DouDou9455 a écrit:Fait uniquement la deuxième étape, lance le scan avec OTL et poste les deux rapports pour les helpers
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\evelyne\Bureau
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
703,00 Mb Total Physical Memory | 274,00 Mb Available Physical Memory | 39,00% Memory free
2,00 Gb Paging File | 1,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): C:\pagefile.sys 1000 2000 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 72,65 Gb Total Space | 39,65 Gb Free Space | 54,58% Space Free | Partition Type: FAT32
Drive D: | 73,43 Gb Total Space | 49,67 Gb Free Space | 67,64% Space Free | Partition Type: FAT32
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ACER-73356C3771
Current User Name: evelyne
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - C:\Program Files\Bandoo\BndCore.exe (Bandoo Media Inc.)
PRC - C:\Program Files\Bandoo\Bandoo.exe (Bandoo Media Inc.)
PRC - C:\Program Files\eoRezo\eorezo.exe (EoRezo)
PRC - C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdate.exe (EoRezo)
PRC - C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdateHP.exe (EoRezo)
PRC - C:\Program Files\SFR\Pack Sécurité\ORSP Client\fsorsp.exe (F-Secure Corporation)
PRC - C:\Program Files\UPHClean\uphclean.exe (Windows (R) Codename Longhorn DDK provider)
PRC - C:\Documents and Settings\evelyne\Bureau\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\SFR\Pack Sécurité\Anti-Virus\fssm32.exe (F-Secure Corporation)
PRC - C:\Program Files\SFR\Pack Sécurité\Anti-Virus\fsgk32.exe (F-Secure Corporation)
PRC - C:\Program Files\SFR\Pack Sécurité\Anti-Virus\fsav32.exe (F-Secure Corporation)
PRC - C:\Program Files\Booster Son PC\BoosterSonPCService.exe (Weskysoft Inc.)
PRC - C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE (F-Secure Corporation)
PRC - C:\Program Files\SFR\Pack Sécurité\Common\FSHDLL32.EXE (F-Secure Corporation)
PRC - C:\Program Files\SFR\Pack Sécurité\FWES\program\fsdfwd.exe (F-Secure Corporation)
PRC - C:\Program Files\SFR\Pack Sécurité\Anti-Virus\fsgk32st.exe (F-Secure Corporation)
PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\HPZipm12.exe (HP)
PRC - C:\Program Files\acer\Acer eConsole\MediaServerService.exe (Acer Inc.)
[color=#E56717]========== Modules (SafeList) ==========[/color]
MOD - C:\Documents and Settings\evelyne\Bureau\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (Microsoft Corporation)
MOD - c:\Program Files\SFR\Pack Sécurité\HIPS\fshook32.dll (F-Secure Corporation)
MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)
MOD - C:\WINDOWS\system32\framedyn.dll (Microsoft Corporation)
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - (AppMgmt) -- C:\WINDOWS\System32\appmgmts.dll File not found
SRV - (Bandoo Coordinator) -- C:\Program Files\Bandoo\Bandoo.exe (Bandoo Media Inc.)
SRV - (FSORSPClient) -- C:\Program Files\SFR\Pack Sécurité\ORSP Client\fsorsp.exe (F-Secure Corporation)
SRV - (UPHClean) -- C:\Program Files\UPHClean\uphclean.exe (Windows (R) Codename Longhorn DDK provider)
SRV - (RegMumService) -- C:\Program Files\Booster Son PC\BoosterSonPCService.exe (Weskysoft Inc.)
SRV - (FSMA) -- C:\Program Files\SFR\Pack Sécurité\Common\FSMA32.EXE (F-Secure Corporation)
SRV - (FSDFWD) -- C:\Program Files\SFR\Pack Sécurité\FWES\Program\fsdfwd.exe (F-Secure Corporation)
SRV - (F-Secure Gatekeeper Handler Starter) -- C:\Program Files\SFR\Pack Sécurité\Anti-Virus\fsgk32st.exe (F-Secure Corporation)
SRV - (fsssvc) -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe (Microsoft Corporation)
SRV - (LBTServ) -- C:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (SeaPort) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
SRV - (GoogleDesktopManager-061008-081103) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
SRV - (Boonty Games) -- C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (BOONTY)
SRV - (Pml Driver HPZ12) -- C:\WINDOWS\system32\HPZipm12.exe (HP)
SRV - (Acer Media Server) -- C:\Program Files\acer\Acer eConsole\MediaServerService.exe (Acer Inc.)
SRV - (IDriverT) -- C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - (Vsp) -- C:\WINDOWS\System32\drivers\Vsp.sys File not found
DRV - (SYMIDSCO) -- C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\IDS-DI~1\20060710.095\symidsco.sys File not found
DRV - (GMSIPCI) -- E:\INSTALL\GMSIPCI.SYS File not found
DRV - (EverestDriver) -- C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt File not found
DRV - (F-Secure Gatekeeper) -- C:\Program Files\SFR\Pack Sécurité\Anti-Virus\minifilter\fsgk.sys ()
DRV - (fsbts) -- C:\WINDOWS\system32\Drivers\fsbts.sys ()
DRV - (F-Secure HIPS) -- C:\Program Files\SFR\Pack Sécurité\HIPS\drivers\fshs.sys (F-Secure Corporation)
DRV - (FSFW) -- C:\WINDOWS\System32\drivers\fsdfw.sys (F-Secure Corporation)
DRV - (F-Secure Filter) -- C:\Program Files\SFR\Pack Sécurité\Anti-Virus\win2k\fsfilter.sys ()
DRV - (F-Secure Recognizer) -- C:\Program Files\SFR\Pack Sécurité\Anti-Virus\win2k\fsrec.sys ()
DRV - (LgBttPort) -- C:\WINDOWS\system32\drivers\lgbtport.sys (LG Electronics Inc.)
DRV - (LGVMODEM) -- C:\WINDOWS\system32\drivers\lgvmodem.sys (LG Electronics Inc.)
DRV - (lgbusenum) -- C:\WINDOWS\system32\drivers\lgbtbus.sys (LG Electronics Inc.)
DRV - (USBModem) -- C:\WINDOWS\system32\drivers\lgusbmodem.sys (LG Electronics Inc.)
DRV - (UsbDiag) -- C:\WINDOWS\system32\drivers\lgusbdiag.sys (LG Electronics Inc.)
DRV - (usbbus) -- C:\WINDOWS\system32\drivers\lgusbbus.sys (LG Electronics Inc.)
DRV - (fssfltr) -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys (Microsoft Corporation)
DRV - (LMouFilt) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (LBeepKE) -- C:\WINDOWS\system32\drivers\LBeepKE.sys (Logitech, Inc.)
DRV - (NuidFltr) -- C:\WINDOWS\system32\drivers\nuidfltr.sys (Microsoft Corporation)
DRV - (USB_RNDIS) -- C:\WINDOWS\system32\drivers\usb8023.sys (Microsoft Corporation)
DRV - (usbaudio) Pilote USB audio (WDM) -- C:\WINDOWS\system32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (a016obex) -- C:\WINDOWS\system32\drivers\a016obex.sys (MCCI Corporation)
DRV - (a016mdm) -- C:\WINDOWS\system32\drivers\a016mdm.sys (MCCI Corporation)
DRV - (a016mdfl) -- C:\WINDOWS\system32\drivers\a016mdfl.sys (MCCI Corporation)
DRV - (a016bus) Sony Ericsson Device A016 driver (WDM) -- C:\WINDOWS\system32\drivers\a016bus.sys (MCCI Corporation)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\WINDOWS\system32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (NTIDrvr) -- C:\WINDOWS\system32\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.)
DRV - (RTL8023xp) -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys (Realtek Semiconductor Corporation )
DRV - (Afc) -- C:\WINDOWS\system32\drivers\afc.sys (Arcsoft, Inc.)
DRV - (Btcsrusb) -- C:\WINDOWS\system32\drivers\btcusb.sys (IVT Corporation)
DRV - (BTHidEnum) -- C:\WINDOWS\system32\drivers\VBTEnum.sys ()
DRV - (int15.sys) -- C:\Program Files\acer\eRecovery\int15.sys ()
DRV - (UBHelper) -- C:\WINDOWS\System32\drivers\UBHelper.sys ()
DRV - (BTNetFilter) -- C:\WINDOWS\system32\drivers\BTNetFilter.sys ()
DRV - (VcommMgr) -- C:\WINDOWS\system32\drivers\VcommMgr.sys (IVT Corporation)
DRV - (BTHidMgr) -- C:\WINDOWS\System32\Drivers\BTHidMgr.sys (IVT Corporation)
DRV - (VComm) -- C:\WINDOWS\system32\drivers\VComm.sys (IVT Corporation)
DRV - (BlueletAudio) -- C:\WINDOWS\system32\drivers\blueletaudio.sys (IVT Corporation)
DRV - (NBXG7031) -- C:\WINDOWS\system32\drivers\WlanUIG.sys (Conexant Systems, Inc.)
DRV - (PCANDIS5) -- C:\WINDOWS\system32\PCANDIS5.SYS (Printing Communications Assoc., Inc. (PCAUSA))
DRV - (MDC8021X) AEGIS Protocol (IEEE 802.1x) -- C:\WINDOWS\system32\drivers\mdc8021x.sys (Meetinghouse Data Communications)
DRV - (BT) -- C:\WINDOWS\system32\drivers\BtNetDrv.sys (IVT Corporation)
DRV - (ZSMC301b) -- C:\WINDOWS\system32\drivers\usbVM31b.sys (VM)
DRV - (rtl8139) Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (AgereSoftModem) -- C:\WINDOWS\system32\drivers\AGRSM.sys (Agere Systems)
DRV - (PPPoEWin) -- C:\WINDOWS\system32\drivers\PPPoEWin.SYS (Friendly Technologies)
DRV - (VIAudio) VIA AC'97 Audio Controller (WDM) -- C:\WINDOWS\system32\drivers\viaudios.sys (VIA Technologies, Inc.)
DRV - (MODEMCSA) -- C:\WINDOWS\system32\drivers\MODEMCSA.sys (Microsoft Corporation)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://wwwmywebs.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://wwwmywebs.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://wwwmywebs.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://wwwmywebs.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://wwwmywebs.com
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 6E 9E D1 1C A4 8F CA 01 [binary data]
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\URLSearchHook: {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c}: C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c} [2008/11/27 17:29:24 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\litmus-ff@f-secure.com: C:\Program Files\SFR\Pack Sécurité\NRS\litmus-ff@f-secure.com [2010/03/04 20:59:22 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2009/07/22 18:46:36 | 000,319,099 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 bin.errorprotector.com ## added by CiD
O1 - Hosts: 127.0.0.1 br.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 br.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 br.winfixer.com ## added by CiD
O1 - Hosts: 127.0.0.1 cdn.drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 cdn.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 cdn.winsoftware.com ## added by CiD
O1 - Hosts: 127.0.0.1 de.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 de.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.cdn.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.cdn.winsoftware.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.systemdoctor.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.winantispyware.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.windrivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 download.winfixer.com ## added by CiD
O1 - Hosts: 127.0.0.1 drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 dynamique.drivecleaner.com ## added by CiD
O1 - Hosts: 127.0.0.1 errorprotector.com ## added by CiD
O1 - Hosts: 127.0.0.1 errorsafe.com ## added by CiD
O1 - Hosts: 127.0.0.1 es.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 fr.winantivirus.com ## added by CiD
O1 - Hosts: 127.0.0.1 fr.winfixer.com ## added by CiD
O1 - Hosts: 10907 more lines...
O2 - BHO: (Objet d'aide à la navigation SFR) - {0F6E720A-1A6B-40E1-A294-1D4D19F156C8} - C:\Program Files\SFR\Kit\SFRNavErrorHelper.dll (SFR)
O2 - BHO: (Barre d'outils ALOT Helper) - {14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6} - C:\Program Files\alot\bin\BHO\alotBHO.dll (Vertro)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Download Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (interdescargas-FR Toolbar) - {31c322dc-5878-452e-a2d8-c4aab9973c9a} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.)
O2 - BHO: (mywebsites.pro-FR Toolbar) - {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Multi Media France Toolbar) - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (ST) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Toolbar Suite\ST\02.05.0000.1105\en-xu\stmain.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O2 - BHO: (no name) - {B3312915-9368-4FE4-8D4E-B60E5B36D0FF} - No CLSID value found.
O2 - BHO: (MSNToolBandBHO) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll (Microsoft Corporation)
O2 - BHO: (EOBHO Class) - {C10DC1F4-CCDF-4224-A24D-B23AFC3573C8} - C:\Program Files\eoRezo\EoRezoBHO.dll (EoRezo)
O2 - BHO: (Browsing Protection Class) - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files\SFR\Pack Sécurité\NRS\iescript\baselitmus.dll (F-Secure Corporation)
O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - No CLSID value found.
O2 - BHO: (no name) - {D5D33A26-F043-4808-B335-6B10630E04F8} - No CLSID value found.
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (BandooIEPlugin Class) - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files\Bandoo\Plugins\IE\ieplugin.dll (Bandoo Media Inc.)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (Browsing Protection Toolbar) - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files\SFR\Pack Sécurité\NRS\iescript\baselitmus.dll (F-Secure Corporation)
O3 - HKLM\..\Toolbar: (Download Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (interdescargas-FR Toolbar) - {31c322dc-5878-452e-a2d8-c4aab9973c9a} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (mywebsites.pro-FR Toolbar) - {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Barre d'outils ALOT) - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll (Vertro)
O3 - HKLM\..\Toolbar: (Multi Media France Toolbar) - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (MSN) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll (Microsoft Corporation)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\ShellBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\ShellBrowser: (Multi Media France Toolbar) - {7009FCD4-05BE-44F4-9583-93FE419AB7B0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\ShellBrowser: (MSN) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll (Microsoft Corporation)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Download Energy Toolbar) - {2BAE58C2-79F9-45D1-A286-81F911301C3A} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (interdescargas-FR Toolbar) - {31C322DC-5878-452E-A2D8-C4AAB9973C9A} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (mywebsites.pro-FR Toolbar) - {33727F97-486D-4D19-97C3-23F432EF93FC} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Multi Media France Toolbar) - {7009FCD4-05BE-44F4-9583-93FE419AB7B0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (MSN) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll (Microsoft Corporation)
O4 - HKLM..\Run: [eorezo] C:\Program Files\EoRezo\eorezo.exe (EoRezo)
O4 - HKLM..\Run: [SoftwareHelper] C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdateHP.exe (EoRezo)
O4 - HKU\.DEFAULT..\Run: [DWQueuedReporting] c:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.EXE (Microsoft Corporation)
O4 - HKU\S-1-5-18..\Run: [DWQueuedReporting] c:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.EXE (Microsoft Corporation)
O4 - HKU\S-1-5-21-1570106061-833509052-641237796-1006..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: &MSN Search - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll (Microsoft Corporation)
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll (Google Inc.)
O9 - Extra Button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} http://gfx1.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab (MSN Photo Upload Tool)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Fichiers communs\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - AppInit_DLLs: (c:\progra~1\wi9130~1\datamngr\datamngr.dll) - c:\Program Files\Windows Searchqu Toolbar\Datamngr\datamngr.dll (Discordia, LTD)
O20 - AppInit_DLLs: (c:\progra~1\bandoo\bndhook.dll) - c:\Program Files\Bandoo\BndHook.dll (Discordia Limited)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\fichiers communs\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Fichiers communs\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\evelyne\Application Data\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\evelyne\Application Data\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2005/10/17 19:38:50 | 000,000,050 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O33 - MountPoints2\{6cd26a3c-2ec9-11df-8f99-0060b3dc78ba}\Shell - "" = AutoRun
O33 - MountPoints2\{6cd26a3c-2ec9-11df-8f99-0060b3dc78ba}\Shell\AutoRun\command - "" = F:\USBAutoRun.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2010/12/09 18:25:33 | 000,000,000 | ---D | C] -- C:\Program Files\UPHClean
[2010/12/08 19:30:48 | 000,000,000 | -HSD | C] -- C:\FOUND.007
[2010/12/06 20:47:30 | 000,000,000 | -HSD | C] -- C:\FOUND.006
[2010/12/04 20:05:36 | 000,000,000 | -HSD | C] -- C:\FOUND.005
[2010/12/04 19:16:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{D8629CB4-484E-4AEC-AC8A-800083A44FF2}
[2010/12/04 19:15:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\evelyne\Local Settings\Application Data\PackageAware
[2010/12/02 21:42:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\evelyne\Local Settings\Application Data\EoRezo
[2010/12/02 21:42:01 | 000,000,000 | ---D | C] -- C:\Program Files\eoRezo
[2010/12/02 21:42:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\evelyne\Application Data\EoRezo
[2010/11/23 07:49:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\evelyne\Application Data\PriceGong
[2010/11/17 19:28:33 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Searchqu Toolbar
[2010/11/14 10:56:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\evelyne\Local Settings\Application Data\ConduitEngine
[2010/11/14 10:56:14 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\evelyne\Local Settings\Application Data\*.tmp files -> C:\Documents and Settings\evelyne\Local Settings\Application Data\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2010/12/09 18:46:26 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/12/09 18:46:26 | 000,001,050 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/12/09 18:41:30 | 000,001,000 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2010/12/09 18:41:16 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/12/09 18:41:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/12/09 18:41:04 | 737,726,464 | -HS- | M] () -- C:\hiberfil.sys
[2010/12/09 18:14:02 | 000,001,054 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/12/09 18:00:02 | 000,000,268 | -H-- | M] () -- C:\WINDOWS\tasks\EB9F7AD491AD3028.job
[2010/12/09 16:06:28 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{2F03F554-2821-4A7A-B5CD-DA3F13641AA8}.job
[2010/12/09 00:01:52 | 000,000,540 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled scanning task.job
[2010/12/08 14:52:16 | 000,013,824 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\tribunal audience.wps
[2010/12/08 14:52:16 | 000,009,814 | ---- | M] () -- C:\Documents and Settings\evelyne\Application Data\wklnhst.dat
[2010/12/08 05:55:22 | 012,320,768 | ---- | M] () -- C:\Documents and Settings\evelyne\ntuser.dat
[2010/12/04 23:19:38 | 000,000,184 | -HS- | M] () -- C:\Documents and Settings\evelyne\ntuser.ini
[2010/12/02 18:06:48 | 000,000,091 | ---- | M] () -- C:\Documents and Settings\evelyne\default.pls
[2010/12/02 18:06:44 | 000,000,229 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010/12/01 23:12:34 | 000,001,197 | ---- | M] () -- C:\WINDOWS\win.ini
[2010/12/01 23:12:34 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/12/01 23:12:34 | 000,000,216 | RHS- | M] () -- C:\boot.ini
[2010/12/01 18:31:38 | 000,002,327 | ---- | M] () -- C:\Documents and Settings\evelyne\Application Data\Microsoft\Internet Explorer\Quick Launch\Nero StartSmart.lnk
[2010/12/01 18:31:38 | 000,002,231 | ---- | M] () -- C:\Documents and Settings\evelyne\Application Data\Microsoft\Internet Explorer\Quick Launch\Nero Home.lnk
[2010/11/24 20:12:40 | 001,758,212 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\comment-vendre-son-produit.zip
[2010/11/24 18:17:22 | 000,013,312 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\tribunl permis.wps
[2010/11/24 18:16:44 | 000,013,312 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\tribunal.wps
[2010/11/23 19:22:54 | 000,001,637 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Adobe Reader 9.lnk
[2010/11/23 19:20:56 | 001,574,617 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\comment-creer-son propre-produit-d-information.zip
[2010/11/20 19:11:58 | 000,000,151 | ---- | M] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2010/11/20 11:49:58 | 001,783,111 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\DTB9038326536_20-11-10_10-06_33290.pdf
[2010/11/09 23:50:04 | 000,009,216 | ---- | M] () -- C:\Documents and Settings\evelyne\Mes documents\Document sans titre.wps
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\Documents and Settings\evelyne\Local Settings\Application Data\*.tmp files -> C:\Documents and Settings\evelyne\Local Settings\Application Data\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2010/12/08 14:52:13 | 000,013,824 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\tribunal audience.wps
[2010/12/01 18:31:36 | 000,002,327 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\Microsoft\Internet Explorer\Quick Launch\Nero StartSmart.lnk
[2010/12/01 18:31:36 | 000,002,231 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\Microsoft\Internet Explorer\Quick Launch\Nero Home.lnk
[2010/11/24 20:12:38 | 001,758,212 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\comment-vendre-son-produit.zip
[2010/11/24 18:17:20 | 000,013,312 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\tribunl permis.wps
[2010/11/24 16:13:41 | 000,013,312 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\tribunal.wps
[2010/11/23 19:20:55 | 001,574,617 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\comment-creer-son propre-produit-d-information.zip
[2010/11/20 11:49:58 | 001,783,111 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\DTB9038326536_20-11-10_10-06_33290.pdf
[2010/11/09 22:01:23 | 000,009,216 | ---- | C] () -- C:\Documents and Settings\evelyne\Mes documents\Document sans titre.wps
[2010/01/23 19:07:49 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2009/08/25 17:24:32 | 000,005,556 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\320d180e648C.manifest
[2009/08/25 17:24:32 | 000,002,471 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\320d180e648P.manifest
[2009/08/25 17:24:32 | 000,000,567 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\320d180e648O.manifest
[2009/08/25 17:24:32 | 000,000,011 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\320d180e648S.manifest
[2009/07/18 11:52:29 | 000,005,556 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\020000005d86ad23648C.manifest
[2009/07/18 11:52:29 | 000,002,469 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\020000005d86ad23648P.manifest
[2009/07/18 11:52:29 | 000,000,567 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\020000005d86ad23648O.manifest
[2009/07/18 11:52:29 | 000,000,011 | -HS- | C] () -- C:\Documents and Settings\evelyne\Application Data\020000005d86ad23648S.manifest
[2008/10/31 14:36:55 | 000,041,624 | ---- | C] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2008/10/25 16:26:41 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2008/10/25 12:06:55 | 000,001,677 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2008/10/22 12:32:56 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\UnAudioNT.dll
[2008/05/15 17:58:36 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Jcmkr32.INI
[2008/03/06 17:47:44 | 000,000,053 | ---- | C] () -- C:\WINDOWS\NAVIGMA.INI
[2007/07/09 16:21:07 | 000,000,062 | ---- | C] () -- C:\WINDOWS\yesmessenger.ini
[2007/04/08 15:34:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\LauncherAccess.dt
[2007/04/08 15:16:27 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2007/03/29 22:21:24 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2007/03/29 19:24:30 | 000,000,229 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2007/03/14 14:17:02 | 000,001,751 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2007/03/13 14:49:02 | 000,000,150 | ---- | C] () -- C:\WINDOWS\dial-messenger.ini
[2007/02/20 13:50:37 | 000,000,072 | ---- | C] () -- C:\WINDOWS\EurekaLog.ini
[2006/12/04 17:06:33 | 000,013,304 | ---- | C] () -- C:\WINDOWS\System32\drivers\BTNetFilter.sys
[2006/12/04 17:06:33 | 000,012,500 | ---- | C] () -- C:\WINDOWS\System32\drivers\VBTEnum.sys
[2006/10/22 15:16:34 | 000,038,337 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\PatchUpdate_HP_CounterReport_Update_HPSU.log
[2006/10/22 15:16:34 | 000,000,227 | ---- | C] () -- C:\WINDOWS\HP_CounterReport_Update_HPSU.ini
[2006/10/22 15:16:21 | 000,002,138 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\HPSU_48BitScanUpdate.log
[2006/10/22 15:16:21 | 000,000,214 | ---- | C] () -- C:\WINDOWS\HP_48BitScanUpdatePatch.ini
[2006/10/05 13:05:28 | 000,000,026 | ---- | C] () -- C:\WINDOWS\WD.INI
[2006/08/28 21:03:26 | 000,006,792 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\GdiplusUpgrade_MSIApproach_Wrapper.log
[2006/08/28 21:03:26 | 000,000,206 | ---- | C] () -- C:\WINDOWS\HPGdiPlus.ini
[2006/08/28 20:52:25 | 000,152,824 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\Update_HP_RedboxHprblog_HPSU.log
[2006/08/28 20:52:25 | 000,000,221 | ---- | C] () -- C:\WINDOWS\HP_RedboxHprblog_HPSU.ini
[2006/08/06 20:52:52 | 000,000,014 | ---- | C] () -- C:\WINDOWS\System32\systeminfo.dll
[2006/08/06 20:37:49 | 000,000,298 | ---- | C] () -- C:\WINDOWS\_delis43.ini
[2006/08/06 20:20:35 | 000,000,130 | ---- | C] () -- C:\Documents and Settings\evelyne\Local Settings\Application Data\fusioncache.dat
[2006/07/28 15:58:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\MSDraw.ini
[2006/06/29 16:37:18 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\Cam1210M.dll
[2006/06/05 16:31:43 | 000,000,675 | ---- | C] () -- C:\WINDOWS\AppRun.ini
[2006/06/05 15:19:21 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\WLANUTL.dll
[2006/04/19 19:12:09 | 000,003,452 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\Hewlett-PackardHP PSC 1500 series1136632223_PROTOCOL.log
[2006/04/19 19:12:09 | 000,001,110 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\Hewlett-PackardHP PSC 1500 series1136632223_UI.log
[2006/04/19 19:12:09 | 000,000,221 | ---- | C] () -- C:\WINDOWS\NCLogConfig.ini
[2006/04/19 19:12:09 | 000,000,105 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\Hewlett-PackardHP PSC 1500 series1136632223_API.log
[2006/03/16 21:25:13 | 000,000,029 | ---- | C] () -- C:\WINDOWS\DEBUGSM.INI
[2006/03/16 21:18:58 | 000,290,919 | ---- | C] () -- C:\WINDOWS\System32\pythoncom21.dll
[2006/03/16 21:18:58 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\PyWinTypes21.dll
[2006/03/16 21:17:24 | 000,096,768 | ---- | C] () -- C:\WINDOWS\SlantAdj.dll
[2006/03/16 21:17:24 | 000,000,072 | ---- | C] () -- C:\WINDOWS\System32\epDPE.ini
[2006/01/10 17:19:38 | 000,009,814 | ---- | C] () -- C:\Documents and Settings\evelyne\Application Data\wklnhst.dat
[2006/01/09 20:32:39 | 000,039,936 | ---- | C] () -- C:\Documents and Settings\evelyne\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2006/01/07 11:00:45 | 000,000,984 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2005/12/28 08:51:47 | 000,000,169 | ---- | C] () -- C:\WINDOWS\RtlRack.ini
[2005/12/24 09:44:49 | 000,000,783 | ---- | C] () -- C:\WINDOWS\NTIWVEDT.INI
[2005/12/23 16:56:09 | 000,000,037 | ---- | C] () -- C:\WINDOWS\iltwain.ini
[2005/12/22 20:41:55 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\eRLog.ini
[2005/10/17 20:13:34 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005/10/17 19:39:10 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIBUN4.dll
[2005/10/17 19:38:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMPEG2.dll
[2005/10/17 19:38:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMP3.dll
[2005/10/17 19:38:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIFCD3.dll
[2005/10/17 19:38:20 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK7.dll
[2005/10/17 19:34:21 | 000,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2005/10/17 19:29:33 | 000,008,073 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2005/10/17 19:23:16 | 000,003,712 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2005/07/14 15:22:27 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2005/07/14 15:22:22 | 000,159,744 | ---- | C] () -- C:\WINDOWS\System32\ssleay32.dll
[2005/07/14 15:22:21 | 000,831,488 | ---- | C] () -- C:\WINDOWS\System32\libeay32.dll
[2004/12/17 17:14:44 | 000,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\UBHelper.sys
[2003/07/22 03:01:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2003/02/18 18:26:28 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\cmirmdrv.dll
[2002/05/24 01:00:00 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lockout.dll
[2002/05/24 01:00:00 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\lockres.dll
[2001/12/26 16:12:30 | 000,065,536 | R--- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
[2001/09/03 23:46:38 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
[2001/07/30 16:33:56 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
[2001/07/23 22:04:36 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll
[2001/07/06 15:30:00 | 000,003,279 | ---- | C] () -- C:\WINDOWS\System32\HPTCPMON.INI
[1980/01/01 00:00:00 | 000,000,083 | ---- | C] () -- C:\WINDOWS\ALaunch.ini
[color=#E56717]========== LOP Check ==========[/color]
[2005/12/24 15:53:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\eConsole
[2006/03/21 18:29:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MSN Search Toolbar
[2006/08/04 02:39:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WhiteCap (Holiday Edition)
[2007/03/16 17:59:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\flagmpegvccoal
[2007/05/24 19:15:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Broderbund Software
[2007/05/30 19:53:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\fssg
[2007/05/30 20:53:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\F-Secure
[2007/12/18 20:35:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2008/02/10 10:20:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Skyline
[2008/05/15 18:11:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NtiDvdCopy
[2008/07/03 20:43:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BOONTY
[2009/01/16 21:44:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Video Converter Studio
[2009/12/18 11:39:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MGS
[2009/12/30 16:07:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IM
[2009/12/30 16:07:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IncrediMail
[2010/04/28 19:26:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Bandoo
[2010/06/12 16:13:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Weskysoft
[2010/12/04 19:16:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{D8629CB4-484E-4AEC-AC8A-800083A44FF2}
[2006/01/07 13:55:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Image Zone Express
[2006/01/10 17:21:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Template
[2006/03/07 22:36:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\MSNInstaller
[2006/03/16 21:22:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\InterTrust
[2006/03/16 21:25:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\EPSON
[2006/06/23 20:24:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\PEX
[2006/06/23 20:24:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\F-Secure
[2007/01/06 20:07:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\VERITAS
[2007/03/25 18:29:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\.wyzo
[2008/02/10 11:39:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Skyline
[2008/03/06 18:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Micro Application
[2009/01/12 18:14:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Free Download Manager
[2009/01/16 22:13:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\LimeWire Music
[2010/01/01 12:27:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\magentictb
[2010/01/06 17:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Uniblue
[2010/03/13 19:22:56 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\evelyne\Application Data\{D94BA408-F110-488B-A65E-3AE7945F79E6}
[2010/03/13 19:22:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\LG Electronics
[2010/04/28 19:27:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Bandoo
[2010/07/24 23:19:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\alot
[2010/08/26 16:44:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\Leadertech
[2010/11/23 07:49:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\PriceGong
[2010/12/02 21:42:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\evelyne\Application Data\EoRezo
[2006/10/30 13:38:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\F-Secure
[2007/02/20 13:43:16 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\manuel\Application Data\SMov
[2007/03/16 17:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\Else plus
[2007/03/16 23:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\Wyzo
[2007/03/16 23:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\.wyzo
[2007/04/08 15:42:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\Samsung
[2007/04/08 15:42:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\Temporary
[2007/04/08 15:42:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\TransRender
[2007/04/08 15:42:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\ConvertTemp
[2007/04/17 23:20:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\VERITAS
[2010/05/29 10:02:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\manuel\Application Data\Bandoo
[2010/12/09 16:06:28 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{2F03F554-2821-4A7A-B5CD-DA3F13641AA8}.job
[2010/12/09 00:01:52 | 000,000,540 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled scanning task.job
[2010/12/09 18:00:02 | 000,000,268 | -H-- | M] () -- C:\WINDOWS\Tasks\EB9F7AD491AD3028.job
[color=#E56717]========== Purity Check ==========[/color]
< End of report >
:OTL
PRC - C:\Program Files\Bandoo\BndCore.exe (Bandoo Media Inc.)
PRC - C:\Program Files\Bandoo\Bandoo.exe (Bandoo Media Inc.)
PRC - C:\Program Files\eoRezo\eorezo.exe (EoRezo)
PRC - C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdate.exe (EoRezo)
PRC - C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdateHP.exe (EoRezo)
SRV - (Bandoo Coordinator) -- C:\Program Files\Bandoo\Bandoo.exe (Bandoo Media Inc.)
DRV - (Vsp) -- C:\WINDOWS\System32\drivers\Vsp.sys File not found
DRV - (SYMIDSCO) -- C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\IDS-DI~1\20060710.095\symidsco.sys File not found
DRV - (GMSIPCI) -- E:\INSTALL\GMSIPCI.SYS File not found
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\URLSearchHook: {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O2 - BHO: (Barre d'outils ALOT Helper) - {14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6} - C:\Program Files\alot\bin\BHO\alotBHO.dll (Vertro)
O2 - BHO: (Download Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (interdescargas-FR Toolbar) - {31c322dc-5878-452e-a2d8-c4aab9973c9a} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.)
O2 - BHO: (mywebsites.pro-FR Toolbar) - {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Multi Media France Toolbar) - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O2 - BHO: (no name) - {B3312915-9368-4FE4-8D4E-B60E5B36D0FF} - No CLSID value found.
O2 - BHO: (EOBHO Class) - {C10DC1F4-CCDF-4224-A24D-B23AFC3573C8} - C:\Program Files\eoRezo\EoRezoBHO.dll (EoRezo)
O2 - BHO: (no name) - {D5D33A26-F043-4808-B335-6B10630E04F8} - No CLSID value found.
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (BandooIEPlugin Class) - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files\Bandoo\Plugins\IE\ieplugin.dll (Bandoo Media Inc.)
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Download Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (interdescargas-FR Toolbar) - {31c322dc-5878-452e-a2d8-c4aab9973c9a} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (mywebsites.pro-FR Toolbar) - {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Barre d'outils ALOT) - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll (Vertro)
O3 - HKLM\..\Toolbar: (Multi Media France Toolbar) - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\ShellBrowser: (Multi Media France Toolbar) - {7009FCD4-05BE-44F4-9583-93FE419AB7B0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.) .
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Download Energy Toolbar) - {2BAE58C2-79F9-45D1-A286-81F911301C3A} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.) =>
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (interdescargas-FR Toolbar) - {31C322DC-5878-452E-A2D8-C4AAB9973C9A} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (mywebsites.pro-FR Toolbar) - {33727F97-486D-4D19-97C3-23F432EF93FC} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Multi Media France Toolbar) - {7009FCD4-05BE-44F4-9583-93FE419AB7B0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)
O4 - HKLM..\Run: [eorezo] C:\Program Files\EoRezo\eorezo.exe (EoRezo)
O4 - HKLM..\Run: [SoftwareHelper] C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdateHP.exe (EoRezo)
O20 - AppInit_DLLs: (c:\progra~1\wi9130~1\datamngr\datamngr.dll) - c:\Program Files\Windows Searchqu Toolbar\Datamngr\datamngr.dll (Discordia, LTD)
O20 - AppInit_DLLs: (c:\progra~1\bandoo\bndhook.dll) - c:\Program Files\Bandoo\BndHook.dll (Discordia Limited)
:Files
C:\Documents and Settings\evelyne\Local Settings\Application Data\EoRezo
C:\Program Files\eoRezo
C:\Documents and Settings\evelyne\Application Data\EoRezo
C:\Documents and Settings\evelyne\Application Data\PriceGong
C:\Program Files\Windows Searchqu Toolbar
C:\Documents and Settings\evelyne\Local Settings\Application Data\ConduitEngine
C:\Program Files\ConduitEngine
C:\WINDOWS\tasks\EB9F7AD491AD3028.job
C:\Documents and Settings\All Users\Application Data\flagmpegvccoal C:\Documents and Settings\All Users\Application Data\Bandoo
C:\Documents and Settings\evelyne\Application Data\Bandoo
C:\Documents and Settings\evelyne\Application Data\alot
C:\Documents and Settings\evelyne\Application Data\PriceGong
C:\Documents and Settings\manuel\Application Data\Else plus
C:\Documents and Settings\manuel\Application Data\Temporary
C:\Documents and Settings\manuel\Application Data\Bandoo
:Commands
[emptytemp]
Démarrer > Panneaux de configuration > Performance et maintenance > Option d’alimentation.
Cliquer sur l'onglet 'APM ' > vérifier que la case 'Activer la prise en charge de la gestion avancée de l’alimentation' soit bien cochée.
> Appliquer > OK et redémarrage du PC
All processes killed
Error: Unable to interpret <PRC - C:\Program Files\Bandoo\BndCore.exe (Bandoo Media Inc.) > in the current context!
Error: Unable to interpret <PRC - C:\Program Files\Bandoo\Bandoo.exe (Bandoo Media Inc.) > in the current context!
Error: Unable to interpret <PRC - C:\Program Files\eoRezo\eorezo.exe (EoRezo) > in the current context!
Error: Unable to interpret <PRC - C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdate.exe (EoRezo) > in the current context!
Error: Unable to interpret <PRC - C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdateHP.exe (EoRezo) > in the current context!
Error: Unable to interpret <SRV - (Bandoo Coordinator) -- C:\Program Files\Bandoo\Bandoo.exe (Bandoo Media Inc.)> in the current context!
Error: Unable to interpret <DRV - (Vsp) -- C:\WINDOWS\System32\drivers\Vsp.sys File not found> in the current context!
Error: Unable to interpret <DRV - (SYMIDSCO) -- C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\IDS-DI~1\20060710.095\symidsco.sys File not found > in the current context!
Error: Unable to interpret <DRV - (GMSIPCI) -- E:\INSTALL\GMSIPCI.SYS File not found > in the current context!
Error: Unable to interpret <IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\URLSearchHook: - Reg Error: Key error. File not found> in the current context!
Error: Unable to interpret <IE - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\URLSearchHook: {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O2 - BHO: (Barre d'outils ALOT Helper) - {14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6} - C:\Program Files\alot\bin\BHO\alotBHO.dll (Vertro) > in the current context!
Error: Unable to interpret <O2 - BHO: (Download Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O2 - BHO: (interdescargas-FR Toolbar) - {31c322dc-5878-452e-a2d8-c4aab9973c9a} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O2 - BHO: (mywebsites.pro-FR Toolbar) - {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.> in the current context!
Error: Unable to interpret <O2 - BHO: (Multi Media France Toolbar) - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)> in the current context!
Error: Unable to interpret <O2 - BHO: (no name) - {B3312915-9368-4FE4-8D4E-B60E5B36D0FF} - No CLSID value found.> in the current context!
Error: Unable to interpret <O2 - BHO: (EOBHO Class) - {C10DC1F4-CCDF-4224-A24D-B23AFC3573C8} - C:\Program Files\eoRezo\EoRezoBHO.dll (EoRezo) > in the current context!
Error: Unable to interpret <O2 - BHO: (no name) - {D5D33A26-F043-4808-B335-6B10630E04F8} - No CLSID value found.> in the current context!
Error: Unable to interpret <O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) > in the current context!
Error: Unable to interpret <O2 - BHO: (BandooIEPlugin Class) - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files\Bandoo\Plugins\IE\ieplugin.dll (Bandoo Media Inc.) > in the current context!
Error: Unable to interpret <O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)> in the current context!
Error: Unable to interpret <O3 - HKLM\..\Toolbar: (Download Energy Toolbar) - {2bae58c2-79f9-45d1-a286-81f911301c3a} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.)> in the current context!
Error: Unable to interpret <O3 - HKLM\..\Toolbar: (interdescargas-FR Toolbar) - {31c322dc-5878-452e-a2d8-c4aab9973c9a} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O3 - HKLM\..\Toolbar: (mywebsites.pro-FR Toolbar) - {33727f97-486d-4d19-97c3-23f432ef93fc} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O3 - HKLM\..\Toolbar: (Barre d'outils ALOT) - {5AA2BA46-9913-4dc7-9620-69AB0FA17AE7} - C:\Program Files\alot\bin\alot.dll (Vertro) > in the current context!
Error: Unable to interpret <O3 - HKLM\..\Toolbar: (Multi Media France Toolbar) - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.)> in the current context!
Error: Unable to interpret <O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\ShellBrowser: (Multi Media France Toolbar) - {7009FCD4-05BE-44F4-9583-93FE419AB7B0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.) .> in the current context!
Error: Unable to interpret <O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) > in the current context!
Error: Unable to interpret <O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Download Energy Toolbar) - {2BAE58C2-79F9-45D1-A286-81F911301C3A} - C:\Program Files\P2P_Energy\tbP2P2.dll (Conduit Ltd.) =>> in the current context!
Error: Unable to interpret <O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (interdescargas-FR Toolbar) - {31C322DC-5878-452E-A2D8-C4AAB9973C9A} - C:\Program Files\interdescargas-FR\tbint2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (mywebsites.pro-FR Toolbar) - {33727F97-486D-4D19-97C3-23F432EF93FC} - C:\Program Files\mywebsites.pro-FR\tbmyw2.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O3 - HKU\S-1-5-21-1570106061-833509052-641237796-1006\..\Toolbar\WebBrowser: (Multi Media France Toolbar) - {7009FCD4-05BE-44F4-9583-93FE419AB7B0} - C:\Program Files\Multi_Media_France\tbMul0.dll (Conduit Ltd.) > in the current context!
Error: Unable to interpret <O4 - HKLM..\Run: [eorezo] C:\Program Files\EoRezo\eorezo.exe (EoRezo) > in the current context!
Error: Unable to interpret <O4 - HKLM..\Run: [SoftwareHelper] C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo\SoftwareUpdateHP.exe (EoRezo) > in the current context!
Error: Unable to interpret <O20 - AppInit_DLLs: (c:\progra~1\wi9130~1\datamngr\datamngr.dll) - c:\Program Files\Windows Searchqu Toolbar\Datamngr\datamngr.dll (Discordia, LTD) > in the current context!
Error: Unable to interpret <O20 - AppInit_DLLs: (c:\progra~1\bandoo\bndhook.dll) - c:\Program Files\Bandoo\BndHook.dll (Discordia Limited) > in the current context!
========== FILES ==========
C:\Documents and Settings\evelyne\Local Settings\Application Data\EoRezo\EoRezo folder moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Application Data\EoRezo folder moved successfully.
C:\Program Files\eoRezo folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\EoRezo\EoRezo folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\EoRezo folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\PriceGong\Data folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\PriceGong folder moved successfully.
C:\Program Files\Windows Searchqu Toolbar\Datamngr folder moved successfully.
C:\Program Files\Windows Searchqu Toolbar\ToolBar folder moved successfully.
C:\Program Files\Windows Searchqu Toolbar folder moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Application Data\ConduitEngine\MyStuffApps folder moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Application Data\ConduitEngine\Logs folder moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Application Data\ConduitEngine folder moved successfully.
C:\Program Files\ConduitEngine folder moved successfully.
C:\WINDOWS\tasks\EB9F7AD491AD3028.job moved successfully.
File\Folder C:\Documents and Settings\All Users\Application Data\flagmpegvccoal C:\Documents and Settings\All Users\Application Data\Bandoo not found.
C:\Documents and Settings\evelyne\Application Data\Bandoo folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_9 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_8 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_7 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_6 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_5 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_4 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_3 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\hideToolbarLayout folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_201 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\SiteMetrics folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\postInstallLayout folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_1 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_0 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\toolbarContextMenu folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\contextMenu folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\3986 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\3985 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\3983 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\3984 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\3624 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Button_2 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\ErrorSearch folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\BrowserSearch folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\configurator folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\TimerManager folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Updater folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\ToolbarSearch folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\products folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3986\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3986 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3985\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3985 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3983\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3983 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3984\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3984 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3624\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\3624 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_201\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_201 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_9\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_9 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_8\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_8 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_7\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_7 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_6\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_6 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_5\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_5 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_4\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_4 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_3\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_3 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Shared\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Shared folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_2\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_2 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_1\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_1 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_0\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\Button_0 folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\BrowserSearch\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\BrowserSearch folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\contextMenu\images folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources\contextMenu folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot\Resources folder moved successfully.
C:\Documents and Settings\evelyne\Application Data\alot folder moved successfully.
File\Folder C:\Documents and Settings\evelyne\Application Data\PriceGong not found.
C:\Documents and Settings\manuel\Application Data\Else plus folder moved successfully.
C:\Documents and Settings\manuel\Application Data\Temporary folder moved successfully.
C:\Documents and Settings\manuel\Application Data\Bandoo folder moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32969 bytes
->Flash cache emptied: 83 bytes
User: All Users
User: NetworkService
->Temp folder emptied: 911920 bytes
->Temporary Internet Files folder emptied: 473963 bytes
User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->FireFox cache emptied: 4346948 bytes
User: evelyne
->Temp folder emptied: 580302470 bytes
->Temporary Internet Files folder emptied: 21420013 bytes
->Java cache emptied: 1888 bytes
->Google Chrome cache emptied: 819568 bytes
->Flash cache emptied: 4168 bytes
User: TEMP
User: manuel
->Temp folder emptied: 23222409 bytes
->Temporary Internet Files folder emptied: 3801112 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 5969853 bytes
->Flash cache emptied: 405 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 471503 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 14710095 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 62132660 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 118715494 bytes
Total Files Cleaned = 799,00 mb
OTL by OldTimer - Version 3.2.11.0 log created on 12112010_190235
Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFF9F1.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFF9FF.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFDA40.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFDA4E.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFFC4C.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFFC5A.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF9C.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DFAA.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF1D7.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF1E5.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF312.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF320.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF455.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF463.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF608.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF616.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF732.tmp not found!
File\Folder C:\Documents and Settings\evelyne\Local Settings\Temp\~DF740.tmp not found!
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\Content.IE5\IY0UST2F\ads[6].htm moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\Content.IE5\IY0UST2F\iframescript[1].htm moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\Content.IE5\4HPXJQT3\viewtopic[1].htm moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\Content.IE5\NA4MSAYU\ads[5].htm moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\Content.IE5\NA4MSAYU\index[1].htm moved successfully.
C:\Documents and Settings\evelyne\Local Settings\Temporary Internet Files\SuggestedSites.dat moved successfully.
File\Folder C:\Documents and Settings\manuel\Local Settings\Temp\Temporary Internet Files\Content.IE5\DTZ1HL6O\jantes_Auto-Pieces-et-equipement_W0QQcatrefZC6QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQdfspZ32QQflocZ1QQfromZR10QQfrtsZ50QQftrtZ1QQftrvZ1QQga10244Z10425QQsabfm[1].htm not found!
File\Folder C:\Documents and Settings\manuel\Local Settings\Temp\Temporary Internet Files\Content.IE5\F7QGLTZN\toyota_W0QQ_trksidZp1638Q2em120QQcatrefZC6QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQdfspZ32QQfromZR10QQfsprZ0QQftrtZ1QQftrvZ1QQga10244Z10425QQsabfmtsZ1QQsacatZQ[1].htm not found!
File\Folder C:\Documents and Settings\manuel\Local Settings\Temp\Temporary Internet Files\Content.IE5\F7QGLTZN\celica_Auto-Pieces-et-equipement_W0QQ_trksidZp1638Q2em120QQcatrefZC6QQdfspZ32QQflocZ1QQfromZR10QQfrtsZ50QQftrtZ1QQftrvZ1QQga10244Z10425QQsabfmtsZ1QQsacatZ135232QQsaobfmtsZ[1].htm not found!
File\Folder C:\Documents and Settings\manuel\Local Settings\Temp\Temporary Internet Files\Content.IE5\F7QGLTZN\celica_W0QQcatrefZC6QQdfspZ32QQflocZ1QQfromZR10QQfrtsZ50QQftrtZ1QQftrvZ1QQga10244Z10425QQsabfmtsZ1QQsacatZQ2d1QQsaobfmtsZinsifQQsaprchiZQQsaprcloZQQsaslcZ2QQsasltZ2[1].htm not found!
File\Folder C:\Documents and Settings\manuel\Local Settings\Temp\Temporary Internet Files\Content.IE5\0PU7C5IN\celica_Auto-Pieces-et-equipement_W0QQ_trksidZp1638Q2em120QQcatrefZC6QQdfspZ32QQflocZ1QQfromZR10QQftrtZ1QQftrvZ1QQga10244Z10425QQsabfmtsZ1QQsacatZ135232QQsaobfmtsZinsifQQsa[1].htm not found!
File\Folder C:\Documents and Settings\manuel\Local Settings\Temp\Temporary Internet Files\Content.IE5\0PU7C5IN\jantes_W0QQcatrefZC6QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQdfspZ32QQfromZR10QQfrtsZ50QQftrtZ1QQftrvZ1QQga10244Z10425QQsabfmtsZ1QQsacatZQ2d1QQsaobfmtsZinsifQQ[1].htm not found!
Registry entries deleted on Reboo
bernard53 a écrit:Oui il faut que tu fasses toute ma demande s.t.p
======= RAPPORT D'AD-REMOVER 2.0.0.2,C | UNIQUEMENT XP/VISTA/7 =======
Mis à jour par TeamXscript le 08/12/10 à 10:40
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org
C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 13:46:39 le 12/12/2010, Mode normal
Microsoft Windows XP Édition familiale Service Pack 3 (X86)
evelyne@ACER-73356C3771 ( )
============== ACTION(S) ==============
Fichier supprimé: C:\log_lobby.txt
Fichier supprimé: C:\log_lobby_dumper.txt
Dossier supprimé: C:\Documents and Settings\evelyne\Application Data\Bandoo
Dossier supprimé: C:\Documents and Settings\All Users\Application Data\Bandoo
Dossier supprimé: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Bandoo
Dossier supprimé: C:\Program Files\Bandoo
Dossier supprimé: C:\Documents and Settings\evelyne\Local Settings\Application Data\Conduit
Dossier supprimé: C:\Program Files\Conduit
Dossier supprimé: C:\Program Files\alot
(!) -- Fichiers temporaires supprimés.
Clé supprimée: HKLM\Software\Classes\CLSID\{074E4EFE-81BB-4EA4-866E-082CB0E01070}
Clé supprimée: HKLM\Software\Classes\AppID\{EDE2C296-2458-4E3B-A846-4B512C0703B5}
Clé supprimée: HKLM\Software\Classes\CLSID\{0CE5B352-9D9C-41E1-9551-FCCD92820217}
Clé supprimée: HKLM\Software\Classes\CLSID\{14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{14CEEAFF-96DD-4101-AE37-D5ECDC23C3F6}
Clé supprimée: HKLM\Software\Classes\CLSID\{167B2B5F-2757-434A-BBDA-2FDB2003F14F}
Clé supprimée: HKLM\Software\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Clé supprimée: HKLM\Software\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Clé supprimée: HKLM\Software\Classes\CLSID\{2E9A60EA-5554-49C3-BC9D-D0404DBACC62}
Clé supprimée: HKLM\Software\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Clé supprimée: HKLM\Software\Classes\CLSID\{3C7C005E-4F16-4B7D-8503-C1265A122808}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3C7C005E-4F16-4B7D-8503-C1265A122808}
Clé supprimée: HKLM\Software\Classes\CLSID\{3E63C9BC-DD51-4E83-ABA6-B350EAD28531}
Clé supprimée: HKLM\Software\Classes\CLSID\{44CFFEF4-E7E1-44BD-B1F5-29F828ADA1B8}
Clé supprimée: HKLM\Software\Classes\CLSID\{5AA2BA46-9913-4dc7-9620-69AB0FA17AE7}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5AA2BA46-9913-4dc7-9620-69AB0FA17AE7}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5AA2BA46-9913-4dc7-9620-69AB0FA17AE7}
Clé supprimée: HKLM\Software\Classes\CLSID\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{872F3C0B-4462-424c-BB9F-74C6899B9F92}
Clé supprimée: HKLM\Software\Classes\AppID\{9C123289-82E1-4da7-A3C2-B8D28AAD114B}
Clé supprimée: HKLM\Software\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Clé supprimée: HKLM\Software\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Clé supprimée: HKLM\Software\Classes\CLSID\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}
Clé supprimée: HKLM\Software\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Clé supprimée: HKLM\Software\Classes\CLSID\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}
Clé supprimée: HKLM\Software\Classes\AppID\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Clé supprimée: HKLM\Software\Classes\CLSID\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}
Clé supprimée: HKLM\Software\Classes\CLSID\{EF2B6317-C367-401B-83B8-80302D6588A7}
Clé supprimée: HKLM\Software\Classes\CLSID\{F5379B4B-24D8-432A-9A96-BE75EE5117DB}
Clé supprimée: HKLM\Software\Classes\CLSID\{F7FB2BC4-6C27-4EAC-B5E2-037B71FDE101}
Clé supprimée: HKLM\Software\Classes\CLSID\{FD53FE35-4368-4B71-89D6-F29F3DB29DF1}
Clé supprimée: HKLM\Software\Classes\Interface\{33DDFC61-F531-4982-8C32-4212B7835D44}
Clé supprimée: HKLM\Software\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Clé supprimée: HKLM\Software\Classes\Interface\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Clé supprimée: HKLM\Software\Classes\Interface\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}
Clé supprimée: HKLM\Software\Classes\Interface\{DF76E9B7-35EC-46FC-AF56-5B79DED9D64F}
Clé supprimée: HKLM\Software\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Clé supprimée: HKLM\Software\Classes\TypeLib\{18AF7201-4F14-4BCF-93FE-45617CF259FF}
Clé supprimée: HKLM\Software\Classes\TypeLib\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Clé supprimée: HKLM\Software\Classes\TypeLib\{4410C118-B23C-406C-9F52-9CDABD90A5EA}
Clé supprimée: HKLM\Software\Classes\TypeLib\{62E5C9E1-A0E8-4F8C-8EAF-0F9250CC5786}
Clé supprimée: HKLM\Software\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Clé supprimée: HKLM\Software\Classes\TypeLib\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.BandooCoordinator
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.BandooCoordinator.1
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.CoordinatorUI
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.CoordinatorUI.1
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.HTTPAsyncResult
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.HTTPAsyncResult.1
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.PlugInNotifier
Clé supprimée: HKLM\Software\Classes\BandooCoordinator.PlugInNotifier.1
Clé supprimée: HKLM\Software\Classes\BandooCore.BandooCore
Clé supprimée: HKLM\Software\Classes\BandooCore.BandooCore.1
Clé supprimée: HKLM\Software\Classes\BandooCore.ResourcesMngr
Clé supprimée: HKLM\Software\Classes\BandooCore.ResourcesMngr.1
Clé supprimée: HKLM\Software\Classes\BandooCore.SettingsMngr
Clé supprimée: HKLM\Software\Classes\BandooCore.SettingsMngr.1
Clé supprimée: HKLM\Software\Classes\BandooCore.StatisticMngr
Clé supprimée: HKLM\Software\Classes\BandooCore.StatisticMngr.1
Clé supprimée: HKLM\Software\Classes\BandooIEPlugin.BandooIEPlugin
Clé supprimée: HKLM\Software\Classes\BandooIEPlugin.BandooIEPlugin.1
Clé supprimée: HKLM\Software\Classes\BFlashAnimator.BFlashAnimatorCtrl
Clé supprimée: HKLM\Software\Classes\BFlashAnimator.BFlashAnimatorCtrl.1
Clé supprimée: HKLM\Software\Classes\BGIFAnimator.BGIFAnimatorCtrl
Clé supprimée: HKLM\Software\Classes\BGIFAnimator.BGIFAnimatorCtrl.1
Clé supprimée: HKLM\Software\Classes\EoEngineBHO.EOBHO
Clé supprimée: HKLM\Software\Classes\EoEngineBHO.EOBHO.1
Clé supprimée: HKLM\Software\Classes\Toolbar.CT1269415
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2423182
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2445907
Clé supprimée: HKLM\Software\Classes\Toolbar.CT669491
Clé supprimée: HKLM\Software\Classes\AppID\EoEngineBHO.DLL
Clé supprimée: HKLM\Software\Classes\AppID\{AFBB7970-789A-4264-BA70-E8127DECE400}
Clé supprimée: HKLM\Software\Classes\AppID\BandooCoordinator.EXE
Clé supprimée: HKLM\Software\Classes\AppID\BandooCore.EXE
Clé supprimée: HKLM\Software\SearchquMediabarTb
Clé supprimée: HKLM\Software\bandoo
Clé supprimée: HKLM\Software\EoRezo
Clé supprimée: HKLM\Software\Casino DelRio
Clé supprimée: HKLM\Software\Conduit
Clé supprimée: HKLM\Software\conduitEngine
Clé supprimée: HKLM\Software\DataMngr
Clé supprimée: HKCU\Software\EoRezo
Clé supprimée: HKCU\Software\alot
Clé supprimée: HKCU\Software\Casino DelRio
Clé supprimée: HKCU\Software\Conduit
Clé supprimée: HKCU\Software\conduitEngine
Clé supprimée: HKCU\Software\DataMngr
Clé supprimée: HKCU\Software\PriceGong
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\Casino Tropez
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\Everest Poker
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Bandoo
Clé supprimée: HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\DataMngr
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5AA2BA46-9913-4DC7-9620-69AB0FA17AE7}
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8}
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4e1d-BDD0-1E9C9B7799CC}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8521B56-84B5-4DE1-8A57-16A85AC3F794}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4fde-B055-AE7B0F4CF080}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\EoRezo_is1
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Bandoo
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\alotToolbar
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu MediaBar
Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Eorezo
Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Softwarehelper
Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{5AA2BA46-9913-4dc7-9620-69AB0FA17AE7}
============== SCAN ADDITIONNEL ==============
** Mozilla Firefox Version [Impossible d'obtenir la version] **
-- C:\Documents and Settings\manuel\Application Data\Mozilla\FireFox\Profiles\luakwo8g.default\Prefs.js --
browser.search.defaultenginename, Google
browser.search.defaulturl, hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
browser.search.selectedEngine, Google
browser.startup.homepage_override.mstone, rv:1.8.1.17
========================================
** Internet Explorer Version [8.0.6001.18702] **
[HKCU\Software\Microsoft\Internet Explorer\Main]
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Do404Search: 0x01000000
Enable Browser Extensions: yes
Local Page: C:\WINDOWS\system32\blank.htm
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
Show_ToolBar: yes
Start Page: hxxp://fr.msn.com/
Use Search Asst: no
[HKLM\Software\Microsoft\Internet Explorer\Main]
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Search bar: hxxp://search.msn.com/spbasic.htm
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/
[HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]
Tabs: res://ieframe.dll/tabswelcome.htm
Blank: res://mshtml.dll/blank.htm
========================================
C:\Program Files\Ad-Remover\Quarantine: 194 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 12 Fichier(s)
C:\Ad-Report-CLEAN[1].txt - 12/12/2010 (1037 Octet(s))
Fin à: 13:48:49, 12/12/2010
============== E.O.F ==============
Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 17 invités
.: Nous contacter :: Flux RSS :: Données personnelles :. |