OTL logfile created on: 3/7/2014 6:26:34 PM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 8.0.6001.18702) Locale: 0000080C | Country: Belgium | Language: FRB | Date Format: d/MM/yyyy 2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 82.00% Memory free 2.00 Gb Paging File | 2.00 Gb Available in Paging File | 93.00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 111.78 Gb Total Space | 10.39 Gb Free Space | 9.30% Space Free | Partition Type: NTFS Drive D: | 1.91 Gb Total Space | 0.12 Gb Free Space | 6.18% Space Free | Partition Type: FAT32 Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet002 [color=#E56717]========== Win32 Services (All) ==========[/color] SRV - [2014/03/07 05:21:10 | 000,146,473 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Documents and Settings\All Users\Application Data\3clvz8g7.cpp -- (winmgmt) SRV - [2014/03/03 14:54:17 | 001,759,768 | ---- | M] (AVG Secure Search) [Auto] -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.0.0\ToolbarUpdater.exe -- (vToolbarUpdater18.0.0) SRV - [2014/01/22 06:19:38 | 003,788,816 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto] -- C:\Program Files\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent) SRV - [2013/09/23 19:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto] -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe -- (avgwd) SRV - [2013/09/05 03:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013/07/19 23:35:48 | 000,754,856 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400) SRV - [2013/04/18 04:06:42 | 000,737,616 | ---- | M] (Nokia) [On_Demand] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2013/03/13 09:08:06 | 000,253,656 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/12/21 05:35:27 | 000,116,648 | ---- | M] (Google Inc.) [On_Demand] -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdatem) Service Google Update (gupdatem) SRV - [2012/12/21 05:35:27 | 000,116,648 | ---- | M] (Google Inc.) [Auto] -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdate) Service Google Update (gupdate) SRV - [2012/07/06 08:58:51 | 000,078,336 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\browser.dll -- (Browser) SRV - [2012/04/24 14:58:08 | 000,919,824 | ---- | M] (Intel(R) Corporation) [Auto] -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor) Intel(R) SRV - [2012/04/24 13:55:46 | 000,870,672 | ---- | M] (Intel(R) Corporation) [Auto] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) Intel(R) SRV - [2012/04/24 13:32:50 | 000,481,552 | ---- | M] (Intel(R) Corporation) [Auto] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) Intel(R) SRV - [2011/09/14 16:06:38 | 000,169,624 | ---- | M] (Adobe Systems Incorporated) [Auto] -- C:\Program Files\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor10.0) SRV - [2010/08/27 00:57:43 | 000,099,840 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\srvsvc.dll -- (LanmanServer) SRV - [2010/08/17 08:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\spoolsv.exe -- (Spooler) SRV - [2010/08/06 04:13:54 | 000,053,760 | ---- | M] (Hewlett-Packard) [Auto] -- C:\WINDOWS\system32\HPZipm12.dll -- (Pml Driver HPZ12) SRV - [2010/08/06 04:13:54 | 000,044,032 | ---- | M] (Hewlett-Packard) [Auto] -- C:\WINDOWS\system32\HPZinw12.dll -- (Net Driver HPZ12) SRV - [2010/03/18 10:47:22 | 000,035,160 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe -- (aspnet_state) SRV - [2010/03/18 07:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010/03/18 07:16:28 | 000,124,240 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe -- (NetTcpPortSharing) SRV - [2010/03/09 17:56:02 | 000,229,458 | ---- | M] (IDT, Inc.) [Auto] -- C:\Program Files\IDT\WDM\stacsv.exe -- (STacSV) SRV - [2010/01/09 15:37:50 | 004,640,000 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc) SRV - [2010/01/09 15:18:00 | 000,149,352 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose) SRV - [2009/11/17 22:16:42 | 000,253,568 | ---- | M] (Hewlett-Packard Co.) [On_Demand] -- C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll -- (hpqcxs08) SRV - [2009/11/17 22:16:42 | 000,137,344 | ---- | M] (Hewlett-Packard Co.) [Auto] -- C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll -- (hpqddsvc) SRV - [2009/11/17 21:04:44 | 000,699,520 | ---- | M] (Hewlett-Packard Co.) [Auto] -- C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL -- (HPSLPSVC) SRV - [2009/07/27 18:17:41 | 000,135,168 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\shsvcs.dll -- (Themes) SRV - [2009/07/27 18:17:41 | 000,135,168 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\shsvcs.dll -- (ShellHWDetection) SRV - [2009/07/27 18:17:41 | 000,135,168 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\shsvcs.dll -- (FastUserSwitchingCompatibility) SRV - [2009/07/13 12:16:22 | 000,064,512 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\WudfSvc.dll -- (WudfSvc) SRV - [2009/06/26 03:26:20 | 000,026,984 | ---- | M] (Broadcom Corporation) [Auto] -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe -- (Credential Vault Host Storage) SRV - [2009/06/26 03:26:18 | 000,812,392 | ---- | M] (Broadcom Corporation) [Auto] -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe -- (Credential Vault Host Control Service) SRV - [2009/06/10 01:14:49 | 000,132,096 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\wkssvc.dll -- (lanmanworkstation) SRV - [2009/04/20 12:17:26 | 000,045,568 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\dnsrslvr.dll -- (Dnscache) SRV - [2009/02/09 07:10:48 | 000,617,472 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\advapi32.dll -- (Wmi) SRV - [2009/02/09 07:10:48 | 000,401,408 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\rpcss.dll -- (RpcSs) Remote Procedure Call (RPC) SRV - [2009/02/09 07:10:48 | 000,401,408 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\rpcss.dll -- (DcomLaunch) SRV - [2009/02/06 06:11:05 | 000,110,592 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\services.exe -- (PlugPlay) SRV - [2009/02/06 06:11:05 | 000,110,592 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\services.exe -- (Eventlog) SRV - [2008/07/29 15:10:04 | 000,046,104 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0) SRV - [2008/07/29 13:24:50 | 000,881,664 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc) SRV - [2008/07/25 05:17:02 | 000,069,632 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2008/07/07 15:26:58 | 000,253,952 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\es.dll -- (EventSystem) SRV - [2008/06/20 11:02:47 | 000,245,248 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\mswsock.dll -- (Nla) Network Location Awareness (NLA) SRV - [2008/05/18 18:57:42 | 000,095,744 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\System32\msiexec.exe -- (MSIServer) SRV - [2008/04/14 02:00:00 | 000,483,840 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\wzcsvc.dll -- (WZCSVC) SRV - [2008/04/14 02:00:00 | 000,435,200 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\ntmssvc.dll -- (NtmsSvc) SRV - [2008/04/14 02:00:00 | 000,409,088 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\qmgr.dll -- (BITS) SRV - [2008/04/14 02:00:00 | 000,333,824 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\wiaservc.dll -- (stisvc) Windows Image Acquisition (WIA) SRV - [2008/04/14 02:00:00 | 000,331,264 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\ipnathlp.dll -- (SharedAccess) Windows Firewall/Internet Connection Sharing (ICS) SRV - [2008/04/14 02:00:00 | 000,295,424 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\termsrv.dll -- (TermService) SRV - [2008/04/14 02:00:00 | 000,291,328 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\qagentrt.dll -- (napagent) SRV - [2008/04/14 02:00:00 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\vssvc.exe -- (VSS) SRV - [2008/04/14 02:00:00 | 000,249,856 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\tapisrv.dll -- (TapiSrv) SRV - [2008/04/14 02:00:00 | 000,224,768 | ---- | M] (Microsoft Corp., Veritas Software) [On_Demand] -- C:\WINDOWS\System32\dmadmin.exe -- (dmadmin) SRV - [2008/04/14 02:00:00 | 000,198,144 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\netman.dll -- (Netman) SRV - [2008/04/14 02:00:00 | 000,192,512 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\schedsvc.dll -- (Schedule) SRV - [2008/04/14 02:00:00 | 000,186,368 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\rasmans.dll -- (RasMan) SRV - [2008/04/14 02:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\upnphost.dll -- (upnphost) SRV - [2008/04/14 02:00:00 | 000,175,104 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\w32time.dll -- (W32Time) SRV - [2008/04/14 02:00:00 | 000,171,008 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\srsvc.dll -- (srservice) SRV - [2008/04/14 02:00:00 | 000,167,936 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\appmgmts.dll -- (AppMgmt) SRV - [2008/04/14 02:00:00 | 000,150,528 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\imapi.exe -- (ImapiService) SRV - [2008/04/14 02:00:00 | 000,141,312 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\sessmgr.exe -- (RDSessMgr) SRV - [2008/04/14 02:00:00 | 000,132,608 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\rsvp.exe -- (RSVP) SRV - [2008/04/14 02:00:00 | 000,132,096 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\dot3svc.dll -- (Dot3svc) SRV - [2008/04/14 02:00:00 | 000,129,024 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\xmlprov.dll -- (xmlprov) SRV - [2008/04/14 02:00:00 | 000,126,976 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\dhcpcsvc.dll -- (Dhcp) SRV - [2008/04/14 02:00:00 | 000,126,464 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\wbem\wmiapsrv.exe -- (WmiApSrv) SRV - [2008/04/14 02:00:00 | 000,111,104 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\netdde.exe -- (NetDDEdsdm) SRV - [2008/04/14 02:00:00 | 000,111,104 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\netdde.exe -- (NetDDE) SRV - [2008/04/14 02:00:00 | 000,095,744 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\scardsvr.exe -- (SCardSvr) SRV - [2008/04/14 02:00:00 | 000,090,112 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\trkwks.dll -- (TrkWks) SRV - [2008/04/14 02:00:00 | 000,089,600 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\smlogsvc.exe -- (SysmonLog) SRV - [2008/04/14 02:00:00 | 000,088,576 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\rasauto.dll -- (RasAuto) SRV - [2008/04/14 02:00:00 | 000,080,896 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\wscsvc.dll -- (wscsvc) SRV - [2008/04/14 02:00:00 | 000,075,264 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\locator.exe -- (RpcLocator) Remote Procedure Call (RPC) SRV - [2008/04/14 02:00:00 | 000,073,216 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\tlntsvr.exe -- (TlntSvr) SRV - [2008/04/14 02:00:00 | 000,071,680 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\ssdpsrv.dll -- (SSDPSRV) SRV - [2008/04/14 02:00:00 | 000,068,096 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\webclnt.dll -- (WebClient) SRV - [2008/04/14 02:00:00 | 000,062,464 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\cryptsvc.dll -- (CryptSvc) SRV - [2008/04/14 02:00:00 | 000,061,440 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\kmsvc.dll -- (hkmsvc) SRV - [2008/04/14 02:00:00 | 000,059,904 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\regsvc.dll -- (RemoteRegistry) SRV - [2008/04/14 02:00:00 | 000,053,248 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\mprdim.dll -- (RemoteAccess) SRV - [2008/04/14 02:00:00 | 000,044,544 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\alg.exe -- (ALG) SRV - [2008/04/14 02:00:00 | 000,042,496 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\audiosrv.dll -- (AudioSrv) SRV - [2008/04/14 02:00:00 | 000,039,424 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\sens.dll -- (SENS) SRV - [2008/04/14 02:00:00 | 000,038,400 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll -- (helpsvc) SRV - [2008/04/14 02:00:00 | 000,033,792 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\msgsvc.dll -- (Messenger) SRV - [2008/04/14 02:00:00 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\eapsvc.dll -- (EapHost) SRV - [2008/04/14 02:00:00 | 000,033,280 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\clipsrv.exe -- (ClipSrv) SRV - [2008/04/14 02:00:00 | 000,032,768 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\mnmsrvc.exe -- (mnmsrvc) SRV - [2008/04/14 02:00:00 | 000,023,552 | ---- | M] (Microsoft Corp.) [Auto] -- C:\WINDOWS\system32\dmserver.dll -- (dmserver) SRV - [2008/04/14 02:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\ersvc.dll -- (ERSvc) SRV - [2008/04/14 02:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\seclogon.dll -- (seclogon) SRV - [2008/04/14 02:00:00 | 000,018,432 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\ups.exe -- (UPS) SRV - [2008/04/14 02:00:00 | 000,017,408 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\WINDOWS\system32\alrsvc.dll -- (Alerter) SRV - [2008/04/14 02:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\w3ssl.dll -- (HTTPFilter) SRV - [2008/04/14 02:00:00 | 000,013,824 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\lmhsvc.dll -- (LmHosts) SRV - [2008/04/14 02:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\lsass.exe -- (SamSs) SRV - [2008/04/14 02:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\lsass.exe -- (ProtectedStorage) SRV - [2008/04/14 02:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\lsass.exe -- (PolicyAgent) SRV - [2008/04/14 02:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\lsass.exe -- (NtLmSsp) SRV - [2008/04/14 02:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\lsass.exe -- (Netlogon) SRV - [2008/04/14 02:00:00 | 000,006,656 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\wuauserv.dll -- (wuauserv) SRV - [2008/04/14 02:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\msdtc.exe -- (MSDTC) SRV - [2008/04/14 02:00:00 | 000,005,632 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\cisvc.exe -- (CiSvc) SRV - [2008/04/14 02:00:00 | 000,005,120 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\System32\dllhost.exe -- (SwPrv) SRV - [2008/04/14 02:00:00 | 000,005,120 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\System32\dllhost.exe -- (COMSysApp) SRV - [2008/04/13 23:41:56 | 000,021,504 | ---- | M] (Microsoft Corporation) [Auto] -- C:\WINDOWS\system32\hidserv.dll -- (HidServ) SRV - [2006/10/18 15:47:16 | 000,027,136 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\WINDOWS\system32\mspmsnsv.dll -- (WmdmPmSN) SRV - [2006/10/18 13:05:24 | 000,913,408 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Program Files\Windows Media Player\WMPNetwk.exe -- (WMPNetworkSvc) [color=#E56717]========== Driver Services (All) ==========[/color] DRV - File not found [Kernel | On_Demand] -- -- (WDICA) DRV - File not found [Kernel | Disabled] -- -- (ViaIde) DRV - File not found [Kernel | Disabled] -- -- (ultra) DRV - File not found [Kernel | Disabled] -- -- (TosIde) DRV - File not found [Kernel | Disabled] -- -- (symc8xx) DRV - File not found [Kernel | Disabled] -- -- (symc810) DRV - File not found [Kernel | Disabled] -- -- (sym_u3) DRV - File not found [Kernel | Disabled] -- -- (sym_hi) DRV - File not found [Kernel | Disabled] -- -- (Sparrow) DRV - File not found [Kernel | Disabled] -- -- (Simbad) DRV - File not found [Kernel | Disabled] -- -- (ql1280) DRV - File not found [Kernel | Disabled] -- -- (ql1240) DRV - File not found [Kernel | Disabled] -- -- (ql12160) DRV - File not found [Kernel | Disabled] -- -- (Ql10wnt) DRV - File not found [Kernel | Disabled] -- -- (ql1080) DRV - File not found [Kernel | Disabled] -- -- (perc2hib) DRV - File not found [Kernel | Disabled] -- -- (perc2) DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP) DRV - File not found [Kernel | System] -- -- (PCIDump) DRV - File not found [Kernel | Disabled] -- -- (mraid35x) DRV - File not found [Kernel | System] -- -- (lbrtfdc) DRV - File not found [Kernel | Disabled] -- -- (IntelIde) DRV - File not found [Kernel | Disabled] -- -- (ini910u) DRV - File not found [Kernel | Disabled] -- -- (i2omp) DRV - File not found [Kernel | System] -- -- (i2omgmt) DRV - File not found [Kernel | Disabled] -- -- (hpn) DRV - File not found [Kernel | Disabled] -- -- (dpti2o) DRV - File not found [Kernel | Disabled] -- -- (dac960nt) DRV - File not found [Kernel | Disabled] -- -- (dac2w2k) DRV - File not found [Kernel | Disabled] -- -- (Cpqarray) DRV - File not found [Kernel | Disabled] -- -- (CmdIde) DRV - File not found [Kernel | System] -- -- (Changer) DRV - File not found [Kernel | Boot] -- -- (cerc6) DRV - File not found [Kernel | Disabled] -- -- (cd20xrnt) DRV - File not found [Kernel | Disabled] -- -- (Atdisk) DRV - File not found [Kernel | Disabled] -- -- (asc3550) DRV - File not found [Kernel | Disabled] -- -- (asc3350p) DRV - File not found [Kernel | Disabled] -- -- (asc) DRV - File not found [Kernel | Disabled] -- -- (amsint) DRV - File not found [Kernel | Disabled] -- -- (AliIde) DRV - File not found [Kernel | Disabled] -- -- (aic78xx) DRV - File not found [Kernel | Disabled] -- -- (aic78u2) DRV - File not found [Kernel | Disabled] -- -- (Aha154x) DRV - File not found [Kernel | Disabled] -- -- (adpu160m) DRV - File not found [Kernel | Disabled] -- -- (abp480n5) DRV - File not found [Kernel | Disabled] -- -- (Abiosdsk) DRV - [2014/03/03 14:54:17 | 000,042,784 | ---- | M] (AVG Technologies) [Kernel | System] -- C:\WINDOWS\system32\drivers\avgtpx86.sys -- (avgtp) DRV - [2014/01/19 15:46:54 | 000,022,808 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System] -- C:\WINDOWS\system32\drivers\avgidsshimx.sys -- (AVGIDSShim) DRV - [2013/11/27 15:21:06 | 000,040,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\ndproxy.sys -- (NDProxy) DRV - [2013/11/25 15:56:22 | 000,210,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System] -- C:\WINDOWS\system32\drivers\avgidsdriverx.sys -- (AVGIDSDriver) DRV - [2013/11/25 15:56:22 | 000,149,272 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot] -- C:\WINDOWS\system32\drivers\avgidshx.sys -- (AVGIDSHX) DRV - [2013/11/25 15:49:18 | 000,120,600 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System] -- C:\WINDOWS\system32\drivers\avgdiskx.sys -- (Avgdiskx) DRV - [2013/10/31 17:00:28 | 000,176,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86) DRV - [2013/10/31 16:30:08 | 000,222,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot] -- C:\WINDOWS\system32\drivers\avglogx.sys -- (Avglogx) DRV - [2013/09/30 18:49:38 | 000,102,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2013/09/09 18:43:20 | 000,027,448 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot] -- C:\WINDOWS\system32\drivers\avgrkx86.sys -- (Avgrkx86) DRV - [2013/08/28 19:56:06 | 000,026,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbser.sys -- (usbser) DRV - [2013/08/08 19:55:07 | 000,032,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbccgp.sys -- (usbccgp) DRV - [2013/08/01 09:08:52 | 000,193,848 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2013/07/16 19:58:17 | 000,123,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbvideo.sys -- (usbvideo) USB Video Device (WDM) DRV - [2013/07/16 19:58:03 | 000,060,160 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbaudio.sys -- (usbaudio) USB Audio Driver (WDM) DRV - [2013/07/02 20:59:02 | 000,014,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbscan.sys -- (usbscan) DRV - [2012/10/17 07:53:46 | 000,019,072 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2012/07/04 09:05:18 | 000,139,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\rdpwd.sys -- (RDPWD) DRV - [2012/01/23 08:33:50 | 007,477,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\NETwNx32.sys -- (NETwNx32) ___ Pilote de carte de la série Intel(R) DRV - [2011/12/08 05:08:00 | 000,017,536 | ---- | M] () [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\cecvad.sys -- (cecsvad) DRV - [2011/08/17 08:49:54 | 000,138,496 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\afd.sys -- (AFD) DRV - [2011/07/15 08:29:31 | 000,456,320 | ---- | M] (Microsoft Corporation) [File_System | System] -- C:\WINDOWS\system32\drivers\mrxsmb.sys -- (MRxSmb) DRV - [2011/07/08 09:02:00 | 000,010,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ndistapi.sys -- (NdisTapi) DRV - [2011/04/21 08:37:43 | 000,105,472 | ---- | M] (Microsoft Corporation) [File_System | Boot] -- C:\WINDOWS\System32\drivers\mup.sys -- (Mup) DRV - [2011/03/23 10:00:10 | 000,241,880 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\e1y5132.sys -- (e1yexpress) Intel(R) DRV - [2011/02/17 08:18:03 | 000,357,888 | ---- | M] (Microsoft Corporation) [File_System | On_Demand] -- C:\WINDOWS\system32\drivers\srv.sys -- (Srv) DRV - [2011/01/05 14:42:14 | 000,284,792 | R--- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService) DRV - [2010/05/19 16:15:04 | 000,013,952 | ---- | M] (Intel Corporation) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) DRV - [2010/03/18 21:00:00 | 000,045,648 | ---- | M] (Sonic Solutions) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\pxhelp20.sys -- (PxHelp20) DRV - [2010/03/09 17:56:02 | 001,656,499 | ---- | M] (IDT, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA) DRV - [2010/01/28 11:20:32 | 000,281,472 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\OA001Vid.sys -- (OA001Vid) DRV - [2010/01/13 06:18:36 | 001,730,272 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm) DRV - [2009/10/20 11:20:16 | 000,265,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\http.sys -- (HTTP) DRV - [2009/07/14 04:35:16 | 000,444,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\wdf01000.sys -- (Wdf01000) DRV - [2009/07/13 10:50:46 | 000,132,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\WudfRd.sys -- (WudfRd) DRV - [2009/07/13 10:50:18 | 000,091,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\WudfPf.sys -- (WudfPf) DRV - [2009/06/26 03:23:44 | 000,033,832 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\cvusbdrv.sys -- (cvusbdrv) DRV - [2009/06/24 06:18:41 | 000,092,928 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\ksecdd.sys -- (KSecDD) DRV - [2009/05/28 04:48:20 | 000,134,144 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\OA001Afx.sys -- (OA001Afx) DRV - [2009/05/21 04:48:10 | 000,029,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbccid.sys -- (USBCCID) DRV - [2009/04/21 16:13:34 | 000,113,664 | ---- | M] (Andrea Electronics Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\AESTAud.sys -- (AESTAud) DRV - [2009/04/07 20:32:50 | 000,116,224 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R) DRV - [2009/03/18 06:02:23 | 000,030,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbehci.sys -- (usbehci) DRV - [2009/03/06 09:30:08 | 000,133,632 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\OA001Ufd.sys -- (OA001Ufd) DRV - [2008/11/05 17:20:24 | 000,048,128 | ---- | M] (REDC) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\rimmptsk.sys -- (rimmptsk) DRV - [2008/06/20 06:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\tcpip.sys -- (Tcpip) DRV - [2008/06/04 08:14:00 | 000,026,608 | ---- | M] (Dell Inc) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\PBADRV.sys -- (PBADRV) DRV - [2008/05/06 10:06:00 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM) DRV - [2008/04/14 02:00:00 | 000,799,744 | ---- | M] (Microsoft Corp., Veritas Software) [Kernel | Disabled] -- C:\WINDOWS\system32\drivers\dmboot.sys -- (dmboot) DRV - [2008/04/14 02:00:00 | 000,574,976 | ---- | M] (Microsoft Corporation) [File_System | Disabled] -- C:\WINDOWS\System32\drivers\ntfs.sys -- (Ntfs) DRV - [2008/04/14 02:00:00 | 000,384,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\update.sys -- (Update) DRV - [2008/04/14 02:00:00 | 000,187,776 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\acpi.sys -- (ACPI) DRV - [2008/04/14 02:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\ndis.sys -- (NDIS) DRV - [2008/04/14 02:00:00 | 000,180,608 | ---- | M] (Microsoft Corporation) [File_System | On_Demand] -- C:\WINDOWS\system32\drivers\mrxdav.sys -- (MRxDAV) DRV - [2008/04/14 02:00:00 | 000,175,744 | ---- | M] (Microsoft Corporation) [File_System | System] -- C:\WINDOWS\system32\drivers\rdbss.sys -- (Rdbss) DRV - [2008/04/14 02:00:00 | 000,162,816 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\netbt.sys -- (NetBT) DRV - [2008/04/14 02:00:00 | 000,153,344 | ---- | M] (Microsoft Corp., Veritas Software) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\dmio.sys -- (dmio) DRV - [2008/04/14 02:00:00 | 000,152,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ipnat.sys -- (IpNat) DRV - [2008/04/14 02:00:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008/04/14 02:00:00 | 000,143,744 | ---- | M] (Microsoft Corporation) [File_System | Disabled] -- C:\WINDOWS\System32\drivers\fastfat.sys -- (Fastfat) DRV - [2008/04/14 02:00:00 | 000,129,792 | ---- | M] (Microsoft Corporation) [File_System | Boot] -- C:\WINDOWS\system32\drivers\fltMgr.sys -- (FltMgr) DRV - [2008/04/14 02:00:00 | 000,125,056 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\ftdisk.sys -- (Ftdisk) DRV - [2008/04/14 02:00:00 | 000,120,192 | ---- | M] (Microsoft Corporation) [Kernel | Disabled] -- C:\WINDOWS\System32\drivers\pcmcia.sys -- (Pcmcia) DRV - [2008/04/14 02:00:00 | 000,091,520 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ndiswan.sys -- (NdisWan) DRV - [2008/04/14 02:00:00 | 000,080,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\parport.sys -- (Parport) DRV - [2008/04/14 02:00:00 | 000,079,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\sdbus.sys -- (sdbus) DRV - [2008/04/14 02:00:00 | 000,075,264 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\ipsec.sys -- (IPSec) DRV - [2008/04/14 02:00:00 | 000,073,472 | ---- | M] (Microsoft Corporation) [File_System | Boot] -- C:\WINDOWS\system32\drivers\sr.sys -- (sr) DRV - [2008/04/14 02:00:00 | 000,069,120 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\psched.sys -- (PSched) DRV - [2008/04/14 02:00:00 | 000,066,048 | ---- | M] (Microsoft Corporation) [File_System | Disabled] -- C:\WINDOWS\System32\drivers\udfs.sys -- (Udfs) DRV - [2008/04/14 02:00:00 | 000,064,512 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\serial.sys -- (Serial) DRV - [2008/04/14 02:00:00 | 000,063,744 | ---- | M] (Microsoft Corporation) [File_System | Disabled] -- C:\WINDOWS\System32\drivers\cdfs.sys -- (Cdfs) DRV - [2008/04/14 02:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\cdrom.sys -- (Cdrom) DRV - [2008/04/14 02:00:00 | 000,061,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\nic1394.sys -- (NIC1394) DRV - [2008/04/14 02:00:00 | 000,061,696 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\ohci1394.sys -- (ohci1394) DRV - [2008/04/14 02:00:00 | 000,060,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\arp1394.sys -- (Arp1394) DRV - [2008/04/14 02:00:00 | 000,059,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\atmarpc.sys -- (Atmarpc) DRV - [2008/04/14 02:00:00 | 000,052,352 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\volsnap.sys -- (VolSnap) DRV - [2008/04/14 02:00:00 | 000,051,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\rasl2tp.sys -- (Rasl2tp) WAN Miniport (L2TP) DRV - [2008/04/14 02:00:00 | 000,048,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\raspptp.sys -- (PptpMiniport) WAN Miniport (PPTP) DRV - [2008/04/14 02:00:00 | 000,044,544 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\fips.sys -- (Fips) DRV - [2008/04/14 02:00:00 | 000,042,368 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\mountmgr.sys -- (MountMgr) DRV - [2008/04/14 02:00:00 | 000,042,112 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\imapi.sys -- (Imapi) DRV - [2008/04/14 02:00:00 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\raspppoe.sys -- (RasPppoe) DRV - [2008/04/14 02:00:00 | 000,036,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ip6fw.sys -- (Ip6Fw) DRV - [2008/04/14 02:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\intelppm.sys -- (intelppm) DRV - [2008/04/14 02:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\disk.sys -- (Disk) DRV - [2008/04/14 02:00:00 | 000,035,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\msgpc.sys -- (Gpc) DRV - [2008/04/14 02:00:00 | 000,034,688 | ---- | M] (Microsoft Corporation) [File_System | System] -- C:\WINDOWS\system32\drivers\netbios.sys -- (NetBIOS) DRV - [2008/04/14 02:00:00 | 000,034,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\wanarp.sys -- (Wanarp) DRV - [2008/04/14 02:00:00 | 000,032,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ipfltdrv.sys -- (IpFilterDriver) DRV - [2008/04/14 02:00:00 | 000,032,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\nwlnkfwd.sys -- (NwlnkFwd) DRV - [2008/04/14 02:00:00 | 000,030,848 | ---- | M] (Microsoft Corporation) [File_System | System] -- C:\WINDOWS\System32\drivers\npfs.sys -- (Npfs) DRV - [2008/04/14 02:00:00 | 000,030,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\modem.sys -- (Modem) DRV - [2008/04/14 02:00:00 | 000,027,392 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\fdc.sys -- (Fdc) DRV - [2008/04/14 02:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\kbdclass.sys -- (Kbdclass) DRV - [2008/04/14 02:00:00 | 000,021,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\tdtcp.sys -- (TDTCP) DRV - [2008/04/14 02:00:00 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\vga.sys -- (VgaSave) DRV - [2008/04/14 02:00:00 | 000,020,864 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ipinip.sys -- (IpInIp) DRV - [2008/04/14 02:00:00 | 000,020,480 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\flpydisk.sys -- (Flpydisk) DRV - [2008/04/14 02:00:00 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv) DRV - [2008/04/14 02:00:00 | 000,019,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\partmgr.sys -- (PartMgr) DRV - [2008/04/14 02:00:00 | 000,019,072 | ---- | M] (Microsoft Corporation) [File_System | System] -- C:\WINDOWS\System32\drivers\msfs.sys -- (Msfs) DRV - [2008/04/14 02:00:00 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\cdaudio.sys -- (Cdaudio) DRV - [2008/04/14 02:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink) DRV - [2008/04/14 02:00:00 | 000,016,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\raspti.sys -- (Raspti) DRV - [2008/04/14 02:00:00 | 000,015,744 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\serenum.sys -- (Serenum) DRV - [2008/04/14 02:00:00 | 000,015,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\mssmbios.sys -- (mssmbios) DRV - [2008/04/14 02:00:00 | 000,014,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ndisuio.sys -- (Ndisuio) DRV - [2008/04/14 02:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\asyncmac.sys -- (AsyncMac) DRV - [2008/04/14 02:00:00 | 000,013,952 | ---- | M] (Microsoft Corporation) [Kernel | Disabled] -- C:\WINDOWS\System32\drivers\cbidf2k.sys -- (cbidf2k) DRV - [2008/04/14 02:00:00 | 000,012,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\nwlnkflt.sys -- (NwlnkFlt) DRV - [2008/04/14 02:00:00 | 000,012,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\System32\drivers\tdpipe.sys -- (TDPIPE) DRV - [2008/04/14 02:00:00 | 000,011,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\acpiec.sys -- (ACPIEC) DRV - [2008/04/14 02:00:00 | 000,011,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\sfloppy.sys -- (Sfloppy) DRV - [2008/04/14 02:00:00 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\irenum.sys -- (IRENUM) DRV - [2008/04/14 02:00:00 | 000,008,832 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\rasacd.sys -- (RasAcd) DRV - [2008/04/14 02:00:00 | 000,007,936 | ---- | M] (Microsoft Corporation) [Recognizer | System] -- C:\WINDOWS\System32\drivers\fs_rec.sys -- (Fs_Rec) DRV - [2008/04/14 02:00:00 | 000,006,784 | ---- | M] (Microsoft Corporation) [Kernel | Auto] -- C:\WINDOWS\System32\drivers\parvdm.sys -- (ParVdm) DRV - [2008/04/14 02:00:00 | 000,005,888 | ---- | M] (Microsoft Corp., Veritas Software.) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\dmload.sys -- (dmload) DRV - [2008/04/14 02:00:00 | 000,004,352 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\swenum.sys -- (swenum) DRV - [2008/04/14 02:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\rdpcdd.sys -- (RDPCDD) DRV - [2008/04/14 02:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\mnmdd.sys -- (mnmdd) DRV - [2008/04/14 02:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\beep.sys -- (Beep) DRV - [2008/04/14 02:00:00 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\System32\drivers\null.sys -- (Null) DRV - [2008/04/14 02:00:00 | 000,002,864 | ---- | M] (Microsoft Corporation) [Adapter | On_Demand] -- C:\WINDOWS\System32\winsock.dll -- (Winsock) DRV - [2008/04/13 23:43:22 | 000,040,840 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\termdd.sys -- (TermDD) DRV - [2008/04/13 19:16:26 | 000,085,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\NABTSFEC.sys -- (NABTSFEC) DRV - [2008/04/13 19:16:26 | 000,019,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\WSTCODEC.SYS -- (WSTCODEC) DRV - [2008/04/13 19:16:24 | 000,017,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\CCDECODE.sys -- (CCDECODE) DRV - [2008/04/13 19:16:24 | 000,011,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\SLIP.sys -- (SLIP) DRV - [2008/04/13 19:16:24 | 000,010,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\NdisIP.sys -- (NdisIP) DRV - [2008/04/13 19:16:22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\StreamIP.sys -- (streamip) DRV - [2008/04/13 19:10:28 | 000,057,600 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\redbook.sys -- (redbook) DRV - [2008/04/13 19:09:54 | 000,007,552 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\MSKSSRV.sys -- (MSKSSRV) DRV - [2008/04/13 19:09:52 | 000,005,504 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\MSTEE.sys -- (MSTEE) DRV - [2008/04/13 19:09:52 | 000,005,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\MSPCLOCK.sys -- (MSPCLOCK) DRV - [2008/04/13 19:09:52 | 000,004,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\MSPQM.sys -- (MSPQM) DRV - [2008/04/13 19:06:40 | 000,008,832 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\wmiacpi.sys -- (WmiAcpi) DRV - [2008/04/13 19:06:38 | 000,013,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\CmBatt.sys -- (CmBatt) DRV - [2008/04/13 19:06:38 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\compbatt.sys -- (Compbatt) DRV - [2008/04/13 18:48:02 | 000,052,480 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\i8042prt.sys -- (i8042prt) DRV - [2008/04/13 18:47:20 | 000,083,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\wdmaud.sys -- (wdmaud) DRV - [2008/04/13 18:45:56 | 000,060,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\sysaudio.sys -- (sysaudio) DRV - [2008/04/13 18:17:38 | 000,025,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbprint.sys -- (usbprint) DRV - [2008/04/13 18:15:40 | 000,026,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\USBSTOR.SYS -- (USBSTOR) DRV - [2008/04/13 18:15:38 | 000,059,520 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbhub.sys -- (usbhub) DRV - [2008/04/13 18:15:36 | 000,020,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbuhci.sys -- (usbuhci) DRV - [2008/04/13 18:15:28 | 000,010,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\hidusb.sys -- (HidUsb) DRV - [2008/04/13 18:15:14 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\drmkaud.sys -- (drmkaud) DRV - [2008/04/13 18:15:10 | 000,172,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\kmixer.sys -- (kmixer) DRV - [2008/04/13 18:15:10 | 000,056,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\swmidi.sys -- (swmidi) DRV - [2008/04/13 18:15:08 | 000,006,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\splitter.sys -- (splitter) DRV - [2008/04/13 18:15:02 | 000,052,864 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\DMusic.sys -- (DMusic) DRV - [2008/04/13 18:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\atapi.sys -- (atapi) DRV - [2008/04/13 18:09:50 | 000,014,592 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\kbdhid.sys -- (kbdhid) DRV - [2008/04/13 18:09:48 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\WINDOWS\system32\drivers\mouclass.sys -- (Mouclass) DRV - [2008/04/13 18:06:46 | 000,068,224 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\pci.sys -- (PCI) DRV - [2008/04/13 18:06:42 | 000,037,248 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\isapnp.sys -- (isapnp) DRV - [2008/04/13 18:02:52 | 000,196,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\rdpdr.sys -- (rdpdr) DRV - [2008/04/13 16:09:24 | 000,142,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\aec.sys -- (aec) DRV - [2001/08/17 08:59:44 | 000,003,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\audstub.sys -- (audstub) DRV - [2001/08/17 07:53:32 | 000,006,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\serscan.sys -- (StillCam) DRV - [2001/08/17 07:51:52 | 000,003,328 | ---- | M] (Microsoft Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\pciide.sys -- (PCIIde) DRV - [2001/08/17 07:48:00 | 000,012,160 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\mouhid.sys -- (mouhid) [color=#E56717]========== Standard Registry (All) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm IE - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\Loïc_ON_C\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.delta-search.com/?babsrc=HP_ss&mntrId=545A0022FB3A582E&affID=121271&tt=250613_gr4&tsp=4927 IE - HKU\Loïc_ON_C\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKU\Loïc_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKU\Loïc_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ IE - HKU\Loïc_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) IE - HKU\Loïc_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\Loïc_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.0.0\\npsitesafety.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@nokia.com/EnablerPlugin: C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51: C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2012/11/30 21:03:31 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013/01/02 04:16:31 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}: C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/12/21 08:40:30 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013/01/02 04:16:31 | 000,000,000 | ---D | M] [2013/06/28 04:28:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions O1 HOSTS File: ([2008/04/14 02:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\18.0.0.248\AVG Secure Search_toolbar.dll (AVG Secure Search) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\18.0.0.248\AVG Secure Search_toolbar.dll (AVG Secure Search) O3 - HKU\Loïc_ON_C\..\Toolbar\ShellBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AESTFltr] C:\WINDOWS\System32\AESTFltr.exe (Andrea Electronics Corporation) O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.) O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) O4 - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard) O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation) O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel(R) Corporation) O4 - HKLM..\Run: [OA001Mon] C:\WINDOWS\OA001Mon.exe (Creative Technology Ltd.) O4 - HKLM..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation) O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask.exe (Apple Inc.) O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.) O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe () O4 - HKLM..\Run: [WinampAgent] File not found O4 - HKU\Loïc_ON_C..\Run: [] File not found O4 - HKU\Loïc_ON_C..\Run: [Akamai NetSession Interface] File not found O4 - HKU\Loïc_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - HKU\Loïc_ON_C..\Run: [Gadwin PrintScreen] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe (Gadwin Systems, Inc) O4 - HKU\Loïc_ON_C..\Run: [NokiaSuite.exe] C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe (Nokia) O4 - HKU\Loïc_ON_C..\Run: [Xvid] C:\Program Files\Xvid\CheckUpdate.exe () O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) O4 - Startup: C:\Documents and Settings\Loïc\Start Menu\Programs\Startup\7g8zvlc3.lnk = X:\I386\SYSTEM32\RUNDLL32.EXE (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\Loïc_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: &Envoyer à OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O8 - Extra context menu item: E&xporter vers Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: Afficher ou masquer l'HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/_layouts/ClientBin/ieawsdc32.cab (Microsoft Office Template and Media Control) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1353942090296 (WUWebControl Class) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1357909120078 (MUWebControl Class) O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} http://fichiers2.touslesdrivers.com/maconfig/MaConfig_6_5_0_3.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation) O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation) O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation) O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.0\ViProtocol.dll (AVG Secure Search) O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation) O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation) O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation) O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation) O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation) O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation) O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation) O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation) O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation) O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation) O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O24 - Desktop Components:0 (My Current Home Page) - About:Home O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation) O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation) O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation) O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation) O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation) O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation) O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2013/06/20 03:53:47 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ] O32 - AutoRun File - [2012/11/26 09:52:03 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2006/03/24 06:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O33 - MountPoints2\{405e01a7-61ba-11e2-8af5-0022fb3a582e}\Shell - "" = AutoRun O33 - MountPoints2\{405e01a7-61ba-11e2-8af5-0022fb3a582e}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{405e01a7-61ba-11e2-8af5-0022fb3a582e}\Shell\AutoRun\command - "" = E:\Setup.exe O33 - MountPoints2\{54f2f964-396a-11e2-8ae5-0022fb3a582e}\Shell - "" = AutoRun O33 - MountPoints2\{54f2f964-396a-11e2-8ae5-0022fb3a582e}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{54f2f964-396a-11e2-8ae5-0022fb3a582e}\Shell\AutoRun\command - "" = "E:\WD SmartWare.exe" autoplay=true O33 - MountPoints2\{54f2f965-396a-11e2-8ae5-0022fb3a582e}\Shell - "" = AutoRun O33 - MountPoints2\{54f2f965-396a-11e2-8ae5-0022fb3a582e}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{54f2f965-396a-11e2-8ae5-0022fb3a582e}\Shell\AutoRun\command - "" = "H:\WD SmartWare.exe" autoplay=true O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2014\avgrsx.exe /sync /restart) - C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vector Graphics Rendering (VML) ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4 ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML Data Binding for Java ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Advanced Authoring ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7 ActiveX: {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - Security Update for Windows XP (KB923789) ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX: {73fa19d0-2d75-11d2-995d-00c04f98bbc9} - Web Folders ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX: {ACC563BC-4266-43f0-B6ED-9D38C4202C7E} - ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework ActiveX: {C3C986D6-06B1-43BF-90DD-BE30756C00DE} - RevokedRootsUpdate ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Task Scheduler ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1 ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Shockwave Flash ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE NetSvcs: 6to4 - File not found NetSvcs: Ias - File not found NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: WmdmPmSp - File not found NetSvcs: winmgmt - C:\Documents and Settings\All Users\Application Data\3clvz8g7.cpp (Microsoft Corporation) SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: SCSI Class - Driver Group SafeBootMin: sermouse.sys - Driver SafeBootMin: System Bus Extender - Driver Group SafeBootMin: vga.sys - Driver SafeBootMin: WinMgmt - C:\Documents and Settings\All Users\Application Data\3clvz8g7.cpp (Microsoft Corporation) SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: SCSI Class - Driver Group SafeBootNet: sermouse.sys - Driver SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: vga.sys - Driver SafeBootNet: WinMgmt - C:\Documents and Settings\All Users\Application Data\3clvz8g7.cpp (Microsoft Corporation) SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014/03/07 06:35:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\CSC [2014/03/07 05:21:10 | 000,146,473 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\All Users\Application Data\3clvz8g7.cpp [2014/03/06 04:57:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Apple [2014/03/02 08:50:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Xvid [2014/03/01 12:14:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Loïc\Application Data\Apple Computer [2014/03/01 12:12:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime [2014/03/01 12:12:15 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime [2014/03/01 12:12:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer [2014/03/01 12:11:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple [2014/03/01 12:11:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Loïc\Local Settings\Application Data\Apple [2014/03/01 12:11:25 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update [2014/03/01 12:11:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple [2014/03/01 12:10:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Loïc\Local Settings\Application Data\Apple Computer [2014/02/06 07:40:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Loïc\My Documents\EDF PAPY [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014/03/07 08:54:15 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014/03/07 08:46:18 | 000,000,276 | ---- | M] () -- C:\WINDOWS\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1757981266-515967899-1801674531-1003.job [2014/03/07 08:45:57 | 095,027,928 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\7g8zvlc3.fee [2014/03/07 08:45:52 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1757981266-515967899-1801674531-1003.job [2014/03/07 08:45:48 | 000,001,048 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2014/03/07 07:11:51 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014/03/07 06:06:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2014/03/07 05:21:14 | 000,000,800 | ---- | M] () -- C:\Documents and Settings\Loïc\Start Menu\Programs\Startup\7g8zvlc3.lnk [2014/03/07 05:21:10 | 000,146,473 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\All Users\Application Data\3clvz8g7.cpp [2014/03/07 04:59:00 | 000,001,052 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2014/03/06 20:00:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-LOIC-D8CB39704E-Loïc.job [2014/03/06 11:41:00 | 000,000,264 | ---- | M] () -- C:\WINDOWS\tasks\EPUpdater.job [2014/03/06 04:57:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2014/03/05 11:16:11 | 000,496,996 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2014/03/05 11:16:11 | 000,085,480 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2014/03/03 14:54:17 | 000,042,784 | ---- | M] (AVG Technologies) -- C:\WINDOWS\System32\drivers\avgtpx86.sys [2014/03/03 02:17:01 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk [2014/03/03 02:16:40 | 000,215,552 | ---- | M] () -- C:\Documents and Settings\Loïc\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014/03/02 08:50:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Start Menu\Programs\Xvid [2014/03/01 12:12:36 | 000,001,604 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk [2014/03/01 12:12:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime [2014/02/19 03:47:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG [2014/02/19 03:47:35 | 000,000,716 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG 2014.lnk [2014/02/12 21:06:17 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2014/02/06 03:31:20 | 000,179,239 | ---- | M] () -- C:\Documents and Settings\Loïc\My Documents\Scan0001.jpg [2014/02/05 21:54:08 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe [2014/02/05 21:54:08 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014/03/07 05:21:14 | 000,000,800 | ---- | C] () -- C:\Documents and Settings\Loïc\Start Menu\Programs\Startup\7g8zvlc3.lnk [2014/03/07 05:21:12 | 095,027,928 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\7g8zvlc3.fee [2014/03/01 12:12:36 | 000,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\QuickTime Player.lnk [2014/03/01 12:11:31 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2014/03/01 12:11:27 | 000,002,265 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk [2014/02/06 03:31:19 | 000,179,239 | ---- | C] () -- C:\Documents and Settings\Loïc\My Documents\Scan0001.jpg [2013/09/11 07:56:20 | 000,645,632 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2013/09/11 07:56:20 | 000,240,640 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2013/06/28 05:35:41 | 000,343,246 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1757981266-515967899-1801674531-1003-0.dat [2013/06/20 04:16:35 | 000,343,246 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat [2013/02/25 03:19:46 | 000,279,888 | ---- | C] () -- C:\WINDOWS\System32\brcmbsp.dll [2013/02/25 03:14:55 | 000,080,368 | ---- | C] () -- C:\WINDOWS\System32\pbadrvdll.dll [2013/01/24 12:30:16 | 000,000,037 | ---- | C] () -- C:\Documents and Settings\Loïc\Application Data\MediaFolder.ini [2013/01/24 12:28:58 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Loïc\Application Data\DVAP.set [2013/01/24 12:10:57 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2013/01/24 12:10:54 | 005,603,328 | ---- | C] () -- C:\WINDOWS\System32\CAMACCESS.dll [2013/01/24 12:10:54 | 000,801,280 | ---- | C] () -- C:\WINDOWS\System32\avformat-52.dll [2013/01/24 12:10:54 | 000,202,752 | ---- | C] () -- C:\WINDOWS\System32\swscale-0.dll [2013/01/24 12:10:54 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\avutil-50.dll [2013/01/24 12:10:53 | 009,852,928 | ---- | C] () -- C:\WINDOWS\System32\avcodec-52.dll [2013/01/24 12:10:53 | 000,011,264 | ---- | C] () -- C:\WINDOWS\System32\avdevice-52.dll [2013/01/24 12:10:51 | 000,017,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\cecvad.sys [2013/01/02 04:05:36 | 000,231,615 | ---- | C] () -- C:\WINDOWS\hpoins47.dat [2013/01/02 04:05:36 | 000,000,601 | ---- | C] () -- C:\WINDOWS\hpomdl47.dat [2012/12/24 03:05:28 | 000,016,959 | ---- | C] () -- C:\Documents and Settings\Loïc\Local Settings\Application Data\recently-used.xbel [2012/11/29 05:44:49 | 000,215,552 | ---- | C] () -- C:\Documents and Settings\Loïc\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012/11/28 09:54:24 | 000,284,160 | ---- | C] () -- C:\WINDOWS\unin040c.exe [2012/11/27 03:59:38 | 000,982,192 | ---- | C] () -- C:\WINDOWS\System32\igkrng500.bin [2012/11/27 03:59:38 | 000,417,344 | ---- | C] () -- C:\WINDOWS\System32\igcompkrng500.bin [2012/11/27 03:41:17 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012/11/26 10:41:59 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2012/11/26 10:40:38 | 000,365,712 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012/11/26 10:14:08 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012/11/26 09:54:07 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2012/11/26 09:48:54 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2008/04/14 02:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2008/04/14 02:00:00 | 000,496,996 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2008/04/14 02:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2008/04/14 02:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2008/04/14 02:00:00 | 000,085,480 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2008/04/14 02:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2008/04/14 02:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2008/04/14 02:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2008/04/14 02:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2008/04/14 02:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2007/01/25 19:04:12 | 000,138,752 | ---- | C] () -- C:\WINDOWS\System32\mase32.dll [2007/01/25 19:04:12 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\ma32.dll [2006/06/30 06:58:44 | 000,176,128 | ---- | C] () -- C:\WINDOWS\System32\bioapi_mds300.dll [2006/06/30 06:58:44 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\bioapi100.dll [2005/04/15 06:52:33 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2005/04/15 06:52:33 | 000,004,627 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [color=#E56717]========== LOP Check ==========[/color] [2013/10/07 11:54:15 | 000,000,000 | ---D | M] -- C:\WINDOWS\system32\config\systemprofile\Application Data\AVG2014 [2012/12/26 10:04:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\Abandonware-France [2013/06/20 04:08:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\Autodesk [2013/01/23 01:14:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\AVG January 2013 Campaign [2013/04/03 03:03:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\AVG Secure Search [2013/10/07 11:56:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\AVG2014 [2013/06/28 04:28:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\BabSolution [2013/06/28 04:25:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\Babylon [2012/12/24 08:58:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2013/06/17 02:57:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\Epatternslists [2013/11/26 05:20:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\File Scout [2013/06/28 08:21:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\FileZilla [2012/12/16 05:21:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\fr.myphotobook.creator.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1 [2013/06/17 02:56:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\GIRDAC [2013/03/24 06:04:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\PC Suite [2013/06/28 04:48:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\PerformerSoft [2012/12/11 10:00:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\PriceGong [2013/10/07 04:40:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\SimpleFiles [2013/04/18 05:28:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\Todae [2012/11/29 02:40:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\TuneUp Software [2013/10/14 11:20:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Loïc\Application Data\XnView [2013/06/20 03:57:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Autodesk [2013/01/22 11:23:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG January 2013 Campaign [2013/12/09 08:20:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG Secure Search [2013/10/07 11:54:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2013 [2013/11/02 01:48:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2014 [2013/06/28 04:25:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Babylon [2012/11/29 02:30:46 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files [2014/03/07 03:35:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData [2013/03/24 05:58:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia [2013/03/24 05:48:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache [2013/11/13 05:45:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite [2013/03/07 10:45:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Pinnacle [2013/03/07 10:49:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Pinnacle VideoSpin [2012/12/04 05:35:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe [2014/03/06 11:41:00 | 000,000,264 | ---- | M] () -- C:\WINDOWS\Tasks\EPUpdater.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< HKCU\Software >[/color] [HKEY_CURRENT_USER\Software\Adobe] [HKEY_CURRENT_USER\Software\Alps] [HKEY_CURRENT_USER\Software\Andrea Electronics] [HKEY_CURRENT_USER\Software\AppDataLow] [HKEY_CURRENT_USER\Software\Apple Computer, Inc.] [HKEY_CURRENT_USER\Software\Apple Inc.] [HKEY_CURRENT_USER\Software\ASProtect] [HKEY_CURRENT_USER\Software\Autodesk] [HKEY_CURRENT_USER\Software\Avg] [HKEY_CURRENT_USER\Software\AVG Secure Search] [HKEY_CURRENT_USER\Software\Clients] [HKEY_CURRENT_USER\Software\Conduit] [HKEY_CURRENT_USER\Software\ConduitSearchScopes] [HKEY_CURRENT_USER\Software\Cygwin] [HKEY_CURRENT_USER\Software\DivXNetworks] [HKEY_CURRENT_USER\Software\FileScout] [HKEY_CURRENT_USER\Software\FotoSketcher] [HKEY_CURRENT_USER\Software\FreeDownloadManager.ORG] [HKEY_CURRENT_USER\Software\Freeware] [HKEY_CURRENT_USER\Software\Gadwin Systems] [HKEY_CURRENT_USER\Software\GIRDAC PDF Converter] [HKEY_CURRENT_USER\Software\GNU] [HKEY_CURRENT_USER\Software\Google] [HKEY_CURRENT_USER\Software\Hewlett-Packard] [HKEY_CURRENT_USER\Software\HP] [HKEY_CURRENT_USER\Software\ilivid] [HKEY_CURRENT_USER\Software\IM Providers] [HKEY_CURRENT_USER\Software\Intel] [HKEY_CURRENT_USER\Software\Kernel Outlook PST Viewer last1437yy] [HKEY_CURRENT_USER\Software\Licenses] [HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications] [HKEY_CURRENT_USER\Software\Macromedia] [HKEY_CURRENT_USER\Software\MainConcept] [HKEY_CURRENT_USER\Software\Microsoft] [HKEY_CURRENT_USER\Software\Mozilla] [HKEY_CURRENT_USER\Software\Mpath] [HKEY_CURRENT_USER\Software\Netscape] [HKEY_CURRENT_USER\Software\Nokia] [HKEY_CURRENT_USER\Software\ODBC] [HKEY_CURRENT_USER\Software\Paint.NET] [HKEY_CURRENT_USER\Software\Pinnacle Systems] [HKEY_CURRENT_USER\Software\Piriform] [HKEY_CURRENT_USER\Software\Policies] [HKEY_CURRENT_USER\Software\PriceGong] [HKEY_CURRENT_USER\Software\ProtectMe] [HKEY_CURRENT_USER\Software\RealNetworks] [HKEY_CURRENT_USER\Software\SimpleFiles] [HKEY_CURRENT_USER\Software\Skype] [HKEY_CURRENT_USER\Software\Smartbar] [HKEY_CURRENT_USER\Software\Softonic] [HKEY_CURRENT_USER\Software\Stardock] [HKEY_CURRENT_USER\Software\Trolltech] [HKEY_CURRENT_USER\Software\WinRAR] [HKEY_CURRENT_USER\Software\WinRAR SFX] [color=#A23BEC]< HKLM\Software >[/color] "" = [HKEY_LOCAL_MACHINE\Software\ACE Compression Software] [HKEY_LOCAL_MACHINE\Software\Adobe] [HKEY_LOCAL_MACHINE\Software\Alps] [HKEY_LOCAL_MACHINE\Software\Apple Computer, Inc.] [HKEY_LOCAL_MACHINE\Software\Apple Inc.] [HKEY_LOCAL_MACHINE\Software\Autodesk] [HKEY_LOCAL_MACHINE\Software\Avg] [HKEY_LOCAL_MACHINE\Software\AVG Secure Search] [HKEY_LOCAL_MACHINE\Software\AVG Security Toolbar] [HKEY_LOCAL_MACHINE\Software\BioAPI] [HKEY_LOCAL_MACHINE\Software\BROADCOM] [HKEY_LOCAL_MACHINE\Software\BrowserChoice] [HKEY_LOCAL_MACHINE\Software\C07ft5Y] [HKEY_LOCAL_MACHINE\Software\CDDB] [HKEY_LOCAL_MACHINE\Software\Classes] [HKEY_LOCAL_MACHINE\Software\Clients] [HKEY_LOCAL_MACHINE\Software\Conduit] [HKEY_LOCAL_MACHINE\Software\Creative Tech] [HKEY_LOCAL_MACHINE\Software\Cygwin] [HKEY_LOCAL_MACHINE\Software\Dell] [HKEY_LOCAL_MACHINE\Software\Dell Computer Corporation] [HKEY_LOCAL_MACHINE\Software\DivX] [HKEY_LOCAL_MACHINE\Software\FAST Multimedia] [HKEY_LOCAL_MACHINE\Software\FreeDownloadManager.ORG] [HKEY_LOCAL_MACHINE\Software\Gemplus] [HKEY_LOCAL_MACHINE\Software\GNU] [HKEY_LOCAL_MACHINE\Software\Google] [HKEY_LOCAL_MACHINE\Software\Hasbro Interactive] [HKEY_LOCAL_MACHINE\Software\Hewlett-Packard] [HKEY_LOCAL_MACHINE\Software\IDT] [HKEY_LOCAL_MACHINE\Software\IM Providers] [HKEY_LOCAL_MACHINE\Software\InstalledOptions] [HKEY_LOCAL_MACHINE\Software\Intel] [HKEY_LOCAL_MACHINE\Software\Macromedia] [HKEY_LOCAL_MACHINE\Software\Microsoft] [HKEY_LOCAL_MACHINE\Software\Mozilla] [HKEY_LOCAL_MACHINE\Software\MozillaPlugins] [HKEY_LOCAL_MACHINE\Software\Nokia] [HKEY_LOCAL_MACHINE\Software\Nokia Mobile Phones] [HKEY_LOCAL_MACHINE\Software\Nullsoft] [HKEY_LOCAL_MACHINE\Software\ODBC] [HKEY_LOCAL_MACHINE\Software\OldTimer Tools] [HKEY_LOCAL_MACHINE\Software\Paint.NET] [HKEY_LOCAL_MACHINE\Software\PC Connectivity Solution] [HKEY_LOCAL_MACHINE\Software\PCSuite] [HKEY_LOCAL_MACHINE\Software\Pegasus Imaging] [HKEY_LOCAL_MACHINE\Software\PegasusImaging] [HKEY_LOCAL_MACHINE\Software\Pinnacle Systems] [HKEY_LOCAL_MACHINE\Software\Piriform] [HKEY_LOCAL_MACHINE\Software\Policies] [HKEY_LOCAL_MACHINE\Software\Program Groups] [HKEY_LOCAL_MACHINE\Software\ProtectMe] [HKEY_LOCAL_MACHINE\Software\RealNetworks] [HKEY_LOCAL_MACHINE\Software\RegisteredApplications] [HKEY_LOCAL_MACHINE\Software\RICOH] [HKEY_LOCAL_MACHINE\Software\RSA] [HKEY_LOCAL_MACHINE\Software\Schlumberger] [HKEY_LOCAL_MACHINE\Software\Secure] [HKEY_LOCAL_MACHINE\Software\SimpleFiles] [HKEY_LOCAL_MACHINE\Software\Skype] [HKEY_LOCAL_MACHINE\Software\SOFTWARE] [HKEY_LOCAL_MACHINE\Software\Sonic] [HKEY_LOCAL_MACHINE\Software\VideoLAN] [HKEY_LOCAL_MACHINE\Software\Windows 3.1 Migration Status] [HKEY_LOCAL_MACHINE\Software\WinRAR] [HKEY_LOCAL_MACHINE\Software\WiVideo] [HKEY_LOCAL_MACHINE\Software\Wow6432Node] [HKEY_LOCAL_MACHINE\Software\Xing Technology Corp.] [HKEY_LOCAL_MACHINE\Software\XnView] [HKEY_LOCAL_MACHINE\Software\Xvid Team] [color=#A23BEC]< HKCU\Software\Microsoft\Comman​d Processor /s >[/color] [color=#A23BEC]< HKLM\Software\Microsoft\Comman​d Processor /s >[/color] Invalid Environment Variable: %Homedrive%\* Invalid Environment Variable: %Homedrive%\*. Invalid Environment Variable: %Userprofile%\* Invalid Environment Variable: %Userprofile%\*. Invalid Environment Variable: %Allusersprofile%\* Invalid Environment Variable: %Allusersprofile%\*. Invalid Environment Variable: %LocalAppData%\* Invalid Environment Variable: %LocalAppData%\*. Invalid Environment Variable: %Userprofile%\Local Settings\Application Data\* Invalid Environment Variable: %Userprofile%\Local Settings\Application Data\*. [color=#A23BEC]< %programFiles%\* >[/color] [color=#A23BEC]< %programFiles%\Google\Desktop\​Install /s >[/color] [color=#A23BEC]< %programFiles%\*. >[/color] [2012/12/04 04:58:08 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe [2014/03/01 12:11:26 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update [2013/06/28 04:46:46 | 000,000,000 | ---D | M] -- C:\Program Files\Autodesk [2013/10/07 12:00:12 | 000,000,000 | ---D | M] -- C:\Program Files\AVG [2014/03/03 14:54:26 | 000,000,000 | ---D | M] -- C:\Program Files\AVG Secure Search [2013/02/25 03:19:39 | 000,000,000 | ---D | M] -- C:\Program Files\Broadcom Corporation [2013/03/01 05:16:05 | 000,000,000 | ---D | M] -- C:\Program Files\Card Data Recovery [2014/03/01 12:11:43 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files [2012/11/26 09:48:43 | 000,000,000 | ---D | M] -- C:\Program Files\ComPlus Applications [2012/11/29 02:30:41 | 000,000,000 | ---D | M] -- C:\Program Files\Conduit [2013/02/25 03:14:28 | 000,000,000 | ---D | M] -- C:\Program Files\Dell [2012/11/26 10:33:14 | 000,000,000 | ---D | M] -- C:\Program Files\DellTPad [2013/03/24 05:57:13 | 000,000,000 | ---D | M] -- C:\Program Files\DIFX [2013/01/24 12:10:58 | 000,000,000 | ---D | M] -- C:\Program Files\ffdshow [2012/12/11 10:11:04 | 000,000,000 | ---D | M] -- C:\Program Files\FotoSketcher [2012/12/15 05:28:12 | 000,000,000 | ---D | M] -- C:\Program Files\Gadwin Systems [2012/12/21 07:25:55 | 000,000,000 | ---D | M] -- C:\Program Files\GIMP 2 [2013/06/17 02:55:54 | 000,000,000 | ---D | M] -- C:\Program Files\GIRDAC PDF Converter [2013/12/16 09:59:16 | 000,000,000 | ---D | M] -- C:\Program Files\Google [2013/01/02 04:16:48 | 000,000,000 | ---D | M] -- C:\Program Files\HP [2012/12/16 05:11:08 | 000,000,000 | ---D | M] -- C:\Program Files\IDT [2013/02/25 03:14:28 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information [2012/11/27 04:02:26 | 000,000,000 | ---D | M] -- C:\Program Files\Intel [2014/03/01 12:12:59 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer [2013/07/26 04:05:25 | 000,000,000 | ---D | M] -- C:\Program Files\Kernel Outlook PST Viewer [2012/12/16 05:11:08 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger [2012/11/28 09:30:42 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Analysis Services [2012/11/26 09:52:24 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage [2012/11/28 09:33:21 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office [2012/11/28 09:33:19 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft SQL Server Compact Edition [2012/11/28 09:33:19 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Sync Framework [2012/11/28 09:33:45 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Synchronization Services [2012/11/28 09:32:14 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio 8 [2012/11/28 09:33:19 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET [2012/11/26 10:18:54 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker [2013/06/28 04:28:19 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox [2012/11/28 09:34:24 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild [2012/11/26 09:47:41 | 000,000,000 | ---D | M] -- C:\Program Files\MSN [2012/11/26 09:48:16 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone [2013/01/02 21:00:33 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0 [2012/12/16 05:21:09 | 000,000,000 | ---D | M] -- C:\Program Files\myphotobook.fr [2012/11/26 09:50:21 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting [2013/05/11 02:26:55 | 000,000,000 | ---D | M] -- C:\Program Files\Nokia [2012/11/26 09:48:28 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services [2012/11/26 10:19:29 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express [2012/12/26 04:59:42 | 000,000,000 | ---D | M] -- C:\Program Files\Paint.NET [2013/05/11 02:16:01 | 000,000,000 | ---D | M] -- C:\Program Files\PC Connectivity Solution [2013/03/07 10:46:53 | 000,000,000 | ---D | M] -- C:\Program Files\Pinnacle [2013/11/02 01:48:33 | 000,000,000 | ---D | M] -- C:\Program Files\ProtectMe [2014/03/01 12:12:56 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime [2013/12/21 08:40:18 | 000,000,000 | ---D | M] -- C:\Program Files\Real [2013/12/21 08:40:30 | 000,000,000 | ---D | M] -- C:\Program Files\RealNetworks [2014/01/29 03:17:38 | 000,000,000 | ---D | M] -- C:\Program Files\Recuva [2012/11/27 02:05:23 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies [2014/03/05 21:01:03 | 000,000,000 | R--D | M] -- C:\Program Files\Skype [2013/06/28 04:30:28 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information [2012/12/06 05:48:20 | 000,000,000 | ---D | M] -- C:\Program Files\VideoLAN [2013/02/28 11:55:50 | 000,000,000 | ---D | M] -- C:\Program Files\Western Digital Corporation [2013/04/18 09:33:22 | 000,000,000 | ---D | M] -- C:\Program Files\Winamp [2013/09/14 04:09:16 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2 [2013/09/14 04:09:15 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player [2012/11/26 09:48:08 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT [2012/11/26 09:50:59 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate [2012/12/26 12:09:59 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR [2013/01/24 12:10:53 | 000,000,000 | ---D | M] -- C:\Program Files\WiVideo [2012/11/26 09:52:24 | 000,000,000 | ---D | M] -- C:\Program Files\xerox [2013/01/24 11:16:31 | 000,000,000 | ---D | M] -- C:\Program Files\XnView [2014/03/02 08:50:30 | 000,000,000 | ---D | M] -- C:\Program Files\Xvid [color=#A23BEC]< %Systemroot%\Installer\*. >[/color] [2012/11/26 10:44:53 | 000,000,000 | -HSD | M] -- C:\WINDOWS\Installer\$PatchCache$ [2012/11/27 04:02:04 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\_{954B463D-FC19-4855-B9FA-92A136AE7BB7} [2013/01/02 04:13:40 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{05D08C4D-58A2-438B-A419-EE994E64E15D} [2013/05/11 02:36:42 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{0C808377-8C23-44ED-9016-05F42E6D4900} [2014/03/01 12:12:40 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{111EE7DF-FC45-40C7-98A7-753AC46B12FB} [2012/12/04 04:55:30 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{22D3A614-482C-444A-932C-9DA1B8ECDFD2} [2013/05/11 02:14:43 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{29373274-977E-413C-A4DE-DC0F8E80C429} [2012/11/26 09:57:09 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227} [2013/07/30 21:47:49 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{468D22C0-8080-11E2-B86E-B8AC6F98CCE3} [2014/03/01 12:11:57 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{46F044A5-CE8B-4196-984E-5BD6525E361D} [2013/12/16 09:59:37 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} [2014/03/05 21:01:05 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D} [2012/12/26 04:59:43 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{529125EF-E3AC-4B74-97E6-F688A7C0F1BF} [2013/01/02 04:13:58 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{565E7B0E-B76B-4EAD-9753-F1E72A5CF12E} [2013/06/20 04:09:49 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{5783F2D7-D028-040C-0000-0060B0CE6BBA} [2013/05/11 02:17:38 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B} [2013/03/02 03:53:13 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{6F545E5E-4595-11E2-93B6-B8AC6F97B88E} [2013/01/02 04:16:51 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{74DC0593-6BC6-4001-AD5F-D810AFB68D86} [2014/03/01 12:11:33 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} [2013/02/25 03:19:55 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{81860953-8A77-4ED5-B57C-F35D703D9489} [2013/01/02 21:00:34 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} [2013/01/02 04:16:35 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A} [2013/11/19 21:14:49 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{90140000-006E-040C-0000-0000000FF1CE} [2014/02/12 21:34:41 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{91140000-0011-0000-0000-0000000FF1CE} [2012/11/27 04:03:16 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{954B463D-FC19-4855-B9FA-92A136AE7BB7} [2013/12/16 09:59:47 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{96AD3B61-EAE2-11E2-9E72-B8AC6F98CCE3} [2014/01/21 09:25:37 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001} [2013/12/21 08:40:41 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE} [2013/01/02 04:14:46 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{CD31E63D-47FD-491C-8117-CF201D0AFAB5} [2013/05/11 02:37:19 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{E3A0C45A-7EDB-48EB-AB86-2445E74FBFBB} [2012/12/04 04:52:31 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{EE549AF9-8FAA-4584-83B2-ECF1BC9DC1FF} [2013/01/03 21:00:45 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC} [2013/03/07 10:47:34 | 000,000,000 | ---D | M] -- C:\WINDOWS\Installer\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8} [color=#A23BEC]< %Systemroot%\Temp\*.exe /s >[/color] [2013/11/11 05:32:44 | 004,680,728 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\{2A2E0744-FF60-4C53-80EC-8ACA6A2EABDE}.exe [2013/08/14 11:32:34 | 004,547,608 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\{4106F0A0-F257-4503-B20A-295A38267459}.exe [2013/09/28 17:42:16 | 004,676,632 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\{4200FBA2-67D3-4A78-A2AC-0995E8240C80}.exe [2013/07/29 15:50:54 | 004,543,000 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\{688F74F4-C86E-4769-BD0C-E55E98B77731}.exe [2014/01/08 11:07:09 | 004,843,544 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\{9FD10F9F-E912-4BCA-BD9B-116F5D6EC432}.exe [2013/10/04 09:54:07 | 004,674,584 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\{AD5A6C0C-F796-41D8-B731-9FF364342AD9}.exe [2013/06/26 07:40:07 | 004,520,984 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\{BB809D6A-773C-4869-8052-9CE17E44F4F5}.exe [2013/04/06 10:11:17 | 003,085,904 | ---- | M] () -- C:\WINDOWS\Temp\{CAF83E09-A1BD-470D-B75D-7A4EBFB7FE13}.exe [2014/03/03 14:54:11 | 005,044,248 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\{DE940184-5992-49AB-A533-CBFC119A62BF}.exe [2013/12/09 08:20:46 | 004,811,800 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\{E53A759E-CDB7-45DD-96A8-B9400646F2C5}.exe [2013/05/12 05:01:29 | 003,239,960 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\{E7EC76CC-11BA-49E3-8097-F0C3218D9E87}.exe [13 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ] [2012/01/03 07:02:56 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Setup.exe [2012/01/03 07:03:00 | 003,157,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\GfxUI.exe [2012/01/03 07:03:02 | 000,171,288 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\hkcmd.exe [2012/01/03 07:03:06 | 000,179,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\igfxext.exe [2012/01/03 07:03:08 | 000,172,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\igfxpers.exe [2012/01/03 07:03:10 | 000,268,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\igfxsrvc.exe [2012/01/03 07:03:14 | 000,138,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\igfxtray.exe [2012/01/03 07:03:16 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\igxpun.exe [2012/01/03 07:03:18 | 008,198,936 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Graphics\TVWSetup.exe [2012/01/03 07:03:20 | 000,813,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{0563CFCC-FAFD-46B5-A773-A27FBBDB918D}\Intel Control Center\SetupICC.exe [2012/01/03 07:02:56 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Setup.exe [2012/01/03 07:03:00 | 003,157,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\GfxUI.exe [2012/01/03 07:03:02 | 000,171,288 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\hkcmd.exe [2012/01/03 07:03:06 | 000,179,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\igfxext.exe [2012/01/03 07:03:08 | 000,172,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\igfxpers.exe [2012/01/03 07:03:10 | 000,268,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\igfxsrvc.exe [2012/01/03 07:03:14 | 000,138,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\igfxtray.exe [2012/01/03 07:03:16 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\igxpun.exe [2012/01/03 07:03:18 | 008,198,936 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Graphics\TVWSetup.exe [2012/01/03 07:03:20 | 000,813,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{59040C8F-ECB4-4780-A1B4-99B2D44D3BB7}\Intel Control Center\SetupICC.exe [2012/01/03 07:02:56 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Setup.exe [2012/01/03 07:03:00 | 003,157,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\GfxUI.exe [2012/01/03 07:03:02 | 000,171,288 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\hkcmd.exe [2012/01/03 07:03:06 | 000,179,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\igfxext.exe [2012/01/03 07:03:08 | 000,172,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\igfxpers.exe [2012/01/03 07:03:10 | 000,268,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\igfxsrvc.exe [2012/01/03 07:03:14 | 000,138,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\igfxtray.exe [2012/01/03 07:03:16 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\igxpun.exe [2012/01/03 07:03:18 | 008,198,936 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Graphics\TVWSetup.exe [2012/01/03 07:03:20 | 000,813,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{76230C7B-1B2C-414D-AADD-D27A5F7061E0}\Intel Control Center\SetupICC.exe [2012/01/03 07:02:56 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Setup.exe [2012/01/03 07:03:00 | 003,157,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\GfxUI.exe [2012/01/03 07:03:02 | 000,171,288 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\hkcmd.exe [2012/01/03 07:03:06 | 000,179,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\igfxext.exe [2012/01/03 07:03:08 | 000,172,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\igfxpers.exe [2012/01/03 07:03:10 | 000,268,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\igfxsrvc.exe [2012/01/03 07:03:14 | 000,138,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\igfxtray.exe [2012/01/03 07:03:16 | 000,953,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\igxpun.exe [2012/01/03 07:03:18 | 008,198,936 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Graphics\TVWSetup.exe [2012/01/03 07:03:20 | 000,813,848 | ---- | M] (Intel Corporation) -- C:\WINDOWS\Temp\{E717E109-B788-4487-8AFE-4E6B94205994}\Intel Control Center\SetupICC.exe [2013/11/11 05:32:48 | 002,343,960 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\avg-secure-search-installer.exe [2013/11/11 05:32:48 | 000,642,584 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/11/11 05:32:48 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01164\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/11/11 05:32:48 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01164\CommonFiles\AVG Secure Search\loggingserver.exe [2013/11/11 05:32:48 | 002,374,168 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/11/11 05:32:48 | 001,734,680 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/11/11 05:32:48 | 000,576,024 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\ConfigFiles\MachineIdCreator.exe [2013/11/11 05:32:48 | 000,944,664 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\ProgFiles\AVG Secure Search\lip.exe [2013/11/11 05:32:48 | 000,644,120 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01164\ProgFiles\AVG Secure Search\PostInstall.exe [2013/11/11 05:32:48 | 001,959,960 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a01164\ProgFiles\AVG Secure Search\Uninstall.exe [2013/11/11 05:32:48 | 002,420,248 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01164\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a01164\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a01164\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/06/26 07:40:10 | 002,170,544 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\avg-secure-search-installer.exe [2013/06/26 07:40:10 | 000,638,128 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/06/26 07:40:10 | 000,147,120 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01368\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/06/26 07:40:10 | 000,152,240 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01368\CommonFiles\AVG Secure Search\loggingserver.exe [2013/06/26 07:40:10 | 002,239,664 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/06/26 07:40:10 | 001,598,128 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/06/26 07:40:10 | 000,572,080 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\ConfigFiles\MachineIdCreator.exe [2013/06/26 07:40:10 | 000,915,120 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\ProgFiles\AVG Secure Search\lip.exe [2013/06/26 07:40:10 | 000,639,664 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\ProgFiles\AVG Secure Search\PostInstall.exe [2013/06/26 07:40:10 | 001,791,152 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01368\ProgFiles\AVG Secure Search\Uninstall.exe [2013/06/26 07:40:10 | 002,236,080 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01368\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a01368\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a01368\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/10/07 13:02:27 | 002,341,400 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\avg-secure-search-installer.exe [2013/10/07 13:02:27 | 000,642,584 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/10/07 13:02:27 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01548\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/10/07 13:02:27 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01548\CommonFiles\AVG Secure Search\loggingserver.exe [2013/10/07 13:02:27 | 002,374,168 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/10/07 13:02:27 | 001,734,680 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/10/07 13:02:27 | 000,576,024 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\ConfigFiles\MachineIdCreator.exe [2013/10/07 13:02:27 | 000,944,664 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\ProgFiles\AVG Secure Search\lip.exe [2013/10/07 13:02:27 | 000,644,120 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01548\ProgFiles\AVG Secure Search\PostInstall.exe [2013/10/07 13:02:27 | 001,959,960 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a01548\ProgFiles\AVG Secure Search\Uninstall.exe [2013/10/07 13:02:27 | 002,404,376 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01548\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a01548\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a01548\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/12/09 08:20:49 | 002,348,568 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\avg-secure-search-installer.exe [2013/12/09 08:20:49 | 000,643,608 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/12/09 08:20:49 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01892\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/12/09 08:20:49 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01892\CommonFiles\AVG Secure Search\loggingserver.exe [2013/12/09 08:20:49 | 002,278,424 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/12/09 08:20:49 | 001,771,544 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/12/09 08:20:49 | 000,576,024 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\ConfigFiles\MachineIdCreator.exe [2013/12/09 08:20:49 | 000,943,640 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\ProgFiles\AVG Secure Search\lip.exe [2013/12/09 08:20:49 | 000,649,240 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a01892\ProgFiles\AVG Secure Search\PostInstall.exe [2013/12/09 08:20:49 | 001,960,984 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a01892\ProgFiles\AVG Secure Search\Uninstall.exe [2013/12/09 08:20:49 | 002,471,448 | ---- | M] () -- C:\WINDOWS\Temp\avg_a01892\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a01892\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a01892\ProgFiles\AVG Secure Search\*.tmp -> ] [2014/03/03 14:54:17 | 002,492,440 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\avg-secure-search-installer.exe [2014/03/03 14:54:17 | 000,647,704 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\CommonFiles\AVG Secure Search\DriverInstaller.exe [2014/03/03 14:54:17 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02368\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2014/03/03 14:54:17 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02368\CommonFiles\AVG Secure Search\loggingserver.exe [2014/03/03 14:54:17 | 002,378,776 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\CommonFiles\AVG Secure Search\ScriptHelper.exe [2014/03/03 14:54:17 | 001,759,768 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2014/03/03 14:54:17 | 000,579,096 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\ConfigFiles\MachineIdCreator.exe [2014/03/03 14:54:17 | 001,087,512 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\ProgFiles\AVG Secure Search\BundleInstall.exe [2014/03/03 14:54:17 | 000,978,968 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02368\ProgFiles\AVG Secure Search\lip.exe [2014/03/03 14:54:17 | 001,960,984 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a02368\ProgFiles\AVG Secure Search\Uninstall.exe [2014/03/03 14:54:17 | 002,539,544 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02368\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a02368\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a02368\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/10/04 09:54:19 | 002,341,400 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\avg-secure-search-installer.exe [2013/10/04 09:54:19 | 000,642,584 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/10/04 09:54:19 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02700\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/10/04 09:54:19 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02700\CommonFiles\AVG Secure Search\loggingserver.exe [2013/10/04 09:54:19 | 002,374,168 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/10/04 09:54:19 | 001,734,680 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/10/04 09:54:19 | 000,576,024 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\ConfigFiles\MachineIdCreator.exe [2013/10/04 09:54:19 | 000,944,664 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\ProgFiles\AVG Secure Search\lip.exe [2013/10/04 09:54:19 | 000,644,120 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02700\ProgFiles\AVG Secure Search\PostInstall.exe [2013/10/04 09:54:19 | 001,959,960 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a02700\ProgFiles\AVG Secure Search\Uninstall.exe [2013/10/04 09:54:19 | 002,404,376 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02700\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a02700\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a02700\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/07/29 15:50:56 | 002,196,656 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\avg-secure-search-installer.exe [2013/07/29 15:50:56 | 000,640,176 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/07/29 15:50:56 | 000,147,120 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02724\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/07/29 15:50:56 | 000,161,968 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02724\CommonFiles\AVG Secure Search\loggingserver.exe [2013/07/29 15:50:56 | 002,267,824 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/07/29 15:50:57 | 001,616,048 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/07/29 15:50:56 | 000,572,592 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\ConfigFiles\MachineIdCreator.exe [2013/07/29 15:50:56 | 000,920,240 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\ProgFiles\AVG Secure Search\lip.exe [2013/07/29 15:50:56 | 000,641,200 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\ProgFiles\AVG Secure Search\PostInstall.exe [2013/07/29 15:50:57 | 001,822,896 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a02724\ProgFiles\AVG Secure Search\Uninstall.exe [2013/07/29 15:50:57 | 002,285,232 | ---- | M] () -- C:\WINDOWS\Temp\avg_a02724\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a02724\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a02724\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/08/14 11:32:37 | 002,226,864 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\avg-secure-search-installer.exe [2013/08/14 11:32:37 | 000,641,200 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/08/14 11:32:37 | 000,147,120 | ---- | M] () -- C:\WINDOWS\Temp\avg_a03568\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/08/14 11:32:37 | 000,161,968 | ---- | M] () -- C:\WINDOWS\Temp\avg_a03568\CommonFiles\AVG Secure Search\loggingserver.exe [2013/08/14 11:32:37 | 002,301,616 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/08/14 11:32:37 | 001,643,184 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/08/14 11:32:37 | 000,573,616 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\ConfigFiles\MachineIdCreator.exe [2013/08/14 11:32:37 | 000,926,384 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\ProgFiles\AVG Secure Search\lip.exe [2013/08/14 11:32:37 | 000,642,224 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\ProgFiles\AVG Secure Search\PostInstall.exe [2013/08/14 11:32:37 | 001,851,568 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a03568\ProgFiles\AVG Secure Search\Uninstall.exe [2013/08/14 11:32:37 | 002,314,416 | ---- | M] () -- C:\WINDOWS\Temp\avg_a03568\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a03568\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a03568\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/09/28 17:42:19 | 002,335,256 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\avg-secure-search-installer.exe [2013/09/28 17:42:19 | 000,642,584 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/09/28 17:42:19 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a04256\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/09/28 17:42:19 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a04256\CommonFiles\AVG Secure Search\loggingserver.exe [2013/09/28 17:42:19 | 002,374,168 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/09/28 17:42:19 | 001,734,680 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/09/28 17:42:19 | 000,576,024 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\ConfigFiles\MachineIdCreator.exe [2013/09/28 17:42:19 | 000,944,664 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\ProgFiles\AVG Secure Search\lip.exe [2013/09/28 17:42:19 | 000,644,120 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04256\ProgFiles\AVG Secure Search\PostInstall.exe [2013/09/28 17:42:19 | 001,959,960 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a04256\ProgFiles\AVG Secure Search\Uninstall.exe [2013/09/28 17:42:19 | 002,404,376 | ---- | M] () -- C:\WINDOWS\Temp\avg_a04256\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a04256\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a04256\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/05/12 05:01:30 | 001,260,208 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\avg-secure-search-installer.exe [2013/05/12 05:01:30 | 000,466,608 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/05/12 05:01:30 | 000,147,120 | ---- | M] () -- C:\WINDOWS\Temp\avg_a04736\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/05/12 05:01:30 | 001,385,136 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/05/12 05:01:30 | 001,015,984 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/05/12 05:01:30 | 000,501,424 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\ConfigFiles\MachineIdCreator.exe [2013/05/12 05:01:30 | 000,663,216 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\ProgFiles\AVG Secure Search\lip.exe [2013/05/12 05:01:30 | 000,512,176 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\ProgFiles\AVG Secure Search\PostInstall.exe [2013/05/12 05:01:30 | 001,059,504 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\ProgFiles\AVG Secure Search\Uninstall.exe [2013/05/12 05:01:31 | 001,226,928 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a04736\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a04736\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a04736\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/04/06 10:11:19 | 001,203,888 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\avg-secure-search-installer.exe [2013/04/06 10:11:19 | 000,465,072 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\CommonFiles\AVG Secure Search\DriverInstaller.exe [2013/04/06 10:11:19 | 000,146,096 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2013/04/06 10:11:19 | 001,213,104 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\CommonFiles\AVG Secure Search\ScriptHelper.exe [2013/04/06 10:11:19 | 000,968,880 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2013/04/06 10:11:19 | 000,156,848 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\ConfigFiles\MachineIdCreator.exe [2013/04/06 10:11:19 | 000,659,632 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\ProgFiles\AVG Secure Search\lip.exe [2013/04/06 10:11:19 | 000,510,128 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\ProgFiles\AVG Secure Search\PostInstall.exe [2013/04/06 10:11:19 | 001,042,096 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\ProgFiles\AVG Secure Search\Uninstall.exe [2013/04/06 10:11:19 | 001,151,152 | ---- | M] () -- C:\WINDOWS\Temp\avg_a05876\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a05876\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a05876\ProgFiles\AVG Secure Search\*.tmp -> ] [2014/01/08 11:07:13 | 002,355,736 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\avg-secure-search-installer.exe [2014/01/08 11:07:13 | 000,643,608 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\CommonFiles\AVG Secure Search\DriverInstaller.exe [2014/01/08 11:07:13 | 000,144,920 | ---- | M] () -- C:\WINDOWS\Temp\avg_a19440\CommonFiles\AVG Secure Search\DriverInstaller_64.exe [2014/01/08 11:07:13 | 000,159,768 | ---- | M] () -- C:\WINDOWS\Temp\avg_a19440\CommonFiles\AVG Secure Search\loggingserver.exe [2014/01/08 11:07:13 | 002,335,768 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\CommonFiles\AVG Secure Search\ScriptHelper.exe [2014/01/08 11:07:13 | 001,771,544 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\CommonFiles\AVG Secure Search\ToolbarUpdater.exe [2014/01/08 11:07:13 | 000,576,024 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\ConfigFiles\MachineIdCreator.exe [2014/01/08 11:07:13 | 000,943,640 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\ProgFiles\AVG Secure Search\lip.exe [2014/01/08 11:07:13 | 000,649,240 | ---- | M] (AVG Secure Search) -- C:\WINDOWS\Temp\avg_a19440\ProgFiles\AVG Secure Search\PostInstall.exe [2014/01/08 11:07:13 | 001,968,152 | ---- | M] (AVG Technologies) -- C:\WINDOWS\Temp\avg_a19440\ProgFiles\AVG Secure Search\Uninstall.exe [2014/01/08 11:07:13 | 002,486,296 | ---- | M] () -- C:\WINDOWS\Temp\avg_a19440\ProgFiles\AVG Secure Search\vprot.exe [1 C:\WINDOWS\Temp\avg_a19440\ProgFiles\AVG Secure Search\*.tmp files -> C:\WINDOWS\Temp\avg_a19440\ProgFiles\AVG Secure Search\*.tmp -> ] [2013/03/24 06:03:42 | 000,857,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Temp\WDF164.tmp\Microsoft User-Mode Driver Framework Install-v1.9-WinXP-Srv03.exe [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color] [2011/03/03 01:55:19 | 000,149,504 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\dnsapi.dll [2014/02/05 18:26:40 | 011,113,472 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\ieframe.dll [2014/02/05 18:26:42 | 002,006,016 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\iertutil.dll [2008/04/14 02:00:00 | 000,274,944 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\mstask.dll [2008/04/14 02:00:00 | 000,067,072 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\ntdsapi.dll [2012/06/08 09:26:20 | 008,462,848 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\shell32.dll [1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] [color=#A23BEC]< %systemroot%\system32\*.exe /lockedfiles >[/color] [1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] [color=#A23BEC]< %systemroot%\system32\*.in* >[/color] [2012/11/26 09:54:07 | 000,000,290 | ---- | M] () -- C:\WINDOWS\system32\$winnt$.inf [2008/04/14 02:00:00 | 000,000,002 | ---- | M] () -- C:\WINDOWS\system32\desktop.ini [2008/04/14 02:00:00 | 001,015,477 | ---- | M] () -- C:\WINDOWS\system32\esentprf.ini [2008/04/14 02:00:00 | 000,000,929 | ---- | M] () -- C:\WINDOWS\system32\homepage.inf [2010/07/05 15:40:04 | 000,057,667 | ---- | M] () -- C:\WINDOWS\system32\ieuinit.inf [2008/04/14 02:00:00 | 000,001,492 | ---- | M] () -- C:\WINDOWS\system32\mmdriver.inf [2008/04/14 02:00:00 | 000,010,110 | ---- | M] () -- C:\WINDOWS\system32\mqperf.ini [2008/04/14 02:00:00 | 000,001,931 | ---- | M] () -- C:\WINDOWS\system32\msdtcprf.ini [2008/04/14 02:00:00 | 000,002,891 | ---- | M] () -- C:\WINDOWS\system32\perfci.ini [2008/04/14 02:00:00 | 000,001,152 | ---- | M] () -- C:\WINDOWS\system32\perffilt.ini [2014/03/05 11:16:09 | 000,594,356 | ---- | M] () -- C:\WINDOWS\system32\PerfStringBackup.INI [2008/04/14 02:00:00 | 000,002,732 | ---- | M] () -- C:\WINDOWS\system32\perfwci.ini [2008/04/14 02:00:00 | 000,000,974 | ---- | M] () -- C:\WINDOWS\system32\pid.inf [2008/04/14 02:00:00 | 000,000,343 | ---- | M] () -- C:\WINDOWS\system32\prodspec.ini [2008/04/14 02:00:00 | 000,006,877 | ---- | M] () -- C:\WINDOWS\system32\pschdprf.ini [2008/04/14 02:00:00 | 000,003,458 | ---- | M] () -- C:\WINDOWS\system32\rasctrs.ini [2008/04/14 02:00:00 | 000,012,082 | ---- | M] () -- C:\WINDOWS\system32\rsvp.ini [2008/04/14 02:00:00 | 000,053,478 | ---- | M] () -- C:\WINDOWS\system32\tcpmon.ini [2008/04/14 02:00:00 | 000,013,223 | ---- | M] () -- C:\WINDOWS\system32\tslabels.ini [1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] [color=#A23BEC]< %systemroot%\Tasks\* >[/color] [2014/03/07 06:06:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [2014/03/06 20:00:00 | 000,000,340 | ---- | M] () -- C:\WINDOWS\Tasks\AdobeAAMUpdater-1.0-LOIC-D8CB39704E-Loïc.job [2014/03/06 04:57:01 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\AppleSoftwareUpdate.job [2008/04/14 02:00:00 | 000,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini [2014/03/06 11:41:00 | 000,000,264 | ---- | M] () -- C:\WINDOWS\Tasks\EPUpdater.job [2014/03/07 08:45:48 | 000,001,048 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [2014/03/07 04:59:00 | 000,001,052 | ---- | M] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [2014/03/07 08:46:18 | 000,000,276 | ---- | M] () -- C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1757981266-515967899-1801674531-1003.job [2014/03/07 08:45:52 | 000,000,284 | ---- | M] () -- C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1757981266-515967899-1801674531-1003.job [2014/03/07 08:48:17 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT [color=#A23BEC]< %systemroot%\Tasks\*. >[/color] [color=#A23BEC]< %systemroot%\system32\Tasks\* >[/color] [color=#A23BEC]< %systemroot%\system32\Tasks\*.​ >[/color] [color=#A23BEC]< %systemroot%\system32\drivers\*.sy* /lockedfiles >[/color] [color=#A23BEC]< %systemroot%\system32\config\*​.exe /s >[/color] [color=#A23BEC]< %Systemroot%\ServiceProfiles\*​.exe /s >[/color] [color=#A23BEC]< %systemroot%\system32\*.sys >[/color] [2008/04/14 02:00:00 | 000,009,029 | ---- | M] () -- C:\WINDOWS\system32\ansi.sys [2008/04/14 02:00:00 | 000,027,097 | ---- | M] () -- C:\WINDOWS\system32\country.sys [2008/04/14 02:00:00 | 000,004,768 | ---- | M] () -- C:\WINDOWS\system32\himem.sys [2008/04/14 02:00:00 | 000,042,809 | ---- | M] () -- C:\WINDOWS\system32\key01.sys [2008/04/14 02:00:00 | 000,042,537 | ---- | M] () -- C:\WINDOWS\system32\keyboard.sys [2008/04/14 02:00:00 | 000,027,866 | ---- | M] () -- C:\WINDOWS\system32\ntdos.sys [2008/04/14 02:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos404.sys [2008/04/14 02:00:00 | 000,029,370 | ---- | M] () -- C:\WINDOWS\system32\ntdos411.sys [2008/04/14 02:00:00 | 000,029,274 | ---- | M] () -- C:\WINDOWS\system32\ntdos412.sys [2008/04/14 02:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\system32\ntdos804.sys [2008/04/14 02:00:00 | 000,033,840 | ---- | M] () -- C:\WINDOWS\system32\ntio.sys [2008/04/14 02:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio404.sys [2008/04/14 02:00:00 | 000,035,648 | ---- | M] () -- C:\WINDOWS\system32\ntio411.sys [2008/04/14 02:00:00 | 000,035,424 | ---- | M] () -- C:\WINDOWS\system32\ntio412.sys [2008/04/14 02:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\system32\ntio804.sys [2008/04/14 02:00:00 | 000,017,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\watchdog.sys [2013/10/29 21:26:17 | 001,879,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\win32k.sys [1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] [color=#A23BEC]< dir %Homedrive%\* /S /A:L /C >[/color] Volume in drive X is ReatogoPE Volume Serial Number is 5909-CCFA [color=#A23BEC]< MD5 for: AFD.SYS >[/color] [2011/08/17 08:49:54 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=1E44BC1E83D8FD2305F8D452DB109CF9 -- C:\WINDOWS\system32\dllcache\afd.sys [2011/08/17 08:49:54 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=1E44BC1E83D8FD2305F8D452DB109CF9 -- C:\WINDOWS\system32\drivers\afd.sys [2008/04/14 02:00:00 | 000,138,112 | ---- | M] (Microsoft Corporation) MD5=322D0E36693D6E24A2398BEE62A268CD -- C:\WINDOWS\$NtUninstallKB2509553$\afd.sys [2008/10/16 10:07:58 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=38D7B715504DA4741DF35E3594FE2099 -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\afd.sys [2008/10/16 09:43:01 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=7618D5218F2A614672EC61A80D854A37 -- C:\WINDOWS\$NtUninstallKB2592799$\afd.sys [2011/08/17 08:41:46 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=F6B7B1ECD7B41736BDB6FF4B092BCB79 -- C:\WINDOWS\$hf_mig$\KB2592799\SP3QFE\afd.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2008/04/14 02:00:00 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008/04/13 18:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys [2008/04/13 18:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2008/04/14 02:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\atapi.sys [2008/04/13 18:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\atapi.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2008/04/14 02:00:00 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008/04/14 02:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color] [2008/04/14 02:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe [2008/04/14 02:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\system32\dllcache\explorer.exe [color=#A23BEC]< MD5 for: I8042PRT.SYS >[/color] [2008/04/14 02:00:00 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:i8042prt.sys [2008/04/13 18:48:02 | 000,052,480 | ---- | M] (Microsoft Corporation) MD5=4A0B06AA8943C1E332520F7440C0AA30 -- C:\WINDOWS\system32\dllcache\i8042prt.sys [2008/04/13 18:48:02 | 000,052,480 | ---- | M] (Microsoft Corporation) MD5=4A0B06AA8943C1E332520F7440C0AA30 -- C:\WINDOWS\system32\drivers\i8042prt.sys [2008/04/14 02:00:00 | 000,052,480 | ---- | M] (Microsoft Corporation) MD5=4A0B06AA8943C1E332520F7440C0AA30 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\i8042prt.sys [color=#A23BEC]< MD5 for: IASTOR.SYS >[/color] [2009/06/04 05:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\WINDOWS\Dell\Intel\IaStor.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008/04/14 02:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys [2008/04/14 02:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [color=#A23BEC]< MD5 for: NETBT.SYS >[/color] [2008/04/14 02:00:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=74B2B2F5BEA5E9A3DC021D685551BD3D -- C:\WINDOWS\system32\dllcache\netbt.sys [2008/04/14 02:00:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=74B2B2F5BEA5E9A3DC021D685551BD3D -- C:\WINDOWS\system32\drivers\netbt.sys [color=#A23BEC]< MD5 for: VOLSNAP.SYS >[/color] [2008/04/14 02:00:00 | 000,052,352 | ---- | M] (Microsoft Corporation) MD5=4C8FCB5CC53AAB716D810740FE59D025 -- C:\WINDOWS\system32\dllcache\volsnap.sys [2008/04/14 02:00:00 | 000,052,352 | ---- | M] (Microsoft Corporation) MD5=4C8FCB5CC53AAB716D810740FE59D025 -- C:\WINDOWS\system32\drivers\volsnap.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2008/04/14 02:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\dllcache\winlogon.exe [2008/04/14 02:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\winlogon.exe < End of report >