OTL logfile created
on: 31/08/2010 09:38:00 - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\poste\Bureau
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
191,00 Mb Total Physical Memory | 53,00 Mb Available Physical Memory | 28,00% Memory free
674,00 Mb Paging File | 280,00 Mb Available in Paging File | 42,00% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,53 Gb Total Space | 38,05 Gb Free Space | 51,06% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: JAVIELITO
Current User Name: poste
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010/08/31 08:26:53 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\poste\Bureau\OTL.scr
PRC - [2010/08/13 15:59:24 | 000,548,352 | -H-- | M] (Microsoft Corporation) -- C:\Program Files\Windows NT\dialer.exe
PRC - [2010/06/02 07:57:48 | 000,945,648 | ---- | M] (Google Inc.) -- C:\Documents and Settings\poste\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2009/07/10 08:36:32 | 000,604,416 | ---- | M] (TuneUp Software) -- C:\WINDOWS\system32\TUProgSt.exe
PRC - [2008/10/15 14:29:28 | 000,151,297 | ---- | M] (
Avira GmbH) -- C:\Program Files\
Avira\
AntiVir PersonalEdition Classic\avguard.exe
PRC - [2008/04/14 14:00:00 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008/03/07 16:42:02 | 000,045,568 | ---- | M] () -- C:\WINDOWS\svcadmin.exe
PRC - [2008/02/22 00:45:40 | 000,159,744 | ---- | M] () -- C:\Program Files\System Control Manager\MSIService.exe
PRC - [2006/03/01 03:10:18 | 000,069,632 | ---- | M] (CrypKey (Canada) Ltd.) -- C:\WINDOWS\system32\Crypserv.exe
PRC - [2002/08/14 16:21:16 | 000,200,704 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
========== Modules (SafeList) ==========
MOD - [2010/08/31 08:26:53 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\poste\Bureau\OTL.scr
MOD - [2010/04/06 04:52:46 | 002,462,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\WMVCore.dll
MOD - [2009/08/13 15:56:14 | 001,748,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
MOD - [2009/02/27 17:37:16 | 000,311,296 | ---- | M] () -- C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\pdfshell.FRA
MOD - [2008/04/14 14:00:00 | 002,986,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\xpsp2res.dll
MOD - [2008/04/14 14:00:00 | 001,007,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msgina.dll
MOD - [2008/04/14 14:00:00 | 000,586,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mlang.dll
MOD - [2008/04/14 14:00:00 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\odbc32.dll
MOD - [2008/04/14 14:00:00 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\odbctrac.dll
MOD - [2008/04/14 14:00:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008/04/14 14:00:00 | 000,098,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\odbcint.dll
MOD - [2008/04/14 14:00:00 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shgina.dll
MOD - [2008/04/14 14:00:00 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winsta.dll
MOD - [2008/04/14 14:00:00 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\davclnt.dll
MOD - [2008/04/14 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drprov.dll
MOD - [2007/10/25 09:28:30 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wmasf.dll
MOD - [2006/10/18 21:47:18 | 000,284,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\PortableDeviceApi.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- c:\wamp\bin\mysql\mysql5.1.32\bin\mysqld.exe -- (wampmysqld)
SRV - File not found [On_Demand | Stopped] -- c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe -- (wampapache)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Sygate\SPF\smc.exe -- (SmcService)
SRV - File not found [On_Demand | Stopped] -- C:\windows\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/07/19 14:59:54 | 000,259,440 | ---- | M] (CybelSoft) [On_Demand | Stopped] -- C:\Program Files\ma-config.com\maconfservice.exe -- (maconfservice)
SRV - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010/02/28 02:33:14 | 000,821,664 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Fichiers communs\Microsoft Shared\Virtualization Handler\CVHSVC.EXE -- (cvhsvc)
SRV - [2010/01/09 21:37:50 | 004,640,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc)
SRV - [2010/01/09 21:18:00 | 000,149,352 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2009/07/13 11:35:01 | 000,647,680 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/07/10 08:36:32 | 000,604,416 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\WINDOWS\system32\TUProgSt.exe -- (TuneUp.ProgramStatisticsSvc)
SRV - [2009/07/10 08:36:08 | 000,361,216 | ---- | M] (TuneUp Software) [On_Demand | Stopped] -- C:\WINDOWS\system32\TuneUpDefragService.exe -- (TuneUp.Defrag)
SRV - [2009/04/27 14:21:36 | 000,028,928 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp)
SRV - [2008/11/04 02:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2008/10/15 14:31:25 | 000,068,865 | ---- | M] (
Avira GmbH) [On_Demand | Stopped] -- C:\Program Files\
Avira\
AntiVir PersonalEdition Classic\sched.exe -- (AntiVirScheduler)
SRV - [2008/10/15 14:29:28 | 000,151,297 | ---- | M] (
Avira GmbH) [Auto | Running] -- C:\Program Files\
Avira\
AntiVir PersonalEdition Classic\avguard.exe -- (AntiVirService)
SRV - [2008/09/25 04:58:58 | 000,069,632 | ---- | M] (France Telecom SA) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC)
SRV - [2008/03/07 16:42:02 | 000,045,568 | ---- | M] () [Auto | Running] -- C:\WINDOWS\svcadmin.exe -- (Anyplace Control Security)
SRV - [2008/02/22 00:45:40 | 000,159,744 | ---- | M] () [Auto | Running] -- C:\Program Files\System Control Manager\MSIService.exe -- (Micro Star SCM)
SRV - [2007/01/19 12:54:14 | 000,097,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc)
SRV - [2006/03/01 03:10:18 | 000,069,632 | ---- | M] (CrypKey (Canada) Ltd.) [Auto | Running] -- C:\windows\System32\Crypserv.exe -- (Crypkey License)
SRV - [2002/08/14 16:21:16 | 000,200,704 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe -- (GhostStartService)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | System | Stopped] -- C:\windows\System32\drivers\wpsdrvnt.sys -- (wpsdrvnt)
DRV - File not found [Kernel | System | Stopped] -- C:\windows\System32\DRIVERS\wmiacpi.sys -- (WmiAcpi)
DRV - File not found [Kernel | Auto | Stopped] -- C:\windows\System32\Drivers\wg6n.sys -- (wg6n)
DRV - File not found [Kernel | Auto | Stopped] -- C:\windows\System32\Drivers\wg5n.sys -- (wg5n)
DRV - File not found [Kernel | Auto | Stopped] -- C:\windows\System32\Drivers\wg4n.sys -- (wg4n)
DRV - File not found [Kernel | Auto | Stopped] -- C:\windows\System32\Drivers\wg3n.sys -- (wg3n)
DRV - File not found [Kernel | System | Stopped] -- C:\windows\System32\drivers\Wbutton.sys -- (Wbutton)
DRV - File not found [Kernel | Boot | Stopped] -- C:\windows\System32\Drivers\Teefer.sys -- (Teefer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2009.SP3\WNt500x86\Sandra.sys -- (SANDRA)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\System32\DRIVERS\RTL8139.SYS -- (rtl8139) Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\System32\Drivers\RTS5121.sys -- (RSUSBSTOR)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\poste\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys -- (cpuz134)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\System32\DRIVERS\btwhid.sys -- (btwhid)
DRV - [2010/05/01 14:05:04 | 000,014,336 | ---- | M] (CybelSoft) [Kernel | On_Demand | Stopped] -- C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys -- (driverhardwarev2)
DRV - [2010/04/24 01:10:54 | 000,018,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftvolxp.sys -- (Sftvol)
DRV - [2010/04/24 01:10:52 | 000,020,584 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftredirxp.sys -- (Sftredir)
DRV - [2010/04/24 01:10:50 | 000,211,432 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftplayxp.sys -- (Sftplay)
DRV - [2010/04/24 01:10:44 | 000,554,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftfsxp.sys -- (Sftfs)
DRV - [2009/07/17 10:18:52 | 000,003,724 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\poste\Local Settings\Temp\IKM2002.sys -- (IKM2002)
DRV - [2009/07/16 14:48:37 | 000,229,208 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VMM.sys -- (vmm)
DRV - [2009/06/26 15:41:46 | 000,075,096 | ---- | M] (
Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2009/06/26 15:35:38 | 000,052,056 | ---- | M] (
Avira GmbH) [File_System | On_Demand | Running] -- C:\Program Files\
Avira\
AntiVir PersonalEdition Classic\avgntflt.sys -- (avgntflt)
DRV - [2009/06/26 15:35:24 | 000,011,608 | ---- | M] (
Avira GmbH) [Kernel | System | Running] -- C:\Program Files\
Avira\
AntiVir PersonalEdition Classic\avgio.sys -- (avgio)
DRV - [2009/05/26 23:56:19 | 000,104,384 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2009/05/07 14:00:46 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009/03/27 01:16:28 | 000,012,672 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cpuz132_x32.sys -- (cpuz132)
DRV - [2009/02/17 19:11:30 | 000,024,232 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2009/02/12 15:11:24 | 000,022,312 | ---- | M] (EldoS Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dddsk.sys -- (ElRawDisk)
DRV - [2008/09/25 17:35:24 | 000,181,120 | ---- | M] (Stephan Schreiber) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\ext2fs.sys -- (Ext2fs)
DRV - [2008/08/28 22:45:58 | 000,051,072 | ---- | M] (Stephan Schreiber) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ifsmount.sys -- (IfsMount)
DRV - [2008/05/13 13:44:00 | 000,007,408 | R--- | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASENUM.SYS -- (SASENUM)
DRV - [2008/05/13 13:43:58 | 000,008,944 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2008/05/13 13:43:56 | 000,055,024 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2008/04/13 20:54:36 | 000,028,672 | ---- | M] (National Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nscirda.sys -- (NSCIRDA)
DRV - [2008/03/09 13:26:14 | 000,023,040 | ---- | M] (DASoft Development Team) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ultradfg.sys -- (ultradfg)
DRV - [2008/01/11 11:46:00 | 000,196,400 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SynTP.sys -- (SynTP)
DRV - [2007/11/13 23:29:24 | 000,095,744 | R--- | M] (Option NV) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Gt51Ip.sys -- (GT72NDISIPXP)
DRV - [2007/11/13 23:29:24 | 000,051,968 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gt72ubus.sys -- (GT72UBUS)
DRV - [2007/11/13 23:29:24 | 000,008,064 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gtptser.sys -- (GTPTSER)
DRV - [2007/11/08 19:03:26 | 000,021,248 | ---- | M] (
AVIRA GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2006/03/01 20:53:54 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5)
DRV - [2006/01/10 04:47:27 | 000,031,846 | ---- | M] () [Kernel | System | Running] -- C:\windows\system32\ckldrv.sys -- (NetworkX)
DRV - [2004/04/16 23:54:40 | 000,615,548 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2004/03/18 19:42:24 | 000,006,431 | ---- | M] () [Kernel | Auto | Running] -- C:\windows\system32\drivers\acernbm.sys -- (acernbm)
DRV - [2004/03/04 20:40:44 | 000,004,243 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\windows\system32\drivers\osadmi.sys -- (osadmi)
DRV - [2004/02/24 12:08:52 | 000,400,384 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2004/02/19 18:49:52 | 000,014,336 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\atiusbf.sys -- (atiusbf)
DRV - [2004/02/10 16:42:18 | 000,672,256 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004/01/16 10:41:00 | 000,069,504 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtlnic51.sys -- (RTL8023)
DRV - [2003/11/19 10:41:18 | 001,205,292 | R--- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2003/10/27 10:59:00 | 000,013,842 | R--- | M] (ATI Technologies Inc.) [Kernel | Boot | Running] -- C:\windows\system32\DRIVERS\atisgkaf.sys -- (caboagp)
DRV - [2003/09/23 12:38:34 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5)
DRV - [2003/08/29 18:47:48 | 000,007,040 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\flash.sys -- (flash)
DRV - [2003/04/28 12:27:06 | 000,009,867 | ---- | M] () [Kernel | System | Running] -- C:\windows\System32\drivers\HOTKEY.sys -- (Hotkey)
DRV - [2003/04/08 17:37:38 | 000,144,784 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS)
DRV - [2003/04/08 17:35:26 | 000,022,183 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\btserial.sys -- (BTSERIAL)
DRV - [2003/04/08 17:35:04 | 000,222,812 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\btslbcsp.sys -- (BTSLBCSP)
DRV - [2003/04/08 17:32:42 | 001,168,410 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL)
DRV - [2003/04/08 17:27:36 | 000,030,203 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver)
DRV - [2003/04/08 17:26:14 | 000,021,733 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio)
DRV - [2002/08/14 16:11:16 | 000,005,632 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Symantec\Norton Ghost 2003\GhPciScan.sys -- (GhPciScan)
DRV - [2002/08/14 16:03:36 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\windows\System32\drivers\ASPI32.SYS -- (Aspi32)
DRV - [2000/12/19 19:29:52 | 000,002,343 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\Launch Manager\POWERKEY.SYS -- (POWERKEY)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://french.icrfast.com/fr/index.php?rvs=hompag
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.com/ie
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.com
IE - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://search.conduit.com?SearchSource= ... =CT2086743
IE - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
IE - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\OrangeHSS\SearchURLHook\SearchPageURL.dll ()
IE - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..\URLSearchHook: {dd02a4eb-4afd-4d60-99d8-e67f964ca813} - C:\Program Files\PHPNukeEN\tbPHPN.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-436374069-2147122303-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
FF - prefs.js..browser.startup.homepage: "http://french.icrfast.com/fr/index.php?rvs=hompag"
FF - prefs.js..extensions.enabledItems:
fdm_ffext@freedownloadmanager.org:1.3.3
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.4.1
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
searchme@searchme.com:1.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {dd02a4eb-4afd-4d60-99d8-e67f964ca813}:2.7.1.3
FF - prefs.js..keyword.URL: "http://french.icrfast.com/fr/index.php?rvs=hompag"
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/06/12 16:43:25 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/19 09:01:56 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.21\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2009/06/12 16:43:25 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.21\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2009/10/23 21:42:18 | 000,000,000 | ---D | M]
[2008/12/16 08:29:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\Mozilla\Extensions
[2010/08/16 15:32:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\extensions
[2010/08/16 09:28:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/08/16 15:32:29 | 000,000,000 | ---D | M] (Avanquest FR Toolbar) -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\extensions\{6ec85fcf-87ad-41d7-ae1f-f116f8ad4848}
[2009/07/30 08:30:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010/08/13 19:37:30 | 000,000,000 | ---D | M] (PHPNukeEN Toolbar) -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\extensions\{dd02a4eb-4afd-4d60-99d8-e67f964ca813}
[2010/05/23 12:20:13 | 000,002,650 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\searchplugins\bing.xml
[2010/06/30 14:23:22 | 000,000,921 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\searchplugins\conduit.xml
[2010/08/16 09:41:41 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\searchplugins\icqplugin-1.xml
[2010/08/16 09:34:37 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\searchplugins\icqplugin-2.xml
[2009/07/28 19:12:14 | 000,000,944 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\Mozilla\Firefox\Profiles\36eqmsp0.default\searchplugins\icqplugin.xml
[2010/08/16 09:41:10 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009/04/14 15:30:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010/07/19 09:02:08 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2009/04/14 15:19:50 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\searchme@searchme.com
[2010/06/22 04:36:30 | 000,423,656 | ---- | M] (Oracle) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2008/01/30 14:57:38 | 000,074,280 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npsharedview.dll
[2006/09/10 13:35:08 | 000,001,516 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml
[2008/09/28 09:10:26 | 000,000,757 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-france.xml
[2006/09/10 13:35:08 | 000,000,748 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\MediaDICO-fr.xml
[2009/03/13 11:39:56 | 000,002,494 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\searchme.xml
[2008/03/29 15:59:44 | 000,001,426 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-fr.xml
[2006/09/12 20:49:04 | 000,000,652 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-france.xml
O1 HOSTS File: ([2008/12/16 22:57:32 | 000,289,973 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1
www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1
www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1
www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1
www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1
www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1000gratisproben.com
O1 - Hosts: 127.0.0.1
www.1001namen.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1
www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1
www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1
www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1
www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 9986 more lines...
O2 - BHO: (freevideomaster Toolbar) - {01dfd24d-73eb-497f-8dfd-7ea79365af4a} - C:\Program Files\freevideomaster\tbfre0.dll (Conduit Ltd.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (EoBHO Class) - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (EoRezo)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found.
O2 - BHO: (Babylon IE plugin) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.)
O2 - BHO: (EoBHO Class) - {C7B76B90-3455-4AE6-A752-EAC4D19689E5} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (EoRezo)
O2 - BHO: (MSBHO Class) - {CAA539D5-53D2-4d6b-9C92-9457A422DEF4} - C:\Program Files\MeilleurSofts\MeilleurSoftsBHO.dll (MeilleurSofts)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll ()
O2 - BHO: (PHPNukeEN Toolbar) - {dd02a4eb-4afd-4d60-99d8-e67f964ca813} - C:\Program Files\PHPNukeEN\tbPHPN.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (freevideomaster Toolbar) - {01dfd24d-73eb-497f-8dfd-7ea79365af4a} - C:\Program Files\freevideomaster\tbfre0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (PHPNukeEN Toolbar) - {dd02a4eb-4afd-4d60-99d8-e67f964ca813} - C:\Program Files\PHPNukeEN\tbPHPN.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..\Toolbar\ShellBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..\Toolbar\WebBrowser: (freevideomaster Toolbar) - {01DFD24D-73EB-497F-8DFD-7EA79365AF4A} - C:\Program Files\freevideomaster\tbfre0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..\Toolbar\WebBrowser: (PHPNukeEN Toolbar) - {DD02A4EB-4AFD-4D60-99D8-E67F964CA813} - C:\Program Files\PHPNukeEN\tbPHPN.dll (Conduit Ltd.)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ATIModeChange] C:\windows\System32\Ati2mdxx.exe (ATI Technologies, Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\
Avira\
AntiVir PersonalEdition Classic\avgnt.exe (
Avira GmbH)
O4 - HKLM..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\communicator.exe (Microsoft Corporation)
O4 - HKLM..\Run: [DriverMagicSchedule] C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe (SymplisIT Corporation)
O4 - HKLM..\Run: [LtMoh] C:\Program Files\ltmoh\ltmoh.exe (Agere Systems)
O4 - HKLM..\Run: [MeilleurSofts] C:\Program Files\MeilleurSofts\MeilleurSofts.exe (MeilleurSofts)
O4 - HKLM..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe (Microsoft Corporation)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKU\S-1-5-21-436374069-2147122303-682003330-1004..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Bootvis.lnk = C:\Documents and Settings\poste\Bureau\Bootvis_Sleep.exe File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\BTTray.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMBalloonTip = 0
O7 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWinKeys = 1
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.)
O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.)
O15 - HKU\S-1-5-21-436374069-2147122303-682003330-1004\..Trusted Domains: orange.fr ([logicielsgratuits] http in Sites de confiance)O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700}
http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967}
http://dlm.tools.akamai.com/dlmanager/v ... .2.5.4.cab (DLM Control)
O16 - DPF: {5A779DC0-837B-4590-AC42-C7C0847478C5}
http://logicielsgratuits.orange.fr/down ... taller.cab (OrangeInstaller_ModuleIE Control)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
http://update.microsoft.com/microsoftup ... 6971853484 (MUWebControl Class)
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61}
http://a840.g.akamai.net/7/840/537/2005 ... scan53.cab (HouseCall Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {BF3CD111-6278-11D2-9EA3-00A0C9251384}
http://www.o2c.de/download/O2CPlayer.CAB (O2C-Player Version 1.x)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F}
http://content.systemrequirementslab.co ... 1.66.0.cab (Reg Error: Key error.)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\windows\System32\ati2evxx.dll ()
O24 - Desktop Components:0 () -
http://et.eulerian.net/eureca.js
O24 - Desktop Components:1 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Colline verdoyante.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Colline verdoyante.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/12/16 05:45:19 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{be1a4ec8-1692-11de-8516-000ae4524a3b}\Shell - "" = AutoRun
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\windows\System32\appmgmts.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: LanmanServer - File not found
NetSvcs: LanmanWorkstation - File not found
NetSvcs: Messenger - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: UxTuneUp - C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software)
NetSvcs: Wmi - C:\windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
CREATERESTOREPOINT
Error starting restore point: System Restore is
disabled.
Error closing restore point: System Restore is
disabled.
========== Files/Folders - Created Within 30 Days ==========
[2010/08/31 08:26:52 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\poste\Bureau\OTL.scr
[2010/08/28 11:44:22 | 000,022,312 | ---- | C] (EldoS Corporation) -- C:\windows\System32\drivers\dddsk.sys
[2010/08/28 11:43:59 | 000,000,000 | ---D | C] -- C:\Program Files\Disk Doctors Undelete (Demo)
[2010/08/27 21:22:38 | 000,000,000 | ---D | C] -- C:\Program Files\Veetle
[2010/08/27 18:41:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Bureau\REST2514
[2010/08/23 06:55:11 | 000,000,000 | ---D | C] -- C:\Program Files\ltmoh
[2010/08/21 10:53:55 | 000,000,000 | ---D | C] -- C:\Program Files\PagesPerso
[2010/08/20 19:28:15 | 000,000,000 | ---D | C] -- C:\Program Files\Easy Streaker
[2010/08/20 19:24:32 | 000,000,000 | ---D | C] -- C:\Program Files\Bruno
[2010/08/19 09:17:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\VirtualizedApplications
[2010/08/18 20:19:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Local Settings\Application Data\SoftGrid Client
[2010/08/18 20:17:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Application Data\SoftGrid Client
[2010/08/18 19:24:59 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\DESIGNER
[2010/08/18 19:23:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\SoftGrid Client
[2010/08/18 19:22:41 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Application Virtualization Client
[2010/08/18 19:22:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Microsoft
[2010/08/18 19:09:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Application Data\TP
[2010/08/16 18:28:04 | 000,000,000 | ---D | C] -- C:\Program Files\BDSokobanYASC
[2010/08/15 10:27:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Bureau\11-07-09
[2010/08/15 10:06:29 | 000,000,000 | R--D | C] -- C:\Documents and Settings\poste\Bureau\Récupération de l'ordinateur du18-12-08, après réparation payé 50€
[2010/08/15 09:36:15 | 000,000,000 | R--D | C] -- C:\Documents and Settings\poste\Bureau\Informatique et ordinateur
[2010/08/15 07:45:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Bureau\23-09-09 ALARME ARITECH et RISCO
[2010/08/14 14:57:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Bureau\Disque amovible (H) retirer de clef
[2010/08/14 14:56:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Bureau\Disque amovible (E)
[2010/08/14 09:53:35 | 000,000,000 | ---D | C] -- C:\Program Files\net.demon
[2010/08/13 19:37:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Local Settings\Application Data\PHPNukeEN
[2010/08/13 19:37:39 | 000,000,000 | ---D | C] -- C:\Program Files\PHPNukeEN
[2010/08/13 19:26:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Application Data\WordToPDF Pro
[2010/08/13 19:26:18 | 000,000,000 | ---D | C] -- C:\Program Files\WordToPDF Pro
[2010/08/10 12:07:48 | 000,000,000 | ---D | C] -- C:\8c3e04ff021b4c483a7f0f6c4c
[2010/08/09 21:56:06 | 000,000,000 | ---D | C] -- C:\Exec
[2010/08/09 14:02:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Mes documents\Mes ordinateurs virtuels
[2010/08/08 17:25:38 | 000,000,000 | ---D | C] -- C:\Program Files\ma-config.com
[2010/08/08 17:25:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ma-config.com
[2010/08/03 10:09:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\Application Data\enchant
[2010/08/03 09:59:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\poste\AbiSuite
[2009/04/13 19:36:40 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\poste\Application Data\pcouffin.sys
[8 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[6 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[16 C:\Documents and Settings\All Users\Application Data\*.tmp files -> C:\Documents and Settings\All Users\Application Data\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/08/31 10:00:01 | 000,000,508 | ---- | M] () -- C:\windows\tasks\Maintenance en 1 clic.job
[2010/08/31 09:55:14 | 000,000,432 | -H-- | M] () -- C:\windows\tasks\User_Feed_Synchronization-{09CC701A-D47C-43AD-8995-148738251DFB}.job
[2010/08/31 09:21:10 | 000,001,054 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/08/31 09:00:00 | 000,000,280 | ---- | M] () -- C:\windows\tasks\du 17-07-09 AU 21-09-09.job
[2010/08/31 08:26:53 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\poste\Bureau\OTL.scr
[2010/08/31 07:37:18 | 000,001,050 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/08/31 07:36:23 | 000,000,884 | ---- | M] () -- C:\windows\win.ini
[2010/08/31 07:34:17 | 000,000,868 | ---- | M] () -- C:\windows\tasks\Google Software Updater.job
[2010/08/31 07:34:00 | 000,000,268 | ---- | M] () -- C:\windows\tasks\Activation de Windows.job
[2010/08/31 07:34:00 | 000,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT
[2010/08/31 07:33:48 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2010/08/30 18:09:00 | 000,000,396 | -H-- | M] () -- C:\windows\tasks\{5C00EC17-874C-461F-9109-5B631A90A3B9}_JAVIELITO_poste.job
[2010/08/30 12:52:36 | 010,747,904 | ---- | M] () -- C:\Documents and Settings\poste\ntuser.dat
[2010/08/30 12:52:36 | 000,000,184 | -HS- | M] () -- C:\Documents and Settings\poste\ntuser.ini
[2010/08/30 12:51:03 | 006,431,180 | -H-- | M] () -- C:\Documents and Settings\poste\Local Settings\Application Data\IconCache.db
[2010/08/30 10:30:41 | 000,000,049 | ---- | M] () -- C:\windows\NeroDigital.ini
[2010/08/30 07:14:02 | 000,001,374 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2010/08/30 07:13:36 | 000,307,600 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2010/08/28 07:52:12 | 000,077,400 | ---- | M] () -- C:\Documents and Settings\poste\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/08/27 15:00:00 | 000,000,408 | ---- | M] () -- C:\windows\tasks\Norton Security
Scan.job
[2010/08/27 11:22:22 | 011,020,738 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\Moov_M300_M400_French_Manual_WEU.pdf
[2010/08/27 08:47:34 | 000,000,000 | ---- | M] () -- C:\boot.ini
[2010/08/24 16:04:30 | 000,013,342 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\wklnhst.dat
[2010/08/24 11:23:25 | 000,010,752 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\RISCOS JOSE CV 10-09.wps
[2010/08/23 11:04:55 | 000,001,760 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\Logoff current user.lnk
[2010/08/23 11:04:55 | 000,001,530 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\Standby.lnk
[2010/08/23 11:04:54 | 000,001,768 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\Shutdown Windows XP.lnk
[2010/08/23 11:04:54 | 000,001,764 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\Restart Windows XP.lnk
[2010/08/23 11:04:53 | 000,001,743 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\Tweak-XP Pro v4.lnk
[2010/08/23 11:00:44 | 000,737,280 | ---- | M] (Indigo Rose Corporation) -- C:\windows\iun6002.exe
[2010/08/21 08:54:04 | 001,181,030 | ---- | M] () -- C:\windows\System32\PerfStringBackup.INI
[2010/08/21 08:54:04 | 000,542,262 | ---- | M] () -- C:\windows\System32\perfh00C.dat
[2010/08/21 08:54:04 | 000,449,198 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2010/08/21 08:54:04 | 000,097,838 | ---- | M] () -- C:\windows\System32\perfc00C.dat
[2010/08/21 08:54:04 | 000,074,956 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2010/08/19 08:17:26 | 000,013,014 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\1°essaie de word du jeudi 19 août 2010.docx
[2010/08/17 09:35:35 | 000,000,669 | ---- | M] () -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Bootvis.lnk
[2010/08/17 07:56:19 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\poste\FDISK
[2010/08/13 19:29:35 | 000,001,769 | ---- | M] () -- C:\windows\Language_trs.ini
[2010/08/13 15:59:24 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dllcache\dialer.exe
[2010/08/13 11:02:59 | 000,001,374 | ---- | M] () -- C:\windows\imsins.BAK
[2010/08/12 13:55:41 | 003,685,849 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\guide-tome1-a4-20100428 download société.pdf
[2010/08/10 15:30:02 | 000,000,137 | ---- | M] () -- C:\windows\MyDrivers.ini
[2010/08/08 19:28:35 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dllcache\srdiag.exe
[2010/08/08 08:14:08 | 000,000,752 | ---- | M] () -- C:\Documents and Settings\poste\Application Data\Economix prefs
[2010/08/08 08:12:15 | 000,000,684 | ---- | M] () -- C:\Documents and Settings\poste\Bureau\MaxiCompte.lnk
[2010/08/01 17:05:23 | 000,384,512 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dllcache\rstrui.exe
[2010/08/01 15:13:58 | 000,000,179 | ---- | M] () -- C:\windows\ODBC.INI
[8 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[6 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[16 C:\Documents and Settings\All Users\Application Data\*.tmp files -> C:\Documents and Settings\All Users\Application Data\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/08/27 11:22:07 | 011,020,738 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Moov_M300_M400_French_Manual_WEU.pdf
[2010/08/27 08:47:34 | 000,000,000 | ---- | C] () -- C:\boot.ini
[2010/08/26 10:10:38 | 000,032,256 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Notion sur windows NT, CH10.DOC
[2010/08/23 11:04:55 | 000,001,760 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Logoff current user.lnk
[2010/08/23 11:04:55 | 000,001,530 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Standby.lnk
[2010/08/23 11:04:54 | 000,001,768 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Shutdown Windows XP.lnk
[2010/08/23 11:04:54 | 000,001,764 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Restart Windows XP.lnk
[2010/08/23 11:04:53 | 000,001,743 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\Tweak-XP Pro v4.lnk
[2010/08/19 07:51:12 | 000,013,014 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\1°essaie de word du jeudi 19 août 2010.docx
[2010/08/17 09:35:30 | 000,000,669 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Bootvis.lnk
[2010/08/17 07:51:29 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\poste\FDISK
[2010/08/15 10:56:39 | 000,246,649 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\clavier machine ecrire.odt
[2010/08/15 10:41:51 | 004,907,125 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\WindowsXPPerfectionnement.pdf
[2010/08/13 19:29:35 | 000,001,769 | ---- | C] () -- C:\windows\Language_trs.ini
[2010/08/12 13:55:39 | 003,685,849 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\guide-tome1-a4-20100428 download société.pdf
[2010/08/08 08:12:15 | 000,000,684 | ---- | C] () -- C:\Documents and Settings\poste\Bureau\MaxiCompte.lnk
[2010/08/01 22:04:05 | 000,170,664 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat~
[2010/08/01 15:13:58 | 000,000,179 | ---- | C] () -- C:\windows\ODBC.INI
[2010/08/01 13:53:47 | 000,000,280 | ---- | C] () -- C:\windows\tasks\du 17-07-09 AU 21-09-09.job
[2010/04/15 10:51:18 | 000,000,074 | ---- | C] () -- C:\windows\yesmessenger.ini
[2010/02/23 10:38:22 | 000,000,752 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\Economix prefs
[2010/02/14 18:13:30 | 000,000,014 | ---- | C] () -- C:\windows\ANNABAC.INI
[2009/12/26 10:43:23 | 000,000,053 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\AVSDVDPlayer.m3u
[2009/07/21 07:48:21 | 000,000,000 | ---- | C] () -- C:\windows\Ckconfig.INI
[2009/07/17 19:45:14 | 000,000,000 | ---- | C] () -- C:\windows\evntwin.INI
[2009/07/17 10:19:52 | 000,007,040 | ---- | C] () -- C:\windows\System32\drivers\flash.sys
[2009/07/13 10:22:25 | 001,060,424 | ---- | C] () -- C:\windows\System32\WdfCoInstaller01000.dll
[2009/07/12 07:16:02 | 000,000,033 | ---- | C] () -- C:\windows\winQ.ini
[2009/06/23 15:48:43 | 000,000,019 | ---- | C] () -- C:\windows\CRAZY.INI
[2009/06/13 06:05:46 | 000,003,972 | ---- | C] () -- C:\windows\System32\drivers\PciBus.sys
[2009/06/13 03:53:48 | 000,000,040 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
[2009/05/07 11:16:36 | 000,000,137 | ---- | C] () -- C:\windows\MyDrivers.ini
[2009/05/02 17:12:56 | 000,721,904 | ---- | C] () -- C:\windows\System32\drivers\sptd.sys
[2009/04/24 19:12:01 | 000,000,311 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\geqqqb_navps.dat
[2009/04/24 19:11:59 | 000,001,766 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\geqqqb.dat
[2009/04/24 17:45:17 | 000,000,000 | ---- | C] () -- C:\windows\System32\c2succai.dll
[2009/04/24 17:44:55 | 000,450,584 | ---- | C] () -- C:\windows\System32\voy3lv57.dll
[2009/04/19 09:13:21 | 000,065,536 | ---- | C] () -- C:\Program Files\engine32.cab
[2009/04/13 20:46:25 | 000,000,068 | ---- | C] () -- C:\windows\Crypkey.ini
[2009/04/13 20:46:16 | 000,031,846 | ---- | C] () -- C:\windows\System32\Ckldrv.sys
[2009/04/13 20:46:15 | 000,018,432 | ---- | C] () -- C:\windows\Setup_ck.dll
[2009/04/13 19:37:05 | 000,000,033 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\pcouffin.log
[2009/04/13 19:36:40 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\inst.exe
[2009/04/13 19:36:40 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\pcouffin.cat
[2009/04/13 19:36:40 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\pcouffin.inf
[2009/04/13 19:27:11 | 000,000,060 | ---- | C] () -- C:\windows\wininit.ini
[2009/04/12 11:47:38 | 000,000,024 | ---- | C] () -- C:\windows\ShellIcon32.dll
[2009/04/02 21:09:26 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\FASTWiz.html
[2009/04/02 20:49:10 | 000,000,076 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\FASTWiz.log
[2009/04/02 10:17:35 | 000,352,754 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\saowucu_nav.dat
[2009/03/25 18:28:15 | 000,000,112 | ---- | C] () -- C:\windows\HFREP.INI
[2009/03/23 16:03:56 | 000,002,935 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\saowucu.dat
[2009/03/23 16:03:56 | 000,000,323 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\saowucu_navps.dat
[2009/03/23 15:25:45 | 000,013,342 | ---- | C] () -- C:\Documents and Settings\poste\Application Data\wklnhst.dat
[2009/02/20 11:46:00 | 000,000,297 | ---- | C] () -- C:\windows\my.ini
[2009/02/16 13:18:52 | 000,000,025 | ---- | C] () -- C:\windows\wpd99.drv
[2009/02/16 13:18:49 | 000,051,716 | ---- | C] () -- C:\windows\System32\pdf995mon.dll
[2009/02/03 22:12:04 | 000,000,112 | ---- | C] () -- C:\windows\ActiveSkin.INI
[2009/01/04 13:16:16 | 000,045,568 | ---- | C] () -- C:\windows\System32\chckshll.dll
[2008/12/18 11:21:45 | 000,000,049 | ---- | C] () -- C:\windows\NeroDigital.ini
[2008/12/18 11:21:30 | 000,018,432 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/12/17 09:06:38 | 000,676,224 | ---- | C] () -- C:\windows\System32\OGACheckControl.dll
[2008/12/17 07:52:27 | 000,164,352 | ---- | C] () -- C:\windows\System32\unrar.dll
[2008/12/17 07:52:15 | 000,000,038 | ---- | C] () -- C:\windows\avisplitter.ini
[2008/12/17 07:51:42 | 000,524,288 | ---- | C] () -- C:\windows\System32\xvidcore.dll
[2008/12/17 07:51:27 | 000,139,264 | ---- | C] () -- C:\windows\System32\xvidvfw.dll
[2008/12/17 07:50:36 | 000,057,344 | ---- | C] () -- C:\windows\System32\ff_vfw.dll
[2008/12/17 07:50:36 | 000,000,547 | ---- | C] () -- C:\windows\System32\ff_vfw.dll.manifest
[2008/12/17 06:10:15 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\poste\Local Settings\Application Data\fusioncache.dat
[2008/12/16 21:19:20 | 000,071,749 | ---- | C] () -- C:\windows\hcextoutput.dll
[2008/12/16 21:19:20 | 000,000,823 | ---- | C] () -- C:\windows\tsc.ini
[2008/12/16 21:17:18 | 000,000,170 | ---- | C] () -- C:\windows\GetServer.ini
[2008/12/16 08:09:58 | 000,155,648 | ---- | C] () -- C:\windows\System32\RTLCPAPI.dll
[2008/12/16 08:00:01 | 000,009,867 | ---- | C] () -- C:\windows\System32\drivers\HOTKEY.sys
[2008/12/16 07:45:50 | 000,086,016 | ---- | C] () -- C:\windows\System32\ati2evxx.dll
[2008/12/16 07:23:31 | 000,116,224 | ---- | C] () -- C:\windows\System32\pdfcmnnt.dll
[2008/05/26 23:23:32 | 000,016,698 | ---- | C] () -- C:\windows\System32\gthrctr.ini
[2008/05/26 23:23:30 | 000,021,596 | ---- | C] () -- C:\windows\System32\idxcntrs.ini
[2008/05/26 23:23:28 | 000,016,036 | ---- | C] () -- C:\windows\System32\gsrvctr.ini
[2008/05/04 18:08:49 | 000,020,480 | ---- | C] () -- C:\windows\System32\CPUINFO2.DLL
[2008/03/09 13:26:20 | 000,091,648 | ---- | C] () -- C:\windows\System32\lua5.1a.dll
[2004/03/18 19:42:24 | 000,006,431 | ---- | C] () -- C:\windows\System32\drivers\acernbm.sys
[2003/07/17 16:40:08 | 000,001,616 | ---- | C] () -- C:\windows\System32\BCMWLHOM.INI
[2003/04/08 17:56:30 | 000,782,413 | ---- | C] () -- C:\windows\System32\BTNeighborhood.dll
[2003/04/08 17:51:46 | 000,753,664 | ---- | C] () -- C:\windows\System32\BtWizard.dll
[2003/04/08 17:50:00 | 000,196,608 | ---- | C] () -- C:\windows\System32\btcss.dll
[2003/04/08 17:48:16 | 000,065,536 | ---- | C] () -- C:\windows\System32\btsendto_wab.dll
[2003/04/08 17:47:56 | 000,163,840 | ---- | C] () -- C:\windows\System32\btsendto_office.dll
[2003/04/08 17:45:58 | 000,045,056 | ---- | C] () -- C:\windows\System32\btsendto_notes.dll
[2003/04/08 17:44:52 | 000,126,976 | ---- | C] () -- C:\windows\System32\btosif_olx.dll
[2003/04/08 17:44:16 | 000,065,536 | ---- | C] () -- C:\windows\System32\btprn2k.dll
[2003/04/08 17:43:38 | 000,098,304 | ---- | C] () -- C:\windows\System32\bthcrpui.dll
[2003/04/08 17:43:08 | 000,098,304 | ---- | C] () -- C:\windows\System32\bthcrp.dll
[2003/04/08 17:42:36 | 000,106,496 | ---- | C] () -- C:\windows\System32\btsendto.dll
[2003/04/08 17:42:16 | 000,040,960 | ---- | C] () -- C:\windows\System32\btwpimif.dll
[2003/04/08 17:42:06 | 000,172,032 | ---- | C] () -- C:\windows\System32\btosif_ol.dll
[2003/04/08 17:41:40 | 000,143,360 | ---- | C] () -- C:\windows\System32\btosif_notes.dll
[2003/04/08 17:41:14 | 000,114,688 | ---- | C] () -- C:\windows\System32\btosif.dll
[2003/04/08 17:40:40 | 000,491,520 | ---- | C] () -- C:\windows\System32\WidcommSdk.dll
[2003/04/08 17:38:54 | 000,389,181 | ---- | C] () -- C:\windows\System32\wbtapi.dll
[2003/04/08 17:37:38 | 000,144,784 | ---- | C] () -- C:\windows\System32\drivers\btwdndis.sys
[2003/04/08 17:36:20 | 000,061,440 | ---- | C] () -- C:\windows\System32\BtAudioHelper.dll
[2003/04/08 17:36:04 | 000,024,576 | ---- | C] () -- C:\windows\System32\BtXpShell.dll
[2003/04/08 17:35:52 | 000,102,400 | ---- | C] () -- C:\windows\System32\BTXPPanel.dll
[2003/04/08 17:35:32 | 000,135,168 | ---- | C] () -- C:\windows\System32\btbigbmp.dll
[2003/04/08 17:35:26 | 000,022,183 | ---- | C] () -- C:\windows\System32\drivers\btserial.sys
[2003/04/08 17:35:04 | 000,222,812 | ---- | C] () -- C:\windows\System32\drivers\btslbcsp.sys
[2003/04/08 17:32:42 | 001,168,410 | ---- | C] () -- C:\windows\System32\drivers\btkrnl.sys
[2003/04/08 17:28:50 | 000,258,048 | ---- | C] () -- C:\windows\System32\btins.dll
[2003/04/08 17:27:36 | 000,030,203 | ---- | C] () -- C:\windows\System32\drivers\btport.sys
[2003/04/08 17:27:34 | 000,032,768 | ---- | C] () -- C:\windows\System32\btdev.dll
[2003/04/08 17:27:18 | 000,090,112 | ---- | C] () -- C:\windows\System32\bt2k_ins.dll
[2003/04/08 17:27:00 | 000,065,536 | ---- | C] () -- C:\windows\System32\BTNCopy.dll
[2003/04/08 17:26:56 | 000,049,152 | ---- | C] () -- C:\windows\System32\btrezxp.dll
[2003/04/08 17:26:48 | 002,813,952 | ---- | C] () -- C:\windows\System32\btrez.dll
[2003/04/08 17:26:14 | 000,021,733 | ---- | C] () -- C:\windows\System32\drivers\btaudio.sys
[2002/11/01 17:17:50 | 000,000,256 | ---- | C] () -- C:\windows\aucfg.ini
[2002/07/04 16:05:34 | 000,000,269 | ---- | C] () -- C:\windows\tmupdate.ini
[2002/05/15 23:29:04 | 000,000,607 | ---- | C] () -- C:\windows\System32\BTNeighborhood.dll.manifest
[2001/12/14 14:34:46 | 000,164,864 | ---- | C] () -- C:\windows\patchw32.dll
[2001/11/23 18:18:00 | 000,000,597 | ---- | C] () -- C:\windows\System32\btcss.dll.manifest
[2001/11/14 13:56:00 | 001,802,240 | ---- | C] () -- C:\windows\System32\lcppn21.dll
[2001/09/05 16:05:16 | 000,045,568 | ---- | C] () -- C:\windows\System32\symplisc.dll
[1999/07/23 14:46:48 | 000,000,116 | ---- | C] () -- C:\windows\AuHCcup1.ini
[1999/07/23 11:53:20 | 000,129,536 | ---- | C] () -- C:\windows\AuHCcup1.dll
========== LOP Check ==========
[2010/04/30 13:15:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrateur\Application Data\OnlineStorage
[2010/06/07 16:19:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrateur\Application Data\Uniblue
[2010/06/07 14:44:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrateur\Application Data\Windows Search
[2009/06/17 08:22:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon
[2009/03/25 18:29:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CR2007
[2009/04/13 19:46:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2010/08/08 17:25:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ma-config.com
[2009/04/11 05:51:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2009/07/10 17:50:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\pdf995
[2010/06/14 17:01:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Seekapp
[2009/02/04 14:29:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Shared Phrogram Files
[2009/06/13 03:53:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SlySoft
[2009/09/26 06:55:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SymplisIT
[2009/06/27 17:23:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2009/04/15 15:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2010/08/19 09:17:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\VirtualizedApplications
[2009/04/12 08:01:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\wmp
[2009/07/10 08:51:31 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{55A29068-F2CE-456C-9148-C869879E2357}
[2009/04/14 15:32:03 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{81D4BDA8-1F33-4633-B176-8A7E942ABDE1}
[2010/06/07 11:19:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\AVP 2009
[2009/06/17 09:12:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\Babylon
[2009/05/02 17:12:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\DAEMON Tools Lite
[2010/08/03 10:09:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\enchant
[2010/04/26 22:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\EoRezo
[2009/12/26 12:11:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\Free Download Manager
[2010/05/16 11:38:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\GetRightToGo
[2010/02/24 07:33:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\Grisbi
[2009/07/10 17:09:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\ICQ
[2010/06/21 16:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\K-Meleon
[2009/07/10 17:12:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\KompoZer
[2009/07/10 16:42:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\live-player
[2009/07/10 17:13:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\log
[2010/04/26 08:48:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\MeilleurSofts
[2009/02/06 14:47:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\MP-Manager
[2009/02/06 14:27:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\MPMAN
[2009/04/06 18:56:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\OnlineStorage
[2008/12/17 08:19:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\OpenOffice.org
[2009/02/13 06:26:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\PDFCreator
[2010/08/29 20:59:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\poste\Application Data\SoftGrid Clie