Le rapport OTListIt :
OTListIt logfile created on: 17/05/2009 16:17:47 - Run 2
OTListIt2 by OldTimer - Version 2.0.15.7 Folder = C:\Documents and Settings\NouvelAdministrateur\Bureau
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
511,53 Mb Total Physical Memory | 278,05 Mb Available Physical Memory | 54,36% Memory free
1,22 Gb Paging File | 0,99 Gb Available in Paging File | 80,87% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 43,96 Gb Total Space | 21,76 Gb Free Space | 49,50% Space Free | Partition Type: NTFS
Drive D: | 67,83 Gb Total Space | 31,74 Gb Free Space | 46,79% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 4,31 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
H: Drive not present or media not loaded
Drive I: | 971,42 Mb Total Space | 447,06 Mb Free Space | 46,02% Space Free | Partition Type: FAT
Drive J: | 960,57 Mb Total Space | 801,97 Mb Free Space | 83,49% Space Free | Partition Type: FAT32
Drive K: | 232,88 Gb Total Space | 128,46 Gb Free Space | 55,16% Space Free | Partition Type: NTFS
Computer Name: MAISON
Current User Name: NouvelAdministrateur
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Output = Standard
File Age = 30 Days
Company Name Whitelist: On
========== Processes (SafeList) ==========
PRC - [2009/04/01 15:46:04 | 00,108,289 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\AntiVir Desktop\sched.exe
PRC - [2009/03/02 13:09:54 | 00,185,089 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\AntiVir Desktop\avguard.exe
PRC - [2006/01/04 17:39:13 | 00,046,080 | ---- | M] (C-Dilla Ltd) -- C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
PRC - [2009/04/27 11:03:36 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2008/05/03 06:46:00 | 00,159,812 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2008/12/11 16:58:44 | 00,146,800 | ---- | M] (PC Tools) -- C:\Program Files\PROTECTION\PC Tools Firewall Plus\FWService.exe
PRC - [2002/09/20 16:50:10 | 00,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
PRC - [2004/08/04 00:54:50 | 01,036,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE
PRC - [2005/06/02 16:54:34 | 00,086,606 | ---- | M] (Canon Inc.) -- C:\Program Files\Canon\CAL\CALMAIN.exe
PRC - [2004/08/04 00:55:04 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wscntfy.exe
PRC - [2009/04/27 11:03:36 | 00,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe
PRC - [2009/02/23 10:49:16 | 02,652,056 | ---- | M] (PC Tools) -- C:\Program Files\PROTECTION\PC Tools Firewall Plus\FirewallGUI.exe
PRC - [2009/03/02 13:08:11 | 00,209,153 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\AntiVir Desktop\avgnt.exe
PRC - [2006/11/13 15:07:02 | 01,289,000 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
PRC - [2006/11/13 15:06:52 | 00,199,464 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\rapimgr.exe
PRC - [2009/05/14 18:20:37 | 00,501,248 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\NouvelAdministrateur\Bureau\OTListIt2.exe
========== Win32 Services (SafeList) ==========
SRV - [2009/04/01 15:46:04 | 00,108,289 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService [Auto | Running])
SRV - [2009/03/02 13:09:54 | 00,185,089 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\AntiVir Desktop\avguard.exe -- (AntiVirService [Auto | Running])
SRV - [2005/09/23 08:28:32 | 00,029,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [Disabled | Stopped])
SRV - [2006/01/04 17:39:13 | 00,046,080 | ---- | M] (C-Dilla Ltd) -- C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE -- (C-DillaSrv [Auto | Running])
SRV - [2005/06/02 16:54:34 | 00,086,606 | ---- | M] (Canon Inc.) -- C:\Program Files\Canon\CAL\CALMAIN.exe -- (CCALib8 [Auto | Running])
SRV - [2005/09/23 08:28:56 | 00,066,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [Disabled | Stopped])
SRV - [2004/08/04 00:54:36 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Disabled | Stopped])
SRV - [2009/04/27 11:03:36 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running])
SRV - [2003/06/20 00:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe -- (MDM [Disabled | Stopped])
SRV - [2008/05/03 06:46:00 | 00,159,812 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc [Auto | Running])
SRV - [2006/10/26 20:49:34 | 00,441,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped])
SRV - [2006/10/26 15:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped])
SRV - [2008/12/11 16:58:44 | 00,146,800 | ---- | M] (PC Tools) -- C:\Program Files\PROTECTION\PC Tools Firewall Plus\FWService.exe -- (PCToolsFirewallPlus [Auto | Running])
SRV - [2002/09/20 16:50:10 | 00,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default) [Auto | Running])
SRV - [2007/01/19 12:54:14 | 00,097,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc [Disabled | Stopped])
========== Driver Services (SafeList) ==========
DRV - [2002/04/01 08:15:00 | 00,004,816 | ---- | M] (Andrea Electronics Corporation) -- C:\WINDOWS\system32\drivers\aeaudio.sys -- (aeaudio [On_Demand | Running])
DRV - [2003/06/19 09:30:18 | 00,752,764 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM [On_Demand | Stopped])
DRV - [2005/02/16 10:06:18 | 00,018,816 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\System32\Drivers\APLMp50.sys -- (APLMp50 [On_Demand | Stopped])
DRV - [2008/11/25 12:40:01 | 00,008,552 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\System32\drivers\asctrm.sys -- (ASCTRM [Auto | Running])
DRV - [2004/08/04 00:38:44 | 00,701,440 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\DRIVERS\ati2mtag.sys -- (ati2mtag [System | Stopped])
DRV - [2009/02/13 12:34:33 | 00,011,608 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\AntiVir Desktop\avgio.sys -- (avgio [System | Running])
DRV - [2009/03/24 16:07:58 | 00,055,640 | ---- | M] (
Avira GmbH) -- C:\WINDOWS\system32\DRIVERS\avgntflt.sys -- (avgntflt [Auto | Running])
DRV - [2009/03/30 10:32:47 | 00,096,104 | ---- | M] (
Avira GmbH) -- C:\WINDOWS\system32\DRIVERS\avipbb.sys -- (avipbb [System | Running])
DRV - [2001/08/17 22:28:04 | 00,067,167 | ---- | M] (Conexant) -- C:\WINDOWS\System32\DRIVERS\HSF_BSC2.sys -- (basic2 [On_Demand | Stopped])
DRV - [2006/01/04 17:39:13 | 00,058,160 | ---- | M] (Macrovision) -- C:\WINDOWS\System32\drivers\CDANT.SYS -- (C-Dilla [On_Demand | Stopped])
DRV - [2006/07/24 19:08:41 | 00,012,464 | ---- | M] (Macrovision Europe Ltd) -- C:\WINDOWS\System32\drivers\CdaC15BA.SYS -- (CdaC15BA [Auto | Running])
DRV - [2001/08/17 20:13:08 | 00,027,165 | ---- | M] (VIA Technologies, Inc. ) -- C:\WINDOWS\System32\DRIVERS\fetnd5.sys -- (FETNDIS [On_Demand | Running])
DRV - [2004/08/04 01:05:42 | 00,010,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DRIVERS\gameenum.sys -- (gameenum [On_Demand | Running])
DRV - [2001/08/17 22:28:10 | 00,542,879 | ---- | M] (Conexant) -- C:\WINDOWS\System32\DRIVERS\HSF_MSFT.sys -- (hsf_msft [On_Demand | Stopped])
DRV - [2001/08/17 21:57:38 | 00,016,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\MODEMCSA.sys -- (MODEMCSA [On_Demand | Stopped])
DRV - [2001/08/17 23:00:04 | 00,002,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401 [On_Demand | Stopped])
DRV - [2004/08/03 22:59:52 | 00,040,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\DRIVERS\NMnt.sys -- (nm [On_Demand | Stopped])
DRV - [2008/05/03 06:46:00 | 06,554,496 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\DRIVERS\nv4_mini.sys -- (nv [On_Demand | Running])
DRV - [2003/09/23 11:38:34 | 00,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\system32\PCAMPR5.SYS -- (PCAMPR5 [On_Demand | Stopped])
DRV - [2006/03/01 19:53:54 | 00,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\system32\PCANDIS5.SYS -- (PCANDIS5 [On_Demand | Stopped])
DRV - [2008/12/18 12:16:56 | 00,073,840 | ---- | M] (PC Tools) -- C:\WINDOWS\system32\drivers\PCTAppEvent.sys -- (PCTAppEvent [Auto | Running])
DRV - [2008/12/11 08:38:22 | 00,159,600 | ---- | M] (PC Tools) -- C:\WINDOWS\system32\drivers\pctgntdi.sys -- (pctgntdi [System | Running])
DRV - [2009/01/21 10:38:32 | 00,095,640 | ---- | M] (PC Tools) -- C:\WINDOWS\system32\drivers\pctplfw.sys -- (pctplfw [On_Demand | Running])
DRV - [2003/03/21 13:34:08 | 00,009,856 | ---- | M] (Padus, Inc.) -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc [On_Demand | Running])
DRV - [2004/05/05 22:48:40 | 00,004,228 | ---- | M] (PowerQuest Corporation) -- C:\WINDOWS\System32\drivers\PQNTDRV.sys -- (PQNTDrv [System | Running])
DRV - [2001/09/28 14:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running])
DRV - [2001/08/17 22:28:10 | 00,057,471 | ---- | M] (Conexant) -- C:\WINDOWS\System32\DRIVERS\HSF_SAMP.sys -- (Rksample [On_Demand | Stopped])
DRV - [2001/09/28 14:00:00 | 00,005,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Drivers\RootMdm.sys -- (ROOTMODEM [On_Demand | Stopped])
DRV - [2008/11/02 10:44:10 | 00,056,572 | ---- | M] (PowerISO Computing, Inc.) -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu [System | Running])
DRV - [2006/10/06 22:55:43 | 00,012,464 | ---- | M] (Macrovision Europe Ltd) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [Auto | Running])
DRV - [2008/09/22 12:29:18 | 00,097,408 | ---- | M] (PC Tools) -- C:\WINDOWS\system32\DRIVERS\pctfw.sys -- (SFilter [On_Demand | Running])
DRV - [2003/07/15 16:00:00 | 00,578,368 | ---- | M] (Analog Devices, Inc.) -- C:\WINDOWS\system32\drivers\smwdm.sys -- (smwdm [On_Demand | Running])
DRV - [2001/11/05 10:23:14 | 00,006,097 | ---- | M] (Sony Corporation) -- C:\WINDOWS\system32\DRIVERS\sonyhcb.sys -- (sonyhcb [Boot | Stopped])
DRV - [2001/11/05 10:23:52 | 00,299,923 | ---- | M] (Sony Corporation) -- C:\WINDOWS\system32\DRIVERS\sonyhcs.sys -- (sonyhcs [On_Demand | Stopped])
DRV - [2007/01/14 21:29:01 | 00,639,224 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running])
DRV - [2009/02/13 12:49:30 | 00,028,376 | ---- | M] (
Avira GmbH) -- C:\WINDOWS\system32\DRIVERS\ssmdrv.sys -- (ssmdrv [System | Running])
DRV - [2007/05/02 12:11:16 | 00,083,592 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\system32\DRIVERS\ss_bus.sys -- (ss_bus [On_Demand | Stopped])
DRV - [2007/05/02 12:11:18 | 00,015,112 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys -- (ss_mdfl [On_Demand | Stopped])
DRV - [2007/05/02 12:11:18 | 00,109,704 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\system32\DRIVERS\ss_mdm.sys -- (ss_mdm [On_Demand | Stopped])
DRV - [2006/07/24 17:05:00 | 00,005,632 | ---- | M] () -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen [System | Running])
DRV - [2004/08/04 00:07:56 | 00,059,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\usbaudio.sys -- (usbaudio [On_Demand | Stopped])
DRV - [2005/10/21 03:47:05 | 00,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\DRIVERS\usb8023x.sys -- (usb_rndisx [On_Demand | Stopped])
DRV - [2006/02/23 12:38:32 | 00,009,728 | R--- | M] (VIA Technologies, Inc.) -- C:\WINDOWS\system32\DRIVERS\videX32.sys -- (videX32 [Boot | Running])
DRV - [2002/10/24 10:07:00 | 00,006,912 | ---- | M] (VIA Technologies, Inc.) -- C:\WINDOWS\System32\Drivers\vulfnth.sys -- (vulfnths [On_Demand | Stopped])
DRV - [2002/11/13 11:34:06 | 00,010,496 | ---- | M] (VIA Technologies, Inc.) -- C:\WINDOWS\System32\Drivers\vulfntr.sys -- (vulfntrs [On_Demand | Stopped])
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
IE - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ixquick.com/
IE - URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\OrangeHSS\SearchURLHook\SearchPageURL.dll File not found
IE - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\S-1-5-21-1757981266-1343024091-725345543-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.ixquick.com/fra/"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}:6.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: unplug@compunach:2.003
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.10
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2009/04/27 11:03:38 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009/05/10 20:14:18 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009/05/09 09:57:49 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.9\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009/05/10 20:14:18 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.9\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009/05/09 09:57:49 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.21\extensions\\Components: C:\PROGRAM FILES\MOZILLA THUNDERBIRD\COMPONENTS [2009/03/20 19:51:19 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.21\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA THUNDERBIRD\PLUGINS [2009/05/09 09:57:49 | 00,000,000 | ---D | M]
[2009/01/02 23:27:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\mozilla\Extensions
[2009/01/02 23:27:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/05/16 09:44:27 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\mozilla\Firefox\Profiles\legnr8m7.default\extensions
[2009/04/20 21:32:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\mozilla\Firefox\Profiles\legnr8m7.default\extensions\unplug@compunach
[2009/05/16 18:49:12 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/04/30 14:35:01 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2007/09/08 20:51:39 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
[2009/04/27 11:03:58 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009/04/30 14:34:53 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/04/30 14:34:53 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2008/11/28 21:22:45 | 00,001,516 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
[2008/11/28 21:22:45 | 00,000,757 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
[2008/11/28 21:22:45 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2008/11/28 21:22:45 | 00,000,748 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\MediaDICO-fr.xml
[2008/11/28 21:22:45 | 00,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
[2008/11/28 21:22:45 | 00,000,652 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml
[2009/04/03 18:02:40 | 00,000,815 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo.xml
O1 HOSTS File: (305374 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1001namen.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 127.0.0.1 123haustiereundmehr.com
O1 - Hosts: 10539 more lines...
O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {2B60FCB3-C93D-4ECF-ACC3-EE4D19E6AF3C} - Reg Error: Key error. File not found
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\PROTECTION\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - Reg Error: Key error. File not found
O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [00PCTFW] "C:\Program Files\PROTECTION\PC Tools Firewall Plus\FirewallGUI.exe" -s (PC Tools)
O4 - HKLM..\Run: [avgnt] "C:\Program Files\
Avira\AntiVir Desktop\avgnt.exe" /min (
Avira GmbH)
O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup (NVIDIA Corporation)
O4 - HKLM..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" (Sun Microsystems, Inc.)
O4 - HKU\S-1-5-21-1757981266-1343024091-725345543-1006..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsMenu = 1
O7 - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\PROTECTION\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O15 - HKLM\..Trusted Domains: 49 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\.DEFAULT\..Trusted Domains: 51 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-18\..Trusted Domains: 51 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-19\..Trusted Domains: 3 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-20\..Trusted Domains: 3 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1757981266-1343024091-725345543-1006\..Trusted Domains: 49 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}
http://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupda ... 4735226994 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftup ... 3661829911 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
http://fpdownload.macromedia.com/get/fl ... rashim.cab (Reg Error: Key error.)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F}
http://v4.windowsupdate.microsoft.com/C ... 0320833333 (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://download.macromedia.com/pub/shoc ... wflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Interfaces\{A67E149E-EC81-4BA0-8709-7161CE1F8206}\\NameServer = 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\System32\msdxm.ocx (Microsoft Corporation)
O18 - Protocol\Filter: - text/xml - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003/12/08 19:07:51 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/03/03 21:00:48 | 00,000,049 | R--- | M] () - G:\Autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2006/03/20 18:54:59 | 00,679,936 | R--- | M] () - G:\autorun.exe -- [ CDFS ]
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\autorun.exe -- [2006/03/20 18:54:59 | 00,679,936 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
========== Files/Folders - Created Within 30 Days ==========
[6 C:\WINDOWS\*.tmp files]
[2009/05/17 15:39:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Nouveau dossier
[2009/05/16 09:36:48 | 00,001,376 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\FindyKill V4.728.lnk
[2009/05/16 09:36:45 | 00,000,000 | ---D | C] -- C:\FindyKill
[2009/05/16 09:35:42 | 01,380,961 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\FindyKill.exe
[2009/05/14 19:49:27 | 00,027,007 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Image1.jpg
[2009/05/14 18:26:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\Malwarebytes
[2009/05/14 18:26:04 | 00,000,797 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2009/05/14 18:26:03 | 00,015,504 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2009/05/14 18:25:52 | 00,038,496 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2009/05/14 18:25:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2009/05/14 18:21:13 | 02,967,800 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\NouvelAdministrateur\Bureau\mbam-setup.exe
[2009/05/14 18:20:34 | 00,501,248 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\NouvelAdministrateur\Bureau\OTListIt2.exe
[2009/05/13 21:09:55 | 00,001,094 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1757981266-1343024091-725345543-1003.job
[2009/05/05 13:07:40 | 00,000,000 | ---D | C] -- C:\Program Files\Securitoo
[2009/05/05 13:06:54 | 00,034,688 | ---- | C] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\System32\pcampr5.sys
[2009/04/30 14:59:16 | 00,096,104 | ---- | C] (
Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2009/04/30 14:59:16 | 00,055,640 | ---- | C] (
Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2009/04/30 14:59:16 | 00,045,416 | ---- | C] (
Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2009/04/30 14:59:16 | 00,028,376 | ---- | C] (
Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2009/04/30 14:59:16 | 00,022,360 | ---- | C] (
Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2009/04/30 14:59:09 | 00,000,000 | ---D | C] -- C:\Program Files\
Avira
[2009/04/30 14:59:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\
Avira
[2009/04/28 22:14:07 | 00,058,904 | ---- | C] () -- C:\WINDOWS\System32\is4tray.dll
[2009/04/28 22:13:46 | 00,000,000 | ---D | C] -- C:\Program Files\Invisible Secrets 4
[2009/04/27 14:36:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\PCToolsFirewallPlus
[2009/04/27 14:34:56 | 00,130,424 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys
[2009/04/27 14:34:56 | 00,073,840 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTAppEvent.sys
[2009/04/27 14:34:54 | 00,159,600 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctgntdi.sys
[2009/04/27 14:34:27 | 00,097,408 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctfw.sys
[2009/04/27 14:34:27 | 00,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\PC Tools
[2009/04/27 14:34:24 | 00,095,640 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplfw.sys
[2009/04/27 13:15:13 | 00,000,000 | ---D | C] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\TeamViewer
[2009/04/27 12:39:12 | 00,000,512 | ---- | C] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2009/04/27 12:34:14 | 00,000,000 | ---D | C] -- C:\Program Files\Lavasoft
[2009/04/26 20:59:39 | 00,000,000 | ---D | C] -- C:\Documents and Settings\NouvelAdministrateur\Bureau\SAUVEGARDES REGISTRE
[2009/04/23 08:38:30 | 01,606,696 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\TeamViewerQS_fr.exe
[2009/04/22 11:28:36 | 00,073,728 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\CleanHandlers.exe
[2009/04/21 20:38:22 | 00,001,056 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Spybot - Search & Destroy.lnk
[2009/04/20 20:32:50 | 00,000,552 | ---- | C] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Raccourci vers Bureau.lnk
[2009/04/20 16:29:41 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009/04/18 14:21:14 | 00,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/04/18 14:21:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\NouvelAdministrateur\Application Data\Sun
[2009/04/18 14:12:15 | 00,000,000 | ---D | C] -- C:\WINDOWS\CSC
[2009/03/31 17:53:43 | 00,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll
[2009/02/24 16:57:00 | 00,000,034 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
[2009/02/24 14:09:31 | 00,765,952 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009/02/24 14:09:30 | 00,383,238 | ---- | C] () -- C:\WINDOWS\System32\libmp3lame-0.dll
[2008/12/20 15:57:40 | 00,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll
[2008/07/18 10:56:05 | 00,000,074 | ---- | C] () -- C:\WINDOWS\Babyegg.INI
[2008/05/03 06:46:00 | 01,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008/05/03 06:46:00 | 01,486,848 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008/05/03 06:46:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008/05/03 06:46:00 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2008/05/03 06:46:00 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2008/03/17 19:43:31 | 00,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2007/12/05 11:08:14 | 00,018,944 | ---- | C] ( ) -- C:\WINDOWS\System32\IMPLODE.DLL
[2007/12/05 11:08:12 | 00,210,944 | ---- | C] () -- C:\WINDOWS\System32\Msvcrt10.dll
[2007/12/05 11:03:35 | 00,046,080 | ---- | C] () -- C:\WINDOWS\System32\lftif60n.dll
[2007/12/05 11:03:35 | 00,043,008 | ---- | C] () -- C:\WINDOWS\System32\ltfil60n.dll
[2007/12/05 11:03:35 | 00,020,480 | ---- | C] () -- C:\WINDOWS\System32\lfpsd60n.dll
[2007/12/05 11:03:35 | 00,019,968 | ---- | C] () -- C:\WINDOWS\System32\lftga60n.dll
[2007/12/05 11:03:35 | 00,019,456 | ---- | C] () -- C:\WINDOWS\System32\lfwpg60n.dll
[2007/12/05 11:03:35 | 00,019,456 | ---- | C] () -- C:\WINDOWS\System32\lfwmf60n.dll
[2007/12/05 11:03:34 | 00,176,128 | ---- | C] () -- C:\WINDOWS\System32\lffax60n.dll
[2007/12/05 11:03:34 | 00,110,080 | ---- | C] () -- C:\WINDOWS\System32\lfpng60n.dll
[2007/12/05 11:03:34 | 00,023,552 | ---- | C] () -- C:\WINDOWS\System32\lfpcx60n.dll
[2007/12/05 11:03:34 | 00,022,528 | ---- | C] () -- C:\WINDOWS\System32\lfpct60n.dll
[2007/12/05 11:03:34 | 00,022,528 | ---- | C] () -- C:\WINDOWS\System32\lfeps60n.dll
[2007/12/05 11:03:34 | 00,018,432 | ---- | C] () -- C:\WINDOWS\System32\lfmsp60n.dll
[2007/12/05 11:03:34 | 00,017,920 | ---- | C] () -- C:\WINDOWS\System32\lfmac60n.dll
[2007/12/05 11:03:33 | 00,141,824 | ---- | C] () -- C:\WINDOWS\System32\lfcmp60n.dll
[2007/12/05 11:03:33 | 00,022,016 | ---- | C] () -- C:\WINDOWS\System32\lfbmp60n.dll
[2007/12/05 11:03:25 | 00,021,986 | ---- | C] () -- C:\WINDOWS\crwd32.ini
[2007/06/30 21:43:30 | 00,002,813 | ---- | C] () -- C:\WINDOWS\mgxoschk.ini
[2007/06/01 14:32:47 | 00,000,173 | ---- | C] () -- C:\WINDOWS\APACHEAV.SYS
[2007/03/29 10:54:55 | 00,000,239 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2007/03/22 17:13:15 | 00,036,363 | ---- | C] () -- C:\WINDOWS\CSTBox.INI
[2007/01/14 21:29:01 | 00,639,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2006/09/08 21:02:23 | 00,000,724 | ---- | C] () -- C:\WINDOWS\wacam.ini
[2006/09/02 19:18:44 | 00,000,532 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2006/09/01 14:23:17 | 00,000,021 | ---- | C] () -- C:\WINDOWS\kit.ini
[2006/08/08 19:19:21 | 00,038,609 | ---- | C] () -- C:\WINDOWS\unvpeye.ini
[2006/06/03 00:15:44 | 00,294,912 | ---- | C] () -- C:\WINDOWS\System32\LDecVorbis.dll
[2006/05/24 19:37:27 | 00,045,568 | RHS- | C] () -- C:\WINDOWS\System32\cygz.dll
[2006/05/24 19:37:27 | 00,027,648 | -HS- | C] () -- C:\WINDOWS\System32\AVSredirect.dll
[2006/04/05 20:10:30 | 00,069,632 | R--- | C] () -- C:\WINDOWS\System32\xmltok.dll
[2006/04/05 20:10:30 | 00,036,864 | R--- | C] () -- C:\WINDOWS\System32\xmlparse.dll
[2006/03/20 20:10:01 | 00,000,972 | ---- | C] () -- C:\WINDOWS\disney.ini
[2006/02/24 10:41:59 | 00,438,272 | ---- | C] () -- C:\WINDOWS\System32\OpenQuicktimeLib.dll
[2006/02/24 10:41:59 | 00,061,440 | ---- | C] () -- C:\WINDOWS\System32\libfaac.dll
[2006/02/23 18:36:20 | 01,798,144 | ---- | C] () -- C:\WINDOWS\System32\ltmm_n.dll
[2006/02/23 18:36:20 | 00,262,144 | ---- | C] () -- C:\WINDOWS\System32\LMOggSpl.dll
[2006/02/23 18:36:20 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\LMOggMux.dll
[2006/02/10 21:48:58 | 00,000,014 | ---- | C] () -- C:\WINDOWS\AKA2.INI
[2006/02/10 21:48:58 | 00,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2006/02/10 20:51:45 | 00,000,043 | ---- | C] () -- C:\WINDOWS\akaklike.ini
[2005/12/02 21:51:26 | 00,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI
[2005/07/04 11:23:31 | 00,001,891 | ---- | C] () -- C:\WINDOWS\System32\MSMINI.DLL
[2005/06/08 15:48:15 | 00,000,000 | ---- | C] () -- C:\WINDOWS\WATCH.INI
[2005/06/08 15:36:37 | 00,077,796 | ---- | C] () -- C:\WINDOWS\System32\Wndtc32.dll
[2005/05/28 19:45:16 | 00,000,076 | ---- | C] () -- C:\WINDOWS\EXE.INI
[2005/05/28 19:06:59 | 00,000,229 | ---- | C] () -- C:\WINDOWS\provw.ini
[2005/01/08 22:15:04 | 00,003,712 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/11/23 21:51:16 | 00,002,801 | ---- | C] () -- C:\WINDOWS\tabled32.ini
[2004/11/07 13:07:12 | 00,000,039 | ---- | C] () -- C:\WINDOWS\dversion.ini
[2004/09/29 10:59:26 | 00,000,000 | ---- | C] () -- C:\WINDOWS\bbcauto.INI
[2004/09/01 16:17:53 | 00,000,171 | ---- | C] () -- C:\WINDOWS\SOFTPEG.INI
[2004/08/31 17:56:22 | 00,000,009 | ---- | C] () -- C:\WINDOWS\atlas-fra.INI
[2004/08/04 02:54:38 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2004/08/04 00:54:28 | 00,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll
[2004/06/16 14:17:05 | 00,000,114 | ---- | C] () -- C:\WINDOWS\CDSFDB01.INI
[2004/06/16 14:16:57 | 00,001,104 | ---- | C] () -- C:\WINDOWS\CDSFUNST.INI
[2004/05/20 15:03:18 | 00,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI
[2004/05/19 14:55:40 | 00,000,253 | ---- | C] () -- C:\WINDOWS\Creator.INI
[2004/05/11 16:33:37 | 00,000,040 | ---- | C] () -- C:\WINDOWS\INTER.INI
[2004/05/08 10:57:27 | 00,000,499 | ---- | C] () -- C:\WINDOWS\hegames.ini
[2004/05/07 18:00:20 | 00,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2004/05/07 18:00:20 | 00,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2004/05/07 18:00:20 | 00,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2004/04/30 17:24:10 | 00,000,757 | ---- | C] () -- C:\WINDOWS\Ulead32.ini
[2004/04/30 14:43:20 | 00,006,656 | ---- | C] () -- C:\WINDOWS\System32\CNMVS58.DLL
[2004/04/29 11:21:03 | 00,000,044 | ---- | C] () -- C:\WINDOWS\System32\msssc.dll
[2004/04/29 11:20:49 | 00,003,289 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2004/04/29 11:20:48 | 00,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2004/04/21 14:59:52 | 00,045,056 | R--- | C] () -- C:\WINDOWS\System32\memtest.dll
[2004/04/21 14:59:50 | 00,036,076 | R--- | C] () -- C:\WINDOWS\System32\drivers\vgauti.sys
[2004/04/21 14:59:50 | 00,036,076 | R--- | C] () -- C:\WINDOWS\System32\drivers\msicpl.sys
[2004/03/24 09:22:26 | 00,138,396 | ---- | C] () -- C:\WINDOWS\System32\drivers\PFC027.SYS
[2004/03/02 09:42:43 | 00,000,139 | ---- | C] () -- C:\WINDOWS\msicpl.ini
[2004/01/08 10:30:22 | 00,011,170 | ---- | C] () -- C:\WINDOWS\System32\PA207USD.DLL
[2003/12/09 18:27:20 | 00,000,385 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2003/12/09 16:36:58 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\vusetup.dll
[2002/05/28 03:52:36 | 00,106,496 | ---- | C] () -- C:\WINDOWS\japi.dll
[2001/08/28 14:00:00 | 00,001,362 | ---- | C] () -- C:\WINDOWS\win.ini
[2001/08/28 14:00:00 | 00,000,243 | ---- | C] () -- C:\WINDOWS\system.ini
[2001/06/24 11:32:44 | 00,172,032 | ---- | C] () -- C:\WINDOWS\japi2.dll
[1997/06/14 10:56:08 | 00,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll
========== Files - Modified Within 30 Days ==========
[1 C:\WINDOWS\System32\drivers\*.tmp files]
[1 C:\WINDOWS\System32\*.tmp files]
[6 C:\WINDOWS\*.tmp files]
[2009/05/17 16:12:34 | 00,171,848 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2009/05/17 16:12:14 | 00,000,062 | -HS- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Local Settings\desktop.ini
[2009/05/17 16:11:51 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/05/17 16:11:49 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/05/17 15:52:46 | 00,001,094 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1757981266-1343024091-725345543-1003.job
[2009/05/17 15:44:41 | 00,459,780 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2009/05/17 15:44:41 | 00,393,638 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/05/17 15:44:41 | 00,072,118 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2009/05/17 15:44:41 | 00,059,268 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/05/17 15:44:40 | 00,996,874 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/05/17 15:44:40 | 00,344,358 | ---- | M] () -- C:\WINDOWS\System32\perfh040.dat
[2009/05/17 15:44:40 | 00,041,106 | ---- | M] () -- C:\WINDOWS\System32\perfc040.dat
[2009/05/17 09:13:05 | 00,002,228 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/05/16 09:36:48 | 00,001,376 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\FindyKill V4.728.lnk
[2009/05/16 09:36:08 | 01,380,961 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\FindyKill.exe
[2009/05/14 19:49:27 | 00,027,007 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Image1.jpg
[2009/05/14 18:26:04 | 00,000,797 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2009/05/14 18:21:53 | 02,967,800 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\NouvelAdministrateur\Bureau\mbam-setup.exe
[2009/05/14 18:20:37 | 00,501,248 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\NouvelAdministrateur\Bureau\OTListIt2.exe
[2009/05/14 18:16:12 | 00,305,374 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009/05/09 10:17:27 | 00,305,250 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090514-181612.backup
[2009/05/06 18:17:30 | 00,227,840 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Composition1.pub
[2009/05/04 12:38:00 | 00,000,512 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2009/04/29 10:41:48 | 00,036,363 | ---- | M] () -- C:\WINDOWS\CSTBox.INI
[2009/04/28 22:14:07 | 00,058,904 | ---- | M] () -- C:\WINDOWS\System32\is4tray.dll
[2009/04/27 07:37:20 | 00,469,192 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/04/23 08:38:32 | 01,606,696 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\TeamViewerQS_fr.exe
[2009/04/21 20:45:20 | 00,304,439 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090509-101727.backup
[2009/04/21 20:38:22 | 00,001,056 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Spybot - Search & Destroy.lnk
[2009/04/21 20:19:11 | 00,000,114 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090421-204520.backup
[2009/04/21 18:04:08 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\lmhosts
[2009/04/21 18:00:45 | 00,309,200 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090421-201842.backup
[2009/04/21 18:00:45 | 00,309,200 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090421-201911.backup
[2009/04/21 17:53:05 | 00,000,239 | ---- | M] () -- C:\WINDOWS\wininit.ini
[2009/04/21 16:56:59 | 00,309,200 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090421-180045.backup
[2009/04/20 20:32:50 | 00,000,552 | ---- | M] () -- C:\Documents and Settings\NouvelAdministrateur\Bureau\Raccourci vers Bureau.lnk
[2009/04/18 16:11:21 | 00,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/04/18 13:24:06 | 00,001,480 | ---- | M] () -- C:\WINDOWS\System32\tmp.reg
[2009/04/18 13:24:02 | 00,309,074 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20090421-165659.backup
========== Alternate Data Streams ==========
@Alternate Data Stream - 143 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C31F31E6
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
<End>
________________________________________________________________________________________________________________
A +
Merci.