OTL logfile created on: 2010-11-08 18:18:57 - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\Famille_Buchet\Desktop
64bit-Windows Vista Home
Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: yyyy-MM-dd
4,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 64,00% Memory free
8,00 Gb Paging File | 6,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 285,04 Gb Total Space | 44,13 Gb Free Space | 15,48% Space Free | Partition Type: NTFS
Drive D: | 13,05 Gb Total Space | 2,70 Gb Free Space | 20,73% Space Free | Partition Type: NTFS
Computer Name: PC-BUCHET_D | User Name: Famille_Buchet | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2010-11-08 17:45:50 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Famille_Buchet\Desktop\OTL.exe
PRC - [2010-09-23 06:47:16 | 000,349,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
PRC - [2010-08-17 15:39:03 | 000,135,336 | ---- | M] (
Avira GmbH) -- C:\Program Files (x86)\
Avira\AntiVir Desktop\sched.exe
PRC - [2010-08-17 15:38:55 | 000,281,768 | ---- | M] (
Avira GmbH) -- C:\Program Files (x86)\
Avira\AntiVir Desktop\avgnt.exe
PRC - [2010-08-17 15:38:55 | 000,267,944 | ---- | M] (
Avira GmbH) -- C:\Program Files (x86)\
Avira\AntiVir Desktop\avguard.exe
PRC - [2009-06-17 06:44:11 | 000,085,160 | ---- | M] (Elaborate Bytes AG) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
PRC - [2007-10-24 05:02:16 | 000,358,936 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2007-10-24 05:02:14 | 000,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
========== Modules (SafeList) ==========
MOD - [2010-11-08 17:45:50 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Famille_Buchet\Desktop\OTL.exe
MOD - [2010-08-31 10:39:57 | 001,684,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18523_none_5cdd65e20837faf2\comctl32.dll
MOD - [2010-05-04 13:39:54 | 000,248,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWOW64\msshsq.dll
MOD - [2008-01-20 21:51:11 | 000,183,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWOW64\duser.dll
========== Win32 Services (SafeList) ==========
SRV:
64bit: - [2008-01-20 21:47:32 | 000,383,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2010-10-25 14:47:07 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-08-17 15:39:03 | 000,135,336 | ---- | M] (
Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\
Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2010-08-17 15:38:55 | 000,267,944 | ---- | M] (
Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\
Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2008-07-27 13:03:13 | 000,069,632 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2007-10-24 05:02:16 | 000,358,936 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)
========== Driver Services (SafeList) ==========
DRV:
64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\SymIM.sys -- (SymIMMP)
DRV:
64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\SymIM.sys -- (SymIM)
DRV:
64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV:
64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV:
64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\ipinip.sys -- (IpInIp)
DRV:
64bit: - [2010-08-17 15:39:11 | 000,116,568 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\avipbb.sys -- (avipbb)
DRV:
64bit: - [2010-08-17 15:39:11 | 000,081,584 | ---- | M] () [File_System | Auto | Running] -- C:\Windows\SysNative\DRIVERS\avgntflt.sys -- (avgntflt)
DRV:
64bit: - [2009-12-17 17:25:17 | 000,034,472 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\Drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:
64bit: - [2009-10-26 14:36:22 | 001,202,688 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\smserial.sys -- (smserial)
DRV:
64bit: - [2009-08-09 16:25:45 | 000,036,352 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\VClone.sys -- (VClone)
DRV:
64bit: - [2008-01-20 21:47:28 | 000,046,080 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wpdusb.sys -- (WpdUsb)
DRV:
64bit: - [2008-01-20 21:46:57 | 001,523,712 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\VSTDPV6.SYS -- (HSF_DPV)
DRV:
64bit: - [2008-01-20 21:46:57 | 000,724,480 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\VSTCNXT6.SYS -- (winachsf)
DRV:
64bit: - [2008-01-20 21:46:57 | 000,286,720 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\VSTAZL6.SYS -- (HSFHWAZL)
DRV:
64bit: - [2008-01-20 21:46:55 | 000,111,104 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\sdbus.sys -- (sdbus)
DRV:
64bit: - [2008-01-20 21:46:55 | 000,024,064 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MODEMCSA.sys -- (MODEMCSA)
DRV:
64bit: - [2008-01-18 06:31:30 | 000,320,560 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\SynTP.sys -- (SynTP)
DRV:
64bit: - [2007-09-29 18:03:32 | 000,384,024 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\DRIVERS\iaStor.sys -- (iaStor)
DRV:
64bit: - [2007-09-18 08:12:34 | 000,095,784 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:
64bit: - [2007-09-18 08:12:34 | 000,089,128 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:
64bit: - [2007-09-18 08:12:34 | 000,019,752 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\btwrchid.sys -- (btwrchid)
DRV:
64bit: - [2007-09-17 18:17:46 | 000,135,680 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys -- (RTL8169)
DRV:
64bit: - [2007-07-11 12:30:34 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\HpqRemHid.sys -- (HpqRemHid)
DRV:
64bit: - [2007-06-28 10:09:56 | 003,148,288 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\NETw4v64.sys -- (NETw4v64) Intel(R)
DRV:
64bit: - [2007-06-18 19:13:12 | 000,018,432 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV:
64bit: - [2007-03-26 21:48:24 | 000,055,808 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\rixdpx64.sys -- (rismxdp)
DRV:
64bit: - [2007-03-19 14:09:36 | 000,055,808 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\rimmpx64.sys -- (rimmptsk)
DRV:
64bit: - [2007-02-27 18:10:38 | 000,053,760 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\rimspx64.sys -- (rimsptsk)
DRV:
64bit: - [2006-10-09 21:09:03 | 000,742,696 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\nvm60x64.sys -- (NVENETFD)
DRV:
64bit: - [2006-10-06 21:13:22 | 000,550,912 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\bcmwl664.sys -- (BCM43XV)
DRV:
64bit: - [2006-09-18 16:36:24 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\Wbem\ntfs.mof -- (Ntfs)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
IE - HKLM\..\URLSearchHook: {364d4e0c-543f-4b85-abe3-19551139da4f} - C:\Program Files (x86)\Softonic_France\tbSoft.dll (Conduit Ltd.)
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2362422316-1266326320-2416680866-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
IE - HKU\S-1-5-21-2362422316-1266326320-2416680866-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://search.conduit.com?SearchSource= ... =CT1351374
IE - HKU\S-1-5-21-2362422316-1266326320-2416680866-1000\..\URLSearchHook: {364d4e0c-543f-4b85-abe3-19551139da4f} - C:\Program Files (x86)\Softonic_France\tbSoft.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-2362422316-1266326320-2416680866-1000\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKU\S-1-5-21-2362422316-1266326320-2416680866-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultthis.engineName: "Softonic France Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1351374&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.startup.homepage: "http://www.google.ca/"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1351374&q="
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.15\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010-10-28 20:43:04 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.15\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010-11-07 17:14:12 | 000,000,000 | ---D | M]
[2010-10-24 11:36:14 | 000,000,000 | ---D | M] -- C:\Users\Famille_Buchet\AppData\Roaming\mozilla\Extensions
[2010-11-08 09:25:58 | 000,000,000 | ---D | M] -- C:\Users\Famille_Buchet\AppData\Roaming\mozilla\Firefox\Profiles\d9ilr9c9.default\extensions
[2010-10-28 08:18:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Famille_Buchet\AppData\Roaming\mozilla\Firefox\Profiles\d9ilr9c9.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-08-05 20:37:02 | 000,000,933 | ---- | M] () -- C:\Users\Famille_Buchet\AppData\Roaming\Mozilla\FireFox\Profiles\d9ilr9c9.default\searchplugins\conduit.xml
[2010-11-06 07:41:41 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010-10-24 20:33:38 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010-11-06 07:41:41 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010-11-06 07:41:17 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-10-01 21:19:57 | 000,001,516 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazon-france.xml
[2010-10-01 21:19:57 | 000,001,822 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
[2010-10-01 21:19:57 | 000,000,757 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-france.xml
[2010-10-01 21:19:57 | 000,001,426 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\wikipedia-fr.xml
[2010-10-01 21:19:57 | 000,000,652 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-france.xml
O1 HOSTS File: ([2006-09-18 16:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (Softonic France Toolbar) - {364d4e0c-543f-4b85-abe3-19551139da4f} - C:\Program Files (x86)\Softonic_France\tbSoft.dll (Conduit Ltd.)
O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No CLSID value found.
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3 - HKLM\..\Toolbar: (Softonic France Toolbar) - {364d4e0c-543f-4b85-abe3-19551139da4f} - C:\Program Files (x86)\Softonic_France\tbSoft.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4:
64bit: - HKLM..\Run: [HP Health Check Scheduler] File not found
O4:
64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:
64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.DLL ()
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe (Motorola Inc.)
O4:
64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\
Avira\AntiVir Desktop\avgnt.exe (
Avira GmbH)
O4 - HKLM..\Run: [UCam_Menu] C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O9:
64bit: - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:
64bit: - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_02)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_22)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18:
64bit: - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\http\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\https\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ipp - No CLSID value found
O18:
64bit: - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:
64bit: - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18:
64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\1_Personnel\06_Photos\2010\06-2010\Floride\IMG_3226.JPG
O24 - Desktop BackupWallPaper: C:\1_Personnel\06_Photos\2010\06-2010\Floride\IMG_3226.JPG
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005-09-11 10:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
O33 - MountPoints2\{3b4fa3ae-e2bc-11df-8bca-001e6885cc6e}\Shell - "" = AutoRun
O33 - MountPoints2\{3b4fa3ae-e2bc-11df-8bca-001e6885cc6e}\Shell\AutoRun\command - "" = F:\autorun\autorun.exe -- File not found
O33 - MountPoints2\{ea2c71b2-df98-11df-99a5-001e6885cc6e}\Shell - "" = AutoRun
O33 - MountPoints2\{ea2c71b2-df98-11df-99a5-001e6885cc6e}\Shell\AutoRun\command - "" = G:\WD SmartWare.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2010-11-08 17:58:55 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010-11-08 17:54:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ERUNT
[2010-11-08 17:49:54 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Malwarebytes
[2010-11-08 17:49:38 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2010-11-08 17:49:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2010-11-08 17:49:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010-11-08 17:47:35 | 006,153,352 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Famille_Buchet\Desktop\mbam-setup.exe
[2010-11-08 17:39:56 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\Famille_Buchet\Desktop\OTL.exe
[2010-11-07 16:29:37 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Microsoft Web Folders
[2010-11-06 07:47:51 | 000,000,000 | ---D | C] -- C:\ProgramData\LightScribe
[2010-11-06 07:42:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2010-11-06 07:41:40 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2010-11-06 07:41:40 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2010-11-06 07:41:39 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2010-11-06 07:41:39 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2010-11-03 18:17:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Conduit
[2010-11-03 18:17:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Softonic_France
[2010-11-03 18:16:37 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\vlc
[2010-11-01 11:09:08 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2010-11-01 11:05:25 | 000,000,000 | ---D | C] -- C:\Temp
[2010-10-29 06:43:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2010-10-28 21:11:01 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\muvee Technologies
[2010-10-28 21:00:11 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2010-10-28 20:58:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo! Companion
[2010-10-28 20:58:33 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Yahoo!
[2010-10-28 12:52:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Elaborate Bytes
[2010-10-28 11:28:35 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\CyberLink
[2010-10-28 11:27:10 | 003,356,989 | ---- | C] (Macromedia, Inc.) -- C:\Users\Public\Documents\MobileTV.exe
[2010-10-28 11:27:10 | 003,266,369 | ---- | C] (Macromedia, Inc.) -- C:\Users\Public\Documents\DVD.exe
[2010-10-28 11:27:09 | 003,347,890 | ---- | C] (Macromedia, Inc.) -- C:\Users\Public\Documents\MPV.exe
[2010-10-28 11:27:09 | 002,598,373 | ---- | C] (Macromedia, Inc.) -- C:\Users\Public\Documents\Karaoke.exe
[2010-10-28 11:27:09 | 002,430,849 | ---- | C] (Macromedia, Inc.) -- C:\Users\Public\Documents\Games.exe
[2010-10-28 11:27:09 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\FRA
[2010-10-28 05:35:04 | 001,130,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2010-10-28 05:35:04 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2010-10-28 05:35:04 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2010-10-28 05:35:04 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2010-10-27 10:41:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TLC-Edusoft
[2010-10-27 10:41:10 | 000,316,416 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUn040c.exe
[2010-10-27 05:40:37 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netevent.dll
[2010-10-27 05:40:37 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sscore.dll
[2010-10-27 05:39:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2010-10-26 05:46:50 | 000,037,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\infocardcpl.cpl
[2010-10-26 05:46:46 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardres.dll
[2010-10-26 05:46:45 | 000,781,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationNative_v0300.dll
[2010-10-26 05:46:44 | 000,622,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardagt.exe
[2010-10-26 05:46:44 | 000,097,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\infocardapi.dll
[2010-10-26 05:46:37 | 000,105,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2010-10-26 05:38:02 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2010-10-26 05:37:54 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2010-10-26 05:34:20 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshhttp.dll
[2010-10-26 05:34:18 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2010-10-25 21:13:47 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Microsoft Games
[2010-10-25 20:30:01 | 000,000,000 | ---D | C] -- C:\Program Files\Rosetta Stone
[2010-10-25 15:32:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Rosetta Stone
[2010-10-25 15:32:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rosetta Stone
[2010-10-25 14:47:22 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2010-10-25 14:47:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared
[2010-10-25 05:44:40 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\
Avira
[2010-10-25 05:38:34 | 012,240,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NlsLexicons0007.dll
[2010-10-25 05:33:37 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2010-10-25 05:33:37 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2010-10-25 05:33:37 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2010-10-25 05:33:37 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avicap32.dll
[2010-10-25 05:33:35 | 000,954,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40.dll
[2010-10-25 05:33:35 | 000,954,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc40u.dll
[2010-10-25 05:33:28 | 000,636,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localspl.dll
[2010-10-25 05:33:26 | 000,289,792 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2010-10-25 05:33:26 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2010-10-25 05:33:26 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2010-10-25 05:33:26 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dciman32.dll
[2010-10-25 05:32:45 | 000,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2010-10-25 05:32:37 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbd106n.dll
[2010-10-25 05:32:04 | 000,443,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2010-10-25 05:31:56 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2010-10-25 05:31:51 | 000,281,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2010-10-25 05:31:51 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2010-10-25 05:31:46 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amxread.dll
[2010-10-25 05:31:46 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apilogen.dll
[2010-10-25 05:31:41 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtutils.dll
[2010-10-25 05:31:40 | 000,317,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MP4SDECD.DLL
[2010-10-25 05:31:38 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msshsq.dll
[2010-10-25 05:31:37 | 000,081,920 | ---- | C] (Radius Inc.) -- C:\Windows\SysWow64\iccvid.dll
[2010-10-25 05:31:24 | 002,066,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2010-10-25 05:31:21 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\polstore.dll
[2010-10-25 05:31:21 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winipsec.dll
[2010-10-25 05:31:21 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FwRemoteSvr.dll
[2010-10-25 05:31:12 | 010,624,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2010-10-25 05:31:08 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2010-10-25 05:30:43 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sdohlp.dll
[2010-10-25 05:30:40 | 000,512,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2010-10-25 05:30:37 | 002,452,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2010-10-25 05:30:32 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2010-10-25 05:30:30 | 000,476,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2010-10-25 05:30:30 | 000,467,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2010-10-25 05:30:30 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2010-10-25 05:30:29 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2010-10-25 05:30:29 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieaksie.dll
[2010-10-25 05:30:29 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2010-10-25 05:30:29 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieencode.dll
[2010-10-25 05:30:29 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2010-10-25 05:30:23 | 003,080,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010-10-25 05:30:23 | 002,927,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2010-10-25 05:30:13 | 002,386,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2010-10-25 05:30:12 | 002,868,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2010-10-25 05:30:02 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2010-10-25 05:29:59 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrobj.dll
[2010-10-25 05:29:59 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2010-10-25 05:29:59 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2010-10-25 05:29:59 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2010-10-25 05:29:59 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshext.dll
[2010-10-25 05:29:49 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2010-10-25 05:29:49 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NETSTAT.EXE
[2010-10-25 05:29:49 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ARP.EXE
[2010-10-25 05:29:49 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ROUTE.EXE
[2010-10-25 05:29:49 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MRINFO.EXE
[2010-10-25 05:29:49 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\finger.exe
[2010-10-25 05:29:49 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TCPSVCS.EXE
[2010-10-25 05:29:49 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\HOSTNAME.EXE
[2010-10-25 05:28:59 | 000,996,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2010-10-25 05:28:59 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2010-10-25 05:28:52 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2010-10-25 05:28:50 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dataclen.dll
[2010-10-25 05:28:48 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshrm.dll
[2010-10-25 05:28:42 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\traffic.dll
[2010-10-25 05:28:42 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pacerprf.dll
[2010-10-25 05:28:42 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshqos.dll
[2010-10-25 05:28:34 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdtcprx.dll
[2010-10-25 05:28:34 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xolehlp.dll
[2010-10-25 05:28:32 | 000,062,464 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\SysWow64\l3codeca.acm
[2010-10-25 05:28:18 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2010-10-25 05:28:17 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2010-10-25 05:28:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2010-10-25 05:28:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2010-10-25 05:28:15 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.tlb
[2010-10-25 05:28:15 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amcompat.tlb
[2010-10-25 05:27:49 | 000,866,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpmde.dll
[2010-10-25 05:27:46 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlansec.dll
[2010-10-25 05:27:46 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2010-10-25 05:27:46 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\L2SecHC.dll
[2010-10-24 20:34:36 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\skypePM
[2010-10-24 20:33:42 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Google
[2010-10-24 20:33:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2010-10-24 20:33:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2010-10-24 20:33:25 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2010-10-24 20:33:25 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Skype
[2010-10-24 20:33:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2010-10-24 17:24:21 | 000,000,000 | ---D | C] -- C:\coktel
[2010-10-24 15:05:38 | 000,000,000 | ---D | C] -- C:\1_Personnel
[2010-10-24 14:10:49 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2010-10-24 14:10:48 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2010-10-24 13:58:45 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\HP
[2010-10-24 13:58:30 | 000,000,000 | ---D | C] -- C:\ProgramData\WEBREG
[2010-10-24 13:49:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Hewlett-Packard
[2010-10-24 13:45:46 | 000,000,000 | -H-D | C] -- C:\Config.Msi
[2010-10-24 13:36:11 | 000,000,000 | ---D | C] -- C:\ProgramData\
Avira
[2010-10-24 13:36:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\
Avira
[2010-10-24 13:24:06 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Symantec
[2010-10-24 13:23:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Searches
[2010-10-24 13:23:34 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Identities
[2010-10-24 13:23:32 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Contacts
[2010-10-24 13:23:29 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\VirtualStore
[2010-10-24 13:21:58 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Macromedia
[2010-10-24 13:21:23 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Hewlett-Packard
[2010-10-24 13:21:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Yahoo!
[2010-10-24 13:19:05 | 000,000,000 | ---D | C] -- C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[2010-10-24 13:18:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Activation Assistant for the 2007 Microsoft Office suites
[2010-10-24 13:18:44 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Seven Zip
[2010-10-24 13:17:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2010-10-24 13:17:24 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010-10-24 13:17:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2010-10-24 13:16:56 | 000,000,000 | ---D | C] -- C:\2_Professionnel
[2010-10-24 13:15:58 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2010-10-24 13:15:39 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Microsoft Help
[2010-10-24 13:15:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2010-10-24 13:15:12 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2010-10-24 13:15:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Viewpoint
[2010-10-24 13:15:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Viewpoint
[2010-10-24 13:14:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2010-10-24 13:13:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
[2010-10-24 13:12:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2010-10-24 13:12:22 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Downloaded Installations
[2010-10-24 13:09:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts
[2010-10-24 13:09:06 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2010-10-24 13:09:05 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2010-10-24 13:09:03 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2010-10-24 13:09:02 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2010-10-24 13:09:01 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2010-10-24 13:08:56 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2010-10-24 13:08:54 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2010-10-24 13:08:54 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2010-10-24 13:08:53 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2010-10-24 13:08:51 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2010-10-24 13:08:49 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2010-10-24 13:08:48 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2010-10-24 13:08:46 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2010-10-24 13:08:45 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2010-10-24 13:07:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\HP
[2010-10-24 13:07:31 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2010-10-24 13:06:41 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Adobe
[2010-10-24 13:06:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2010-10-24 13:05:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\LightScribe
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Voisinage réseau
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Voisinage d'impression
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\AppData\Local\Temporary Internet Files
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\SendTo
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Recent
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Modèles
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Documents\Mes vidéos
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Documents\Mes images
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Mes documents
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Menu Démarrer
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Documents\Ma musique
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Local Settings
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\AppData\Local\Historique
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Cookies
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\Application Data
[2010-10-24 13:03:43 | 000,000,000 | -HSD | C] -- C:\Users\Famille_Buchet\AppData\Local\Application Data
[2010-10-24 13:03:42 | 000,000,000 | --SD | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Microsoft
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Videos
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Saved Games
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Pictures
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Music
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Links
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Favorites
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Downloads
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Documents
[2010-10-24 13:03:42 | 000,000,000 | R--D | C] -- C:\Users\Famille_Buchet\Desktop
[2010-10-24 13:03:42 | 000,000,000 | -H-D | C] -- C:\Users\Famille_Buchet\AppData
[2010-10-24 13:03:42 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Temp
[2010-10-24 13:03:42 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Microsoft
[2010-10-24 13:03:42 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Media Center Programs
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\Templates
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\Start Menu
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\My Videos
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\My Pictures
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\My Music
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favorites
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\Documents and Settings
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\Documents
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\Desktop
[2010-10-24 12:58:00 | 000,000,000 | -HSD | C] -- C:\ProgramData\Application Data
[2010-10-24 12:56:58 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-10-24 12:32:07 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Adobe
[2010-10-24 12:24:40 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2010-10-24 11:39:01 | 000,000,000 | ---D | C] -- C:\Program Files\Motorola
[2010-10-24 11:36:51 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Product Assistant
[2010-10-24 11:36:00 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Local\Mozilla
[2010-10-24 11:35:59 | 000,000,000 | ---D | C] -- C:\Users\Famille_Buchet\AppData\Roaming\Mozilla
[2010-10-24 11:25:20 | 000,000,000 | ---D | C] -- C:\ProgramData\AOL
[2010-10-24 11:22:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2010-10-24 11:19:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2010-10-24 11:18:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2010-10-24 11:18:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2010-10-24 11:01:32 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2010-10-24 11:01:32 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2010-10-24 11:01:32 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2010-10-24 11:01:23 | 000,171,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2010-10-24 11:01:23 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
========== Files - Modified Within 30 Days ==========
[2010-11-08 18:01:23 | 000,191,328 | ---- | M] () -- C:\Users\Famille_Buchet\Desktop\00-PAD-nickW.pdf
[2010-11-08 17:54:59 | 000,000,723 | ---- | M] () -- C:\Users\Famille_Buchet\Desktop\NTREGOPT.lnk
[2010-11-08 17:54:59 | 000,000,704 | ---- | M] () -- C:\Users\Famille_Buchet\Desktop\ERUNT.lnk
[2010-11-08 17:49:40 | 000,000,808 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010-11-08 17:47:38 | 006,153,352 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Famille_Buchet\Desktop\mbam-setup.exe
[2010-11-08 17:45:50 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Famille_Buchet\Desktop\OTL.exe
[2010-11-08 17:39:57 | 000,003,216 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010-11-08 17:39:57 | 000,003,216 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010-11-08 17:28:06 | 000,032,726 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010-11-08 17:28:06 | 000,032,726 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010-11-08 17:28:01 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010-11-08 14:48:55 | 001,470,822 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010-11-08 14:48:55 | 000,669,578 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat
[2010-11-08 14:48:55 | 000,587,178 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010-11-08 14:48:55 | 000,123,556 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat
[2010-11-08 14:48:55 | 000,101,250 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010-11-08 14:42:30 | 000,300,320 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010-11-08 14:42:11 | 4293,304,320 | -HS- | M] () -- C:\hiberfil.sys
[2010-11-08 14:40:53 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010-11-08 13:35:53 | 615,986,397 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010-11-07 17:02:33 | 000,001,699 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Notepad.lnk
[2010-11-07 16:38:27 | 000,000,990 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\WINWORD - Raccourci.lnk
[2010-11-07 16:38:22 | 000,000,978 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\EXCEL - Raccourci.lnk
[2010-11-07 16:33:24 | 000,000,376 | ---- | M] () -- C:\Windows\ODBC.INI
[2010-11-07 16:32:59 | 000,001,871 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
[2010-11-06 14:27:37 | 000,080,896 | ---- | M] () -- C:\Users\Famille_Buchet\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-11-06 07:41:16 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\deployJava1.dll
[2010-11-06 07:41:16 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2010-11-06 07:41:16 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaw.exe
[2010-11-06 07:41:16 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\java.exe
[2010-11-02 18:43:41 | 000,002,609 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Rosetta Stone Version 3.lnk
[2010-10-31 13:57:32 | 000,691,852 | ---- | M] () -- C:\Users\Famille_Buchet\Documents\images expo.docx
[2010-10-28 19:37:54 | 000,000,680 | ---- | M] () -- C:\Users\Famille_Buchet\AppData\Local\d3d9caps.dat
[2010-10-28 19:37:11 | 003,266,369 | ---- | M] (Macromedia, Inc.) -- C:\Users\Public\Documents\DVD.exe
[2010-10-28 17:30:59 | 000,000,257 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini
[2010-10-28 13:00:36 | 000,001,561 | ---- | M] () -- C:\Windows\SysWow64\Adiboud'chou.lnk
[2010-10-28 11:27:10 | 003,356,989 | ---- | M] (Macromedia, Inc.) -- C:\Users\Public\Documents\MobileTV.exe
[2010-10-28 11:27:09 | 003,347,890 | ---- | M] (Macromedia, Inc.) -- C:\Users\Public\Documents\MPV.exe
[2010-10-28 11:27:09 | 002,598,373 | ---- | M] (Macromedia, Inc.) -- C:\Users\Public\Documents\Karaoke.exe
[2010-10-28 11:27:09 | 002,430,849 | ---- | M] (Macromedia, Inc.) -- C:\Users\Public\Documents\Games.exe
[2010-10-27 20:05:44 | 000,008,244 | ---- | M] () -- C:\Users\Famille_Buchet\Documents\virement du 27 octobre 2010.png
[2010-10-27 20:03:30 | 000,001,637 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Paint.lnk
[2010-10-27 12:20:43 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010-10-27 10:41:08 | 000,000,000 | ---- | M] () -- C:\Windows\setup32.INI
[2010-10-25 12:39:23 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_00_00.Wdf
[2010-10-24 20:34:52 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010-10-24 13:58:21 | 000,178,005 | ---- | M] () -- C:\Windows\hpoins28.dat
[2010-10-24 13:50:27 | 000,002,002 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
[2010-10-24 13:23:25 | 000,000,081 | ---- | M] () -- C:\Windows\SysNative\LOG
[2010-10-24 13:23:23 | 000,000,044 | ---- | M] () -- C:\Windows\System\hpsysdrv.dat
[2010-10-24 13:15:06 | 000,000,375 | -H-- | M] () -- C:\IPH.PH
[2010-10-24 13:08:07 | 000,110,399 | ---- | M] () -- C:\Windows\hpqins13.dat
[2010-10-24 13:04:36 | 000,000,000 | RHS- | M] () -- C:\Windows\SysWow64\drivers\103C_HP_cNB_Pavilion dv9700 Notebook PC_Y5335KV_0U_QCNF830371B_E480831-121_4A_I30CB_SQuanta_V79.2E_F.58_T080616_WV3-1_L40C_M4094_J320_7Intel_86FD_92.00_#101024_N10EC8168;80864229_(FE782UA#ABC)_XMOBILE_CN10_Z.MRK
[2010-10-24 13:04:36 | 000,000,000 | RHS- | M] () -- C:\Windows\SysNative\drivers\103C_HP_cNB_Pavilion dv9700 Notebook PC_Y5335KV_0U_QCNF830371B_E480831-121_4A_I30CB_SQuanta_V79.2E_F.58_T080616_WV3-1_L40C_M4094_J320_7Intel_86FD_92.00_#101024_N10EC8168;80864229_(FE782UA#ABC)_XMOBILE_CN10_Z.MRK
[2010-10-24 12:54:05 | 000,065,328 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2010-10-24 11:27:06 | 001,079,496 | ---- | M] () -- C:\ProgramData\LuUninstall.LiveUpdate
[2010-10-24 11:23:48 | 000,001,453 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\explorer - Raccourci.lnk
[2010-10-24 11:19:58 | 000,001,802 | ---- | M] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2010-10-18 09:31:10 | 000,026,910 | ---- | M] () -- C:\Users\Famille_Buchet\Documents\Courrier_MAIF_17082010_1.pdf
========== Files Created - No Company Name ==========
[2010-11-08 18:01:18 | 000,191,328 | ---- | C] () -- C:\Users\Famille_Buchet\Desktop\00-PAD-nickW.pdf
[2010-11-08 17:54:59 | 000,000,723 | ---- | C] () -- C:\Users\Famille_Buchet\Desktop\NTREGOPT.lnk
[2010-11-08 17:54:59 | 000,000,704 | ---- | C] () -- C:\Users\Famille_Buchet\Desktop\ERUNT.lnk
[2010-11-08 17:49:40 | 000,000,808 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010-11-08 17:49:36 | 000,024,664 | ---- | C] () -- C:\Windows\SysNative\drivers\mbam.sys
[2010-11-07 17:02:33 | 000,001,699 | ---- | C] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Notepad.lnk
[2010-11-07 16:33:24 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2010-11-07 16:32:59 | 000,001,871 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
[2010-11-01 11:07:54 | 615,986,397 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2010-10-31 13:42:43 | 000,691,852 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\images expo.docx
[2010-10-31 07:44:51 | 000,002,609 | ---- | C] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Rosetta Stone Version 3.lnk
[2010-10-28 19:37:54 | 000,000,680 | ---- | C] () -- C:\Users\Famille_Buchet\AppData\Local\d3d9caps.dat
[2010-10-28 05:35:04 | 001,942,856 | ---- | C] () -- C:\Windows\SysNative\dfshim.dll
[2010-10-28 05:35:04 | 000,444,752 | ---- | C] () -- C:\Windows\SysNative\mscoree.dll
[2010-10-28 05:35:04 | 000,320,352 | ---- | C] () -- C:\Windows\SysNative\PresentationHost.exe
[2010-10-28 05:35:04 | 000,109,912 | ---- | C] () -- C:\Windows\SysNative\PresentationHostProxy.dll
[2010-10-28 05:35:04 | 000,048,960 | ---- | C] () -- C:\Windows\SysNative\netfxperf.dll
[2010-10-27 20:05:44 | 000,008,244 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\virement du 27 octobre 2010.png
[2010-10-27 20:03:30 | 000,001,637 | ---- | C] () -- C:\Users\Famille_Buchet\Application Data\Microsoft\Internet Explorer\Quick Launch\Paint.lnk
[2010-10-27 12:20:43 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2010-10-27 10:41:08 | 000,000,000 | ---- | C] () -- C:\Windows\setup32.INI
[2010-10-27 05:41:14 | 000,442,368 | ---- | C] () -- C:\Windows\SysNative\winhttp.dll
[2010-10-27 05:40:38 | 000,461,824 | ---- | C] () -- C:\Windows\SysNative\drivers\srv.sys
[2010-10-27 05:40:38 | 000,179,712 | ---- | C] () -- C:\Windows\SysNative\srvsvc.dll
[2010-10-27 05:40:38 | 000,144,896 | ---- | C] () -- C:\Windows\SysNative\drivers\srvnet.sys
[2010-10-27 05:40:37 | 000,175,104 | ---- | C] () -- C:\Windows\SysNative\drivers\srv2.sys
[2010-10-27 05:40:37 | 000,017,920 | ---- | C] () -- C:\Windows\SysNative\netevent.dll
[2010-10-27 05:40:37 | 000,012,288 | ---- | C] () -- C:\Windows\SysNative\sscore.dll
[2010-10-27 05:40:33 | 000,975,360 | ---- | C] () -- C:\Windows\SysNative\inetcomm.dll
[2010-10-26 05:46:50 | 000,049,160 | ---- | C] () -- C:\Windows\SysNative\infocardcpl.cpl
[2010-10-26 05:46:47 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\icardres.dll
[2010-10-26 05:46:45 | 001,168,928 | ---- | C] () -- C:\Windows\SysNative\PresentationNative_v0300.dll
[2010-10-26 05:46:45 | 000,167,432 | ---- | C] () -- C:\Windows\SysNative\infocardapi.dll
[2010-10-26 05:46:44 | 001,383,936 | ---- | C] () -- C:\Windows\SysNative\icardagt.exe
[2010-10-26 05:46:37 | 000,126,520 | ---- | C] () -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2010-10-26 05:38:02 | 000,158,208 | ---- | C] () -- C:\Windows\SysNative\mscorier.dll
[2010-10-26 05:37:57 | 000,076,288 | ---- | C] () -- C:\Windows\SysNative\mscories.dll
[2010-10-26 05:34:20 | 000,032,768 | ---- | C] () -- C:\Windows\SysNative\nshhttp.dll
[2010-10-26 05:34:18 | 000,610,304 | ---- | C] () -- C:\Windows\SysNative\drivers\http.sys
[2010-10-26 05:34:18 | 000,033,792 | ---- | C] () -- C:\Windows\SysNative\httpapi.dll
[2010-10-26 05:31:20 | 002,960,422 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\Mouse and a Mousetrap.wmv
[2010-10-26 05:29:17 | 000,961,635 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\_CATEGORIE.pdf
[2010-10-26 05:29:17 | 000,067,008 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\Coordonees_Bancaires_Desjardins.PDF
[2010-10-26 05:29:17 | 000,045,568 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\Billets Noël 2010 --.doc
[2010-10-26 05:29:17 | 000,027,136 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\Adresses &Téléphones.xls
[2010-10-26 05:29:16 | 000,149,707 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\Informations Location Jean Légaré.pdf
[2010-10-26 05:29:16 | 000,026,910 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\Courrier_MAIF_17082010_1.pdf
[2010-10-26 05:29:16 | 000,026,624 | ---- | C] () -- C:\Users\Famille_Buchet\Documents\procedure transfert 2010.doc
[2010-10-25 12:39:23 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_00_00.Wdf
[2010-10-25 05:38:33 | 012,240,896 | ---- | C] () -- C:\Windows\SysNative\NlsLexicons0007.dll
[2010-10-25 05:38:31 | 002,644,480 | ---- | C] () -- C:\Windows\SysNative\NlsLexicons0009.dll
[2010-10-25 05:38:14 | 001,361,920 | ---- | C] () -- C:\Windows\SysNative\NaturalLanguage6.dll
[2010-10-25 05:33:45 | 001,420,176 | ---- | C] () -- C:\Windows\SysNative\drivers\tcpip.sys
[2010-10-25 05:33:43 | 001,923,584 | ---- | C] () -- C:\Windows\SysNative\ole32.dll
[2010-10-25 05:33:39 | 000,093,184 | ---- | C] () -- C:\Windows\SysNative\mciavi32.dll
[2010-10-25 05:33:39 | 000,054,272 | ---- | C] () -- C:\Windows\SysNative\iyuv_32.dll
[2010-10-25 05:33:39 | 000,038,400 | ---- | C] () -- C:\Windows\SysNative\msvidc32.dll
[2010-10-25 05:33:39 | 000,025,600 | ---- | C] () -- C:\Windows\SysNative\msyuv.dll
[2010-10-25 05:33:39 | 000,015,872 | ---- | C] () -- C:\Windows\SysNative\msrle32.dll
[2010-10-25 05:33:39 | 000,013,824 | ---- | C] () -- C:\Windows\SysNative\tsbyuv.dll
[2010-10-25 05:33:38 | 000,108,544 | ---- | C] () -- C:\Windows\SysNative\avifil32.dll
[2010-10-25 05:33:38 | 000,076,800 | ---- | C] () -- C:\Windows\SysNative\avicap32.dll
[2010-10-25 05:33:37 | 000,143,360 | ---- | C] () -- C:\Windows\SysNative\msvfw32.dll
[2010-10-25 05:33:29 | 000,791,552 | ---- | C] () -- C:\Windows\SysNative\localspl.dll
[2010-10-25 05:33:26 | 000,366,080 | ---- | C] () -- C:\Windows\SysNative\atmfd.dll
[2010-10-25 05:33:26 | 000,096,256 | ---- | C] () -- C:\Windows\SysNative\fontsub.dll
[2010-10-25 05:33:26 | 000,048,128 | ---- | C] () -- C:\Windows\SysNative\atmlib.dll
[2010-10-25 05:33:24 | 001,280,512 | ---- | C] () -- C:\Windows\SysNative\rpcrt4.dll
[2010-10-25 05:33:19 | 000,002,048 | ---- | C] () -- C:\Windows\SysNative\tzres.dll
[2010-10-25 05:32:52 | 000,656,384 | ---- | C] () -- C:\Windows\SysNative\kerberos.dll
[2010-10-25 05:32:47 | 000,437,248 | ---- | C] () -- C:\Windows\SysNative\WSDApi.dll
[2010-10-25 05:32:44 | 000,818,688 | ---- | C] () -- C:\Windows\SysNative\WMSPDMOD.DLL
[2010-10-25 05:32:40 | 001,078,840 | ---- | C] () -- C:\Windows\SysNative\winload.efi
[2010-10-25 05:32:40 | 001,066,040 | ---- | C] () -- C:\Windows\SysNative\winload.exe
[2010-10-25 05:32:40 | 000,382,008 | ---- | C] () -- C:\Windows\SysNative\ci.dll
[2010-10-25 05:32:39 | 000,993,336 | ---- | C] () -- C:\Windows\SysNative\winresume.efi
[2010-10-25 05:32:39 | 000,982,584 | ---- | C] () -- C:\Windows\SysNative\winresume.exe
[2010-10-25 05:32:39 | 000,022,072 | ---- | C] () -- C:\Windows\SysNative\kd1394.dll
[2010-10-25 05:32:38 | 000,474,624 | ---- | C] () -- C:\Windows\SysNative\srcore.dll
[2010-10-25 05:32:38 | 000,058,368 | ---- | C] () -- C:\Windows\SysNative\setbcdlocale.dll
[2010-10-25 05:32:37 | 000,339,968 | ---- | C] () -- C:\Windows\SysNative\rstrui.exe
[2010-10-25 05:32:37 | 000,046,592 | ---- | C] () -- C:\Windows\SysNative\srclient.dll
[2010-10-25 05:32:37 | 000,018,944 | ---- | C] () -- C:\Windows\SysNative\srdelayed.exe
[2010-10-25 05:32:37 | 000,007,680 | ---- | C] () -- C:\Windows\SysNative\kbd106n.dll
[2010-10-25 05:32:08 | 012,898,304 | ---- | C] () -- C:\Win