Comme apparemment c'est pareil que la première fois et qu'il n'a rien trouvé, j'ai relancé un otl
voici le 1er OTL.txt:
OTL logfile created on: 03/11/2009 10:23:35 - Run 3
OTL by OldTimer - Version 3.0.22.1 Folder = D:\Documents and Settings\ldcg00644\Mes documents\Téléchargements
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
1014,04 Mb Total Physical Memory | 215,77 Mb Available Physical Memory | 21,28% Memory free
1,87 Gb Paging File | 1,20 Gb Available in Paging File | 63,99% Paging File free
Paging file location(s): E:\pagefile.sys 1000 1500 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 24,00 Gb Total Space | 12,78 Gb Free Space | 53,25% Space Free | Partition Type: NTFS
Drive D: | 38,25 Gb Total Space | 22,74 Gb Free Space | 59,45% Space Free | Partition Type: NTFS
Drive E: | 12,00 Gb Total Space | 7,86 Gb Free Space | 65,47% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
Drive G: | 679,47 Gb Total Space | 182,69 Gb Free Space | 26,89% Space Free | Partition Type: NTFS
Drive H: | 1073,48 Gb Total Space | 501,06 Gb Free Space | 46,68% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded
Drive L: | 16,96 Gb Total Space | 2,02 Gb Free Space | 11,91% Space Free | Partition Type: NTFS
Drive M: | 1,99 Gb Total Space | 1,96 Gb Free Space | 98,38% Space Free | Partition Type: NTFS
Drive O: | 1,99 Gb Total Space | 1,96 Gb Free Space | 98,39% Space Free | Partition Type: NTFS
Drive P: | 1,99 Gb Total Space | 1,96 Gb Free Space | 98,39% Space Free | Partition Type: NTFS
Drive S: | 16,96 Gb Total Space | 2,02 Gb Free Space | 11,91% Space Free | Partition Type: NTFS
Drive T: | 1,99 Gb Total Space | 1,72 Gb Free Space | 86,59% Space Free | Partition Type: NTFS
Drive U: | 1,99 Gb Total Space | 1,93 Gb Free Space | 96,97% Space Free | Partition Type: NTFS
Drive V: | 1073,48 Gb Total Space | 294,24 Gb Free Space | 27,41% Space Free | Partition Type: NTFS
Computer Name: NA22408
Current User Name: u094776
NOT logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - File not found -- C:\WINDOWS\System32\GdParc\Gdparc.exe
PRC - [2009/10/29 21:28:46 | 00,908,280 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009/10/25 22:33:55 | 00,521,728 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ldcg00644\Mes documents\Téléchargements\OTL.exe
PRC - [2009/08/31 11:25:16 | 00,623,960 | ---- | M] (Research In Motion Limited) -- C:\Program Files\Fichiers communs\Research In Motion\Auto Update\RIMAutoUpdate.exe
PRC - [2009/03/10 15:22:48 | 02,316,288 | ---- | M] (Vodafone) -- C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe
PRC - [2009/03/10 15:21:38 | 00,009,216 | ---- | M] (Vodafone) -- C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
PRC - [2008/11/03 17:01:18 | 03,898,704 | ---- | M] (Microsoft Corporation) -- c:\program files\Microsoft Office Communicator\communicator.exe
PRC - [2007/08/30 10:50:42 | 00,205,480 | ---- | M] (Macrovision Corporation) -- C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
PRC - [2007/08/10 09:12:20 | 00,118,784 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bmwebcfg.exe
PRC - [2007/06/13 14:22:28 | 01,037,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE
PRC - [2007/05/16 15:50:52 | 00,162,584 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\hkcmd.exe
PRC - [2007/05/16 15:50:22 | 00,138,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\igfxpers.exe
PRC - [2007/05/16 15:50:12 | 00,252,696 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\igfxsrvc.exe
PRC - [2007/03/16 17:10:46 | 01,392,640 | ---- | M] (Dell Inc.) -- C:\WINDOWS\System32\WLTRAY.exe
PRC - [2007/02/19 13:27:16 | 00,090,112 | ---- | M] (SigmaTel, Inc.) -- C:\Program Files\SigmaTel\C-Major Audio\WDM\StacSV.exe
PRC - [2007/02/19 13:26:32 | 00,303,104 | ---- | M] (SigmaTel, Inc.) -- C:\WINDOWS\stsystra.exe
PRC - [2007/01/29 18:07:18 | 00,050,736 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\ApMsgFwd.exe
PRC - [2007/01/25 16:34:22 | 00,159,744 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\Apoint.exe
PRC - [2007/01/11 19:43:46 | 02,150,400 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
PRC - [2006/12/18 14:22:14 | 00,278,528 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
PRC - [2006/11/14 14:51:58 | 00,125,536 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\VPTray.exe
PRC - [2006/11/14 14:50:22 | 00,119,904 | ---- | M] (symantec) -- C:\Program Files\Symantec AntiVirus\SavRoam.exe
PRC - [2006/11/14 14:49:32 | 01,835,104 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe
PRC - [2006/11/14 14:47:36 | 00,031,840 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\DefWatch.exe
PRC - [2006/10/27 19:13:48 | 00,270,336 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
PRC - [2006/09/08 14:10:22 | 00,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\HidFind.exe
PRC - [2006/09/08 14:06:08 | 00,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\Apoint\Apntex.exe
PRC - [2006/07/19 18:26:12 | 00,169,632 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
PRC - [2006/07/19 18:26:06 | 00,192,160 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
PRC - [2006/07/19 18:26:04 | 00,052,896 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
PRC - [2006/04/11 16:13:38 | 01,160,848 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
PRC - [2006/03/24 08:52:18 | 00,571,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\CCM\CcmExec.exe
PRC - [2006/01/23 22:14:10 | 00,069,632 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
PRC - [2005/07/05 12:14:28 | 00,196,296 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
PRC - [2005/01/28 00:36:00 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe
PRC - [2004/08/05 13:00:00 | 00,218,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wbem\wmiprvse.exe
PRC - [2003/07/18 15:02:18 | 01,422,528 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
PRC - [2003/06/19 23:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
PRC - [2003/05/22 20:29:58 | 00,725,264 | ---- | M] (Citrix Systems, Inc.) -- C:\Program Files\Citrix\icaweb32\wfica32.exe
PRC - [2003/05/22 20:29:58 | 00,262,416 | ---- | M] (Citrix Systems, Inc.) -- C:\Program Files\Citrix\icaweb32\Wfcrun32.exe
PRC - [2003/05/15 01:19:50 | 00,217,193 | ---- | M] (Adobe Systems Inc.) -- C:\Applis\Adobe\Acrobat 6.0\Distillr\acrotray.exe
PRC - [1997/05/14 22:49:22 | 00,013,312 | ---- | M] () -- C:\WINDOWS\System32\srvany.exe
========== Win32 Services (SafeList) ==========
SRV - [2009/03/10 15:21:38 | 00,009,216 | ---- | M] (Vodafone) -- C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe -- (VMCService [Auto | Running])
SRV - [2007/08/10 09:12:20 | 00,118,784 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bmwebcfg.exe -- (bmwebcfg [Auto | Running])
SRV - [2007/03/16 17:10:46 | 00,020,480 | ---- | M] () -- C:\WINDOWS\System32\WLTRYSVC.EXE -- (wltrysvc [Disabled | Stopped])
SRV - [2007/02/19 13:27:16 | 00,090,112 | ---- | M] (SigmaTel, Inc.) -- C:\Program Files\SigmaTel\C-Major Audio\WDM\StacSV.exe -- (STacSV [Auto | Running])
SRV - [2006/11/14 14:50:22 | 00,119,904 | ---- | M] (symantec) -- C:\Program Files\Symantec AntiVirus\SavRoam.exe -- (SavRoam [Auto | Running])
SRV - [2006/11/14 14:49:32 | 01,835,104 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe -- (Symantec AntiVirus [Auto | Running])
SRV - [2006/11/14 14:47:36 | 00,031,840 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\DefWatch.exe -- (DefWatch [Auto | Running])
SRV - [2006/09/08 13:46:35 | 02,528,960 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_1.EXE -- (LiveUpdate [On_Demand | Stopped])
SRV - [2006/08/07 15:03:02 | 00,214,720 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe -- (SNDSrvc [On_Demand | Stopped])
SRV - [2006/07/19 18:26:12 | 00,169,632 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe -- (ccSetMgr [Auto | Running])
SRV - [2006/07/19 18:26:06 | 00,192,160 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe -- (ccEvtMgr [Auto | Running])
SRV - [2006/06/12 09:18:22 | 00,016,384 | ---- | M] (MSC 2005-2006) -- C:\Program Files\Updprof\UpdProfSRV.exe -- (UPDPROF [On_Demand | Stopped])
SRV - [2006/04/11 16:13:38 | 01,160,848 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe -- (SPBBCSvc [Auto | Running])
SRV - [2006/03/24 08:52:18 | 00,571,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\CCM\CcmExec.exe -- (CcmExec [Auto | Running])
SRV - [2005/09/23 06:28:56 | 00,066,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped])
SRV - [2005/09/23 06:28:32 | 00,029,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped])
SRV - [2005/01/28 00:36:00 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe -- (UMWdf [Auto | Running])
SRV - [2004/08/05 13:00:00 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running])
SRV - [2003/08/07 10:19:48 | 00,242,960 | ---- | M] () -- C:\Program Files\ORA9204\bin\ONRSD.EXE -- (OracleORA9204ClientCache [On_Demand | Stopped])
SRV - [2003/07/28 20:28:22 | 00,089,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped])
SRV - [2003/07/18 15:02:18 | 01,422,528 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND [Auto | Running])
SRV - [2003/06/19 23:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE -- (MDM [Auto | Running])
SRV - [1997/05/14 22:49:22 | 00,013,312 | ---- | M] () -- C:\WINDOWS\System32\srvany.exe -- (Gdparc [Auto | Running])
========== Driver Services (SafeList) ==========
DRV - [2009/08/22 06:34:27 | 01,323,568 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\20091030.035\NAVEX15.SYS -- (NAVEX15 [On_Demand | Running])
DRV - [2009/08/22 06:34:19 | 00,084,912 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\VirusDefs\20091030.035\NAVENG.SYS -- (NAVENG [On_Demand | Running])
DRV - [2009/08/18 01:15:34 | 00,102,448 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv [On_Demand | Running])
DRV - [2009/08/18 01:15:31 | 00,371,248 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl [System | Running])
DRV - [2009/02/17 15:18:18 | 00,105,984 | R--- | M] (Option N.V.) -- C:\WINDOWS\System32\DRIVERS\gtuhs51.sys -- (GTUHSNDISIPXP [On_Demand | Stopped])
DRV - [2009/02/17 15:18:18 | 00,059,648 | R--- | M] (Option N.V.) -- C:\WINDOWS\System32\DRIVERS\gtuhsbus.sys -- (GTUHSBUS [On_Demand | Stopped])
DRV - [2009/02/17 15:18:18 | 00,018,816 | R--- | M] (Option N.V.) -- C:\WINDOWS\System32\DRIVERS\gtuhsoms.sys -- (GTUHSOMS [On_Demand | Stopped])
DRV - [2009/02/17 15:18:18 | 00,008,064 | R--- | M] (Option N.V.) -- C:\WINDOWS\System32\DRIVERS\gtuhsser.sys -- (GTUHSSER [On_Demand | Stopped])
DRV - [2009/01/09 16:18:02 | 00,027,136 | R--- | M] (Research in Motion Ltd) -- C:\WINDOWS\System32\DRIVERS\RimSerial.sys -- (RimVSerPort [On_Demand | Running])
DRV - [2008/05/20 18:33:50 | 00,022,784 | ---- | M] (Research In Motion Limited) -- C:\WINDOWS\System32\Drivers\RimUsb.sys -- (RimUsb [On_Demand | Stopped])
DRV - [2007/08/10 09:09:00 | 00,018,816 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\drivers\tcpipBM.sys -- (tcpipBM [System | Running])
DRV - [2007/05/16 17:14:58 | 05,707,744 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\DRIVERS\igxpmp32.sys -- (ialm [On_Demand | Running])
DRV - [2007/04/23 15:39:00 | 00,113,920 | ---- | M] (TOSHIBA CORPORATION) -- C:\WINDOWS\System32\DRIVERS\tosrfbd.sys -- (tosrfbd [On_Demand | Stopped])
DRV - [2007/04/10 19:29:42 | 00,041,856 | ---- | M] (TOSHIBA CORPORATION) -- C:\WINDOWS\System32\DRIVERS\tosrfusb.sys -- (tosrfusb [On_Demand | Stopped])
DRV - [2007/03/16 17:10:46 | 00,604,928 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\System32\DRIVERS\bcmwl5.sys -- (BCM43XX [On_Demand | Running])
DRV - [2007/03/13 13:26:06 | 00,160,256 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\System32\DRIVERS\b57xp32.sys -- (b57w2k [On_Demand | Running])
DRV - [2007/02/19 13:27:34 | 01,228,296 | ---- | M] (SigmaTel, Inc.) -- C:\WINDOWS\System32\drivers\sthda.sys -- (STHDA [On_Demand | Running])
DRV - [2007/02/17 20:00:42 | 00,132,608 | ---- | M] (Alps Electric Co., Ltd.) -- C:\WINDOWS\System32\DRIVERS\Apfiltr.sys -- (ApfiltrService [On_Demand | Running])
DRV - [2007/01/16 09:22:00 | 00,031,744 | ---- | M] (CSR, plc) -- C:\WINDOWS\System32\Drivers\csrbcxp.sys -- (CSRBC [On_Demand | Stopped])
DRV - [2006/11/20 16:55:16 | 00,036,480 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\System32\Drivers\tosrfbnp.sys -- (tosrfbnp [On_Demand | Stopped])
DRV - [2006/11/02 17:47:36 | 00,989,696 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\DRIVERS\HSF_DPV.sys -- (HSF_DPV [On_Demand | Running])
DRV - [2006/11/02 17:47:00 | 00,209,152 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\DRIVERS\HSFHWAZL.sys -- (HSFHWAZL [On_Demand | Running])
DRV - [2006/11/02 17:46:56 | 00,730,112 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\DRIVERS\HSF_CNXT.sys -- (winachsf [On_Demand | Running])
DRV - [2006/10/10 18:33:00 | 00,041,600 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\System32\DRIVERS\tosporte.sys -- (tosporte [On_Demand | Running])
DRV - [2006/10/05 15:07:46 | 00,073,600 | ---- | M] (TOSHIBA Corporation.) -- C:\WINDOWS\System32\DRIVERS\Tosrfhid.sys -- (Tosrfhid [On_Demand | Stopped])
DRV - [2006/09/18 15:55:28 | 00,109,744 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\SYMEVENT.SYS -- (SymEvent [On_Demand | Running])
DRV - [2006/09/06 12:41:20 | 00,337,592 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\savrt.sys -- (SAVRT [System | Running])
DRV - [2006/09/06 12:41:20 | 00,054,968 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\Savrtpel.sys -- (SAVRTPEL [System | Running])
DRV - [2006/08/07 15:02:26 | 00,195,776 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\Drivers\SYMTDI.SYS -- (SYMTDI [System | Running])
DRV - [2006/08/07 15:02:22 | 00,024,768 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\Drivers\SYMREDRV.SYS -- (SYMREDRV [On_Demand | Running])
DRV - [2006/06/19 12:26:58 | 00,012,672 | ---- | M] (Conexant) -- C:\WINDOWS\System32\DRIVERS\mdmxsdk.sys -- (mdmxsdk [Auto | Running])
DRV - [2006/04/11 16:13:34 | 00,389,776 | ---- | M] (Symantec Corporation) -- C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCDrv.sys -- (SPBBCDrv [System | Running])
DRV - [2006/03/24 08:52:24 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\CCM\prepdrv.sys -- (prepdrvr [On_Demand | Running])
DRV - [2005/08/01 15:45:00 | 00,064,896 | ---- | M] (TOSHIBA Corporation) -- C:\WINDOWS\System32\Drivers\tosrfcom.sys -- (Tosrfcom [System | Running])
DRV - [2005/01/06 12:42:00 | 00,018,612 | ---- | M] (TOSHIBA Corporation.) -- C:\WINDOWS\System32\DRIVERS\tosrfnds.sys -- (tosrfnds [On_Demand | Stopped])
DRV - [2004/08/12 16:45:54 | 00,137,728 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running])
DRV - [2004/08/05 13:00:00 | 00,027,440 | ---- | M] () -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped])
DRV - [2004/08/05 13:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running])
DRV - [2004/08/05 13:00:00 | 00,005,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Drivers\RootMdm.sys -- (ROOTMODEM [On_Demand | Running])
DRV - [2003/07/18 15:01:28 | 00,268,360 | ---- | M] (Cisco Systems, Inc.) -- C:\WINDOWS\System32\Drivers\CVPNDRVA.sys -- (CVPNDRVA [Auto | Running])
DRV - [2003/05/01 13:26:34 | 00,005,220 | R--- | M] (Cisco Systems, Inc.) -- C:\WINDOWS\System32\DRIVERS\CVirtA.sys -- (CVirtA [On_Demand | Stopped])
DRV - [2003/03/03 14:08:56 | 00,176,896 | ---- | M] (Zone Labs Inc.) -- C:\WINDOWS\System32\vsdatant.sys -- (vsdatant [On_Demand | Stopped])
DRV - [2002/10/17 14:22:50 | 00,138,916 | ---- | M] (Deterministic Networks, Inc.) -- C:\WINDOWS\System32\DRIVERS\dne2000.sys -- (DNE [On_Demand | Running])
========== Modules (SafeList) ==========
MOD - [2009/10/25 22:33:55 | 00,521,728 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ldcg00644\Mes documents\Téléchargements\OTL.exe
MOD - [2007/05/16 15:49:54 | 00,102,400 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\hccutils.DLL
MOD - [2006/08/25 07:51:14 | 01,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://mysfr
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://intragroupe.neufcegetel.ld
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://intragroupe.neufcegetel.ld
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://intragroupe.neufcegetel.ld
IE - HKU\S-1-5-19\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://intragroupe.neufcegetel.ld
IE - HKU\S-1-5-20\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://mysfr/
IE - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\S-1-5-21-2415333095-1493383835-2404072637-15075\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://mysfr/"
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.4
FF - prefs.js..network.proxy.autoconfig_url: "http://proxy-pac.prod.ldcom.ld/proxy.pac"
FF - prefs.js..network.proxy.no_proxies_on: "localhost,127.0.0.1"
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/10/29 21:29:00 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/10/30 09:29:10 | 00,000,000 | ---D | M]
[2009/08/28 11:18:59 | 00,000,000 | ---D | M] -- D:\Documents and Settings\ldcg00644\Application Data\mozilla\Extensions
[2009/08/28 11:18:59 | 00,000,000 | ---D | M] -- D:\Documents and Settings\ldcg00644\Application Data\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/08/28 16:55:22 | 00,000,000 | ---D | M] -- D:\Documents and Settings\ldcg00644\Application Data\mozilla\Firefox\Profiles\lyktugb4.default\extensions
[2009/08/28 11:18:32 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009/10/29 21:29:00 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/10/29 21:28:39 | 00,023,544 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/10/29 21:28:40 | 00,137,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/10/30 09:28:55 | 00,028,488 | ---- | M] (WebEx Communications, Inc) -- C:\Program Files\mozilla firefox\plugins\atgpcdec.dll
[2009/10/30 09:28:55 | 00,185,240 | ---- | M] (WebEx Communications, Inc) -- C:\Program Files\mozilla firefox\plugins\atgpcext.dll
[2009/10/30 09:28:57 | 00,046,408 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\atmccli.dll
[2009/10/30 09:29:09 | 00,099,224 | ---- | M] (WebEx Communications, Inc) -- C:\Program Files\mozilla firefox\plugins\ieatgpc.dll
[2009/10/30 09:28:55 | 00,061,848 | ---- | M] (WebEx Communications, Inc) -- C:\Program Files\mozilla firefox\plugins\npatgpc.dll
[2009/10/29 21:28:50 | 00,065,016 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2003/07/15 06:56:52 | 00,013,888 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL
[2009/10/29 21:28:52 | 00,001,516 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
[2009/10/29 21:28:52 | 00,001,822 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\cnrtl-tlfi-fr.xml
[2009/10/29 21:28:52 | 00,000,757 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
[2009/10/29 21:28:53 | 00,002,371 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2009/10/29 21:28:53 | 00,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
[2009/10/29 21:28:53 | 00,000,652 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml
O1 HOSTS File: (790 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AcroIEToolbarHelper Class) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Applis\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Applis\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll ()
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [BlackBerryAutoUpdate] C:\Program Files\Fichiers communs\Research In Motion\Auto Update\RIMAutoUpdate.exe (Research In Motion Limited)
O4 - HKLM..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\System32\WLTRAY.exe (Dell Inc.)
O4 - HKLM..\Run: [ccApp] C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe (Symantec Corporation)
O4 - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [MobileConnect] C:\Program Files\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe (Vodafone)
O4 - HKLM..\Run: [Persistence] C:\WINDOWS\System32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe ()
O4 - HKLM..\Run: [Updprof] C:\Program Files\Updprof\updprof.exe (SFR)
O4 - HKLM..\Run: [vptray] C:\Program Files\Symantec AntiVirus\VPTray.exe (Symantec Corporation)
O4 - HKU\.DEFAULT..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O4 - HKU\S-1-5-18..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\Communicator.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075..\Run: [ISUSPM] C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe (Macrovision Corporation)
O4 - Startup: D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Acrobat Assistant.lnk = C:\Applis\Adobe\Acrobat 6.0\Distillr\acrotray.exe (Adobe Systems Inc.)
O4 - Startup: D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Bluetooth Manager.lnk = C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
O4 - Startup: D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\VPN Client.lnk = C:\WINDOWS\Installer\{3E5562ED-69AB-4CEC-91E2-64E18EC5ACC6}\Icon3E5562ED7.ico ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoInternetIcon = 1
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoNetHood = 1
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceStartMenuLogOff = 1
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 1
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: Intellimenus = 1
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 16
O7 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoThumbnailCache = 1
O8 - Extra context menu item: E&xporter vers Microsoft Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O9 - Extra Button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - File not found
O15 - HKLM\..Trusted Domains: ldcom.ad ([]* in Intranet local)
O15 - HKLM\..Trusted Domains: ldcom.fr ([prod] * in Intranet local)
O15 - HKLM\..Trusted Domains: ldcom.ld ([]* in Intranet local)
O15 - HKLM\..Trusted Domains: neuf.ld ([]* in Intranet local)
O15 - HKLM\..Trusted Domains: neufcegetel.ld ([]* in Intranet local)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\.DEFAULT\..Trusted Domains: ldcom.ad ([]* in Intranet local)
O15 - HKU\.DEFAULT\..Trusted Domains: ldcom.fr ([prod] * in Intranet local)
O15 - HKU\.DEFAULT\..Trusted Domains: ldcom.ld ([]* in Intranet local)
O15 - HKU\.DEFAULT\..Trusted Domains: neuf.ld ([]* in Intranet local)
O15 - HKU\.DEFAULT\..Trusted Domains: neufcegetel.ld ([]* in Intranet local)
O15 - HKU\.DEFAULT\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-18\..Trusted Domains: ldcom.ad ([]* in Intranet local)
O15 - HKU\S-1-5-18\..Trusted Domains: ldcom.fr ([prod] * in Intranet local)
O15 - HKU\S-1-5-18\..Trusted Domains: ldcom.ld ([]* in Intranet local)
O15 - HKU\S-1-5-18\..Trusted Domains: neuf.ld ([]* in Intranet local)
O15 - HKU\S-1-5-18\..Trusted Domains: neufcegetel.ld ([]* in Intranet local)
O15 - HKU\S-1-5-18\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: campus-elearning.net ([sfrentreprises] http in Intranet local)
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: ldcom.ad ([]* in Intranet local)
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: ldcom.fr ([prod] * in Intranet local)
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: ldcom.ld ([]* in Intranet local)
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: neuf.ld ([]* in Intranet local)
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: neufcegetel.ld ([]* in Intranet local)
O15 - HKU\S-1-5-21-2415333095-1493383835-2404072637-15075\..Trusted Domains: 2 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {226906C8-B911-11D5-82A3-0000F81A655B}
https://www.dreamfactory.com/codebase/dfacactx.cab (DreamFactory Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/products/plugin/aut ... s-i586.cab (Java Plug-in 1.4.2_04)
O16 - DPF: {CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}
http://java.sun.com/products/plugin/aut ... s-i586.cab (Java Plug-in 1.4.2_04)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.195.212.12 10.29.40.11
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = burv.ldcom.ad
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Fichiers communs\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\sdra64.exe) - C:\WINDOWS\System32\sdra64.exe File not found
O20 - HKLM Winlogon: GinaDLL - (prm_gina.dll) - C:\WINDOWS\System32\prm_gina.dll (Quest Software, Inc.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\NavLogon: DllName - C:\WINDOWS\system32\NavLogon.dll - C:\WINDOWS\System32\NavLogon.dll (Symantec Corporation)
O24 - Desktop Components:0 () - file:///D:/DOCUME~1/LDCG00~1/LOCALS~1/Temp/msohtml1/01/clip_image002.gif
O24 - Desktop Components:1 (Ma page d'accueil) - About:Home
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/10/13 15:58:43 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009/10/21 11:55:53 | 00,000,000 | ---D | M] - P:\AutoPVCS -- [ NTFS ]
O32 - AutoRun File - [2009/10/21 17:50:53 | 00,000,000 | ---D | M] - U:\Automatdsl -- [ NTFS ]
O33 - MountPoints2\{17991190-c260-11de-aa77-001a6b3d05b1}\Shell - "" = AutoRun
O33 - MountPoints2\{17991190-c260-11de-aa77-001a6b3d05b1}\Shell\AutoRun\command - "" = F:\setup_vmc_lite.exe -- File not found
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found
========== Files/Folders - Created Within 30 Days ==========
[2009/10/26 19:49:51 | 00,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\InstallShield
[2009/10/30 16:40:51 | 00,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Application Data\Research In Motion
[2009/10/30 09:30:35 | 00,000,000 | ---D | C] -- D:\Documents and Settings\ldcg00644\Application Data\webex
[2009/10/26 19:48:32 | 00,000,000 | ---D | C] -- D:\Documents and Settings\ldcg00644\Local Settings\Application Data\{D21FCF31-FAAB-40A8-8A19-92D79A47AD40}
[2009/10/28 12:15:40 | 00,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Deterministic Networks
[2009/10/26 17:44:51 | 00,000,000 | ---D | C] -- C:\Program Files\Cisco Systems
[2009/10/30 13:37:20 | 00,000,000 | ---D | C] -- C:\Program Files\Quest Software
[2009/11/03 09:28:43 | 00,188,416 | ---- | C] (Quest Software) -- C:\WINDOWS\ProcessShares.exe
[2009/10/30 13:37:13 | 00,000,000 | -HSD | C] -- C:\Config.Msi
[2009/10/28 12:03:36 | 00,000,000 | ---D | C] -- C:\Client VPN v4.0.2
========== Files - Modified Within 30 Days ==========
[1 C:\WINDOWS\System32\*.tmp files]
[2009/11/03 09:28:43 | 00,188,416 | ---- | M] (Quest Software) -- C:\WINDOWS\ProcessShares.exe
[2009/11/03 09:27:10 | 00,000,073 | ---- | M] () -- C:\WINDOWS\webica.ini
[2009/11/03 09:23:34 | 00,466,424 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2009/11/03 09:23:34 | 00,399,298 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/11/03 09:23:34 | 00,074,904 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2009/11/03 09:23:34 | 00,061,808 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/11/03 09:23:33 | 01,013,118 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/11/03 09:22:04 | 00,002,317 | ---- | M] () -- D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\VPN Client.lnk
[2009/11/03 09:19:05 | 00,000,453 | ---- | M] () -- C:\WINDOWS\SMSCFG.ini
[2009/11/03 09:18:29 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/11/03 09:18:25 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/11/02 20:59:12 | 00,002,401 | ---- | M] () -- D:\Documents and Settings\All Users\Bureau\Vodafone Mobile Connect.lnk
[2009/11/02 16:46:56 | 00,000,033 | ---- | M] () -- C:\WINDOWS\iltwain.ini
[2009/11/02 11:58:28 | 00,005,158 | ---- | M] () -- C:\liste
[2009/11/02 11:53:54 | 00,005,134 | ---- | M] () -- C:\listeD
[2009/11/02 11:48:24 | 00,001,303 | ---- | M] () -- C:\listeD.text
[2009/11/01 21:48:15 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009/10/30 20:49:13 | 00,001,564 | ---- | M] () -- D:\Documents and Settings\All Users\Bureau\Quest Password Self Service.lnk
[2009/10/30 17:38:14 | 02,743,808 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\editis annuel.xls
[2009/10/30 17:04:47 | 00,000,410 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\Raccourci vers clients.lnk
[2009/10/30 16:40:56 | 00,001,704 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\Desktop Manager.lnk
[2009/10/30 16:26:30 | 00,041,984 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\Copie de sites_cpe CANON.xls
[2009/10/30 12:53:12 | 00,002,305 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\VPN Client.lnk
[2009/10/28 12:36:30 | 00,001,986 | ---- | M] () -- D:\Documents and Settings\All Users\Bureau\Vodafone SMS.lnk
[2009/10/26 16:56:13 | 00,000,567 | ---- | M] () -- D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Bluetooth Manager.lnk
[2009/10/26 15:55:45 | 00,000,695 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\Raccourci vers Clients Concord.lnk
[2009/10/20 17:15:23 | 00,039,573 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\incidents sept 09.pdf
[2009/10/20 11:28:03 | 00,115,712 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\0000i6.doc
[2009/10/19 23:02:51 | 00,041,472 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/13 16:08:47 | 00,462,336 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\procédure opérationnelle Groupe Editis.doc
[2009/10/08 14:45:59 | 00,000,468 | ---- | M] () -- D:\Documents and Settings\ldcg00644\Bureau\Raccourci vers ROC IDF.lnk
========== Files - No Company Name ==========
[2009/11/02 11:58:28 | 00,005,158 | ---- | C] () -- C:\liste
[2009/11/02 11:50:33 | 00,005,134 | ---- | C] () -- C:\listeD
[2009/11/02 11:48:24 | 00,001,303 | ---- | C] () -- C:\listeD.text
[2009/10/30 20:49:12 | 00,001,564 | ---- | C] () -- D:\Documents and Settings\All Users\Bureau\Quest Password Self Service.lnk
[2009/10/30 17:38:12 | 02,743,808 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Bureau\editis annuel.xls
[2009/10/30 16:40:55 | 00,001,704 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Bureau\Desktop Manager.lnk
[2009/10/30 16:26:30 | 00,041,984 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Bureau\Copie de sites_cpe CANON.xls
[2009/10/28 12:36:30 | 00,002,401 | ---- | C] () -- D:\Documents and Settings\All Users\Bureau\Vodafone Mobile Connect.lnk
[2009/10/28 12:36:30 | 00,001,986 | ---- | C] () -- D:\Documents and Settings\All Users\Bureau\Vodafone SMS.lnk
[2009/10/28 12:15:42 | 00,002,317 | ---- | C] () -- D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\VPN Client.lnk
[2009/10/20 16:28:40 | 00,039,573 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Bureau\incidents sept 09.pdf
[2009/10/20 11:28:03 | 00,115,712 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Bureau\0000i6.doc
[2009/10/14 11:38:43 | 00,462,336 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Bureau\procédure opérationnelle Groupe Editis.doc
[2009/10/01 08:20:49 | 00,001,839 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Application Data\EMWProfClean.log
[2009/06/11 06:42:15 | 00,000,033 | ---- | C] () -- C:\WINDOWS\iltwain.ini
[2009/03/23 08:14:20 | 00,138,114 | ---- | C] () -- D:\Documents and Settings\All Users\Application Data\DeviceManager.xml.rc4
[2009/03/10 15:27:48 | 00,013,824 | ---- | C] () -- C:\WINDOWS\System32\CallSimReader.dll
[2009/03/10 15:27:40 | 00,055,808 | ---- | C] () -- C:\WINDOWS\System32\SimReader.dll
[2009/02/17 16:23:44 | 00,020,270 | ---- | C] () -- D:\Documents and Settings\All Users\Application Data\DeviceInstaller.xml
[2008/12/29 12:19:21 | 00,041,472 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/11/13 09:07:22 | 00,000,132 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Local Settings\Application Data\fusioncache.dat
[2008/10/22 16:45:23 | 05,864,204 | -H-- | C] () -- D:\Documents and Settings\ldcg00644\Local Settings\Application Data\IconCache.db
[2008/10/22 16:33:16 | 00,026,184 | ---- | C] () -- D:\Documents and Settings\ldcg00644\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2008/10/22 15:48:21 | 00,000,062 | -HS- | C] () -- D:\Documents and Settings\ldcg00644\Application Data\desktop.ini
[2008/10/14 09:07:10 | 00,000,000 | ---- | C] () -- C:\WINDOWS\VPC32.INI
[2008/10/13 17:49:09 | 00,000,062 | -HS- | C] () -- D:\Documents and Settings\All Users\Application Data\desktop.ini
[2008/10/13 17:28:34 | 00,000,073 | ---- | C] () -- C:\WINDOWS\webica.ini
[2008/10/13 17:04:15 | 00,000,990 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008/10/13 16:59:41 | 00,000,000 | ---- | C] () -- C:\WINDOWS\tosOBEX.INI
[2008/10/13 16:50:28 | 00,086,016 | ---- | C] () -- C:\WINDOWS\System32\preflib.dll
[2008/10/13 16:50:25 | 00,757,760 | ---- | C] () -- C:\WINDOWS\System32\bcm1xsup.dll
[2008/10/13 16:47:56 | 00,000,453 | ---- | C] () -- C:\WINDOWS\SMSCFG.ini
[2008/10/13 16:40:18 | 00,910,304 | ---- | C] () -- C:\WINDOWS\System32\igmedkrn.dll
[2008/10/13 16:40:18 | 00,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4831.dll
[2008/10/13 16:36:30 | 00,000,445 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2008/10/13 16:35:52 | 00,000,573 | ---- | C] () -- C:\WINDOWS\win.ini
[2008/10/13 16:35:45 | 00,000,231 | ---- | C] () -- C:\WINDOWS\system.ini
[2008/10/13 16:35:36 | 00,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys
[2008/10/13 16:35:03 | 00,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll
[2007/08/16 16:17:50 | 00,143,360 | ---- | C] () -- C:\WINDOWS\System32\nsldap32v50.dll
[2005/12/21 17:57:04 | 00,024,576 | ---- | C] () -- C:\WINDOWS\System32\nsldappr32v50.dll
[2005/12/21 17:54:34 | 00,040,960 | ---- | C] () -- C:\WINDOWS\System32\nsldapssl32v50.dll
[2005/09/02 13:44:08 | 00,110,592 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
[2005/07/22 20:30:20 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
[2004/07/20 16:04:02 | 00,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
[2004/01/15 13:43:28 | 00,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll
[2003/07/18 14:02:16 | 00,136,384 | ---- | C] () -- C:\WINDOWS\System32\CSGina.dll
[2003/04/01 10:58:02 | 00,005,260 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
========== Custom Scans ==========
<D>
[2009/11/02 19:30:47 | 00,000,000 | ---D | M] -- D:\perso\TEMP
[2009/10/19 22:52:39 | 00,000,000 | ---D | M] -- D:\perso\TEMP\11.10.09
[2009/10/19 22:51:14 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Appart
[2009/10/19 23:11:14 | 00,000,000 | ---D | M] -- D:\perso\TEMP\chaud
[2009/07/18 13:37:24 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Conneries
[2009/07/18 13:37:24 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Conneries\PSG
[2008/10/22 12:40:23 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Corneille
[2008/10/22 12:39:55 | 00,000,000 | ---D | M] -- D:\perso\TEMP\De Palmas
[2008/10/22 12:39:24 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Eurodisney
[2009/11/02 19:32:56 | 00,000,000 | ---D | M] -- D:\perso\TEMP\fresque
[2008/10/22 12:39:15 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Musiques diverses
[2008/10/22 12:36:13 | 00,000,000 | ---D | M] -- D:\perso\TEMP\PHOTOS PTIT GUS
[2009/11/02 19:32:56 | 00,000,000 | ---D | M] -- D:\perso\TEMP\plafonnier
[2008/10/22 12:35:57 | 00,000,000 | ---D | M] -- D:\perso\TEMP\portiragnes
[2009/09/17 20:10:19 | 00,000,000 | ---D | M] -- D:\perso\TEMP\tophe
[2009/07/18 13:37:24 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Conneries
[2009/07/18 13:37:24 | 00,000,000 | ---D | M] -- D:\perso\TEMP\Conneries\PSG
<D>
[2009/10/12 18:54:06 | 02,863,529 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 001.jpg
[2009/10/12 18:54:10 | 02,850,593 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 002.jpg
[2009/10/12 18:54:13 | 03,054,936 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 003.jpg
[2009/10/12 18:54:17 | 02,588,330 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 004.jpg
[2009/10/12 18:54:20 | 02,502,577 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 005.jpg
[2009/10/12 18:54:26 | 02,547,626 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 006.jpg
[2009/10/12 18:54:27 | 02,389,796 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 007.jpg
[2009/10/12 18:54:30 | 02,701,795 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 008.jpg
[2009/10/12 18:54:36 | 02,665,064 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 009.jpg
[2009/10/12 18:54:38 | 03,070,465 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 010.jpg
[2009/10/12 18:54:43 | 02,272,883 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 011.jpg
[2009/10/12 18:54:47 | 02,407,279 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 012.jpg
[2009/10/12 18:54:50 | 02,822,251 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 013.jpg
[2009/10/12 18:54:52 | 02,492,212 | ---- | M] () -- D:\perso\TEMP\11.10.09\Photo 014.jpg
<End>