Orange] [HKLM\Software\Paint.NET] [HKLM\Software\Piriform] [HKLM\Software\Policies] [HKLM\Software\RealNetworks] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SONIX] [HKLM\Software\SUPERAntiSpyware.com] [HKLM\Software\Senfer] [HKLM\Software\Services] [HKLM\Software\Sonic] [HKLM\Software\SymNRT] [HKLM\Software\TomTom] [HKLM\Software\Tracker Software] [HKLM\Software\TuneUp] [HKLM\Software\Windows] [HKLM\Software\Yahoo] [HKLM\Software\illiminable] [HKLM\Software\mozilla.org] [HKLM\Software\muvee Technologies] [HKLM\Software\webtogo]
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 14/08/2010 - 10:56:42 - [3094515] ----D- C:\Program Files\7-Zip O43 - CFD: 06/05/2007 - 21:33:42 - [513711356] ----D- C:\Program Files\Acer Arcade Live O43 - CFD: 11/09/2009 - 10:47:38 - [364544] ----D- C:\Program Files\Acer Inc O43 - CFD: 06/05/2007 - 21:22:48 - [12683094] ----D- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites O43 - CFD: 22/07/2011 - 20:13:18 - [125086882] ----D- C:\Program Files\Ad-Remover O43 - CFD: 12/08/2010 - 17:49:32 - [154090505] ----D- C:\Program Files\Alwil Software O43 - CFD: 22/07/2011 - 11:28:56 - [74612847] ----D- C:\Program Files\Ancestrologie O43 - CFD: 11/09/2009 - 10:39:48 - [14403668] ----D- C:\Program Files\ATI O43 - CFD: 11/09/2009 - 10:41:24 - [200817172] ----D- C:\Program Files\ATI Technologies O43 - CFD: 03/03/2011 - 14:49:20 - [2392759] ----D- C:\Program Files\Axantum O43 - CFD: 12/10/2010 - 08:16:52 - [18788353] ----D- C:\Program Files\AxBx O43 - CFD: 15/07/2011 - 10:53:16 - [3901432] ----D- C:\Program Files\CCleaner O43 - CFD: 09/01/2011 - 12:59:04 - [10107640] ----D- C:\Program Files\ClickTray Calendar O43 - CFD: 19/10/2010 - 15:43:00 - [567174930] ----D- C:\Program Files\Common Files O43 - CFD: 06/05/2007 - 21:30:44 - [4655152] ----D- C:\Program Files\CyberLink O43 - CFD: 12/08/2010 - 19:51:30 - [2056672] ----D- C:\Program Files\Eggiz O43 - CFD: 21/09/2009 - 13:14:14 - [143615728] ----D- C:\Program Files\epson O43 - CFD: 23/02/2011 - 10:06:38 - [2394144] ----D- C:\Program Files\Feedback Tool O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\Program Files\Fichiers communs O43 - CFD: 08/01/2011 - 12:27:40 - [16451399] ----D- C:\Program Files\FileZilla FTP Client O43 - CFD: 12/09/2009 - 19:04:08 - [18510084] ----D- C:\Program Files\Firebird O43 - CFD: 19/07/2011 - 09:49:12 - [0] ----D- C:\Program Files\Foxit Software O43 - CFD: 19/03/2011 - 10:11:30 - [4915511] ----D- C:\Program Files\France Bleu O43 - CFD: 17/09/2009 - 08:28:14 - [293828252] ----D- C:\Program Files\Geneatique2006 O43 - CFD: 17/09/2009 - 08:49:08 - [228381375] ----D- C:\Program Files\Geneatique2009 O43 - CFD: 12/09/2009 - 10:31:08 - [3839420] ----D- C:\Program Files\IcoFX 1.6 O43 - CFD: 19/07/2011 - 13:24:36 - [27667014] ----D- C:\Program Files\IncrediMail O43 - CFD: 21/09/2009 - 13:21:42 - [67479258] --H-D- C:\Program Files\InstallShield Installation Information O43 - CFD: 15/07/2011 - 10:44:40 - [6151545] ----D- C:\Program Files\Internet Explorer O43 - CFD: 22/07/2011 - 20:12:32 - [66425366] ----D- C:\Program Files\Jasc Software Inc O43 - CFD: 19/10/2010 - 15:42:20 - [88594720] ----D- C:\Program Files\Java O43 - CFD: 08/01/2011 - 15:47:04 - [1779786] ----D- C:\Program Files\K-Lite Codec Pack O43 - CFD: 16/07/2011 - 12:09:30 - [7099500] ----D- C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 10/02/2011 - 10:32:18 - [752723] ----D- C:\Program Files\Microsoft O43 - CFD: 13/09/2009 - 09:40:10 - [800662] ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 02/11/2006 - 14:37:36 - [93446071] ----D- C:\Program Files\Microsoft Games O43 - CFD: 21/09/2009 - 12:31:00 - [242387757] ----D- C:\Program Files\Microsoft Office O43 - CFD: 19/09/2009 - 17:24:12 - [26689688] ----D- C:\Program Files\Microsoft Picture It! 7 O43 - CFD: 15/07/2011 - 10:46:02 - [38411899] ----D- C:\Program Files\Microsoft Silverlight O43 - CFD: 12/08/2010 - 19:48:04 - [150650442] ----D- C:\Program Files\Microsoft Works O43 - CFD: 12/08/2010 - 19:45:26 - [15715] ----D- C:\Program Files\Microsoft.NET O43 - CFD: 12/08/2010 - 20:08:14 - [99342446] ----D- C:\Program Files\Movie Maker O43 - CFD: 15/07/2011 - 21:13:08 - [29910815] ----D- C:\Program Files\Mozilla Firefox O43 - CFD: 02/11/2006 - 14:37:36 - [25757] ----D- C:\Program Files\MSBuild O43 - CFD: 11/09/2009 - 12:50:04 - [0] ----D- C:\Program Files\MSXML 4.0 O43 - CFD: 06/05/2007 - 21:18:02 - [49022275] ----D- C:\Program Files\NewTech Infosystems O43 - CFD: 16/07/2011 - 12:01:50 - [31080925] ----D- C:\Program Files\Paint.NET O43 - CFD: 07/01/2011 - 13:47:40 - [2757956] ----D- C:\Program Files\Photo Notifier and Animation Creator O43 - CFD: 12/08/2010 - 18:13:06 - [1873554] ----D- C:\Program Files\PhotoMail Maker O43 - CFD: 14/08/2010 - 11:48:36 - [1757288] ----D- C:\Program Files\PowerpointImageExtractor_V1_2 O43 - CFD: 06/05/2007 - 21:05:50 - [14858316] ----D- C:\Program Files\Realtek O43 - CFD: 02/11/2006 - 14:37:36 - [38694657] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 13/08/2010 - 15:48:24 - [7086198] ----D- C:\Program Files\RegSupreme O43 - CFD: 12/09/2009 - 10:29:12 - [0] ----D- C:\Program Files\TomTom DesktopSuite O43 - CFD: 12/09/2009 - 10:38:06 - [50469509] ----D- C:\Program Files\TomTom HOME 2 O43 - CFD: 12/09/2009 - 10:38:14 - [22486] ----D- C:\Program Files\TomTom International B.V O43 - CFD: 26/02/2011 - 11:25:18 - [1950164] ----D- C:\Program Files\Tomtomax Maxi-Box O43 - CFD: 11/09/2009 - 17:30:36 - [16610615] ----D- C:\Program Files\Tracker Software O43 - CFD: 11/09/2009 - 14:41:58 - [25940251] ----D- C:\Program Files\TuneUp Utilities 2007 O43 - CFD: 02/11/2006 - 15:01:56 - [0] --H-D- C:\Program Files\Uninstall Information O43 - CFD: 12/09/2009 - 15:45:30 - [48858307] ----D- C:\Program Files\VistaCodecPack O43 - CFD: 12/08/2010 - 17:30:08 - [6812742] ----D- C:\Program Files\VS Revo Group O43 - CFD: 11/09/2009 - 14:36:18 - [315523] ----D- C:\Program Files\Wallpaper O43 - CFD: 09/01/2011 - 12:59:06 - [537808] ----D- C:\Program Files\WinAncetre O43 - CFD: 16/09/2009 - 15:49:54 - [1016832] ----D- C:\Program Files\Windows Calendar O43 - CFD: 16/09/2009 - 15:49:54 - [2737152] ----D- C:\Program Files\Windows Collaboration O43 - CFD: 16/09/2009 - 15:49:52 - [4490624] ----D- C:\Program Files\Windows Defender O43 - CFD: 16/09/2009 - 15:49:54 - [7084664] ----D- C:\Program Files\Windows Journal O43 - CFD: 10/02/2011 - 10:32:12 - [45806173] ----D- C:\Program Files\Windows Live O43 - CFD: 10/02/2011 - 10:32:00 - [245112] ----D- C:\Program Files\Windows Live SkyDrive O43 - CFD: 15/07/2011 - 10:44:40 - [9116344] ----D- C:\Program Files\Windows Mail O43 - CFD: 14/10/2010 - 08:49:14 - [4498121] ----D- C:\Program Files\Windows Media Player O43 - CFD: 11/09/2009 - 10:32:56 - [7957544] ----D- C:\Program Files\Windows NT O43 - CFD: 16/09/2009 - 15:49:54 - [13528738] ----D- C:\Program Files\Windows Photo Gallery O43 - CFD: 12/08/2010 - 20:08:18 - [134144] ----D- C:\Program Files\Windows Portable Devices O43 - CFD: 24/02/2011 - 09:32:00 - [6527558] ----D- C:\Program Files\Windows Sidebar O43 - CFD: 22/07/2011 - 20:44:06 - [4047867] ----D- C:\Program Files\ZHPDiag O43 - CFD: 11/09/2009 - 20:02:32 - [86016] ----D- C:\Program Files\Common Files\Designer O43 - CFD: 11/09/2009 - 14:51:20 - [12692156] ----D- C:\Program Files\Common Files\InstallShield O43 - CFD: 19/10/2010 - 15:43:00 - [1243079] ----D- C:\Program Files\Common Files\Java O43 - CFD: 06/05/2007 - 21:17:32 - [7178034] ----D- C:\Program Files\Common Files\LightScribe O43 - CFD: 10/02/2011 - 10:32:06 - [390433226] ----D- C:\Program Files\Common Files\microsoft shared O43 - CFD: 06/05/2007 - 21:17:14 - [9706600] ----D- C:\Program Files\Common Files\muvee Technologies O43 - CFD: 06/05/2007 - 21:18:02 - [2290478] ----D- C:\Program Files\Common Files\NewTech Infosystems O43 - CFD: 02/11/2006 - 13:18:34 - [2702] ----D- C:\Program Files\Common Files\Services O43 - CFD: 11/09/2009 - 18:07:48 - [24179451] ----D- C:\Program Files\Common Files\snpstd3 O43 - CFD: 02/11/2006 - 13:18:34 - [41101735] ----D- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 11/09/2009 - 14:00:42 - [452776] ----D- C:\Program Files\Common Files\Symantec Shared O43 - CFD: 16/09/2009 - 15:49:54 - [16393602] ----D- C:\Program Files\Common Files\System O43 - CFD: 12/08/2010 - 17:59:28 - [51212410] ----D- C:\Program Files\Common Files\Windows Live O43 - CFD: 14/09/2009 - 08:56:02 - [1108009] -SH-D- C:\Program Files\Common Files\WindowsLiveInstaller O43 - CFD: 11/09/2009 - 14:39:14 - [9094656] ----D- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 12/08/2010 - 17:49:32 - [4815362] ----D- C:\ProgramData\Alwil Software O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Application Data O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Bureau O43 - CFD: 06/05/2007 - 21:34:10 - [23529] ----D- C:\ProgramData\CyberLink O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Desktop O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Documents O43 - CFD: 21/09/2009 - 12:51:52 - [443878] ----D- C:\ProgramData\EPSON O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Favoris O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Favorites O43 - CFD: 08/01/2011 - 13:06:04 - [0] ----D- C:\ProgramData\Google O43 - CFD: 19/02/2011 - 15:38:02 - [220] ----D- C:\ProgramData\IM O43 - CFD: 19/02/2011 - 15:37:06 - [6452763] ----D- C:\ProgramData\IncrediMail O43 - CFD: 11/09/2009 - 14:21:44 - [16520603] ----D- C:\ProgramData\Malwarebytes O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Menu Démarrer O43 - CFD: 10/02/2011 - 10:11:16 - [213225586] -S--D- C:\ProgramData\Microsoft O43 - CFD: 11/09/2009 - 19:27:24 - [57028] ----D- C:\ProgramData\Microsoft Help O43 - CFD: 11/09/2009 - 10:32:56 - [0] -SH-D- C:\ProgramData\Modèles O43 - CFD: 15/07/2011 - 09:19:46 - [1943089] ----D- C:\ProgramData\Orange O43 - CFD: 07/01/2011 - 13:47:42 - [1029545] ----D- C:\ProgramData\Photo Notifier and Animation Creator O43 - CFD: 12/08/2010 - 18:13:06 - [712167] ----D- C:\ProgramData\PhotoMail O43 - CFD: 02/11/2006 - 15:02:04 - [0] -SH-D- C:\ProgramData\Start Menu O43 - CFD: 19/10/2010 - 15:43:00 - [119] ----D- C:\ProgramData\Sun O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\ProgramData\SUPERAntiSpyware.com O43 - CFD: 02/11/2006 - 15:02:06 - [0] -SH-D- C:\ProgramData\Templates O43 - CFD: 12/09/2009 - 10:54:02 - [0] ----D- C:\ProgramData\TomTom O43 - CFD: 11/09/2009 - 14:39:28 - [1492] ----D- C:\ProgramData\TuneUp Software O43 - CFD: 21/09/2009 - 13:16:12 - [5081320] ----D- C:\ProgramData\UDL O43 - CFD: 12/09/2009 - 15:44:10 - [19942400] ----D- C:\ProgramData\VistaCodecs O43 - CFD: 10/01/2011 - 11:36:58 - [67] ----D- C:\ProgramData\WinAncetre O43 - CFD: 14/09/2009 - 08:49:38 - [224508] ----D- C:\ProgramData\WLInstaller O43 - CFD: 06/05/2007 - 21:22:50 - [6904815] ----D- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3} O43 - CFD: 14/08/2010 - 11:31:48 - [3105610] ----D- C:\Users\Louis\AppData\Roaming\Adobe O43 - CFD: 11/09/2009 - 20:23:24 - [8425708] ----D- C:\Users\Louis\AppData\Roaming\Ancestrologie O43 - CFD: 18/07/2011 - 11:32:10 - [153] ----D- C:\Users\Louis\AppData\Roaming\EfficientPIM Free O43 - CFD: 19/09/2009 - 21:14:14 - [512] ----D- C:\Users\Louis\AppData\Roaming\EPSON O43 - CFD: 08/01/2011 - 12:27:52 - [14008] ----D- C:\Users\Louis\AppData\Roaming\FileZilla O43 - CFD: 19/03/2011 - 10:30:02 - [769952] ----D- C:\Users\Louis\AppData\Roaming\France Bleu O43 - CFD: 16/09/2009 - 11:11:10 - [23199473] ----D- C:\Users\Louis\AppData\Roaming\Généatique2009 O43 - CFD: 09/01/2011 - 12:59:14 - [28890] ----D- C:\Users\Louis\AppData\Roaming\IcoFX O43 - CFD: 14/02/2011 - 19:38:44 - [21614] ----D- C:\Users\Louis\AppData\Roaming\Icones O43 - CFD: 11/09/2009 - 10:37:32 - [0] ----D- C:\Users\Louis\AppData\Roaming\Identities O43 - CFD: 11/09/2009 - 18:07:20 - [0] ----D- C:\Users\Louis\AppData\Roaming\InstallShield O43 - CFD: 11/09/2009 - 10:38:52 - [4658] ----D- C:\Users\Louis\AppData\Roaming\Macromedia O43 - CFD: 11/09/2009 - 14:21:50 - [6336] ----D- C:\Users\Louis\AppData\Roaming\Malwarebytes O43 - CFD: 02/11/2006 - 14:37:36 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Center Programs O43 - CFD: 08/01/2011 - 19:07:44 - [0] ----D- C:\Users\Louis\AppData\Roaming\Media Player Classic O43 - CFD: 18/07/2011 - 10:34:46 - [4807379] -S--D- C:\Users\Louis\AppData\Roaming\Microsoft O43 - CFD: 15/04/2011 - 08:42:00 - [5451766] ----D- C:\Users\Louis\AppData\Roaming\Mozilla O43 - CFD: 21/07/2011 - 12:36:44 - [260] ----D- C:\Users\Louis\AppData\Roaming\PhotoFiltre O43 - CFD: 24/02/2011 - 10:51:02 - [0] ----D- C:\Users\Louis\AppData\Roaming\SUPERAntiSpyware.com O43 - CFD: 14/08/2010 - 15:08:14 - [8704] ----D- C:\Users\Louis\AppData\Roaming\Template O43 - CFD: 12/09/2009 - 10:52:46 - [31743994] ----D- C:\Users\Louis\AppData\Roaming\TomTom O43 - CFD: 11/09/2009 - 14:41:40 - [165527] ----D- C:\Users\Louis\AppData\Roaming\TuneUp Software O43 - CFD: 08/01/2011 - 15:52:30 - [75985] ----D- C:\Users\Louis\AppData\Roaming\vlc O43 - CFD: 11/09/2009 - 15:10:16 - [5766769] ----D- C:\Users\Louis\AppData\Roaming\Wallpaper O43 - CFD: 14/08/2010 - 11:32:12 - [98138] ----D- C:\Users\Louis\AppData\Local\Adobe O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Application Data O43 - CFD: 12/08/2010 - 20:07:14 - [5115] ----D- C:\Users\Louis\AppData\Local\Eggiz O43 - CFD: 15/07/2011 - 19:01:42 - [208491916] ----D- C:\Users\Louis\AppData\Local\Google O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Historique O43 - CFD: 19/02/2011 - 15:39:40 - [144400638] ----D- C:\Users\Louis\AppData\Local\IM O43 - CFD: 08/01/2011 - 12:13:16 - [209995239] ----D- C:\Users\Louis\AppData\Local\Microsoft O43 - CFD: 11/09/2009 - 10:49:22 - [102185467] ----D- C:\Users\Louis\AppData\Local\Mozilla O43 - CFD: 16/03/2011 - 20:30:50 - [1466182] ----D- C:\Users\Louis\AppData\Local\Orange O43 - CFD: 22/07/2011 - 10:09:28 - [0] ----D- C:\Users\Louis\AppData\Local\Paint.NET O43 - CFD: 11/09/2009 - 10:37:46 - [0] ----D- C:\Users\Louis\AppData\Local\PowerCinema O43 - CFD: 22/07/2011 - 20:23:20 - [14599780] ----D- C:\Users\Louis\AppData\Local\Temp O43 - CFD: 11/09/2009 - 10:36:30 - [0] -SH-D- C:\Users\Louis\AppData\Local\Temporary Internet Files O43 - CFD: 12/09/2009 - 10:52:46 - [1888442] ----D- C:\Users\Louis\AppData\Local\TomTom O43 - CFD: 14/08/2010 - 15:09:02 - [44976448] ----D- C:\Users\Louis\AppData\Local\VirtualStore O43 - CFD: 13/09/2009 - 08:58:26 - [10002] ----D- C:\Users\Louis\AppData\Local\WindowsUpdate
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.FB0B86BCE095899E10320B04862395A8] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1495948] O44 - LFC:[MD5.E775B5BDB6545236DFCBD595FA2908A8] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfc009.dat [103872] O44 - LFC:[MD5.BDBC643F06C398C483B8777F79E304F0] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [126420] O44 - LFC:[MD5.D2591C6A65EAA06A71267C3180B8EA68] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfh009.dat [595798] O44 - LFC:[MD5.F9940ADD46C583B349DEEB28746C54B2] - 22/07/2011 - 19:29:21 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [678804] O44 - LFC:[MD5.EF8F082E544C4ECD801245F0BDACEAFB] - 22/07/2011 - 19:25:06 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1974049] O44 - LFC:[MD5.D7535B4A18673C603761D844079165CC] - 22/07/2011 - 19:21:29 ---A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.122C5CDB6B737F32BEB2426186DCB361] - 22/07/2011 - 19:19:51 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [5363] O44 - LFC:[MD5.369E919BF56ACA0982FE184EE315AA65] - 22/07/2011 - 19:17:37 ---A- . (...) -- C:\Ad-Report-SCAN[2].txt [5069] O44 - LFC:[MD5.21EF3EAD1FB2AB77B3FBB31BCF5D3B8F] - 22/07/2011 - 19:14:10 ---A- . (...) -- C:\Ad-Report-SCAN[1].txt [5004] O44 - LFC:[MD5.83EEB82E9ED7098EBC0C083C6BFD3116] - 17/07/2011 - 09:55:11 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [404640] O44 - LFC:[MD5.7009400CC9C1BCA4C29CFFAEFAFAE424] - 15/07/2011 - 09:47:17 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [379800] O44 - LFC:[MD5.F99DDD5E4F807B43E8B85DCD5F4B59EA] - 15/07/2011 - 09:12:26 ---A- . (.Microsoft - Legacy GDF resource DLL.) -- C:\Windows\System32\GameUXLegacyGDFs.dll [4240384] O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 15/07/2011 - 08:34:38 ---A- . (...) -- C:\Windows\System32\config.nt [2577] O44 - LFC:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [22712] O44 - LFC:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 06/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [41272] O44 - LFC:[MD5.2658AF3FBB06D7B5C731F9CC7CBFC1B3] - 04/07/2011 - 12:43:53 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [40112] O44 - LFC:[MD5.C2E576B23D3969989AF90EF76B2979EA] - 04/07/2011 - 12:43:51 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [199304] O44 - LFC:[MD5.17230708A2028CD995656DF455F2E303] - 04/07/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [441176] O44 - LFC:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 04/07/2011 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [309848] O44 - LFC:[MD5.984CFCE2168286C2511695C2F9621475] - 04/07/2011 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [43608] O44 - LFC:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 04/07/2011 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [25432] O44 - LFC:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 04/07/2011 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [54104] O44 - LFC:[MD5.861CB512E4E850E87DD2316F88D69330] - 04/07/2011 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\drivers\aswFsBlk.sys [19544]
---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.6352564B43E607E8A347A780E878C54D] - 11/09/2009 - 15:35:58 ---A- - C:\Windows\Prefetch\Layout.ini O45 - LFCP:[MD5.FEFCBCA2EA4142BF390369FAB9CE4B70] - 11/09/2009 - 18:52:55 ---A- - C:\Windows\Prefetch\AgGlUAD_S-1-5-21-820133507-2522050262-2837998324-1000.db O45 - LFCP:[MD5.17C0DACBBB464A3D121E7FC1D0BD8F59] - 11/09/2009 - 18:52:56 ---A- - C:\Windows\Prefetch\AgGlUAD_P_S-1-5-21-820133507-2522050262-2837998324-1000.db O45 - LFCP:[MD5.4C6A729D7BF275827092C555969B3311] - 11/09/2009 - 19:20:12 ---A- - C:\Windows\Prefetch\AgRobust.db O45 - LFCP:[MD5.FDF114981725DAB9E7DC043D05039080] - 11/09/2009 - 19:20:12 ---A- - C:\Windows\Prefetch\PfSvPerfStats.bin O45 - LFCP:[MD5.9CC0195D21322564EE4959AB99EA5EF9] - 11/09/2009 - 19:20:17 ---A- - C:\Windows\Prefetch\AgGlGlobalHistory.db O45 - LFCP:[MD5.22F7F87B76039291A9393372D1C4A408] - 11/09/2009 - 19:20:18 ---A- - C:\Windows\Prefetch\AgGlFaultHistory.db O45 - LFCP:[MD5.367299360A1DD10D561499FB55A82929] - 11/09/2009 - 19:20:20 ---A- - C:\Windows\Prefetch\AgGlFgAppHistory.db O45 - LFCP:[MD5.236DBBC9DC0A61BB4CA0BA0BB3EC35BE] - 15/07/2011 - 16:31:18 ---A- - C:\Windows\Prefetch\CHROME.EXE-D8662730.pf O45 - LFCP:[MD5.D5822DE5F3974DCB43880A64CBA8D987] - 15/07/2011 - 17:11:21 ---A- - C:\Windows\Prefetch\AVAST.SETUP-3DA1C849.pf O45 - LFCP:[MD5.26BE5BDD30F2B71BCD2553D26D24A9ED] - 15/07/2011 - 17:21:59 ---A- - C:\Windows\Prefetch\MOBSYNC.EXE-C5E2284F.pf O45 - LFCP:[MD5.8AD6C9FCC2E59C90256F86C7CB04332B] - 15/07/2011 - 17:26:27 ---A- - C:\Windows\Prefetch\WMPLAYER.EXE-BAD6BD53.pf O45 - LFCP:[MD5.956567AC19905E096311938868424153] - 15/07/2011 - 18:13:59 ---A- - C:\Windows\Prefetch\IMNOTFY.EXE-E138605A.pf O45 - LFCP:[MD5.74C812B3E6B6CE3BB395659594F2CFE6] - 15/07/2011 - 18:51:54 ---A- - C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf O45 - LFCP:[MD5.E7D5EAA1E994EC695C89B52C38849B09] - 15/07/2011 - 18:51:59 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf O45 - LFCP:[MD5.B1516673ABAEC4A1238604911896F982] - 15/07/2011 - 18:59:00 ---A- - C:\Windows\Prefetch\GOOGLEUPDATE.EXE-9707038B.pf O45 - LFCP:[MD5.412ADBD0D1DA276FE3EFF465A0BF6D19] - 15/07/2011 - 19:13:08 ---A- - C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-7226D1F8.pf O45 - LFCP:[MD5.631404BC8965A4B5F31FB6D63E81E24C] - 15/07/2011 - 19:19:31 ---A- - C:\Windows\Prefetch\VERCLSID.EXE-7C52E31C.pf O45 - LFCP:[MD5.7680AFF289B9199CF55A782BD78378E1] - 15/07/2011 - 19:20:06 ---A- - C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf O45 - LFCP:[MD5.46A512A3CD07E38823DD3406D50A71EE] - 15/07/2011 - 19:22:37 ---A- - C:\Windows\Prefetch\IMLPP.EXE-8B4B9E1E.pf O45 - LFCP:[MD5.54816838C19C5F32D17FE46AA0FA8D85] - 15/07/2011 - 19:23:21 ---A- - C:\Windows\Prefetch\FIREFOX.EXE-A606B53C.pf O45 - LFCP:[MD5.2269135E81C0E0BF0AB8D48DEA927236] - 15/07/2011 - 19:36:45 ---A- - C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf O45 - LFCP:[MD5.FFB24A099C675A5069CB7355CA06D7C2] - 15/07/2011 - 19:40:18 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf O45 - LFCP:[MD5.EFD946B74FB375A5EBA398BA6EED30DE] - 15/07/2011 - 19:42:07 ---A- - C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf O45 - LFCP:[MD5.03C2F1ACB157053D59D2228E44D88EB1] - 15/07/2011 - 19:42:07 ---A- - C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf O45 - LFCP:[MD5.151E46A619A024B8014D50E50D6A9F54] - 16/07/2011 - 19:08:50 ---A- - C:\Windows\Prefetch\VSSVC.EXE-B8AFC319.pf O45 - LFCP:[MD5.668A9815D9CDD3058FF4271AF1E942ED] - 16/07/2011 - 19:08:51 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-7CFEDEA3.pf O45 - LFCP:[MD5.9C62DAF566503E370C9E942F8F9F1BDD] - 16/07/2011 - 19:16:08 ---A- - C:\Windows\Prefetch\PDFXCVIEW.EXE-B5445CD8.pf O45 - LFCP:[MD5.51B73585BC98CB88C9FFAD27BFC940C1] - 16/07/2011 - 19:22:37 ---A- - C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.65016F66CFDC2FDDEFCC73026D47F697] - 16/07/2011 - 19:23:16 ---A- - C:\Windows\Prefetch\WLCOMM.EXE-272FF9F7.pf O45 - LFCP:[MD5.1016DABAD14AB5C6516314B8702CE22A] - 16/07/2011 - 19:24:08 ---A- - C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf O45 - LFCP:[MD5.911227E484A7971ACD930E0F4C61FBD2] - 16/07/2011 - 19:26:15 ---A- - C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf O45 - LFCP:[MD5.D3EA469C6E0FAE6E5D1313ED96E0CEC1] - 16/07/2011 - 19:34:00 ---A- - C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf O45 - LFCP:[MD5.5EEBF5932EB6D09AF4AADBBDE6960BE5] - 16/07/2011 - 19:34:36 ---A- - C:\Windows\Prefetch\WERCON.EXE-E36BD04E.pf O45 - LFCP:[MD5.E431C3E0A11F89A6AFBC9F5AAA59C0BA] - 16/07/2011 - 19:34:36 ---A- - C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf O45 - LFCP:[MD5.ECFDF668D8FD9A77B0FD9B27702EAFE6] - 17/07/2011 - 19:08:31 ---A- - C:\Windows\Prefetch\REVOUNINSTALLER.EXE-34C92DCE.pf O45 - LFCP:[MD5.B4308A9D74FE3ED2FAE792AF755F57EC] - 17/07/2011 - 19:09:14 ---A- - C:\Windows\Prefetch\MSIEXEC.EXE-A2D55CB6.pf O45 - LFCP:[MD5.CA03D6D6B1510EB518FEE324E0A8AF5F] - 18/07/2011 - 08:43:03 ---A- - C:\Windows\Prefetch\OFFICELIVESIGNIN.EXE-B83AEDE8.pf O45 - LFCP:[MD5.AD4B4003775C9614CE9EA750EE8D793F] - 18/07/2011 - 08:43:03 ---A- - C:\Windows\Prefetch\WINWORD.EXE-1A9ECF17.pf O45 - LFCP:[MD5.7EB236EADC822098FE0528DA6F9B8131] - 18/07/2011 - 19:08:51 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-B2EB1806.pf O45 - LFCP:[MD5.D31198BFD28283273C8C21402571B35C] - 19/07/2011 - 08:42:42 ---A- - C:\Windows\Prefetch\SF.BIN-1D41D4C0.pf O45 - LFCP:[MD5.4180AAFFF3151746A146D5E981B3228A] - 19/07/2011 - 08:44:33 ---A- - C:\Windows\Prefetch\FOXITREADER501.0523_ENU_SETUP-DF77E53D.pf O45 - LFCP:[MD5.F8DB146830B65BE10E2E3B562CD5F0A2] - 19/07/2011 - 12:20:58 ---A- - C:\Windows\Prefetch\INCREDIMAIL_INSTALL.EXE-D040FC28.pf O45 - LFCP:[MD5.92CA4B2AF038DE46316150ED6699A51C] - 19/07/2011 - 12:23:42 ---A- - C:\Windows\Prefetch\REGSVR32.EXE-8461DBEE.pf O45 - LFCP:[MD5.399092715ECC2D8D7F56D0BF23A0DAA4] - 19/07/2011 - 12:23:58 ---A- - C:\Windows\Prefetch\IMSETUP.EXE-F787A877.pf O45 - LFCP:[MD5.B1E06E80EEBBBD0D6E89856EFFAD14D8] - 19/07/2011 - 12:24:37 ---A- - C:\Windows\Prefetch\IMPCNT.EXE-1B92DF1B.pf O45 - LFCP:[MD5.3ACFD7F82991762FFB0C8F8531697E5C] - 19/07/2011 - 12:24:58 ---A- - C:\Windows\Prefetch\IMAPP.EXE-005076D7.pf O45 - LFCP:[MD5.2A8A11E2429877DB1227F2DFABA4D91E] - 19/07/2011 - 14:20:33 ---A- - C:\Windows\Prefetch\DM2005.EXE-8320FB18.pf O45 - LFCP:[MD5.A172E654B11CAC54E39DA0442160582F] - 19/07/2011 - 16:00:11 ---A- - C:\Windows\Prefetch\SYSTEMOPTIMIZER.EXE-786B21EC.pf O45 - LFCP:[MD5.EB44FD7D15FE4ABF64E5028BBC26E737] - 19/07/2011 - 16:00:16 ---A- - C:\Windows\Prefetch\REGISTRYCLEANER.EXE-14D750E3.pf O45 - LFCP:[MD5.CEEA2A688DFC2DFA33F99234FF06AD0D] - 19/07/2011 - 16:31:18 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-BE04F3C6.pf O45 - LFCP:[MD5.088489B04FA2F929E0AF6D1E1278CF5A] - 19/07/2011 - 17:59:00 ---A- - C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-E0F6B244.pf O45 - LFCP:[MD5.574D5557D6F024F84877970642B6B4E9] - 19/07/2011 - 18:03:45 ---A- - C:\Windows\Prefetch\INCMAIL.EXE-8674A44D.pf O45 - LFCP:[MD5.A136B2E7D09BA5DD88D6068FCEDAE7C1] - 19/07/2011 - 19:29:08 ---A- - C:\Windows\Prefetch\DFRGNTFS.EXE-7E4077FE.pf O45 - LFCP:[MD5.79452DA04AB94B3CB7289F2D8B01626C] - 20/07/2011 - 07:05:55 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-A6251510.pf O45 - LFCP:[MD5.38476D4A469696ADBB2F729819289770] - 20/07/2011 - 07:06:06 ---A- - C:\Windows\Prefetch\FBSERVER.EXE-10461801.pf O45 - LFCP:[MD5.759C23EBE9E152F707B7D4C9D0F73833] - 20/07/2011 - 07:06:09 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf O45 - LFCP:[MD5.72BFFC35E29BEA906F3282D42A53B8D1] - 20/07/2011 - 07:07:38 ---A- - C:\Windows\Prefetch\POWERPNT.EXE-127DE6B0.pf O45 - LFCP:[MD5.1444E3A056133D47B525086C0BB81B24] - 20/07/2011 - 07:12:00 ---A- - C:\Windows\Prefetch\EFFICIENTPIMFREE.EXE-94A1FF9B.pf O45 - LFCP:[MD5.59FE71C0A8C7E4497D9F6BD15A658C0E] - 20/07/2011 - 07:35:35 ---A- - C:\Windows\Prefetch\AXCRYPT.EXE-2444D19E.pf O45 - LFCP:[MD5.98F62449404773AD83A56AD201780FD7] - 20/07/2011 - 07:38:42 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-4F28A26F.pf O45 - LFCP:[MD5.281595A34F354AEDC3A5967E7B4CC288] - 20/07/2011 - 08:19:51 ---A- - C:\Windows\Prefetch\GOOGLEUPDATEONDEMAND.EXE-BE819C5E.pf O45 - LFCP:[MD5.D2FE24075C002513B22BD9180823C2CE] - 20/07/2011 - 09:31:27 ---A- - C:\Windows\Prefetch\SVCHOST.EXE-61AE5AB6.pf O45 - LFCP:[MD5.CC7753795EBC5C3CD17A81E37555AA1D] - 20/07/2011 - 09:34:27 ---A- - C:\Windows\Prefetch\PAINT SHOP PRO.EXE-6D922CE6.pf O45 - LFCP:[MD5.805391E1236C516C7B696C02C9A6FAAD] - 20/07/2011 - 11:15:33 ---A- - C:\Windows\Prefetch\MCUPDATE.EXE-62E74733.pf O45 - LFCP:[MD5.B2CBC9A949F3D01C5EA8920842CEE873] - 20/07/2011 - 11:16:37 ---A- - C:\Windows\Prefetch\HDWWIZ.EXE-AA21B149.pf O45 - LFCP:[MD5.A2A6EED9BB30EA7177A159487FF1E416] - 20/07/2011 - 12:20:04 ---A- - C:\Windows\Prefetch\MBAM.EXE-305FF92C.pf O45 - LFCP:[MD5.1111764D209C45C41EE9765DC2C079F4] - 20/07/2011 - 13:00:02 ---A- - C:\Windows\Prefetch\WSQMCONS.EXE-118B52B7.pf O45 - LFCP:[MD5.6272DE0114ABCCE3CAF86B5808F2F24F] - 20/07/2011 - 13:41:04 ---A- - C:\Windows\Prefetch\RUNDLL32.EXE-230FC512.pf O45 - LFCP:[MD5.B9325A6FEC85EE5453287BE0D0931571] - 20/07/2011 - 14:20:27 ---A- - C:\Windows\Prefetch\SF.BIN-0AD14463.pf O45 - LFCP:[MD5.C83987DAC8696417831EF4AD41B0D6F1] - 20/07/2011 - 16:40:09 ---A- - C:\Windows\Prefetch\CLEANMGR.EXE-E3C5E89D.pf O45 - LFCP:[MD5.A423D9371803C99EB45F9675C445587B] - 20/07/2011 - 16:41:56 ---A- - C:\Windows\Prefetch\CCLEANER.EXE-D4D76A60.pf O45 - LFCP:[MD5.EBCD2414DA147A5D436FB013588CF04E] - 20/07/2011 - 17:17:28 ---A- - C:\Windows\Prefetch\WAB.EXE-8608506E.pf O45 - LFCP:[MD5.7F65E68AF6C16E7D7161C25D27520794] - 20/07/2011 - 17:17:46 ---A- - C:\Windows\Prefetch\EXCEL.EXE-39DBC5F2.pf O45 - LFCP:[MD5.060AD7578C3595CD64C28DFAC0D09937] - 20/07/2011 - 18:57:57 ---A- - C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf O45 - LFCP:[MD5.20D7E43BCF5160490E92942C1BE3AEB2] - 20/07/2011 - 19:08:59 ---A- - C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf O45 - LFCP:[MD5.D63DFC3C23A302A96993BB9F86F5AD67] - 20/07/2011 - 19:25:04 ---A- - C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf O45 - LFCP:[MD5.8F1B9D55E6EF3EE023E09E90410088D8] - 21/07/2011 - 06:37:00 ---A- - C:\Windows\Prefetch\MBRWRWIN.EXE-2144233B.pf O45 - LFCP:[MD5.702B8C2DB2CB3340E733E46E7DEFD3E5] - 21/07/2011 - 07:42:54 ---A- - C:\Windows\Prefetch\WALLPAPER.EXE-EF900736.pf O45 - LFCP:[MD5.F7C92141FF44EC2EABD16564CB971477] - 21/07/2011 - 08:00:32 ---A- - C:\Windows\Prefetch\OPTIONALFEATURES.EXE-27133C71.pf O45 - LFCP:[MD5.9AB673136A9CF6C41588B03814A1FC2E] - 21/07/2011 - 08:06:52 ---A- - C:\Windows\Prefetch\REGEDIT.EXE-90FEEA06.pf O45 - LFCP:[MD5.EF4C674636912B2993187101BD0264E3] - 21/07/2011 - 10:28:57 ---A- - C:\Windows\Prefetch\ANCESTROLOGIE.EXE-056B7B9C.pf O45 - LFCP:[MD5.FA738E75599188182D0CCB49ED294819] - 21/07/2011 - 10:55:50 ---A- - C:\Windows\Prefetch\SNIPPINGTOOL.EXE-EFFDAFDE.pf O45 - LFCP:[MD5.E27D3D9CFAFA7BD01EEFFA020C541427] - 21/07/2011 - 10:55:51 ---A- - C:\Windows\Prefetch\WISPTIS.EXE-595A3677.pf O45 - LFCP:[MD5.44A420BFFB5CC8376F1A40E1BAAA2B3F] - 21/07/2011 - 11:36:44 ---A- - C:\Windows\Prefetch\PHOTOFILTRE.EXE-8B395AB3.pf O45 - LFCP:[MD5.C38AD0CC91A4B7C211B5A4E41252DD0D] - 21/07/2011 - 12:36:14 ---A- - C:\Windows\Prefetch\7ZFM.EXE-69B8961D.pf O45 - LFCP:[MD5.0CE2F76E6DAD87149A749F6A324C8D1B] - 21/07/2011 - 16:24:26 ---A- - C:\Windows\Prefetch\PHOTOFILTRE.EXE-2239B248.pf O45 - LFCP:[MD5.4BFB63CE164C36A9BA28BC19A46FC241] - 21/07/2011 - 16:59:31 ---A- - C:\Windows\Prefetch\SF.BIN-FCD81500.pf O45 - LFCP:[MD5.55E9B20477FD647C0DED50309BC3EDFA] - 21/07/2011 - 17:35:58 ---A- - C:\Windows\Prefetch\DEFRAG.EXE-588F90AD.pf O45 - LFCP:[MD5.0F8054B638128A1886A9D86C07335ED0] - 22/07/2011 - 07:03:21 ---A- - C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf O45 - LFCP:[MD5.8A432FF63A33ADAFC09A2BA93ED26AE5] - 22/07/2011 - 07:03:34 ---A- - C:\Windows\Prefetch\MPSIGSTUB.EXE-52973AC5.pf O45 - LFCP:[MD5.4B7CE78C77C7BF75554F57A319DFB45A] - 22/07/2011 - 07:03:39 ---A- - C:\Windows\Prefetch\MPAS-FE_BD.EXE-BB62FD5E.pf O45 - LFCP:[MD5.DBEC1A75AE72E71C3332B63A8D90F4D8] - 22/07/2011 - 09:09:32 ---A- - C:\Windows\Prefetch\PAINTDOTNET.EXE-018D93AD.pf O45 - LFCP:[MD5.365C5CA0B6914B547B9BF880FFEA3530] - 22/07/2011 - 09:42:44 ---A- - C:\Windows\Prefetch\SF.BIN-D37CE76D.pf O45 - LFCP:[MD5.2C7BC128E41AEB2369666F84266782CD] - 22/07/2011 - 12:33:13 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-9A5C9DC2.pf O45 - LFCP:[MD5.1FCA7F4A814E502735A9E4BDC4858922] - 22/07/2011 - 12:33:16 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-F0A65855.pf O45 - LFCP:[MD5.F2EC15E3728D87C29DB14D8910E9D8A4] - 22/07/2011 - 12:33:16 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-3A57E73F.pf O45 - LFCP:[MD5.BAEB729E4C4137CDDD9B7ABE2C39637D] - 22/07/2011 - 12:34:21 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-D5BD1EFD.pf O45 - LFCP:[MD5.B569E27F9ADFD5CA47C112A1C4E420CE] - 22/07/2011 - 12:34:23 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-D3E8C3B8.pf O45 - LFCP:[MD5.69D7E4911FF4BE47DA9B541AB2285F6B] - 22/07/2011 - 12:34:23 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-C1812522.pf O45 - LFCP:[MD5.ABC43A3842DA8060DC0ACA1A22203B0E] - 22/07/2011 - 12:36:24 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-64157AC9.pf O45 - LFCP:[MD5.A32924074FE4FEBA8D790886B469EC23] - 22/07/2011 - 12:36:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2.EXE-36ECC8CB.pf O45 - LFCP:[MD5.2F79427164BC330A24A714BC90835485] - 22/07/2011 - 12:36:28 ---A- - C:\Windows\Prefetch\ZHPDIAG2.TMP-A0FE1546.pf O45 - LFCP:[MD5.A2B434C1F8CF92366E42DB2DA0B7276F] - 22/07/2011 - 12:37:21 ---A- - C:\Windows\Prefetch\ZHPFIX.EXE-85222C4E.pf O45 - LFCP:[MD5.0AC6BA9691CCCC80C12E546D8C7723E6] - 22/07/2011 - 13:07:37 ---A- - C:\Windows\Prefetch\MSIA15B.TMP-B58AC499.pf O45 - LFCP:[MD5.41F237383148AD77DE9251DA2A3B9C51] - 22/07/2011 - 13:07:44 ---A- - C:\Windows\Prefetch\WERFAULT.EXE-E69F695A.pf O45 - LFCP:[MD5.132072093BE94C1D7F0A256056CB9288] - 22/07/2011 - 13:08:33 ---A- - C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf O45 - LFCP:[MD5.6CC94FBAE0EB10F2C6BFD58FF60A6D26] - 22/07/2011 - 16:29:53 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6A473D35.pf O45 - LFCP:[MD5.D65D86C8CDF7C4E671B5EF3CC784D997] - 22/07/2011 - 17:03:04 ---A- - C:\Windows\Prefetch\AU_.EXE-60064AF1.pf O45 - LFCP:[MD5.5A8BC945FAAE86041804A7F28A4DF8DD] - 22/07/2011 - 17:03:04 ---A- - C:\Windows\Prefetch\UN-SEAF.EXE-35D6DBCC.pf O45 - LFCP:[MD5.2C622F8EE01BC1D0173B437E079D4DC2] - 22/07/2011 - 17:04:04 ---A- - C:\Windows\Prefetch\UNINS000.EXE-64E326BE.pf O45 - LFCP:[MD5.F1A3A4CD74A89406A403109B570D48D5] - 22/07/2011 - 17:04:06 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-E90818D6.pf O45 - LFCP:[MD5.CD3B13E292719EBE522B37B59C44B818] - 22/07/2011 - 17:25:20 ---A- - C:\Windows\Prefetch\E_FPREBEE.EXE-5D5BAEF6.pf O45 - LFCP:[MD5.6E3CFD8A6E2D955BD823907221DA6BF3] - 22/07/2011 - 17:25:22 ---A- - C:\Windows\Prefetch\E_FAMTBEE.EXE-8D8F5DAD.pf O45 - LFCP:[MD5.C65E86476A7821BF85A51B91AB6BDEF7] - 22/07/2011 - 17:25:23 ---A- - C:\Windows\Prefetch\E_FARNBEE.EXE-BAC0DB98.pf O45 - LFCP:[MD5.902E68E5A8E3415ACBED48FC2E7966AA] - 22/07/2011 - 17:58:29 ---A- - C:\Windows\Prefetch\SHOCKWAVE_INSTALLER_FF.EXE-3ED9AD54.pf O45 - LFCP:[MD5.3AE00E97324CAF91A4292689152099D0] - 22/07/2011 - 17:59:49 ---A- - C:\Windows\Prefetch\SETUP.EXE-74743FFB.pf O45 - LFCP:[MD5.E652448A15E9478D8EE71F596297F724] - 22/07/2011 - 17:59:52 ---A- - C:\Windows\Prefetch\SWDNLD.EXE-9A093387.pf O45 - LFCP:[MD5.E71DD90AB2C75AC4D7AA3479DFE2D5F8] - 22/07/2011 - 18:00:49 ---A- - C:\Windows\Prefetch\SETUP.EXE-A2073B77.pf O45 - LFCP:[MD5.0E9EE605B73793740B48B739FEB4993F] - 22/07/2011 - 18:00:59 ---A- - C:\Windows\Prefetch\SWHELPER_1160626.EXE-BC9DC39B.pf O45 - LFCP:[MD5.81EEB3E0D0C7E7730E4AACCC569F0FA7] - 22/07/2011 - 18:52:04 ---A- - C:\Windows\Prefetch\DLLHOST.EXE-6BCB9FAA.pf O45 - LFCP:[MD5.25DF85BCAA5D4D68FB4F4D18621EAE85] - 22/07/2011 - 19:13:16 ---A- - C:\Windows\Prefetch\AD-R.EXE-10401ADF.pf O45 - LFCP:[MD5.24C03EB7836FBB2C6ACE2BC3DF36AA4A] - 22/07/2011 - 19:18:49 ---A- - C:\Windows\Prefetch\MAIN.EXE-6B3CA411.pf O45 - LFCP:[MD5.99A71C5956035F4C7779C35806A0AA8C] - 22/07/2011 - 19:18:56 ---A- - C:\Windows\Prefetch\ERUNT.EXE-0F94B3E0.pf O45 - LFCP:[MD5.8A5727153A7C35704E1D4EAA95A3E40D] - 22/07/2011 - 19:23:22 ---A- - C:\Windows\Prefetch\MFPMP.EXE-26F35380.pf O45 - LFCP:[MD5.D2F925F581E732FF04F30011B1BEC3C8] - 22/07/2011 - 19:30:04 ---A- - C:\Windows\Prefetch\CONIME.EXE-9781FD5F.pf O45 - LFCP:[MD5.D569DE27DEC65A2295FAF9AEF1EDB3A6] - 22/07/2011 - 19:31:21 ---A- - C:\Windows\Prefetch\LADS.EXE-3D3801BD.pf O45 - LFCP:[MD5.65F1DAD155BD7B70B7A66FD420AF1440] - 22/07/2011 - 19:31:24 ---A- - C:\Windows\Prefetch\SETACL.EXE-ED98B555.pf O45 - LFCP:[MD5.389EF483AA170CB8CE168E5C8842EAC5] - 22/07/2011 - 19:31:24 ---A- - C:\Windows\Prefetch\SUBINACL.EXE-7FBD134E.pf O45 - LFCP:[MD5.359730DB55DE8A55D1EC82A30621343D] - 22/07/2011 - 19:33:35 ---A- - C:\Windows\Prefetch\SIGCHECK.EXE-C8DFE9C6.pf O45 - LFCP:[MD5.C2705D5856F3AB40E446990C6ED23677] - 22/07/2011 - 19:35:14 ---A- - C:\Windows\Prefetch\NSLOOKUP.EXE-3D06E09F.pf O45 - LFCP:[MD5.282F1E4A2821F97AADC8410F9519E7BC] - 22/07/2011 - 19:35:20 ---A- - C:\Windows\Prefetch\MBR.EXE-3DE60006.pf O45 - LFCP:[MD5.40AAD9939E608157651B39876B0DC671] - 22/07/2011 - 19:35:23 ---A- - C:\Windows\Prefetch\MBRCHECK.EXE-015A14A4.pf O45 - LFCP:[MD5.62C95E3A970617C0A7B541A5437C942D] - 22/07/2011 - 19:42:51 ---A- - C:\Windows\Prefetch\SF.BIN-EEDEE59D.pf O45 - LFCP:[MD5.DB52DE6B803FCC45C38A4D66DB75B76C] - 22/07/2011 - 19:43:09 ---A- - C:\Windows\Prefetch\ZHPDIAG.EXE-5F50D22C.pf O45 - LFCP:[MD5.37EF34757C3CD4E02F00D9198AFC99AA] - 22/07/2011 - 19:44:03 ---A- - C:\Windows\Prefetch\CMD.EXE-4A81B364.pf O45 - LFCP:[MD5.573E8E70514AEEE589FC21EAC26C5203] - 22/07/2011 - 19:44:03 ---A- - C:\Windows\Prefetch\SCHTASKS.EXE-5CA45734.pf
---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys
---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm O52 - TDSD: \Drivers32\"msacm.divxa32"="divxa32.acm" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm O52 - TDSD: \Drivers32\"vidc.XVID"="xvidvfw.dll" . (...) -- C:\Windows\System32\xvidvfw.dll O52 - TDSD: \Drivers32\"VIDC.FFDS"="ff_vfw.dll" . (...) -- C:\Windows\System32\ff_vfw.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\Windows\System32\sl_anet.acm O52 - TDSD: \drivers.desc\"divxa32.acm"="DivX Audio" . (.Kristal Studi - DivX WMA Audi.) -- C:\Windows\System32\divxa32.acm O52 - TDSD: \drivers.desc\"xvidvfw.dll"="XviD MPEG-4 Video Codec" . (...) -- C:\Windows\System32\xvidvfw.dll O52 - TDSD: \drivers.desc\"ff_vfw.dll"="ffdshow video encoder" . (...) -- C:\Windows\System32\ff_vfw.dll
---\\ ShareTools MSconfig StartupReg (O53) O53 - SMSR:HKLM\...\startupreg\Acer Empowering Technology Monitor [Key] . (...) -- C:\Acer\Empowering Technology\SysMonitor.exe O53 - SMSR:HKLM\...\startupreg\Acer Tour Reminder [Key] . (.Acer Inc. - Acer Tour Reminder.) -- C:\Acer\AcerTour\Reminder.exe O53 - SMSR:HKLM\...\startupreg\ccApp [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\ccApp.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\eDataSecurity Loader [Key] . (.HiTRUST - eDataSecurity System Loader( Load and prepa.) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe O53 - SMSR:HKLM\...\startupreg\ehTray.exe [Key] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe O53 - SMSR:HKLM\...\startupreg\EPSON Stylus DX4000 Series [Key] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBEE.exe O53 - SMSR:HKLM\...\startupreg\FixCamera [Key] . (.Pas de propriétaire - CameraFixer MFC Application.) -- C:\Windows\FixCamera.exe O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\Louis\AppData\Local\Google\Update\GoogleUpdate.exe O53 - SMSR:HKLM\...\startupreg\IS CfgWiz [Key] . (...) -- c:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF}\cltUIStb.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\MailNotifier [Key] . (...) -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\MSConfig [Key] . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\Windows\system32\msconfig.exe O53 - SMSR:HKLM\...\startupreg\orangeinside [Key] . (...) -- C:\Users\Louis\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Volet Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O53 - SMSR:HKLM\...\startupreg\snpstd3 [Key] . (.Pas de propriétaire - CameraMonitor Application.) -- C:\Windows\vsnpstd3.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\TomTomHOME.exe [Key] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe O53 - SMSR:HKLM\...\startupreg\tsnpstd3 [Key] . (.Pas de propriétaire - tsnp2std Microsoft.) -- C:\Windows\tsnpstd3.exe O53 - SMSR:HKLM\...\startupreg\WarReg_PopUp [Key] . (.Acer Inc. - WR_PopUp.) -- C:\Acer\WR_PopUp\WarReg_PopUp.exe O53 - SMSR:HKLM\...\startupreg\Windows Defender [Key] . (.Microsoft Corporation - Windows Defender User Interface.) -- C:\Program Files\Windows Defender\MSASCui.exe O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe
---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\system32\credssp.dll
---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 |
|
Posté le 22/07/2011 à 21:01 |
| --\\ Microsoft Windows Policies Explorer (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0
---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.2EDC5BBAC6C651ECE337BDE8ED97C9FB] - 02/11/2006 - 10:51:38 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [420968] O58 - SDL:[MD5.B84088CA3CDCA97DA44A984C6CE1CCAD] - 02/11/2006 - 10:51:32 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [297576] O58 - SDL:[MD5.7880C67BCCC27C86FD05AA2AFB5EA469] - 02/11/2006 - 10:50:35 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\system32\drivers\adpu160m.sys [98408] O58 - SDL:[MD5.9AE713F8E30EFC2ABCCD84904333DF4D] - 02/11/2006 - 10:51:00 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\system32\drivers\adpu320.sys [147048] O58 - SDL:[MD5.90395B64600EBB4552E26E178C94B2E4] - 02/11/2006 - 10:49:20 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [14952] O58 - SDL:[MD5.5F673180268BB1FDB69C99B6619FE379] - 02/11/2006 - 10:50:09 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [67688] O58 - SDL:[MD5.957F7540B5E7F602E44648C7DE5A1C05] - 02/11/2006 - 10:50:10 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [67688] O58 - SDL:[MD5.861CB512E4E850E87DD2316F88D69330] - 12/08/2010 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [19544] O58 - SDL:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 12/08/2010 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [54104] O58 - SDL:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 12/08/2010 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [25432] O58 - SDL:[MD5.17230708A2028CD995656DF455F2E303] - 24/02/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [441176] O58 - SDL:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 12/08/2010 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [309848] O58 - SDL:[MD5.984CFCE2168286C2511695C2F9621475] - 12/08/2010 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [43608] O58 - SDL:[MD5.184E2B47542BADBE5CA606F0FC9A90CC] - 07/05/2007 - 15:04:28 ---A- . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\system32\drivers\atikmdag.sys [2427392] O58 - SDL:[MD5.A356E45E8432432C06981EA63A1E0FE8] - 06/05/2007 - 04:22:26 ---A- . (.ATI Technologies Inc. - ATI PCIE Driver for ATI PCIE chipset.) -- C:\Windows\system32\drivers\AtiPcie.sys [8192] O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 02/11/2006 - 09:24:45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [13568] O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 02/11/2006 - 09:24:46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [5248] O58 - SDL:[MD5.B304E75CFF293029EDDF094246747113] - 02/11/2006 - 09:25:24 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [71808] O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [62336] O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 02/11/2006 - 09:24:44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [12160] O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 02/11/2006 - 09:24:47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [11904] O58 - SDL:[MD5.45201046C776FFDAF3FC8A0029C581C8] - 02/11/2006 - 10:49:28 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [16488] O58 - SDL:[MD5.AE1FDF7BF7BB6C6A70F67699D880592A] - 02/11/2006 - 10:50:11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\system32\drivers\djsvs.sys [71272] O58 - SDL:[MD5.F88FB26547FD2CE6D0A5AF2985892C48] - 02/11/2006 - 08:30:54 ---A- . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserialized driver.) -- C:\Windows\system32\drivers\E1G60I32.sys [117760] O58 - SDL:[MD5.E8F3F21A71720C84BCF423B80028359F] - 02/11/2006 - 10:51:34 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [316520] O58 - SDL:[MD5.DF353B401001246853763C4B7AAA6F50] - 02/11/2006 - 10:50:10 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\system32\drivers\HpCISSs.sys [37480] O58 - SDL:[MD5.C957BF4B5D80B46C5017BF0101E6C906] - 02/11/2006 - 10:51:25 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\system32\drivers\iaStorV.sys [232040] O58 - SDL:[MD5.2D077BF86E843F901D8DB709C95B49A5] - 02/11/2006 - 10:50:17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [41576] O58 - SDL:[MD5.BCED60D16156E428F8DF8CF27B0DF150] - 02/11/2006 - 10:50:07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\system32\drivers\iteatapi.sys [35944] O58 - SDL:[MD5.06FA654504A498C30ADCA8BEC4E87E7E] - 02/11/2006 - 10:50:09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\system32\drivers\iteraid.sys [35944] O58 - SDL:[MD5.A2262FB9F28935E862B4DB46438C80D2] - 02/11/2006 - 10:50:04 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [65640] O58 - SDL:[MD5.30D73327D390F72A62F32C103DAF1D6D] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [65640] O58 - SDL:[MD5.E1E36FEFD45849A95F1AB81DE0159FE3] - 02/11/2006 - 10:50:10 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [65640] O58 - SDL:[MD5.ECA00EED9AB95489007B0EF84C7149DE] - 11/09/2009 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbam.sys [22712] O58 - SDL:[MD5.B18225739ED9CAA83BA2DF966E9F43E8] - 16/07/2011 - 18:52:42 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\system32\drivers\mbamswissarmy.sys [41272] O58 - SDL:[MD5.D153B14FC6598EAE8422A2037553ADCE] - 02/11/2006 - 10:49:53 ---A- . (.LSI Logic Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\system32\drivers\megasas.sys [28776] O58 - SDL:[MD5.4FBBB70D30FD20EC51F80061703B001E] - 02/11/2006 - 10:49:59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\system32\drivers\Mraid35x.sys [33384] O58 - SDL:[MD5.2E7FB731D4790A1BC6270ACCEFACB36E] - 02/11/2006 - 10:50:19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [45160] O58 - SDL:[MD5.7F1C1F78D709C4A54CBB46EDE7E0B48D] - 06/05/2007 - 20:16:50 ---A- . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\system32\drivers\NTIDrvr.sys [6144] O58 - SDL:[MD5.E875C093AEC0C978A90F30C9E0DFBB72] - 02/11/2006 - 08:36:50 ---A- . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablette N-trig.) -- C:\Windows\system32\drivers\ntrigdigi.sys [20608] O58 - SDL:[MD5.E69E946F80C1C31C53003BFBF50CBB7C] - 02/11/2006 - 10:50:24 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [88680] O58 - SDL:[MD5.9E0BA19A28C498A6D323D065DB76DFFC] - 02/11/2006 - 10:50:13 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [40040] O58 - SDL:[MD5.C2821F33B846A52FDC25FF554ACF11F2] - 06/05/2007 - 23:04:48 ---A- . (.HiTRUST - PSD Filter Driver.) -- C:\Windows\system32\drivers\psdfilter.sys [20264] O58 - SDL:[MD5.28D3A91FE7791B970E6B15C88F98DFBD] - 06/05/2007 - 23:04:54 ---A- . (.HiTRUST - PSD Named Pipe Driver.) -- C:\Windows\system32\drivers\PSDNServ.sys [16680] O58 - SDL:[MD5.3A66F69459052DE13EF8A0F77D728A73] - 06/05/2007 - 23:04:50 ---A- . (.HiTRUST - PSD Virtual Disk Driver.) -- C:\Windows\system32\drivers\psdvdisk.sys [60712] O58 - SDL:[MD5.CCDAC889326317792480C0A67156A1EC] - 02/11/2006 - 10:51:45 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [900712] O58 - SDL:[MD5.81A7E5C076E59995D54BC1ED3A16E60B] - 02/11/2006 - 10:50:35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [106088] O58 - SDL:[MD5.2BD6633DB50A98534AA3262E0F9F5A14] - 06/05/2007 - 12:18:18 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHDA.sys [1761696] O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 02/11/2006 - 07:37:21 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [20480] O58 - SDL:[MD5.CEDD6F4E7D84E9F98B34B3FE988373AA] - 02/11/2006 - 10:50:10 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [38504] O58 - SDL:[MD5.DF843C528C4F69D12CE41CE462E973A7] - 02/11/2006 - 10:50:16 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [71784] O58 - SDL:[MD5.11BB0E11D42CC3A43D741D9B30839BE1] - 27/03/2007 - 17:19:36 ---A- . (.Sonix Co. Ltd. - USB PC Camera driver.) -- C:\Windows\system32\drivers\snpstd3.sys [10252544] O58 - SDL:[MD5.192AA3AC01DF071B541094F251DEED10] - 02/11/2006 - 10:50:05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\system32\drivers\symc8xx.sys [35944] O58 - SDL:[MD5.8C8EB8C76736EBAF3B13B633B2E64125] - 02/11/2006 - 10:49:56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_hi.sys [31848] O58 - SDL:[MD5.8072AF52B5FD103BBBA387A1E49F62CB] - 02/11/2006 - 10:50:03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\system32\drivers\sym_u3.sys [34920] O58 - SDL:[MD5.3CD4EA35A6221B85DCC25DAA46313F8D] - 02/11/2006 - 10:51:25 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\system32\drivers\uliahci.sys [235112] O58 - SDL:[MD5.8514D0E5CD0534467C5FC61BE94A569F] - 02/11/2006 - 10:50:35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\system32\drivers\ulsata.sys [98408] O58 - SDL:[MD5.38C3C6E62B157A6BC46594FADA45C62B] - 02/11/2006 - 10:50:45 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\system32\drivers\ulsata2.sys [115816] O58 - SDL:[MD5.FD2E3175FCADA350C7AB4521DCA187EC] - 02/11/2006 - 10:49:30 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [17512] O58 - SDL:[MD5.D984439746D42B30FC65A4C3546C6829] - 02/11/2006 - 10:50:41 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\Windows\system32\drivers\vsmraid.sys [112232] O58 - SDL:[MD5.2584DF81CC9F7E7BD3545691106F8CAE] - 13/09/2009 - 15:47:04 ---A- . (.Wasay - Wasay virtual disk driver.) -- C:\Windows\system32\drivers\WSVD.sys [80744] O58 - SDL:[MD5.04E268ADFC81964C49DC0C082D520F7E] - 06/12/2007 - 08:51:00 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\system32\drivers\yk60x86.sys [298496] O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 02/11/2006 - 08:09:42 ---A- . (...) -- C:\Windows\system32\ANSI.SYS [9029] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 02/11/2006 - 08:09:45 ---A- . (...) -- C:\Windows\system32\country.sys [27097] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 02/11/2006 - 08:09:41 ---A- . (...) -- C:\Windows\system32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 02/11/2006 - 08:09:44 ---A- . (...) -- C:\Windows\system32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 02/11/2006 - 08:09:29 ---A- . (...) -- C:\Windows\system32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 02/11/2006 - 08:09:35 ---A- . (...) -- C:\Windows\system32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 02/11/2006 - 08:09:38 ---A- . (...) -- C:\Windows\system32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 02/11/2006 - 08:09:40 ---A- . (...) -- C:\Windows\system32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 02/11/2006 - 08:09:31 ---A- . (...) -- C:\Windows\system32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 02/11/2006 - 08:09:20 ---A- . (...) -- C:\Windows\system32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 02/11/2006 - 08:09:23 ---A- . (...) -- C:\Windows\system32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 02/11/2006 - 08:09:24 ---A- . (...) -- C:\Windows\system32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 02/11/2006 - 08:09:26 ---A- . (...) -- C:\Windows\system32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 02/11/2006 - 08:09:22 ---A- . (...) -- C:\Windows\system32\NTIO804.SYS [34672]
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC:Last File Created 01/04/2011 - 19:19:59 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\imsl.dat [3843] O61 - LFC:Last File Created 03/02/2011 - 19:33:52 ---A- C:\Users\All Users\Alwil Software\Avast5\URL.db [1123328] O61 - LFC:Last File Created 08/07/2011 - 21:42:28 ----- C:\Users\Louis\AppData\Local\Temp\7zOD0FB.tmp\ZHPDiag2.exe [2540536] O61 - LFC:Last File Created 08/07/2011 - 21:42:28 ----- C:\Users\Louis\AppData\Local\Temp\7zOE3DF.tmp\ZHPDiag2.exe [2540536] O61 - LFC:Last File Created 11/09/2009 - 07:07:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\PowerP10.pip [1492] O61 - LFC:Last File Created 11/09/2009 - 07:47:41 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Épreuve\PERSO.DIC [177] O61 - LFC:Last File Created 11/09/2009 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Word10.pip [1756] O61 - LFC:Last File Created 11/09/2009 - 08:43:38 --H-- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\index.dat [980] O61 - LFC:Last File Created 11/09/2009 - 19:20:07 --HA- C:\Users\Louis\AppData\Local\IconCache.db [6291456] O61 - LFC:Last File Created 11/09/2009 - 19:44:09 ---A- C:\Users\Louis\AppData\Roaming\Wallpaper\Wallpaper.bmp [5760054] O61 - LFC:Last File Created 11/09/2009 - 19:44:10 ---A- C:\Users\Louis\AppData\Roaming\Wallpaper\image.xml [6722] O61 - LFC:Last File Created 12/08/2010 - 07:35:24 ---A- C:\Users\All Users\Alwil Software\Avast5\db1ca257252ebdd82-20d0e056.dat [199680] O61 - LFC:Last File Created 12/08/2010 - 13:12:18 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\IdentityCRL\Production\MetaConfig.xml [163] O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\BehaviorShield.txt [45605] O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\EmailShield.txt [33565] O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\FileSystemShield.txt [33153] O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\IMShield.txt [33153] O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\NetworkShield.txt [33153] O61 - LFC:Last File Created 12/08/2010 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\P2PShield.txt [33153] O61 - LFC:Last File Created 12/08/2010 - 19:21:35 ---A- C:\Users\All Users\Alwil Software\Avast5\report\WebShield.txt [33153] O61 - LFC:Last File Created 12/08/2010 - 19:36:33 ---A- C:\Users\All Users\Alwil Software\Avast5\Log.db [61440] O61 - LFC:Last File Created 13/09/2009 - 07:07:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\PowerPoint\PPT10.pcb [6969] O61 - LFC:Last File Created 13/10/2010 - 08:22:01 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu [148] O61 - LFC:Last File Created 14/08/2010 - 17:18:13 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Excel10.pip [1484] O61 - LFC:Last File Created 14/08/2010 - 17:18:13 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\VB10.pip [144] O61 - LFC:Last File Created 15/07/2011 - 07:09:30 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Sent Items.imm [1679527] O61 - LFC:Last File Created 15/07/2011 - 10:55:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Login Data [16384] O61 - LFC:Last File Created 15/07/2011 - 10:58:28 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Bookmarks.bak [98656] O61 - LFC:Last File Created 15/07/2011 - 15:52:35 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Favicons [47104] O61 - LFC:Last File Created 15/07/2011 - 16:31:04 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Web Data [67584] O61 - LFC:Last File Created 15/07/2011 - 16:33:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom Filter 2 [1873940] O61 - LFC:Last File Created 15/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\History [167936] O61 - LFC:Last File Created 15/07/2011 - 19:20:13 ---A- C:\Users\All Users\Alwil Software\Avast5\db1cc42beddffa832-e4d7fb6f.dat [151248] O61 - LFC:Last File Created 15/07/2011 - 19:22:17 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cookies [33792] O61 - LFC:Last File Created 16/07/2011 - 11:05:52 ---A- C:\Users\Louis\Documents\Ancestrologie\database\ANCESTROLOGIE (2).BDD090921-0930090921-0939100802-1527 [75227136] O61 - LFC:Last File Created 16/07/2011 - 11:31:18 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\Configuration\build.conf [260] O61 - LFC:Last File Created 16/07/2011 - 11:31:18 ---A- C:\Users\All Users\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref [7050965] O61 - LFC:Last File Created 16/07/2011 - 15:42:09 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bhmmomiinigofkjcapegjjndpbikblnp_0.localstorage [305152] O61 - LFC:Last File Created 16/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache [0] O61 - LFC:Last File Created 17/03/2011 - 12:17:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\IncrediMail_Install.exe [473424] O61 - LFC:Last File Created 17/09/2010 - 17:07:48 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\cacheSize.txt [8] O61 - LFC:Last File Created 18/04/2011 - 12:36:58 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\Order.dat [304] O61 - LFC:Last File Created 18/04/2011 - 19:23:23 R--A- C:\Users\All Users\IncrediMail\Data\Licenses\IM_PREM.imk [3120] O61 - LFC:Last File Created 19/02/2011 - 07:03:28 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{09839FAD-7FFF-417F-9614-D1B5C38A7C08}\101\incredicenter_v2.bmp [5348] O61 - LFC:Last File Created 19/02/2011 - 07:07:24 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\AddressBook\AddrBook.db3 [192512] O61 - LFC:Last File Created 19/02/2011 - 07:07:24 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\AddressBook\AddrBook.db3.bak [192512] O61 - LFC:Last File Created 19/02/2011 - 09:44:58 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Lex\private.tlx [445] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\angelic.ims [17490] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\classic.ims [11610] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\fantasy.ims [15062] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\frosted.ims [12584] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\im2.ims [1511058] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\paper.ims [20832] O61 - LFC:Last File Created 19/02/2011 - 12:21:49 ----- C:\Users\Louis\AppData\Local\IM\Skin\premium.ims [229847] O61 - LFC:Last File Created 19/02/2011 - 12:24:52 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Pictures\Pictures.db [33792] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\history.ix [1033239] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\imit.dat [7168] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_d_1.ix [393216] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_di_1.ix [65536] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_kl_1.ix [1474560] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_r_1.ix [601783] O61 - LFC:Last File Created 19/02/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\indexlog.dat [2725] O61 - LFC:Last File Created 19/02/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_d_1.ix [393216] O61 - LFC:Last File Created 19/02/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_di_1.ix [65536] O61 - LFC:Last File Created 19/02/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_r_1.ix [2316065] O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\history.ix [1010392] O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\imit.dat [16384] O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_kl_1.ix [3334144] O61 - LFC:Last File Created 19/02/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\indexlog.dat [2756] O61 - LFC:Last File Created 19/02/2011 - 19:21:56 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\AccountsOrder.dat [160] O61 - LFC:Last File Created 19/02/2011 - 19:23:03 ---A- C:\Users\Louis\AppData\Local\IM\content.xml [27883] O61 - LFC:Last File Created 19/02/2011 - 19:23:07 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Containers.db [2491392] O61 - LFC:Last File Created 19/02/2011 - 19:43:44 ---A- C:\Users\Louis\AppData\Local\IM\Lex\IMSTP12.gif [47958] O61 - LFC:Last File Created 19/07/2011 - 07:26:39 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\2BA82155-283B-42E3-A4AA-953CDCA0CA8E.htm [55036] O61 - LFC:Last File Created 19/07/2011 - 07:29:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\362A641E-0EA3-4D88-9F14-0BD46E852822.htm [55036] O61 - LFC:Last File Created 19/07/2011 - 07:29:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\3BEE0681-8035-497E-BD1D-EE70A21BB76B.htm [46298] O61 - LFC:Last File Created 19/07/2011 - 07:30:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\7F5B6F24-F367-4118-86D7-EEAC962E5835.htm [46442] O61 - LFC:Last File Created 19/07/2011 - 07:30:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\E1A5D7C1-2779-4A20-9F30-08798FE91C81.htm [46526] O61 - LFC:Last File Created 19/07/2011 - 07:31:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\D7BEBC0E-6DEA-4276-9FB3-E844347E4E08.htm [47924] O61 - LFC:Last File Created 19/07/2011 - 07:36:41 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\FB3FB6F0-0967-44EF-8137-B2983E9A85A2.htm [69408] O61 - LFC:Last File Created 19/07/2011 - 07:38:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\A675E7B1-0647-45D7-BD2B-597E1A4FC9F6.htm [46526] O61 - LFC:Last File Created 19/07/2011 - 07:39:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\C1F74E16-6E6A-422D-B41A-F396F195D9BA.htm [69408] O61 - LFC:Last File Created 19/07/2011 - 07:42:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\AAB28A1E-9A56-4BB1-A345-31D8CEFDE9D7.htm [46530] O61 - LFC:Last File Created 19/07/2011 - 08:24:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\{CFA907A5-D587-47B0-8DCE-F335A5C79A1A}\Elvis.wmv_thumb.bmp [24174] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\angelic_light.ims [17490] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\classic_light.ims [11610] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\fantasy_light.ims [15062] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\frosted_light.ims [12584] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\im2.ims [1511058] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\paper_light.ims [20832] O61 - LFC:Last File Created 19/07/2011 - 12:21:49 ---A- C:\Users\All Users\IncrediMail\Data\SetupData\Skin\premium.ims [229847] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\Facebook\congratulations_screenshot.gif [14253] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\Facebook\congratulations_title_image.gif [4310] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\box_bottom.gif [3527] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\box_top.gif [229] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_1.gif [4425] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_10.gif [6110] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_2.gif [4927] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_3.gif [5285] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_4.gif [8639] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_5.gif [6664] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_6.gif [3963] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_7.gif [3370] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_8.gif [4891] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_9.gif [4407] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\image_x.gif [4238] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\ok_button.png [1347] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\ok_icon.png [1373] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\gettingstarted\top_ten_tips.gif [3867] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\bg.png [953] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\btn_gonow_center.png [976] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\btn_gonow_left.png [2555] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\btn_gonow_right.png [1436] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\main_center.png [1005] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\main_left.png [17578] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934_935_Common\main_right.png [1470] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_chevron_left.png [264] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_chevron_right.png [260] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_left.png [254] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_only_x_hover.png [311] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_right.png [242] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_tile.png [165] O61 - LFC:Last File Created 19/07/2011 - 12:23:43 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\button_x.png [288] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\933\RDDlg.dat [6476] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\934\RDDlg.dat [3557] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\935\RDDlg.dat [3558] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\IMSys\{781B9B29-76A7-423f-A038-5BB34D4F48FA}\936\RDDlg.dat [3703] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\SW\SWH.dat [300] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\SW\SWSB.dat [156] O61 - LFC:Last File Created 19/07/2011 - 12:23:45 R--A- C:\Users\All Users\IncrediMail\Data\Welcome\Welcome2.eml [91123] |
|
Posté le 22/07/2011 à 21:06 |
| O61 - LFC:Last File Created 19/07/2011 - 12:24:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Resource\Manager\get_started12.swf [4463] O61 - LFC:Last File Created 19/07/2011 - 15:57:43 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\LOUIS MARYVONNE.lnk [595] O61 - LFC:Last File Created 19/07/2011 - 16:00:55 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000111.rcb [6814] O61 - LFC:Last File Created 19/07/2011 - 17:07:48 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\3C82B2A2455B252B8595FD0113249AA19D7E8BDD.swz [569996] O61 - LFC:Last File Created 19/07/2011 - 17:07:57 ---A- C:\Users\Louis\AppData\Roaming\Adobe\Flash Player\AssetCache\GBB7W8PB\3C82B2A2455B252B8595FD0113249AA19D7E8BDD.heu [148] O61 - LFC:Last File Created 19/07/2011 - 18:00:29 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Documents.lnk [392] O61 - LFC:Last File Created 19/07/2011 - 18:12:26 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Service State [52] O61 - LFC:Last File Created 19/09/2009 - 09:50:15 ---A- C:\Users\Louis\AppData\Roaming\Ancestrologie\Settings\W_REPERTOIRE.Ini [3276] O61 - LFC:Last File Created 20/07/2011 - 09:43:21 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\5DBC30AA-56F0-4810-A2E3-B92CFC89A7EE.htm [46674] O61 - LFC:Last File Created 20/07/2011 - 09:50:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\33330ABE-B8E7-4493-8EBB-8D5745C1D5A1.htm [47940] O61 - LFC:Last File Created 20/07/2011 - 10:58:28 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Bookmarks [98656] O61 - LFC:Last File Created 20/07/2011 - 11:10:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\8FC6B012-79C1-43D9-B2DB-AB8486156414.htm [48084] O61 - LFC:Last File Created 20/07/2011 - 11:10:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\9F18EB09-4893-402A-BA3F-F0C8552F0E85.htm [46530] O61 - LFC:Last File Created 20/07/2011 - 11:25:22 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\8740545E-5FFC-4390-ACB9-67CFB80C8447\BD332B3B-9E51-4B03-B329-CDAC12E96075.htm [46674] O61 - LFC:Last File Created 20/07/2011 - 11:25:36 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\43A845AA-61D6-4158-B39C-D305D0825253.htm [47940] O61 - LFC:Last File Created 20/07/2011 - 12:12:38 ---A- C:\Users\Louis\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2011-07-20 (13-12-37).txt [1066] O61 - LFC:Last File Created 20/07/2011 - 12:26:36 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\848ADA77-0153-4018-9B17-A3E0D6FEDFF4.htm [48084] O61 - LFC:Last File Created 20/07/2011 - 12:32:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\napoleon2.gif [13524] O61 - LFC:Last File Created 20/07/2011 - 12:32:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\usa_flag.gif [36053] O61 - LFC:Last File Created 20/07/2011 - 12:32:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\french_flag2.gif [36694] O61 - LFC:Last File Created 20/07/2011 - 12:32:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\german_flag.gif [34306] O61 - LFC:Last File Created 20/07/2011 - 12:32:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\italy_flag.gif [34572] O61 - LFC:Last File Created 20/07/2011 - 12:32:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\british_flag.gif [36889] O61 - LFC:Last File Created 20/07/2011 - 12:32:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\eagle.gif [15431] O61 - LFC:Last File Created 20/07/2011 - 12:32:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\british_big_ben.gif [17550] O61 - LFC:Last File Created 20/07/2011 - 12:32:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\chubby_brazil_flag.gif [35349] O61 - LFC:Last File Created 20/07/2011 - 12:32:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\capoeira.gif [78092] O61 - LFC:Last File Created 20/07/2011 - 12:32:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\spanish_flag.gif [35009] O61 - LFC:Last File Created 20/07/2011 - 12:32:51 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\chubby_german_beer.gif [39938] O61 - LFC:Last File Created 20/07/2011 - 12:32:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\canada_flag.gif [35828] O61 - LFC:Last File Created 20/07/2011 - 12:32:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dutch_flag.gif [35304] O61 - LFC:Last File Created 20/07/2011 - 12:32:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_iloveyou_small_230608.gif [10997] O61 - LFC:Last File Created 20/07/2011 - 12:32:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_shy_230608.gif [9560] O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\7_small.gif [6477] O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_hearts_eyes_230608.gif [5710] O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_hug_230608.gif [13457] O61 - LFC:Last File Created 20/07/2011 - 12:32:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_laugh_230608.gif [13912] O61 - LFC:Last File Created 20/07/2011 - 12:32:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\1_small.gif [11783] O61 - LFC:Last File Created 20/07/2011 - 12:32:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\6_small.gif [6700] O61 - LFC:Last File Created 20/07/2011 - 12:32:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_angel_230608.gif [23781] O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\3_small.gif [5147] O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_bored_230608.gif [9874] O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_smile2_230608.gif [3585] O61 - LFC:Last File Created 20/07/2011 - 12:32:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_wave2_230608.gif [19235] O61 - LFC:Last File Created 20/07/2011 - 12:32:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_beer_230608.gif [17058] O61 - LFC:Last File Created 20/07/2011 - 12:32:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_crazy_230608.gif [12641] O61 - LFC:Last File Created 20/07/2011 - 12:32:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_shy_manga_230608.gif [9471] O61 - LFC:Last File Created 20/07/2011 - 12:32:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\11_small.gif [15614] O61 - LFC:Last File Created 20/07/2011 - 12:32:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\12_small.gif [25484] O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_baby_230608.gif [2592] O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_cry_230608.gif [10454] O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_sad_230608.gif [6328] O61 - LFC:Last File Created 20/07/2011 - 12:32:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_screaming_230608.gif [18765] O61 - LFC:Last File Created 20/07/2011 - 12:33:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_cheers_wine_230608.gif [16062] O61 - LFC:Last File Created 20/07/2011 - 12:33:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\everyday_crazy_hair_230608.gif [16014] O61 - LFC:Last File Created 20/07/2011 - 12:33:07 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\5_small.png [1519] O61 - LFC:Last File Created 20/07/2011 - 12:33:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\most_populer_wave1_020708.gif [16848] O61 - LFC:Last File Created 20/07/2011 - 12:33:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\yes_text.gif [11904] O61 - LFC:Last File Created 20/07/2011 - 12:33:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\most_populer_thumbup1_020708.gif [15384] O61 - LFC:Last File Created 20/07/2011 - 12:33:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\140109_glitter_butterfly.gif [28221] O61 - LFC:Last File Created 20/07/2011 - 12:33:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\140109_love.gif [12086] O61 - LFC:Last File Created 20/07/2011 - 12:33:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_no.gif [48261] O61 - LFC:Last File Created 20/07/2011 - 12:33:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\thanks2.gif [18784] O61 - LFC:Last File Created 20/07/2011 - 12:34:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709kissing_kitten.gif [54422] O61 - LFC:Last File Created 20/07/2011 - 12:34:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709sorry_kitten.gif [39045] O61 - LFC:Last File Created 20/07/2011 - 12:34:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709angry_kitten.gif [42775] O61 - LFC:Last File Created 20/07/2011 - 12:34:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709no_kitten.gif [18329] O61 - LFC:Last File Created 20/07/2011 - 12:34:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010709surprised_kitten.gif [37211] O61 - LFC:Last File Created 20/07/2011 - 12:34:07 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\no_text.gif [7693] O61 - LFC:Last File Created 20/07/2011 - 12:34:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109_ok.gif [11048] O61 - LFC:Last File Created 20/07/2011 - 12:34:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\love_smaller.gif [40469] O61 - LFC:Last File Created 20/07/2011 - 12:34:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\070109hey.gif [12438] O61 - LFC:Last File Created 20/07/2011 - 12:34:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109_i_love_u.gif [7243] O61 - LFC:Last File Created 20/07/2011 - 12:34:09 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\kiss_2.gif [20365] O61 - LFC:Last File Created 20/07/2011 - 12:34:10 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109gr8.gif [23217] O61 - LFC:Last File Created 20/07/2011 - 12:34:10 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109miss_you.gif [24704] O61 - LFC:Last File Created 20/07/2011 - 12:34:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110109cu.gif [25811] O61 - LFC:Last File Created 20/07/2011 - 12:34:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\love_ya.gif [28146] O61 - LFC:Last File Created 20/07/2011 - 12:34:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_sad.gif [13059] O61 - LFC:Last File Created 20/07/2011 - 12:34:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\later.gif [11276] O61 - LFC:Last File Created 20/07/2011 - 12:34:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_sleep.gif [63963] O61 - LFC:Last File Created 20/07/2011 - 12:34:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\20.4.09_baby_poop.gif [32879] O61 - LFC:Last File Created 20/07/2011 - 12:34:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\cat_gray.gif [36907] O61 - LFC:Last File Created 20/07/2011 - 12:34:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\bird.gif [92533] O61 - LFC:Last File Created 20/07/2011 - 12:34:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\pig.gif [63284] O61 - LFC:Last File Created 20/07/2011 - 12:34:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dogg.gif [46901] O61 - LFC:Last File Created 20/07/2011 - 12:34:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dino.gif [65199] O61 - LFC:Last File Created 20/07/2011 - 12:34:21 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\black_cat.gif [72956] O61 - LFC:Last File Created 20/07/2011 - 12:34:22 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\pil.gif [76873] O61 - LFC:Last File Created 20/07/2011 - 12:34:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\bat.gif [26305] O61 - LFC:Last File Created 20/07/2011 - 12:34:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dev.gif [21994] O61 - LFC:Last File Created 20/07/2011 - 12:34:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\dracula.gif [17392] O61 - LFC:Last File Created 20/07/2011 - 12:34:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\grim.gif [28137] O61 - LFC:Last File Created 20/07/2011 - 12:34:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\wit.gif [27374] O61 - LFC:Last File Created 20/07/2011 - 12:34:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\frank.gif [9136] O61 - LFC:Last File Created 20/07/2011 - 12:34:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\spider.gif [22178] O61 - LFC:Last File Created 20/07/2011 - 12:34:26 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\ghost.gif [17311] O61 - LFC:Last File Created 20/07/2011 - 12:34:26 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\mum.gif [20790] O61 - LFC:Last File Created 20/07/2011 - 12:34:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_7.gif [8711] O61 - LFC:Last File Created 20/07/2011 - 12:34:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105i_angry_steaming.gif [17895] O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_1.gif [7313] O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_4.gif [4832] O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_1.gif [1477] O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_hair.gif [12598] O61 - LFC:Last File Created 20/07/2011 - 12:34:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105out.gif [5222] O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_8.gif [7171] O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_shut_up.gif [5340] O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105hell_no_cut.gif [2762] O61 - LFC:Last File Created 20/07/2011 - 12:34:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105ooo_thats_bad_cut.gif [6793] O61 - LFC:Last File Created 20/07/2011 - 12:34:31 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_11.gif [1845] O61 - LFC:Last File Created 20/07/2011 - 12:34:31 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_2_3.gif [6365] O61 - LFC:Last File Created 20/07/2011 - 12:34:31 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_red.gif [27541] O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_5_2hands.gif [8550] O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_4.gif [9376] O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_9.gif [5379] O61 - LFC:Last File Created 20/07/2011 - 12:34:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105words_cut.gif [4147] O61 - LFC:Last File Created 20/07/2011 - 12:34:33 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105dont_make_me_mad_cut.gif [12688] O61 - LFC:Last File Created 20/07/2011 - 12:34:33 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105emot07_angry.gif [5596] O61 - LFC:Last File Created 20/07/2011 - 12:34:36 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105h_hit_3.gif [31232] O61 - LFC:Last File Created 20/07/2011 - 12:34:37 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_2_1.gif [10016] O61 - LFC:Last File Created 20/07/2011 - 12:34:37 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105outside_3_cut.gif [6710] O61 - LFC:Last File Created 20/07/2011 - 12:34:37 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060104puter_6.gif [12886] O61 - LFC:Last File Created 20/07/2011 - 12:34:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_shake_us.gif [8756] O61 - LFC:Last File Created 20/07/2011 - 12:34:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_table_puter.gif [15411] O61 - LFC:Last File Created 20/07/2011 - 12:34:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060104puter_3.gif [13388] O61 - LFC:Last File Created 20/07/2011 - 12:34:39 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105a_hit.gif [21284] O61 - LFC:Last File Created 20/07/2011 - 12:34:39 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105punch_3.gif [9988] O61 - LFC:Last File Created 20/07/2011 - 12:34:40 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_slap_3.gif [21221] O61 - LFC:Last File Created 20/07/2011 - 12:34:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_3_text.gif [9049] O61 - LFC:Last File Created 20/07/2011 - 12:34:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_2_text.gif [2696] O61 - LFC:Last File Created 20/07/2011 - 12:34:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104words.gif [6074] O61 - LFC:Last File Created 20/07/2011 - 12:34:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_3_text.gif [6667] O61 - LFC:Last File Created 20/07/2011 - 12:34:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_7_text.gif [18587] O61 - LFC:Last File Created 20/07/2011 - 12:34:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_8_text1.gif [11191] O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_8_text2.gif [11668] O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104moan2.gif [3333] O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104shucks.gif [3820] O61 - LFC:Last File Created 20/07/2011 - 12:34:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110105out_text.gif [6763] O61 - LFC:Last File Created 20/07/2011 - 12:34:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_4_text.gif [7774] O61 - LFC:Last File Created 20/07/2011 - 12:34:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_shut_up_text.gif [15940] O61 - LFC:Last File Created 20/07/2011 - 12:34:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104that_sucks.gif [5235] O61 - LFC:Last File Created 20/07/2011 - 12:34:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105annoying.gif [7761] O61 - LFC:Last File Created 20/07/2011 - 12:34:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\100104furious.gif [43102] O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104f_14waiting_blue_1.gif [1647] O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104i_13sleepy_3.gif [6479] O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104love_you4_cut.gif [2763] O61 - LFC:Last File Created 20/07/2011 - 12:34:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zf_uh_2c_silly_cut.gif [1570] O61 - LFC:Last File Created 20/07/2011 - 12:34:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104ka_chewingum.gif [6606] O61 - LFC:Last File Created 20/07/2011 - 12:34:51 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_1.gif [12797] O61 - LFC:Last File Created 20/07/2011 - 12:34:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105stay_cool_2_blue_cut.gif [3784] O61 - LFC:Last File Created 20/07/2011 - 12:34:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_26.gif [11607] O61 - LFC:Last File Created 20/07/2011 - 12:34:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_29.gif [11181] O61 - LFC:Last File Created 20/07/2011 - 12:34:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_8.gif [9791] O61 - LFC:Last File Created 20/07/2011 - 12:34:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105glasses_hand.gif [23077] O61 - LFC:Last File Created 20/07/2011 - 12:34:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_20.gif [12831] O61 - LFC:Last File Created 20/07/2011 - 12:34:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_4.gif [12558] O61 - LFC:Last File Created 20/07/2011 - 12:34:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_42.gif [30946] |
|
Posté le 22/07/2011 à 21:07 |
| ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105aced_it_cut.gif [4793] O61 - LFC:Last File Created 20/07/2011 - 12:34:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_12.gif [13122] O61 - LFC:Last File Created 20/07/2011 - 12:34:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_5.gif [5340] O61 - LFC:Last File Created 20/07/2011 - 12:34:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_15.gif [19399] O61 - LFC:Last File Created 20/07/2011 - 12:34:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_2.gif [19553] O61 - LFC:Last File Created 20/07/2011 - 12:34:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_36.gif [19188] O61 - LFC:Last File Created 20/07/2011 - 12:34:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_24_text.gif [24414] O61 - LFC:Last File Created 20/07/2011 - 12:34:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_1_text.gif [17929] O61 - LFC:Last File Created 20/07/2011 - 12:34:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_27_text.gif [29097] O61 - LFC:Last File Created 20/07/2011 - 12:34:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_14_text.gif [4526] O61 - LFC:Last File Created 20/07/2011 - 12:34:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_15_text.gif [26368] O61 - LFC:Last File Created 20/07/2011 - 12:34:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_32_text.gif [26173] O61 - LFC:Last File Created 20/07/2011 - 12:35:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_22_text.gif [18123] O61 - LFC:Last File Created 20/07/2011 - 12:35:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104stay_cool_red.gif [8052] O61 - LFC:Last File Created 20/07/2011 - 12:35:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104z_cool_c.gif [2225] O61 - LFC:Last File Created 20/07/2011 - 12:35:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_42_text.gif [47774] O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105cool_14.gif [3235] O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060104hit_on_head2.gif [3583] O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\060105rap_12_text.gif [26671] O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104wee_hee2_cut.gif [3292] O61 - LFC:Last File Created 20/07/2011 - 12:35:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zg_06duh_7b_cut.gif [3797] O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105crazy05.gif [3243] O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\020105annoying_cut.gif [4621] O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\020105thinking3_cut.gif [2114] O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104shocking_cut.gif [2639] O61 - LFC:Last File Created 20/07/2011 - 12:35:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104crazy01.gif [5056] O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104l_08hit_on_head10.gif [9051] O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_11.gif [4898] O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104baa_cut.gif [6928] O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104loser_3_cut.gif [2435] O61 - LFC:Last File Created 20/07/2011 - 12:35:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104oh_well2_cut.gif [4638] O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105angry_6_2.gif [1498] O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_16.gif [4623] O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104b_shake.gif [17179] O61 - LFC:Last File Created 20/07/2011 - 12:35:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104h_angry.gif [499] O61 - LFC:Last File Created 20/07/2011 - 12:35:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_07.gif [8374] O61 - LFC:Last File Created 20/07/2011 - 12:35:06 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_08.gif [1575] O61 - LFC:Last File Created 20/07/2011 - 12:35:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_14.gif [3007] O61 - LFC:Last File Created 20/07/2011 - 12:35:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104smile_17.gif [2096] O61 - LFC:Last File Created 20/07/2011 - 12:35:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\2.gif [4015] O61 - LFC:Last File Created 20/07/2011 - 12:35:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\5.gif [19203] O61 - LFC:Last File Created 20/07/2011 - 12:35:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\9.gif [11437] O61 - LFC:Last File Created 20/07/2011 - 12:35:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105v_smilie_rainbow.gif [19252] O61 - LFC:Last File Created 20/07/2011 - 12:35:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120105cord.gif [4342] O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104t_thumbdown.gif [5637] O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105full_of_it_cut.gif [3713] O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\10.gif [54783] O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104t_thumbdown.gif [5637] O61 - LFC:Last File Created 20/07/2011 - 12:35:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\6.gif [4364] O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot20_thumbsdown.gif [8012] O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot37_finger.gif [4934] O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104get_lost_cut.gif [6192] O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104moan2_cut.gif [2140] O61 - LFC:Last File Created 20/07/2011 - 12:35:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104n_no.gif [1163] O61 - LFC:Last File Created 20/07/2011 - 12:35:24 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104t_thumbdown.png [1619] O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010104ok.gif [5703] O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105bravo_2_cut.gif [2579] O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105number_one_cut.gif [6741] O61 - LFC:Last File Created 20/07/2011 - 12:35:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot42_rainbow.gif [5310] O61 - LFC:Last File Created 20/07/2011 - 12:35:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010104a_ok.gif [12036] O61 - LFC:Last File Created 20/07/2011 - 12:35:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105peace_2_cut.gif [20260] O61 - LFC:Last File Created 20/07/2011 - 12:35:56 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105yes_3_cut.gif [4914] O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105bravo_2.gif [3664] O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105fantastic_2.gif [17633] O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105good.gif [8344] O61 - LFC:Last File Created 20/07/2011 - 12:35:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105za_thanx.gif [1487] O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105ace.gif [4348] O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105awesome.gif [18291] O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105full_of_it.gif [4730] O61 - LFC:Last File Created 20/07/2011 - 12:35:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104yesn_6.gif [6016] O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105blackeye.gif [996] O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105caramba.gif [7174] O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105fantastic.gif [5967] O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105j_sad.gif [829] O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105k_crying.gif [3758] O61 - LFC:Last File Created 20/07/2011 - 12:35:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104feeling_blue2_cut.gif [2867] O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105loser_3_new.gif [2435] O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105mommy_cut.gif [3894] O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105oops_1e_cut.gif [1529] O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105shucks_cut.gif [3207] O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105worried_cut_new.gif [2102] O61 - LFC:Last File Created 20/07/2011 - 12:36:00 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105zf_uh_2c_silly_new.gif [1570] O61 - LFC:Last File Created 20/07/2011 - 12:36:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105black_day_cut.gif [4491] O61 - LFC:Last File Created 20/07/2011 - 12:36:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105wee_hee.gif [25691] O61 - LFC:Last File Created 20/07/2011 - 12:36:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105party_on_dude.gif [20901] O61 - LFC:Last File Created 20/07/2011 - 12:36:02 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105peace_hippy.gif [28904] O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105terrific.gif [6813] O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105wonderful.gif [3891] O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105yes_4.gif [27072] O61 - LFC:Last File Created 20/07/2011 - 12:36:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105you_rock.gif [13215] O61 - LFC:Last File Created 20/07/2011 - 12:36:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105aced_it.gif [7439] O61 - LFC:Last File Created 20/07/2011 - 12:36:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105party_on.gif [17368] O61 - LFC:Last File Created 20/07/2011 - 12:36:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105whoo.gif [13977] O61 - LFC:Last File Created 20/07/2011 - 12:36:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105peace_3_down.gif [29814] O61 - LFC:Last File Created 20/07/2011 - 12:36:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110105no.gif [1586] O61 - LFC:Last File Created 20/07/2011 - 12:36:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104sorry_2c.gif [1804] O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\070104zd_help_4_movebig.gif [11195] O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104black_day.gif [9377] O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104feeling_blue_3.gif [2548] O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104mommy.gif [5153] O61 - LFC:Last File Created 20/07/2011 - 12:36:13 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104gross_2.gif [9447] O61 - LFC:Last File Created 20/07/2011 - 12:36:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105chicken.gif [10445] O61 - LFC:Last File Created 20/07/2011 - 12:36:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104baa.gif [10896] O61 - LFC:Last File Created 20/07/2011 - 12:36:14 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104get_lost.gif [10082] O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105goof_3.gif [2992] O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104embarrassed.gif [6930] O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104big_mouth.gif [12513] O61 - LFC:Last File Created 20/07/2011 - 12:36:15 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zc_argg_b.gif [1742] O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105loser.gif [6305] O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104blah_2move.gif [4259] O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104hell_no.gif [3392] O61 - LFC:Last File Created 20/07/2011 - 12:36:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104oh_well2.gif [6917] O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104full_of_it_2.gif [13047] O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104moan.gif [16215] O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104ooo_thats_bad.gif [15443] O61 - LFC:Last File Created 20/07/2011 - 12:36:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104outside_4.gif [9192] O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104shut_up.gif [7038] O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104worried.gif [4574] O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104you_are_bad.gif [4417] O61 - LFC:Last File Created 20/07/2011 - 12:36:18 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120105ooops.gif [8668] O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\050104help_up_2big_one.gif [10762] O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105nerd_4.gif [4362] O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120102zb_sorry_c.gif [1498] O61 - LFC:Last File Created 20/07/2011 - 12:36:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zf_uh_2c_silly.gif [1055] O61 - LFC:Last File Created 20/07/2011 - 12:36:20 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090105wimp.gif [17253] O61 - LFC:Last File Created 20/07/2011 - 12:36:20 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104dont_make_me_mad.gif [26516] O61 - LFC:Last File Created 20/07/2011 - 12:36:41 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105emot10_tears.gif [7532] O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105emot47_sorry_new.gif [1983] O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\090104feeling_blue_3_cut.gif [1660] O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot09_sad.gif [3983] O61 - LFC:Last File Created 20/07/2011 - 12:36:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104g_04bigeyes_3_blue72b.gif [1792] O61 - LFC:Last File Created 20/07/2011 - 12:36:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104beer_new.gif [50133] O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\010105l_bhuhhh333.gif [1678] O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104frightened.gif [1149] O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104z_what_cut.gif [3786] O61 - LFC:Last File Created 20/07/2011 - 12:36:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zd_help_4_movebig_cut.gif [10411] O61 - LFC:Last File Created 20/07/2011 - 12:36:46 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104shy_5new.gif [6142] O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104new_shy2.gif [5980] O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_flower.gif [10127] O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_new_3.gif [1436] O61 - LFC:Last File Created 20/07/2011 - 12:36:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104goof_3_cut.gif [2039] O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104emot31_embarrass.gif [7561] O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy2_3_3.gif [1296] O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_new_7.gif [5537] O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104h_12shy_3.gif [4605] O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104o_stupid.gif [1545] O61 - LFC:Last File Created 20/07/2011 - 12:36:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104zb_sorry_c_cut.gif [1720] O61 - LFC:Last File Created 20/07/2011 - 12:36:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104shy_flowers.gif [12504] O61 - LFC:Last File Created 20/07/2011 - 12:36:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104embarrassed_cut.gif [5921] O61 - LFC:Last File Created 20/07/2011 - 12:36:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104ooops_cut.gif [5207] O61 - LFC:Last File Created 20/07/2011 - 12:36:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\110104new_shy.gif [12928] O61 - LFC:Last File Created 20/07/2011 - 12:36:50 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104worried2_cut.gif [2135] O61 - LFC:Last File Created 20/07/2011 - 12:36:51 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104tongue_2_07.gif [3150] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104j_11sealed_3blue_b.gif [5791] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104crazynew2.gif [2075] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104f_eyebrows.gif [1555] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104hands_down01.gif [6961] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104j_11sealed_3blue_b.gif [5791] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter06.gif [3860] O61 - LFC:Last File Created 20/07/2011 - 12:36:52 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter09.gif [1351] O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104crazynew3.gif [2282] O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter01.gif [11703] O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104nana_2_cut.gif [5440] O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104p_03bad_1.gif [3918] O61 - LFC:Last File Created 20/07/2011 - 12:36:53 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104pointing02.gif [1894] O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104k_tongue_1.gif [1969] O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter02.gif [20204] O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104laughter10.gif [1124] O61 - LFC:Last File Created 20/07/2011 - 12:36:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104tongue_2_06.gif [8348] O61 - LFC:Last File Created 20/07/2011 - 12:36:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120104m_rolling_1.gif [6306] O61 - LFC:Last File Created 20/07/2011 - 12:36:55 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\EmoticonCenter\120105tongue_out.gif [13159] O61 - LFC:Last File Created 20/07/2011 - 12:36:58 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\EmoticonCenter\MyEmoticons\QuickBar\120104j_11sealed_3blue_b.png [1591] O61 - LFC:Last File Created 20/07/2011 - 12:38:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\ADF4D771-6A48-4558-A21D-2198A9D24A96.htm [46298] O61 - LFC:Last File Created 20/07/2011 - 13:09:34 ---A- C:\Users\All Users\Alwil Software\Avast5\log\AshWebSv.ws.ori [25318] O61 - LFC:Last File Created 20/07/2011 - 16:00:51 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000112.rcb [3952] O61 - LFC:Last File Created 20/07/2011 - 17:11:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\E4745193-89F6-4F5A-88B8-68CC6E26A404\F5E5D67F-69FB-461F-A436-C6B1E1520D97.htm [46442] O61 - LFC:Last File Created 20/07/2011 - 17:11:20 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\2D3B0739-58AF-862E-3D9B-6388E4286F9A\9730D604-791C-4600-A758-C384D8368AEE.htm [50512] O61 - LFC:Last File Created 20/07/2011 - 17:17:37 ----- C:\Users\Louis\AppData\Local\Temp\VBE\MSForms.exd [147284] O61 - LFC:Last File Created 20/07/2011 - 17:17:37 ----- C:\Users\Louis\AppData\Local\Temp\VBE\RefEdit.exd [15040] O61 - LFC:Last File Created 20/07/2011 - 17:17:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Contacts Windows Line.lnk [816] O61 - LFC:Last File Created 20/07/2011 - 17:17:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Macrolib.lnk [901] O61 - LFC:Last File Created 20/07/2011 - 17:17:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Sauvegarde Carnet adresses.lnk [670] O61 - LFC:Last File Created 20/07/2011 - 17:18:12 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Excel\Excel10.xlb [21503] O61 - LFC:Last File Created 20/07/2011 - 17:25:02 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\SANTE.lnk [561] O61 - LFC:Last File Created 20/07/2011 - 17:25:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\FICHIERS Louis Maryvonne.lnk [700] O61 - LFC:Last File Created 20/07/2011 - 17:27:41 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU TRAVAUX.lnk [711] O61 - LFC:Last File Created 20/07/2011 - 17:35:12 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\TRAVAUX MAISON.lnk [592] O61 - LFC:Last File Created 20/07/2011 - 17:36:39 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\SCENIC.lnk [676] O61 - LFC:Last File Created 20/07/2011 - 17:39:28 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\DOC PERSO.lnk [577] O61 - LFC:Last File Created 20/07/2011 - 17:39:28 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\PEUGEOT 1007.lnk [696] O61 - LFC:Last File Created 20/07/2011 - 17:51:23 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Deleted Items.imm [4408480] O61 - LFC:Last File Created 20/07/2011 - 18:29:03 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\POMMADE_MIRACLE.pps [81920] O61 - LFC:Last File Created 21/07/2011 - 07:03:50 ----- C:\Users\Louis\AppData\Local\Temp\DreamMail\20113828083804873\64319\20110721080348491 [8874] O61 - LFC:Last File Created 21/07/2011 - 07:27:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\84A4365C-9407-4B39-ABF6-50E132B2C797.htm [73582] O61 - LFC:Last File Created 21/07/2011 - 07:30:34 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\6244DB65-E315-8087-1DBE-62268C578FC2\4964508F-A138-42AF-B9C0-7E8F465B08A0.htm [49282] O61 - LFC:Last File Created 21/07/2011 - 07:32:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\A45E2E66-EC3A-49AF-9D4B-2D78F6407826.htm [54276] O61 - LFC:Last File Created 21/07/2011 - 07:32:58 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\80DA16A7-B839-44A109FA5-AE2686DDA12C\5FD652ED-9ADA-4EB9-B945-2C88394F4B03.htm [48558] O61 - LFC:Last File Created 21/07/2011 - 07:35:38 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\2769A399-51FD-4780-859A-805EAD52DD48.htm [66286] O61 - LFC:Last File Created 21/07/2011 - 07:37:08 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\8B8CA6EA-68AC-4F47-B1D8-B823B3282CAB.htm [47924] O61 - LFC:Last File Created 21/07/2011 - 08:07:27 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Archived History [53248] O61 - LFC:Last File Created 21/07/2011 - 08:07:27 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\index [524656] O61 - LFC:Last File Created 21/07/2011 - 08:07:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000002 [25463] O61 - LFC:Last File Created 21/07/2011 - 08:07:31 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000003 [30247] O61 - LFC:Last File Created 21/07/2011 - 08:07:34 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000004 [17175] O61 - LFC:Last File Created 21/07/2011 - 08:07:36 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000005 [125978] O61 - LFC:Last File Created 21/07/2011 - 08:07:38 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000006 [47650] O61 - LFC:Last File Created 21/07/2011 - 08:07:50 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000007 [17141] O61 - LFC:Last File Created 21/07/2011 - 08:07:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000008 [31759] O61 - LFC:Last File Created 21/07/2011 - 08:07:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000009 [22776] O61 - LFC:Last File Created 21/07/2011 - 08:07:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000a [24037] O61 - LFC:Last File Created 21/07/2011 - 08:07:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000b [24500] O61 - LFC:Last File Created 21/07/2011 - 08:07:56 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000c [17284] O61 - LFC:Last File Created 21/07/2011 - 08:07:57 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000d [24788] O61 - LFC:Last File Created 21/07/2011 - 08:07:58 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000e [51585] O61 - LFC:Last File Created 21/07/2011 - 08:08:01 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00000f [50989] O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000010 [112300] O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000011 [69832] O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000012 [68974] O61 - LFC:Last File Created 21/07/2011 - 08:08:03 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000013 [120519] O61 - LFC:Last File Created 21/07/2011 - 08:08:07 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Top Sites [49152] O61 - LFC:Last File Created 21/07/2011 - 08:08:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000014 [24086] O61 - LFC:Last File Created 21/07/2011 - 08:08:33 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000015 [49067] O61 - LFC:Last File Created 21/07/2011 - 08:08:33 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000016 [24374] O61 - LFC:Last File Created 21/07/2011 - 08:08:36 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000018 [23392] O61 - LFC:Last File Created 21/07/2011 - 08:08:38 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000019 [40370] O61 - LFC:Last File Created 21/07/2011 - 08:08:39 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000017 [95327] O61 - LFC:Last File Created 21/07/2011 - 09:18:22 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\tg94Ja69mjX2dwg1y42FxoBb6aks= [26822] O61 - LFC:Last File Created 21/07/2011 - 10:21:00 ----- C:\Users\Louis\AppData\Local\Temp\{C3E55754-237A-4392-B174-977AC66FFB25}\cookies.sqlite [97280] O61 - LFC:Last File Created 21/07/2011 - 13:50:25 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\PlYfNGGAhqc045gNUCv6AHWZmZY= [2828] O61 - LFC:Last File Created 21/07/2011 - 15:21:45 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3848.htm [78] O61 - LFC:Last File Created 21/07/2011 - 15:21:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E9E1FD81-12DF-4D6C-AD87-C38AFA1FD987}\Show\htmlStrWithoutSource_Prev_7.htm [61844] O61 - LFC:Last File Created 21/07/2011 - 15:21:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E9E1FD81-12DF-4D6C-AD87-C38AFA1FD987}\Show\htmlStrWithoutSource_Prev_9.htm [10890] O61 - LFC:Last File Created 21/07/2011 - 15:51:00 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\qx6WjE1Rp2pdTIyVxXStpcqIiic= [2540] O61 - LFC:Last File Created 21/07/2011 - 15:52:54 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Visited Links [131072] O61 - LFC:Last File Created 21/07/2011 - 16:00:49 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000113.rcb [3017] O61 - LFC:Last File Created 21/07/2011 - 16:30:06 ----- C:\Users\Louis\AppData\Local\Temp\eDatasecurity\FileList.txt [74] O61 - LFC:Last File Created 21/07/2011 - 16:31:16 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\History Index 2011-07 [200704] O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 [45056] O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 [532480] O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 [1056768] O61 - LFC:Last File Created 21/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 [4202496] O61 - LFC:Last File Created 21/07/2011 - 17:23:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\a vous Cognacq-Jay Rms.pps [6875648] O61 - LFC:Last File Created 21/07/2011 - 17:23:26 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\a vous Cognacq-Jay Rms.pps [6875648] O61 - LFC:Last File Created 21/07/2011 - 17:46:34 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\OlqQ6PulU6kgK+BjgsnopDi4x6s= [2586] O61 - LFC:Last File Created 21/07/2011 - 19:22:00 ---A- C:\Users\Louis\AppData\Local\Temp\Louis.bmp [31832] O61 - LFC:Last File Created 21/07/2011 - 19:53:34 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\Soyons_fiers_de_nos_Soldats.pps [1204224] O61 - LFC:Last File Created 21/07/2011 - 20:21:13 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv6373.htm [78] O61 - LFC:Last File Created 21/07/2011 - 20:21:21 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv8076.htm [78] O61 - LFC:Last File Created 21/07/2011 - 20:21:21 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{B9CBC291-EF12-4C50-A2F4-DA9E9C9F225A}\Show\textPart.html [8972] O61 - LFC:Last File Created 21/07/2011 - 20:22:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv72D0.htm [78] O61 - LFC:Last File Created 21/07/2011 - 20:22:23 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085039BE-96D3-4E98-99FC-5FB9B3BEDFF3}\Show\textPart.html [8900] O61 - LFC:Last File Created 21/07/2011 - 21:15:59 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\Fm1Ie68e18UEnuwMvJhG8bI8ojk= [2112] O61 - LFC:Last File Created 21/07/2011 - 21:27:18 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE15D.htm [78] O61 - LFC:Last File Created 21/07/2011 - 21:27:19 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE6DA.htm [78] O61 - LFC:Last File Created 21/07/2011 - 21:27:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA2.htm [78] O61 - LFC:Last File Created 21/07/2011 - 21:27:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3FD.htm [78] O61 - LFC:Last File Created 21/07/2011 - 22:00:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE642.htm [78] O61 - LFC:Last File Created 21/07/2011 - 22:00:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvEFA5.htm [78] O61 - LFC:Last File Created 21/07/2011 - 22:00:08 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvF34E.htm [78] |
|
Posté le 22/07/2011 à 21:08 |
| ---A- C:\Users\Louis\Documents\Ancestrologie\database\Backup\ANCESTROLOGIE (2).GBK [70024192] O61 - LFC:Last File Created 21/09/2009 - 11:05:52 ---A- C:\Users\Louis\AppData\Roaming\Ancestrologie\Settings\W_MAIN.Ini [16532] O61 - LFC:Last File Created 22/07/2011 - 06:37:02 ----- C:\Users\Louis\AppData\Local\Temp\DreamMail\20113828083804873\62650\20110722073702406 [8874] O61 - LFC:Last File Created 22/07/2011 - 06:37:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{1F45A9D6-FDF8-4B50-A735-3A09B6A9C559}\Show\htmlStrWithoutSource_Prev_7.htm [23392] O61 - LFC:Last File Created 22/07/2011 - 06:37:12 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{1F45A9D6-FDF8-4B50-A735-3A09B6A9C559}\Show\htmlStrWithoutSource_Prev_9.htm [10890] O61 - LFC:Last File Created 22/07/2011 - 06:37:13 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3AED.htm [78] O61 - LFC:Last File Created 22/07/2011 - 06:37:31 ----- C:\Users\Louis\AppData\Local\Temp\wmplog00.sqm [1352] O61 - LFC:Last File Created 22/07/2011 - 06:44:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvCA8F.htm [78] O61 - LFC:Last File Created 22/07/2011 - 06:44:30 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvE4E4.htm [78] O61 - LFC:Last File Created 22/07/2011 - 06:58:58 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv23B9.htm [78] O61 - LFC:Last File Created 22/07/2011 - 06:58:59 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2ABC.htm [78] O61 - LFC:Last File Created 22/07/2011 - 06:59:04 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E9E1FD81-12DF-4D6C-AD87-C38AFA1FD987}\Show\htmlStrWithoutSource_7.htm [68472] O61 - LFC:Last File Created 22/07/2011 - 06:59:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E276CA62-A0A5-45D9-B318-CF9305B64514}\Show\htmlStrWithoutSource_7.htm [6718] O61 - LFC:Last File Created 22/07/2011 - 06:59:28 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\a vous Cognacq-Jay Rms.lnk [1075] O61 - LFC:Last File Created 22/07/2011 - 07:02:17 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{CB26894B-8CFF-403B-89FE-74AA0B50C6BC}\Show\htmlStrWithoutSource_7.htm [22324] O61 - LFC:Last File Created 22/07/2011 - 07:02:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Show\DRAPEA~111.JPG [69594] O61 - LFC:Last File Created 22/07/2011 - 07:02:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Show\htmlStrWithoutSource_7.htm [17974] O61 - LFC:Last File Created 22/07/2011 - 07:02:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Show\monkey_line_hyper+btn_fr2.gif [44434] O61 - LFC:Last File Created 22/07/2011 - 07:05:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\5FBD7419-D0B8-4B80-A571-17A882472772.htm [55618] O61 - LFC:Last File Created 22/07/2011 - 07:05:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Forward\DRAPEA~111.JPG [69594] O61 - LFC:Last File Created 22/07/2011 - 07:05:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{085EDFD8-3369-4409-AF81-C9C314B27B48}\Forward\monkey_line_hyper+btn_fr2.gif [44434] O61 - LFC:Last File Created 22/07/2011 - 07:07:25 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\14A96000-F47F-4020-A4CD-BC552726126A.htm [47940] O61 - LFC:Last File Created 22/07/2011 - 07:07:35 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\IM.lnk [872] O61 - LFC:Last File Created 22/07/2011 - 07:07:35 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Soyons_fiers_de_nos_Soldats.lnk [1100] O61 - LFC:Last File Created 22/07/2011 - 07:07:57 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{BAD752DD-BB16-4900-80F8-F5BAAAA6EFCB}\Show\htmlStrWithoutSource_7.htm [44810] O61 - LFC:Last File Created 22/07/2011 - 07:07:59 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{1F45A9D6-FDF8-4B50-A735-3A09B6A9C559}\Show\htmlStrWithoutSource_7.htm [30134] O61 - LFC:Last File Created 22/07/2011 - 07:09:54 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E8083724-3992-44F2-86F4-A9FA3D6D5EED}\Show\htmlStrWithoutSource_7.htm [108282] O61 - LFC:Last File Created 22/07/2011 - 07:11:05 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{B36FF99E-2E60-4A93-A183-77F670191F38}\Show\htmlStrWithoutSource_7.htm [147136] O61 - LFC:Last File Created 22/07/2011 - 07:21:45 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Adresses connexion Orange.lnk [913] O61 - LFC:Last File Created 22/07/2011 - 07:22:31 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvB511.htm [78] O61 - LFC:Last File Created 22/07/2011 - 07:22:35 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC538.htm [78] O61 - LFC:Last File Created 22/07/2011 - 07:22:36 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC9AC.htm [78] O61 - LFC:Last File Created 22/07/2011 - 07:22:38 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvCEFA.htm [78] O61 - LFC:Last File Created 22/07/2011 - 07:26:14 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU DOSSIERS BUREAU.lnk [610] O61 - LFC:Last File Created 22/07/2011 - 07:26:14 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU DOSSIERS.lnk [732] O61 - LFC:Last File Created 22/07/2011 - 07:26:17 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\LOGICIELS et ASTUCES.lnk [610] O61 - LFC:Last File Created 22/07/2011 - 07:26:17 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU LOGICIELS et ASTUCES.lnk [768] O61 - LFC:Last File Created 22/07/2011 - 07:26:43 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\MENU Orange et Internet.lnk [907] O61 - LFC:Last File Created 22/07/2011 - 07:26:44 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Astuces Orange et Internet.lnk [755] O61 - LFC:Last File Created 22/07/2011 - 07:29:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv4D20.htm [78] O61 - LFC:Last File Created 22/07/2011 - 07:47:01 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\0F0DC2F9-DE74-44C4-96BE-0125F5D8AD99\21881872-E42C-40C9-B602-06FA45073C80.htm [48084] O61 - LFC:Last File Created 22/07/2011 - 07:47:03 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\80DA16A7-B839-44A109FA5-AE2686DDA12C\62FCEF15-995C-4FCA-811E-DEE99497C78E.htm [48558] O61 - LFC:Last File Created 22/07/2011 - 07:55:22 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC839.htm [78] O61 - LFC:Last File Created 22/07/2011 - 07:55:24 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{3AA077BD-0A58-4114-AB1D-0DAC22B6C993}\Show\textPart.html [8904] O61 - LFC:Last File Created 22/07/2011 - 08:43:36 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Bureau.lnk [295] O61 - LFC:Last File Created 22/07/2011 - 08:43:36 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Traduction langue bretonne.lnk [518] O61 - LFC:Last File Created 22/07/2011 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Modèles\Normal.dot [688640] O61 - LFC:Last File Created 22/07/2011 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Modèles.lnk [896] O61 - LFC:Last File Created 22/07/2011 - 08:43:38 ---A- C:\Users\Louis\AppData\Roaming\Microsoft\Office\Fichiers récents\Normal.lnk [1017] O61 - LFC:Last File Created 22/07/2011 - 08:56:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv66DA.htm [78] O61 - LFC:Last File Created 22/07/2011 - 08:56:10 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{99402062-81F6-40B6-8127-580D6EEC5E69}\Show\textPart.html [8976] O61 - LFC:Last File Created 22/07/2011 - 09:30:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC8D9.htm [78] O61 - LFC:Last File Created 22/07/2011 - 09:30:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvD22D.htm [78] O61 - LFC:Last File Created 22/07/2011 - 09:30:27 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E8C1F031-AC5C-4BB2-856F-DB6366E37E9B}\Show\htmlStrWithoutSource_7.htm [199392] O61 - LFC:Last File Created 22/07/2011 - 09:30:29 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvDEAC.htm [78] O61 - LFC:Last File Created 22/07/2011 - 09:30:29 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{BCE5B4FA-37C5-427D-BFB8-0066397E6742}\Show\htmlStrWithoutSource_7.htm [59292] O61 - LFC:Last File Created 22/07/2011 - 09:31:47 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{AEEB5574-BBA1-4351-8D92-ADEE57D3048B}\Show\textPart.html [8904] O61 - LFC:Last File Created 22/07/2011 - 09:54:13 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv99A2.htm [78] O61 - LFC:Last File Created 22/07/2011 - 09:54:16 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA557.htm [78] O61 - LFC:Last File Created 22/07/2011 - 09:54:17 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvAA66.htm [78] O61 - LFC:Last File Created 22/07/2011 - 09:54:18 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvAD06.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:02:51 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\bords_de_champs en FRANCE.pps [1764864] O61 - LFC:Last File Created 22/07/2011 - 10:19:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv5DD0.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:19:08 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv685B.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:19:09 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv6BC6.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:20:16 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\0Concours_Nat_GeoJPB.PPS [5921280] O61 - LFC:Last File Created 22/07/2011 - 10:25:54 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv9D14.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:25:55 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv9F75.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:25:56 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA550.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:10 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvD94B.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{C4D99AE9-28CB-402B-A9F1-7C0ED25DF9D2}\Show\ATT00013111.gif [226859] O61 - LFC:Last File Created 22/07/2011 - 10:26:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{C4D99AE9-28CB-402B-A9F1-7C0ED25DF9D2}\Show\htmlStrWithoutSource_7.htm [21682] O61 - LFC:Last File Created 22/07/2011 - 10:26:11 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{C4D99AE9-28CB-402B-A9F1-7C0ED25DF9D2}\Show\stampa_girl_line_fr2.gif [47958] O61 - LFC:Last File Created 22/07/2011 - 10:26:25 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1311.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:26 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv19D6.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1B0F.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1C86.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1E3C.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:28 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1F94.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:28 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2189.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:29 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2503.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:30 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2A22.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:31 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2CE1.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:26:32 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv309A.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:27:11 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC700.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:57:44 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC09B.htm [78] O61 - LFC:Last File Created 22/07/2011 - 10:57:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{251C9C3E-ADDF-4B1A-B9D3-8573AC42C1F2}\Show\htmlStrWithoutSource_7.htm [44532] O61 - LFC:Last File Created 22/07/2011 - 10:57:58 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvF820.htm [78] O61 - LFC:Last File Created 22/07/2011 - 11:05:55 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3EA3.htm [78] O61 - LFC:Last File Created 22/07/2011 - 12:19:45 ----- C:\Users\Louis\AppData\Local\Temp\{1D24FD29-3A2A-4741-B779-7672514A8314}\cookies.sqlite [97280] O61 - LFC:Last File Created 22/07/2011 - 12:23:25 ---A- C:\Users\Louis\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-2011-07-22 (13-23-25).txt [1054] O61 - LFC:Last File Created 22/07/2011 - 12:38:41 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2CF9.htm [78] O61 - LFC:Last File Created 22/07/2011 - 12:38:42 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{DFD33B3B-11C1-4030-846D-F997AB758CD8}\Show\textPart.html [8904] O61 - LFC:Last File Created 22/07/2011 - 12:42:03 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv4386.htm [78] O61 - LFC:Last File Created 22/07/2011 - 12:50:48 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv4646.htm [78] O61 - LFC:Last File Created 22/07/2011 - 12:50:48 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{998F8363-3A3A-431F-9A49-CA69B62F690F}\Show\textPart.html [8904] O61 - LFC:Last File Created 22/07/2011 - 12:51:32 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{B7811252-2471-4C92-B135-420ABDAAE341}\Show\textPart.html [8976] O61 - LFC:Last File Created 22/07/2011 - 13:01:22 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{A81A5A5A-BD3E-468E-99D6-BD076F2F7029}\Show\textPart.html [8904] O61 - LFC:Last File Created 22/07/2011 - 13:01:38 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv323A.htm [78] O61 - LFC:Last File Created 22/07/2011 - 13:07:41 ----- C:\Users\Louis\AppData\Local\Temp\MSI7064d.LOG [377560] O61 - LFC:Last File Created 22/07/2011 - 13:11:02 ---A- C:\Users\All Users\Alwil Software\Avast5\log\AshWebSv.ws [0] O61 - LFC:Last File Created 22/07/2011 - 13:11:08 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_plus_incredibackup[1].swf [11811] O61 - LFC:Last File Created 22/07/2011 - 13:11:09 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_potection_center_spam[1].swf [12912] O61 - LFC:Last File Created 22/07/2011 - 13:11:28 ----- C:\Users\Louis\AppData\Local\Temp\wmplog01.sqm [1272] O61 - LFC:Last File Created 22/07/2011 - 13:11:37 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_book_winter_banner[1].swf [34733] O61 - LFC:Last File Created 22/07/2011 - 13:11:37 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_im_facebook_present_fr[1].swf [9390] O61 - LFC:Last File Created 22/07/2011 - 13:12:11 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_potection_center_inbox[1].swf [11896] O61 - LFC:Last File Created 22/07/2011 - 13:12:12 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\IMSys\{D48362CB-0E8B-4A1D-A360-C34C11220108}\234x60_plus_get_more[1].swf [16131] O61 - LFC:Last File Created 22/07/2011 - 13:12:16 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvD39.htm [78] O61 - LFC:Last File Created 22/07/2011 - 13:12:16 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{A0C7B3E0-1FDB-4B4B-8CBC-3B60A4C8D86D}\Show\htmlStrWithoutSource_Prev_9.htm [10890] O61 - LFC:Last File Created 22/07/2011 - 13:12:18 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv11DB.htm [78] O61 - LFC:Last File Created 22/07/2011 - 13:13:03 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC591.htm [78] O61 - LFC:Last File Created 22/07/2011 - 13:13:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvCB7B.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:17:44 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvEB5D.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:41:28 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001b [25463] O61 - LFC:Last File Created 22/07/2011 - 15:41:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001c [40232] O61 - LFC:Last File Created 22/07/2011 - 15:41:38 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001d [28709] O61 - LFC:Last File Created 22/07/2011 - 15:42:18 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00001f [40047] O61 - LFC:Last File Created 22/07/2011 - 15:42:50 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000020 [40570] O61 - LFC:Last File Created 22/07/2011 - 15:43:08 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000021 [214101] O61 - LFC:Last File Created 22/07/2011 - 15:43:25 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000022 [36351] O61 - LFC:Last File Created 22/07/2011 - 15:44:20 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000023 [27100] O61 - LFC:Last File Created 22/07/2011 - 15:44:55 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000024 [18014] O61 - LFC:Last File Created 22/07/2011 - 15:44:57 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000025 [38596] O61 - LFC:Last File Created 22/07/2011 - 15:44:59 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000026 [42553] O61 - LFC:Last File Created 22/07/2011 - 15:45:00 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000027 [47684] O61 - LFC:Last File Created 22/07/2011 - 15:45:00 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000028 [45384] O61 - LFC:Last File Created 22/07/2011 - 15:45:01 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000029 [40698] O61 - LFC:Last File Created 22/07/2011 - 15:45:01 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002a [48747] O61 - LFC:Last File Created 22/07/2011 - 15:45:19 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_icmlaeflemplmjndnaapfdbbnpncnbda_0.localstorage [3072] O61 - LFC:Last File Created 22/07/2011 - 15:46:20 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002b [62350] O61 - LFC:Last File Created 22/07/2011 - 15:46:21 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002c [17700] O61 - LFC:Last File Created 22/07/2011 - 15:46:22 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002d [17472] O61 - LFC:Last File Created 22/07/2011 - 15:46:24 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002e [31828] O61 - LFC:Last File Created 22/07/2011 - 15:46:25 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002f [51613] O61 - LFC:Last File Created 22/07/2011 - 15:46:29 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000030 [18738] O61 - LFC:Last File Created 22/07/2011 - 15:46:29 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000031 [18174] O61 - LFC:Last File Created 22/07/2011 - 15:46:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000032 [27750] O61 - LFC:Last File Created 22/07/2011 - 15:46:30 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000033 [40714] O61 - LFC:Last File Created 22/07/2011 - 15:46:32 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000034 [76348] O61 - LFC:Last File Created 22/07/2011 - 15:46:33 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000035 [17064] O61 - LFC:Last File Created 22/07/2011 - 15:46:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000036 [168976] O61 - LFC:Last File Created 22/07/2011 - 15:46:50 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000037 [61941] O61 - LFC:Last File Created 22/07/2011 - 15:52:04 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000038 [24384] O61 - LFC:Last File Created 22/07/2011 - 15:52:05 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000039 [38050] O61 - LFC:Last File Created 22/07/2011 - 15:52:07 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003a [30856] O61 - LFC:Last File Created 22/07/2011 - 15:52:08 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003b [41322] O61 - LFC:Last File Created 22/07/2011 - 15:52:09 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003c [33726] O61 - LFC:Last File Created 22/07/2011 - 15:52:10 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003d [39317] O61 - LFC:Last File Created 22/07/2011 - 15:52:11 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003e [56977] O61 - LFC:Last File Created 22/07/2011 - 15:52:12 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00003f [39078] O61 - LFC:Last File Created 22/07/2011 - 15:52:12 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000040 [34614] O61 - LFC:Last File Created 22/07/2011 - 15:52:13 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000041 [32646] O61 - LFC:Last File Created 22/07/2011 - 15:52:14 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000042 [20869] O61 - LFC:Last File Created 22/07/2011 - 15:52:22 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000043 [33377] O61 - LFC:Last File Created 22/07/2011 - 15:52:23 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000044 [20008] O61 - LFC:Last File Created 22/07/2011 - 15:52:23 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000045 [16907] O61 - LFC:Last File Created 22/07/2011 - 15:52:24 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000046 [30846] O61 - LFC:Last File Created 22/07/2011 - 15:52:24 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000047 [17134] O61 - LFC:Last File Created 22/07/2011 - 15:52:25 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000048 [20140] O61 - LFC:Last File Created 22/07/2011 - 15:52:54 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Last Session [572839] O61 - LFC:Last File Created 22/07/2011 - 15:52:54 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Last Tabs [70590] O61 - LFC:Last File Created 22/07/2011 - 15:53:37 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC3A4.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:53:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvDE36.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:53:55 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA75.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:53:56 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv1197.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:54:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv311A.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:54:05 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3436.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:54:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv3BD5.htm [78] O61 - LFC:Last File Created 22/07/2011 - 15:57:30 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\80DA16A7-B839-44A109FA5-AE2686DDA12C\E9C5C756-E9C9-4282-AC74-93D4A19B2569.htm [48702] O61 - LFC:Last File Created 22/07/2011 - 15:57:33 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\10FF2FAC-D4FC-44EA-8012-6CD0AA5AB496.htm [47924] O61 - LFC:Last File Created 22/07/2011 - 16:00:49 ---A- C:\Users\Louis\AppData\Roaming\TuneUp Software\TuneUp Utilities\Backups\00000114.rcb [6598] O61 - LFC:Last File Created 22/07/2011 - 16:28:15 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv7C31.htm [78] O61 - LFC:Last File Created 22/07/2011 - 16:28:19 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{82D54F09-08CC-4B73-9F38-49087477D798}\Show\htmlStrWithoutSource_7.htm [11992] O61 - LFC:Last File Created 22/07/2011 - 16:28:27 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvA9E6.htm [78] O61 - LFC:Last File Created 22/07/2011 - 16:31:06 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000049 [44687] O61 - LFC:Last File Created 22/07/2011 - 16:31:10 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00004a [50641] O61 - LFC:Last File Created 22/07/2011 - 16:33:52 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Safe Browsing Download [173316] O61 - LFC:Last File Created 22/07/2011 - 16:33:53 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Safe Browsing Bloom [6340740] O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Current Session [2256] O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Current Tabs [1858] O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Default\Preferences [22867] O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\Local State [7250] O61 - LFC:Last File Created 22/07/2011 - 16:34:47 ---A- C:\Users\Louis\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [4] O61 - LFC:Last File Created 22/07/2011 - 17:04:24 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv9281.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:04:26 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{65DB9AFE-42A3-45D4-A051-8549840711E2}\Show\textPart.html [8972] O61 - LFC:Last File Created 22/07/2011 - 17:15:09 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv6BFF.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:17:42 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvC2A7.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:17:43 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{27093D46-194B-4EAA-89CF-D1C213FC485A}\Show\textPart.html [8900] O61 - LFC:Last File Created 22/07/2011 - 17:18:07 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv2206.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:19:54 ----- C:\Users\Louis\AppData\Local\Temp\{38CCC4B9-FE14-416C-9DBB-D1403E426309}\cookies.sqlite [97280] O61 - LFC:Last File Created 22/07/2011 - 17:40:01 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\j2zfky9xGrY2FiHlip9AjIr9Z5+I= [26577] O61 - LFC:Last File Created 22/07/2011 - 17:41:32 ----- C:\Users\Louis\AppData\Local\Temp\MessengerCache\E1+dsLLfYLPUaVqo1XfcKiDM2FhE= [4116] O61 - LFC:Last File Created 22/07/2011 - 17:50:17 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv95B1.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:50:28 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{E115EA55-EA89-41FB-8412-63CD21A0ACD6}\Show\textPart.html [8900] O61 - LFC:Last File Created 22/07/2011 - 17:51:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv97E3.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:51:23 ----- C:\Users\Louis\AppData\Local\Temp\IM\imv998A.htm [78] O61 - LFC:Last File Created 22/07/2011 - 17:58:25 ----- C:\Users\Louis\AppData\Local\Temp\Shockwave_Installer_FF.exe [185192] O61 - LFC:Last File Created 22/07/2011 - 18:03:45 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\ADBDA978-2B7E-47B7-B7FB-4C7CC11DBBCD\F33D814C-C3B6-4C5B-A993-3AB6EF20F996.htm [48068] O61 - LFC:Last File Created 22/07/2011 - 18:03:49 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Letter\108AAAA9-F41D-401B-BCC2-7F22B2F57BC7\89E089AF-2E3E-4AAB-B002-37F4AE4D6AFB.htm [46414] O61 - LFC:Last File Created 22/07/2011 - 18:13:45 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\5Idiots_0002.wmv [4615571] O61 - LFC:Last File Created 22/07/2011 - 18:13:46 ----- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Inbox.imm [3005] O61 - LFC:Last File Created 22/07/2011 - 18:14:01 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_k_2374.ix [65536] O61 - LFC:Last File Created 22/07/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_i_2374.ix [10235] O61 - LFC:Last File Created 22/07/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_klh_2374.ix [618] O61 - LFC:Last File Created 22/07/2011 - 18:14:02 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexH\index_v.ix [296] O61 - LFC:Last File Created 22/07/2011 - 18:15:04 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\5Idiots_0002.wmv_thumb.bmp [24174] O61 - LFC:Last File Created 22/07/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_i_464.ix [2550] O61 - LFC:Last File Created 22/07/2011 - 18:15:18 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_k_464.ix [65536] O61 - LFC:Last File Created 22/07/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_klh_464.ix [1634] O61 - LFC:Last File Created 22/07/2011 - 18:15:19 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\IndexB\index_v.ix [293] O61 - LFC:Last File Created 22/07/2011 - 18:17:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvB297.htm [78] O61 - LFC:Last File Created 22/07/2011 - 18:17:43 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvB4F8.htm [78] O61 - LFC:Last File Created 22/07/2011 - 18:55:27 ----- C:\Users\Louis\AppData\Local\Temp\DreamMail\20113828083804873\58937\20110722195527831 [8874] O61 - LFC:Last File Created 22/07/2011 - 18:55:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{AC4EDA39-EAB4-47F7-AA3E-30E15D92A1C0}\Show\htmlStrWithoutSource_Prev_7.htm [966] O61 - LFC:Last File Created 22/07/2011 - 18:55:44 ---A- C:\Users\Louis\AppData\Local\IM\Runtime\Message\{AC4EDA39-EAB4-47F7-AA3E-30E15D92A1C0}\Show\htmlStrWithoutSource_Prev_9.htm [10890] O61 - LFC:Last File Created 22/07/2011 - 18:55:47 ----- C:\Users\Louis\AppData\Local\Temp\IM\imvDF4.htm [78] O61 - LFC:Last File Created 22/07/2011 - 19:20:05 ---A- C:\Users\Louis\AppData\Local\Eggiz\Meteo_Fusion.exe_Url_5cmoxx1fd5gueyccpshzf1q3h23ui3c2\1.5.9.11\user.config [5115] O61 - LFC:Last File Created 22/07/2011 - 19:23:19 ---A- C:\Users\Louis\AppData\Local\Temp\IM\imv3D8C.htm [78] O61 - LFC:Last File Created 22/07/2011 - 19:38:40 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\1D0E9CF2-E9B7-43A9-974C-738B82088545_data.bak [990] O61 - LFC:Last File Created 22/07/2011 - 19:43:45 ---A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\1D0E9CF2-E9B7-43A9-974C-738B82088545_data.msg [990] O61 - LFC:Last File Created 22/07/2011 - 19:53:34 ----- C:\Users\Louis\AppData\Local\Temp\IM\Soyons_fiers_de_nos_Soldats.pps [1208320] O61 - LFC:Last File Created 22/07/2011 - 19:53:34 R--A- C:\Users\Louis\AppData\Local\IM\Identities\{5DE217A7-D87D-4AE2-91B8-F47E528DEE90}\Message Store\Attachments\{BC0F3723-723E-406E-9C53-1E5D610F3CB2}\Soyons_fiers_de_nos_Soldats.pps [1204224] O61 - LFC:Last File Created 24/02/2011 - 19:21:34 ---A- C:\Users\All Users\Alwil Software\Avast5\report\ScriptShield.txt [14468] O61 - LFC:Last File Created 24/02/2011 - 19:26:18 ---A- C:\Users\All Users\Alwil Software\Avast5\snx_lconfig.xml [446]
---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: Ad-Remover par C_XX - (.C_XX.) [HKLM] -- Ad-Remover O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 04/07/2011 - C:\Windows\system32\drivers\aswMonFlt.sys - aswMonFlt(aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 07/12/2006 - C:\Acer\Empowering Technology\eRecovery\int15.sys - int15 (int15) .(...) - LEGACY_INT15 O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\DRIVERS\psdfilter.sys - PSDFilter(PSDFilter) .(.HiTRUST - PSD Filter Driver.) - LEGACY_PSDFILTER O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\PSDNServ.sys - PSDNSERVER(PSDNServ) .(.HiTRUST - PSD Named Pipe Driver.) - LEGACY_PSDNSERV O64 - Services: CurCS - 06/02/2007 - C:\Windows\System32\drivers\psdvdisk.sys - psdvdisk(psdvdisk) .(.HiTRUST - PSD Virtual Disk Driver.) - LEGACY_PSDVDISK O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV.sys (.not file.) - SASDIFSV (SASDIFSV) .(...) - LEGACY_SASDIFSV O64 - Services: CurCS - ??/??/???? - C:\Users\Louis\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL.sys (.not file.) - SASKUTIL (SASKUTIL) .(...) |
|
Posté le 22/07/2011 à 21:09 |
| O64 - Services: CurCS - 19/09/2006 - C:\Windows\system32\drivers\WSVD.sys - WSVD(WSVD) .(.Wasay - Wasay virtual disk driver.) - LEGACY_WSVD
---\\ Liste des fichiers non signés (O65) O65 - LUF:09/12/2005 (. - .) (1.0.2169.16560) - c:\windows\system32\ClearEvent.exe O65 - LUF:15/12/2005 (.Pas de propriétaire - PortDrv ??????? ??? ??????.) (1, 0, 2, 1) - c:\windows\system32\EPSPTDV.DLL O65 - LUF:22/11/2006 (. - Assembly imported from type library 'Shell32'..) (1.0.0.0) - c:\windows\system32\Interop.Shell32.dll O65 - LUF:02/11/2007 (. - ResourceDLL.) (1, 1, 3, 5) - c:\windows\system32\rsnpstd3.dll
---\\ Observateur d'évènement d'application (O66) O66 - EventLog: ID=11905 (MsiInstaller) - (...) -- C:\Program Files\IncrediMail\Bin O66 - EventLog: ID=8193 (System Restore) - (...) -- C:\Program Files\Common Files\Windows Live\.cache\93bfc4221cb70f219
---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.com> <>[HKU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.exe> <>[HKU\..\open\Command] (.Not Key.) O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
---\\ Start Menu Internet (O68) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] ${searchCLSID} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com O69 - SBI: SearchScopes [HKCU] %productIESearchGUID% - (MyStart Search) - http://mystart.incredimail.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {0B8B1BFE-7FE8-4B20-9B7A-0EE97A3FC97A} - (Google) - http://www.google.com O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://rws.search.ke.voila.fr O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - (MyStart Search) - http://mystart.incredimail.com
---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.3A049F13FD7BB9AA1E70C68F397222DA] [SPRF][22/07/2011] (.Adobe Systems Inc. - Adobe Shockwave Player.) -- C:\Users\Louis\AppData\Local\Temp\Shockwave_Installer_FF.exe [185192] [MD5.518DDDB4C5AB132386FE75B4564382C9] [SPRF][14/08/2010] (.SpeedyFox - SpeedyFox program.) -- C:\Users\Louis\Desktop\Nettoyeur Firefox.exe [453000] [MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [24576] [MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [196608] [MD5.0C78701C6F42345DFF2B2B6C3C3D01EF] [SPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [172032]
---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "WinCollab-DFSR-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe O87 - FAEL: "WinCollab-DFSR-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Réplication DFS.) -- C:\Windows\system32\dfsr.exe O87 - FAEL: "WinCollab-In-TCP" | In - Domain - P6 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "WinCollab-Out-TCP" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "WinCollab-In-UDP" | In - Domain - P17 - TRUE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "WinCollab-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Windows Meeting Space.) -- C:\Program Files\Windows Collaboration\WinCollab.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "RemoteSvcAdmin-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Applications Services et Contrôleur.) -- C:\Windows\system32\services.exe O87 - FAEL: "NetPres-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-Out-TCP-NoScope" | Out - Domain - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-WSD-In-UDP" | In - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-WSD-Out-UDP" | Out - Domain - P17 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-In-TCP" | In - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "NetPres-Out-TCP" | Out - Public - P6 - FALSE | .(.Microsoft Corporation - Connect to a Network Projector.) -- C:\Windows\system32\netproj.exe O87 - FAEL: "{F726BF72-BF4E-4B4F-B9FE-4CDF4E903131}" | In - None - P17 - TRUE | .(.Acer Incorporated - Acer Arcade Live.) -- C:\Program Files\Acer Arcade Live\Acer Arcade Live Main Page\Acer Arcade Live.exe O87 - FAEL: "{51674872-C1F2-4F6E-9B9C-A757F38BE2C6}" | In - None - P17 - TRUE | .(.Cyberlink - Pas de description.) -- C:\Program Files\Acer Arcade Live\SlideShow DVD\Component\CLSLDVD.exe O87 - FAEL: "{00717E99-5B5E-4D82-B899-5B920CE145A9}" | In - None - P17 - TRUE | .(.Cyberlink - ARA Work Process.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\ARAWP.exe O87 - FAEL: "{F90A806B-AED4-4244-AC78-EA10F3E4F0E6}" | In - None - P17 - TRUE | .(.Pas de propriétaire - DVAX2Process MFC Application.) -- C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\DVAX2Process.exe O87 - FAEL: "{2EACCE03-44AD-4451-AFA5-833B35CC35B9}" | In - None - P17 - TRUE | .(.Acer Incorporated - DVDivine.) -- C:\Program Files\Acer Arcade Live\Acer DVDivine\DVDivine.exe O87 - FAEL: "{39E7738E-3D11-43B9-835D-D16D2F3B2B0D}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia\HomeMedia.exe O87 - FAEL: "{59B339AA-E6E9-43D5-A0ED-DAC81D658E12}" | In - None - P17 - TRUE | .(.Acer Incorporated - HomeMedia Connect.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\HomeMedia Connect.exe O87 - FAEL: "{B70C9DFF-8065-445C-8092-F386899335A3}" | In - None - P17 - TRUE | .(.CyberLink - CLMSServer.) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe O87 - FAEL: "{9F52794C-B028-4208-88E2-1D78370B9A3B}" | In - None - P17 - TRUE | .(.Acer Incorporated - VideoMagician.) -- C:\Program Files\Acer Arcade Live\Acer VideoMagician\VideoMagician.exe O87 - FAEL: "{E9C996F9-7D3C-47CB-9418-E12D4C39FF30}" |In - Private - P6 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.) O87 - FAEL: "{62AD61A2-E8F0-4778-A262-C0AF4BD83092}" |In - Private - P17 - TRUE | .(...) -- C:\Users\Louis\AppData\Local\Temp\7zS87E6.tmp\SymNRT.exe (.not file.) O87 - FAEL: "CoreNet-GP-LSASS-Out-TCP" | Out - Domain - P6 - TRUE | .(.Microsoft Corporation - Processus de l’autorité de sécurité locale.) -- C:\Windows\system32\lsass.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP-NoScope" | In - Domain - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "FPS-SpoolSvc-In-TCP" | In - Private - P6 - FALSE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{EB2903EC-4E0E-4950-811B-0A70F728770B}" | In - Private - P6 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe O87 - FAEL: "{27467FCD-DA11-4617-B18B-785DF4334AF3}" | In - Private - P17 - TRUE | .(.Microsoft Corporation - Windows Movie Maker.) -- C:\Program Files\Movie Maker\MOVIEMK.exe O87 - FAEL: "{039F4044-7CE8-4A07-84EA-F0BAD32857AF}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Call.) -- C:\Program Files\Windows Live\Messenger\wlcsdk.exe O87 - FAEL: "{B7FFF15D-2A9D-4BD3-B82B-03A5572FC3D1}" | In - None - P17 - TRUE | .(.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O87 - FAEL: "{E7556FB8-8788-4117-8024-F4DAE12BA048}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{A2AC4271-B58F-4BDA-AF90-E45FC1AE448A}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{88B110E9-17F9-496B-B129-0DF8C2AD375B}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{827FD52E-5092-4044-AFBC-C757E9ADE5DD}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{ABB72582-43B9-47B3-BA51-25CBF8ECF627}" | In - Private - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{900CDA3B-FE39-4E89-90C1-A12AF5D36EB9}" | In - Private - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{89F2B2D8-47C7-4D9A-89BE-63E1ABC37403}" |In - Private - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{56F3A1CC-6F33-4CDA-8660-2552EA950563}" |In - Private - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{DF216603-12A4-460A-A780-AFBD20CA73A2}" |In - Public - P6 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{240349EE-9C9F-44EA-932F-00568E5181FD}" |In - Public - P17 - TRUE | .(...) -- E:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{F23C2826-966F-4739-AECD-4C4D95887A59}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{4C2BCE8D-6C96-432C-8376-AE2E26B18187}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{78E84DE1-69AB-4CB4-AD1F-F93A08ED8AD7}" | In - Public - P6 - TRUE | .(.Microsoft Corporation - Application sous-système spouleur.) -- C:\Windows\system32\spoolsv.exe O87 - FAEL: "{667A5F42-2BA8-4982-9C72-9A0E6F6F8ECA}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{5039316D-20DF-4A89-81B4-D7AAB86AC02F}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe (.not file.) O87 - FAEL: "{308E4FE9-0714-4C3F-82D5-3AA29C0E38C0}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{F9E756EE-34C2-4E15-AEEC-3ECE52CD90E3}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Content Importer.) -- C:\Program Files\IncrediMail\Bin\ImpCnt.exe O87 - FAEL: "{BC480930-5787-45E8-901A-CDD0E6E98625}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{85F00E8F-07FE-4006-AA32-D59CD53712DA}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Application.) -- C:\Program Files\IncrediMail\Bin\IncMail.exe O87 - FAEL: "{00BA6119-9731-4A13-816C-401A728B7F06}" | In - Public - P6 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe O87 - FAEL: "{F583168D-3E58-42D5-A029-AAC89E1222E2}" | In - Public - P17 - FALSE | .(.IncrediMail, Ltd. - IncrediMail Tray Application.) -- C:\Program Files\IncrediMail\Bin\ImApp.exe
---\\ Scan Additionnel (O88) Database Version : 8548 - (21/07/2011) Clés trouvées (Keys found) : 0 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 1 Fichiers trouvés (Files found) : 0
C:\Users\Louis\AppData\LocalLow\IncrediMail_MediaBar_2 =>Toolbar.Conduit
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 06/05/2007 266343 | (Acer HomeMedia Connect Service) . (.CyberLink.) - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe SR - | Auto 06/05/2007 28672 | (AcerMemUsageCheckService) . (...) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe SR - | Auto 07/05/2007 569344 | (Ati External Event Utility) . (.ATI Technologies Inc..) - C:\Windows\system32\Ati2evxx.exe SR - | Auto 04/07/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe SR - | Auto 06/05/2007 457512 | eDSService.exe (eDataSecurity Service) . (.HiTRSUT.) - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe SR - | Auto 11/09/2009 53248 | (eRecoveryService) . (.Acer Inc..) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe SR - | Auto 12/09/2009 81920 | (FirebirdGuardianDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe SR - | Demand 12/09/2009 2736128 | (FirebirdServerDefaultInstance) . (.Firebird Project.) - C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe SR - | Auto 06/05/2007 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe SS - | Auto 30/12/1899 0 | (Orange update Core Service) . (...) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe SS - | Auto 30/12/1899 0 | (Planificateur LiveUpdate automatique) . (...) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe SR - | Auto 06/05/2007 143360 | (RichVideo) . (...) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe SR - | Auto 12/09/2009 92008 | (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe SR - | Auto 13/09/2009 21504 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software GmbH.) - C:\Windows\System32\svchost.exe SR - | Auto 13/09/2009 21504 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe
---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by Louis at 22/07/2011 20:47:55
device: opened successfully user: MBR read successfully
Disk trace: called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys 1 ntkrnlpa!IofCallDriver[0x82A82912] -> \Device\Harddisk0\DR0[0x8571BAC8] 3 CLASSPNP[0x881BD8B3] -> ntkrnlpa!IofCallDriver[0x82A82912] -> [0x8572C858] 5 acpi[0x87A0F6BC] -> ntkrnlpa!IofCallDriver[0x82A82912] -> \Device\Ide\IdeDeviceP0T0L0-0[0x85702B98] kernel: MBR read successfully user & kernel MBR OK
End of the scan (2095 lines in 04mn 06s)(0) |
|
Posté le 22/07/2011 à 21:26 |
| je vais être dure avec toi .
Peux tu mettre le rapport avec l'option "Insérer un rapport", si toutefois il est trop lourd, passe par cjoint.
Va dans msconfig, vu que tu as décoché plein de choses . et recoche java update. C'est utile pour les mises à jour.
Aussi pourquoi il y a ceci dans tes programmes.
Clean Virus MSN_is1
labougie  |
|
Posté le 22/07/2011 à 22:01 |
| Clean Virus MSN_is1 Je l'avais installer pour MSN |
|
Posté le 22/07/2011 à 22:50 |
| Je seche pour envoyer Insérer un rapport comment fait-on ????
|
|
|
|
|
|