voilà le rapport nardino....
OTL logfile created on: 10/04/2012 07:50:35 - Run 1
OTL by OldTimer - Version 3.2.39.2 Folder = C:\Users\brijou\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
1,75 Gb Total Physical Memory | 0,63 Gb Available Physical Memory | 35,79% Memory free
3,74 Gb Paging File | 2,31 Gb Available in Paging File | 61,87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111,70 Gb Total Space | 44,18 Gb Free Space | 39,56% Space Free | Partition Type: NTFS
Drive D: | 111,43 Gb Total Space | 33,30 Gb Free Space | 29,89% Space Free | Partition Type: NTFS
Drive K: | 465,76 Gb Total Space | 391,96 Gb Free Space | 84,16% Space Free | Partition Type: NTFS
Computer Name: PC-DE-BRIJOU | User Name: brijou | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2012/04/10 07:44:59 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Users\brijou\Downloads\OTL.exe
PRC - [2012/04/07 21:57:21 | 000,924,600 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012/03/07 01:15:17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2012/03/07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2012/01/03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2010/03/14 22:34:10 | 001,086,760 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe
PRC - [2009/07/20 12:30:50 | 000,813,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe
PRC - [2009/07/20 12:28:26 | 000,059,920 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\SetPoint\LBTWiz.exe
PRC - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
PRC - [2009/07/10 13:42:32 | 000,055,824 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
PRC - [2009/04/11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2007/06/28 19:20:28 | 001,776,168 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
PRC - [2007/06/28 19:20:28 | 000,739,880 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2007/02/15 11:07:16 | 004,390,912 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2007/02/09 06:35:54 | 000,397,312 | ---- | M] (Acer Inc.) -- C:\Acer\Empowering Technology\eRecovery\eRAgent.exe
PRC - [2007/02/07 00:04:26 | 000,457,512 | ---- | M] (HiTRSUT) -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
PRC - [2007/02/07 00:04:16 | 000,464,168 | ---- | M] (HiTRUST) -- C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
PRC - [2007/01/31 18:18:42 | 000,053,248 | ---- | M] (Acer Inc.) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
PRC - [2007/01/24 10:27:42 | 000,319,488 | ---- | M] (Acer Inc.) -- C:\Acer\Empowering Technology\Acer.Empowering.Framework.Supervisor.exe
PRC - [2006/12/29 17:51:56 | 000,028,672 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
PRC - [2005/10/27 12:00:22 | 000,299,008 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Creative\Shared Files\CamTray.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - [2012/04/07 21:57:20 | 001,952,696 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012/04/06 08:11:31 | 008,797,344 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_11_2_202_228.dll
MOD - [2012/02/16 08:15:44 | 000,998,400 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\8b5f54e3b382fc1720c76557ef8c8bc3\System.Management.ni.dll
MOD - [2012/02/16 08:13:50 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\d0cf808e33a5123b33010b933d3b1597\System.ServiceProcess.ni.dll
MOD - [2012/02/16 08:13:45 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\5c3bfd69e0c268baff0d169e11a6a784\System.Runtime.Remoting.ni.dll
MOD - [2012/02/16 08:13:10 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\7fd6c62196829d1e2dce5a253145d51a\System.Configuration.ni.dll
MOD - [2012/02/16 08:11:43 | 005,450,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d9f0f1dc8cbdb81f1ba122d77a6ab710\System.Xml.ni.dll
MOD - [2012/02/16 08:11:25 | 012,430,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\65450889f3742aada2a6c0cf8e6173e3\System.Windows.Forms.ni.dll
MOD - [2012/02/16 08:11:15 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\137696d0416b65dbc1561152971488b4\System.Drawing.ni.dll
MOD - [2012/02/16 08:09:47 | 007,953,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\c50133cb67d7c013fa31e1ffb942060b\System.ni.dll
MOD - [2011/10/14 07:32:36 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b6632a8b2f276a8e31f5b0f6b2006cd1\mscorlib.ni.dll
MOD - [2009/07/20 13:27:14 | 000,017,936 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\khalwrapper.dll
MOD - [2007/06/28 19:01:18 | 000,393,216 | ---- | M] () -- C:\Windows\System32\btwhidcs.dll
MOD - [2007/02/06 23:56:30 | 000,028,672 | ---- | M] () -- C:\Windows\System32\BatchCrypto.dll
MOD - [2007/02/06 23:52:08 | 000,063,488 | ---- | M] () -- C:\Windows\System32\ShowErrMsg.dll
MOD - [2007/01/31 18:18:16 | 000,016,384 | ---- | M] () -- C:\Acer\Empowering Technology\eRecovery\ServiceInterface.dll
MOD - [2007/01/24 10:27:40 | 000,057,344 | ---- | M] () -- C:\Acer\Empowering Technology\Acer.Empowering.Framework.DialogManager.dll
MOD - [2007/01/24 10:27:24 | 000,024,576 | ---- | M] () -- C:\Acer\Empowering Technology\Acer.Empowering.Framework.PasswordSetting.dll
MOD - [2006/12/29 17:52:02 | 000,003,584 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\fr\ePerformance.Plugin.resources.dll
MOD - [2006/12/29 17:51:58 | 000,045,056 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\ePerformance.Plugin.dll
MOD - [2006/12/29 17:51:22 | 000,024,576 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\ePerformance.Presenter.dll
MOD - [2006/12/29 17:51:20 | 000,040,960 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\ePerformance.Library.dll
MOD - [2006/12/29 17:51:20 | 000,028,672 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\ePerformance.Model.dll
MOD - [2006/12/29 17:51:18 | 000,020,480 | ---- | M] () -- C:\Acer\Empowering Technology\ePerformance\ePerformance.Model.Interface.dll
MOD - [2006/12/29 17:51:18 | 000,016,384 | ---- | M] () -- C:\Acer\Empowering Technology\MemCheck.Interface.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - [2012/04/07 21:57:20 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/04/06 08:30:19 | 000,253,600 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/03/07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV - [2012/01/03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2009/09/23 16:36:06 | 000,051,168 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper.dll -- (getPlusHelper)
SRV - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV - [2008/01/19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2007/02/07 00:04:26 | 000,457,512 | ---- | M] (HiTRSUT) [Auto | Running] -- C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe -- (eDataSecurity Service)
SRV - [2007/01/31 18:18:42 | 000,053,248 | ---- | M] (Acer Inc.) [Auto | Running] -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe -- (eRecoveryService)
SRV - [2006/12/29 17:51:56 | 000,028,672 | ---- | M] () [Auto | Running] -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe -- (AcerMemUsageCheckService)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\blbdrive.sys -- (blbdrive)
DRV - [2012/03/07 01:03:51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012/03/07 01:03:38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012/03/07 01:02:00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2012/03/07 01:01:53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012/03/07 01:01:48 | 000,057,688 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2012/03/07 01:01:30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2009/06/17 18:56:24 | 000,079,248 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouKE.Sys -- (LMouKE)
DRV - [2009/06/17 18:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009/06/17 18:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2009/06/17 18:55:26 | 000,063,248 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L8042mou.Sys -- (L8042mou)
DRV - [2009/06/17 18:55:18 | 000,020,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV - [2008/09/04 06:28:22 | 000,019,968 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2008/09/04 06:27:54 | 000,024,832 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2008/09/04 06:27:28 | 000,013,056 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2008/06/20 01:04:00 | 007,468,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2007/06/29 14:20:30 | 000,051,712 | ---- | M] (Sagem Communication) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\UsbSagCom.sys -- (UsbSagCom)
DRV - [2007/01/27 11:21:04 | 000,101,160 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\nvstor32.sys -- (nvstor32)
DRV - [2006/12/07 18:12:02 | 000,076,584 | ---- | M] () [Kernel | Auto | Running] -- C:\Acer\Empowering Technology\eRecovery\int15.sys -- (int15)
DRV - [2006/11/04 00:45:48 | 000,178,913 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\V0260Vid.sys -- (V0260VID)
DRV - [2006/09/19 16:47:04 | 000,080,744 | ---- | M] (Wasay) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WSVD.sys -- (WSVD)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\.DEFAULT\..\SearchScopes\{24E31104-DE47-4282-89D9-295A0BDCC9E5}: "URL" = http://www.dealio.com/products.html?kwd={searchTerms}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes\{24E31104-DE47-4282-89D9-295A0BDCC9E5}: "URL" = http://www.dealio.com/products.html?kwd={searchTerms}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = BF 18 55 13 52 F8 CB 01 [binary data]
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\SearchScopes,DefaultScope = {9D5BD211-422C-4164-9298-BB4186A30F31}
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\SearchScopes\${searchCLSID}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\SearchScopes\{3DE5CDE5-22DD-4E61-A91B-9926E8FB12F9}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADBS
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\SearchScopes\{9D5BD211-422C-4164-9298-BB4186A30F31}: "URL" = http://www.bing.com/search?q={searchTerms}&mkt=fr-FR&form=MIAWB2
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incredimail.com/?search={searchTerms}&loc=search_box_im2_test_v2&a=6R89F4ec66
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.startup.homepage: "http://fr.msn.com/"
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_2_202_228.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll (Yahoo! Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\SpiderMessengerHelper@spidermessenger.com:
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2010/06/30 09:37:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\Alwil Software\Avast5\WebRep\FF [2012/03/26 07:58:16 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/04/07 21:57:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/01/13 21:16:40 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/04/07 21:57:22 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/01/13 21:16:40 | 000,000,000 | ---D | M]
[2011/03/19 22:47:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\brijou\AppData\Roaming\mozilla\Extensions
[2010/05/19 15:09:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\brijou\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2009/04/02 19:25:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\brijou\AppData\Roaming\mozilla\Extensions\mozswing@mozswing.org
[2012/03/30 15:45:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\brijou\AppData\Roaming\mozilla\Firefox\Profiles\h98bxm3b.default\extensions
[2010/08/03 13:50:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\brijou\AppData\Roaming\mozilla\Firefox\Profiles\krl3xipt.default\extensions
[2012/03/30 13:41:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions
[2012/04/07 21:57:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\distribution\extensions
() (No name found) -- C:\USERS\BRIJOU\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\H98BXM3B.DEFAULT\EXTENSIONS\NOIA4OPTIONS@ARIST2.XPI
() (No name found) -- C:\USERS\BRIJOU\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\H98BXM3B.DEFAULT\EXTENSIONS\NOIAFOXOPTION@DAVIDVINCENT.TLD.XPI
() (No name found) -- C:\USERS\BRIJOU\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\H98BXM3B.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM.XPI
() (No name found) -- C:\USERS\BRIJOU\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\H98BXM3B.DEFAULT\EXTENSIONS\TOGGLEPERSONA@DAVIDVINCENT.TLD.XPI
[2012/04/07 21:57:21 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012/03/01 20:22:03 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2007/03/10 01:16:44 | 000,189,496 | ---- | M] (Yahoo! Inc.) -- C:\Program Files\mozilla firefox\plugins\npyaxmpb.dll
[2012/03/21 18:18:05 | 000,001,516 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
[2012/03/21 18:18:05 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/03/21 18:18:05 | 000,001,822 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\cnrtl-tlfi-fr.xml
[2012/03/21 18:18:05 | 000,001,154 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
[2012/03/21 18:18:05 | 000,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
[2012/03/21 18:18:05 | 000,000,956 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\18.0.1025.142\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\18.0.1025.142\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\18.0.1025.142\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Yahoo! activeX Plug-in Bridge (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll
CHR - plugin: getPlusPlus for Adobe 16248 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Users\brijou\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Recherche Google = C:\Users\brijou\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.17_0\
CHR - Extension: avast! WebRep = C:\Users\brijou\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: Gmail = C:\Users\brijou\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012/01/10 14:37:49 | 000,000,905 | RHS- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll (Google Inc.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (&Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Windows\System32\eDStoolbar.dll (HiTRUST)
O3 - HKU\S-1-5-21-3804079347-1977975947-785193970-1000\..\Toolbar\WebBrowser: (&Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O4 - HKLM..\Run: [Acer Tour] File not found
O4 - HKLM..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe (Acer Inc.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Bluetooth Connection Assistant] LBTWIZ.EXE -silent File not found
O4 - HKLM..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe (HiTRUST)
O4 - HKLM..\Run: [eRecoveryService] File not found
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE (Logitech, Inc.)
O4 - HKLM..\Run: [NBAgent] C:\Program Files\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe (Nero AG)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [RtHDVCpl] RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [V0260Cfg.exe] C:\Windows\V0260Cfg.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe (Acer Inc.)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-3804079347-1977975947-785193970-1000..\Run: [Acer Tour Reminder] File not found
O4 - HKU\S-1-5-21-3804079347-1977975947-785193970-1000..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CamTray.exe (Creative Technology Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://gfx1.hotmail.com/mail/w3/resources/VistaMSNPUpldfr-fr.cab (MSN Photo Upload Tool)
O16 - DPF: {50DC58D0-C870-4BE6-BC41-971ED2D5F022} http://www.super-messenger.fr/tab/HookWlmEx.cab (HookWlmEx Control)
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} http://www.extrafilm.fr/ImageUploader5.cab (Image Uploader Control)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {80AEEC0E-A2BE-4B8D-985F-350FE869DC40} http://h30155.www3.hp.com/ediags/dd/install/HPDriverDiagnosticsVista.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E08FB2BA-90F5-4170-B528-F2C4AA0112DF}: DhcpNameServer = 212.27.40.240 212.27.40.241
O20 - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper:
O24 - Desktop BackupWallPaper:
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{28b54060-9097-11df-af84-00192116f5f3}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL L:\ZoAZO.Exe
O33 - MountPoints2\{28b54063-9097-11df-af84-00192116f5f3}\Shell - "" = AutoRun
O33 - MountPoints2\{28b54063-9097-11df-af84-00192116f5f3}\Shell\AutoRun\command - "" = K:\LaunchU3.exe
O33 - MountPoints2\{46d45a66-964e-11e0-ab10-001a7d0ac0f1}\Shell - "" = AutoRun
O33 - MountPoints2\{46d45a66-964e-11e0-ab10-001a7d0ac0f1}\Shell\AutoRun\command - "" = J:\autorun.exe
O33 - MountPoints2\{6d8be7ad-21b4-11df-9ae0-00192116f5f3}\Shell - "" = AutoRun
O33 - MountPoints2\{6d8be7ad-21b4-11df-9ae0-00192116f5f3}\Shell\AutoRun\command - "" = F:\USBAutoRun.exe
O33 - MountPoints2\{9ec3e1c4-6f27-11dc-9704-00192116f5f3}\Shell - "" = AutoRun
O33 - MountPoints2\{9ec3e1c4-6f27-11dc-9704-00192116f5f3}\Shell\AutoRun\command - "" = G:\LaunchU3.exe
O33 - MountPoints2\{b060376f-9ad7-11df-b902-00192116f5f3}\Shell\AutoRun\command - "" = J:\APPInst.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2012/04/09 21:23:03 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{D6BAA188-0036-4BB0-B2C0-676F441EFBCE}
[2012/04/09 21:22:51 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{622D6AF4-A973-4331-ADC5-B7D5FAC63C96}
[2012/04/09 18:42:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/04/09 18:42:52 | 000,020,464 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/04/09 18:42:52 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/04/09 18:03:37 | 000,000,000 | ---D | C] -- C:\ZHP
[2012/04/09 18:02:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
[2012/04/09 18:02:43 | 000,000,000 | ---D | C] -- C:\Program Files\ZHPDiag
[2012/04/09 09:22:22 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{D7D5DC4D-2162-4907-A446-A28725A4B74B}
[2012/04/09 09:22:10 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{61B2D738-D7A1-4D41-BF15-AD5EA1C94485}
[2012/04/08 21:21:40 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{A9FCB7AD-DAF3-4B04-93C1-E666C4EA3D5C}
[2012/04/08 09:21:13 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{868A6FC3-9E59-4E31-AC5D-DFA10C77FAA2}
[2012/04/08 09:21:02 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{6AE986BF-E033-4181-B144-883DE71C2B47}
[2012/04/08 08:57:37 | 000,000,000 | ---D | C] -- C:\Windows\fr
[2012/04/08 08:26:25 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{CA49A3F5-E288-4A9A-91FC-7EA6EB487E7F}
[2012/04/08 08:26:12 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{B04F0666-7BC0-41E7-8467-C9DA70DFBFF6}
[2012/04/07 23:05:35 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{54126659-5FA1-4CAA-8E00-5399E2BF5F5D}
[2012/04/07 23:05:23 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{58CBC269-91C7-4829-B936-CFEF277A9DCB}
[2012/04/07 12:55:53 | 000,000,000 | ---D | C] -- C:\Users\brijou\lotisfilters
[2012/04/07 08:25:52 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{F76C924B-C02D-4411-B817-CF96BC50B0B8}
[2012/04/07 08:25:39 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{0868A30F-A2BD-4489-9687-ECBC05A42976}
[2012/04/06 18:47:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2012/04/06 18:47:22 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2012/04/06 08:12:35 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{D8CCE4DA-21C7-4062-A5F3-8E45E292848C}
[2012/04/06 08:11:31 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2012/04/05 20:04:09 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{641235C6-0F4C-4C74-9043-DD74634449E1}
[2012/04/05 08:04:50 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{B828719A-3DF4-4D88-94CC-B554E211825F}
[2012/04/05 08:04:24 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{32352490-2BEA-4F81-AD6D-267FA386E7D5}
[2012/04/04 21:01:47 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{0ADD3890-7DDC-4564-A227-3D3574F3BA17}
[2012/04/04 21:01:34 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{F5D647D0-6D56-4735-90C6-7F26461BB298}
[2012/04/04 13:57:52 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{23A7C218-3936-4E0A-853A-622451A8A7BB}
[2012/04/04 13:57:34 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{D204D6BB-3E03-4490-A0EA-1B0DB2214C00}
[2012/04/04 11:13:21 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{7BFF84AF-21C1-474E-A791-D03AD037682D}
[2012/04/04 11:13:09 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{6566367B-DBD5-4C35-AFCD-0EA5ECB3A2EB}
[2012/04/04 05:00:31 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{B0BD2E19-E463-4446-B4DB-FCF73025B117}
[2012/04/03 17:52:28 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{2151831C-666D-4E32-987B-B992A8F9C159}
[2012/04/03 17:52:17 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{2B643F1F-4EF7-44E7-8B25-C95BD98A524D}
[2012/04/03 17:50:26 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Roaming\PhotoFiltre Studio X
[2012/04/03 17:50:17 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
[2012/04/03 17:50:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
[2012/04/03 17:50:14 | 000,000,000 | ---D | C] -- C:\Program Files\PhotoFiltre Studio X
[2012/04/03 17:00:19 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{FA97F196-924A-4331-AF8B-2B2B37775016}
[2012/04/03 17:00:06 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{04C2D04C-7368-4765-A50E-B8C7094BF418}
[2012/04/03 15:57:08 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{725B886A-F3A4-495B-804E-95A6C51784A5}
[2012/04/03 15:56:57 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{9D611BAF-4A4E-47DE-920E-923CA492E815}
[2012/04/03 15:49:04 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{652B1B53-3102-48F8-B772-94AF9F966389}
[2012/04/03 15:48:48 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{2BE18185-AEDB-48E0-AF40-5F2A215D1F8A}
[2012/04/03 15:34:49 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
[2012/04/03 15:32:58 | 000,000,000 | ---D | C] -- C:\3e94a82c47cfb35a55aba4a20ef67e
[2012/04/03 08:20:46 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{A1048EDA-567A-4BD7-B512-26665CC649A2}
[2012/04/03 08:20:28 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{AB876748-C21C-41F4-8559-49BCA835372E}
[2012/04/02 08:19:46 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{52ADF35E-5B1A-46DC-BE54-05D5777CF5F1}
[2012/04/01 19:20:10 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{AA228E14-FCF5-4743-815D-361D743ED275}
[2012/03/31 08:24:31 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{3671B4C5-E5EF-4C67-835D-3E921D91DCD2}
[2012/03/30 13:41:32 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
[2012/03/30 13:41:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2012/03/30 08:11:23 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{BAADA398-7675-4BA2-BC06-6D6E9611ECC5}
[2012/03/29 08:00:53 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{E4FCDB25-59EF-481F-9B46-6EBA61A1A393}
[2012/03/28 20:00:25 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{A99691D9-0891-469D-9A61-E545D6E64AD2}
[2012/03/28 20:00:15 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{6CFA41CE-19CD-4E22-831C-FED3316752AC}
[2012/03/28 07:59:59 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{EB343D9B-3E0D-4F6F-88B4-1EC2F95EF8C1}
[2012/03/28 07:59:36 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{140808E8-9A03-41DC-B268-3CCF803E9E4F}
[2012/03/27 19:59:08 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{DF869764-08C7-4BD0-A5DA-5C22B308737E}
[2012/03/27 07:58:32 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{1DD921AD-8A53-4EE7-91FD-DFD87A68061B}
[2012/03/27 07:58:11 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{88C6D174-9A85-49C0-859E-480901219BF8}
[2012/03/26 19:57:44 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{4A430E45-23B6-4628-A899-68BA91DCBBD8}
[2012/03/26 07:56:59 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{3C747F23-D5A0-4C89-9939-08CFD624F76E}
[2012/03/26 07:56:00 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{095344F6-B109-4016-B2CD-CA19B6510CBE}
[2012/03/25 18:29:15 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{FE5082F5-2003-4EF2-ACF4-2180868AD58D}
[2012/03/25 18:29:00 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{694F6F56-8788-499C-B475-BEDCE2241CEE}
[2012/03/24 09:40:00 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{C4A23C21-52B5-4477-8CE9-60A48CAD0BE3}
[2012/03/24 09:39:48 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{BAD8D5B1-92F6-4DC0-8E72-B9E24ADEE5E6}
[2012/03/23 21:39:20 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{7F25F3F3-70AE-4316-B4B7-9B9ED243744B}
[2012/03/23 09:38:53 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{3240B26A-7452-493F-B1B8-83D36E69BD65}
[2012/03/23 09:38:42 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{440DAFEA-64AF-4A40-B627-55F2D8E6DA4E}
[2012/03/22 21:38:13 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{FB573C38-4BCB-413E-B3B3-6612469CCE69}
[2012/03/22 09:37:47 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{4297D327-A3B8-412B-A7A5-9952921F0785}
[2012/03/22 09:37:35 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{6B818453-1498-4F36-9E19-2B66CC8F681E}
[2012/03/21 21:37:06 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{48D81AD9-27B1-4E39-BB09-205F7B56461B}
[2012/03/21 09:36:39 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{3F4230C6-3FF4-4D6A-8547-0116BB89575C}
[2012/03/21 09:36:26 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{3EC0C142-8826-4B13-BCEA-CC312F2BB4F6}
[2012/03/20 21:35:56 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{B2ECA36D-0080-4C81-AD62-0A62AC996415}
[2012/03/20 09:35:28 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{BD6EEFE0-C5F0-4491-A6FE-47EBE899DA0B}
[2012/03/20 09:35:17 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{51526A10-7F9F-418D-B9B6-A7E0A7853D8E}
[2012/03/19 21:34:48 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{8BF26692-1DC6-4303-948F-9E67CD6B323F}
[2012/03/19 09:34:23 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{F6C79BB2-5ABA-4E5F-A5EB-27BF9C64F613}
[2012/03/19 09:34:10 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{8921BDFA-2889-4E51-923A-E598D4E735D9}
[2012/03/18 21:33:40 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{18DC6814-BF34-4443-A78E-A5EF76E2E461}
[2012/03/18 09:33:14 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{8A161E18-7231-4A3B-BE50-A11C6DCD481C}
[2012/03/18 09:33:02 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{0CF794E8-7AA9-4172-A9D9-871A0E8A0035}
[2012/03/17 21:32:33 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{F8763BB8-2E67-419C-8D09-F203BD885F6E}
[2012/03/17 09:32:07 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{72DBD80F-9BA8-4AF8-A500-76B9A6424D5C}
[2012/03/17 09:31:56 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{02DAC424-D488-43F7-9707-851EE22EFEDB}
[2012/03/16 21:31:28 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{00688AC7-73B6-4AAF-93FC-C70A8A5AC6EE}
[2012/03/16 09:31:02 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{8E5D43EE-8986-455E-904A-105CEB3CBAF1}
[2012/03/16 09:30:50 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{402FA77E-1A20-4A90-9BD3-A436BB76ED10}
[2012/03/15 21:30:23 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{735F9B6C-4015-4A66-B8E1-39EF26381C32}
[2012/03/15 09:29:57 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{2CF770BB-A61E-48AA-B032-40214DAB6E6D}
[2012/03/15 09:29:46 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{547EEC53-0FB1-4616-B46D-164F1E03F4A3}
[2012/03/14 21:29:19 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{31D2F5E7-A173-4DBA-853C-E188E0621524}
[2012/03/14 21:29:07 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{2FFD6D50-DB48-447C-AEAC-B6DA026A16E2}
[2012/03/14 09:28:39 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{D9F4EE6E-D8A7-4AB1-B9E7-8B83A509CAEC}
[2012/03/14 09:28:28 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{D706B8DA-0149-4730-9956-A737196C8E36}
[2012/03/14 09:20:25 | 002,044,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2012/03/14 09:20:22 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2012/03/14 09:20:22 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2012/03/14 09:20:21 | 001,172,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2012/03/14 09:20:20 | 000,683,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2012/03/14 09:20:20 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2012/03/14 09:20:15 | 000,613,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpencom.dll
[2012/03/13 21:28:00 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{5EAD0612-3561-4A7C-A02E-1A457FF994C7}
[2012/03/13 09:27:31 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{CE97A2CD-F52D-4A04-8AC9-92CC1B7E8099}
[2012/03/13 09:27:19 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{E0AE698D-4715-48CF-A099-C6D4235A8D3E}
[2012/03/12 21:26:47 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{7D883FAE-5343-474F-8952-C25D5578BCB5}
[2012/03/12 09:26:15 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{F9F5862E-D4A6-41DA-A0C4-F5850661A311}
[2012/03/12 09:26:03 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{E4D49D7B-D546-4B97-9CAC-C0C34E11B5AD}
[2012/03/11 21:25:32 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{2290E9F5-7606-4E81-9974-614099621D56}
[2012/03/11 09:25:03 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{6F2F893D-E3A0-412A-8578-78512EA1D3BD}
[2012/03/11 09:24:52 | 000,000,000 | ---D | C] -- C:\Users\brijou\AppData\Local\{8290922D-7D4E-4194-8F86-B6E8460AC1A0}
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2012/04/10 07:53:11 | 000,000,821 | ---- | M] () -- C:\Users\brijou\Desktop\OTL.exe - Raccourci.lnk
[2012/04/10 07:31:56 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/04/10 07:31:42 | 000,000,416 | ---- | M] () -- C:\Windows\tasks\PCConfidential.job
[2012/04/10 07:31:30 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/10 07:31:26 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2012/04/10 07:31:26 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2012/04/10 07:31:10 | 000,067,584 | ---- | M] () -- C:\Windows\bootstat.dat
[2012/04/10 07:31:03 | 1876,512,768 | -HS- | M] () -- C:\hiberfil.sys
[2012/04/09 21:37:38 | 000,002,705 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2012/04/09 21:18:00 | 000,001,056 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/04/09 19:28:05 | 000,683,176 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2012/04/09 19:28:04 | 000,599,940 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/04/09 19:28:04 | 000,128,500 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2012/04/09 19:28:04 | 000,105,816 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/04/09 18:42:55 | 000,000,910 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/09 18:02:55 | 000,000,799 | ---- | M] () -- C:\Users\Public\Desktop\MBRCheck.lnk
[2012/04/09 18:02:55 | 000,000,792 | ---- | M] () -- C:\Users\Public\Desktop\ZHPDiag.lnk
[2012/04/09 18:02:55 | 000,000,787 | ---- | M] () -- C:\Users\Public\Desktop\ZHPFix.lnk
[2012/04/08 22:37:11 | 000,000,877 | ---- | M] () -- C:\Users\brijou\Desktop\adwcleaner(1).exe - Raccourci.lnk
[2012/04/06 08:30:13 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2012/04/06 08:30:13 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2012/04/04 19:08:50 | 000,000,173 | ---- | M] () -- C:\Windows\wininit.ini
[2012/04/04 11:03:46 | 000,000,676 | ---- | M] () -- C:\Users\brijou\AppData\Roaming\wklnhst.dat
[2012/04/03 18:40:21 | 000,001,618 | ---- | M] () -- C:\Users\brijou\Desktop\IZArc.lnk
[2012/04/03 17:55:45 | 000,000,897 | ---- | M] () -- C:\Users\brijou\Desktop\PhotoFiltre Studio X.lnk
[2012/04/03 16:55:44 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2012/04/03 09:46:25 | 000,177,152 | ---- | M] () -- C:\Users\brijou\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/03/30 13:41:35 | 000,000,874 | ---- | M] () -- C:\Users\brijou\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2012/03/14 09:58:34 | 003,859,016 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2012/04/10 07:53:11 | 000,000,821 | ---- | C] () -- C:\Users\brijou\Desktop\OTL.exe - Raccourci.lnk
[2012/04/09 18:42:55 | 000,000,910 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/04/09 18:02:55 | 000,000,799 | ---- | C] () -- C:\Users\Public\Desktop\MBRCheck.lnk
[2012/04/09 18:02:55 | 000,000,792 | ---- | C] () -- C:\Users\Public\Desktop\ZHPDiag.lnk
[2012/04/09 18:02:55 | 000,000,787 | ---- | C] () -- C:\Users\Public\Desktop\ZHPFix.lnk
[2012/04/08 22:37:11 | 000,000,877 | ---- | C] () -- C:\Users\brijou\Desktop\adwcleaner(1).exe - Raccourci.lnk
[2012/04/06 08:11:33 | 000,001,002 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/04/03 18:40:21 | 000,001,618 | ---- | C] () -- C:\Users\brijou\Desktop\IZArc.lnk
[2012/04/03 17:50:17 | 000,000,897 | ---- | C] () -- C:\Users\brijou\Desktop\PhotoFiltre Studio X.lnk
[2010/10/26 11:39:57 | 000,039,424 | ---- | C] () -- C:\Windows\Tpwf050.dll
[2010/10/26 11:39:57 | 000,039,424 | ---- | C] () -- C:\Windows\Tpwf049.dll
[2010/10/26 11:39:56 | 000,040,448 | ---- | C] () -- C:\Windows\Tpwf040.dll
[2010/10/26 11:39:56 | 000,039,936 | ---- | C] () -- C:\Windows\Tpwf048.dll
[2010/10/26 11:39:56 | 000,039,936 | ---- | C] () -- C:\Windows\Tpwf008.dll
[2010/10/26 11:39:56 | 000,039,424 | ---- | C] () -- C:\Windows\Tpwf042.dll
[2010/10/26 11:39:56 | 000,039,424 | ---- | C] () -- C:\Windows\Tpwf003.dll
[2010/10/26 11:39:56 | 000,038,912 | ---- | C] () -- C:\Windows\Tpwf018.dll
[2010/10/26 11:39:56 | 000,038,400 | ---- | C] () -- C:\Windows\Tpwf014.dll
[2010/10/26 11:39:56 | 000,038,400 | ---- | C] () -- C:\Windows\Tpwf011.dll
[2010/10/26 11:39:56 | 000,038,400 | ---- | C] () -- C:\Windows\Tpwf006.dll
[2010/10/26 11:39:56 | 000,038,400 | ---- | C] () -- C:\Windows\Tpwf001.dll
[2010/10/26 11:39:56 | 000,036,352 | ---- | C] () -- C:\Windows\Tpwf043.dll
[2010/10/26 11:39:56 | 000,036,352 | ---- | C] () -- C:\Windows\Tpwf010.dll
[2010/10/26 11:39:56 | 000,036,352 | ---- | C] () -- C:\Windows\Tpwf009.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf046.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf045.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf031.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf027.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf026.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf024.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf023.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf021.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf012.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf005.dll
[2010/10/26 11:39:56 | 000,035,840 | ---- | C] () -- C:\Windows\Tpwf004.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf047.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf041.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf038.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf037.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf036.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf035.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf034.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf033.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf032.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf030.dll
[2010/10/26 11:39:56 | 000,035,328 | ---- | C] () -- C:\Windows\Tpwf007.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf044.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf039.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf029.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf025.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf022.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf019.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf017.dll
[2010/10/26 11:39:56 | 000,034,816 | ---- | C] () -- C:\Windows\Tpwf015.dll
[2010/10/26 11:39:56 | 000,034,304 | ---- | C] () -- C:\Windows\Tpwf028.dll
[2010/10/26 11:39:56 | 000,034,304 | ---- | C] () -- C:\Windows\Tpwf016.dll
[2010/10/26 11:39:56 | 000,034,304 | ---- | C] () -- C:\Windows\Tpwf013.dll
[2010/10/26 11:39:56 | 000,034,304 | ---- | C] () -- C:\Windows\Tpwf002.dll
[2010/10/26 11:39:56 | 000,033,792 | ---- | C] () -- C:\Windows\Tpwf020.dll
[2010/10/25 14:56:55 | 000,035,328 | ---- | C] () -- C:\Windows\INETWH32.DLL
[2010/10/25 14:56:55 | 000,009,136 | ---- | C] () -- C:\Windows\INETWH16.DLL
[2010/10/25 14:56:55 | 000,004,528 | ---- | C] () -- C:\Windows\SETBROWS.EXE
[2010/10/23 13:26:16 | 000,000,427 | ---- | C] () -- C:\Windows\System32\plugin.dll - Raccourci.lnk
[2010/10/22 14:48:44 | 000,210,944 | ---- | C] () -- C:\Windows\System32\MSVCRT10.DLL
[color=#E56717]========== LOP Check ==========[/color]
[2009/06/14 13:01:19 | 000,000,000 | -HSD | M] -- C:\Users\brijou\AppData\Roaming\.#
[2010/09/16 10:02:59 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\abelhadigital.com
[2011/12/09 14:52:45 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Alien Skin
[2012/01/17 12:38:30 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Amazon
[2010/05/16 20:56:49 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\aMule
[2009/04/29 13:30:09 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Anuman Interactive
[2009/10/18 13:03:41 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Auslogics
[2011/03/07 08:50:31 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Azureus
[2010/07/19 22:59:57 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Blitware
[2011/12/06 16:41:56 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
[2009/03/05 12:20:41 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\D-Jix
[2009/03/23 18:45:14 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\D-Jix Media
[2011/08/15 14:17:30 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\DAEMON Tools Lite
[2010/05/16 20:02:34 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\DVDVideoSoftIEHelpers
[2007/10/16 15:16:08 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\eSobi
[2010/04/16 20:43:01 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Facebook
[2009/08/25 12:58:19 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\gtk-2.0
[2008/02/07 23:01:34 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Image Zone Express
[2010/11/07 12:06:01 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Jasc
[2009/09/19 19:05:59 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\jsoft.fr
[2010/03/20 15:23:20 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Leadertech
[2010/07/18 18:49:24 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\LG Electronics
[2009/06/25 19:30:54 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\LimeWire
[2009/06/29 09:50:08 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\MAGIX
[2007/10/26 13:31:23 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Micro Application
[2011/07/06 16:13:28 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Naviextras
[2010/02/10 09:56:28 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\OpenOffice.org
[2010/08/22 22:25:07 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Panasonic
[2008/06/10 16:55:22 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\PeerNetworking
[2010/08/24 18:04:45 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\PhotoFiltre
[2012/04/03 17:55:04 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\PhotoFiltre Studio X
[2011/02/10 16:24:25 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\PhotoScape
[2007/10/14 11:56:37 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Printer Info Cache
[2009/08/11 16:37:12 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Python-Eggs
[2011/12/06 18:58:59 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2011/12/29 16:40:07 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Techno Design IP
[2007/09/30 10:34:20 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Template
[2010/05/19 15:09:31 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Thunderbird
[2010/08/11 17:43:09 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Uniblue
[2010/06/27 18:59:32 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\uTorrent
[2010/07/01 09:48:02 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\Windows Live Writer
[2009/06/04 16:24:43 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\XBMC
[2011/10/02 22:08:55 | 000,000,000 | ---D | M] -- C:\Users\brijou\AppData\Roaming\XnView
[2011/07/24 08:35:54 | 000,000,334 | ---- | M] () -- C:\Windows\Tasks\File Helper.job
[2012/04/10 07:31:42 | 000,000,416 | ---- | M] () -- C:\Windows\Tasks\PCConfidential.job
[2012/04/09 21:37:41 | 000,032,562 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[color=#E56717]========== Purity Check ==========[/color]
[color=#E56717]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:0656FCD2
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:8AD1F2E0
< End of report >