OTListIt logfile created on: 2008-11-08 06:39:04 - Run
OTListIt by OldTimer - Version 1.0.12.0 Folder = E:\Documents and Settings\Marc\Local Settings\Temporary Internet Files\Content.IE5\8LDFAVHT
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: yyyy-MM-dd
1,98 Gb Total Physical Memory | 1,33 Gb Available Physical Memory | 67,12% Memory free
3,82 Gb Paging File | 3,27 Gb Available in Paging File | 85,72% Paging File free
Paging file location(s): C:\pagefile.sys 0 0;
%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
Drive C: | 195,31 Gb Total Space | 50,10 Gb Free Space | 25,65% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 29,81 Gb Total Space | 8,46 Gb Free Space | 28,40% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive Z: | 72,96 Gb Total Space | 18,24 Gb Free Space | 25,00% Space Free | Partition Type: NTFS
Computer Name: LIBRE
Current User Name: Marc
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Whitelist: On
File Age = 30 Days
========== Processes ==========
[2008-08-08 15:36:14 | 00,573,440 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe
[2008-08-08 15:36:14 | 00,573,440 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe
[2006-06-26 09:33:42 | 00,099,888 | ---- | M] (Logitech Inc.) -- e:\Program Files\Fichiers communs\Logitech\LVMVFM\LVPrcSrv.exe
[2008-11-07 23:15:51 | 00,068,865 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
[2008-11-07 23:15:49 | 00,151,297 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
[2006-12-27 17:11:56 | 00,074,520 | ---- | M] (OSA Technologies Inc., An Avocent Company) -- E:\Program Files\Intel\IDU\awServ.exe
[2006-03-09 09:30:34 | 00,630,905 | ---- | M] (Diskeeper® Corporation) -- E:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
[2004-02-18 20:03:00 | 00,065,536 | ---- | M] (SEIKO EPSON CORPORATION) -- E:\WINDOWS\system32\E_S00RP1.EXE
[2007-08-23 14:05:18 | 00,045,056 | ---- | M] () -- E:\Program Files\MagicTune Premium\MagicTuneEngine.exe
[2003-06-19 17:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
[2005-10-06 10:15:32 | 00,167,936 | ---- | M] () -- E:\Program Files\CyberLink\Shared Files\RichVideo.exe
[2007-05-28 11:57:54 | 00,275,968 | ---- | M] (Rocket Division Software) -- E:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
[2004-04-29 20:07:00 | 00,122,880 | ---- | M] (SEIKO EPSON CORPORATION) -- E:\WINDOWS\system32\SAgent4.exe
[2005-01-28 07:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wdfmgr.exe
[2008-05-16 05:11:44 | 00,648,504 | ---- | M] (Pure Networks, Inc.) -- E:\Program Files\Fichiers communs\Pure Networks Shared\Platform\nmsrvc.exe
[2005-08-12 08:43:58 | 00,045,056 | ---- | M] (ATI Technologies Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
[2007-10-23 04:37:28 | 09,146,368 | ---- | M] (Intel Corporation) -- E:\Program Files\Intel Audio Studio\IntelAudioStudio.exe
[2006-12-28 17:07:20 | 02,242,328 | ---- | M] (OSA Technologies Inc., An Avocent Company) -- E:\Program Files\Intel\IDU\iptray.exe
[2007-12-03 16:17:28 | 02,473,984 | ---- | M] (SEC) -- E:\Program Files\MagicTune Premium\MagicTune.exe
[2007-03-28 00:07:42 | 00,593,920 | R--- | M] () -- E:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
[2008-06-10 03:27:04 | 00,144,784 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
[2008-08-20 04:53:25 | 00,185,896 | ---- | M] (RealNetworks, Inc.) -- E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
[2008-06-12 14:28:45 | 00,266,497 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
[2007-10-18 05:34:04 | 05,724,184 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Windows Live\Messenger\msnmsgr.exe
[2005-08-12 08:43:58 | 00,045,056 | ---- | M] (ATI Technologies Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
[2006-03-02 07:00:00 | 00,070,656 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\notepad.exe
[2008-06-23 04:21:49 | 00,625,664 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Internet Explorer\iexplore.exe
[2007-10-18 05:31:54 | 00,098,328 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Windows Live\Messenger\usnsvc.exe
[2008-11-08 06:38:07 | 00,418,304 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Marc\Local Settings\Temporary Internet Files\Content.IE5\8LDFAVHT\OTListIt[1].exe
========== (O23) Win32 Services ==========
[2008-11-07 23:15:51 | 00,068,865 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe -- (antivirscheduler [Auto | Running])
[2008-11-07 23:15:49 | 00,151,297 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe -- (antivirservice [Auto | Running])
[2007-10-23 19:47:22 | 00,033,800 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped])
[2008-08-08 15:36:14 | 00,573,440 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe -- (Ati HotKey Poller [Auto | Running])
[2006-12-20 15:05:00 | 00,520,192 | ---- | M] () -- E:\WINDOWS\system32\ati2sgag.exe -- (ATI Smart [Auto | Stopped])
[2006-12-27 17:11:56 | 00,074,520 | ---- | M] (OSA Technologies Inc., An Avocent Company) -- E:\Program Files\Intel\IDU\awServ.exe -- (AWService [Auto | Running])
File not found -- -- (Bonjour Service [Disabled | Stopped])
[2007-10-23 19:47:40 | 00,070,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped])
[2006-03-09 09:30:34 | 00,630,905 | ---- | M] (Diskeeper® Corporation) -- E:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe -- (Diskeeper [Auto | Running])
[2004-02-18 20:03:00 | 00,065,536 | ---- | M] (SEIKO EPSON CORPORATION) -- E:\WINDOWS\system32\E_S00RP1.EXE -- (EPSON_PM_RPCV2_01 [Auto | Running])
[2007-11-11 20:18:50 | 00,654,848 | ---- | M] (Macrovision Europe Ltd.) -- E:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service [On_Demand | Stopped])
[2007-10-09 06:58:12 | 00,036,864 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped])
[2005-11-14 00:06:04 | 00,069,632 | ---- | M] (Macrovision Corporation) -- E:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT [On_Demand | Stopped])
[2007-10-11 03:55:10 | 00,864,256 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped])
[2006-06-26 09:33:42 | 00,099,888 | ---- | M] (Logitech Inc.) -- e:\Program Files\Fichiers communs\Logitech\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv [Auto | Running])
[2006-06-26 09:33:56 | 00,091,696 | ---- | M] (Logitech Inc.) -- E:\Program Files\Fichiers communs\Logitech\SrvLnch\SrvLnch.exe -- (LVSrvLauncher [Disabled | Stopped])
[2007-08-23 14:05:18 | 00,045,056 | ---- | M] () -- E:\Program Files\MagicTune Premium\MagicTuneEngine.exe -- (MagicTuneEngine [Auto | Running])
[2003-06-19 17:25:00 | 00,322,120 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE -- (MDM [Auto | Running])
[2005-11-24 11:03:22 | 00,053,337 | ---- | M] (Sony Corporation) -- E:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe -- (MSCSPTISRV [On_Demand | Stopped])
[2006-10-09 16:11:08 | 00,724,992 | ---- | M] (Nero AG) -- E:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService [Disabled | Stopped])
[2007-10-11 03:55:14 | 00,122,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing [Disabled | Stopped])
[2008-05-21 16:25:30 | 00,012,800 | ---- | M] (Pure Networks, Inc.) -- E:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe -- (nmraapache [On_Demand | Stopped])
[2008-05-16 05:11:44 | 00,648,504 | ---- | M] (Pure Networks, Inc.) -- E:\Program Files\Fichiers communs\Pure Networks Shared\Platform\nmsrvc.exe -- (nmservice [Auto | Running])
[2007-08-24 02:19:12 | 00,443,776 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped])
[2006-10-26 08:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped])
[2005-11-24 10:57:44 | 00,053,337 | ---- | M] (Sony Corporation) -- E:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR [On_Demand | Stopped])
[2005-10-06 10:15:32 | 00,167,936 | ---- | M] () -- E:\Program Files\CyberLink\Shared Files\RichVideo.exe -- (RichVideo [Auto | Running])
[2005-11-24 10:47:30 | 00,069,718 | ---- | M] (Sony Corporation) -- E:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe -- (SPTISRV [On_Demand | Stopped])
File not found -- -- (StarWindService [Auto | Stopped])
[2007-05-28 11:57:54 | 00,275,968 | ---- | M] (Rocket Division Software) -- E:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE [Auto | Running])
[2004-04-29 20:07:00 | 00,122,880 | ---- | M] (SEIKO EPSON CORPORATION) -- E:\WINDOWS\system32\SAgent4.exe -- (StatusAgent4 [Auto | Running])
[2005-01-28 07:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wdfmgr.exe -- (UMWdf [Auto | Running])
[2007-10-18 05:31:54 | 00,098,328 | ---- | M] (Microsoft Corporation) -- E:\Program Files\Windows Live\Messenger\usnsvc.exe -- (usnjsvc [On_Demand | Running])
[2007-12-13 13:27:10 | 00,075,304 | ---- | M] (Zone Labs, LLC) -- E:\WINDOWS\system32\ZoneLabs\vsmon.exe -- (vsmon [On_Demand | Stopped])
========== Driver Services ==========
[2005-02-16 03:06:18 | 00,018,816 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) -- E:\WINDOWS\system32\drivers\APLMp50.sys -- (APLMp50 [On_Demand | Stopped])
[2008-08-08 16:30:42 | 03,266,560 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag [On_Demand | Running])
[2008-09-27 17:11:30 | 00,278,984 | ---- | M] () -- E:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt [Auto | Running])
[2007-02-27 15:25:01 | 00,011,840 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys -- (avgio [System | Running])
[2008-05-20 16:29:41 | 00,052,032 | ---- | M] (Avira GmbH) -- E:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys -- (avgntflt [On_Demand | Running])
[2008-06-27 15:03:55 | 00,075,072 | ---- | M] (Avira GmbH) -- E:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb [System | Running])
[2001-08-17 19:19:20 | 00,003,712 | ---- | M] (Creative Technology Ltd.) -- E:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk [On_Demand | Stopped])
[2006-06-05 08:49:08 | 00,230,400 | R--- | M] (Intel Corporation) -- E:\WINDOWS\system32\drivers\e1e5132.sys -- (e1express [On_Demand | Running])
[2005-10-20 09:30:00 | 00,011,264 | R--- | M] (ASUSTeK Computer Inc.) -- E:\WINDOWS\system32\drivers\EIO.sys -- (EIO [Auto | Running])
[2007-08-07 14:48:33 | 00,025,160 | ---- | M] (Elaborate Bytes AG) -- E:\WINDOWS\system32\drivers\ElbyCDIO.sys -- (ElbyCDIO [System | Running])
[2007-02-15 19:56:49 | 00,011,984 | ---- | M] (Elaborate Bytes AG) -- E:\WINDOWS\system32\drivers\ElbyDelay.sys -- (ElbyDelay [On_Demand | Running])
[2001-08-17 19:19:26 | 00,283,904 | ---- | M] (Creative Technology Ltd.) -- E:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k [On_Demand | Stopped])
[2001-08-17 19:19:28 | 00,006,912 | ---- | M] (Creative Technology Ltd.) -- E:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1 [On_Demand | Stopped])
[2001-08-17 19:19:34 | 00,040,704 | ---- | M] (Creative Technology Ltd.) -- E:\WINDOWS\system32\drivers\es1371mp.sys -- (es1371 [On_Demand | Stopped])
[2008-04-25 23:25:25 | 00,094,208 | ---- | M] (VSO Software) -- E:\WINDOWS\system32\drivers\ezplay.sys -- (ezplay [On_Demand | Stopped])
[2004-08-03 22:08:22 | 00,010,624 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum [On_Demand | Stopped])
[2007-11-26 23:57:23 | 00,005,248 | ---- | M] () -- E:\WINDOWS\system32\giveio.sys -- (giveio [On_Demand | Stopped])
[2005-03-02 11:44:00 | 00,465,988 | ---- | M] (Hauppauge Computer Works) -- E:\WINDOWS\system32\drivers\HCWBT8xx.sys -- (HCWBT8XX [On_Demand | Running])
[2005-01-07 11:07:18 | 00,138,752 | ---- | M] (Windows (R) Server 2003 DDK provider) -- E:\WINDOWS\system32\drivers\Hdaudbus.sys -- (HDAudBus [On_Demand | Running])
[2007-07-09 09:40:20 | 00,044,416 | ---- | M] (Intel Corporation) -- E:\WINDOWS\system32\drivers\HECI.sys -- (HECI [On_Demand | Running])
[2007-12-19 10:32:12 | 05,854,688 | ---- | M] (Intel Corporation) -- E:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm [On_Demand | Stopped])
[2004-08-19 15:00:36 | 00,014,848 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\drivers\kbdhid.sys -- (kbdhid [System | Stopped])
[2007-07-19 09:10:28 | 00,127,768 | ---- | M] (Kaspersky Lab) -- E:\WINDOWS\system32\drivers\klif.sys -- (KLIF [System | Running])
[2007-02-04 07:01:25 | 00,018,048 | ---- | M] () -- E:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt [Auto | Running])
[2006-06-26 09:33:28 | 01,587,632 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\Lvckap.sys -- (LVcKap [On_Demand | Stopped])
[2006-06-26 09:33:36 | 01,952,816 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\LVMVdrv.sys -- (LVMVDrv [On_Demand | Stopped])
[2006-06-26 09:33:40 | 00,023,472 | ---- | M] () -- E:\WINDOWS\system32\drivers\LVPr2Mon.sys -- (LVPr2Mon [On_Demand | Running])
[2006-06-22 17:29:46 | 00,038,960 | R--- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta [On_Demand | Running])
[2007-11-29 11:46:08 | 00,013,184 | ---- | M] (Samsung Electronics, Inc. ) -- E:\WINDOWS\system32\drivers\MTiCtwl.sys -- (MagicTune [On_Demand | Stopped])
[2004-04-10 02:42:36 | 00,002,944 | ---- | M] (
cansoft@livewiredev.com) -- E:\WINDOWS\system32\mbmiodrvr.sys -- (mbmiodrvr [System | Running])
[2004-03-30 05:29:36 | 00,118,106 | ---- | M] (Mars Semiconductor Corp.) -- E:\WINDOWS\system32\drivers\mr97310v.sys -- (MR97310_VGA_DUAL_CAMERA [On_Demand | Stopped])
[2007-11-29 11:46:08 | 00,013,184 | ---- | M] (Samsung Electronics, Inc. ) -- E:\WINDOWS\system32\drivers\MTiCtwl.sys -- (NCPro [System | Running])
[2006-03-02 07:00:00 | 00,040,320 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\drivers\nmnt.sys -- (nm [On_Demand | Stopped])
[2008-03-17 08:46:51 | 00,006,784 | ---- | M] (OSA Technologies, An Avocent Company) -- E:\WINDOWS\system32\drivers\osaio.sys -- (osaio [Auto | Running])
[2003-10-15 16:52:50 | 00,174,530 | R--- | M] (OmniVision Technologies, Inc.) -- E:\WINDOWS\system32\drivers\ov519vid.sys -- (ovt519 [On_Demand | Running])
[2007-02-02 10:42:03 | 00,047,360 | ---- | M] (VSO Software) -- E:\WINDOWS\system32\drivers\pcouffin.sys -- (pcouffin [On_Demand | Running])
[2006-06-22 17:29:27 | 00,012,080 | R--- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\lv302af.sys -- (pepifilter [On_Demand | Stopped])
[2003-09-19 09:45:48 | 00,021,248 | ---- | M] (Padus, Inc.) -- E:\WINDOWS\system32\drivers\pfc.sys -- (pfc [On_Demand | Running])
[2006-06-22 17:29:28 | 00,720,176 | R--- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\LV302AV.SYS -- (PID_08A0 [On_Demand | Stopped])
[2008-05-16 05:10:32 | 00,023,992 | ---- | M] (Pure Networks, Inc.) -- E:\WINDOWS\system32\drivers\pnarp.sys -- (pnarp [Auto | Running])
[2006-03-02 07:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- E:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink [On_Demand | Running])
[2008-05-16 05:10:30 | 00,025,272 | ---- | M] (Pure Networks, Inc.) -- E:\WINDOWS\system32\drivers\purendis.sys -- (purendis [Auto | Running])
[2007-03-07 18:51:00 | 00,043,528 | ---- | M] (Sonic Solutions) -- E:\WINDOWS\system32\drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running])
[2006-06-05 09:08:33 | 00,030,556 | ---- | M] (PowerISO Computing, Inc.) -- E:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu [System | Running])
[2006-11-07 10:37:40 | 00,066,656 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se3ebus.sys -- (se3ebus [On_Demand | Stopped])
[2006-11-07 10:37:42 | 00,009,392 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se3emdfl.sys -- (se3emdfl [On_Demand | Stopped])
[2006-11-07 10:37:42 | 00,100,736 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se3emdm.sys -- (se3emdm [On_Demand | Stopped])
[2006-11-07 10:37:46 | 00,092,304 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se3emgmt.sys -- (se3emgmt [On_Demand | Stopped])
[2006-11-07 10:37:48 | 00,090,144 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se3eobex.sys -- (se3eobex [On_Demand | Stopped])
[2006-09-05 19:07:00 | 00,061,536 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59bus.sys -- (se59bus [On_Demand | Stopped])
[2006-09-05 19:07:48 | 00,009,360 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59mdfl.sys -- (se59mdfl [On_Demand | Stopped])
[2006-09-05 19:07:52 | 00,097,088 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59mdm.sys -- (se59mdm [On_Demand | Stopped])
[2006-09-05 19:08:40 | 00,088,624 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59mgmt.sys -- (se59mgmt [On_Demand | Stopped])
[2006-09-05 19:06:28 | 00,018,704 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59nd5.sys -- (se59nd5 [On_Demand | Stopped])
[2006-09-05 19:09:26 | 00,086,432 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59obex.sys -- (se59obex [On_Demand | Stopped])
[2006-09-05 19:06:22 | 00,090,800 | R--- | M] (MCCI) -- E:\WINDOWS\system32\drivers\se59unic.sys -- (se59unic [On_Demand | Stopped])
[2007-11-13 05:25:54 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- E:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv [Auto | Running])
[2001-08-17 19:19:34 | 00,036,480 | ---- | M] (Creative Technology Ltd.) -- E:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman [On_Demand | Stopped])
[2007-03-16 08:59:40 | 00,054,272 | ---- | M] (Sonic Focus, Inc) -- E:\WINDOWS\system32\drivers\sfng32.sys -- (sfng32 [On_Demand | Running])
[2003-11-03 10:39:10 | 00,036,484 | ---- | M] (Intel Corporation) -- E:\WINDOWS\system32\drivers\SMBios.sys -- (SMBios [On_Demand | Running])
[2006-08-30 05:09:00 | 00,022,272 | ---- | M] (Intel Corporation) -- E:\WINDOWS\system32\drivers\intelsmb.sys -- (smbusp [On_Demand | Running])
[2007-06-06 11:05:34 | 09,604,864 | ---- | M] () -- E:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC [On_Demand | Stopped])
[2001-08-17 20:56:16 | 00,007,552 | ---- | M] (Sony Corporation) -- E:\WINDOWS\system32\drivers\SONYPVU1.SYS -- (SONYPVU1 [On_Demand | Stopped])
[2008-04-26 02:46:42 | 00,715,248 | ---- | M] () -- E:\WINDOWS\system32\drivers\sptd.sys -- (sptd [Boot | Running])
[2007-10-18 14:18:44 | 00,051,176 | ---- | M] (Zone Labs, LLC) -- E:\WINDOWS\system32\ZoneLabs\srescan.sys -- (srescan [Boot | Running])
[2007-03-01 10:34:22 | 00,028,352 | ---- | M] (Avira GmbH) -- E:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv [System | Running])
[2007-10-24 11:07:22 | 01,248,184 | ---- | M] (IDT, Inc.) -- E:\WINDOWS\system32\drivers\sthda.sys -- (STHDA [On_Demand | Running])
[2004-08-03 17:07:56 | 00,059,264 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\drivers\USBAUDIO.sys -- (usbaudio [On_Demand | Running])
[2004-08-03 22:10:12 | 00,078,464 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\drivers\usbvideo.sys -- (usbvideo [On_Demand | Stopped])
[2007-06-05 18:19:22 | 00,033,608 | ---- | M] () -- E:\WINDOWS\system32\drivers\VBoxDrv.sys -- (VBoxDrv [System | Running])
[2007-06-05 18:19:34 | 00,028,008 | ---- | M] (innotek GmbH) -- E:\WINDOWS\system32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon [System | Running])
[2007-12-13 13:27:14 | 00,394,952 | ---- | M] (Zone Labs, LLC) -- E:\WINDOWS\system32\vsdatant.sys -- (vsdatant [System | Running])
[2008-01-24 14:08:54 | 00,019,336 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum [On_Demand | Running])
[2008-01-24 14:09:04 | 00,028,168 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter [On_Demand | Running])
[2008-01-24 14:09:14 | 00,029,192 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo [On_Demand | Stopped])
[2008-01-24 14:09:24 | 00,014,728 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid [On_Demand | Stopped])
[2008-01-24 14:09:34 | 00,048,904 | ---- | M] (Logitech Inc.) -- E:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore [On_Demand | Running])
========== Internet Explorer ==========
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = E:\WINDOWS\system32\blank.htm
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions =
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://jeu-gratuit-online.net/the-space ... /index.php
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
HKU\.default\.default\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
HKU\s-1-5-18\s-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
HKU\s-1-5-20\s-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = E:\WINDOWS\system32\blank.htm
HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions =
HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://jeu-gratuit-online.net/the-space ... /index.php
HKU\s-1-5-21-1993962763-1958367476-839522115-1005\s-1-5-21-1993962763-1958367476-839522115-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O1 HOSTS File: (4158 bytes) - E:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 bin.errorprotector.com ## added by CiD
O1 - Hosts: 127.0.0.1 br.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 br.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 br.winfixer.com ## added by CiD
O1 - Hosts: 127.0.0.1 cdn.drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 cdn.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 cdn.winsoftware.com ## added by CiD
O1 - Hosts: 127.0.0.1 de.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 de.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.cdn.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.cdn.winsoftware.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.systemdoctor.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.winantispyware.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.windrivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.winfixer.com ## added by CiD
O1 - Hosts: 127.0.0.1 drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 dynamique.drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 errorprotector.com ## added by CiD
O1 - Hosts: 127.0.0.1 errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 es.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 fr.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 fr.winfixer.com ## added by CiD
O1 - Hosts: 46 more lines...
O2 - BHO: (E:\WINDOWS\system32\jsne87fidgf.dll) - {c5bf49a2-94f3-42bd-f434-3604812c897d} - E:\WINDOWS\system32\jsne87fidgf.dll ()
O3 - HKLM\..\Toolbar: (PDFCreator Toolbar) - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - E:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll ()
O3 - HKCU\..\Toolbar: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKCU\..\Toolbar: (no name) - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - E:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll ()
O3 - HKCU\..\Toolbar: (no name) - {A057A204-BACC-4D26-8287-79A187E26987} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKCU\..\Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKCU\..\Toolbar: (no name) - {BC4FFE41-DE9F-46FA-B455-AAD49B9F9938} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKCU\..\Toolbar: (no name) - {C4069E3A-68F1-403E-B40E-20066696354B} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..\Toolbar: (no name) - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..\Toolbar: (no name) - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - E:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll ()
O3 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..\Toolbar: (no name) - {A057A204-BACC-4D26-8287-79A187E26987} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..\Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..\Toolbar: (no name) - {BC4FFE41-DE9F-46FA-B455-AAD49B9F9938} - Reg Error: Key does not exist or could not be opened. File not found
O3 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..\Toolbar: (no name) - {C4069E3A-68F1-403E-B40E-20066696354B} - Reg Error: Key does not exist or could not be opened. File not found
O4 - HKLM..\Run: [ATICCC] "E:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay (ATI Technologies Inc.)
O4 - HKLM..\Run: [avgnt] "E:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min (Avira GmbH)
O4 - HKLM..\Run: [DiskeeperSystray] "E:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe" (Diskeeper® Corporation)
O4 - HKLM..\Run: [IgfxTray] E:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [IntelAudioStudio] "E:\Program Files\Intel Audio Studio\IntelAudioStudio.exe" TRAY (Intel Corporation)
O4 - HKLM..\Run: [ipTray.exe] "E:\Program Files\Intel\IDU\iptray.exe" (OSA Technologies Inc., An Avocent Company)
O4 - HKLM..\Run: [Sony Ericsson PC Suite] "E:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions ()
O4 - HKLM..\Run: [SunJavaUpdateSched] "E:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [TkBellExe] "E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot (RealNetworks, Inc.)
O4 - HKCU..\Run: [HijackThis startup scan] E:\Program Files\Trend Micro\HijackThis\HijackThis.exe /startupscan (Trend Micro Inc.)
O4 - HKCU..\Run: [msnmsgr] "E:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background (Microsoft Corporation)
O4 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005..\Run: [HijackThis startup scan] E:\Program Files\Trend Micro\HijackThis\HijackThis.exe /startupscan (Trend Micro Inc.)
O4 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005..\Run: [msnmsgr] "E:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LegalNoticeText =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LegalNoticeCaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: verbosestatus = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: GreyMSIAds = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 03 EA FF 01 [binary data]
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = [binary data]
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ClearRecentDocsOnExit = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKU\.default\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\.default\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\s-1-5-18\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\s-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\s-1-5-19\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\s-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\s-1-5-19_classes\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\s-1-5-20\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\s-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\s-1-5-20_classes\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: GreyMSIAds = 1
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 03 EA FF 01 [binary data]
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = [binary data]
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ClearRecentDocsOnExit = 1
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1
O7 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005_classes\Software\Policies\Microsoft\Internet Explorer\InfoDelivery present
O9 - Extra 'Tools' menuitem : Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O15 - HKCU\..Trusted Sites: localhost (http in Sites de confiance)
O15 - HKU\s-1-5-21-1993962763-1958367476-839522115-1005\..Trusted Sites: localhost (http in Sites de confiance)
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71}
http://download.microsoft.com/download/ ... mv9VCM.CAB (Reg Error: Key does not exist or could not be opened.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F}
http://v4.windowsupdate.microsoft.com/C ... 4696296296 (Reg Error: Key does not exist or could not be opened.)
O16 - DPF: {CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}
http://java.sun.com/products/plugin/aut ... s-i586.cab (Java Plug-in 1.4.2_04)
O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0)
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_10)
O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}
http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Java Plug-in 1.5.0_11)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload.macromedia.com/get/fl ... wflash.cab (Shockwave Flash Object)
O16 - DPF: Microsoft XML Parser for Java file:///E:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key does not exist or could not be opened.)
O18 - Protocol\Handler: - ipp - No CLSID value found
O18 - Protocol\Handler: - ipp\0x00000001 - E:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler: - livecall - E:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation)
O18 - Protocol\Handler: - msdaipp - No CLSID value found
O18 - Protocol\Handler: - msdaipp\0x00000001 - E:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler: - msdaipp\oledb - E:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler: - ms-help - E:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler: - ms-itss - E:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler: - msnim - E:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation)
O18 - Protocol\Handler: - mso-offdap - E:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler: - mso-offdap11 - E:\Program Files\Fichiers communs\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler: - pure-go - E:\Program Files\Fichiers communs\Pure Networks Shared\Platform\puresp4.dll (Pure Networks, Inc.)
O18 - Protocol\Filter: - text/xml - E:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
O20 - See sections below for AppInitDlls and Winlogon settings
O22 - SharedTaskScheduler: (mcb7uehuj3n8weuhejsw) - {C5BF49A2-94F3-42BD-F434-3604812C897D} - E:\WINDOWS\system32\jsne87fidgf.dll ()
========== HKLM Winlogon Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"UIHost" = E:\Documents and Settings\All Users\Application Data\TuneUp Software\TuneUp Utilities\WinStyler\tu_logonui.exe
>File not found --
>File not found --
>File not found --
>File not found --
>File not found --
>File not found --
>File not found --
========== Winlogon Notify Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\]
AtiExtEvent: "DllName" = Ati2evxx.dll -- E:\WINDOWS\system32\ati2evxx.dll (ATI Technologies Inc.)
igfxcui: "DllName" = igfxdev.dll -- E:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
========== Shell Execute Hooks ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{3711EEB0-1851-42C2-9ABD-C29470A5035C}" (HKLM) -- E:\WINDOWS\system32\qoMcbaWQ.dll File not found
========== LSA *Authentication Packages* ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"Authentication Packages" = msv1_0,E:\WINDOWS\system32\rqRIccCU,
>File not found --
========== Safeboot Options ==========
"AlternateShell" = cmd.exe
========== CDRom AutoRun Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom]
"AutoRun" = 1
========== MountPoints2 ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{00369521-d659-11dc-addd-001676c87bd4}\Shell]
"" = AutoRun
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{00369521-d659-11dc-addd-001676c87bd4}\Shell\AutoRun\command]
"" = J:\m.exe -- File not found
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{56a1c763-c98c-11dc-8422-001676c87bd4}\Shell]
"" = AutoRun
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{56a1c763-c98c-11dc-8422-001676c87bd4}\Shell\AutoRun\command]
"" = F:\STARTUP.EXE -- File not found
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{82ace819-c8ac-11dc-8422-001676c87bd4}\Shell]
"" = AutoRun
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{82ace819-c8ac-11dc-8422-001676c87bd4}\Shell\AutoRun\command]
"" = H:\STARTUP.EXE -- File not found
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\I\Shell]
"" = AutoRun
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\I\Shell\autorun\command]
"" = I:\autorun.exe -- File not found
========== Files/Folders - Created Within 30 Days ==========
[2008-11-08 05:54:55 | 00,452,043 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\GenProc.zip
[2008-11-07 23:14:47 | 00,001,858 | ---- | C] () -- E:\Documents and Settings\All Users\Bureau\AntiVir PE Classic.lnk
[2008-11-07 23:14:25 | 00,045,376 | ---- | C] (Avira GmbH) -- E:\WINDOWS\System32\drivers\avgntdd.sys
[2008-11-07 23:14:25 | 00,022,336 | ---- | C] (Avira GmbH) -- E:\WINDOWS\System32\drivers\avgntmgr.sys
[2008-11-07 23:14:22 | 00,028,352 | ---- | C] (Avira GmbH) -- E:\WINDOWS\System32\drivers\ssmdrv.sys
[2008-11-07 23:14:17 | 00,075,072 | ---- | C] (Avira GmbH) -- E:\WINDOWS\System32\drivers\avipbb.sys
[2008-11-07 23:14:14 | 00,000,000 | ---D | C] -- E:\Program Files\Avira
[2008-11-07 23:14:14 | 00,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Avira
[2008-11-07 23:05:49 | 25,085,704 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\antivir-personal-edition_avira_antivir_personal_free_8.1.0.367_anglais_10821.exe
[2008-11-07 22:50:38 | 00,000,000 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\antivir_workstation_winu_en_h.exe
[2008-11-07 22:50:25 | 25,129,080 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\antivir_workstation_winu_en_h.exe.part
[2008-11-07 22:31:42 | 00,000,344 | -HS- | C] () -- E:\WINDOWS\System32\UCccIRqr.ini
[2008-11-07 22:25:28 | 00,105,858 | ---- | C] () -- E:\WINDOWS\System32\drivers\582b492.sys
[2008-11-07 22:25:27 | 00,010,000 | ---- | C] () -- E:\WINDOWS\System32\jsne87fidgf.dll
[2008-11-06 09:02:39 | 00,037,888 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\Nous offrons des prix spéciaux aux.doc
[2008-11-06 07:56:12 | 00,079,360 | ---- | C] () -- E:\Documents and Settings\Marc\Mes documents\2050 avenue Bourbonnière.doc
[2008-11-06 06:29:02 | 24,585,544 | ---- | C] (Avery ) -- E:\Documents and Settings\Marc\Bureau\Avery Wizard 3.1.5.exe
[2008-11-05 17:15:56 | 00,196,027 | ---- | C] () -- E:\Documents and Settings\Marc\Mes documents\brochurenov2008.pdf
[2008-11-02 19:41:07 | 00,035,840 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\Nouveau Microsoft Word Document (3).doc
[2008-11-02 13:54:37 | 00,057,007 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\kx385546.gif
[2008-11-01 18:52:21 | 02,104,298 | ---- | C] () -- E:\WINDOWS\System32\drivers\2gmgsmt.sf2
[2008-11-01 18:03:01 | 56,225,7920 | R--- | C] () -- E:\Documents and Settings\Marc\Mes documents\2005 CAT ON CD.iso
[2008-11-01 17:36:16 | 00,001,964 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\2006 Catalog on Cd.lnk
[2008-11-01 17:35:26 | 00,000,000 | ---D | C] -- E:\Program Files\Dakota Collectibles
[2008-11-01 11:04:11 | 00,144,196 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\marco.jpg
[2008-10-31 04:48:43 | 00,029,184 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\adressepq.doc
[2008-10-31 04:26:27 | 00,623,104 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\listepq.doc
[2008-10-29 10:00:03 | 00,000,000 | ---D | C] -- E:\Documents and Settings\Marc\Application Data\Lineo
[2008-10-29 09:58:51 | 00,000,673 | ---- | C] () -- E:\Documents and Settings\All Users\Bureau\Linéo.lnk
[2008-10-29 09:58:51 | 00,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Application Data\Lineo
[2008-10-29 09:58:46 | 00,000,000 | ---D | C] -- E:\Program Files\Lineo
[2008-10-29 09:57:20 | 05,250,742 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\Lineo_0.3_Install.exe
[2008-10-28 10:35:22 | 00,311,870 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\factureboxerpeekeee.jpg
[2008-10-28 00:01:18 | 00,000,162 | -H-- | C] () -- E:\Documents and Settings\Marc\Bureau\~$uveau Microsoft Word Document (2).doc
[2008-10-28 00:01:00 | 00,010,752 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\Nouveau Microsoft Word Document (2).doc
[2008-10-25 01:17:15 | 05,975,510 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\logoyin.psd
[2008-10-24 03:22:52 | 00,755,147 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\piki.psd
[2008-10-23 22:17:33 | 00,219,587 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\peekeeee.jpg
[2008-10-23 21:21:49 | 00,145,045 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\logo2.jpg
[2008-10-23 17:56:38 | 00,010,752 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\Nouveau Microsoft Word Document.doc
[2008-10-23 17:29:18 | 00,000,000 | ---D | C] -- E:\Documents and Settings\Marc\Bureau\icecream
[2008-10-22 20:03:10 | 04,155,285 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\sonic3.psd
[2008-10-22 14:20:17 | 00,567,589 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\moka 012.JPG
[2008-10-22 14:18:11 | 00,518,885 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\moka 014.JPG
[2008-10-22 14:17:30 | 00,574,399 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\moka 015.JPG
[2008-10-22 14:17:17 | 00,634,124 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\moka 016.JPG
[2008-10-19 21:32:34 | 00,096,624 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\wallpaper16.jpg
[2008-10-19 21:30:46 | 00,147,669 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\sonic-wallpaper.jpg
[2008-10-19 21:30:08 | 00,096,783 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\SonicMegaCollectionWallpaper1024.jpg
[2008-10-19 21:02:26 | 00,028,403 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\cmscontroller.jpg
[2008-10-19 21:01:45 | 00,446,941 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\sh01.jpg
[2008-10-19 20:59:44 | 00,007,791 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\servletimagedownload.jpg
[2008-10-19 20:09:46 | 00,010,362 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\boxer1.jpg
[2008-10-19 20:09:41 | 00,040,589 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\boxer2.jpg
[2008-10-12 07:03:55 | 00,000,000 | ---D | C] -- E:\Program Files\Bonjour
[2008-10-10 18:04:31 | 00,018,931 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\cool_shot.jpg
[2008-10-10 17:56:12 | 00,129,773 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\15122006017.jpg
[2008-10-09 15:58:50 | 00,000,284 | ---- | C] () -- E:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2008-10-09 09:06:16 | 04,308,641 | ---- | C] () -- E:\Documents and Settings\Marc\Bureau\Pieter_Brueghel_The_Triumpf_of_Death.jpg
========== Files - Modified Within 30 Days ==========
[1 E:\WINDOWS\*.tmp files]
[2008-11-08 06:39:46 | 00,105,858 | ---- | M] () -- E:\WINDOWS\System32\drivers\582b492.sys
[2008-11-08 06:39:34 | 21,888,2080 | -HS- | M] () -- E:\WINDOWS\System32\drivers\fidbox.dat
[2008-11-08 06:28:06 | 00,000,586 | ---- | M] () -- E:\Documents and Settings\Marc\Mes documents\Mes dossiers de partage.lnk
[2008-11-08 05:54:59 | 00,452,043 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\GenProc.zip
[2008-11-08 05:45:08 | 00,539,284 | ---- | M] () -- E:\WINDOWS\System32\perfh00C.dat
[2008-11-08 05:45:08 | 00,466,500 | ---- | M] () -- E:\WINDOWS\System32\perfh009.dat
[2008-11-08 05:45:08 | 00,099,244 | ---- | M] () -- E:\WINDOWS\System32\perfc00C.dat
[2008-11-08 05:45:07 | 00,082,434 | ---- | M] () -- E:\WINDOWS\System32\perfc009.dat
[2008-11-08 05:45:04 | 01,202,938 | ---- | M] () -- E:\WINDOWS\System32\PerfStringBackup.INI
[2008-11-08 05:41:56 | 00,013,646 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl
[2008-11-08 05:40:12 | 00,000,006 | -H-- | M] () -- E:\WINDOWS\tasks\SA.DAT
[2008-11-08 05:40:10 | 00,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat
[2008-11-08 05:40:08 | 00,047,604 | ---- | M] () -- E:\WINDOWS\System32\ativvaxx.cap
[2008-11-08 05:38:42 | 08,435,376 | -H-- | M] () -- E:\Documents and Settings\Marc\Local Settings\Application Data\IconCache.db
[2008-11-08 05:19:43 | 02,567,660 | -HS- | M] () -- E:\WINDOWS\System32\drivers\fidbox.idx
[2008-11-08 05:08:24 | 00,000,344 | -HS- | M] () -- E:\WINDOWS\System32\UCccIRqr.ini
[2008-11-08 04:13:48 | 01,662,464 | -HS- | M] () -- E:\Documents and Settings\Marc\Bureau\Thumbs.db
@Alternate Data Stream - 0 bytes -> E:\Documents and Settings\Marc\Bureau\Thumbs.db:encryptable
[2008-11-07 23:14:47 | 00,001,858 | ---- | M] () -- E:\Documents and Settings\All Users\Bureau\AntiVir PE Classic.lnk
[2008-11-07 23:07:39 | 25,085,704 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\antivir-personal-edition_avira_antivir_personal_free_8.1.0.367_anglais_10821.exe
[2008-11-07 23:05:09 | 25,129,080 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\antivir_workstation_winu_en_h.exe.part
[2008-11-07 23:05:09 | 00,000,000 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\antivir_workstation_winu_en_h.exe
[2008-11-07 22:25:27 | 00,010,000 | ---- | M] () -- E:\WINDOWS\System32\jsne87fidgf.dll
[2008-11-07 15:43:24 | 00,000,116 | ---- | M] () -- E:\WINDOWS\NeroDigital.ini
[2008-11-06 15:57:02 | 00,000,284 | ---- | M] () -- E:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2008-11-06 09:02:39 | 00,037,888 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\Nous offrons des prix spéciaux aux.doc
[2008-11-06 07:56:12 | 00,079,360 | ---- | M] () -- E:\Documents and Settings\Marc\Mes documents\2050 avenue Bourbonnière.doc
[2008-11-06 06:29:30 | 24,585,544 | ---- | M] (Avery ) -- E:\Documents and Settings\Marc\Bureau\Avery Wizard 3.1.5.exe
[2008-11-05 17:15:57 | 00,196,027 | ---- | M] () -- E:\Documents and Settings\Marc\Mes documents\brochurenov2008.pdf
[2008-11-02 21:23:51 | 00,035,840 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\Nouveau Microsoft Word Document (3).doc
[2008-11-02 13:54:40 | 00,057,007 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\kx385546.gif
[2008-11-01 18:05:31 | 56,225,7920 | R--- | M] () -- E:\Documents and Settings\Marc\Mes documents\2005 CAT ON CD.iso
[2008-11-01 17:36:16 | 00,001,964 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\2006 Catalog on Cd.lnk
[2008-11-01 11:04:13 | 00,144,196 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\marco.jpg
[2008-10-31 16:15:14 | 00,000,390 | ---- | M] () -- E:\WINDOWS\tasks\1-Click Maintenance.job
[2008-10-31 04:48:43 | 00,029,184 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\adressepq.doc
[2008-10-31 04:26:28 | 00,623,104 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\listepq.doc
[2008-10-29 09:58:51 | 00,000,673 | ---- | M] () -- E:\Documents and Settings\All Users\Bureau\Linéo.lnk
[2008-10-29 09:57:34 | 05,250,742 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\Lineo_0.3_Install.exe
[2008-10-28 10:35:25 | 00,311,870 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\factureboxerpeekeee.jpg
[2008-10-28 00:01:18 | 00,000,162 | -H-- | M] () -- E:\Documents and Settings\Marc\Bureau\~$uveau Microsoft Word Document (2).doc
[2008-10-28 00:01:00 | 00,010,752 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\Nouveau Microsoft Word Document (2).doc
[2008-10-27 16:03:20 | 00,755,147 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\piki.psd
[2008-10-25 01:17:17 | 05,975,510 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\logoyin.psd
[2008-10-23 22:17:35 | 00,219,587 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\peekeeee.jpg
[2008-10-23 21:21:57 | 00,145,045 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\logo2.jpg
[2008-10-23 17:56:38 | 00,010,752 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\Nouveau Microsoft Word Document.doc
[2008-10-22 20:03:12 | 04,155,285 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\sonic3.psd
[2008-10-22 14:20:43 | 00,567,589 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\moka 012.JPG
[2008-10-22 14:18:28 | 00,518,885 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\moka 014.JPG
[2008-10-22 14:18:24 | 00,574,399 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\moka 015.JPG
[2008-10-22 14:18:14 | 00,634,124 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\moka 016.JPG
[2008-10-19 21:32:35 | 00,096,624 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\wallpaper16.jpg
[2008-10-19 21:30:47 | 00,147,669 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\sonic-wallpaper.jpg
[2008-10-19 21:30:09 | 00,096,783 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\SonicMegaCollectionWallpaper1024.jpg
[2008-10-19 21:02:27 | 00,028,403 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\cmscontroller.jpg
[2008-10-19 21:01:46 | 00,446,941 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\sh01.jpg
[2008-10-19 20:59:45 | 00,007,791 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\servletimagedownload.jpg
[2008-10-19 20:09:44 | 00,010,362 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\boxer1.jpg
[2008-10-19 20:09:37 | 00,040,589 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\boxer2.jpg
[2008-10-13 07:32:44 | 00,182,272 | ---- | M] () -- E:\Documents and Settings\Marc\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008-10-10 18:04:32 | 00,018,931 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\cool_shot.jpg
[2008-10-10 17:56:16 | 00,129,773 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\15122006017.jpg
[2008-10-09 09:06:24 | 04,308,641 | ---- | M] () -- E:\Documents and Settings\Marc\Bureau\Pieter_Brueghel_The_Triumpf_of_Death.jpg
<End>