Désolé du temps de réponse, semaine de vacances oblige .. 
Alors oui j'avais supprimé la sélection avec MBAM et donc voici le rapport de OTL :
1) OTL.txt
OTL logfile created on: 29/08/2010 23:26:50 - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\proprietaire\Mes documents\Téléchargements
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
1 022,00 Mb Total Physical Memory | 118,00 Mb Available Physical Memory | 12,00% Memory free
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 62,00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,88 Gb Total Space | 48,00 Gb Free Space | 20,61% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: USER-8FAF3BEBEC
Current User Name: proprietaire
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2010/08/29 23:25:47 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\proprietaire\Mes documents\Téléchargements\OTL.exe
PRC - [2010/06/29 12:59:04 | 000,014,808 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
PRC - [2010/06/29 12:59:00 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/03/19 10:49:20 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
PRC - [2009/12/23 22:55:40 | 000,323,392 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\DNA\btdna.exe
PRC - [2009/11/15 13:21:45 | 000,693,016 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe
PRC - [2009/11/15 13:21:45 | 000,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
PRC - [2009/11/15 13:21:44 | 000,595,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgnsx.exe
PRC - [2009/11/15 13:21:34 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
PRC - [2009/11/15 13:21:20 | 000,908,056 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe
PRC - [2009/10/07 02:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\logishrd\LVMVFM\LVPrcSrv.exe
PRC - [2009/10/01 14:36:00 | 003,144,736 | ---- | M] (Acer Incorporated) -- C:\Program Files\Packard Bell\Software Suite\PBSoftSuite.exe
PRC - [2009/09/15 15:38:04 | 000,530,432 | ---- | M] (Acer Incorporated) -- C:\Program Files\Packard Bell\Software Suite\pbDevDetect.exe
PRC - [2009/04/06 11:35:46 | 001,002,016 | ---- | M] (Packard Bell Services) -- C:\Program Files\Packard Bell\Software Suite\PowerSave\PSPBSSS.exe
PRC - [2008/09/27 01:00:00 | 000,199,680 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\E_FATIFBE.EXE
PRC - [2008/04/14 14:00:00 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006/10/19 14:52:24 | 000,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
PRC - [2005/08/04 20:55:24 | 000,237,568 | ---- | M] () -- C:\WINDOWS\system32\CmUCREye.exe
PRC - [2005/07/29 14:13:52 | 000,638,976 | ---- | M] (Ralink Technology, Corp.) -- C:\Program Files\RALINK\RT2500 USB Wireless LAN Card\Installer\WINXP\RaConfig2500.exe
PRC - [2004/06/03 22:07:00 | 000,549,376 | ---- | M] () -- C:\WINDOWS\mHotkey.exe
PRC - [2003/07/21 23:28:18 | 005,577,216 | ---- | M] (Chicony) -- C:\WINDOWS\CNYHKey.exe
PRC - [2001/11/12 15:31:48 | 000,020,480 | ---- | M] (X10) -- C:\Program Files\Common Files\X10\Common\X10nets.exe
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - [2010/08/29 23:25:47 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\proprietaire\Mes documents\Téléchargements\OTL.exe
MOD - [2008/04/14 14:00:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/07/14 15:56:53 | 000,316,888 | ---- | M] (Protection Technology) [Auto | Stopped] -- C:\WINDOWS\System32\appdrvrem01.exe -- (appdrvrem01) Application Driver Auto Removal Service (01)
SRV - [2010/03/19 10:49:20 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009/11/15 13:21:34 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2009/11/15 13:21:20 | 000,908,056 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgemc.exe -- (avg8emc)
SRV - [2009/10/07 02:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2009/04/06 11:35:46 | 001,002,016 | ---- | M] (Packard Bell Services) [Auto | Running] -- C:\Program Files\Packard Bell\Software Suite\PowerSave\PSPBSSS.exe -- (PowerSave)
SRV - [2008/04/14 14:00:00 | 000,739,328 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\gaquxry.dll -- (rmpizafo)
SRV - [2006/10/19 14:52:24 | 000,061,440 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe -- (LightScribeService)
SRV - [2001/11/12 15:31:48 | 000,020,480 | ---- | M] (X10) [Auto | Running] -- C:\Program Files\Common Files\X10\Common\X10nets.exe -- (x10nets)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2010/07/14 15:56:53 | 003,333,808 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\appdrv01.sys -- (appdrv01) Application Driver (01)
DRV - [2009/12/25 13:24:00 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009/11/15 13:21:45 | 000,335,240 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2009/11/15 13:21:45 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2009/11/15 13:21:43 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2009/10/07 02:46:36 | 000,025,752 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
DRV - [2009/04/30 23:56:32 | 000,495,768 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LV561AV.SYS -- (PID_0928) Logitech QuickCam Express(PID_0928)
DRV - [2008/04/14 14:00:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008/04/14 14:00:00 | 000,023,424 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\tcrwdhyw.sys -- (tcrwdhyw)
DRV - [2008/04/13 12:46:24 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MPE.sys -- (MPE)
DRV - [2008/04/13 11:45:14 | 000,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2008/04/13 11:35:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C)
DRV - [2008/02/18 15:59:34 | 000,049,280 | ---- | M] (PreSonus Audio Electronics) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\presonusUsb.sys -- (preSonusUsb)
DRV - [2008/02/18 15:53:48 | 000,028,576 | ---- | M] (PreSonus Audio Electronics) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PreSonusUSB_xfer.sys -- (ControlTransferDriver)
DRV - [2005/10/17 15:52:58 | 000,826,112 | ---- | M] (Philips Semiconductors GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\3xHybrid.sys -- (3xHybrid)
DRV - [2005/09/23 00:21:00 | 003,524,640 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2005/08/19 00:35:04 | 003,856,896 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2005/08/04 01:30:52 | 000,069,248 | ---- | M] (C-Media Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cmiucr.SYS -- (CMISTOR)
DRV - [2005/07/14 21:58:38 | 000,241,536 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rt2500usb.sys -- (RT2500USB)
DRV - [2005/06/30 13:16:00 | 001,094,848 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2005/05/19 17:52:58 | 000,017,792 | ---- | M] (X10 Wireless Technology, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\x10ufx2.sys -- (XUIF)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.skip-search.com/?cfg=2-82-0-nZJx
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = D2 5C DC AC 85 64 CA 01 [binary data]
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.skip-search.com/?cfg=2-82-0-nZJx
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:6522
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.startup.homepage: "http://google.fr/"
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: SkipScreen@SkipScreen:0.4.12s
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/07/12 17:04:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/06/29 12:59:12 | 000,000,000 | ---D | M]
[2009/11/13 17:42:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\proprietaire\Application Data\Mozilla\Extensions
[2020/11/30 21:07:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\proprietaire\Application Data\Mozilla\Firefox\Profiles\1fu0jcpp.default\extensions
[2010/06/12 11:16:35 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\proprietaire\Application Data\Mozilla\Firefox\Profiles\1fu0jcpp.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/06/12 11:16:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\proprietaire\Application Data\Mozilla\Firefox\Profiles\1fu0jcpp.default\extensions\SkipScreen@SkipScreen
[2010/02/17 20:40:46 | 000,001,747 | ---- | M] () -- C:\Documents and Settings\proprietaire\Application Data\Mozilla\Firefox\Profiles\1fu0jcpp.default\searchplugins\ask.uk.xml
[2010/08/27 11:39:29 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/06/29 12:59:06 | 000,001,516 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml
[2010/06/29 12:59:06 | 000,001,822 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
[2010/06/29 12:59:06 | 000,000,757 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-france.xml
[2010/06/29 12:59:06 | 000,001,426 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-fr.xml
[2010/06/29 12:59:06 | 000,000,956 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-france.xml
O1 HOSTS File: ([2008/04/14 14:00:00 | 000,000,790 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: () - {2090C13A-BB65-4BA6-A2EB-52CFBF52C833} - C:\WINDOWS\System32\gaquxry.dll ()
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe ()
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [AVG8_TRAY] C:\Program Files\AVG\AVG8\avgtray.exe ()
O4 - HKLM..\Run: [CHotkey] C:\WINDOWS\mHotkey.exe ()
O4 - HKLM..\Run: [CmUCRRun] C:\WINDOWS\system32\CmUCREye.exe ()
O4 - HKLM..\Run: [EEventManager] C:\Program Files\Epson Software\Event Manager\EEventManager.exe ()
O4 - HKLM..\Run: [ledpointer] C:\WINDOWS\CNYHKey.exe (Chicony)
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [MedionVFD] C:\Program Files\Medion Info Display\MdionLCM.exe ()
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [PreSonusUSBInstallApp] C:\Program Files\AudioBox USB\InstPresonusUSBDrv.exe ()
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask .exe (Apple Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe ()
O4 - HKLM..\Run: [UserFaultCheck] File not found
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe ()
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [BitTorrent DNA] C:\Program Files\DNA\btdna.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [bokbarbn] C:\Documents and Settings\proprietaire\Local Settings\Application Data\vwhwvpamr\rixabsyshdw.exe File not found
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [EPSON SX110 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE (SEIKO EPSON CORPORATION)
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [JDK5SWFMZY] C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Vxx.exe File not found
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [newsecureapp70700.exe] C:\Documents and Settings\proprietaire\Application Data\123ABA02929EAAF0A16772259D194AEB\newsecureapp70700.exe File not found
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [Packard Bell Software Suite] C:\Program Files\Packard Bell\Software Suite\PBSoftSuite.exe (Acer Incorporated)
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [Software Suite] C:\Program Files\Packard Bell\Software Suite\PBSoftSuite.exe (Acer Incorporated)
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004..\Run: [wdltjems] C:\Documents and Settings\proprietaire\Local Settings\Application Data\tkcwvhneg\rqmsjvbshdw.exe File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Ralink Wireless Utility.lnk = C:\Program Files\RALINK\RT2500 USB Wireless LAN Card\Installer\WINXP\RaConfig2500.exe (Ralink Technology, Corp.)
O4 - Startup: C:\Documents and Settings\Olivia\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-220523388-1606980848-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1258127838578 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\cbssreg: DllName - C:\Documents and Settings\All Users\Documents\Settings\cbss.dll - C:\Documents and Settings\All Users\Documents\Settings\cbss.dll ()
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\proprietaire\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\proprietaire\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/11/13 16:32:44 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{7454347c-8e9a-11df-b7aa-0012bf5299da}\Shell - "" = AutoRun
O33 - MountPoints2\{7454347c-8e9a-11df-b7aa-0012bf5299da}\Shell\AutoRun\command - "" = I:\Launcher.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: rmpizafo - C:\WINDOWS\System32\gaquxry.dll ()
NetSvcs: SSHNAS - File not found
CREATERESTOREPOINT
Error starting restore point: System Restore is disabled.
Error closing restore point: System Restore is disabled.
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2010/08/22 16:39:41 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Documents\Settings
[2010/08/20 12:17:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Macromedia
[2010/08/20 02:14:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Adobe
[2010/08/19 23:45:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\proprietaire\Application Data\Malwarebytes
[2010/08/19 20:47:01 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2010/08/19 20:46:55 | 000,000,000 | ---D | C] -- C:\rsit
[2010/08/19 20:35:26 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/08/19 20:35:25 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/08/19 20:35:25 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/08/19 20:35:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/08/19 20:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2010/08/19 20:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2010/08/19 19:08:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\proprietaire\Local Settings\Application Data\tkcwvhneg
[2010/08/19 19:08:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\proprietaire\Local Settings\Application Data\vwhwvpamr
[2010/08/19 19:08:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\proprietaire\Local Settings\Application Data\Windows Server
[2010/08/19 19:07:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\proprietaire\Application Data\123ABA02929EAAF0A16772259D194AEB
[2010/08/16 03:07:28 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010/08/03 01:17:33 | 000,214,016 | ---- | C] (Internet) -- C:\Documents and Settings\proprietaire\binternet.exe
[2010/08/02 16:02:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Soulseek
[2010/08/02 16:01:56 | 000,000,000 | ---D | C] -- C:\Program Files\SoulseekNS
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Documents and Settings\proprietaire\*.tmp files -> C:\Documents and Settings\proprietaire\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2010/08/29 23:34:28 | 000,000,446 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{B105FC66-6E33-4CD1-AD19-6BE20A3C101A}.job
[2010/08/29 23:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At72.job
[2010/08/29 23:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At48.job
[2010/08/29 22:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At23.job
[2010/08/29 22:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At71.job
[2010/08/29 22:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At47.job
[2010/08/29 21:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At22.job
[2010/08/29 21:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At70.job
[2010/08/29 21:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At46.job
[2010/08/29 20:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At21.job
[2010/08/29 20:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At69.job
[2010/08/29 20:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At45.job
[2010/08/29 19:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At20.job
[2010/08/29 19:32:17 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/08/29 19:18:00 | 000,037,469 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010/08/29 19:17:31 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/08/29 19:17:28 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/08/27 19:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At68.job
[2010/08/27 19:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At44.job
[2010/08/27 18:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At19.job
[2010/08/27 18:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At67.job
[2010/08/27 18:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At43.job
[2010/08/27 17:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At18.job
[2010/08/27 17:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At66.job
[2010/08/27 17:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At42.job
[2010/08/27 16:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At17.job
[2010/08/27 16:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At65.job
[2010/08/27 16:00:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At41.job
[2010/08/27 15:47:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At16.job
[2010/08/27 15:41:26 | 064,013,829 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm
[2010/08/27 15:05:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At64.job
[2010/08/27 15:05:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At40.job
[2010/08/27 14:52:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At15.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At63.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At62.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At61.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At60.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At59.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At58.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At57.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At56.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At55.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At54.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At53.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At52.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At51.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At50.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At49.job
[2010/08/27 14:48:38 | 000,000,112 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\6r3qC6ak3.dat
[2010/08/27 14:48:36 | 000,072,706 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\50P3he0G.exe
[2010/08/27 14:05:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At39.job
[2010/08/27 13:52:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At14.job
[2010/08/27 13:00:03 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At38.job
[2010/08/27 12:52:01 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At13.job
[2010/08/27 12:51:35 | 000,000,000 | ---- | M] () -- C:\WINDOWS\EEventManager .INI
[2010/08/27 12:05:00 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At37.job
[2010/08/27 11:52:00 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At36.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At35.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At34.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At33.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At32.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At31.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At30.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At29.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At28.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At27.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At26.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | M] () -- C:\WINDOWS\tasks\At25.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At24.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2010/08/20 15:55:00 | 004,980,736 | -H-- | M] () -- C:\Documents and Settings\proprietaire\NTUSER.DAT
[2010/08/20 15:55:00 | 000,000,184 | -HS- | M] () -- C:\Documents and Settings\proprietaire\ntuser.ini
[2010/08/20 15:50:52 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\proprietaire\Application Data\winscp.rnd
[2010/08/20 15:36:09 | 000,002,137 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\iTunes.lnk
[2010/08/19 20:35:29 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2010/08/19 19:08:27 | 000,000,005 | ---- | M] () -- C:\zrpt.xml
[2010/08/19 19:02:23 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/08/19 00:12:49 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010/08/17 22:25:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/08/16 12:51:05 | 000,115,768 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/08/16 03:11:25 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/08/16 03:10:10 | 001,050,372 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/08/16 03:10:10 | 000,500,900 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2010/08/16 03:10:10 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/08/16 03:10:10 | 000,080,748 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2010/08/16 03:10:10 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/08/03 01:25:39 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\proprietaire\tmp1.3
[2010/08/03 01:17:33 | 000,214,016 | ---- | M] (Internet) -- C:\Documents and Settings\proprietaire\binternet.exe
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Documents and Settings\proprietaire\*.tmp files -> C:\Documents and Settings\proprietaire\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At72.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At71.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At70.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At69.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At68.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At67.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At66.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At65.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At64.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At63.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At62.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At61.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At60.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At59.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At58.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At57.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At56.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At55.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At54.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At53.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At52.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At51.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At50.job
[2010/08/27 14:48:40 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At49.job
[2010/08/27 12:51:35 | 000,000,000 | ---- | C] () -- C:\WINDOWS\EEventManager .INI
[2010/08/27 12:11:03 | 000,002,638 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\2090C13A-BB65-4BA6-A2EB-52CFBF52C833.txt
[2010/08/27 11:41:10 | 000,072,706 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\50P3he0G.exe
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At48.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At47.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At46.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At45.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At44.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At43.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At42.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At41.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At40.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At39.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At38.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At37.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At36.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At35.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At34.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At33.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At32.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At31.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At30.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At29.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At28.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At27.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At26.job
[2010/08/27 11:41:10 | 000,000,412 | ---- | C] () -- C:\WINDOWS\tasks\At25.job
[2010/08/27 11:41:08 | 000,000,112 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\6r3qC6ak3.dat
[2010/08/27 11:39:46 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
[2010/08/27 11:39:46 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
[2010/08/27 11:39:45 | 000,035,840 | ---- | C] () -- C:\WINDOWS\Fonts\h12Oa.com
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
[2010/08/27 11:39:45 | 000,000,334 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2010/08/19 23:57:32 | 000,003,048 | ---- | C] () -- C:\Documents and Settings\proprietaire\Local Settings\Application Data\2090C13A-BB65-4BA6-A2EB-52CFBF52C833.txt
[2010/08/19 23:56:39 | 000,002,630 | ---- | C] () -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\2090C13A-BB65-4BA6-A2EB-52CFBF52C833.txt
[2010/08/19 20:35:29 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2010/08/19 19:08:25 | 000,000,005 | ---- | C] () -- C:\zrpt.xml
[2010/08/03 01:25:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\proprietaire\tmp1.3
[2010/03/14 14:31:33 | 000,054,272 | ---- | C] () -- C:\Documents and Settings\proprietaire\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/18 05:41:51 | 000,000,000 | ---- | C] () -- C:\WINDOWS\EEventManager.INI
[2010/02/17 18:46:56 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini
[2009/12/31 20:27:30 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2009/12/25 13:24:00 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2009/12/23 21:18:07 | 000,138,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009/12/23 03:27:36 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\proprietaire\Application Data\winscp.rnd
[2009/11/14 00:12:44 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009/11/13 18:00:28 | 000,765,952 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009/11/13 18:00:27 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009/11/13 17:31:21 | 000,532,544 | ---- | C] () -- C:\WINDOWS\PIC.dll
[2009/11/13 17:31:21 | 000,049,152 | ---- | C] () -- C:\WINDOWS\CNYUSB.dll
[2009/11/13 17:31:21 | 000,011,776 | ---- | C] () -- C:\WINDOWS\HIDMNT.dll
[2009/11/13 17:31:21 | 000,005,120 | ---- | C] () -- C:\WINDOWS\HKCYDLL.dll
[2009/11/13 17:31:21 | 000,000,360 | ---- | C] () -- C:\WINDOWS\CNYHKey.ini
[2009/11/13 17:28:38 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\PsisDecd.dll
[2009/11/13 17:26:08 | 000,000,066 | ---- | C] () -- C:\WINDOWS\CMICARDREADER.INI
[2009/11/13 17:26:07 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\CmUCRRm.Dll
[2009/11/13 17:22:29 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\Install2500USB.dll
[2009/11/13 17:22:29 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\DEDriverDLL.dll
[2009/11/13 17:13:12 | 001,662,976 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2009/11/13 17:13:12 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2009/11/13 17:13:12 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\34CoInstaller.dll
[2009/11/13 17:13:11 | 001,466,368 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2009/11/13 17:13:11 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2009/11/13 17:13:10 | 000,043,008 | ---- | C] () -- C:\WINDOWS\System32\nvapi.dll
[2009/10/07 02:46:36 | 000,025,752 | ---- | C] () -- C:\WINDOWS\System32\drivers\LVPr2Mon.sys
[2009/10/07 02:23:08 | 000,013,584 | ---- | C] () -- C:\WINDOWS\System32\drivers\iKeyLFT2.dll
[2009/04/30 23:39:36 | 000,082,289 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2008/04/14 14:00:00 | 000,739,328 | ---- | C] () -- C:\WINDOWS\System32\gaquxry.dll
[2008/04/14 14:00:00 | 000,023,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\tcrwdhyw.sys
[2008/04/14 14:00:00 | 000,023,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\shvitvie.sys
[2007/06/07 08:48:34 | 000,034,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\OxUSBTIMOUT.sys
[color=#E56717]========== Custom Scans ==========[/color]
[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]
[2007/11/07 09:03:18 | 000,562,688 | ---- | M] (Microsoft Corporation) -- C:\install.exe
[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2008/04/14 14:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2008/04/14 14:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008/04/13 12:40:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008/04/13 12:40:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008/04/14 14:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\atapi.sys
[2008/04/13 12:40:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2008/04/14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4EC800BDF80521B0207BD2301DFC7D14 -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008/04/14 14:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4EC800BDF80521B0207BD2301DFC7D14 -- C:\WINDOWS\system32\eventlog.dll
[color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
[2008/04/14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=04821179C3171554C1BD1F9888A113E2 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008/04/14 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=04821179C3171554C1BD1F9888A113E2 -- C:\WINDOWS\system32\netlogon.dll
[color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
[2008/04/14 14:00:00 | 000,187,392 | ---- | M] (Microsoft Corporation) MD5=973B36634C544948C663E8269AA1B3A3 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008/04/14 14:00:00 | 000,187,392 | ---- | M] (Microsoft Corporation) MD5=973B36634C544948C663E8269AA1B3A3 -- C:\WINDOWS\system32\scecli.dll
[color=#A23BEC]< %systemroot%\*. /mp /s >[/color]
[color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]
[2009/03/08 05:31:44 | 000,348,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\dxtmsft.dll
[2009/03/08 05:31:38 | 000,216,064 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\dxtrans.dll
[2008/04/14 14:00:00 | 000,739,328 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\System32\gaquxry.dll
[2010/06/24 14:25:22 | 000,184,320 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\iepeers.dll
[3 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]
< End of report >