re,
voici le nouveau rapport OTL :
OTL logfile created on: 26/04/2010 22:22:43 - Run 2
OTL by OldTimer - Version 3.2.3.0 Folder = C:\Users\Emmanuel\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18904)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 46,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 63,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 74,96 Gb Total Space | 33,24 Gb Free Space | 44,34% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 72,62 Gb Total Space | 67,57 Gb Free Space | 93,03% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: PC-DE-EMMANUEL
Current User Name: Emmanuel
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Users\Emmanuel\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Users\Emmanuel\AppData\Local\ave.exe ()
PRC - C:\Users\Emmanuel\WUAUCLDT.EXE ()
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe (Research In Motion Limited)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\trademanager\AliUpdate.exe (Alibaba software (Shanghai) Corporation.)
PRC - C:\Program Files\trademanager\AliIM.exe (Alibaba software (Shanghai) Corporation.)
PRC - C:\Program Files\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation)
PRC - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
PRC - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
PRC - C:\Program Files\Windows Mail\WinMail.exe (Microsoft Corporation)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe ()
PRC - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
PRC - c:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
PRC - C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe (Interactive Digital Media)
PRC - C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\Common Files\Protexis\License Service\PSIService.exe ()
PRC - C:\Program Files\Synaptics\SynTP\SynToshiba.exe (Synaptics, Inc.)
PRC - C:\Program Files\Common Files\aol\acs\AOLacsd.exe (AOL LLC)
PRC - C:\Windows\System32\agrsmsvc.exe (Agere Systems)
PRC - C:\Program Files\Common Files\aol\1199888360\ee\aolsoftware.exe (America Online, Inc.)
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
PRC - C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
========== Modules (SafeList) ========== MOD - C:\Users\Emmanuel\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ========== SRV - (LiveUpdate Notice Ex) -- File not found
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (LiveUpdate Notice Service) -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (TNaviSrv) -- C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
SRV - (TosCoSrv) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
SRV - (TOSHIBA Bluetooth Service) -- c:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
SRV - (IAANTMON) Intel(R) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
SRV - (BvrpKrnl) -- C:\Program Files\WinFax eXPert\BvrpKrnl.exe ()
SRV - (CFSvcs) -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
SRV - (ProtexisLicensing) -- C:\Program Files\Common Files\Protexis\License Service\PSIService.exe ()
SRV - (AOL ACS) -- C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (AOL LLC)
SRV - (AgereModemAudio) -- C:\Windows\System32\agrsmsvc.exe (Agere Systems)
SRV - (UleadBurningHelper) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
SRV - (TODDSrv) -- C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation)
SRV - (IDriverT) -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ========== DRV - (CMB8100) -- C:\Windows\System32\drivers\CertClient.dat ()
DRV - (CMBProtector) -- C:\Windows\System32\drivers\CMBProtector.dat ()
DRV - (usbaudio) Pilote USB audio (WDM) -- C:\Windows\System32\drivers\USBAUDIO.sys (Microsoft Corporation)
DRV - (NETw4v32) Pilote de carte Intel(R) -- C:\Windows\System32\drivers\NETw4v32.sys (Intel Corporation)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.)
DRV - (tos_sps32) -- C:\Windows\system32\DRIVERS\tos_sps32.sys (TOSHIBA Corporation)
DRV - (igfx) -- C:\Windows\System32\drivers\igdkmd32.sys (Intel Corporation)
DRV - (UVCFTR) -- C:\Windows\System32\drivers\UVCFTR_S.SYS (Chicony Electronics Co., Ltd.)
DRV - (QIOMem) -- C:\Windows\System32\drivers\QIOMem.sys (TOSHIBA)
DRV - (rismxdp) -- C:\Windows\System32\drivers\rixdptsk.sys (REDC)
DRV - (RTL8169) -- C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation )
DRV - (rimmptsk) -- C:\Windows\System32\drivers\rimmptsk.sys (REDC)
DRV - (iaStor) -- C:\Windows\system32\DRIVERS\iaStor.sys (Intel Corporation)
DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC)
DRV - (KR10N) -- C:\Windows\system32\drivers\kr10n.sys (TOSHIBA CORPORATION)
DRV - (KR10I) -- C:\Windows\system32\drivers\kr10i.sys (TOSHIBA CORPORATION)
DRV - (wanatw) WAN Miniport (ATW) -- C:\Windows\System32\drivers\wanatw4.sys (America Online, Inc.)
DRV - (AgereSoftModem) -- C:\Windows\System32\drivers\AGRSM.sys (Agere Systems)
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (SiSRaid2) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.)
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation)
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
DRV - (NETw3v32) Pilote de carte Intel(R) -- C:\Windows\System32\drivers\NETw3v32.sys (Intel® Corporation)
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (SynTP) -- C:\Windows\System32\drivers\SynTP.sys (Synaptics, Inc.)
DRV - (tosrfec) -- C:\Windows\System32\drivers\tosrfec.sys (TOSHIBA Corporation)
DRV - (tdcmdpst) -- C:\Windows\System32\drivers\tdcmdpst.sys (TOSHIBA Corporation.)
DRV - (TVALZ) -- C:\Windows\system32\DRIVERS\TVALZ_O.SYS (TOSHIBA Corporation)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://y.lo.stIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll (AOL)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "www.google.com"
FF - prefs.js..extensions.enabledItems: {4D144BC3-23FB-47de-90C5-63CCB0139CCF}:1.0
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/04/25 21:09:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/04/25 21:09:40 | 000,000,000 | ---D | M]
[2008/08/29 09:46:48 | 000,000,000 | ---D | M] -- C:\Users\Emmanuel\AppData\Roaming\mozilla\Extensions
[2010/04/26 17:31:35 | 000,000,000 | ---D | M] -- C:\Users\Emmanuel\AppData\Roaming\mozilla\Firefox\Profiles\mky1c92n.default\extensions
[2009/09/03 10:41:49 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Emmanuel\AppData\Roaming\mozilla\Firefox\Profiles\mky1c92n.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/10/15 08:23:13 | 000,000,000 | ---D | M] (TradeManager-Plugin) -- C:\Users\Emmanuel\AppData\Roaming\mozilla\Firefox\Profiles\mky1c92n.default\extensions\{4D144BC3-23FB-47de-90C5-63CCB0139CCF}
[2010/04/25 21:09:37 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/04/01 19:07:29 | 000,001,516 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml
[2010/04/01 19:07:29 | 000,001,822 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
[2010/04/01 19:07:29 | 000,000,757 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-france.xml
[2010/04/01 19:07:29 | 000,001,426 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-fr.xml
[2010/04/01 19:07:29 | 000,000,956 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-france.xml
O1 HOSTS File: ([2006/09/18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (AOL Toolbar Launcher) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll (AOL)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll (AOL)
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll (AOL)
O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [BlackBerryAutoUpdate] C:\Program Files\Common Files\Research In Motion\Auto Update\RIMAutoUpdate.exe (Research In Motion Limited)
O4 - HKLM..\Run: [Camera Assistant Software] C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe (Chicony)
O4 - HKLM..\Run: [Desktop SMS] C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe (Interactive Digital Media)
O4 - HKLM..\Run: [EoEngine] File not found
O4 - HKLM..\Run: [HostManager] C:\Program Files\Common Files\aol\1199888360\ee\aolsoftware.exe (America Online, Inc.)
O4 - HKLM..\Run: [HSON] C:\Program Files\TOSHIBA\TBS\HSON.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [NDSTray.exe] File not found
O4 - HKLM..\Run: [OPSE reminder] C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\Ereg.exe File not found
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Skytel] C:\Windows\SkyTel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
O4 - HKLM..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA)
O4 - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaRegistration.exe (Toshiba)
O4 - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKCU..\Run: [aliim] C:\Program Files\trademanager\AliIM.exe (Alibaba software (Shanghai) Corporation.)
O4 - HKCU..\Run: [atmclbCMP] C:\Users\Emmanuel\AppData\Local\atmclbCMP\atmclbCMP.DLL ()
O4 - HKCU..\Run: [audiolocal64] C:\Users\Emmanuel\AppData\Local\audiolocal64\audiolocal64.DLL ()
O4 - HKCU..\Run: [BrowserChoice] C:\Windows\System32\BROWSERCHOICE.EXE (Microsoft Corporation)
O4 - HKCU..\Run: [d3davilibrary] C:\Users\Emmanuel\AppData\Local\d3davilibrary\d3davilibrary.DLL ()
O4 - HKCU..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKCU..\Run: [Regedit32] C:\Windows\System32\regedit.exe File not found
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKCU..\Run: [syncman] c:\users\emmanuel\wuaucldt.exe ()
O4 - HKCU..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe ()
O4 - Startup: C:\Users\Emmanuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\monxga32.exe ()
O8 - Extra context menu item: &Recherche AOL Toolbar - c:\Program Files\AOL\AOL Toolbar 4.0\resources\fr-FR\local\search.html ()
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll (Google Inc.)
O9 - Extra 'Tools' menuitem : Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll (Sun Microsystems, Inc.)
O9 - Extra Button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll (AOL)
O9 - Extra Button: eBay - Achetez, Vendez - {76577871-04EC-495E-A12B-91F7C3600AFA} - File not found
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: CMB FirmBank - {8667B276-362E-4a47-BCEB-7AD0E04BBB3F} - C:\Program Files\CMB\FirmBank\Bin\Firmbank.exe (招商银行)
O9 - Extra Button: Amazon.fr - {8A918C1D-E123-4E36-B562-5C1519E434CE} - File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: alipay.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: alipay.com ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: alisoft.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: alisoft.com ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O15 - HKCU\..Trusted Domains: taobao.com ([]http in Trusted sites)
O15 - HKCU\..Trusted Domains: taobao.com ([]https in Trusted sites)
O16 - DPF: Microsoft XML Parser for Java file:///C:/Windows/Java/classes/xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Users\Emmanuel\Documents\PERSO\photo famille.jpg
O24 - Desktop BackupWallPaper: C:\Users\Emmanuel\Documents\PERSO\photo famille.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{1ff2904b-e1ba-11dc-ae23-00038a000015}\Shell\AutoRun\command - "" = servet.exe
O33 - MountPoints2\{51d434eb-c37e-11dc-b8fa-00038a000015}\Shell\AutoRun\command - "" = wscript.exe .\.vbs
O33 - MountPoints2\{51d434eb-c37e-11dc-b8fa-00038a000015}\Shell\open\command - "" = wscript.exe .\.vbs
O33 - MountPoints2\{db4b3f3c-ea72-11dc-b82e-00038a000015}\Shell\Auto\command - "" = AdobeR.exe e
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...exe [@ = secfile] -- "C:\Users\Emmanuel\AppData\Local\ave.exe" /START "%1" %* ()
========== Files/Folders - Created Within 30 Days ========== [2010/04/26 22:16:46 | 005,918,776 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Emmanuel\Desktop\mbam-setup.exe
[2010/04/26 21:25:36 | 000,563,712 | ---- | C] (OldTimer Tools) -- C:\Users\Emmanuel\Desktop\OTL.exe
[2010/04/26 17:51:19 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Local\audiolocal64
[2010/04/26 14:09:39 | 000,401,720 | ---- | C] (Trend Micro Inc.) -- C:\Users\Emmanuel\Desktop\chevaldestroy.exe
[2010/04/26 13:56:48 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Portable Devices
[2010/04/26 13:51:23 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2010/04/26 13:51:20 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbonRes.dll
[2010/04/26 13:51:19 | 003,023,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbon.dll
[2010/04/26 13:48:31 | 000,369,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2010/04/26 13:48:18 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdd.dll
[2010/04/26 13:48:09 | 000,829,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2010/04/26 13:48:09 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelineprxy.dll
[2010/04/26 13:48:08 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2010/04/26 13:48:08 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsRasterService.dll
[2010/04/26 13:48:07 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecs.dll
[2010/04/26 13:48:07 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2010/04/26 13:48:07 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2010/04/26 13:48:06 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelinesvc.exe
[2010/04/26 13:48:06 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoMetadataHandler.dll
[2010/04/26 13:48:06 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiag.exe
[2010/04/26 13:48:06 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiagn.dll
[2010/04/26 13:48:04 | 000,351,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2010/04/26 13:48:03 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OpcServices.dll
[2010/04/26 13:48:02 | 001,554,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xpsservices.dll
[2010/04/26 13:48:01 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FntCache.dll
[2010/04/26 13:48:00 | 001,064,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2010/04/26 13:48:00 | 000,486,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2010/04/26 13:47:59 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll
[2010/04/26 13:47:59 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2010/04/26 13:47:59 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2010/04/26 13:47:58 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2010/04/26 13:47:58 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2010/04/26 13:47:57 | 001,030,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2010/04/26 13:46:05 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\BthMtpContextHandler.dll
[2010/04/26 13:46:05 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDShextAutoplay.exe
[2010/04/26 13:45:53 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceConnectApi.dll
[2010/04/26 13:45:45 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WpdMtpUS.dll
[2010/04/26 13:45:45 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WpdConns.dll
[2010/04/26 13:45:42 | 000,546,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpd_ci.dll
[2010/04/26 13:45:41 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceApi.dll
[2010/04/26 13:45:41 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WpdMtp.dll
[2010/04/26 13:45:41 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceWMDRM.dll
[2010/04/26 13:45:41 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceTypes.dll
[2010/04/26 13:45:41 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceClassExtension.dll
[2010/04/26 13:45:40 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDSp.dll
[2010/04/26 13:41:14 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\oleaccrc.dll
[2010/04/26 13:41:11 | 000,555,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAutomationCore.dll
[2010/04/26 12:48:47 | 000,000,000 | R--D | C] -- C:\Users\Emmanuel\Favorites
[2010/04/26 08:42:00 | 000,420,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010/04/26 08:41:36 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010/04/26 08:41:25 | 001,696,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll
[2010/04/26 08:41:23 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Apphlpdm.dll
[2010/04/26 08:41:22 | 004,240,384 | ---- | C] (Microsoft) -- C:\Windows\System32\GameUXLegacyGDFs.dll
[2010/04/26 08:15:05 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\Documents\Mes Historiques de Conversation
[2010/04/26 08:14:40 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Local\atmclbCMP
[2010/04/25 22:14:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\eu-ES
[2010/04/25 22:14:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\ca-ES
[2010/04/25 22:14:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\vi-VN
[2010/04/25 21:23:59 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2010/04/25 21:23:52 | 000,000,000 | ---D | C] -- C:\c7bf8a7a9d2cd0a356974fc112adaf67
[2010/04/25 17:59:29 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Local\avG
[2010/04/25 17:59:29 | 000,000,000 | ---D | C] -- C:\ProgramData\avG
[2010/04/25 17:51:33 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010/04/25 17:49:47 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010/04/25 17:49:47 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/04/25 17:49:46 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010/04/25 17:49:46 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010/04/25 17:49:46 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010/04/25 17:49:46 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010/04/25 17:49:45 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2010/04/25 17:49:45 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2010/04/25 17:49:44 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2010/04/25 17:49:44 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2010/04/25 17:49:44 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2010/04/25 17:49:43 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010/04/25 17:49:43 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2010/04/25 17:49:43 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2010/04/25 17:49:42 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2010/04/25 17:47:20 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2010/04/25 17:47:20 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\admparse.dll
[2010/04/25 17:47:20 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2010/04/25 17:47:19 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2010/04/25 17:47:19 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2010/04/25 17:47:19 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakeng.dll
[2010/04/25 17:47:19 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2010/04/25 17:47:19 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\corpol.dll
[2010/04/25 17:47:18 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2010/04/25 17:47:18 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2010/04/25 17:47:17 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll
[2010/04/25 17:47:17 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinFXDocObj.exe
[2010/04/25 17:47:17 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2010/04/25 17:47:17 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakui.dll
[2010/04/25 17:47:17 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2010/04/25 17:47:15 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2010/04/25 17:47:14 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2010/04/25 17:47:14 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2010/04/25 17:47:12 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010/04/25 17:47:12 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2010/04/25 17:47:11 | 003,698,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2010/04/25 17:47:11 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PDMSetup.exe
[2010/04/25 17:47:11 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2010/04/25 17:47:11 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2010/04/25 17:47:11 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetDepNx.exe
[2010/04/25 15:20:31 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Local\d3davilibrary
[2010/04/22 21:29:35 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\CACHE
[2010/04/22 21:29:22 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\LMSOFT
[2010/04/18 22:27:01 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02698.tmp
[2010/04/18 22:26:54 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02697.tmp
[2010/04/18 22:26:46 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02696.tmp
[2010/04/18 22:26:44 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02695.tmp
[2010/04/18 22:26:38 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02694.tmp
[2010/04/18 22:26:25 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02693.tmp
[2010/04/17 22:22:03 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02692.tmp
[2010/04/17 21:19:59 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02691.tmp
[2010/04/17 20:11:28 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02690.tmp
[2010/04/17 20:09:37 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02689.tmp
[2010/04/17 20:08:16 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02688.tmp
[2010/04/17 20:08:08 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02687.tmp
[2010/04/15 07:50:04 | 003,600,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010/04/15 07:50:04 | 003,548,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010/04/15 07:49:51 | 000,220,672 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\l3codecp.acm
[2010/04/15 07:49:51 | 000,062,464 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\Windows\System32\l3codeca.acm
[2010/04/12 16:25:02 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\Blackberry Desktop
[2010/04/12 16:14:42 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\Research In Motion
[2010/04/12 16:12:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Roxio Shared
[2010/04/12 16:11:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Research In Motion
[2010/04/12 16:11:36 | 000,000,000 | ---D | C] -- C:\Program Files\Research In Motion
[2010/04/02 22:12:49 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02686.tmp
[2010/04/02 22:11:57 | 000,000,000 | ---D | C] -- C:\Users\Emmanuel\AppData\Roaming\~LM02685.tmp
[2698 C:\Users\Emmanuel\AppData\Roaming\*.tmp files -> C:\Users\Emmanuel\AppData\Roaming\*.tmp -> ]
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/04/26 22:24:26 | 005,505,024 | -HS- | M] () -- C:\Users\Emmanuel\ntuser.dat
[2010/04/26 22:24:00 | 000,001,054 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2010/04/26 22:17:38 | 005,918,776 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Emmanuel\Desktop\mbam-setup.exe
[2010/04/26 22:03:24 | 000,012,114 | -HS- | M] () -- C:\Users\Emmanuel\AppData\Local\W1V4gTA17lv6V
[2010/04/26 22:03:24 | 000,012,114 | -HS- | M] () -- C:\ProgramData\W1V4gTA17lv6V
[2010/04/26 21:25:37 | 000,563,712 | ---- | M] (OldTimer Tools) -- C:\Users\Emmanuel\Desktop\OTL.exe
[2010/04/26 21:02:06 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/04/26 21:02:06 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/04/26 19:23:12 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/04/26 17:08:34 | 001,478,524 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/04/26 17:08:34 | 000,672,322 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2010/04/26 17:08:34 | 000,590,082 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/04/26 17:08:34 | 000,124,434 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2010/04/26 17:08:34 | 000,102,094 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/04/26 17:02:21 | 000,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2010/04/26 17:02:07 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/04/26 16:59:57 | 000,524,288 | -HS- | M] () -- C:\Users\Emmanuel\ntuser.dat{a9bd943f-84f1-11dd-a996-00038a000015}.TMContainer00000000000000000001.regtrans-ms
[2010/04/26 16:59:57 | 000,065,536 | -HS- | M] () -- C:\Users\Emmanuel\ntuser.dat{a9bd943f-84f1-11dd-a996-00038a000015}.TM.blf
[2010/04/26 16:59:38 | 001,712,968 | -H-- | M] () -- C:\Users\Emmanuel\AppData\Local\IconCache.db
[2010/04/26 16:36:26 | 000,011,945 | ---- | M] () -- C:\Users\Emmanuel\Documents\Gilles.docx
[2010/04/26 14:09:46 | 000,401,720 | ---- | M] (Trend Micro Inc.) -- C:\Users\Emmanuel\Desktop\chevaldestroy.exe
[2010/04/26 13:56:34 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
[2010/04/26 13:55:50 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2010/04/25 22:21:39 | 000,396,760 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/04/25 21:09:46 | 000,001,689 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010/04/25 21:06:44 | 000,001,594 | ---- | M] () -- C:\Users\Emmanuel\Desktop\Choix de navigateur .lnk
[2010/04/25 21:02:47 | 000,000,424 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{26D32568-7A79-453A-A49C-6A897A1A4767}.job
[2010/04/25 18:05:36 | 000,012,094 | -HS- | M] () -- C:\Users\Emmanuel\AppData\Local\480676771
[2010/04/25 18:05:36 | 000,012,094 | -HS- | M] () -- C:\ProgramData\480676771
[2010/04/25 15:55:52 | 001,083,990 | ---- | M] () -- C:\Users\Emmanuel\.recently-used.xbel
[2010/04/25 15:20:32 | 000,222,720 | -HS- | M] () -- C:\Users\Emmanuel\AppData\Local\ave.exe
[2010/04/25 15:16:55 | 000,029,440 | ---- | M] () -- C:\Users\Emmanuel\wuaucldt.exe
[2010/04/25 15:16:55 | 000,000,012 | ---- | M] () -- C:\Users\Emmanuel\AppData\Roaming\kcmdte.dat
[2010/04/25 15:16:51 | 000,000,004 | ---- | M] () -- C:\Users\Emmanuel\AppData\Roaming\avdrn.dat
[2010/04/22 21:27:00 | 000,001,912 | ---- | M] () -- C:\Users\Emmanuel\Desktop\LMSOFT Web Creator Pro 5.lnk
[2010/04/22 21:16:48 | 082,769,736 | ---- | M] () -- C:\Users\Emmanuel\Desktop\WC5ProInstall200.EXE
[2010/04/19 10:33:45 | 000,017,360 | ---- | M] () -- C:\Users\Emmanuel\Documents\New order Gigantex.xlsx
[2010/04/16 17:24:16 | 001,913,344 | ---- | M] () -- C:\Users\Emmanuel\Desktop\garages.xls
[2010/04/16 13:28:33 | 000,002,038 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2010/04/15 21:31:47 | 000,566,784 | ---- | M] () -- C:\Users\Emmanuel\Desktop\moto.xls
[2010/04/13 12:33:50 | 000,178,729 | ---- | M] () -- C:\Users\Emmanuel\Documents\cadre a imprimer.docx
[2010/04/12 16:37:45 | 000,000,256 | ---- | M] () -- C:\Windows\System32\pool.bin
[2010/04/12 16:12:33 | 000,001,834 | ---- | M] () -- C:\Users\Public\Desktop\Desktop Manager.lnk
[2010/04/09 11:13:23 | 000,008,704 | ---- | M] () -- C:\Users\Emmanuel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/04/09 09:59:52 | 000,085,103 | ---- | M] () -- C:\Users\Emmanuel\Documents\Ribbed staple.jpg
[2010/04/09 08:10:30 | 000,110,035 | ---- | M] () -- C:\Users\Emmanuel\Documents\wheel cover_0001.pdf
[2010/04/09 08:05:59 | 000,082,186 | ---- | M] () -- C:\Users\Emmanuel\Documents\wheel cover.jpg
[2010/04/09 08:03:00 | 000,057,275 | ---- | M] () -- C:\Users\Emmanuel\Documents\wheels cover.jpg
[2010/04/07 16:36:59 | 002,965,504 | ---- | M] () -- C:\Users\Emmanuel\Desktop\agence immo.xls
[2698 C:\Users\Emmanuel\AppData\Roaming\*.tmp files -> C:\Users\Emmanuel\AppData\Roaming\*.tmp -> ]
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/04/26 16:36:25 | 000,011,945 | ---- | C] () -- C:\Users\Emmanuel\Documents\Gilles.docx
[2010/04/26 13:56:34 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
[2010/04/26 13:55:50 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2010/04/25 21:03:24 | 000,001,594 | ---- | C] () -- C:\Users\Emmanuel\Desktop\Choix de navigateur .lnk
[2010/04/25 18:05:33 | 000,012,094 | -HS- | C] () -- C:\Users\Emmanuel\AppData\Local\480676771
[2010/04/25 18:05:33 | 000,012,094 | -HS- | C] () -- C:\ProgramData\480676771
[2010/04/25 17:49:44 | 000,057,667 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2010/04/25 15:55:52 | 001,083,990 | ---- | C] () -- C:\Users\Emmanuel\.recently-used.xbel
[2010/04/25 15:20:32 | 000,222,720 | -HS- | C] () -- C:\Users\Emmanuel\AppData\Local\ave.exe
[2010/04/25 15:20:32 | 000,012,114 | -HS- | C] () -- C:\Users\Emmanuel\AppData\Local\W1V4gTA17lv6V
[2010/04/25 15:20:32 | 000,012,114 | -HS- | C] () -- C:\ProgramData\W1V4gTA17lv6V
[2010/04/25 15:16:55 | 000,029,440 | ---- | C] () -- C:\Users\Emmanuel\wuaucldt.exe
[2010/04/25 15:16:54 | 000,000,012 | ---- | C] () -- C:\Users\Emmanuel\AppData\Roaming\kcmdte.dat
[2010/04/25 15:16:51 | 000,000,004 | ---- | C] () -- C:\Users\Emmanuel\AppData\Roaming\avdrn.dat
[2010/04/25 07:47:20 | 000,048,830 | ---- | C] () -- C:\Users\Emmanuel\Documents\Graphit'Sport - Projet Roues Chrono - Copie.jpg
[2010/04/22 21:27:00 | 000,001,912 | ---- | C] () -- C:\Users\Emmanuel\Desktop\LMSOFT Web Creator Pro 5.lnk
[2010/04/22 21:10:08 | 082,769,736 | ---- | C] () -- C:\Users\Emmanuel\Desktop\WC5ProInstall200.EXE
[2010/04/19 10:33:44 | 000,017,360 | ---- | C] () -- C:\Users\Emmanuel\Documents\New order Gigantex.xlsx
[2010/04/16 17:24:13 | 001,913,344 | ---- | C] () -- C:\Users\Emmanuel\Desktop\garages.xls
[2010/04/16 13:28:33 | 000,002,038 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
[2010/04/15 21:31:46 | 000,566,784 | ---- | C] () -- C:\Users\Emmanuel\Desktop\moto.xls
[2010/04/13 12:33:49 | 000,178,729 | ---- | C] () -- C:\Users\Emmanuel\Documents\cadre a imprimer.docx
[2010/04/12 16:14:49 | 000,000,256 | ---- | C] () -- C:\Windows\System32\pool.bin
[2010/04/12 16:12:32 | 000,001,834 | ---- | C] () -- C:\Users\Public\Desktop\Desktop Manager.lnk
[2010/04/09 11:14:43 | 000,085,103 | ---- | C] () -- C:\Users\Emmanuel\Documents\Ribbed staple.jpg
[2010/04/09 08:10:30 | 000,110,035 | ---- | C] () -- C:\Users\Emmanuel\Documents\wheel cover_0001.pdf
[2010/04/09 08:05:59 | 000,082,186 | ---- | C] () -- C:\Users\Emmanuel\Documents\wheel cover.jpg
[2010/04/09 08:02:58 | 000,057,275 | ---- | C] () -- C:\Users\Emmanuel\Documents\wheels cover.jpg
[2010/04/07 10:26:48 | 002,965,504 | ---- | C] () -- C:\Users\Emmanuel\Desktop\agence immo.xls
[2010/01/22 18:49:17 | 000,002,984 | -HS- | C] () -- C:\Windows\System32\KGyGaAvL.sys
[2010/01/22 18:49:17 | 000,000,088 | RHS- | C] () -- C:\Windows\System32\65EB2C79AF.sys
[2009/11/04 16:56:54 | 000,403,344 | ---- | C] () -- C:\Windows\System32\CMBEdit.dll
[2009/11/04 16:56:51 | 000,472,976 | ---- | C] () -- C:\Windows\System32\PBHttpComm.dll
[2009/11/04 16:56:51 | 000,100,240 | ---- | C] () -- C:\Windows\System32\CmbSafeBase.dll
[2009/09/24 08:12:32 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009/04/15 07:46:50 | 000,013,576 | ---- | C] () -- C:\Windows\System32\syscorecfg256.dll
[2009/01/06 08:31:27 | 000,000,179 | ---- | C] () -- C:\Windows\disney.ini
[2009/01/06 08:31:24 | 000,000,199 | ---- | C] () -- C:\Windows\disneysy.ini
[2008/11/13 13:07:30 | 000,010,240 | ---- | C] () -- C:\Windows\System32\vidx16.dll
[2008/09/12 14:35:05 | 000,000,028 | ---- | C] () -- C:\Windows\WININIT.INI
[2008/09/12 12:34:32 | 000,115,992 | ---- | C] () -- C:\Windows\System32\SafeEdit.dll
[2008/02/25 01:43:41 | 000,000,029 | ---- | C] () -- C:\Windows\atid.ini
[2008/02/12 17:26:50 | 000,540,672 | ---- | C] () -- C:\Windows\System32\SAGEPERS.DLL
[2008/01/12 19:40:56 | 000,087,552 | ---- | C] () -- C:\Windows\System32\cpwmon2k.dll
[2008/01/12 08:52:52 | 000,008,704 | ---- | C] () -- C:\Windows\System32\CNMVS7I.DLL
[2008/01/11 22:37:11 | 000,000,382 | ---- | C] () -- C:\Windows\ODBC.INI
[2007/06/01 09:30:18 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll
[2007/06/01 09:30:18 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll
[2007/06/01 09:30:18 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll
[2007/06/01 09:30:18 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll
[2007/06/01 09:30:18 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll
[2007/06/01 09:30:18 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll
[2007/06/01 09:19:23 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
[2007/06/01 09:13:53 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2007/06/01 08:54:16 | 000,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini
[2007/06/01 08:54:16 | 000,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll
[2007/06/01 08:54:16 | 000,010,150 | ---- | C] () -- C:\Windows\System32\tosmreg.ini
[2007/06/01 08:54:16 | 000,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini
[2007/06/01 08:33:14 | 000,910,304 | ---- | C] () -- C:\Windows\System32\igmedkrn.dll
[2007/06/01 08:33:14 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1263.dll
[2007/06/01 08:33:13 | 000,249,856 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2007/06/01 07:46:28 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2006/12/05 13:05:06 | 000,114,688 | ---- | C] () -- C:\Windows\System32\TosBtAcc.dll
[2006/11/02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2005/07/22 21:30:20 | 000,065,536 | ---- | C] () -- C:\Windows\System32\TosCommAPI.dll
[2003/10/07 13:10:30 | 000,000,984 | ---- | C] () -- C:\Windows\System32\ugaplib.dll
========== Custom Scans ========== < :Files > < C:\Users\Emmanuel\AppData\Local\ave.exe >[2010/04/25 15:20:32 | 000,222,720 | -HS- | M] () -- C:\Users\Emmanuel\AppData\Local\ave.exe
< C:\Users\Emmanuel\WUAUCLDT.EXE >[2010/04/25 15:16:55 | 000,029,440 | ---- | M] () -- C:\Users\Emmanuel\wuaucldt.exe
< > < :Commands > < [emptytemp] >< End of report >