ÿþOTL logfile created on: 01/06/2013 13:55:40 - Run 4 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\PROPRIETAIRE\Bureau Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 959,48 Mb Total Physical Memory | 555,51 Mb Available Physical Memory | 57,90% Memory free 2,32 Gb Paging File | 1,94 Gb Available in Paging File | 83,74% Paging File free Paging file location(s): C:\pagefile.sys 1500 2880 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 76,68 Gb Total Space | 34,60 Gb Free Space | 45,12% Space Free | Partition Type: NTFS Drive E: | 76,68 Gb Total Space | 0,16 Gb Free Space | 0,20% Space Free | Partition Type: NTFS Computer Name: PROPRIET-7E500D | User Name: PROPRIETAIRE | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - C:\Documents and Settings\PROPRIETAIRE\Bureau\OTL.exe (OldTimer Tools) PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files\Java\jre7\bin\jqs.exe (Oracle Corporation) PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (Oracle Corporation) PRC - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation) PRC - C:\Program Files\Sony\Content Transfer\ContentTransferWMDetector.exe (Sony Corporation) PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation) PRC - C:\Program Files\Labtec\WebCam10\WebCam10.exe () PRC - C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LVComSX.exe (Labtec Inc.) PRC - C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe (Labtec Inc,) PRC - C:\Program Files\TextBridge Pro 8.0\Bin\InstantAccess.exe () PRC - C:\Program Files\Microsoft Office\Office\FINDFAST.EXE (Microsoft Corporation) PRC - C:\Program Files\Microsoft Office\Office\OSA.EXE () [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll () MOD - \\?\globalroot\systemroot\system32\mswsock.dll () MOD - \\.\globalroot\systemroot\system32\mswsock.dll () MOD - C:\Program Files\Labtec\WebCam10\LAppRes.DLL () MOD - C:\Program Files\Labtec\WebCam10\WebCam10.exe () MOD - C:\Program Files\Fichiers communs\LogiShrd\LComMgr\LCMServerPS.dll () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\WordAccess.dll () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\OfficeAccess.dll () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\MSAppAccess.dll () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\InstantAccess.exe () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\ExcelAccess.dll () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\IAResFRE.dll () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\REGDATA.DLL () MOD - C:\Program Files\TextBridge Pro 8.0\Bin\Tbmhook.dll () MOD - C:\Program Files\Microsoft Office\Office\MSO97.DLL () MOD - C:\Program Files\Microsoft Office\Office\OSA.EXE () [color=#E56717]========== Services (SafeList) ==========[/color] SRV - (HidServ) -- %SystemRoot%\System32\hidserv.dll File not found SRV - (AdobeFlashPlayerUpdateSvc) -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (MozillaMaintenance) -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation) SRV - (JavaQuickStarterService) -- C:\Program Files\Java\jre7\bin\jqs.exe (Oracle Corporation) SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) SRV - (SkypeUpdate) -- C:\Program Files\Skype\Updater\Updater.exe (Skype Technologies) SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia) SRV - (nvUpdatusService) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation) SRV - (LVSrvLauncher) -- C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe (Labtec Inc.) SRV - (ose) -- C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - (WDICA) -- File not found DRV - (PDRFRAME) -- File not found DRV - (PDRELI) -- File not found DRV - (PDFRAME) -- File not found DRV - (PDCOMP) -- File not found DRV - (PCIDump) -- File not found DRV - (pccsmcfd) -- system32\DRIVERS\pccsmcfd.sys File not found DRV - (lbrtfdc) -- File not found DRV - (i2omgmt) -- File not found DRV - (Changer) -- File not found DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira Operations GmbH & Co. KG) DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG) DRV - (avkmgr) -- C:\WINDOWS\system32\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG) DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH) DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\ccdcmb.sys (Nokia) DRV - (gdrv) -- C:\WINDOWS\gdrv.sys (Windows (R) Codename Longhorn DDK provider) DRV - (nvnetbus) -- C:\WINDOWS\system32\drivers\nvnetbus.sys (NVIDIA Corporation) DRV - (NVENETFD) -- C:\WINDOWS\system32\drivers\NVENETFD.sys (NVIDIA Corporation) DRV - (nvgts) -- C:\WINDOWS\system32\drivers\nvgts.sys (NVIDIA Corporation) DRV - (ss_mdm) -- C:\WINDOWS\system32\drivers\ss_mdm.sys (MCCI Corporation) DRV - (ss_mdfl) -- C:\WINDOWS\system32\drivers\ss_mdfl.sys (MCCI Corporation) DRV - (ss_bus) -- C:\WINDOWS\system32\drivers\ss_bus.sys (MCCI Corporation) DRV - (LVUSBSta) -- C:\WINDOWS\system32\drivers\LVUSBSta.sys (Labtec Inc.) DRV - (LVMVDrv) -- C:\WINDOWS\system32\drivers\LVMVdrv.sys (Labtec Inc.) DRV - (LVcKap) -- C:\WINDOWS\system32\drivers\Lvckap.sys () DRV - (PID_0928) -- C:\WINDOWS\system32\drivers\LV561AV.SYS (Labtec Inc.) DRV - (IntcAzAudAddService) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.) DRV - (nvata) -- C:\WINDOWS\system32\drivers\nvata.sys (NVIDIA Corporation) DRV - (StarOpen) -- C:\WINDOWS\System32\drivers\StarOpen.sys () DRV - (AmdK8) -- C:\WINDOWS\system32\drivers\AmdK8.sys (Advanced Micro Devices) DRV - (Wdm1) -- C:\WINDOWS\system32\drivers\usbbc.sys () [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mountyhall.com/ IE - HKCU\..\SearchScopes,DefaultScope = {DC56E5A1-DE8A-4A58-9E93-4E58F8949155} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\..\SearchScopes\{69F8FB0B-9CBD-4B02-8957-41A50CDFBC35}: "URL" = http://www.hooseek.com/web?recherche={searchTerms} IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\..\SearchScopes\{DC56E5A1-DE8A-4A58-9E93-4E58F8949155}: "URL" = http://www.google.fr/search?hl=fr&q={searchTerms}+&meta= IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.nolife-tv.com/" FF - prefs.js..extensions.enabledAddons: illimitux%40illimitux.net:4.0 FF - prefs.js..extensions.enabledAddons: unplug%40compunach:2.054 FF - prefs.js..extensions.enabledAddons: %7B0AA9101C-D3C1-4129-A9B7-D778C6A17F82%7D:2.07 FF - prefs.js..extensions.enabledAddons: rikaichan-jpfr%40polarcloud.com:2.01.130323 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:21.0 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.3 FF - prefs.js..extensions.enabledItems: illimitux@illimitux.net:4.0 FF - prefs.js..extensions.enabledItems: BuB86@hotmail.fr:0.5.1 FF - prefs.js..extensions.enabledItems: unplug@compunach:2.047 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..network.proxy.type: 4 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Program Files\Video Convert Master\codec\real\browser\plugins\nppl3260.dll File not found FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Program Files\Video Convert Master\codec\real\browser\plugins\nprpjplug.dll File not found FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\PROPRIETAIRE\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 21.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/05/23 17:13:21 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 21.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/05/23 17:13:02 | 000,000,000 | ---D | M] [2008/06/18 18:10:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Extensions [2013/05/07 20:22:18 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions [2013/04/12 19:04:29 | 000,000,000 | ---D | M] (Rikaichan) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\{0AA9101C-D3C1-4129-A9B7-D778C6A17F82} [2010/12/30 19:00:59 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2012/07/08 09:32:31 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}(2) [2010/01/23 17:49:35 | 000,000,000 | ---D | M] ("The Marmotte Project") -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\BuB86@hotmail.fr [2010/03/16 18:05:22 | 000,000,000 | ---D | M] (Illimitux) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\illimitux@illimitux.net [2013/04/12 19:05:25 | 000,000,000 | ---D | M] (Rikaichan Japanese-French Dictionary File) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\rikaichan-jpfr@polarcloud.com [2013/01/30 19:06:15 | 000,142,907 | ---- | M] () (No name found) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla\Firefox\Profiles\clkha2rm.default\extensions\unplug@compunach.xpi [2013/05/23 17:13:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2013/05/23 17:12:55 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2013/05/23 17:12:55 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2013/05/23 17:12:56 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2013/05/23 17:13:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2013/05/23 17:13:21 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2006/03/02 14:00:00 | 000,000,790 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [ContentTransferWMDetector.exe] C:\Program Files\Sony\Content Transfer\ContentTransferWMDetector.exe (Sony Corporation) O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [InstantAccess] C:\Program Files\TextBridge Pro 8.0\Bin\InstantAccess.exe () O4 - HKLM..\Run: [LogitechCommunicationsManager] C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe (Labtec Inc,) O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Labtec\WebCam10\WebCam10.exe () O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [RegisterDropHandler] C:\Program Files\TextBridge Pro 8.0\Bin\RegisterDropHandler.exe () O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (Oracle Corporation) O4 - HKLM..\RunServices: [RegisterDropHandler] C:\Program Files\TextBridge Pro 8.0\Bin\RegisterDropHandler.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE () O4 - Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - mswsock.dll File not found O15 - HKCU\..Trusted Domains: jdr-delain.net ([www] http in Sites de confiance) O15 - HKCU\..Trusted Domains: mountyhall.com ([games] http in Sites de confiance) O15 - HKCU\..Trusted Domains: visiogood.com ([www] http in Sites de confiance) O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} http://www.visiogood.com/jalss/cfweb_activex.camfrogweb.com-advanced-2.0.2.20_instmodule.exe (CamfrogWEB Advanced Unicode Control) O16 - DPF: {444785F1-DE89-4295-863A-D46C3A781394} http://webplayer.unity3d.com/download_webplayer-2.x/UnityWebPlayer.cab (Reg Error: Key error.) O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} http://srv07.admin.over-blog.com/fdata/iu/ImageUploader5.cab (Image Uploader Control) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1352566931843 (MUWebControl Class) O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab (NVIDIA Smart Scan) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 10.21.2) O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} http://zone.msn.com/bingame/zpagames/zpa_txhe.cab79352.cab (MSN Games  Texas Holdem Poker) O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab (MSN Games - Installer) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 10.21.2) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} http://zone.msn.com/bingame/zpagames/ZPA_Backgammon.cab64162.cab (MSN Games  Backgammon) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A4417A5A-85DB-499C-AB49-960230777E5D}: DhcpNameServer = 212.27.40.241 212.27.40.240 O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL File not found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Fichiers communs\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Ma page d'accueil) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Colline verdoyante.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Colline verdoyante.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007/07/16 16:12:20 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2006/01/20 18:01:02 | 000,000,096 | ---- | M] () - E:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{7aeb9ebe-4c88-11de-a38b-001a4d7faea1}\Shell - "" = AutoRun O33 - MountPoints2\{7aeb9ebe-4c88-11de-a38b-001a4d7faea1}\Shell\AutoRun\command - "" = F:\Une-cle-pour-demarrer.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) NetSvcs: 6to4 - File not found NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found NetSvcs: Ias - File not found NetSvcs: Iprip - C:\WINDOWS\System32\iprip.dll (Microsoft Corporation) NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: Sharedaccess - File not found NetSvcs: WmdmPmSp - File not found NetSvcs: BITS - File not found ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun) ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Rendu VML (Vector Graphics Rendering) ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4 ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Liaison de données Dynamic HTML pour Java ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Création avancée ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - Classes Java DirectAnimation ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 ActiveX: {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - Mise à jour de sécurité pour Windows XP (KB923789) ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX: {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} - .NET Framework ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework ActiveX: {C3C986D6-06B1-43BF-90DD-BE30756C00DE} - RevokedRootsUpdate ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Planificateur de tâches ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1 ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE Drivers32: msacm.divxa32 - C:\WINDOWS\System32\DivXa32.acm (Packed With Joy !) Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation) Drivers32: msacm.l3acm - C:\WINDOWS\System32\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: msacm.lameacm - C:\WINDOWS\System32\LameACM.acm (http://www.mp3dev.org/) Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.) Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.) Drivers32: msacm.vorbis - C:\WINDOWS\System32\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/) Drivers32: MSVideo - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation) Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation) Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.) Drivers32: vidc.DIV3 - C:\WINDOWS\System32\DivXc32.dll (Kristal Studio) Drivers32: vidc.DIV4 - C:\WINDOWS\System32\DivXc32f.dll (Hacked with Joy !) Drivers32: vidc.DIVX - C:\WINDOWS\System32\divx.dll (DivXNetworks, Inc.) Drivers32: vidc.ffds - C:\WINDOWS\System32\ff_vfw.dll () Drivers32: VIDC.FMVC - C:\WINDOWS\System32\fmcodec.DLL (Fox Magic Software) Drivers32: VIDC.I420 - C:\WINDOWS\System32\lvcodec2.dll (Labtec Inc.) Drivers32: vidc.iv31 - C:\WINDOWS\system32\ir32_32.dll () Drivers32: vidc.iv32 - C:\WINDOWS\system32\ir32_32.dll () Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation) Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation) Drivers32: vidc.lags - C:\WINDOWS\System32\Lagarith.dll ( ) Drivers32: vidc.MP42 - C:\WINDOWS\System32\Mpg4c32.dll (DC@T ) Drivers32: vidc.MP43 - C:\WINDOWS\System32\Mpg4c32.dll (DC@T ) Drivers32: vidc.MPG4 - C:\WINDOWS\System32\Mpg4c32.dll (DC@T ) Drivers32: VIDC.VIFP - C:\WINDOWS\System32\VFCodec.dll () Drivers32: vidc.x264 - C:\WINDOWS\System32\x264vfw.dll (x264vfw project) Drivers32: vidc.XVID - C:\WINDOWS\System32\xvidvfw.dll () Drivers32: vidc.yv12 - C:\WINDOWS\System32\yv12vfw.dll (www.helixcommunity.org) Drivers32: wave1 - C:\WINDOWS\System32\serwvdrv.dll (Microsoft Corporation) Drivers32: wave2 - C:\WINDOWS\System32\serwvdrv.dll (Microsoft Corporation) PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin CREATERESTOREPOINT Restore point Set: OTL Restore Point [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013/06/01 13:54:22 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\PROPRIETAIRE\Bureau\OTL.exe [2013/06/01 10:07:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware [2013/06/01 10:06:59 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\PROPRIETAIRE\Recent [2013/06/01 10:06:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe [2013/05/31 23:44:09 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2013/05/31 23:43:16 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\PROPRIETAIRE\Bureau\mbam-setup-1.75.0.1300.exe [2013/05/31 16:46:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\PROPRIETAIRE\Bureau\VirtualDub-1.9.11 [2013/05/23 17:12:53 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2013/05/23 09:24:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\aTube Catcher [2013/05/22 18:35:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\PROPRIETAIRE\Mes documents\SKYRIM SAVE FIN [2013/05/22 07:45:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\nView_Profiles [2013/05/19 21:45:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\PROPRIETAIRE\Bureau\tbh trad [2013/05/13 16:13:11 | 000,000,000 | ---D | C] -- C:\DVDVideoSoft [2013/05/13 16:12:28 | 000,000,000 | ---D | C] -- C:\Program Files\DVDVideoSoft [2013/05/04 16:34:29 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8 [2013/05/02 20:04:00 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Skype [2013/05/02 20:04:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Skype [2013/05/02 20:03:59 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [8 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013/06/01 13:58:05 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin [2013/06/01 13:54:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\PROPRIETAIRE\Bureau\OTL.exe [2013/06/01 13:52:49 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2013/06/01 13:52:16 | 000,001,064 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2013/06/01 13:52:16 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\Express FilesUpdate.job [2013/06/01 13:52:13 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2013/06/01 13:42:00 | 000,001,068 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2013/06/01 13:22:15 | 000,001,002 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2013/06/01 12:51:50 | 000,632,031 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\adwcleaner.exe [2013/06/01 11:54:11 | 000,000,446 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{2A9D68BB-D7B7-4E6C-935E-2AE7FD04145D}.job [2013/06/01 11:49:49 | 000,049,276 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\erreur.JPG [2013/06/01 11:42:37 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2013/06/01 09:41:33 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2013/06/01 09:41:31 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2013/05/31 23:54:31 | 001,982,464 | -H-- | M] () -- C:\ffastun0.ffx [2013/05/31 23:54:31 | 000,712,704 | -H-- | M] () -- C:\ffastun.ffl [2013/05/31 23:54:31 | 000,090,112 | -H-- | M] () -- C:\ffastun.ffo [2013/05/31 23:54:31 | 000,004,624 | -H-- | M] () -- C:\ffastun.ffa [2013/05/31 23:44:12 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes Anti-Malware.lnk [2013/05/31 23:43:19 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\PROPRIETAIRE\Bureau\mbam-setup-1.75.0.1300.exe [2013/05/31 16:27:03 | 001,707,366 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\VirtualDub-1.9.11.zip [2013/05/31 10:18:30 | 147,872,230 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\black hole birthday LIVE.avi [2013/05/30 10:28:59 | 000,000,802 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\Shrines.url [2013/05/30 09:59:49 | 000,310,717 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\cerfa_11921.pdf [2013/05/25 13:49:17 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013/05/25 08:42:56 | 000,009,340 | RHS- | M] () -- C:\Documents and Settings\All Users\ntuser.pol [2013/05/24 10:59:50 | 001,072,544 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2013/05/24 10:59:50 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin [2013/05/24 10:59:33 | 001,072,544 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2013/05/23 10:05:29 | 000,001,454 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\videos Nayati.lnk [2013/05/21 11:45:26 | 000,236,466 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2013/05/20 19:02:04 | 000,002,283 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Internet Explorer\Quick Launch\Skype.lnk [2013/05/15 09:41:16 | 000,224,024 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013/05/15 09:32:49 | 000,537,964 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat [2013/05/15 09:32:49 | 000,464,342 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2013/05/15 09:32:49 | 000,097,948 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat [2013/05/15 09:32:49 | 000,081,042 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2013/05/15 09:29:37 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2013/05/07 06:27:20 | 006,015,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll [2013/05/04 16:42:47 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Internet Explorer\Quick Launch\Démarrer Internet Explorer.lnk [8 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013/06/01 12:51:49 | 000,632,031 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\adwcleaner.exe [2013/06/01 11:49:48 | 000,049,276 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\erreur.JPG [2013/06/01 10:21:40 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin [2013/06/01 09:41:35 | 000,001,002 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2013/05/31 23:44:12 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes Anti-Malware.lnk [2013/05/31 16:38:20 | 000,000,290 | ---- | C] () -- C:\WINDOWS\tasks\Express FilesUpdate.job [2013/05/31 16:26:59 | 001,707,366 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\VirtualDub-1.9.11.zip [2013/05/31 10:15:04 | 147,872,230 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\black hole birthday LIVE.avi [2013/05/30 09:59:49 | 000,310,717 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\cerfa_11921.pdf [2013/05/23 10:04:53 | 000,001,454 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Bureau\videos Nayati.lnk [2013/05/02 21:55:43 | 000,002,283 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Internet Explorer\Quick Launch\Skype.lnk [2013/04/16 12:35:04 | 003,915,776 | ---- | C] () -- C:\WINDOWS\System32\ffmpeg.dll [2013/04/16 12:33:50 | 000,112,640 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2013/04/16 12:32:28 | 000,157,184 | ---- | C] () -- C:\WINDOWS\System32\ff_unrar.dll [2013/04/16 12:32:24 | 000,271,360 | ---- | C] () -- C:\WINDOWS\System32\TomsMoComp_ff.dll [2013/04/16 12:32:18 | 000,099,840 | ---- | C] () -- C:\WINDOWS\System32\ff_wmv9.dll [2013/04/16 12:32:16 | 000,211,968 | ---- | C] () -- C:\WINDOWS\System32\ff_libdts.dll [2013/04/16 12:32:16 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\ff_libmad.dll [2013/04/16 12:32:14 | 001,525,760 | ---- | C] () -- C:\WINDOWS\System32\ff_samplerate.dll [2013/04/16 12:32:14 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\ff_liba52.dll [2013/04/16 12:32:10 | 000,136,704 | ---- | C] () -- C:\WINDOWS\System32\libmpeg2_ff.dll [2013/04/13 14:23:50 | 007,788,672 | ---- | C] () -- C:\WINDOWS\System32\avcodec-lav-55.dll [2013/04/13 14:23:50 | 007,788,672 | ---- | C] () -- C:\WINDOWS\System32\avcodec-53.dll [2013/04/13 14:23:50 | 001,300,152 | ---- | C] () -- C:\WINDOWS\System32\avformat-lav-55.dll [2013/04/13 14:23:50 | 000,400,592 | ---- | C] () -- C:\WINDOWS\System32\swscale-lav-2.dll [2013/04/13 14:23:50 | 000,272,192 | ---- | C] () -- C:\WINDOWS\System32\avutil-lav-52.dll [2013/04/13 14:23:50 | 000,272,192 | ---- | C] () -- C:\WINDOWS\System32\avutil-51.dll [2013/04/13 14:23:50 | 000,194,632 | ---- | C] () -- C:\WINDOWS\System32\avfilter-lav-3.dll [2013/04/13 14:23:50 | 000,172,728 | ---- | C] () -- C:\WINDOWS\System32\avresample-lav-1.dll [2013/03/17 09:11:30 | 000,009,340 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol [2013/01/08 09:02:50 | 001,072,544 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2013/01/08 09:02:50 | 001,072,544 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2013/01/08 09:02:50 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2013/01/08 09:02:04 | 002,816,504 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data [2013/01/08 08:46:28 | 000,006,136 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin [2012/11/06 11:11:40 | 083,023,306 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\0tbpw.pad [2012/09/30 00:47:28 | 000,000,178 | ---- | C] () -- C:\WINDOWS\System32\Formats.ini [2012/06/17 23:15:04 | 000,198,144 | ---- | C] () -- C:\WINDOWS\System32\spdif_test.exe [2012/06/17 23:14:58 | 000,097,792 | ---- | C] () -- C:\WINDOWS\System32\ac3config.exe [2012/06/17 23:14:42 | 001,021,440 | ---- | C] () -- C:\WINDOWS\System32\ac3filter_intl.dll [2011/12/07 21:32:24 | 000,216,064 | ---- | C] ( ) -- C:\WINDOWS\System32\Lagarith.dll [2011/09/14 12:10:35 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2011/09/08 16:00:52 | 000,150,528 | ---- | C] () -- C:\WINDOWS\System32\mkx.dll [2011/09/08 16:00:48 | 000,142,336 | ---- | C] () -- C:\WINDOWS\System32\mp4.dll [2011/09/08 16:00:42 | 000,123,392 | ---- | C] () -- C:\WINDOWS\System32\ogm.dll [2011/09/08 16:00:38 | 000,249,856 | ---- | C] () -- C:\WINDOWS\System32\dxr.dll [2011/09/08 16:00:34 | 000,113,152 | ---- | C] () -- C:\WINDOWS\System32\dsmux.exe [2011/09/08 16:00:24 | 000,154,624 | ---- | C] () -- C:\WINDOWS\System32\ts.dll [2011/09/08 16:00:10 | 000,137,728 | ---- | C] () -- C:\WINDOWS\System32\mkv2vfr.exe [2011/09/08 16:00:06 | 000,358,400 | ---- | C] () -- C:\WINDOWS\System32\gdsmux.exe [2011/09/08 15:59:54 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\mkzlib.dll [2011/09/08 15:59:52 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\mkunicode.dll [2011/06/24 05:58:32 | 000,242,259 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2011/06/24 05:58:04 | 000,877,296 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009/09/06 17:12:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt [2009/05/29 00:00:45 | 000,000,158 | ---- | C] () -- C:\Program Files\satsukidecodersettings.ini [2009/05/29 00:00:43 | 000,003,476 | ---- | C] () -- C:\Program Files\mpc7.reg [2009/05/29 00:00:42 | 000,018,156 | ---- | C] () -- C:\Program Files\mpc6.reg [2009/05/29 00:00:42 | 000,015,768 | ---- | C] () -- C:\Program Files\mpc5.reg [2009/05/29 00:00:42 | 000,003,026 | ---- | C] () -- C:\Program Files\mpc3.reg [2009/05/29 00:00:42 | 000,000,680 | ---- | C] () -- C:\Program Files\mpc2.reg [2009/05/29 00:00:42 | 000,000,464 | ---- | C] () -- C:\Program Files\mpc4.reg [2009/05/29 00:00:41 | 000,000,596 | ---- | C] () -- C:\Program Files\mpc1.reg [2007/07/17 02:55:10 | 000,113,152 | ---- | C] () -- C:\Documents and Settings\PROPRIETAIRE\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2010/12/24 00:18:57 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] "ThreadingModel" = Both "" = C:\RECYCLER\S-1-5-21-57989841-746137067-725345543-1003\$05779ddb6590d6205c27fe7fec658192\n. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008/04/14 04:33:41 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = fastprox.dll -- [2009/02/09 12:53:55 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008/04/14 04:33:48 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemroot%\*. /mp /s >[/color] [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color] [8 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ] [color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color] [color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color] Invalid Environment Variable: alluserprofile Invalid Environment Variable: alluserprofile [color=#A23BEC]< %appdata%\*. >[/color] [2009/06/07 16:14:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Adobe [2012/02/21 12:58:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\adobeflash [2012/12/17 10:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Avira [2011/09/15 15:24:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Azureus [2012/02/24 11:16:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Boilsoft [2010/02/17 23:51:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\CamfrogWEB [2010/10/29 12:25:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\CocoonSoftware [2011/09/15 18:47:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\DVDVideoSoft [2013/03/20 12:19:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Easeware [2013/04/27 16:04:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Ecot [2010/12/24 01:01:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\FreeVideoConverter [2007/09/19 15:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Help [2013/04/27 12:12:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Hizo [2007/07/16 16:16:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Identities [2007/07/16 16:18:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\InstallShield [2007/07/17 12:01:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Macromedia [2012/11/10 15:21:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Malwarebytes [2008/03/28 19:23:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Media Player Classic [2013/05/01 12:07:00 | 000,000,000 | --SD | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft [2008/06/18 18:10:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Mozilla [2013/02/27 16:25:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Nokia [2012/11/17 16:54:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\OpenOffice.org [2012/06/23 10:30:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\PC Suite [2010/10/29 12:14:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Real [2009/09/06 17:13:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Samsung [2013/05/20 19:02:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Skype [2010/09/25 16:16:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Sony Corporation [2010/10/23 01:16:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Sun [2011/10/26 12:30:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Thunderbird [2010/02/19 02:10:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Unity [color=#A23BEC]< %appdata%\*.exe /s >[/color] [2011/09/06 01:19:06 | 004,177,856 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Azureus\plugins\azemp\vuzeplayer.exe [2011/09/05 20:48:16 | 000,310,208 | ---- | M] (Georgia Institute of Technology) -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Azureus\plugins\mlab\ShaperProbeC.exe [2011/09/06 12:43:20 | 007,288,256 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Azureus\plugins\vuzexcode\ffmpeg.exe [2011/09/06 12:43:21 | 004,146,688 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Azureus\plugins\vuzexcode\mediainfo.exe [2009/11/06 07:04:40 | 010,377,728 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\CocoonSoftware\QMC\ffmpeg.exe [2008/04/02 12:35:18 | 007,945,216 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\CocoonSoftware\QMC\ffmpegHD.exe [2002/07/02 14:35:20 | 002,114,560 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Easeware\DriverEasy\drivers\lopwp05u.ewv\WinFastGPS-Install\Install.exe [2001/12/05 10:43:12 | 000,139,264 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Easeware\DriverEasy\drivers\lopwp05u.ewv\WinFastGPS-Install\USB Driver\DRemover98_2K.exe [2002/07/02 15:31:00 | 000,460,288 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Easeware\DriverEasy\drivers\lopwp05u.ewv\WinFastGPS-Install\USB Driver\InstallDriver.exe [2002/05/21 18:20:54 | 000,039,936 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Easeware\DriverEasy\drivers\lopwp05u.ewv\WinFastGPS-Install\WinFast Navigator CE\Install.exe [2003/01/16 15:56:48 | 001,148,249 | ---- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Easeware\DriverEasy\drivers\lopwp05u.ewv\WinFastGPS-Install\WinFast Navigator\WinFast-Nav.EXE [2010/02/19 23:58:02 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Installer\{35725FBC-A136-4A46-9F29-091759D9BB93}\ARPPRODUCTICON.exe [2007/07/20 13:02:22 | 000,018,718 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Installer\{8315396A-5EA1-419D-BEC4-978284BDF556}\NewShortcut1_8315396A5EA1419DBEC4978284BDF556.exe [2010/02/19 23:58:21 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Installer\{BEF726DD-4037-4214-8C6A-E625C02D2870}\ARPPRODUCTICON.exe [2010/02/19 23:57:54 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\PROPRIETAIRE\Application Data\Microsoft\Installer\{EA516024-D84D-41F1-814F-83175A6188F2}\ARPPRODUCTICON.exe [color=#A23BEC]< %systemdrive%\*. >[/color] [2010/12/24 12:20:50 | 000,000,000 | ---D | M] -- C:\1444c6122c45c3207773046de2 [2013/05/21 11:45:10 | 000,000,000 | -HSD | M] -- C:\Config.Msi [2010/05/03 00:00:14 | 000,000,000 | ---D | M] -- C:\ConvertTemp [2013/02/03 12:08:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings [2013/05/13 17:13:32 | 000,000,000 | ---D | M] -- C:\DVDVideoSoft [2011/03/21 15:51:34 | 000,000,000 | ---D | M] -- C:\Inetpub [2013/01/08 08:57:01 | 000,000,000 | ---D | M] -- C:\NVIDIA [2013/06/01 12:52:42 | 000,000,000 | R--D | M] -- C:\Program Files [2012/10/10 10:44:01 | 000,000,000 | -HSD | M] -- C:\RECYCLER [2013/05/31 20:18:41 | 000,000,000 | -HSD | M] -- C:\System Volume Information [2013/06/01 10:06:58 | 000,000,000 | ---D | M] -- C:\WINDOWS [color=#A23BEC]< %systemdrive%\*.exe >[/color] [color=#A23BEC]< %programfiles%\*. >[/color] [2012/11/12 21:42:57 | 000,000,000 | ---D | M] -- C:\Program Files\3DO [2013/05/01 16:10:21 | 000,000,000 | ---D | M] -- C:\Program Files\7-Zip [2007/08/15 12:07:54 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe [2008/01/26 15:27:09 | 000,000,000 | ---D | M] -- C:\Program Files\ahead [2010/11/17 12:14:48 | 000,000,000 | ---D | M] -- C:\Program Files\Alwil Software [2012/07/08 09:32:19 | 000,000,000 | ---D | M] -- C:\Program Files\aTube Catcher 2.0 [2011/09/23 17:40:43 | 000,000,000 | ---D | M] -- C:\Program Files\Audacity [2011/09/15 14:41:59 | 000,000,000 | ---D | M] -- C:\Program Files\AVAST Software [2012/12/17 10:48:30 | 000,000,000 | ---D | M] -- C:\Program Files\Avira [2010/04/22 12:51:07 | 000,000,000 | ---D | M] -- C:\Program Files\AviSynth 2.5 [2013/02/12 11:15:28 | 000,000,000 | ---D | M] -- C:\Program Files\Caprice32 [2011/09/23 17:20:04 | 000,000,000 | ---D | M] -- C:\Program Files\CDex [2010/02/17 23:51:18 | 000,000,000 | ---D | M] -- C:\Program Files\CFWebAdvancedU [2012/07/14 17:14:05 | 000,000,000 | ---D | M] -- C:\Program Files\DIFX [2008/08/07 12:19:36 | 000,000,000 | ---D | M] -- C:\Program Files\DivX [2013/05/23 09:24:39 | 000,000,000 | ---D | M] -- C:\Program Files\DsNET Corp [2013/05/13 16:12:28 | 000,000,000 | ---D | M] -- C:\Program Files\DVDVideoSoft [2013/05/02 20:04:00 | 000,000,000 | ---D | M] -- C:\Program Files\Fichiers communs [2012/11/10 22:12:34 | 000,000,000 | ---D | M] -- C:\Program Files\FileZilla [2012/02/23 15:00:38 | 000,000,000 | ---D | M] -- C:\Program Files\Free Video Joiner [2011/09/15 18:47:33 | 000,000,000 | ---D | M] -- C:\Program Files\Free3GPVideoConverter [2008/12/31 22:04:36 | 000,000,000 | ---D | M] -- C:\Program Files\FreeDial [2008/06/01 15:01:21 | 000,000,000 | ---D | M] -- C:\Program Files\Friendly Software [2012/08/24 08:58:13 | 000,000,000 | ---D | M] -- C:\Program Files\Google [2007/07/20 12:45:41 | 000,000,000 | ---D | M] -- C:\Program Files\Grisoft [2011/09/14 22:37:24 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information [2013/05/15 09:33:43 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer [2013/04/29 11:54:50 | 000,000,000 | ---D | M] -- C:\Program Files\Java [2007/07/20 13:02:20 | 000,000,000 | ---D | M] -- C:\Program Files\Kerio [2010/02/19 23:57:01 | 000,000,000 | ---D | M] -- C:\Program Files\Labtec [2013/06/01 10:07:04 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware [2008/09/09 01:21:12 | 000,000,000 | ---D | M] -- C:\Program Files\Messenger [2012/12/06 11:27:06 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft [2010/02/19 13:00:18 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft CAPICOM 2.1.0.2 [2007/07/16 16:12:43 | 000,000,000 | ---D | M] -- C:\Program Files\microsoft frontpage [2008/06/10 22:39:45 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office [2007/07/17 00:01:30 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works 4.5 [2010/08/11 12:21:50 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker [2013/05/23 23:40:53 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox [2013/05/24 10:48:26 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Maintenance Service [2011/06/10 01:30:44 | 000,000,000 | ---D | M] -- C:\Program Files\mp3DirectCut [2010/12/24 12:21:17 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild [2007/07/16 16:08:54 | 000,000,000 | ---D | M] -- C:\Program Files\MSN [2007/07/16 16:09:20 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Gaming Zone [2009/09/07 07:56:53 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0 [2013/05/01 14:29:21 | 000,000,000 | ---D | M] -- C:\Program Files\My MP4Box GUI [2008/09/09 01:15:58 | 000,000,000 | ---D | M] -- C:\Program Files\NetMeeting [2013/03/20 13:50:01 | 000,000,000 | ---D | M] -- C:\Program Files\Nokia [2013/05/24 10:57:26 | 000,000,000 | ---D | M] -- C:\Program Files\NVIDIA Corporation [2007/07/16 16:09:28 | 000,000,000 | ---D | M] -- C:\Program Files\Online Services [2012/11/17 16:51:17 | 000,000,000 | ---D | M] -- C:\Program Files\OpenOffice.org 3 [2012/07/08 09:30:00 | 000,000,000 | ---D | M] -- C:\Program Files\Oracle(2) [2010/12/15 12:14:32 | 000,000,000 | ---D | M] -- C:\Program Files\Outlook Express [2013/03/20 10:38:38 | 000,000,000 | ---D | M] -- C:\Program Files\PC Connectivity Solution [2007/08/09 20:07:27 | 000,000,000 | ---D | M] -- C:\Program Files\PC-Linq [2007/10/26 21:11:14 | 000,000,000 | ---D | M] -- C:\Program Files\PowerPoint Viewer [2010/12/24 01:01:04 | 000,000,000 | ---D | M] -- C:\Program Files\QuickMediaConverter [2010/02/18 02:43:20 | 000,000,000 | ---D | M] -- C:\Program Files\Realtek [2010/12/24 12:21:07 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies [2009/09/06 17:05:24 | 000,000,000 | ---D | M] -- C:\Program Files\Samsung [2007/07/16 16:11:15 | 000,000,000 | ---D | M] -- C:\Program Files\Services en ligne [2013/05/02 20:04:00 | 000,000,000 | R--D | M] -- C:\Program Files\Skype [2008/01/26 12:58:23 | 000,000,000 | ---D | M] -- C:\Program Files\Smart Projects [2010/09/25 16:14:55 | 000,000,000 | ---D | M] -- C:\Program Files\Sony [2007/07/20 13:08:00 | 000,000,000 | ---D | M] -- C:\Program Files\Sunbelt Software [2008/01/16 19:07:55 | 000,000,000 | ---D | M] -- C:\Program Files\TextBridge Pro 8.0 [2010/01/10 16:14:21 | 000,000,000 | ---D | M] -- C:\Program Files\TuxGuitar-Jet [2007/07/16 16:16:53 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information [2013/02/05 13:22:00 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live [2009/12/01 18:20:32 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live Safety Center [2009/09/16 16:30:51 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Live SkyDrive [2007/08/09 21:09:37 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Connect 2 [2008/09/09 01:15:56 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player [2008/09/09 01:15:56 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT [2007/07/16 16:11:18 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsUpdate [2008/12/19 18:48:48 | 000,000,000 | ---D | M] -- C:\Program Files\WinRAR [2007/07/16 16:12:43 | 000,000,000 | ---D | M] -- C:\Program Files\xerox [2008/08/07 12:26:37 | 000,000,000 | ---D | M] -- C:\Program Files\Xvid [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006/03/02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=49B1376885340BF9EA0D99F71557B59A -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008/04/14 04:33:24 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4EC800BDF80521B0207BD2301DFC7D14 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008/04/14 04:33:24 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4EC800BDF80521B0207BD2301DFC7D14 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color] [2006/03/02 14:00:00 | 001,036,288 | ---- | M] (Microsoft Corporation) MD5=2A7BD330924252A2FD80344FC949BB72 -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe [2007/06/13 15:10:53 | 001,037,312 | ---- | M] (Microsoft Corporation) MD5=B795475444D6D57A572C14B9E1A29839 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe [2007/06/13 15:22:28 | 001,037,312 | ---- | M] (Microsoft Corporation) MD5=D0288319660EDCFED07C7E74C4EA38A5 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe [2008/04/14 04:34:03 | 001,037,824 | ---- | M] (Microsoft Corporation) MD5=F2317622D29F9FF0F88AEECD5F60F0DD -- C:\WINDOWS\explorer.exe [2008/04/14 04:34:03 | 001,037,824 | ---- | M] (Microsoft Corporation) MD5=F2317622D29F9FF0F88AEECD5F60F0DD -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe [color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color] [2008/04/14 04:33:34 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=04821179C3171554C1BD1F9888A113E2 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll [2008/04/14 04:33:34 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=04821179C3171554C1BD1F9888A113E2 -- C:\WINDOWS\system32\netlogon.dll [2006/03/02 14:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=D4CFAC76926C24E32B7F25A35C31BC6E -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll [color=#A23BEC]< MD5 for: NVRD32.SYS >[/color] [2009/06/30 17:31:18 | 000,139,296 | ---- | M] (NVIDIA Corporation) MD5=C0B63B73BC79C48EAF53900E494F6DE9 -- C:\NVIDIA\nForce\15.45\International\IDE\WinXP\sataraid\nvrd32.sys [color=#A23BEC]< MD5 for: USERINIT.EXE >[/color] [2006/03/02 14:00:00 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=84717891F0734C611721F56C60B5FBC3 -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe [2008/04/14 04:34:26 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=E74DDB12188C2FF57A78624DBF7332FC -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe [2008/04/14 04:34:26 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=E74DDB12188C2FF57A78624DBF7332FC -- C:\WINDOWS\system32\userinit.exe [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006/03/02 14:00:00 | 000,506,368 | ---- | M] (Microsoft Corporation) MD5=123EEA158F74D0F67A51DCDF065D1091 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe [2008/04/14 04:34:28 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=DD73D6B9F6B4CB630CF35B438B540174 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008/04/14 04:34:28 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=DD73D6B9F6B4CB630CF35B438B540174 -- C:\WINDOWS\system32\winlogon.exe [color=#E56717]========== Files - Unicode (All) ==========[/color] [2011/09/15 17:35:27 | 000,001,285 | ---- | M] ()(C:\Documents and Settings\PROPRIETAIRE\Bureau\?.lnk) -- C:\Documents and Settings\PROPRIETAIRE\Bureau\k&.lnk [2011/09/15 17:35:11 | 000,001,285 | ---- | C] ()(C:\Documents and Settings\PROPRIETAIRE\Bureau\?.lnk) -- C:\Documents and Settings\PROPRIETAIRE\Bureau\k&.lnk [color=#E56717]========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========[/color] [C:\WINDOWS\$NtUninstallKB34003$] -> -> Unknown point type < End of report >