Il y a actuellement 660 visiteurs
Vendredi 22 Novembre 2024
accueilactualitésdossierscomparer les prixtélécharger gratuitement vos logicielsoffres d'emploiforum informatique
Connexion
Créer un compte

[Réglé] Mon pc rame virus

Un ordinateur qui ralentit, des écrans publicitaires qui apparaissent, des applications qui refusent de démarrer ou encore votre navigateur qui s'obstine à ouvrir une page douteuse sont autant d'éléments qui indiquent que l'intégrité de votre ordinateur est menacée par un virus. Vous trouverez dans ce forum quelques conseils et logiciels pour surfer tranquillement.
Règles du forum
Pour afficher un rapport d'analyse ou un rapport d'infection (HijackThis, OTL, AdwCleaner etc...)‎, veuillez utiliser le système de fichiers joints interne au forum. Seuls les formats les .txt et .log de moins de 1Mo sont acceptés. Pour obtenir de l'aide pour insérer vos fichiers joints, veuillez consulter ce tutoriel

[Réglé] Mon pc rame virus

Message le 26 Fév 2012 18:01

Bonjour j'ai probablement un pb de virus


rapport maleware:


Malwarebytes Anti-Malware 1.60.1.1000
http://www.malwarebytes.org

Version de la base de données: v2012.02.19.02

Windows 7 x86 NTFS
Internet Explorer 9.0.8112.16421
DABSIDIK :: DABSIDIK-PC [administrateur]

26/02/2012 03:38:57
mbam-log-2012-02-26 (03-38-57).txt

Type d'examen: Examen complet
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 424094
Temps écoulé: 2 heure(s), 45 minute(s), 9 seconde(s)

Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)

Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)

Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)

Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)

Fichier(s) détecté(s): 0
(Aucun élément nuisible détecté)

(fin)
Dernière édition par Pac428 le 02 Mar 2012 00:20, édité 2 fois.
Raison: Posts scindés d'un ancien sujet + mise en forme "bonjour" sur le nouveau
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 


Re: Mon pc rame virus

Message le 26 Fév 2012 18:02

ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: [Réglé] Mon pc rame

Message le 26 Fév 2012 20:49

Bonsoir Ben.d

Il faut créer ton propre sujet afin qu'on puisse s'occuper de toi ...

@ + ;)

C'est fait :wink: EZ
Avatar de l'utilisateur
Del-crosseur
Expert(e)
Expert(e)
 
Messages: 1833
Inscription: 08 Juin 2009 06:46
Localisation: Nord-(59)
 

Re: Mon pc rame virus

Message le 26 Fév 2012 21:30

ok.. mercii
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 26 Fév 2012 21:34

au fait, comment on fait pour creer un sujet? lol ! :p
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 26 Fév 2012 21:40

Bonsoir

c'est très simple

tu vas dans le forum "sécurité et virus" tu clique sur le gros bouton nouveau et tu poste en mettant ton titre à toi :wink:

je suis bon prince, je vais scinder tes messages de l'ancien sujet et te créer un beau sujet tout propre....ne fait rien et attends la suite

Edit: c'est fait, on peut continuer ici
Avatar de l'utilisateur
EinsteinZero
Moderateur
Moderateur
 
Messages: 18408
Inscription: 27 Déc 2009 16:22
Localisation: Normandie
 

Re: Mon pc rame virus

Message le 26 Fév 2012 23:53

mercii EINSTEIN. c tres aimable. alors? jai posté le rapport maleware + le truc de ci joint parce que j'avais vu dans un autre sujet qu'il fallait faire ça ! donc maintenant je fais quoi svp...
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 27 Fév 2012 12:10

Bonjour , :)

Se pc est très infecté :cry:

Des toolbars infectieuse , des Adwares , des infections Pups et en prime une infection "Trojan LOP" !!

Faite ce qui suit svp :

Installation/Suppression

  • Télécharges AdwCleaner de Xplode
  • Lance AdwCleaner.exe
  • accepter l'avertissement qui suit
  • Sur la page, cliques sur le bouton Suppression
    Image
  • Laisses travailler l'outil
  • Postes le rapport qui apparait à la fin .
    Il est sauvegardé aussi sous C:\AdwCleaner[Delete].txt
  • Clic sur Quitter


Puis :::


Image Télécharge AD-Remover (de Cyrildu17 / C_XX) sur ton Bureau.

/!\Déconnecte-toi et ferme toutes applications en cours (important) /!\

  • Double-clique sur le programme d'installation ; laisse-le s' installer par défaut (C:\Program files).
  • Double-clique sur l'icône AD-Remover située sur ton Bureau.
  • Au menu principal, choisis l'option "Nettoyer".
  • Poste le rapport qui apparaît à la fin.

    (Le rapport est aussi conservé sous C:\Ad-report(date).log)

    (Ctrl+A pour tout sélectionner, Ctrl+C pour copier et Ctrl+V pour coller)

    Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus comme une infection ;
    ne pas en tenir compte (il s'agit d'un faux positif) et continue la procédure.

=========================================

Après avoir fait les procédures si dessus , refait un ZHPDiag

=========================================

J'attends donc les rapports:

-AdwCleaner
-AD-remover
-ZHPDiag

Bonne journée ;)
Avatar de l'utilisateur
Del-crosseur
Expert(e)
Expert(e)
 
Messages: 1833
Inscription: 08 Juin 2009 06:46
Localisation: Nord-(59)
 

Re: Mon pc rame virus

Message le 27 Fév 2012 23:37

rapport Adwcleaner



Code: Tout sélectionner
# AdwCleaner v1.500 - Rapport créé le 27/02/2012 à 21:03:40
# Mis à jour le 23/02/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium  (32 bits)
# Nom d'utilisateur : DABSIDIK - DABSIDIK-PC
# Exécuté depuis : C:\Users\DABSIDIK\Downloads\adwcleaner.exe
# Option [Suppression]


***** [Services] *****


***** [Fichiers / Dossiers] *****

Dossier Supprimé : C:\ProgramData\Babylon
Dossier Supprimé : C:\ProgramData\Tarma Installer
Dossier Supprimé : C:\ProgramData\Winamp Toolbar
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\freeTVRadio
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\OpenCandy
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\Babylon
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\Conduit
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\freetvradio Air
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\Ilivid Player
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\OpenCandy
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\Winamp Toolbar
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpdfidbfmmnmppkboomdjjjlkbccdgbc
Dossier Supprimé : C:\Users\DABSIDIK\AppData\LocalLow\BabylonToolbar
Dossier Supprimé : C:\Users\DABSIDIK\AppData\LocalLow\Conduit
Dossier Supprimé : C:\Users\DABSIDIK\AppData\LocalLow\searchquband
Dossier Supprimé : C:\Users\DABSIDIK\AppData\LocalLow\PriceGong
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\freeTVRadio
Dossier Supprimé : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong
Dossier Supprimé : C:\Program Files\Conduit
Dossier Supprimé : C:\Program Files\facemoods.com
Dossier Supprimé : C:\Program Files\freeTVRadio
Dossier Supprimé : C:\Program Files\PriceGong
Dossier Supprimé : C:\Program Files\Winamp Toolbar
Dossier Supprimé : C:\Program Files\Windows iLivid Toolbar
Dossier Supprimé : C:\Program Files\Windows Searchqu Toolbar
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\Conduit
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\ConduitCommon
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\ConduitEngine
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\searchqutoolbar
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\winampToolbarData
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\extensions\{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7}
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\extensions\engine@conduit.com
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\extensions\ffxtlbr@babylon.com
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\extensions\ffxtlbr@Facemoods.com
Dossier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\extensions\plugin@yontoo.com
Fichier Supprimé : C:\Users\Public\Desktop\freeTVRadio.lnk
Fichier Supprimé : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
Fichier Supprimé : C:\Program Files\Mozilla Firefox\searchplugins\fcmdSrch.xml
Fichier Supprimé : C:\Program Files\Mozilla Firefox\searchplugins\SearchResults.xml
Fichier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\searchplugins\Conduit.xml
Fichier Supprimé : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\searchplugins\SearchResults.xml

***** [H. Navipromo] *****


***** [Registre] *****

[*] Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2095689
[*] Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2102473
[*] Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2542115
[*] Clé Supprimée : HKLM\SOFTWARE\Classes\Toolbar.CT2795622
Clé Supprimée : HKCU\Software\Babylon
Clé Supprimée : HKCU\Software\BabylonToolbar
Clé Supprimée : HKCU\Software\Conduit
Clé Supprimée : HKCU\Software\DataMngr
Clé Supprimée : HKCU\Software\facemoods.com
Clé Supprimée : HKCU\Software\freeTVRadio
Clé Supprimée : HKCU\Software\ilivid
Clé Supprimée : HKCU\Software\Winamp Toolbar
Clé Supprimée : HKCU\Software\AppDataLow\Toolbar
Clé Supprimée : HKCU\Software\AppDataLow\Software\Conduit
Clé Supprimée : HKCU\Software\AppDataLow\Software\PriceGong
Clé Supprimée : HKCU\Software\AppDataLow\Software\searchqutb
Clé Supprimée : HKCU\Software\AppDataLow\Software\searchqutoolbar
Clé Supprimée : HKLM\SOFTWARE\Babylon
Clé Supprimée : HKLM\SOFTWARE\BabylonToolbar
Clé Supprimée : HKLM\SOFTWARE\bandoo
Clé Supprimée : HKLM\SOFTWARE\Conduit
Clé Supprimée : HKLM\SOFTWARE\DataMngr
Clé Supprimée : HKLM\SOFTWARE\facemoods.com
Clé Supprimée : HKLM\SOFTWARE\freeTVRadio
Clé Supprimée : HKLM\SOFTWARE\SearchquMediabarTb
Clé Supprimée : HKLM\SOFTWARE\Tarma Installer
Clé Supprimée : HKLM\SOFTWARE\Winamp Toolbar
Clé Supprimée : HKLM\SOFTWARE\Classes\Babylon.dskBnd
Clé Supprimée : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1
Clé Supprimée : HKLM\SOFTWARE\Classes\bbylnApp.appCore
Clé Supprimée : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
Clé Supprimée : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane
Clé Supprimée : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.escrtSrvc
Clé Supprimée : HKLM\SOFTWARE\Classes\esrv.escrtSrvc.1
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoods.dskBnd
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoods.dskBnd.1
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoods.facemoodsHlpr
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoods.facemoodsHlpr.1
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoods.xtrnl
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoods.xtrnl.1
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoodsApp.appCore
Clé Supprimée : HKLM\SOFTWARE\Classes\facemoodsApp.appCore.1
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.Spointer
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.Spointer.4
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.SpointerAdProvider
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.SpointerAdProvider.4
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.SpointerBanner
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.SpointerBanner.4
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.SpointerCtrl
Clé Supprimée : HKLM\SOFTWARE\Classes\Freetvradio.SpointerWebDisp
Clé Supprimée : HKLM\SOFTWARE\Classes\PriceFactorIE.PriceGongBHO
Clé Supprimée : HKLM\SOFTWARE\Classes\PriceFactorIE.PriceGongBHO.1
Clé Supprimée : HKLM\SOFTWARE\Classes\PriceGongIE.PriceGongCtrl
Clé Supprimée : HKLM\SOFTWARE\Classes\PriceGongIE.PriceGongCtrl.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.AOLTBSearch
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.AOLTBSearch.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.AOLToolBand
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.AOLToolBand.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.Downloader
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.Downloader.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.ToolbarInfo
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.ToolbarInfo.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.ToolbarParams
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTb.ToolbarParams.1
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTbServer.AolToolbarHelper
Clé Supprimée : HKLM\SOFTWARE\Classes\WinampTbServer.AolToolbarHelper.1
Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Api
Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
Clé Supprimée : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\PriceGongIE.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\winamptbServer.exe
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46df-B041-1E593282C7D0}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{AD25754E-D76C-42B3-A335-2F81478B722F}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{B27D9527-3762-4d71-963D-FB7A94FDD678}
Clé Supprimée : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{1631550F-191D-4826-B069-D9439253D926}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{D2A2595C-4FE4-4315-AA9B-19DBD6271B71}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{64182481-4F71-486b-A045-B233BD0DA8FC}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{A5B99E41-E157-4209-8AAC-DB003A816079}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{AD20D01C-C939-4dd2-8C55-56935A48987E}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{DDE2C74F-58CC-4d71-8CE1-09DEBB8CFB78}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E95EAD3F-18C6-4304-9DC6-BD6FD8E11D37}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{2d110684-626c-41a5-b737-9fa4613d7398}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{3763ee44-612e-457d-8932-f3e2bde560d4}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{416ae1cb-7257-484a-b912-aebc7fdad4ce}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{4af195e5-1978-4f8d-a316-5bcce06d7f89}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{746B5408-3579-4CED-B76A-BEC915730F45}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7C36E7FF-9860-4437-A5FF-B1349A43835B}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{6EF4E91D-DDD5-4478-BCA7-DA04435934C0}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{841FD004-57A2-4B49-BBDB-5897394619DB}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{B38D6EDE-390B-4620-8365-29E16459EBDA}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{E1164984-B567-47BD-A7FF-240C2594404A}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{F20F11FD-203E-45a9-B7BB-AFC1B4FEA7A6}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FE178B09-C8AA-4734-804D-1849BCCA0C29}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44b0-A826-84C829536E93}
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Products\64B074831FB9EA045A886FDAD6C1D224
Clé Supprimée : HKLM\SOFTWARE\Classes\Installer\Features\64B074831FB9EA045A886FDAD6C1D224
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Products\64B074831FB9EA045A886FDAD6C1D224
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{74C012C4-00FB-4F04-9AFB-4AD5449D2018}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{78888F8B-D5E4-43CE-89F5-C8C18223AF64}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8B8558F6-DC26-4F39-8417-34B8934AA459}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{8C8D5C57-3CAD-4CF9-BCAD-F873678DA883}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{9E393F82-2644-4AB6-B994-1AD39D6C59EE}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A3A2A5C0-1306-4D1A-A093-9CECA4230002}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{746B5408-3579-4CED-B76A-BEC915730F45}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{7C36E7FF-9860-4437-A5FF-B1349A43835B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1E5CEE40-211D-4FEF-B03F-6D784089A445}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{596117CB-19F1-47B4-AA3A-CFF13970450A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{C20001AC-EA08-4185-A47F-423473FA96E6}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FA417304-519C-4278-9155-9B6562942C39}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{0F54B66A-21CF-4548-AE59-A6B83EE6676F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{51A971CA-D36E-4D13-A799-2CF0A491D04D}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{56FBEA9F-EF93-4318-B75F-A96FC7C7BD7B}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{78B3C85E-44FF-4DC8-B3AD-156F39DC75E5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{841FD004-57A2-4B49-BBDB-5897394619DB}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E1164984-B567-47BD-A7FF-240C2594404A}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{E19FDA06-5BDF-43C2-B794-BCD8A4C2051F}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{FAB076F5-E4DD-4EA4-AFEE-F18BF972B057}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Clé Supprimée : HKLM\SOFTWARE\Classes\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{8B3372D0-09F0-41A5-8D9B-134E148672FB}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{12A5F606-B1EC-474C-83ED-95E99FD8058E}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{AD25754E-D76C-42B3-A335-2F81478B722F}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{303D092C-7A38-4F1A-BB61-4C5A90BDA313}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{F46EF622-9190-44FF-A3EF-FC1DDD82BC65}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{F5419E28-D7D4-4B5E-89D4-008BC67B51B4}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{538CD77C-BFDD-49B0-9562-77419CAB89D1}
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok
Clé Supprimée : HKLM\SOFTWARE\Google\chrome\Extensions\ihflimipbcaljfnojhhknppphnnciiif
Clé Supprimée : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate this web page with Babylon
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate with Babylon
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1F096B29-E9DA-4D64-8D63-936BE7762CC5}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA74C8}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079a25-328f-4bd4-be04-00955acaa0a7}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1631550F-191D-4826-B069-D9439253D926}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486B-A045-B233BD0DA8FC}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DB4E9724-F518-4DFD-9C7C-78B52103CAB9}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{416ae1cb-7257-484a-b912-aebc7fdad4ce}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{99079A25-328F-4BD4-BE04-00955ACAA0A7}
Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1631550F-191D-4826-B069-D9439253D926}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4e1d-BDD0-1E9C9B7799CC}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4fde-B055-AE7B0F4CF080}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99079a25-328f-4bd4-be04-00955acaa0a7}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFDF9EF3-3C3A-4f05-9A6E-5D3B778EC567}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d0828293-e520-483a-816a-1b547c4ad7e6}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64182481-4F71-486b-A045-B233BD0DA8FC}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{416ae1cb-7257-484a-b912-aebc7fdad4ce}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3763ee44-612e-457d-8932-f3e2bde560d4}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4af195e5-1978-4f8d-a316-5bcce06d7f89}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\ForceRenive
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{38470B46-9BF1-40AE-A588-F6AD6D1C2D42}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\facemoods
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 0 MediaBar
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Winamp Toolbar
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}]
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{99079a25-328f-4bd4-be04-00955acaa0a7}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49dd-99D7-DC866BE87DBC}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2}]
Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr]
Valeur Supprimée : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [freetvradio@spointer.com]

***** [Navigateurs] *****

-\\ Internet Explorer v9.0.8112.16421

Remplacé : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.babylon.com/?babsrc=HP_ss&affID=100888&mntrId=888141910000000000000ceee6958226 --> hxxp://www.google.fr
Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=888141910000000000000ceee6958226&tlver=1.4.19.19&affID=19405 --> hxxp://www.google.fr

-\\ Mozilla Firefox v3.6.13 (fr)

Profil : tnztp8w5.default
Fichier : C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\prefs.js

C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\user.js ... Supprimé !

Supprimée : user_pref("CT2542115..clientLogIsEnabled", false);
Supprimée : user_pref("CT2542115..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Supprimée : user_pref("CT2542115..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Supprimée : user_pref("CT2542115.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Supprimée : user_pref("CT2542115.AppTrackingLastCheckTime", "Sun Sep 25 2011 12:40:59 GMT+0200");
Supprimée : user_pref("CT2542115.CTID", "CT2542115");
Supprimée : user_pref("CT2542115.CurrentServerDate", "25-9-2011");
Supprimée : user_pref("CT2542115.DialogsAlignMode", "LTR");
Supprimée : user_pref("CT2542115.DialogsGetterLastCheckTime", "Thu Jul 28 2011 21:30:16 GMT+0200");
Supprimée : user_pref("CT2542115.DownloadReferralCookieData", "");
Supprimée : user_pref("CT2542115.EMailNotifierPollDate", "Sun Sep 25 2011 12:49:34 GMT+0200");
Supprimée : user_pref("CT2542115.FeedLastCount3702671119025834822", 846);
Supprimée : user_pref("CT2542115.FeedPollDate1154579606993571455", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607031076616", "Sun Sep 25 2011 12:40:50 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607120332248", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607120463320", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607120528856", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607120594392", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607120659928", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607254614839", "Sun Sep 25 2011 12:40:51 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579607731405437", "Sun Sep 25 2011 12:40:50 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579608231640385", "Sun Sep 25 2011 12:40:51 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579608467137450", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579608468016907", "Sun Sep 25 2011 12:40:51 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579608628136389", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579608675890832", "Sun Sep 25 2011 12:40:50 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579608833656362", "Sun Sep 25 2011 12:40:51 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579609299927420", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579609521108563", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579609576983218", "Sun Sep 25 2011 12:40:50 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579610226745907", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579610508907107", "Sun Sep 25 2011 12:40:51 GMT+0200");
Supprimée : user_pref("CT2542115.FeedPollDate1154579610709294640", "Sun Sep 25 2011 12:40:50 GMT+0200");
Supprimée : user_pref("CT2542115.FeedTTL1154579606993571455", 5);
Supprimée : user_pref("CT2542115.FeedTTL1154579607731405437", 2);
Supprimée : user_pref("CT2542115.FeedTTL1154579608468016907", 30);
Supprimée : user_pref("CT2542115.FeedTTL1154579608675890832", 2);
Supprimée : user_pref("CT2542115.FeedTTL1154579608833656362", 5);
Supprimée : user_pref("CT2542115.FeedTTL1154579609521108563", 5);
Supprimée : user_pref("CT2542115.FeedTTL1154579609576983218", 15);
Supprimée : user_pref("CT2542115.FeedTTL1154579610508907107", 5);
Supprimée : user_pref("CT2542115.FeedTTL1154579610709294640", 2);
Supprimée : user_pref("CT2542115.FirstServerDate", "4-6-2011");
Supprimée : user_pref("CT2542115.FirstTime", true);
Supprimée : user_pref("CT2542115.FirstTimeFF3", true);
Supprimée : user_pref("CT2542115.FixPageNotFoundErrors", true);
Supprimée : user_pref("CT2542115.GroupingServerCheckInterval", 1440);
Supprimée : user_pref("CT2542115.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Supprimée : user_pref("CT2542115.HasUserGlobalKeys", true);
Supprimée : user_pref("CT2542115.Initialize", true);
Supprimée : user_pref("CT2542115.InitializeCommonPrefs", true);
Supprimée : user_pref("CT2542115.InstallationAndCookieDataSentCount", 3);
Supprimée : user_pref("CT2542115.InstalledDate", "Sat Jun 04 2011 17:43:23 GMT+0200");
Supprimée : user_pref("CT2542115.InvalidateCache", false);
Supprimée : user_pref("CT2542115.IsGrouping", false);
Supprimée : user_pref("CT2542115.IsMulticommunity", false);
Supprimée : user_pref("CT2542115.IsOpenThankYouPage", false);
Supprimée : user_pref("CT2542115.IsOpenUninstallPage", true);
Supprimée : user_pref("CT2542115.LanguagePackLastCheckTime", "Sun Sep 25 2011 12:40:48 GMT+0200");
Supprimée : user_pref("CT2542115.LanguagePackReloadIntervalMM", 1440);
Supprimée : user_pref("CT2542115.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Supprimée : user_pref("CT2542115.LastLogin_2.5.8.6", "Mon Jul 18 2011 18:41:50 GMT+0200");
Supprimée : user_pref("CT2542115.LastLogin_3.3.3.2", "Sun Sep 25 2011 12:40:49 GMT+0200");
Supprimée : user_pref("CT2542115.LatestVersion", "3.6.0.10");
Supprimée : user_pref("CT2542115.Locale", "fr-fr");
Supprimée : user_pref("CT2542115.LoginCache", 4);
Supprimée : user_pref("CT2542115.MCDetectTooltipHeight", "83");
Supprimée : user_pref("CT2542115.MCDetectTooltipShow", false);
Supprimée : user_pref("CT2542115.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Supprimée : user_pref("CT2542115.MCDetectTooltipWidth", "295");
Supprimée : user_pref("CT2542115.RadioIsPodcast", false);
Supprimée : user_pref("CT2542115.RadioLastCheckTime", "Sun Sep 25 2011 12:40:49 GMT+0200");
Supprimée : user_pref("CT2542115.RadioLastUpdateIPServer", "3");
Supprimée : user_pref("CT2542115.RadioLastUpdateServer", "3");
Supprimée : user_pref("CT2542115.RadioMediaID", "9962");
Supprimée : user_pref("CT2542115.RadioMediaType", "Media Player");
Supprimée : user_pref("CT2542115.RadioMenuSelectedID", "EBRadioMenu_CT25421159962");
Supprimée : user_pref("CT2542115.RadioStationName", "California%20Rock");
Supprimée : user_pref("CT2542115.RadioStationURL", "hxxp://feedlive.net/california.asx");
Supprimée : user_pref("CT2542115.SHRINK_TOOLBAR", 1);
Supprimée : user_pref("CT2542115.SavedHomepage", "hxxp://search.imesh.com/");
Supprimée : user_pref("CT2542115.SearchEngine", "Recherche||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_[...]
Supprimée : user_pref("CT2542115.SearchFromAddressBarIsInit", true);
Supprimée : user_pref("CT2542115.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT254[...]
Supprimée : user_pref("CT2542115.SearchInNewTabEnabled", true);
Supprimée : user_pref("CT2542115.SearchInNewTabIntervalMM", 1440);
Supprimée : user_pref("CT2542115.SearchInNewTabLastCheckTime", "Sun Sep 25 2011 12:40:42 GMT+0200");
Supprimée : user_pref("CT2542115.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Supprimée : user_pref("CT2542115.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Supprimée : user_pref("CT2542115.ServiceMapLastCheckTime", "Sun Sep 25 2011 12:40:42 GMT+0200");
Supprimée : user_pref("CT2542115.SettingsCheckIntervalMin", 120);
Supprimée : user_pref("CT2542115.SettingsLastCheckTime", "Sun Sep 25 2011 12:40:41 GMT+0200");
Supprimée : user_pref("CT2542115.SettingsLastUpdate", "1316435710");
Supprimée : user_pref("CT2542115.ThirdPartyComponentsInterval", 504);
Supprimée : user_pref("CT2542115.ThirdPartyComponentsLastCheck", "Sun Sep 25 2011 12:40:41 GMT+0200");
Supprimée : user_pref("CT2542115.ThirdPartyComponentsLastUpdate", "1255344667");
Supprimée : user_pref("CT2542115.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2542115");
Supprimée : user_pref("CT2542115.UserID", "UN51099978163754033");
Supprimée : user_pref("CT2542115.ValidationData_Toolbar", 2);
Supprimée : user_pref("CT2542115.WeatherNetwork", "");
Supprimée : user_pref("CT2542115.WeatherPollDate", "Sun Sep 25 2011 12:40:56 GMT+0200");
Supprimée : user_pref("CT2542115.WeatherUnit", "C");
Supprimée : user_pref("CT2542115.alertChannelId", "935078");
Supprimée : user_pref("CT2542115.backendstorage.ct2542115ads1", "25374225323261647325323225334125354225374225323[...]
Supprimée : user_pref("CT2542115.backendstorage.ct2542115current_term", "7069676E6F6E2B6D6169736F6E");
Supprimée : user_pref("CT2542115.backendstorage.ct2542115sdate", "3238");
Supprimée : user_pref("CT2542115.backendstorage.for_aoi", "31333037323032323231");
Supprimée : user_pref("CT2542115.backendstorage.for_ccid", "4F706272616B656C");
Supprimée : user_pref("CT2542115.backendstorage.for_cdtr5", "31333037323032323231");
Supprimée : user_pref("CT2542115.backendstorage.for_cdtr6", "31333136393437323638");
Supprimée : user_pref("CT2542115.backendstorage.for_cid", "4245");
Supprimée : user_pref("CT2542115.backendstorage.for_ip", "39312E3138312E33312E313234");
Supprimée : user_pref("CT2542115.backendstorage.for_lcut", "31333136393437323638");
Supprimée : user_pref("CT2542115.backendstorage.for_pid", "31303130");
Supprimée : user_pref("CT2542115.backendstorage.for_rid", "3038");
Supprimée : user_pref("CT2542115.backendstorage.for_zoneid", "39353932");
Supprimée : user_pref("CT2542115.clientLogIsEnabled", false);
Supprimée : user_pref("CT2542115.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asm[...]
Supprimée : user_pref("CT2542115.components.1000082", false);
Supprimée : user_pref("CT2542115.components.129112212600933761", false);
Supprimée : user_pref("CT2542115.components.129112212601090013", false);
Supprimée : user_pref("CT2542115.components.129460316972943811", false);
Supprimée : user_pref("CT2542115.components.129460316973256312", false);
Supprimée : user_pref("CT2542115.components.129460316974818815", false);
Supprimée : user_pref("CT2542115.components.129460317312788386", false);
Supprimée : user_pref("CT2542115.components.129502738556031799", false);
Supprimée : user_pref("CT2542115.components.129530554216906936", false);
Supprimée : user_pref("CT2542115.components.129530554349103424", false);
Supprimée : user_pref("CT2542115.components.3702671119025834822", false);
Supprimée : user_pref("CT2542115.components.4878870923213707553", false);
Supprimée : user_pref("CT2542115.components.7075780752558566161", false);
Supprimée : user_pref("CT2542115.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...]
Supprimée : user_pref("CT2542115.globalFirstTimeInfoLastCheckTime", "Sun Sep 25 2011 12:40:50 GMT+0200");
Supprimée : user_pref("CT2542115.isAppTrackingManagerOn", true);
Supprimée : user_pref("CT2542115.myStuffEnabled", true);
Supprimée : user_pref("CT2542115.myStuffPublihserMinWidth", 400);
Supprimée : user_pref("CT2542115.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Supprimée : user_pref("CT2542115.myStuffServiceIntervalMM", 1440);
Supprimée : user_pref("CT2542115.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Supprimée : user_pref("CT2542115.oldAppsList", "129112212599528487,129112212600153496,129460317312788386,1295305[...]
Supprimée : user_pref("CT2542115.testingCtid", "");
Supprimée : user_pref("CT2542115.toolbarAppMetaDataLastCheckTime", "Sun Sep 25 2011 12:40:48 GMT+0200");
Supprimée : user_pref("CT2542115.toolbarContextMenuLastCheckTime", "Thu Jul 28 2011 21:30:16 GMT+0200");
Supprimée : user_pref("CT2542115.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Reg[...]
Supprimée : user_pref("CT2542115.usagesFlag", 2);
Supprimée : user_pref("CT2795622..clientLogIsEnabled", false);
Supprimée : user_pref("CT2795622..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Supprimée : user_pref("CT2795622..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Supprimée : user_pref("CT2795622.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Supprimée : user_pref("CT2795622.AppTrackingLastCheckTime", "Sat Feb 11 2012 14:19:39 GMT+0000");
Supprimée : user_pref("CT2795622.BrowserCompStateIsOpen_129458974086638316", true);
Supprimée : user_pref("CT2795622.BrowserCompStateIsOpen_129458974087888317", true);
Supprimée : user_pref("CT2795622.BrowserCompStateIsOpen_129683383013316074", true);
Supprimée : user_pref("CT2795622.CTID", "CT2795622");
Supprimée : user_pref("CT2795622.CurrentServerDate", "11-2-2012");
Supprimée : user_pref("CT2795622.DialogsAlignMode", "LTR");
Supprimée : user_pref("CT2795622.DialogsGetterLastCheckTime", "Sat Feb 11 2012 14:26:13 GMT+0000");
Supprimée : user_pref("CT2795622.DownloadReferralCookieData", "");
Supprimée : user_pref("CT2795622.EMailNotifierPollDate", "Sat Feb 11 2012 14:19:27 GMT+0000");
Supprimée : user_pref("CT2795622.ExternalComponentPollDate5357270389314358849", "Sun Sep 25 2011 12:41:01 GMT+02[...]
Supprimée : user_pref("CT2795622.FeedLastCount129302218443100762", 500);
Supprimée : user_pref("CT2795622.FeedPollDate129237173390688207", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129237173390688210", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238703378572556", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238703378572557", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238703378572558", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238703378572559", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238703378572560", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238824209885828", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238824209885829", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedPollDate129238824209885830", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.FeedTTL129237173390688207", 40);
Supprimée : user_pref("CT2795622.FeedTTL129237173390688210", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238703378572556", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238703378572557", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238703378572558", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238703378572559", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238703378572560", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238824209885828", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238824209885829", 40);
Supprimée : user_pref("CT2795622.FeedTTL129238824209885830", 40);
Supprimée : user_pref("CT2795622.FirstServerDate", "24-6-2011");
Supprimée : user_pref("CT2795622.FirstTime", true);
Supprimée : user_pref("CT2795622.FirstTimeFF3", true);
Supprimée : user_pref("CT2795622.FixPageNotFoundErrors", true);
Supprimée : user_pref("CT2795622.GroupingServerCheckInterval", 1440);
Supprimée : user_pref("CT2795622.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Supprimée : user_pref("CT2795622.HasUserGlobalKeys", true);
Supprimée : user_pref("CT2795622.HomePageProtectorEnabled", false);
Supprimée : user_pref("CT2795622.Initialize", true);
Supprimée : user_pref("CT2795622.InitializeCommonPrefs", true);
Supprimée : user_pref("CT2795622.InstallationAndCookieDataSentCount", 3);
Supprimée : user_pref("CT2795622.InstallationType", "UnknownIntegration");
Supprimée : user_pref("CT2795622.InstalledDate", "Fri Jun 24 2011 22:32:09 GMT+0200");
Supprimée : user_pref("CT2795622.InvalidateCache", false);
Supprimée : user_pref("CT2795622.IsAlertDBUpdated", true);
Supprimée : user_pref("CT2795622.IsGrouping", false);
Supprimée : user_pref("CT2795622.IsMulticommunity", false);
Supprimée : user_pref("CT2795622.IsOpenThankYouPage", false);
Supprimée : user_pref("CT2795622.IsOpenUninstallPage", false);
Supprimée : user_pref("CT2795622.IsProtectorsInit", true);
Supprimée : user_pref("CT2795622.LanguagePackLastCheckTime", "Sat Feb 11 2012 14:19:35 GMT+0000");
Supprimée : user_pref("CT2795622.LanguagePackReloadIntervalMM", 1440);
Supprimée : user_pref("CT2795622.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Supprimée : user_pref("CT2795622.LastLogin_3.4.2.0", "Mon Jul 18 2011 18:41:57 GMT+0200");
Supprimée : user_pref("CT2795622.LastLogin_3.5.0.12", "Sat Feb 11 2012 14:19:33 GMT+0000");
Supprimée : user_pref("CT2795622.LatestVersion", "3.9.0.3");
Supprimée : user_pref("CT2795622.Locale", "en-us");
Supprimée : user_pref("CT2795622.MCDetectTooltipHeight", "83");
Supprimée : user_pref("CT2795622.MCDetectTooltipShow", false);
Supprimée : user_pref("CT2795622.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Supprimée : user_pref("CT2795622.MCDetectTooltipWidth", "295");
Supprimée : user_pref("CT2795622.MyStuffEnabledAtInstallation", true);
Supprimée : user_pref("CT2795622.OriginalFirstVersion", "3.4.2.0");
Supprimée : user_pref("CT2795622.RadioIsPodcast", false);
Supprimée : user_pref("CT2795622.RadioLastCheckTime", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.RadioLastUpdateIPServer", "3");
Supprimée : user_pref("CT2795622.RadioLastUpdateServer", "3");
Supprimée : user_pref("CT2795622.RadioMediaID", "9962");
Supprimée : user_pref("CT2795622.RadioMediaType", "Media Player");
Supprimée : user_pref("CT2795622.RadioMenuSelectedID", "EBRadioMenu_CT27956229962");
Supprimée : user_pref("CT2795622.RadioShrinkedFromSetup", false);
Supprimée : user_pref("CT2795622.RadioStationName", "California%20Rock");
Supprimée : user_pref("CT2795622.RadioStationURL", "hxxp://feedlive.net/california.asx");
Supprimée : user_pref("CT2795622.SavedHomepage", "hxxp://search.imesh.com/");
Supprimée : user_pref("CT2795622.SearchEngineBeforeUnload", "Google");
Supprimée : user_pref("CT2795622.SearchFromAddressBarIsInit", true);
Supprimée : user_pref("CT2795622.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT279[...]
Supprimée : user_pref("CT2795622.SearchInNewTabEnabled", true);
Supprimée : user_pref("CT2795622.SearchInNewTabIntervalMM", 1440);
Supprimée : user_pref("CT2795622.SearchInNewTabLastCheckTime", "Sat Feb 11 2012 14:19:27 GMT+0000");
Supprimée : user_pref("CT2795622.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Supprimée : user_pref("CT2795622.SearchInNewTabUsageUrl", "hxxp://usage.hosting.toolbar.conduit-services.com/usa[...]
Supprimée : user_pref("CT2795622.SearchProtectorEnabled", false);
Supprimée : user_pref("CT2795622.SearchProtectorToolbarDisabled", false);
Supprimée : user_pref("CT2795622.ServiceMapLastCheckTime", "Sat Feb 11 2012 14:19:28 GMT+0000");
Supprimée : user_pref("CT2795622.SettingsLastCheckTime", "Sat Feb 11 2012 14:19:27 GMT+0000");
Supprimée : user_pref("CT2795622.SettingsLastUpdate", "1328643993");
Supprimée : user_pref("CT2795622.ThirdPartyComponentsInterval", 504);
Supprimée : user_pref("CT2795622.ThirdPartyComponentsLastCheck", "Sat Feb 11 2012 14:19:27 GMT+0000");
Supprimée : user_pref("CT2795622.ThirdPartyComponentsLastUpdate", "1312887586");
Supprimée : user_pref("CT2795622.ToolbarShrinkedFromSetup", false);
Supprimée : user_pref("CT2795622.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2795622");
Supprimée : user_pref("CT2795622.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...]
Supprimée : user_pref("CT2795622.UserID", "UN15370987915812906");
Supprimée : user_pref("CT2795622.ValidationData_Toolbar", 0);
Supprimée : user_pref("CT2795622.WeatherNetwork", "");
Supprimée : user_pref("CT2795622.WeatherPollDate", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("CT2795622.WeatherUnit", "C");
Supprimée : user_pref("CT2795622.alertChannelId", "1187710");
Supprimée : user_pref("CT2795622.approveUntrustedApps", false);
Supprimée : user_pref("CT2795622.backendstorage.cbfirsttime", "5361742046656220313120323031322031343A31393A35302[...]
Supprimée : user_pref("CT2795622.backendstorage.for_aoi", "31333131383831343631");
Supprimée : user_pref("CT2795622.backendstorage.for_ccid", "4F706272616B656C");
Supprimée : user_pref("CT2795622.backendstorage.for_cdtr2", "31333131383831343631");
Supprimée : user_pref("CT2795622.backendstorage.for_cid", "4245");
Supprimée : user_pref("CT2795622.backendstorage.for_ip", "39312E3138312E33312E313234");
Supprimée : user_pref("CT2795622.backendstorage.for_lcut", "31333136393437323639");
Supprimée : user_pref("CT2795622.backendstorage.for_rid", "3038");
Supprimée : user_pref("CT2795622.backendstorage.for_zoneid", "39393837");
Supprimée : user_pref("CT2795622.backendstorage.forcb_aoi", "31333131383831343534");
Supprimée : user_pref("CT2795622.backendstorage.forcb_ccid", "4F706272616B656C");
Supprimée : user_pref("CT2795622.backendstorage.forcb_cdtr5", "31333131383831343534");
Supprimée : user_pref("CT2795622.backendstorage.forcb_cid", "4245");
Supprimée : user_pref("CT2795622.backendstorage.forcb_ip", "39312E3138312E33312E313234");
Supprimée : user_pref("CT2795622.backendstorage.forcb_lcut", "31333136393437323730");
Supprimée : user_pref("CT2795622.backendstorage.forcb_rid", "3038");
Supprimée : user_pref("CT2795622.backendstorage.forcb_zoneid", "39393837");
Supprimée : user_pref("CT2795622.backendstorage.url_history", "687474703A2F2F617070732E636F6E647569742E636F6D2F3[...]
Supprimée : user_pref("CT2795622.backendstorage.url_history0001", "687474703A2F2F777A7573312E7365617263682D72657[...]
Supprimée : user_pref("CT2795622.backendstorage.url_history_time", "31333131303038333430333635");
Supprimée : user_pref("CT2795622.components.1000082", false);
Supprimée : user_pref("CT2795622.components.1000234", false);
Supprimée : user_pref("CT2795622.components.1001", true);
Supprimée : user_pref("CT2795622.components.1002", true);
Supprimée : user_pref("CT2795622.components.1003", true);
Supprimée : user_pref("CT2795622.components.1004", true);
Supprimée : user_pref("CT2795622.components.1005", true);
Supprimée : user_pref("CT2795622.components.1006", true);
Supprimée : user_pref("CT2795622.components.1007", true);
Supprimée : user_pref("CT2795622.components.1008", true);
Supprimée : user_pref("CT2795622.components.1009", true);
Supprimée : user_pref("CT2795622.components.129302218441069508", false);
Supprimée : user_pref("CT2795622.components.129302218443100762", false);
Supprimée : user_pref("CT2795622.components.129302218443725779", false);
Supprimée : user_pref("CT2795622.components.129302218444819559", false);
Supprimée : user_pref("CT2795622.components.129404683839807181", false);
Supprimée : user_pref("CT2795622.components.129424485635737528", false);
Supprimée : user_pref("CT2795622.components.129458974085857065", false);
Supprimée : user_pref("CT2795622.components.129458974086638316", false);
Supprimée : user_pref("CT2795622.components.129458974087888317", false);
Supprimée : user_pref("CT2795622.components.129458974986169460", false);
Supprimée : user_pref("CT2795622.components.129485295507269647", false);
Supprimée : user_pref("CT2795622.components.129524741031309771", false);
Supprimée : user_pref("CT2795622.components.129524744063649079", false);
Supprimée : user_pref("CT2795622.components.129529956537744495", false);
Supprimée : user_pref("CT2795622.components.129545459758390840", false);
Supprimée : user_pref("CT2795622.components.4359934848440052663", false);
Supprimée : user_pref("CT2795622.components.5357270389314358849", false);
Supprimée : user_pref("CT2795622.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...]
Supprimée : user_pref("CT2795622.globalFirstTimeInfoLastCheckTime", "Sat Feb 11 2012 14:19:44 GMT+0000");
Supprimée : user_pref("CT2795622.homepageProtectorEnableByLogin", true);
Supprimée : user_pref("CT2795622.initDone", true);
Supprimée : user_pref("CT2795622.isAppTrackingManagerOn", true);
Supprimée : user_pref("CT2795622.isFirstRadioInstallation", false);
Supprimée : user_pref("CT2795622.myStuffEnabled", true);
Supprimée : user_pref("CT2795622.myStuffPublihserMinWidth", 400);
Supprimée : user_pref("CT2795622.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Supprimée : user_pref("CT2795622.myStuffServiceIntervalMM", 1440);
Supprimée : user_pref("CT2795622.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Supprimée : user_pref("CT2795622.oldAppsList", "129302218435756934,129302218436381935,111,1000082,12940468383980[...]
Supprimée : user_pref("CT2795622.searchProtectorDialogDelayInSec", 10);
Supprimée : user_pref("CT2795622.searchProtectorEnableByLogin", true);
Supprimée : user_pref("CT2795622.testingCtid", "");
Supprimée : user_pref("CT2795622.toolbarAppMetaDataLastCheckTime", "Sat Feb 11 2012 14:19:33 GMT+0000");
Supprimée : user_pref("CT2795622.toolbarContextMenuLastCheckTime", "Sat Feb 11 2012 14:19:33 GMT+0000");
Supprimée : user_pref("CT2795622.usagesFlag", 2);
Supprimée : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2795622&Search[...]
Supprimée : user_pref("CommunityToolbar.ConduitSearchList", "midicair Customized Web Search");
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2795622/CT2795622[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1187710/1183387/BE", "\"0\"[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/BE", "\"0\"")[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2542115", [...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2795622", [...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.3.[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.4.[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.5.[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2542115",[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2795622",[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "63[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=3/13/20[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT2542115&octid=[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.conduit-services.com/?ctid=CT2795622&octid=[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2795622/CT2795622[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/bankimages/RadioSkins/StarFleet/equalize[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/bankimages/RadioSkins/StarFleet/minimize[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/bankimages/RadioSkins/StarFleet/play.gif[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/bankimages/RadioSkins/StarFleet/stop.gif[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/bankimages/RadioSkins/StarFleet/vol.gif"[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en-us", "\"[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=fr-fr", "\"[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/15846407.xml", "\"4baf05df1d81a4b82dd[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/16190898.xml", "\"f83c41502dcf09f271a[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/16727535.xml", "\"fdac4d2d16285212d7b[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/17461978.xml", "\"7fae1ec08c81e92bede[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/18676177.xml", "\"91797ca9b3cf3f773c8[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/19058681.xml", "\"fe256a0a77c73725886[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/19554706.xml", "\"956b292a161b87f0712[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/21324258.xml", "\"9b5afdfac7ae94cd6e0[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/21879024.xml", "\"9f43b2633403c7ed7d4[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://twitter.com/users/show/2883841.xml", "\"06a52abef1aee227bb24[...]
Supprimée : user_pref("CommunityToolbar.EngineOwner", "CT2542115");
Supprimée : user_pref("CommunityToolbar.EngineOwnerGuid", "{4daac69c-cba7-45e2-9bc8-1044483d3352}");
Supprimée : user_pref("CommunityToolbar.EngineOwnerToolbarId", "softonic_france");
Supprimée : user_pref("CommunityToolbar.IsEngineShown", true);
Supprimée : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Supprimée : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\DABSIDIK\\AppData\\Roaming\\Mozilla[...]
Supprimée : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.5.0.12");
Supprimée : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2542115");
Supprimée : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{4daac69c-cba7-45e2-9bc8-1044483d3352}");
Supprimée : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "softonic_france");
Supprimée : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://search.imesh.com/web?src=ffb&syst[...]
Supprimée : user_pref("CommunityToolbar.ToolbarsList", "CT2542115,CT2795622,ConduitEngine");
Supprimée : user_pref("CommunityToolbar.ToolbarsList2", "CT2542115,CT2795622");
Supprimée : user_pref("CommunityToolbar.ToolbarsList4", "CT2795622");
Supprimée : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Thu Jul 28 2011 21:30:15 GMT+02[...]
Supprimée : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Supprimée : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Sun Sep 25 2011 12:40:49 GMT+0200");
Supprimée : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Supprimée : user_pref("CommunityToolbar.alert.locale", "en");
Supprimée : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Supprimée : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Sun Sep 25 2011 12:40:41 GMT+0200");
Supprimée : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1313487611");
Supprimée : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Supprimée : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Supprimée : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Supprimée : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Supprimée : user_pref("CommunityToolbar.alert.userId", "29e7067b-a7c5-4e61-ac99-0a7e1ea4645a");
Supprimée : user_pref("CommunityToolbar.globalUserId", "498691cf-055f-40d1-986c-5c62f3bb099b");
Supprimée : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Supprimée : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Supprimée : user_pref("CommunityToolbar.keywordURLSelectedCTID", "CT2795622");
Supprimée : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Sat Feb 11 2012 14:19:3[...]
Supprimée : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
Supprimée : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sat Feb 11 2012 14:19:36 GMT+000[...]
Supprimée : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Supprimée : user_pref("CommunityToolbar.notifications.locale", "en");
Supprimée : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
Supprimée : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Sat Feb 11 2012 14:19:28 GMT+0000");
Supprimée : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
Supprimée : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Supprimée : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Supprimée : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Supprimée : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Supprimée : user_pref("CommunityToolbar.notifications.userId", "09fba49b-7560-47b3-af0e-5399ecaa1470");
Supprimée : user_pref("CommunityToolbar.twitter.user_15846407.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_16190898.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_16727535.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_17461978.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_18676177.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_19058681.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_19554706.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_21324258.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_21879024.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200[...]
Supprimée : user_pref("CommunityToolbar.twitter.user_2883841.LastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200"[...]
Supprimée : user_pref("ConduitEngine.AppTrackingLastCheckTime", "Sun Sep 25 2011 12:41:14 GMT+0200");
Supprimée : user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200");
Supprimée : user_pref("ConduitEngine.FirstServerDate", "07/28/2011 22");
Supprimée : user_pref("ConduitEngine.FirstTime", true);
Supprimée : user_pref("ConduitEngine.FirstTimeFF3", true);
Supprimée : user_pref("ConduitEngine.HasUserGlobalKeys", true);
Supprimée : user_pref("ConduitEngine.HideEngineAfterRestart", true);
Supprimée : user_pref("ConduitEngine.Initialize", true);
Supprimée : user_pref("ConduitEngine.InitializeCommonPrefs", true);
Supprimée : user_pref("ConduitEngine.InstalledDate", "Thu Jul 28 2011 21:30:50 GMT+0200");
Supprimée : user_pref("ConduitEngine.IsMulticommunity", false);
Supprimée : user_pref("ConduitEngine.IsOpenThankYouPage", false);
Supprimée : user_pref("ConduitEngine.IsOpenUninstallPage", true);
Supprimée : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200");
Supprimée : user_pref("ConduitEngine.LastLogin_3.3.3.2", "Sun Sep 25 2011 12:41:04 GMT+0200");
Supprimée : user_pref("ConduitEngine.PublisherContainerWidth", 0);
Supprimée : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
Supprimée : user_pref("ConduitEngine.SettingsLastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200");
Supprimée : user_pref("ConduitEngine.UserID", "UN24845453557222330");
Supprimée : user_pref("ConduitEngine.engineLocale", "fr");
Supprimée : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Sun Sep 25 2011 12:41:04 GMT+0200");
Supprimée : user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Sun Sep 25 2011 12:41:06 GMT+0200");
Supprimée : user_pref("ConduitEngine.initDone", true);
Supprimée : user_pref("ConduitEngine.isAppTrackingManagerOn", true);
Supprimée : user_pref("ConduitEngine.usagesFlag", 2);
Supprimée : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
Supprimée : user_pref("browser.search.defaultthis.engineName", "midicair Customized Web Search");
Supprimée : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2795622&Sea[...]
Supprimée : user_pref("browser.search.order.1", "Search the web (Babylon)");
Supprimée : user_pref("extensions.BabylonToolbar.bbDpng", 5);
Supprimée : user_pref("extensions.BabylonToolbar.firstRun", false);
Supprimée : user_pref("extensions.BabylonToolbar.lastActv", "5");
Supprimée : user_pref("extensions.BabylonToolbar.lastDP", 5);
Supprimée : user_pref("extensions.enabledItems", "toolbar@ask.com:3.14.1.100010,{635abd67-4fe9-1b23-4f01-e679fa7[...]
Supprimée : user_pref("extensions.facemoods.aflt", "_#bf");
Supprimée : user_pref("extensions.facemoods.firstRun", false);
Supprimée : user_pref("extensions.facemoods.lastActv", "25");
Supprimée : user_pref("winamp_toolbar.buttons.layout", "skins_btn_wa;plugins_btn_wa;shout_btn_wa;video_btn_wa;ai[...]
Supprimée : user_pref("winamp_toolbar.firsttime.showwindow", false);
Supprimée : user_pref("winamp_toolbar.install.lastTbVersion", "5.6.12.1");
Supprimée : user_pref("winamp_toolbar.metrics.activestampdate", "15");
Supprimée : user_pref("winamp_toolbar.metrics.activestampmonth", "1");
Supprimée : user_pref("winamp_toolbar.metrics.activestampyear", "2010");
Supprimée : user_pref("winamp_toolbar.metrics.originalDate", "15");
Supprimée : user_pref("winamp_toolbar.metrics.originalHours", "15");
Supprimée : user_pref("winamp_toolbar.metrics.originalMinutes", "32");
Supprimée : user_pref("winamp_toolbar.metrics.originalMonth", "2");
Supprimée : user_pref("winamp_toolbar.metrics.originalSeconds", "8");
Supprimée : user_pref("winamp_toolbar.metrics.originalYear", "2010");
Supprimée : user_pref("winamp_toolbar.search.populateoncomplete", false);
Supprimée : user_pref("winamp_toolbar.search.searchtype", "web");
Supprimée : user_pref("winamp_toolbar.search.source", "tb50ffwinamp");
Supprimée : user_pref("winamp_toolbar.strbundle.msg", "Winamp Toolbar");
Supprimée : user_pref("winamp_toolbar.upgrade.showwindow", false);
Supprimée : user_pref("winamp_toolbar.winamp.appversion", "20567");
Supprimée : user_pref("winamp_toolbar.winamp.artist", "");
Supprimée : user_pref("winamp_toolbar.winamp.title", "-999999");
Supprimée : user_pref("winamp_toolbar.winamp.tracklength", "-999999");
Supprimée : user_pref("winamp_toolbar.winamp.tracktime", "-999999");
Supprimée : user_pref("winamp_toolbar.winamp.volume", "247");
Supprimée : user_pref("browser.search.defaultenginename", "Search the web (Babylon)");

-\\ Google Chrome v [Impossible d'obtenir la version]

Fichier : C:\Users\DABSIDIK\AppData\Local\Google\Chrome\User Data\Default\Preferences

Supprimée :       "name": "Web Search",
Supprimée :       "search_url": "hxxp://www.searchqu.com//web?src=crb&appid=0&systemid=410&sr=0&q={searchTerms}"[...]
Supprimée :                "explicit_host": [ "hxxp://*.facemoods.com/*" ],
Supprimée :                   "css": [ "style/facemoods_chrome_1.0.1.css" ],
Supprimée :                "name": "Facemoods",
Supprimée :                "permissions": [ "tabs", "cookies", "hxxp://*.facemoods.com/" ],
Supprimée :                "update_url": "hxxp://facemoods.com/public/download/chrome/update.xml",
Supprimée :    "homepage": "hxxp://www.searchqu.com/410",
Supprimée :          "name": "Winamp Application Detector",
Supprimée :          "name": "Winamp Application Detector"

*************************

AdwCleaner[S1].txt - [66578 octets] - [27/02/2012 21:03:40]

########## EOF - C:\AdwCleaner[S1].txt - [66707 octets] ##########
Dernière édition par EinsteinZero le 28 Fév 2012 10:23, édité 1 fois.
Raison: ajout balise "code"
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 28 Fév 2012 00:23

voici le rapport Ad-R



Code: Tout sélectionner
======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 =======

Mis à jour par TeamXscript le 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 22:42:24 le 27/02/2012, Mode normal

Microsoft Windows 7 Édition Familiale Premium   (X86)
DABSIDIK@DABSIDIK-PC (SAMSUNG ELECTRONICS CO., LTD. R519/R719)
 
============== ACTION(S) ==============


Fichier supprimé: C:\Program Files\Mozilla FireFox\searchplugins\iMeshWebSearch.xml
Fichier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Mozilla\FireFox\Profiles\tnztp8w5.default\prefs.js.ask.bak
Dossier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Mozilla\FireFox\Profiles\tnztp8w5.default\extensions\firefox@bandoo.com
Dossier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Mozilla\FireFox\Profiles\tnztp8w5.default\extensions\{28D35620-51D9-11DE-9D13-2DB156D89593}
Dossier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Mozilla\FireFox\Profiles\tnztp8w5.default\iMeshMediabarTb
Fichier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Mozilla\FireFox\Profiles\tnztp8w5.default\searchplugins\iMeshWebSearch.xml
Dossier supprimé: C:\Users\Invité\AppData\Roaming\Mozilla\FireFox\Profiles\r2yf2boi.default\extensions\{99079A25-328F-4BD4-BE04-00955ACAA0A7}
Dossier supprimé: C:\Users\Invité\AppData\Roaming\Mozilla\FireFox\Profiles\r2yf2boi.default\extensions\{28D35620-51D9-11DE-9D13-2DB156D89593}
Dossier supprimé: C:\Users\Invité\AppData\Roaming\Mozilla\FireFox\Profiles\r2yf2boi.default\iMeshMediabarTb
Fichier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\imesh.lnk
Dossier supprimé: C:\Users\Invité\AppData\Roaming\Bandoo
Dossier supprimé: C:\Users\Invité\AppData\Roaming\freeTVRadio
Dossier supprimé: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TorrentSpeeder
Dossier supprimé: C:\Program Files\TorrentSpeeder
Dossier supprimé: C:\Users\DABSIDIK\AppData\Local\iMesh
Dossier supprimé: C:\Program Files\iMesh Applications
Dossier supprimé: C:\Users\DABSIDIK\AppData\LocalLow\iMeshMediabarTb
Fichier supprimé: C:\Users\DABSIDIK\Downloads\freeTVRadio-setup.exe

(!) -- Fichiers temporaires supprimés.


Clé supprimée: HKLM\Software\Classes\CLSID\{01AD9322-02FF-4f4f-AC52-92FDA5AE65F0}
Clé supprimée: HKLM\Software\Classes\CLSID\{148132E6-626D-4A5E-8063-A761EB29A50B}
Clé supprimée: HKLM\Software\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Clé supprimée: HKLM\Software\Classes\CLSID\{23BDC78C-B7BB-42E5-B970-54B292592D72}
Clé supprimée: HKLM\Software\Classes\AppID\{69E54DE2-C4ED-4BEC-8046-E3F9AC74B4B0}
Clé supprimée: HKLM\Software\Classes\CLSID\{2656B92B-0207-4afb-BEBF-F5FD231ECD39}
Clé supprimée: HKLM\Software\Classes\CLSID\{27BF8F8D-58B8-D41C-F913-B7EEB57EF6F6}
Clé supprimée: HKLM\Software\Classes\AppID\{A7DDCBDE-5C86-415c-8A37-763AE183E7E4}
Clé supprimée: HKLM\Software\Classes\CLSID\{2C353E32-B8AC-4B82-B988-4C2D3394388A}
Clé supprimée: HKLM\Software\Classes\AppID\{969D2C61-9B16-407c-86B7-397BF4579BE6}
Clé supprimée: HKLM\Software\Classes\CLSID\{34CB0620-E343-4772-BBA8-D3074BC47516}
Clé supprimée: HKLM\Software\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Clé supprimée: HKLM\Software\Classes\CLSID\{412CD209-DDA4-4275-8C79-55F1C93FBD47}
Clé supprimée: HKLM\Software\Classes\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{474597C5-AB09-49d6-A4D5-2E8D7341384E}
Clé supprimée: HKLM\Software\Classes\CLSID\{59570C1F-B692-48c9-91B4-7809E6945287}
Clé supprimée: HKLM\Software\Classes\CLSID\{5D637FAD-E202-48D1-8F18-5B9C459BD1E3}
Clé supprimée: HKLM\Software\Classes\CLSID\{5D9E7BE9-95E5-4392-8CD2-D82DE89589ED}
Clé supprimée: HKLM\Software\Classes\CLSID\{63A0F7FA-2C95-4d7e-AF25-EFCC303D20A1}
Clé supprimée: HKLM\Software\Classes\CLSID\{6559E502-6EE1-46b8-A83C-F3A45BDA23EE}
Clé supprimée: HKLM\Software\Classes\CLSID\{69D3F709-9DE2-479F-980F-532D46895703}
Clé supprimée: HKLM\Software\Classes\Interface\{69D3F709-9DE2-479F-980F-532D46895703}
Clé supprimée: HKLM\Software\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Clé supprimée: HKLM\Software\Classes\CLSID\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7C3B01BC-53A5-48A0-A43B-0C67731134B9}
Clé supprimée: HKLM\Software\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Clé supprimée: HKLM\Software\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Clé supprimée: HKLM\Software\Classes\CLSID\{87CD3140-EEC0-463F-8872-6E564D9DEDE5}
Clé supprimée: HKLM\Software\Classes\CLSID\{A2858A72-758F-4486-B6A1-7F1DCC0924FA}
Clé supprimée: HKLM\Software\Classes\CLSID\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}
Clé supprimée: HKLM\Software\Classes\CLSID\{B6F8DA9F-2696-419e-A8A3-19BE41EF51BD}
Clé supprimée: HKLM\Software\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Clé supprimée: HKLM\Software\Classes\CLSID\{C63CA8A4-AB4E-49e5-A6C0-33FC86D80205}
Clé supprimée: HKLM\Software\Classes\CLSID\{C6A7847E-8931-4a9a-B4EF-72A91E3CCF4D}
Clé supprimée: HKLM\Software\Classes\CLSID\{D8BFC514-1135-4393-B09A-193D2AAC5037}
Clé supprimée: HKLM\Software\Classes\CLSID\{DD0F1D24-E250-4e93-966C-65615720AEFB}
Clé supprimée: HKLM\Software\Classes\CLSID\{DEF4ED0D-E666-4631-A35A-A634332F0550}
Clé supprimée: HKLM\Software\Classes\CLSID\{EC1277BB-1C71-4c0d-BA6D-BFEA16E773A6}
Clé supprimée: HKLM\Software\Classes\CLSID\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé supprimée: HKLM\Software\Classes\Interface\{F42C7B47-5234-4BF5-8882-DAAC0D64870D}
Clé supprimée: HKLM\Software\Classes\CLSID\{F8AB43ED-EC88-4de7-B213-F89157D29C62}
Clé supprimée: HKLM\Software\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Clé supprimée: HKLM\Software\Classes\CLSID\{FD675817-9EFE-40cd-A75E-E94D1C85D1FE}
Clé supprimée: HKLM\Software\Classes\Interface\{EEE36D94-CAE8-46B2-902E-DB43E6DEA239}
Clé supprimée: HKLM\Software\Classes\Interface\{F7BEBBB1-7E6B-4561-9444-6F4866D60C7C}
Clé supprimée: HKLM\Software\Classes\TypeLib\{252C2315-CCE0-4446-8DA7-C00292A690BA}
Clé supprimée: HKLM\Software\Classes\TypeLib\{2D77AC8A-0A4C-40D0-9557-51907A575E45}
Clé supprimée: HKLM\Software\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Clé supprimée: HKLM\Software\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Clé supprimée: HKLM\Software\Classes\TypeLib\{85672EDB-2CC8-40B9-A9E8-77D3478F2EFB}
Clé supprimée: HKLM\Software\Classes\TypeLib\{969D2C61-9B16-407C-86B7-397BF4579BE6}
Clé supprimée: HKLM\Software\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}
Clé supprimée: HKLM\Software\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}
Clé supprimée: HKLM\Software\Classes\TypeLib\{ADEA3C4E-2184-40A2-9556-488456427E80}
Clé supprimée: HKLM\Software\Classes\TypeLib\{C4C4F1F4-3074-4CB6-9FB8-0A64273166F0}
Clé supprimée: HKLM\Software\Classes\TypeLib\{EC96F516-51B2-4B46-8451-8665F5A6BA2B}
Clé supprimée: HKLM\Software\Classes\TypeLib\{F07FBD3E-2048-44A4-9065-71BF551E2672}
Clé supprimée: HKLM\Software\Classes\DiscoveryHelper.iMesh6Discovery
Clé supprimée: HKLM\Software\Classes\DiscoveryHelper.iMesh6Discovery.1
Clé supprimée: HKLM\Software\Classes\iMesh.AudioCD
Clé supprimée: HKLM\Software\Classes\iMesh.Device
Clé supprimée: HKLM\Software\Classes\iMesh.file
Clé supprimée: HKLM\Software\Classes\iMesh.LauncherEventHandler
Clé supprimée: HKLM\Software\Classes\iMesh.LauncherEventHandler.1
Clé supprimée: HKLM\Software\Classes\iMeshIEHelper.DNSGuard
Clé supprimée: HKLM\Software\Classes\iMeshIEHelper.DNSGuard.1
Clé supprimée: HKLM\Software\iMesh
Clé supprimée: HKCU\Software\iMesh
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0ABE0FED-50E7-4e42-A125-57C0A11DBCDE}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28D35620-51D9-11DE-9D13-2DB156D89593}
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Imesh
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\iMesh MediaBar

Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{ABB49B3B-AB7D-4ED0-9135-93FD5AA4F69F}


============== SCAN ADDITIONNEL ==============

**** Mozilla Firefox Version [3.6.13 (fr)] ****

Plugins\npwachk.dll (Nullsoft, Inc.)
HKCU_MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin (x)
Searchplugins\fcmdSrchppcb.xml (hxxp://start.facemoods.com/?a=ppcb&f=4&q={searchTerms}/)
Searchplugins\McSiteAdvisor.xml (   hxxp://search.yahoo.com/search)
Extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} (Skype Click to Call)

-- C:\Users\DABSIDIK\AppData\Roaming\Mozilla\FireFox\Profiles\tnztp8w5.default --
Extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}-trash (?)
Extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352} (Softonic_France Community Toolbar)
Extensions\{77f8c945-4b74-4bd6-a073-e0d1997edce8} (midicair Community Toolbar)
Searchplugins\winamp-search.xml (?)
Prefs.js - browser.search.selectedEngine, Google
Prefs.js - browser.startup.homepage, hxxp://search.imesh.com/
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.13
Prefs.js - keyword.URL, hxxp://search.imesh.com/web?src=ffb&systemid=1&q=

-- C:\Users\Invité\AppData\Roaming\Mozilla\FireFox\Profiles\r2yf2boi.default --
Prefs.js - browser.search.defaultenginename, Recherche sécurisée
Prefs.js - browser.search.defaulturl, hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=15627
Prefs.js - browser.search.selectedEngine, iMesh Web Search
Prefs.js - browser.startup.homepage, hxxp://search.imesh.com/
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.13
Prefs.js - keyword.URL, hxxp://search.imesh.com/web?src=ffb&systemid=1&q=

========================================

**** Internet Explorer Version [9.0.8112.16421] ****

HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - "Eazel-FR Toolbar" (C:\Program Files\Eazel-FR\tbEaz1.dll) (x)
HKCU_URLSearchHooks|{1c491116-c175-45e1-a570-6fb14fea8b7b} - "PHPNukeFR Toolbar" (C:\Program Files\PHPNukeFR\tbPHPN.dll)
HKCU_URLSearchHooks|{4daac69c-cba7-45e2-9bc8-1044483d3352} - "Softonic_France Toolbar" (C:\Program Files\Softonic_France\tbSoft.dll)
HKCU_URLSearchHooks|{77f8c945-4b74-4bd6-a073-e0d1997edce8} - "midicair Toolbar" (C:\Program Files\midicair\prxtbmid0.dll)
HKLM_URLSearchHooks|{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - "Eazel-FR Toolbar" (C:\Program Files\Eazel-FR\tbEaz1.dll) (x)
HKLM_URLSearchHooks|{1c491116-c175-45e1-a570-6fb14fea8b7b} - "PHPNukeFR Toolbar" (C:\Program Files\PHPNukeFR\tbPHPN.dll)
HKLM_URLSearchHooks|{4daac69c-cba7-45e2-9bc8-1044483d3352} - "Softonic_France Toolbar" (C:\Program Files\Softonic_France\tbSoft.dll)
HKLM_URLSearchHooks|{77f8c945-4b74-4bd6-a073-e0d1997edce8} - "midicair Toolbar" (C:\Program Files\midicair\prxtbmid0.dll)
HKCU_SearchScopes\{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - "Web Search..." (hxxp://gb.toolbarhome.com/search.aspx?q={searchTerms}&srch=dsp)
HKCU_Toolbar\WebBrowser|{EBF2BA02-9094-4C5A-858B-BB198F3D8DE2} (x)
HKCU_Toolbar\WebBrowser|{A8F9752D-E2B8-4E7A-86B5-499F4330E2FE} (C:\Program Files\Eazel-FR\tbEaz1.dll) (x)
HKCU_Toolbar\WebBrowser|{1C491116-C175-45E1-A570-6FB14FEA8B7B} (C:\Program Files\PHPNukeFR\tbPHPN.dll)
HKCU_Toolbar\WebBrowser|{4DAAC69C-CBA7-45E2-9BC8-1044483D3352} (C:\Program Files\Softonic_France\tbSoft.dll)
HKCU_Toolbar\WebBrowser|{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} (C:\Program Files\GameBox\gamebox_toolbar.dll)
HKCU_Toolbar\WebBrowser|{77F8C945-4B74-4BD6-A073-E0D1997EDCE8} (C:\Program Files\midicair\prxtbmid0.dll)
HKLM_Toolbar|{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} (C:\Program Files\Eazel-FR\tbEaz1.dll) (x)
HKLM_Toolbar|{1c491116-c175-45e1-a570-6fb14fea8b7b} (C:\Program Files\PHPNukeFR\tbPHPN.dll)
HKLM_Toolbar|{4daac69c-cba7-45e2-9bc8-1044483d3352} (C:\Program Files\Softonic_France\tbSoft.dll)
HKLM_Toolbar|{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} (C:\Program Files\GameBox\gamebox_toolbar.dll)
HKLM_Toolbar|{77f8c945-4b74-4bd6-a073-e0d1997edce8} (C:\Program Files\midicair\prxtbmid0.dll)
HKLM_Toolbar|{8dcb7100-df86-4384-8842-8fa844297b3f} ("C:\Program Files\Microsoft\BingBar\BingExt.dll") (x)
HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)
HKCU_ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} - C:\Users\DABSIDIK\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe (Skype Limited)
HKCU_ElevationPolicy\{8E66592B-8E7C-4A14-88A5-8BF21032F651} - C:\PROGRA~1\Yahoo!\companion\installs\cpn\ytbb.exe (x)
HKCU_ElevationPolicy\{A3161B38-E58A-4CF1-A08E-ED408093B7B4} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ytbb.exe (x)
HKLM_ElevationPolicy\${ELV_GUID} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe (x)
HKLM_ElevationPolicy\7d501c5b-0977-4d5a-8d62-16cff8c56e08 - C:\Program Files\Eazel-FR\Eazel-FRToolbarHelper.exe (x)
HKLM_ElevationPolicy\839bc83a-237b-4582-b0f0-607117c6e7e6 - C:\Program Files\PHPNukeFR\PHPNukeFRToolbarHelper.exe (?)
HKLM_ElevationPolicy\c5067391-2506-4856-99f0-f34b949df4dd - C:\Program Files\Eazel-FR\Eazel-FRToolbarHelper.exe (x)
HKLM_ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a} - C:\Windows\System32\wpcer.exe (x)
HKLM_ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695} - C:\Windows\System32\winfxdocobj.exe (x)
HKLM_ElevationPolicy\{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - C:\Program Files\GameBox\lip.exe (?)
HKLM_ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA} - C:\Users\DABSIDIK\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe (Skype Limited)
HKLM_ElevationPolicy\{268B5304-C902-42AF-ADBF-E942247F3088} - C:\Program Files\midicair\midicairToolbarHelper1.exe (?)
HKLM_ElevationPolicy\{2E95AB84-3AAC-44BE-9865-6F145EA91A84} - C:\Users\DABSIDIK\AppData\Local\Conduit\CT2795622\midicairAutoUpdateHelper.exe (x)
HKLM_ElevationPolicy\{3735340D-E2E6-4178-83F4-E0F050F8F028} - C:\PROGRA~1\WIA6EB~1\Datamngr\ToolBar\dtUser.exe (x)
HKLM_ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999} - C:\Program Files\Internet Explorer\iedw.exe (x)
HKLM_ElevationPolicy\{9F2D1A06-AF70-4A2E-B5DF-D3CD1A67E098} - C:\windows\system32\s\dopdfc (x)
HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (x)
HKLM_ElevationPolicy\{aa851425-0109-43f3-9ed2-7b7090125861} - C:\Program Files\Microsoft\BingBar\BingBar.exe (Microsoft Corporation.)
HKLM_ElevationPolicy\{ADADAEE2-457A-4984-A57C-E01C3A2BA612} - c:\program files\winamp toolbar\WinampTbServer.exe (x)
HKLM_ElevationPolicy\{EC198381-B0D5-4B07-AE11-65FA2371A8A7} - C:\PROGRA~1\WI3C8A~1\Datamngr\ToolBar\dtUser.exe (x)
HKLM_Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - "Translate this web page with Babylon" (C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll,202)
BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?)
BHO\{0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - "GameBox Toolbar" (C:\Program Files\GameBox\gamebox_toolbar.dll)
BHO\{1c491116-c175-45e1-a570-6fb14fea8b7b} - "PHPNukeFR Toolbar" (C:\Program Files\PHPNukeFR\tbPHPN.dll)
BHO\{4daac69c-cba7-45e2-9bc8-1044483d3352} - "Softonic_France Toolbar" (C:\Program Files\Softonic_France\tbSoft.dll)
BHO\{77f8c945-4b74-4bd6-a073-e0d1997edce8} - "midicair Toolbar" (C:\Program Files\midicair\prxtbmid0.dll)
BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll)
BHO\{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - "Eazel-FR Toolbar" (C:\Program Files\Eazel-FR\tbEaz1.dll) (x)
BHO\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - "Skype Browser Helper" (C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll)
BHO\{bf00e119-21a3-4fd1-b178-3b8537e75c92} - "IeMonitorBho Class" (C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll)
BHO\{d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "Bing Bar Helper" ("C:\Program Files\Microsoft\BingBar\BingExt.dll") (x)

========================================

C:\Program Files\Ad-Remover\Quarantine: 2045 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 14 Fichier(s)

C:\Ad-Report-CLEAN[1].txt - 27/02/2012 22:43:32 (17707 Octet(s))

Fin à: 22:47:46, 27/02/2012
 
============== E.O.F ==============
Dernière édition par EinsteinZero le 28 Fév 2012 10:24, édité 1 fois.
Raison: Ajout balises "code"
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 28 Fév 2012 00:32

zhDIAG




Rapport de ZHPDiag v1.28.32 par Nicolas Coolman, Update du 05/02/2012
Run by DABSIDIK at 2/27/2012 11:25:21 PM
Web site : http://www.premiumorange.com/zeb-help-p ... pdiag.html
Web site : http://nicolascoolman.skyrock.com/
State : Version à jour.


---\\ Web Browser
MSIE: Internet Explorer v9.0.8112.16421
MFIE: Mozilla Firefox v3.6.13 (fr) (Defaut)
GCIE: Google Chrome v17.0.963.56
OBIE: Safari v5.33.18.5

---\\ Windows Product Information
~ Langage: Français
Windows 7 Home Premium Edition, 32-bit (Build 7600)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 2BT4J
Windows License : OK
~ Windows Remaining Initializations Number : 3
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3036.6 MB (69% free)
System Restore: Activé (Enable)
System drive C: has 30 GB (27%) free of 109 GB

---\\ Logged in mode
~ Computer Name: DABSIDIK-PC
~ User Name: DABSIDIK
~ All Users Names: HomeGroupUser$, DABSIDIK, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\DABSIDIK\AppData\Roaming\
~ %Desktop% : C:\Users\DABSIDIK\Desktop\
~ %Favorites% : C:\Users\DABSIDIK\Favorites\
~ %LocalAppData% : C:\Users\DABSIDIK\AppData\Local\
~ %StartMenu% : C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\windows\
~ %System% : C:\windows\system32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 30 Go of 109 Go)
D:\ Hard drive, Flash drive, Thumb drive (Free 109 Go of 109 Go)
E:\ CD-ROM drive (Not Inserted)
G:\ CD-ROM drive (Not Inserted)



---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyComputer: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : Out Of Date
~ Scan Security Center in 00mn AMs



---\\ Recherche particulière de fichiers génériques
[MD5.2AF58D15EDC06EC6FDACCE1F19482BBF] - (.Microsoft Corporation - Explorateur Windows.) (.2/26/2011 - 5:33:07 AM.) -- C:\windows\Explorer.exe [2614784]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) (.7/14/2009 - 1:14:31 AM.) -- C:\windows\system32\rundll32.exe [44544]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.7/14/2009 - 1:14:45 AM.) -- C:\windows\system32\Wininit.exe [96256]
[MD5.1D94FA7C81D2FFE494AF094619BA706F] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.2/15/2012 - 6:31:22 AM.) -- C:\windows\system32\wininet.dll [1127424]
[MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.10/28/2009 - 6:17:59 AM.) -- C:\windows\system32\Winlogon.exe [285696]
[MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - (.Microsoft Corporation - Bibliothèque de licences.) (.7/14/2009 - 1:16:15 AM.) -- C:\windows\system32\sppcomapi.dll [193024]
[MD5.D8714A5FB3141F8226D16861F20C5AC4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows multi-utilisateurs.) (.9/26/2009 - 12:44:42 AM.) -- C:\windows\system32\fr-FR\user32.dll.mui [19968]
[MD5.0DB7A48388D54D154EBEC120461A0FCD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.4/25/2011 - 2:35:40 AM.) -- C:\windows\system32\drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.7/14/2009 - 1:26:15 AM.) -- C:\windows\system32\drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.7/13/2009 - 11:11:15 PM.) -- C:\windows\system32\drivers\Cdfs.sys [70656]
[MD5.BA6E70AA0E6091BC39DE29477D866A77] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.7/13/2009 - 11:11:26 PM.) -- C:\windows\system32\drivers\Cdrom.sys [108544]
[MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.4/27/2011 - 2:33:46 AM.) -- C:\windows\system32\drivers\DfsC.sys [78336]
[MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.7/13/2009 - 11:50:56 PM.) -- C:\windows\system32\drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.7/13/2009 - 11:11:24 PM.) -- C:\windows\system32\drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.7/13/2009 - 11:54:29 PM.) -- C:\windows\system32\drivers\IpNat.sys [101888]
[MD5.CA7570E42522E24324A12161DB14EC02] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.5/4/2011 - 2:43:41 AM.) -- C:\windows\system32\drivers\MRxSmb.sys [123392]
[MD5.DD52A733BF4CA5AF84562A5E2F963B91] - (.Microsoft Corporation - MBT Transport driver.) (.7/13/2009 - 11:12:21 PM.) -- C:\windows\system32\drivers\netBT.sys [187904]
[MD5.187002CE05693C306F43C873F821381F] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.3/11/2011 - 5:44:01 AM.) -- C:\windows\system32\drivers\ntfs.sys [1210240]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.7/13/2009 - 11:45:35 PM.) -- C:\windows\system32\drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.7/13/2009 - 11:54:34 PM.) -- C:\windows\system32\drivers\Rasl2tp.sys [78848]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.7/13/2009 - 11:53:41 PM.) -- C:\windows\system32\drivers\smb.sys [71168]
[MD5.CB39E896A2A83702D1737BFD402B3542] - (.Microsoft Corporation - TDI Translation Driver.) (.7/13/2009 - 11:12:11 PM.) -- C:\windows\system32\drivers\tdx.sys [74240]
[MD5.58DF9D2481A56EDDE167E51B334D44FD] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.7/14/2009 - 1:19:10 AM.) -- C:\windows\system32\drivers\volsnap.sys [245328]
~ Scan Generic Processes in 00mn AMs



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes musiques (My Musics) : 113/606
~ Mes Videos (My Videos) : 5/46
~ Mes Favoris (My Favorites) : Non accessible (Not found)
~ Mes Documents (My Documents) : 8/206
~ Mon Bureau (My Desktop) : 80/1012
~ Menu demarrer (Programs) : 7/52
~ Scan Hidden Files in 03mn AMs



---\\ Processus lancés
[MD5.A765B211BD4CF9EA4049B2000B2B9316] - (.Samsung Electronics Co., Ltd. - Easy Display Manager.) -- C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe [832512] [PID.2444]
[MD5.32684C43110CCB4206640F5B0EA8DA94] - (.SEC - Samsung Recovery Solution 4.) -- C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2242048] [PID.2484]
[MD5.64DC778A1447D73CD87F3480AB8381C3] - (.SAMSUNG Electronics - SSCKbdHk.) -- C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe [93184] [PID.2492]
[MD5.BB25D9B9D206C75C18072078179EEAF8] - (.Samsung Electronics Co., Ltd. - EasySpeedUpManager.) -- C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [716800] [PID.2500]
[MD5.F50CA00F1929D9294FE01894D0168A7F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7711264] [PID.2872]
[MD5.70189D91A5347F5E34039D06C7E58419] - (.Yahoo! Inc - Yahoo! Application.) -- C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [111856] [PID.2936]
[MD5.FB0C8699B87F7140BB6201BE7B4B6778] - (.Pas de propriétaire - CameraMonitor Application.) -- C:\Windows\vsnpstd3.exe [827392] [PID.2980]
[MD5.2AAE7E9DA3F95C63C96FE3B690A68F76] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4031368] [PID.3088]
[MD5.6E3245DF783E58375B3465F03274743E] - (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254696] [PID.3128]
[MD5.F4D0446BA874917354801F210E66F545] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [421736] [PID.3220]
[MD5.F15E6014E812A5E2CD469FCF5682C0E1] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files\Real\RealPlayer\Update\realsched.exe [296056] [PID.3520]
[MD5.F02A533F517EB38333CB12A9E8963773] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\GoogleUpdate.exe [136176] [PID.4004]
[MD5.F0EA603E7B91046CA48EA4B3593A007D] - (.Micro Application - Pas de description.) -- C:\Program Files\Micro Application\LauncherMA.exe [485376] [PID.3100]
[MD5.32C26797AB646074A2BB562F9D10ADB5] - (.Microsoft Corporation - Microsoft Office OneNote Quick Launcher.) -- C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [97680] [PID.2276]
[MD5.997E8C0C55376710BFBA4013AE2AC678] - (.Raptr, Inc - Raptr Client.) -- C:\PROGRA~1\Raptr\raptr.exe [65448] [PID.4492]
[MD5.D2BF309143D2493F775B9D1029F946FF] - (.Raptr, Inc - Raptr Client.) -- C:\PROGRA~1\Raptr\raptr_im.exe [43944] [PID.4768]
[MD5.B0DA80FF42A0819D162A86612896AAF2] - (.Microsoft Corporation - Windows Update.) -- C:\windows\system32\wuauclt.exe [47104] [PID.1896]
[MD5.88156BBA7DF86C9F4921FE098A7488D1] - (.Pas de propriétaire - Samsung Update Plus.) -- C:\PROGRA~1\samsung\SAMSUN~2\SUPNOT~1.EXE [650920] [PID.656]
[MD5.4309B75F125067EF805F3125B01FCC30] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [2210816] [PID.1456]
~ Scan Processes Running in 02mn AMs



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\DABSIDIK\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://www.searchqu.com
G2 - GCE: Preference [User Data\Default] [jfmjfhklogoienhpfnppmbcbjfjnkonk] RealPlayer HTML5Video Downloader Extension v.1.5 (Activé)
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call v.5.8.0.8855 (Activé)
~ Scan Google Browser in 00mn AMs



---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\prefs.js
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\searchplugins\bing.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Users\DABSIDIK\AppData\Roaming\Mozilla\Firefox\Profiles\tnztp8w5.default\searchplugins\winamp-search.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\fcmdSrchppcb.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\McSiteAdvisor.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml
M3 - MFPP: Plugins - [DABSIDIK] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml
M0 - MFSP: prefs.js [DABSIDIK - tnztp8w5.default] http://search.imesh.com
M2 - MFEP: prefs.js [DABSIDIK - tnztp8w5.default\{4daac69c-cba7-45e2-9bc8-1044483d3352}] [] Softonic_France Community Toolbar v3.3.3.2 (.Conduit Ltd..)
M2 - MFEP: prefs.js [DABSIDIK - tnztp8w5.default\{635abd67-4fe9-1b23-4f01-e679fa7484c1}] [yahoo.ytff] Yahoo! Toolbar v2.1.1.20091029021655 (.Yahoo!.)
M2 - MFEP: prefs.js [DABSIDIK - tnztp8w5.default\{77f8c945-4b74-4bd6-a073-e0d1997edce8}] [] midicair Community Toolbar v3.5.0.12 (.Conduit Ltd..)
P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java(TM) Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll
P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll
P2 - FPN:Firefox Plugin Navigator . (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files\Mozilla Firefox\Plugins\NPOFF12.DLL
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Mozilla Firefox\Plugins\nppl3260.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll
P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Mozilla Firefox\Plugins\nprjplug.dll
P2 - FPN:Firefox Plugin Navigator . (.RealNetworks, Inc. - 15.0.0.198.) -- C:\Program Files\Mozilla Firefox\Plugins\nprpjplug.dll
P2 - FPN:Firefox Plugin Navigator . (.Nullsoft, Inc. - Winamp Application Detector.) -- C:\Program Files\Mozilla Firefox\Plugins\npwachk.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.5.) -- C:\Windows\System32\Adobe\Director\np32dsw.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_27 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.1.10111.0.) -- C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
P2 - FPN: [HKLM] [@microsoft.com/OfficeLive,version=1.5] - (.Microsoft Corp. - Office Live Update v1.5.) -- C:\Program Files\Microsoft\Office Live\npOLW.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
P2 - FPN: [HKLM] [@real.com/nppl3260;version=15.0.0.198] - (.RealNetworks, Inc. - RealPlayer(tm) LiveConnect-Enabled Plug-In.) -- C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=15.0.0.198] - (.RealNetworks, Inc. - RealJukebox Netscape Plugin.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpchromebrowserrecordext;version=15.0.0.198] - (.RealNetworks, Inc. - RealNetworks(tm) RealPlayer Chrome Background Extension Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserre
P2 - FPN: [HKLM] [@real.com/nprphtml5videoshim;version=15.0.0.198] - (.RealNetworks, Inc. - RealPlayer(tm) HTML5VideoShim Plug-In.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=15.0.0.198] - (.RealNetworks, Inc. - 15.0.0.198.) -- C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@Skype Limited.com/Facebook Video Calling Plugin] - (.Skype Limited - Facebook Video Calling Plugin.) -- C:\Users\DABSIDIK\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
P2 - FPN: [HKCU] [@talk.google.com/GoogleTalkPlugin] - (.Google - Version 2.6.1.5251.) -- C:\Users\DABSIDIK\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
P2 - FPN: [HKCU] [@talk.google.com/O3DPlugin] - (.Pas de propriétaire - Google Talk Plugin Video Accelerator version:0.1.44.14.) -- C:\Users\DABSIDIK\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll
~ Scan Firefox Browser in 00mn AMs



---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} . (...) (No version) -- C:\Program Files\Eazel-FR\tbEaz1.dll
R3 - URLSearchHook: PHPNukeFR Toolbar - {1c491116-c175-45e1-a570-6fb14fea8b7b} . (.Conduit Ltd. - Conduit Toolbar.) (5, 5, 0, 10) -- C:\Program Files\PHPNukeFR\tbPHPN.dll
R3 - URLSearchHook: Softonic_France Toolbar - {4daac69c-cba7-45e2-9bc8-1044483d3352} . (.Conduit Ltd. - Conduit Toolbar.) (5, 3, 7, 1) -- C:\Program Files\Softonic_France\tbSoft.dll
R3 - URLSearchHook: midicair Toolbar - {77f8c945-4b74-4bd6-a073-e0d1997edce8} . (.Conduit Ltd. - Conduit Toolbar.) (6.4.0.0) -- C:\Program Files\midicair\prxtbmid0.dll
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\System32\ieframe.dll
R3 - URLSearchHook: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} . (...) (No version) -- C:\Program Files\Eazel-FR\tbEaz1.dll
R3 - URLSearchHook: PHPNukeFR Toolbar - {1c491116-c175-45e1-a570-6fb14fea8b7b} . (.Conduit Ltd. - Conduit Toolbar.) (5, 5, 0, 10) -- C:\Program Files\PHPNukeFR\tbPHPN.dll
R3 - URLSearchHook: Softonic_France Toolbar - {4daac69c-cba7-45e2-9bc8-1044483d3352} . (.Conduit Ltd. - Conduit Toolbar.) (5, 3, 7, 1) -- C:\Program Files\Softonic_France\tbSoft.dll
R3 - URLSearchHook: midicair Toolbar - {77f8c945-4b74-4bd6-a073-e0d1997edce8} . (.Conduit Ltd. - Conduit Toolbar.) (6.4.0.0) -- C:\Program Files\midicair\prxtbmid0.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
~ Scan IE Browser in 00mn AMs



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn AMs



---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: VMApplet=C:\windows\system32\SystemPropertiesPerformance.exe
~ Scan Keys in 00mn AMs



---\\ Redirection du fichier Hosts (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn AMs
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline
O2 - BHO: GameBox Toolbar - {0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} . (...) -- C:\Program Files\GameBox\gamebox_toolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PHPNukeFR Toolbar - {1c491116-c175-45e1-a570-6fb14fea8b7b} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\PHPNukeFR\tbPHPN.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealPlayer - RealPlayer Download and Record Plugin.) -- C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Softonic_France Toolbar - {4daac69c-cba7-45e2-9bc8-1044483d3352} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\Softonic_France\tbSoft.dll
O2 - BHO: midicair - {77f8c945-4b74-4bd6-a073-e0d1997edce8} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\midicair\prxtbmid0.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} . (...) -- C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} . (.Megaupload Limited - Mega Manager IE Click Catcher.) -- C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files\Microsoft\BingBar\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
~ Scan BHO in 00mn AMs



---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} . (...) -- C:\Program Files\Eazel-FR\tbEaz1.dll
O3 - Toolbar: PHPNukeFR Toolbar - {1c491116-c175-45e1-a570-6fb14fea8b7b} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\PHPNukeFR\tbPHPN.dll
O3 - Toolbar: Softonic_France Toolbar - {4daac69c-cba7-45e2-9bc8-1044483d3352} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\Softonic_France\tbSoft.dll
O3 - Toolbar: GameBox Toolbar - {0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} . (...) -- C:\Program Files\GameBox\gamebox_toolbar.dll
O3 - Toolbar: midicair Toolbar - {77f8c945-4b74-4bd6-a073-e0d1997edce8} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files\midicair\prxtbmid0.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files\Microsoft\BingBar\BingExt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
~ Scan Toolbar in 00mn AMs



---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
O4 - HKLM\..\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Run: [YSearchProtection] . (.Yahoo! Inc - Yahoo! Application.) -- C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKLM\..\Run: [snpstd3] . (.Pas de propriétaire - CameraMonitor Application.) -- C:\Windows\vsnpstd3.exe
O4 - HKLM\..\Run: [avast5] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files\Real\RealPlayer\Update\realsched.exe
O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKCU\..\Run: [Search Protection] . (.Yahoo! Inc - Yahoo! Application.) -- C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [ACID LITE COMP KNOB] . (...) -- C:\ProgramData\dog spam readme.65l9z
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKCU\..\Run: [Raptr] . (.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptrstub.exe
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\DABSIDIK\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [Search Protection] . (.Yahoo! Inc - Yahoo! Application.) -- C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [ACID LITE COMP KNOB] . (...) -- C:\ProgramData\dog spam readme.65l9z
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [Raptr] . (.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptrstub.exe
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\DABSIDIK\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKUS\S-1-5-21-2360047747-3816379452-1845821570-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
~ Scan Application in 00mn AMs



---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\DABSIDIK\Desktop\AD-R.lnk . (...) -- C:\Program Files\Ad-Remover\main.exe
O4 - Global Startup: C:\Users\DABSIDIK\Desktop\Musique - Raccourci.lnk . (...) -- C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Windows\Libraries\Music.library-ms
O4 - Global Startup: C:\Users\DABSIDIK\Desktop\UltraMixer.lnk . (...) -- C:\Program Files\UltraMixer\UltraMixer.exe (.not file.)
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk . (...) -- C:\windows\Installer\{3763A2B4-B07A-4E4D-994D-7D2C6AF0CF9E}\SafariIco.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\aTube Catcher.lnk . (...) -- C:\Program Files\DsNET Corp\aTube Catcher 2.0\yct.exe (.not file.)
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Babylon.lnk . (...) -- C:\Program Files\Babylon\Babylon-Pro\Babylon.exe (.not file.)
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\DS3 Tool.lnk . (.www.motioninjoy.com.) -- C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Easy Audio Cutter.lnk . (.Koyote Soft.) -- C:\Program Files\Free mp3 Wma Converter\Easy Audio Cutter\AudioCutter.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Free CD Ripper.lnk . (.Koyote Soft.) -- C:\Program Files\Free mp3 Wma Converter\Free CD Ripper\FreeCDRipper.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Free Mp3 Wma Converter.lnk . (.Koyote Soft.) -- C:\Program Files\Free mp3 Wma Converter\FreeConverter\FreeConverter.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk . (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\UltraMixer.lnk . (...) -- C:\Program Files\UltraMixer\UltraMixer.exe (.not file.)
O4 - Global Startup: C:\Users\DABSIDIK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Vuze.lnk . (...) -- C:\Program Files\Vuze\Azureus.exe (.not file.)
~ Scan Global Startup in 01mn AMs



---\\ Invisibilité de l'icône d'options IE dans le panneau de Configuration (O5)
O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no
~ Scan IE Control Panel in 00mn AMs



---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: &Winamp Search - (.not file.) - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel . (.Microsoft Corporation - Microsoft Office Excel.) -- C:\Program Files\MICROS~2\Office12\EXCEL.exe
~ Scan IE Menu Contextuel in 00mn AMs



---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} . (.Microsoft Corporation - Windows Live Messenger Companion core resources.) -- C:\Program Files\Windows Live\Companion\companion
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBro
O9 - Extra button: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- C:\Program Files\Skype\Toolbars\Internet Explorer\icon.ico
O9 - Extra button: Skype Click to Call - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO
O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} -- C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (.not file.)
~ Scan IE Extra Buttons in 00mn AMs



---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\System32\nlaapi.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\System32\mswsock.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\System32\winrnr.dll
O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\System32\NapiNSP.dll
O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\System32\pnrpnsp.dll
O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\System32\pnrpnsp.dll
O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDNSP.dll
O10 - WLSP:\000000000009\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll
~ Scan Winsock in 00mn AMs



---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shoc ... tor/sw.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} () - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} (WRC Class) - http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/ph ... dfr-be.cab
~ Scan Objets ActiveX in 00mn AMs



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{E1464D78-B64B-4AE5-97CD-B5B33F0ED9D9}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{E1464D78-B64B-4AE5-97CD-B5B33F0ED9D9}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{E1464D78-B64B-4AE5-97CD-B5B33F0ED9D9}: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Scan Domain in 00mn AMs



---\\ Protocole additionnel (O18)
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: gameboxchrome - {494D4E3B-FA53-4487-8AF6-3F50FE1167A9} . (...) -- C:\Program Files\GameBox\gamebox_toolbar.dll
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\microsoft shared\Help\hxds.dll
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.dll
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll
~ Scan Protocole Additionnel in 01mn AMs



---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
~ Scan SSODL in 00mn AMs



---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\Alwil Software\Avast5\afwServ.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\Windows\System32\FsUsbExService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 186.9.) - C:\Windows\System32\nvvsvc.exe
O23 - Service: Oberon Media Game Console service (OberonGameConsoleService) . (.Pas de propriétaire - OberonGameConsoleService.) - C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe
O23 - Service: ProtexisLicensing (ProtexisLicensing) . (.Pas de propriétaire - nTitles PSIService.) - C:\Windows\System32\PSIService.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Yahoo! Updater (YahooAUService) . (.Yahoo! Inc. - AutoUpater Service Module.) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
~ Scan Services in 00mn AMs



---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn AMs



---\\ BootExecute (O34)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
~ Scan Keys in 00mn AMs



---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000UA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000UA.job
[MD5.32684C43110CCB4206640F5B0EA8DA94] [APT] [advSRS4] (.SEC.) -- C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe
[MD5.A765B211BD4CF9EA4049B2000B2B9316] [APT] [EasyDisplayMgr] (.Samsung Electronics Co., Ltd..) -- C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe
[MD5.FCC7C432FBF465C38FD5D940580EF9B7] [APT] [FacebookUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000Core] (.Facebook Inc..) -- C:\Users\DABSIDIK\AppData\Local\Facebook\Update\FacebookUpdate.exe
[MD5.FCC7C432FBF465C38FD5D940580EF9B7] [APT] [FacebookUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000UA] (.Facebook Inc..) -- C:\Users\DABSIDIK\AppData\Local\Facebook\Update\FacebookUpdate.exe
[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
[MD5.8F0DE4FEF8201E306F9938B0905AC96A] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000Core] (.Google Inc..) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-2360047747-3816379452-1845821570-1000UA] (.Google Inc..) -- C:\Users\DABSIDIK\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.C10C57F42042781B9CE4F0F492B1D5C2] [APT] [RealUpgradeLogonTaskS-1-5-21-2360047747-3816379452-1845821570-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
[MD5.C10C57F42042781B9CE4F0F492B1D5C2] [APT] [RealUpgradeScheduledTaskS-1-5-21-2360047747-3816379452-1845821570-1000] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
[MD5.F012910225786CA83E175D14853F6C02] [APT] [{2E5D655D-DE39-415C-9F61-ECF78B7F2FDD}] (...) -- C:\Program Files\Micro Application\Coffret Naissance\Uninstall.exe
[MD5.00000000000000000000000000000000] [APT] [{3139675F-4401-4799-A5E8-A9BF6EE29049}] (...) -- C:\Program Files\Corel\Corel Paint Shop Pro Photo XI - Installation Files\setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4766F3B8-2850-4D96-970A-303B0A3FD29E}] (...) -- E:\setup.exe (.not file.)
[MD5.4C8E6D189D6E31213FE870B75368EA2B] [APT] [{A25F0AD4-4E36-41D9-AF6C-1FDD55F469BF}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
[MD5.AFC23676286BBC93B63368289EA19949] [APT] [{F9343932-1540-4620-AD4D-2E2A88F0F881}] (...) -- C:\Program Files\BitTorrent\uninst.exe
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
~ Scan Scheduled Task in 06mn AMs



---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - Personnalisation d’IEAK.) -- C:\Windows\System32\iedkcs32.dll
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll
O40 - ASIC: (no name) - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} . (.Microsoft Corporation - Microsoft Windows Media Component Removal File..) -- C:\Windows\System32\msdxm.ocx
O40 - ASIC: Windows Media Player 5.2 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (...) -- C:\windows\INF\mswmp.inf
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Windows Media Player.) -- C:\windows\system32\wmp.dll
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 11.1 r102.) -- C:\Windows\System32\Macromed\Flash\Flash11e.ocx
~ Scan Active Setup in 00mn AMs



---\\ Pilotes lancés au démarrage (O41)
O41 - Driver: C:\windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\windows\system32\drivers\afd.sys
O41 - Driver: (aswRdr) . (.AVAST Software - avast! WFP Redirect Driver.) - C:\windows\system32\Drivers\aswrdr2.sys
O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\windows\system32\DRIVERS\blbdrive.sys
O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\windows\system32\DRIVERS\cdrom.sys
O41 - Driver: C:\windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\windows\system32\Drivers\dfsc.sys
O41 - Driver: C:\windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\windows\system32\drivers\discache.sys
O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\windows\system32\DRIVERS\mssmbios.sys
O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\windows\system32\DRIVERS\netbios.sys
O41 - Driver: (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\windows\system32\DRIVERS\netbt.sys
O41 - Driver: C:\windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\windows\system32\drivers\nsiproxy.sys
O41 - Driver: C:\windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\windows\system32\DRIVERS\pacer.sys
O41 - Driver: C:\windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\windows\system32\DRIVERS\rdbss.sys
O41 - Driver: C:\windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\windows\system32\DRIVERS\RDPCDD.sys
O41 - Driver: C:\windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\windows\system32\drivers\rdpencdd.sys
O41 - Driver: C:\windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\windows\system32\drivers\rdprefmp.sys
O41 - Driver: (SABI) . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) - C:\windows\system32\Drivers\SABI.sys
O41 - Driver: C:\windows\system32\tcpipcfg.dll (Tcpip) . (.Microsoft Corporation - Pilote TCP/IP.) - C:\windows\system32\drivers\tcpip.sys
O41 - Driver: C:\windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\windows\system32\DRIVERS\tdx.sys
O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\windows\system32\DRIVERS\termdd.sys
O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\windows\system32\drivers\vga.sys
O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\windows\system32\DRIVERS\vwififlt.sys
O41 - Driver: C:\windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\windows\system32\DRIVERS\wanarp.sys
O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\windows\system32\DRIVERS\wfplwf.sys
~ Scan Drivers in 01mn AMs



---\\ Logiciels installés (O42)
O42 - Logiciel: 2007 Microsoft Office system - (.Microsoft Corporation.) [HKLM] -- PROHYBRIDR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723}
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin
O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Reader 9.1 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A91000000001}
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {A83279FD-CA4B-4206-9535-90974DE76654}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {8153ED9A-C94A-426E-9880-5E6775C08B62}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Autodesk Design Review 2009 - (.Autodesk, Inc..) [HKLM] -- Autodesk Design Review 2009
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM] -- {449CE12D-E2C7-4B97-B19E-55D163EA9435}
O42 - Logiciel: BitTorrent - (.BitTorrent, Inc.) [HKLM] -- BitTorrent
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: CiD Help - (.Pas de propriétaire.) [HKCU] -- CITY DEBUG INSIDE
O42 - Logiciel: Coffret Naissance - (.Micro Application.) [HKLM] -- Coffret Naissance
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
O42 - Logiciel: Contrôle ActiveX Windows Live Mesh pour connexions à distance - (.Microsoft Corporation.) [HKLM] -- {55D003F4-9599-44BF-BA9E-95D060730DD3}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: Dofus - (.UNKNOWN.) [HKLM] -- Dofus.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O42 - Logiciel: Dofus - (.UNKNOWN.) [HKLM] -- {BCF3E8EF-5965-FDC5-6AD3-506FEE376C2B}
O42 - Logiciel: Driver: Parallel Lines - (.Ubisoft.) [HKLM] -- {31CB0D80-1866-462A-9455-88614410971F}
O42 - Logiciel: Détection de l'application Winamp - (.Nullsoft, Inc.) [HKCU] -- Winamp Detect
O42 - Logiciel: Easy Display Manager - (.Samsung Electronics Co., Ltd..) [HKLM] -- {17283B95-21A8-4996-97DA-547A48DB266F}
O42 - Logiciel: Easy Network Manager - (.Samsung.) [HKLM] -- {A7581D39-EA20-4883-A480-80C21047052B}
O42 - Logiciel: Easy SpeedUp Manager - (.Samsung Electronics Co.,Ltd..) [HKLM] -- {EF367AA4-070B-493C-9575-85BE59D789C9}
O42 - Logiciel: EasyBatteryManager - (.Samsung.) [HKLM] -- {178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}
O42 - Logiciel: FM Screen Capture Codec (Remove Only) - (.Pas de propriétaire.) [HKLM] -- FMCODEC
O42 - Logiciel: Facebook Video Calling 1.1.1.1 - (.Skype Limited.) [HKLM] -- {624E54D0-E4F4-434F-9EF6-D4D066EE4348}
O42 - Logiciel: Farm Frenzy 2 - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}
O42 - Logiciel: Football Manager 2012 - (.Pas de propriétaire.) [HKLM] -- Football Manager 2012_is1
O42 - Logiciel: Free Mp3 Wma Converter V 2.0 - (.Koyote Soft.) [HKLM] -- Free Mp3 Wma Converter_is1
O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {488F0347-C4A7-4374-91A7-30818BEDA710}
O42 - Logiciel: Game Pack - (.Oberon Media, Inc..) [HKLM] -- {63eafc52-b963-4297-a7eb-d412944e7065}_is1
O42 - Logiciel: GameBox Toolbar - (.Pas de propriétaire.) [HKLM] -- GameBox
O42 - Logiciel: GeoLabo v1.25 - (.Frédéric Bayart.) [HKLM] -- GeoLabo_is1
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP2 - (.Microsoft Corporation.) [HKLM] -- Business Contact Manager
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP2 - (.Microsoft Corporation.) [HKLM] -- {69ca8988-1c6c-4285-b8af-db780a6e42af}
O42 - Logiciel: Go-Go Gourmet - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-114072167}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM] -- {CCF13D13-A87B-34E8-B689-1896D0C2DBA2}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C}
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}
O42 - Logiciel: INDEX EDUCATION - Serveur PRONOTE 2011 - (.Index Education.) [HKLM] -- {33CF874D-749A-41CE-A4E8-83A90210A54B}
O42 - Logiciel: Intel® Matrix Storage Manager - (.Intel Corporation.) [HKLM] -- {9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}
O42 - Logiciel: Java(TM) 6 Update 27 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216027FF}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: LauncherMA - (.Micro Application.) [HKLM] -- {C06EFB22-B5DB-46C5-9215-BCB5C19C0858}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Malwarebytes Anti-Malware version 1.60.1.1000 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1
O42 - Logiciel: Mega Manager - (.Megaupload Limited.) [HKLM] -- {3B6E3FC6-274C-4B6C-BC85-5C3B15DE18E2}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile
O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
O42 - Logiciel: Microsoft Office 2003 Web Components - (.Microsoft Corporation.) [HKLM] -- {90A4040C-6000-11D3-8CFE-0150048383C9}
O42 - Logiciel: Microsoft Office 2007 Primary Interop Assemblies - (.Microsoft Corporation.) [HKLM] -- {50120000-1105-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}_PROHYBRIDR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}_PROHYBRIDR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}_PROHYBRIDR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}_PROHYBRIDR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}_PROHYBRIDR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}_PROHYBRIDR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}_PROHYBRIDR_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0015-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM] -- HOMESTUDENTR
O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Live Add-in 1.5 - (.Microsoft Corporation.) [HKLM] -- {F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
O42 - Logiciel: Microsoft Office OneNote MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-00A1-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook Connector - (.Microsoft Corporation.) [HKLM] -- {95140000-007A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Professional Hybrid 2007 - (.Microsoft Corporation.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-002C-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0401-0000-0000000FF1CE}_PROHYBRIDR_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0407-0000-0000000FF1CE}_PROHYBRIDR_{928D7B99-2BEA-49F9-83B8-20FA57860643}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0413-0000-0000000FF1CE}_PROHYBRIDR_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM] -- {90120000-001F-0C0A-0000-0000000FF1CE}_PROHYBRIDR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-006E-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Office Small Business Connectivity Components - (.Microsoft Corporation.) [HKLM] -- {A939D341-5A04-4E0A-BB55-3E65B386432D}
O42 - Logiciel: Microsoft Office Suite Activation Assistant - (.Microsoft Corporation.) [HKLM] -- {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
O42 - Logiciel: Microsoft SQL Server Native Client - (.Microsoft Corporation.) [HKLM] -- {1E2DA2E2-ABCD-461E-AD01-3D85D61DE5F6}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F}
O42 - Logiciel: MotioninJoy ds3 driver version 0.6.0003 - (.www.motioninjoy.com.) [HKLM] -- {330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1
O42 - Logiciel: Mozilla Firefox (3.6.13) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.13)
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Pas de propriétaire.) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}
O42 - Logiciel: OGA Notifier 2.0.0048.0 - (.Microsoft Corporation.) [HKLM] -- {B2544A03-10D0-4E5E-BA69-0362FFC20D18}
O42 - Logiciel: Outil de téléchargement Windows Live - (.Microsoft Corporation.) [HKLM] -- {205C6BDD-7B73-42DE-8505-9A093F35A238}
O42 - Logiciel: PHOTOfunSTUDIO - (.Panasonic.) [HKLM] -- {9A9DBEBC-C800-4776-A970-D76D6AA405B1}
O42 - Logiciel: PHPNukeFR Toolbar - (.Pas de propriétaire.) [HKLM] -- PHPNukeFR Toolbar
O42 - Logiciel: Package de pilotes Windows - MobileTop (sshpmdm) Modem (01/26/2008 2.6.0.0) - (.MobileTop.) [HKLM] -- E24870CB6AA1C3511635FF9020A3E9471287FBE7
O42 - Logiciel: Pro Evolution Soccer 2011 - (.KONAMI.) [HKLM] -- {1148E85C-E1AF-48E0-A29C-68DACE07E054}
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
O42 - Logiciel: Raptr - (.Pas de propriétaire.) [HKLM] -- Raptr
O42 - Logiciel: RealNetworks - Microsoft Visual C++ 2008 Runtime - (.RealNetworks, Inc.) [HKLM] -- {7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM] -- RealPlayer 15.0
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Reg (DOFUS Audio Subsystem) - (.UNKNOWN.) [HKLM] -- RegTesting.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O42 - Logiciel: Reg (DOFUS Audio Subsystem) - (.UNKNOWN.) [HKLM] -- {CE111B5C-27F5-B74D-C15A-CAFDD2E21837}
O42 - Logiciel: SAMSUNG Mobile Composite Device Software - (.Pas de propriétaire.) [HKLM] -- SAMSUNG Mobile Composite Device
O42 - Logiciel: SAMSUNG Mobile Modem Driver Set - (.Pas de propriétaire.) [HKLM] -- SAMSUNG Mobile Modem
O42 - Logiciel: SAMSUNG Mobile Modem V2 Software - (.Pas de propriétaire.) [HKLM] -- SAMSUNG Mobile Modem V2
O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software - (.Pas de propriétaire.) [HKLM] -- SAMSUNG Mobile USB Modem 1.0
O42 - Logiciel: SAMSUNG Mobile USB Modem Software - (.Pas de propriétaire.) [HKLM] -- SAMSUNG Mobile USB Modem
O42 - Logiciel: SAMSUNG USB Mobile Device Software - (.Pas de propriétaire.) [HKLM] -- SAMSUNG USB Mobile Device
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM] -- {3763A2B4-B07A-4E4D-994D-7D2C6AF0CF9E}
O42 - Logiciel: Samsung Mobile Modem Device Software - (.Pas de propriétaire.) [HKLM] -- Samsung Mobile Modem Device
O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (.Pas de propriétaire.) [HKLM] -- Samsung Mobile phone USB driver Drive
O42 - Logiciel: Samsung New PC Studio - (.Samsung Electronics Co., Ltd..) [HKLM] -- InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A}
O42 - Logiciel: Samsung New PC Studio - (.Samsung Electronics Co., Ltd..) [HKLM] -- {F193FC0E-9E18-40FC-A974-509A1BDD240A}
O42 - Logiciel: Samsung Recovery Solution 4 - (.Samsung.) [HKLM] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2}
O42 - Logiciel: Samsung Support Center - (.Samsung.) [HKLM] -- {4D2121FE-5CCC-4D47-B3A0-BF56045A5099}
O42 - Logiciel: Samsung Update Plus - (.Samsung Electronics Co., Ltd..) [HKLM] -- {D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}
O42 - Logiciel: ScanToPDF 3.2.0 - (.O Imaging Corporation.) [HKLM] -- ScanToPDF
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2539636
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2572078
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2633870
O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2656351
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{AEA16A27-0B97-4670-818F-A98D06EC0A6F}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{AEA16A27-0B97-4670-818F-A98D06EC0A6F}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
O42 - Logiciel: Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{5A8732F0-C20F-4A9B-A2A9-66FE7A586C35}
O42 - Logiciel: Sethi et le Sorcier Inca - (.Pas de propriétaire.) [HKLM] -- Sethi et le Sorcier Inca
O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM] -- {B6CF2967-C81E-40C0-9815-C05774FEF120}
O42 - Logiciel: Skype™ 5.8 - (.Skype Technologies S.A..) [HKLM] -- {EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
O42 - Logiciel: Softonic_France Toolbar - (.Pas de propriétaire.) [HKLM] -- Softonic_France Toolbar
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey
O42 - Logiciel: System Requirements Lab CYRI - (.Husdawg, LLC.) [HKLM] -- {1F77C418-2C90-459C-BD33-B56A4182B9FA}
O42 - Logiciel: TorrentSpeeder - (.C4DL Media.) [HKLM] -- TorrentSpeeder
O42 - Logiciel: Trust Photo Upload - (.Trust.) [HKLM] -- {AFA8E4DC-4950-49BA-9926-8ABFD57890B2}
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871
O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523
O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
O42 - Logiciel: Update for Microsoft Office 2007 (KB2508958) - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{B7873DF5-9E1C-45EE-8895-D29C6AE01202}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{B7873DF5-9E1C-45EE-8895-D29C6AE01202}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C20964A7-5181-45E5-9E82-72F5D400DEBF}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C20964A7-5181-45E5-9E82-72F5D400DEBF}
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2597998) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{97FF6C46-CE3A-47F6-BA6B-3D743ACA4054}
O42 - Logiciel: Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{567103D1-96CD-4B76-93B9-2681A187DEFF}
O42 - Logiciel: Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition - (.Microsoft.) [HKLM] -- {91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{567103D1-96CD-4B76-93B9-2681A187DEFF}
O42 - Logiciel: UseNeXT - (.Tangysoft Ltd..) [HKLM] -- UseNeXT_is1
O42 - Logiciel: User Guide - (.Pas de propriétaire.) [HKLM] -- {BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}
O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: VirtualDJ PRO Full - (.Atomix Productions.) [HKLM] -- {4769E972-2E92-49C5-B6F9-465EFD0C4D94}
O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite
O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}
O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {BCF16F16-AC0E-4ABE-A9EF-412CF484BA51}
O42 - Logiciel: Windows Live Family Safety - (.Microsoft Corporation.) [HKLM] -- {C861504E-2F57-4F95-AB0A-C7C7D8E46A4E}
O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709-A7D3-468D-9167-A1780C1E766C}
O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}
O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM] -- {0B0F231F-CE6A-483D-AA23-77B364F75917}
O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {AF844339-2F8A-4593-81B3-9F4C54038C4E}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9D56775A-93F3-44A3-8092-840E3826DE30}
O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}
O42 - Logiciel: Windows Live Mesh - (.Microsoft Corporation.) [HKLM] -- {DECDCB7C-58CC-4865-91AF-627F9798FE48}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}
O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {E5B21F11-6933-4E0B-A25C-7963E3C07D11}
O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}
O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {92EA4134-10D1-418A-91E1-5A0453131A38}
O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM] -- {83C292B7-38A5-440B-A731-07070E81A64F}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70}
O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1}
O42 - Logiciel: Windows Live Remote Client - (.Microsoft Corporation.) [HKLM] -- {19A4A990-5343-4FF7-B3B5-6F046C091EDF}
O42 - Logiciel: Windows Live Remote Client Resources - (.Microsoft Corporation.) [HKLM] -- {DFDBE1F9-04CE-4645-BB6C-4590EABC7A9C}
O42 - Logiciel: Windows Live Remote Service - (.Microsoft Corporation.) [HKLM] -- {227E8782-B2F4-4E97-B0EE-49DE9CC1C0C0}
O42 - Logiciel: Windows Live Remote Service Resources - (.Microsoft Corporation.) [HKLM] -- {AB93C51F-71F9-4A28-8134-FE1B5B9373E9}
O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4}
O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F}
O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {05E379CC-F626-4E7D-8354-463865B303BF}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {3B9A92DA-6374-4872-B646-253F18624D5F}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {A726AE06-AAA3-43D1-87E3-70F510314F04}
O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF}
O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194}
O42 - Logiciel: Windows iLivid Toolbar - (.Bandoo Media, Inc.) [HKLM] -- Searchqu 406 MediaBar
O42 - Logiciel: Yahoo! Search Protection - (.Pas de propriétaire.) [HKLM] -- Yahoo! Search Defender
O42 - Logiciel: Yahoo! Software Update - (.Pas de propriétaire.) [HKLM] -- Yahoo! Software Update
O42 - Logiciel: avast! Internet Security - (.AVAST Software.) [HKLM] -- avast
O42 - Logiciel: doPDF 7.1 printer - (.Softland.) [HKLM] -- doPDF 7 printer_is1
O42 - Logiciel: iLivid - (.Bandoo Media Inc..) [HKLM] -- iLivid
O42 - Logiciel: iLivid - (.Bandoo Media Inc..) [HKLM] -- {8D15E1B2-D2B7-4A17-B44B-D2DDE5981406}
O42 - Logiciel: iMesh - (.iMesh Inc..) [HKLM] -- {8FB495A1-4A3F-4C1D-BD27-3F3AB2E66763}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {3127F76D-5335-4AC7-BD1E-2F5247A23C24}
O42 - Logiciel: midicair Toolbar - (.midicair.) [HKLM] -- midicair Toolbar

---\\ HKCU & HKLM Software Keys
[HKCU\Software\ALWIL Software]
[HKCU\Software\AVAST Software]
[HKCU\Software\Ad-Remover]
[HKCU\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Adobe]
[HKCU\Software\AppDataLow\Software\Autodesk]
[HKCU\Software\AppDataLow\Software\Eazel-FR]
[HKCU\Software\AppDataLow\Software\Google]
[HKCU\Software\AppDataLow\Software\Macromedia]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\Monitored]
[HKCU\Software\AppDataLow\Software\PHPNukeFR]
[HKCU\Software\AppDataLow\Software\Softonic_France]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software\midicair]
[HKCU\Software\AppDataLow\Software\settings]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\Apple Computer, Inc.]
[HKCU\Software\Apple Inc.]
[HKCU\Software\Autodesk]
[HKCU\Software\Azureus]
[HKCU\Software\BflixInstaller]
[HKCU\Software\BrowserTemp]
[HKCU\Software\CDDB]
[HKCU\Software\Cenega Publishing]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\DScaler5]
[HKCU\Software\DT Soft]
[HKCU\Software\DsNET Corp.]
[HKCU\Software\EWS]
[HKCU\Software\EasyBits]
[HKCU\Software\Electronic Arts]
[HKCU\Software\Facebook]
[HKCU\Software\Facecons]
[HKCU\Software\GameBox]
[HKCU\Software\Google]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\HookNetwork]
[HKCU\Software\IM Providers]
[HKCU\Software\Index Education]
[HKCU\Software\InstallCore]
[HKCU\Software\JavaSoft]
[HKCU\Software\Local AppWizard-Generated Applications]
[HKCU\Software\Macromedia]
[HKCU\Software\MahicA Installer Helper Applications]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MatchWare]
[HKCU\Software\Megaupload]
[HKCU\Software\Mobileleader]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\Northcode Inc]
[HKCU\Software\ODBC]
[HKCU\Software\Oberon Media]
[HKCU\Software\Opendisc]
[HKCU\Software\Panasonic]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Program4Pc]
[HKCU\Software\Protexis]
[HKCU\Software\Raptr]
[HKCU\Software\RealNetworks]
[HKCU\Software\Realtek]
[HKCU\Software\SCS Software]
[HKCU\Software\Samsung]
[HKCU\Software\SkypeRS]
[HKCU\Software\Skype]
[HKCU\Software\Softland]
[HKCU\Software\Softonic]
[HKCU\Software\SubSystems]
[HKCU\Software\SupportSoft]
[HKCU\Software\Synaptics]
[HKCU\Software\System Requirements Lab]
[HKCU\Software\Trolltech]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\ValuSoft]
[HKCU\Software\VirtualDJ]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Windows Live Writer]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\Zylom]
[HKCU\Software\ej-technologies]
[HKCU\Software\kde.org]
[HKCU\Software\keyhole.com]
[HKCU\Software\readme bore 64]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ALWIL Software]
[HKLM\Software\ATI Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\Adobe]
[HKLM\Software\AdwCleaner]
[HKLM\Software\America Online]
[HKLM\Software\AppDataLow]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Audiopl]
[HKLM\Software\Autodesk]
[HKLM\Software\Azureus]
[HKLM\Software\BrowserChoice]
[HKLM\Software\CDDB]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Corel]
[HKLM\Software\CyberLink]
[HKLM\Software\DT Soft]
[HKLM\Software\Digital River]
[HKLM\Software\Dofus 2]
[HKLM\Software\EA GAMES]
[HKLM\Software\Eazel-FR]
[HKLM\Software\Electronic Arts]
[HKLM\Software\FX - Video To Mp3]
[HKLM\Software\Facecons]
[HKLM\Software\GEAR Software]
[HKLM\Software\Google]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\KONAMI]
[HKLM\Software\Licenses]
[HKLM\Software\MCCI]
[HKLM\Software\Macromedia]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\MarkAny]
[HKLM\Software\McAfeeInstaller]
[HKLM\Software\Megaupload Limited]
[HKLM\Software\Megaupload]
[HKLM\Software\MimarSinan]
[HKLM\Software\Montparnasse multimedia - GEO]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\MusicNet]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\Nullsoft]
[HKLM\Software\ODBC]
[HKLM\Software\Oberon Media]
[HKLM\Software\PHPNukeFR]
[HKLM\Software\Panasonic]
[HKLM\Software\PhotoBook]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Protexis]
[HKLM\Software\RTLSetup]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SONIX]
[HKLM\Software\SRS Labs]
[HKLM\Software\Samsung Electronics Co., Ltd.]
[HKLM\Software\Samsung]
[HKLM\Software\SecureDigitalServices]
[HKLM\Software\Skype]
[HKLM\Software\Softland]
[HKLM\Software\Softonic_France]
[HKLM\Software\Sonic]
[HKLM\Software\Sports Interactive Ltd]
[HKLM\Software\SupportSoft]
[HKLM\Software\Symantec]
[HKLM\Software\Synaptics]
[HKLM\Software\TQ566808]
[HKLM\Software\Ubisoft]
[HKLM\Software\VideoLAN]
[HKLM\Software\VirtualDJ]
[HKLM\Software\Volatile]
[HKLM\Software\Waves Audio]
[HKLM\Software\WinRAR]
[HKLM\Software\WinZix]
[HKLM\Software\Wow6432Node]
[HKLM\Software\XYLIO]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\Yahoo]
[HKLM\Software\ej-technologies]
[HKLM\Software\iMeshMediabarTb]
[HKLM\Software\ilivid]
[HKLM\Software\midicair]
[HKLM\Software\mozilla.org]
~ Scan Softwares in 01mn AMs



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 10/11/2011 - 8:26:56 PM - [0.006] ----D- C:\Program Files\Accelerer PC
O43 - CFD: 2/27/2012 - 10:42:20 PM - [237.225] ----D- C:\Program Files\Ad-Remover
O43 - CFD: 12/25/2009 - 12:09:48 AM - [223.276] ----D- C:\Program Files\Adobe
O43 - CFD: 2/20/2012 - 10:44:18 AM - [67.253] ----D- C:\Program Files\Adobe PhotoShop CS3
O43 - CFD: 6/4/2010 - 5:07:32 PM - [359.523] ----D- C:\Program Files\Alwil Software
O43 - CFD: 11/18/2011 - 4:59:30 PM - [2.316] ----D- C:\Program Files\Apple Software Update
O43 - CFD: 5/19/2010 - 5:22:40 PM - [142.432] ----D- C:\Program Files\Autodesk
O43 - CFD: 9/2/2011 - 9:40:00 AM - [0] ----D- C:\Program Files\AVS4YOU
O43 - CFD: 2/2/2012 - 12:12:26 AM - [0.267] ----D- C:\Program Files\BitRoll
O43 - CFD: 2/15/2010 - 2:15:36 PM - [0.815] ----D- C:\Program Files\BitTorrent
O43 - CFD: 11/21/2011 - 12:33:44 AM - [0.602] ----D- C:\Program Files\Bonjour
O43 - CFD: 2/1/2012 - 7:52:48 PM - [4.161] ----D- C:\Program Files\CCleaner
O43 - CFD: 2/19/2012 - 3:14:00 PM - [604.753] ----D- C:\Program Files\Common Files
O43 - CFD: 12/25/2009 - 12:27:42 AM - [77.322] ----D- C:\Program Files\CyberLink
O43 - CFD: 11/21/2011 - 7:27:08 PM - [9.831] ----D- C:\Program Files\DAEMON Tools Lite
O43 - CFD: 12/27/2010 - 8:10:14 PM - [0.757] ----D- C:\Program Files\DIFX
O43 - CFD: 3/19/2010 - 6:50:50 PM - [1159.138] ----D- C:\Program Files\Dofus 2
O43 - CFD: 1/1/2010 - 5:14:40 PM - [79.371] ----D- C:\Program Files\DVD Maker
O43 - CFD: 10/31/2011 - 9:43:40 PM - [0] ----D- C:\Program Files\Facecons
O43 - CFD: 11/6/2010 - 10:49:42 PM - [8.791] ----D- C:\Program Files\FoxTabVideo2Mp3Converter
O43 - CFD: 9/2/2011 - 9:41:38 AM - [26.084] ----D- C:\Program Files\Free mp3 Wma Converter
O43 - CFD: 10/2/2010 - 11:05:44 AM - [1.058] ----D- C:\Program Files\GameBox
O43 - CFD: 8/24/2011 - 9:45:58 PM - [2.113] ----D- C:\Program Files\GeoLabo
O43 - CFD: 11/19/2011 - 12:29:22 PM - [406.005] ----D- C:\Program Files\Google
O43 - CFD: 6/17/2011 - 5:48:50 PM - [111.671] ----D- C:\Program Files\iLivid
O43 - CFD: 2/15/2012 - 6:30:22 AM - [88.616] --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD: 9/25/2009 - 7:59:34 AM - [4.811] ----D- C:\Program Files\Intel
O43 - CFD: 2/15/2012 - 6:38:42 AM - [6.004] ----D- C:\Program Files\Internet Explorer
O43 - CFD: 11/23/2011 - 2:53:54 PM - [1.925] ----D- C:\Program Files\iPod
O43 - CFD: 11/23/2011 - 2:55:18 PM - [142.730] ----D- C:\Program Files\iTunes
O43 - CFD: 8/30/2011 - 1:17:00 PM - [84.496] ----D- C:\Program Files\Java
O43 - CFD: 12/10/2011 - 5:56:42 PM - [-88.656] ----D- C:\Program Files\Konami
O43 - CFD: 2/19/2012 - 2:54:28 PM - [11.404] ----D- C:\Program Files\Malwarebytes' Anti-Malware
O43 - CFD: 12/27/2010 - 8:09:06 PM - [0.211] ----D- C:\Program Files\MarkAny
O43 - CFD: 2/15/2010 - 5:04:54 PM - [7.025] ----D- C:\Program Files\Megaupload
O43 - CFD: 4/17/2010 - 9:41:48 PM - [591.034] ----D- C:\Program Files\Micro Application
O43 - CFD: 10/31/2011 - 10:11:32 PM - [20.524] ----D- C:\Program Files\Microsoft
O43 - CFD: 9/26/2009 - 12:35:32 AM - [140.965] ----D- C:\Program Files\Microsoft Games
O43 - CFD: 12/25/2009 - 12:20:54 AM - [597.623] ----D- C:\Program Files\Microsoft Office
O43 - CFD: 12/25/2009 - 12:17:54 AM - [7.431] ----D- C:\Program Files\Microsoft Office Suite Activation Assistant
O43 - CFD: 2/17/2012 - 3:31:54 AM - [36.634] ----D- C:\Program Files\Microsoft Silverlight
O43 - CFD: 12/25/2009 - 12:21:14 AM - [30.792] ----D- C:\Program Files\Microsoft Small Business
O43 - CFD: 10/14/2011 - 8:12:18 AM - [44.293] ----D- C:\Program Files\Microsoft SQL Server
O43 - CFD: 12/25/2009 - 12:24:48 AM - [1.745] ----D- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 12/25/2009 - 12:16:12 AM - [0.014] ----D- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 1/30/2010 - 2:40:02 PM - [3.554] ----D- C:\Program Files\Microsoft Works
O43 - CFD: 10/14/2011 - 8:11:46 AM - [7.789] ----D- C:\Program Files\Microsoft.NET
O43 - CFD: 10/11/2011 - 8:28:10 PM - [9.262] ----D- C:\Program Files\midicair
O43 - CFD: 12/31/2010 - 7:00:12 PM - [61.031] ----D- C:\Program Files\Montparnasse multimedia - GEO
O43 - CFD: 12/26/2011 - 6:28:20 PM - [2.669] ----D- C:\Program Files\MotioninJoy
O43 - CFD: 9/2/2011 - 9:42:22 AM - [34.700] ----D- C:\Program Files\Mozilla Firefox
O43 - CFD: 7/14/2009 - 4:52:32 AM - [0.025] ----D- C:\Program Files\MSBuild
O43 - CFD: 12/31/2010 - 6:01:56 PM - [0] ----D- C:\Program Files\MSXML 4.0
O43 - CFD: 10/15/2011 - 9:30:50 AM - [0] ----D- C:\Program Files\Norton Security Scan
O43 - CFD: 5/5/2010 - 10:25:30 AM - [4.233] ----D- C:\Program Files\O Imaging Corporation
O43 - CFD: 12/27/2010 - 8:09:04 PM - [0.030] ----D- C:\Program Files\PC Connectivity Solution
O43 - CFD: 5/8/2010 - 12:29:42 PM - [2.597] ----D- C:\Program Files\PHPNukeFR
O43 - CFD: 2/14/2010 - 3:23:28 PM - [76.378] ----D- C:\Program Files\QuickTime
O43 - CFD: 1/2/2012 - 7:20:52 PM - [96.810] ----D- C:\Program Files\Raptr
O43 - CFD: 12/4/2011 - 9:33:50 PM - [93.927] ----D- C:\Program Files\Real
O43 - CFD: 9/25/2009 - 8:01:04 AM - [15.058] ----D- C:\Program Files\Realtek
O43 - CFD: 7/14/2009 - 4:52:32 AM - [36.809] ----D- C:\Program Files\Reference Assemblies
O43 - CFD: 10/30/2010 - 7:40:16 PM - [40.340] ----D- C:\Program Files\Safari
O43 - CFD: 2/15/2012 - 6:27:28 AM - [533.386] ----D- C:\Program Files\Samsung
O43 - CFD: 10/11/2011 - 11:51:48 PM - [112.160] ----D- C:\Program Files\Samsung Casual Games
O43 - CFD: 11/21/2011 - 8:53:12 PM - [-1162.150] ----D- C:\Program Files\SEGA
O43 - CFD: 2/19/2012 - 3:14:00 PM - [32.809] R---D- C:\Program Files\Skype
O43 - CFD: 5/5/2010 - 9:51:06 AM - [4.938] ----D- C:\Program Files\Softland
O43 - CFD: 7/2/2010 - 11:23:50 AM - [2.444] ----D- C:\Program Files\Softonic_France
O43 - CFD: 9/25/2009 - 8:03:12 AM - [25.429] ----D- C:\Program Files\Synaptics
O43 - CFD: 8/30/2011 - 1:14:14 PM - [0.467] ----D- C:\Program Files\SystemRequirementsLab
O43 - CFD: 9/25/2009 - 8:00:40 AM - [0] --H-D- C:\Program Files\Temp
O43 - CFD: 6/26/2011 - 7:17:24 PM - [1.117] ----D- C:\Program Files\Trust
O43 - CFD: 11/1/2010 - 8:52:30 PM - [649.290] ----D- C:\Program Files\Ubisoft
O43 - CFD: 7/14/2009 - 4:53:24 AM - [0] --H-D- C:\Program Files\Uninstall Information
O43 - CFD: 1/1/2011 - 10:06:58 PM - [4.753] ----D- C:\Program Files\UseNeXT
O43 - CFD: 11/3/2011 - 6:40:14 PM - [80.790] ----D- C:\Program Files\VideoLAN
O43 - CFD: 2/5/2010 - 9:02:18 PM - [0.126] ----D- C:\Program Files\Winamp Detect
O43 - CFD: 1/1/2010 - 5:14:40 PM - [2.909] ----D- C:\Program Files\Windows Defender
O43 - CFD: 1/1/2010 - 5:14:40 PM - [6.689] ----D- C:\Program Files\Windows Journal
O43 - CFD: 10/31/2011 - 11:33:48 PM - [183.223] ----D- C:\Program Files\Windows Live
O43 - CFD: 12/25/2009 - 12:23:50 AM - [0.234] ----D- C:\Program Files\Windows Live SkyDrive
O43 - CFD: 12/25/2010 - 2:17:36 PM - [5.895] ----D- C:\Program Files\Windows Mail
O43 - CFD: 12/31/2010 - 7:01:40 PM - [6.406] ----D- C:\Program Files\Windows Media Player
O43 - CFD: 7/14/2009 - 4:52:32 AM - [11.632] ----D- C:\Program Files\Windows NT
O43 - CFD: 1/1/2010 - 5:14:40 PM - [4.213] ----D- C:\Program Files\Windows Photo Viewer
O43 - CFD: 7/14/2009 - 4:52:34 AM - [0.181] ----D- C:\Program Files\Windows Portable Devices
O43 - CFD: 1/1/2010 - 5:14:40 PM - [6.558] ----D- C:\Program Files\Windows Sidebar
O43 - CFD: 2/15/2010 - 2:08:10 PM - [3.552] ----D- C:\Program Files\WinRAR
O43 - CFD: 7/26/2010 - 6:47:58 PM - [1.171] ----D- C:\Program Files\Yahoo!
O43 - CFD: 4/11/2011 - 5:07:04 PM - [0.183] ----D- C:\Program Files\Yontoo Layers
O43 - CFD: 2/27/2012 - 11:25:38 PM - [10.100] ----D- C:\Program Files\ZHPDiag
O43 - CFD: 12/27/2010 - 8:16:18 PM - [4.509] ----D- C:\Program Files\Common Files\Adobe
O43 - CFD: 3/19/2010 - 6:35:12 PM - [30.668] ----D- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 11/23/2011 - 2:53:54 PM - [104.655] ----D- C:\Program Files\Common Files\Apple
O43 - CFD: 5/19/2010 - 5:22:40 PM - [14.026] ----D- C:\Program Files\Common Files\Autodesk Shared
O43 - CFD: 12/25/2009 - 12:16:12 AM - [0.089] ----D- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 12/25/2009 - 12:10:18 AM - [6.274] ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD: 8/30/2011 - 1:17:54 PM - [1.201] ----D- C:\Program Files\Common Files\Java
O43 - CFD: 2/18/2012 - 3:09:00 AM - [283.208] ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2/19/2012 - 2:03:40 PM - [13.858] ----D- C:\Program Files\Common Files\Program4Pc
O43 - CFD: 2/5/2010 - 9:01:50 PM - [3.974] ----D- C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 12/4/2011 - 9:32:52 PM - [1.078] ----D- C:\Program Files\Common Files\Real
O43 - CFD: 9/25/2009 - 8:10:06 AM - [4.403] ----D- C:\Program Files\Common Files\Samsung
O43 - CFD: 7/14/2009 - 2:37:06 AM - [0.003] ----D- C:\Program Files\Common Files\Services
O43 - CFD: 2/19/2012 - 3:14:00 PM - [2.056] ----D- C:\Program Files\Common Files\Skype
O43 - CFD: 7/14/2009 - 2:37:06 AM - [39.200] ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 4/29/2010 - 11:53:32 AM - [3.442] ----D- C:\Program Files\Common Files\SupportSoft
O43 - CFD: 12/25/2009 - 10:59:54 AM - [0] ----D- C:\Program Files\Common Files\SWF Studio
O43 - CFD: 1/1/2011 - 9:21:24 PM - [0] ----D- C:\Program Files\Common Files\Symantec Shared
O43 - CFD: 11/9/2011 - 10:16:54 AM - [45.485] ----D- C:\Program Files\Common Files\System
O43 - CFD: 12/25/2009 - 12:22:28 AM - [0] ----D- C:\Program Files\Common Files\Windows Live
O43 - CFD: 10/31/2011 - 9:36:14 PM - [46.289] ----D- C:\Program Files\Common Files\Wise Installation Wizard
O43 - CFD: 12/4/2011 - 9:33:48 PM - [0.336] ----D- C:\Program Files\Common Files\xing shared
O43 - CFD: 10/14/2011 - 5:27:00 PM - [0.003] ----D- C:\ProgramData\3B1FE
O43 - CFD: 3/19/2010 - 6:35:14 PM - [0.001] ----D- C:\ProgramData\Adobe
O43 - CFD: 6/4/2010 - 5:07:32 PM - [45.580] ----D- C:\ProgramData\Alwil Software
O43 - CFD: 12/29/2010 - 3:20:36 PM - [100.410] ----D- C:\ProgramData\Apple
O43 - CFD: 11/23/2011 - 2:53:54 PM - [102.459] ----D- C:\ProgramData\Apple Computer
O43 - CFD: 7/14/2009 - 4:53:56 AM - [0] -SH-D- C:\ProgramData\Application Data
O43 - CFD: 5/19/2010 - 5:24:10 PM - [0.002] ----D- C:\ProgramData\Autodesk
O43 - CFD: 9/2/2011 - 11:34:14 AM - [0.000] ----D- C:\ProgramData\boost_interprocess
O43 - CFD: 12/25/2009 - 1:37:46 AM - [0.014] ----D- C:\ProgramData\CyberLink
O43 - CFD: 11/21/2011 - 7:25:54 PM - [0.001] ----D- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 7/14/2009 - 4:53:56 AM - [0] -SH-D- C:\ProgramData\Desktop
O43 - CFD: 7/14/2009 - 4:53:56 AM - [0] -SH-D- C:\ProgramData\Documents
O43 - CFD: 2/15/2010 - 9:15:54 PM - [0.070] ----D- C:\ProgramData\Electronic Arts
O43 - CFD: 2/15/2010 - 10:28:06 AM - [0.026] ----D- C:\ProgramData\FarmFrenzy2
O43 - CFD: 7/14/2009 - 4:53:56 AM - [0] -SH-D- C:\ProgramData\Favorites
O43 - CFD: 9/25/2009 - 8:26:44 AM - [0.514] ----D- C:\ProgramData\Google
O43 - CFD: 1/24/2010 - 9:54:02 AM - [0.035] ----D- C:\ProgramData\Hewlett-Packard
O43 - CFD: 1/15/2012 - 9:40:10 PM - [0.001] ----D- C:\ProgramData\IndexEducation
O43 - CFD: 9/17/2011 - 12:31:22 PM - [2.440] ----D- C:\ProgramData\InstallMate
O43 - CFD: 2/19/2012 - 2:54:16 PM - [6.154] ----D- C:\ProgramData\Malwarebytes
O43 - CFD: 10/14/2011 - 4:56:58 PM - [0.057] ----D- C:\ProgramData\McAfee
O43 - CFD: 10/30/2010 - 7:25:28 PM - [0.000] ----D- C:\ProgramData\McAfee Security Scan
O43 - CFD: 11/1/2010 - 9:12:34 PM - [0.001] ----D- C:\ProgramData\Media Center Programs
O43 - CFD: 4/5/2010 - 5:07:52 PM - [0.000] ----D- C:\ProgramData\Micro Application
O43 - CFD: 10/31/2011 - 10:22:24 PM - [332.795] -S--D- C:\ProgramData\Microsoft
O43 - CFD: 2/18/2012 - 3:10:16 AM - [0.061] ----D- C:\ProgramData\Microsoft Help
O43 - CFD: 8/14/2010 - 10:16:22 AM - [4.288] ----D- C:\ProgramData\mode axis acid lite
O43 - CFD: 10/15/2011 - 9:30:50 AM - [0.000] ----D- C:\ProgramData\Norton
O43 - CFD: 5/5/2010 - 6:00:42 PM - [0.360] ----D- C:\ProgramData\NortonInstaller
O43 - CFD: 9/25/2009 - 8:32:46 AM - [0.232] ----D- C:\ProgramData\NVIDIA
O43 - CFD: 7/13/2010 - 7:32:50 PM - [0.001] ----D- C:\ProgramData\Office Genuine Advantage
O43 - CFD: 1/22/2010 - 7:10:06 PM - [0.001] ----D- C:\ProgramData\Partner
O43 - CFD: 2/14/2010 - 3:33:24 PM - [0.279] ----D- C:\ProgramData\Playrix Entertainment
O43 - CFD: 9/17/2011 - 8:52:46 AM - [0] ----D- C:\ProgramData\Premium
O43 - CFD: 4/4/2010 - 1:47:28 AM - [1.600] ----D- C:\ProgramData\Real
O43 - CFD: 9/25/2009 - 8:28:12 AM - [0.581] ----D- C:\ProgramData\SAMSUNG
O43 - CFD: 9/25/2009 - 8:25:24 AM - [0.000] ----D- C:\ProgramData\SiteAdvisor
O43 - CFD: 2/19/2012 - 3:13:54 PM - [102.368] ----D- C:\ProgramData\Skype
O43 - CFD: 7/14/2009 - 4:53:56 AM - [0] -SH-D- C:\ProgramData\Start Menu
O43 - CFD: 8/30/2011 - 1:17:58 PM - [0.000] ----D- C:\ProgramData\Sun
O43 - CFD: 1/31/2010 - 8:36:30 PM - [7.441] ----D- C:\ProgramData\Symantec
O43 - CFD: 1/27/2012 - 4:55:18 PM - [0.035] ---AD- C:\ProgramData\Temp
O43 - CFD: 7/14/2009 - 4:53:56 AM - [0] -SH-D- C:\ProgramData\Templates
O43 - CFD: 10/30/2010 - 7:25:28 PM - [15.046] ----D- C:\ProgramData\WinClon
O43 - CFD: 7/26/2010 - 6:41:16 PM - [0.004] ----D- C:\ProgramData\Yahoo!
O43 - CFD: 11/21/2011 - 12:38:36 AM - [0.516] ----D- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
O43 - CFD: 2/14/2010 - 3:25:06 PM - [0.002] ----D- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
O43 - CFD: 7/31/2010 - 5:37:12 PM - [0] -SH-D- C:\Users\DABSIDIK\AppData\Roaming\.#
O43 - CFD: 10/30/2010 - 7:21:46 PM - [6.342] ----D- C:\Users\DABSIDIK\AppData\Roaming\Adobe
O43 - CFD: 3/19/2010 - 7:11:48 PM - [0.000] ----D- C:\Users\DABSIDIK\AppData\Roaming\app
O43 - CFD: 11/23/2011 - 2:57:24 PM - [0.863] ----D- C:\Users\DABSIDIK\AppData\Roaming\Apple Computer
O43 - CFD: 5/19/2010 - 5:24:20 PM - [0.106] ----D- C:\Users\DABSIDIK\AppData\Roaming\Autodesk
O43 - CFD: 1/20/2012 - 3:15:50 AM - [1.103] ----D- C:\Users\DABSIDIK\AppData\Roaming\Azureus
O43 - CFD: 2/10/2012 - 3:17:00 PM - [-558.511] ----D- C:\Users\DABSIDIK\AppData\Roaming\BitTorrent
O43 - CFD: 11/27/2011 - 8:04:08 PM - [11.829] ----D- C:\Users\DABSIDIK\AppData\Roaming\Corel
O43 - CFD: 11/21/2011 - 8:52:54 PM - [0.000] ----D- C:\Users\DABSIDIK\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 3/19/2010 - 7:38:00 PM - [1.285] ----D- C:\Users\DABSIDIK\AppData\Roaming\Dofus 2
O43 - CFD: 3/19/2010 - 7:11:42 PM - [0.000] ----D- C:\Users\DABSIDIK\AppData\Roaming\Dofus.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 9/2/2011 - 9:41:52 AM - [0.000] ----D- C:\Users\DABSIDIK\AppData\Roaming\FreeAudioPack
O43 - CFD: 12/25/2009 - 11:00:10 AM - [0.015] ----D- C:\Users\DABSIDIK\AppData\Roaming\GameConsole
O43 - CFD: 12/25/2009 - 11:15:26 AM - [0.001] ----D- C:\Users\DABSIDIK\AppData\Roaming\Go Go Gourmet
O43 - CFD: 12/25/2009 - 12:58:06 AM - [0.016] ----D- C:\Users\DABSIDIK\AppData\Roaming\Google
O43 - CFD: 10/30/2010 - 7:21:46 PM - [0.001] ----D- C:\Users\DABSIDIK\AppData\Roaming\Identities
O43 - CFD: 1/15/2012 - 9:40:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Roaming\IndexEducation
O43 - CFD: 4/1/2010 - 9:44:52 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Roaming\InstallShield
O43 - CFD: 10/30/2010 - 7:21:46 PM - [0.252] ----D- C:\Users\DABSIDIK\AppData\Roaming\Macromedia
O43 - CFD: 2/19/2012 - 2:54:40 PM - [0.005] ----D- C:\Users\DABSIDIK\AppData\Roaming\Malwarebytes
O43 - CFD: 9/26/2009 - 12:35:32 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Roaming\Media Center Programs
O43 - CFD: 2/1/2012 - 7:22:28 PM - [24.920] -S--D- C:\Users\DABSIDIK\AppData\Roaming\Microsoft
O43 - CFD: 12/28/2010 - 8:45:18 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Roaming\ML
O43 - CFD: 12/26/2011 - 6:28:22 PM - [0.006] ----D- C:\Users\DABSIDIK\AppData\Roaming\MotioninJoy
O43 - CFD: 10/30/2010 - 7:25:44 PM - [16.648] ----D- C:\Users\DABSIDIK\AppData\Roaming\Mozilla
O43 - CFD: 4/3/2010 - 10:59:00 AM - [0.586] ----D- C:\Users\DABSIDIK\AppData\Roaming\Panasonic
O43 - CFD: 2/27/2012 - 11:16:54 PM - [57.109] ----D- C:\Users\DABSIDIK\AppData\Roaming\Raptr
O43 - CFD: 12/4/2011 - 9:34:20 PM - [5.102] ----D- C:\Users\DABSIDIK\AppData\Roaming\Real
O43 - CFD: 3/19/2010 - 7:11:48 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Roaming\RegTesting.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 12/27/2010 - 8:09:42 PM - [8.638] ----D- C:\Users\DABSIDIK\AppData\Roaming\Samsung
O43 - CFD: 2/25/2012 - 2:09:52 AM - [17.869] ----D- C:\Users\DABSIDIK\AppData\Roaming\Skype
O43 - CFD: 10/18/2011 - 1:29:34 AM - [0.034] ----D- C:\Users\DABSIDIK\AppData\Roaming\skypePM
O43 - CFD: 5/5/2010 - 9:51:10 AM - [0.001] ----D- C:\Users\DABSIDIK\AppData\Roaming\Softland
O43 - CFD: 11/21/2011 - 9:03:10 PM - [12.904] ----D- C:\Users\DABSIDIK\AppData\Roaming\Sports Interactive
O43 - CFD: 10/15/2011 - 9:36:32 PM - [0.002] ----D- C:\Users\DABSIDIK\AppData\Roaming\UseNeXT
O43 - CFD: 11/3/2011 - 6:50:58 PM - [1.357] ----D- C:\Users\DABSIDIK\AppData\Roaming\vlc
O43 - CFD: 2/13/2010 - 11:39:40 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Roaming\Windows Live Writer
O43 - CFD: 2/15/2010 - 2:08:18 PM - [0.000] ----D- C:\Users\DABSIDIK\AppData\Roaming\WinRAR
O43 - CFD: 2/15/2010 - 8:38:04 AM - [0.016] ----D- C:\Users\DABSIDIK\AppData\Roaming\Yahoo!
O43 - CFD: 2/14/2010 - 3:33:22 PM - [0.252] ----D- C:\Users\DABSIDIK\AppData\Roaming\Zylom
O43 - CFD: 10/30/2010 - 7:20:36 PM - [45.609] ----D- C:\Users\DABSIDIK\AppData\Local\Adobe
O43 - CFD: 10/30/2010 - 7:25:28 PM - [53.339] ----D- C:\Users\DABSIDIK\AppData\Local\Apple
O43 - CFD: 2/19/2012 - 1:34:04 PM - [105.566] ----D- C:\Users\DABSIDIK\AppData\Local\Apple Computer
O43 - CFD: 12/25/2009 - 12:09:04 AM - [0] -SH-D- C:\Users\DABSIDIK\AppData\Local\Application Data
O43 - CFD: 5/19/2010 - 5:24:18 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\Autodesk
O43 - CFD: 11/22/2011 - 1:06:36 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\Chromium
O43 - CFD: 2/19/2012 - 2:04:10 PM - [0.059] ----D- C:\Users\DABSIDIK\AppData\Local\Diagnostics
O43 - CFD: 12/27/2010 - 8:15:52 PM - [120.062] ----D- C:\Users\DABSIDIK\AppData\Local\Downloaded Installations
O43 - CFD: 11/29/2011 - 12:59:50 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\ElevatedDiagnostics
O43 - CFD: 11/11/2011 - 5:18:14 PM - [6.523] ----D- C:\Users\DABSIDIK\AppData\Local\Facebook
O43 - CFD: 1/16/2012 - 11:46:24 PM - [509.887] ----D- C:\Users\DABSIDIK\AppData\Local\Google
O43 - CFD: 12/25/2009 - 12:09:04 AM - [0] -SH-D- C:\Users\DABSIDIK\AppData\Local\Historique
O43 - CFD: 2/14/2010 - 11:39:44 AM - [0.002] ----D- C:\Users\DABSIDIK\AppData\Local\IsolatedStorage
O43 - CFD: 4/18/2010 - 1:03:22 PM - [0.314] ----D- C:\Users\DABSIDIK\AppData\Local\Micro Application
O43 - CFD: 12/4/2011 - 11:40:48 PM - [1561.199] ----D- C:\Users\DABSIDIK\AppData\Local\Microsoft
O43 - CFD: 12/1/2011 - 5:04:16 AM - [1.524] ----D- C:\Users\DABSIDIK\AppData\Local\Microsoft Games
O43 - CFD: 11/13/2011 - 12:50:22 PM - [0.296] ----D- C:\Users\DABSIDIK\AppData\Local\Microsoft Help
O43 - CFD: 10/30/2010 - 7:25:28 PM - [0.002] ----D- C:\Users\DABSIDIK\AppData\Local\Micro_Application
O43 - CFD: 10/30/2010 - 7:21:06 PM - [42.740] ----D- C:\Users\DABSIDIK\AppData\Local\Mozilla
O43 - CFD: 11/6/2010 - 11:26:04 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\PackageAware
O43 - CFD: 2/5/2010 - 8:21:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\Real
O43 - CFD: 5/5/2010 - 10:30:52 AM - [0.001] ----D- C:\Users\DABSIDIK\AppData\Local\ScanToPDF
O43 - CFD: 11/21/2011 - 9:03:10 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\Sports Interactive
O43 - CFD: 10/30/2010 - 7:21:06 PM - [0.030] ----D- C:\Users\DABSIDIK\AppData\Local\SupportSoft
O43 - CFD: 2/27/2012 - 11:24:50 PM - [1015.839] ----D- C:\Users\DABSIDIK\AppData\Local\Temp
O43 - CFD: 12/25/2009 - 12:09:04 AM - [0] -SH-D- C:\Users\DABSIDIK\AppData\Local\Temporary Internet Files
O43 - CFD: 10/30/2010 - 7:21:46 PM - [0.238] ----D- C:\Users\DABSIDIK\AppData\Local\VirtualStore
O43 - CFD: 2/27/2012 - 2:55:12 PM - [0.063] ----D- C:\Users\DABSIDIK\AppData\Local\Windows Live
O43 - CFD: 2/13/2010 - 11:39:44 AM - [0.328] ----D- C:\Users\DABSIDIK\AppData\Local\Windows Live Writer
O43 - CFD: 2/16/2010 - 1:32:40 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\Yahoo
O43 - CFD: 5/29/2010 - 9:35:18 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\Zylom Games
O43 - CFD: 2/22/2012 - 11:43:16 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{0012F1B9-4343-4C5F-8F24-6AE39896C1EA}
O43 - CFD: 12/19/2011 - 12:57:26 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{009F9DA1-7A1F-4048-BD2E-1EFF09A7F09F}
O43 - CFD: 2/2/2012 - 6:01:40 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{0193EB44-87CF-4543-A2B0-5B7BD0B2B164}
O43 - CFD: 1/1/2012 - 7:08:14 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{036D8431-04DD-42BE-A14C-09643B94651F}
O43 - CFD: 2/25/2012 - 11:31:10 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{03B9995F-DFB2-497F-9AC7-08FEFCF338E6}
O43 - CFD: 11/3/2011 - 1:26:48 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{045FC057-546D-4363-88AE-6C2966353593}
O43 - CFD: 2/12/2012 - 11:27:46 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{04C7D028-1AE9-407E-BE6C-29A51733B563}
O43 - CFD: 11/23/2011 - 6:30:12 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{06E3873D-354C-4964-A22E-7C48217FC569}
O43 - CFD: 2/27/2012 - 2:54:50 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{0746C97E-44B9-4520-B2CA-2495DAC185B4}
O43 - CFD: 12/5/2011 - 6:17:00 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{076F8D41-43D7-4C3F-89E6-F218A0FCA513}
O43 - CFD: 12/12/2011 - 8:42:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{0A02D622-4BF4-4245-B704-4FF4AC3DE777}
O43 - CFD: 11/6/2011 - 12:43:18 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{0C76E103-0CDF-4295-A9A5-AE1673D885C7}
O43 - CFD: 11/5/2011 - 12:42:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{11D0D168-460B-416E-86C6-A6D1E29BB7C8}
O43 - CFD: 12/20/2011 - 2:01:20 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1334F647-AFB1-487B-A173-D5202760247E}
O43 - CFD: 1/10/2012 - 1:17:14 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{141A3D2E-5E86-4F34-B9D9-ED8A6FA0BAD7}
O43 - CFD: 2/16/2012 - 6:47:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1483A8D1-21B9-4116-9E29-CB86EDC10DA2}
O43 - CFD: 2/27/2012 - 2:54:20 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1A324C73-CA2B-4AD8-8036-A05D64ABF311}
O43 - CFD: 11/8/2011 - 11:35:46 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1ABC9167-23EC-4E85-9D1A-E536C2750605}
O43 - CFD: 11/16/2011 - 12:50:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1B18AF78-FA18-4158-AD90-D927DCEE3F10}
O43 - CFD: 11/21/2011 - 8:52:20 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1BAF3900-4C8B-4BC7-BCE7-3E7529FE8256}
O43 - CFD: 2/18/2012 - 11:01:30 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1CC630A9-29A6-4FF5-B254-2E0D1FC32875}
O43 - CFD: 1/11/2012 - 10:28:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{1E3F795E-C20A-4148-AEF5-204358553A53}
O43 - CFD: 12/22/2011 - 11:20:54 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{206968D3-590A-4906-9EBF-D69C22BB57FD}
O43 - CFD: 11/28/2011 - 6:01:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{21731A3E-4D74-41BF-B2AC-962953E02618}
O43 - CFD: 11/15/2011 - 6:12:24 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{22A21CB6-457F-45B0-B902-85E985A3C986}
O43 - CFD: 11/29/2011 - 11:46:58 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{23241DF9-14C0-496B-B3E7-FB79379BB891}
O43 - CFD: 11/8/2011 - 11:36:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{2523106D-AB44-433E-9945-CD60176E853A}
O43 - CFD: 2/17/2012 - 11:00:40 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{25540A14-9498-465A-9608-FC7A18C266FA}
O43 - CFD: 11/14/2011 - 10:30:32 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{26F72260-34FD-4CF3-A324-04FD2FEB3AEC}
O43 - CFD: 12/28/2011 - 11:10:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{27EB7F26-E72F-4B32-ADF9-FAC90635DBAC}
O43 - CFD: 2/7/2012 - 12:39:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{298C985C-131D-448A-833B-A1B78B9E8FA7}
O43 - CFD: 11/18/2011 - 3:14:28 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{2C487350-9F8B-453F-AB17-566E985958A3}
O43 - CFD: 11/25/2011 - 8:25:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{2DB84344-1074-457C-B0E8-BD20B7B152CC}
O43 - CFD: 11/25/2011 - 6:10:52 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{2F9791E7-5466-4AD7-AB79-5A3B33B68EA5}
O43 - CFD: 1/10/2012 - 1:17:28 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{334DAA4B-F7BA-4116-A462-82DEB0B866F6}
O43 - CFD: 12/22/2011 - 11:21:06 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{354476F9-1205-468E-A44E-37FD909EB474}
O43 - CFD: 1/27/2012 - 3:31:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{368D7F00-A657-41F8-A403-8544AC6FBD31}
O43 - CFD: 2/11/2012 - 10:18:24 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{37BAC833-5A88-4DEE-A3BB-74240005E26C}
O43 - CFD: 1/24/2012 - 1:02:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3944AFEA-F1DF-4E5F-A1CC-0E3FECC78EDA}
O43 - CFD: 2/19/2012 - 1:31:02 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3B0C4F1E-F222-40BB-843A-436E68B6FD09}
O43 - CFD: 11/30/2011 - 11:48:02 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3B946EE8-71BB-4551-BA00-49F7CEB6ED42}
O43 - CFD: 11/30/2011 - 11:48:34 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3BF16112-88CC-4666-A7D0-128DA79E39F4}
O43 - CFD: 12/16/2011 - 8:24:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3DBB35AA-B59F-4A3F-AC43-5ABA678B080D}
O43 - CFD: 1/9/2012 - 6:07:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3E99D4B8-A0D4-40AF-8235-BD96801802AE}
O43 - CFD: 12/15/2011 - 6:36:18 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{3F495048-E2EA-4C84-BBA6-A7530A8FDBE2}
O43 - CFD: 2/18/2012 - 11:02:46 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{4131C02F-6711-4D88-A35E-E2EDC5E88D49}
O43 - CFD: 12/24/2011 - 12:37:58 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{45E7A987-C81C-4766-8EC5-D771E1BBD202}
O43 - CFD: 12/13/2011 - 12:24:00 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{4770FAF6-5569-4063-8ED8-7E5FD213B987}
O43 - CFD: 1/29/2012 - 11:26:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{48A1280B-3E28-4284-BC95-9C4A5E694D9D}
O43 - CFD: 2/27/2012 - 2:55:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{4BFD23D1-E9F6-40F1-91C9-6048CEE9FD1D}
O43 - CFD: 1/26/2012 - 6:23:32 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{4C9111A3-4128-4838-830C-61A41F5158DD}
O43 - CFD: 1/1/2012 - 7:07:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{4D137C25-FB60-4B45-A986-ADF7DC390774}
O43 - CFD: 11/12/2011 - 10:51:36 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{4D2DD517-17C3-4076-A7D9-B7D805BB65C3}
O43 - CFD: 11/20/2011 - 11:04:22 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{500B65E3-6671-4BC7-BC66-6E893191ECFB}
O43 - CFD: 2/4/2012 - 10:12:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{50796152-4804-4B61-A1C8-F7A479DD3B65}
O43 - CFD: 2/12/2012 - 11:28:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{50D952FB-C305-4713-A35B-7C5DE59C8F0D}
O43 - CFD: 1/26/2012 - 6:23:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{5214A9D4-A615-46EB-9388-E030637221FB}
O43 - CFD: 2/24/2012 - 11:30:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{52B1F53B-75F2-47F9-93FD-7ABE3DE800F0}
O43 - CFD: 2/26/2012 - 2:52:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{52C4C479-5C7C-4750-A78D-F70F471416BC}
O43 - CFD: 11/28/2011 - 1:38:48 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{533E6636-7CF9-4ADF-A086-7D779FD59D40}
O43 - CFD: 12/4/2011 - 11:58:36 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{5388BFB6-D60E-4FA5-AE0B-586DA7189E82}
O43 - CFD: 2/5/2012 - 3:31:56 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{55A22D8B-E046-4235-AC1F-348EA4056308}
O43 - CFD: 11/4/2011 - 5:57:02 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{57AA2B43-E8CE-4A55-8A81-F9573B4545D5}
O43 - CFD: 12/23/2011 - 12:37:10 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{5C04ED28-6FFC-4340-91DA-A3A4AC82285D}
O43 - CFD: 1/11/2012 - 10:28:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{5E08D752-BFE1-47B9-8D1E-CB5A2359F196}
O43 - CFD: 11/16/2011 - 9:00:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6226C0E1-1FD9-41B6-857D-D65BEBAF639C}
O43 - CFD: 12/24/2011 - 12:38:22 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{659B7921-0B5D-439E-B577-33D537FF37EF}
O43 - CFD: 11/28/2011 - 6:01:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{66A90BE4-8B95-4754-9D6D-E54B83CDF9DD}
O43 - CFD: 2/12/2012 - 11:28:20 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{67F7DC39-CD71-4A6E-974F-88B5EE968818}
O43 - CFD: 11/15/2011 - 6:13:04 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6A0546CB-0C4F-4895-B81E-7A584E4FD38B}
O43 - CFD: 2/16/2012 - 6:48:10 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6A3E5A91-51FB-429A-B750-658A946F5E2C}
O43 - CFD: 1/6/2012 - 12:36:38 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6A9E76E7-0990-4F1F-B65C-B8F432C017BC}
O43 - CFD: 2/25/2012 - 11:31:22 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6B90D6A4-AAED-4010-887E-5C872233B2DA}
O43 - CFD: 12/9/2011 - 6:12:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6BE0E115-8E63-4FE8-8A15-C679D4FCD28B}
O43 - CFD: 2/21/2012 - 11:29:08 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6BFA01F4-9E72-4A35-A29B-1A9011D66B84}
O43 - CFD: 2/8/2012 - 12:40:24 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{6D441F1D-085B-474A-AAD9-3F376D201E51}
O43 - CFD: 1/30/2012 - 9:27:54 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{717CD485-D573-4CB8-88E8-FB1CA8ADE227}
O43 - CFD: 1/27/2012 - 3:31:46 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{72F7516E-062D-4C46-9889-821B48F959E1}
O43 - CFD: 2/17/2012 - 11:00:54 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{73D19D26-5867-419B-B4E0-9E2023990153}
O43 - CFD: 2/12/2012 - 11:27:08 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{73FB3C83-85B0-40FB-9173-3397B6CB6AB3}
O43 - CFD: 11/8/2011 - 7:56:24 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{743265B7-7932-4B99-A297-339958D2A12B}
O43 - CFD: 12/27/2011 - 3:14:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{752FBA69-7B5E-45E3-98F6-84F331D45F2F}
O43 - CFD: 12/29/2011 - 2:14:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{754EE372-D8CF-4A3F-888B-FE6D06E6936F}
O43 - CFD: 12/4/2011 - 11:59:04 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{75E02F21-696B-447B-98B9-726FED94C597}
O43 - CFD: 12/13/2011 - 12:24:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{76A9E578-A944-4E30-B51F-85B063A50BC9}
O43 - CFD: 2/21/2012 - 11:29:56 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{79634116-B291-467A-89C5-429F2669F36B}
O43 - CFD: 2/4/2012 - 9:51:40 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{79CECDD0-E7F6-4255-A0DA-070BF0FB5A9C}
O43 - CFD: 1/7/2012 - 11:34:02 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{7A67A4BA-025C-4596-BF95-0881CBCF73C1}
O43 - CFD: 2/10/2012 - 6:19:58 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{7E232410-370C-4CEB-9B4F-5401307EFC97}
O43 - CFD: 11/3/2011 - 1:27:16 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{7E6846D7-C4BD-4DE7-81EA-529EB9444401}
O43 - CFD: 11/3/2011 - 2:07:50 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{81A7DF76-6C0B-4DF6-A390-68A7CEEB9847}
O43 - CFD: 12/4/2011 - 11:59:50 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{81E17579-AF22-46B6-9306-01B656AD3DDD}
O43 - CFD: 2/9/2012 - 6:19:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{825540CF-EDE3-4FDC-B641-5426F187056F}
O43 - CFD: 1/8/2012 - 1:54:08 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{825B8497-5395-4298-9C19-3FE356724150}
O43 - CFD: 12/7/2011 - 2:36:38 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{846E08A5-8F01-4AAD-B9F0-61760FAC6095}
O43 - CFD: 2/22/2012 - 11:43:54 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{86D6CA76-2098-41C7-8289-EB18AA957E2B}
O43 - CFD: 2/22/2012 - 11:43:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8820286A-A3CB-450F-89D4-4E60999E0B86}
O43 - CFD: 11/7/2011 - 3:06:52 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{88613EEB-21FD-4363-B367-DDFB25B13290}
O43 - CFD: 2/9/2012 - 6:18:48 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8965BAC5-DC1F-4ACC-A8F2-DA7DB4227DDD}
O43 - CFD: 1/14/2012 - 12:14:58 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8A361705-3F44-4D05-846A-D294C8E06D6A}
O43 - CFD: 2/8/2012 - 6:18:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8ABB05B3-CE3F-41AA-B606-063F90E4CDE8}
O43 - CFD: 12/26/2011 - 5:26:08 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8D1386F0-3EDF-46DE-B78C-4A3BD87ED12D}
O43 - CFD: 2/6/2012 - 10:03:02 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8E1F357D-B8D2-429C-8143-CC743D49B1A4}
O43 - CFD: 11/29/2011 - 11:47:36 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{8EA94F30-B490-4759-9B09-2DFE60861ABC}
O43 - CFD: 11/23/2011 - 1:31:40 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{901EA2D4-53E8-4EBC-94FC-0AE22BD9BF04}
O43 - CFD: 2/20/2012 - 10:48:44 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{902DF925-3016-46E5-9E20-C2A59C67288E}
O43 - CFD: 12/5/2011 - 6:17:14 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{915BB4A5-A416-4AAD-9F01-6E9565030DA8}
O43 - CFD: 2/20/2012 - 10:49:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{929D3CB2-00F6-41CA-990B-B252BFA6D783}
O43 - CFD: 12/23/2011 - 12:36:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{92B0C2C7-1734-40D8-AFFD-757BFD32BF32}
O43 - CFD: 1/28/2012 - 8:19:44 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{94D59B40-F2E5-4351-8DE7-3B06EFD172E9}
O43 - CFD: 11/27/2011 - 2:17:44 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{99C4F004-0FD3-413F-B7D0-987FCB05C402}
O43 - CFD: 1/24/2012 - 1:02:10 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{99F33DAF-5BCD-482A-8364-874B5BFACECF}
O43 - CFD: 1/29/2012 - 11:26:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{9A88E1CD-E73F-4A76-9853-00DAFD212BFB}
O43 - CFD: 12/26/2011 - 5:26:22 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{9A8F770E-7626-40E7-B202-DCB1491DCB59}
O43 - CFD: 2/6/2012 - 10:02:16 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{9B53792D-3350-45F1-9705-D55833FD4B91}
O43 - CFD: 1/9/2012 - 6:07:46 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{9BD6A461-581B-4445-9C67-645D3127F47D}
O43 - CFD: 12/28/2011 - 11:10:18 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{9D8ABD19-3192-4140-A3EB-0D66BA94295F}
O43 - CFD: 1/6/2012 - 12:37:14 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{9F858938-9593-4333-8DA4-331543B41B26}
O43 - CFD: 1/2/2012 - 7:20:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{A10A4E07-04F2-4F4E-98B1-08D4EEDD6A79}
O43 - CFD: 12/16/2011 - 6:36:54 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{A480ADFF-B5D3-46D9-A707-E73DE7E2C172}
O43 - CFD: 11/20/2011 - 11:42:52 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{A54F655E-8603-4A33-9F33-610D3D933477}
O43 - CFD: 11/12/2011 - 3:57:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{A76C0A75-2441-4597-A224-1976F92C16C3}
O43 - CFD: 2/1/2012 - 7:23:24 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{A932DBEF-CCF7-4E13-9F40-230F691F73FC}
O43 - CFD: 2/14/2012 - 12:27:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{A94F6975-128E-4356-83D7-29E9ECD38F46}
O43 - CFD: 1/14/2012 - 12:15:10 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{AA3ED03F-56EE-4799-A770-37ED16C509FD}
O43 - CFD: 2/17/2012 - 7:50:14 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{AC5BC8DD-1612-4FC2-912B-B8DBEE56FB94}
O43 - CFD: 12/24/2011 - 12:38:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{AD98415A-5408-4329-9A57-F85BAE1391E2}
O43 - CFD: 1/20/2012 - 7:09:56 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{ADA16377-F2F7-4A7A-A6D9-CBD2F2B19E04}
O43 - CFD: 10/31/2011 - 11:54:48 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{AF6F3E82-43F4-4993-B0B2-FF95217E5428}
O43 - CFD: 1/28/2012 - 9:10:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B0DC892F-A52E-4DDF-864F-20C9B52CE9B8}
O43 - CFD: 12/17/2011 - 9:14:26 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B156FA33-0637-4DA1-BADD-B46CD3E7F00A}
O43 - CFD: 1/28/2012 - 8:19:24 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B1843275-F71D-45F1-B38F-B1C78018D170}
O43 - CFD: 11/18/2011 - 3:15:18 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B189F972-29D8-470B-827E-4D03310AE164}
O43 - CFD: 11/6/2011 - 1:02:28 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B23FB33D-8870-4646-9453-3A531EC7657C}
O43 - CFD: 2/25/2012 - 11:32:14 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B4198FE2-F14E-47DC-AF52-FDDAF76A56B5}
O43 - CFD: 12/14/2011 - 5:34:54 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B4735FB3-2F50-4C49-B911-78714172018A}
O43 - CFD: 2/26/2012 - 2:53:24 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B566428B-3BCA-4B9E-A2CB-940BFE92F007}
O43 - CFD: 1/25/2012 - 1:44:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B7173EC6-1A34-4FF0-8094-891F17B63AB3}
O43 - CFD: 1/20/2012 - 7:09:44 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B8977E7A-B2F8-4B1B-84B9-6762C558F5FF}
O43 - CFD: 11/4/2011 - 5:58:02 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B8A04070-B17C-4EAA-98F5-F4016D37DE7C}
O43 - CFD: 12/7/2011 - 6:49:44 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{B9E01219-A29F-4BB1-B59F-C2473C79B9AF}
O43 - CFD: 12/10/2011 - 9:44:32 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{BC4640A5-CA8F-4D49-A671-94056257C2A7}
O43 - CFD: 11/5/2011 - 8:00:30 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{BD2D64F5-F916-4177-B3A6-B935DF4B78A6}
O43 - CFD: 12/29/2011 - 2:14:20 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{BDC1BDDC-2CF8-40CA-9339-91CFBC6946AA}
O43 - CFD: 1/29/2012 - 11:25:44 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{BEC35323-FB21-4598-8E78-2ED7E1E83876}
O43 - CFD: 11/11/2011 - 5:52:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{BEE242B3-0583-4F34-A59E-50AA6C1EDF25}
O43 - CFD: 11/1/2011 - 12:30:46 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{BEE5A2CC-B6AB-4605-BF30-26BE92B31385}
O43 - CFD: 11/10/2011 - 1:44:38 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C0BADE0F-13BE-47D0-BBEF-2423D9030862}
O43 - CFD: 2/11/2012 - 10:18:08 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C28E16EF-7458-4369-9E96-534164A8FE74}
O43 - CFD: 12/3/2011 - 11:58:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C3936EEF-7A3E-421E-B1C4-5A3126A73A4F}
O43 - CFD: 1/25/2012 - 1:44:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C44FEB7C-4BD9-459B-9C07-113F5C441444}
O43 - CFD: 2/18/2012 - 11:01:58 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C7256BB0-8CEA-41F0-8341-36B11A348ECF}
O43 - CFD: 11/25/2011 - 8:25:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C7A7A99D-789A-495C-B6B3-D096821BD144}
O43 - CFD: 11/4/2011 - 5:58:18 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C892588B-4560-4AF9-B65C-37DD3C984155}
O43 - CFD: 11/7/2011 - 1:04:22 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{C9CD5099-8C04-4318-A969-F1F2A180E06D}
O43 - CFD: 2/10/2012 - 6:20:12 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{CADAD7C1-6268-46BD-824A-CD0F1285CB97}
O43 - CFD: 11/3/2011 - 2:08:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{CD7E03C3-41EE-48D1-A059-00CEDB769762}
O43 - CFD: 2/24/2012 - 11:30:22 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{CDB676E8-95D2-4D95-8C15-0330D11958E4}
O43 - CFD: 12/19/2011 - 10:04:14 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{CDCB3D76-3AA0-446E-BF2A-83A5E17FDF4D}
O43 - CFD: 2/24/2012 - 11:29:18 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{CDFCCDE1-D744-401A-BF16-3E8997F4A3AF}
O43 - CFD: 11/7/2011 - 1:03:48 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{CFEE16FF-1808-47F1-9ECD-7C379CC8FFAF}
O43 - CFD: 11/7/2011 - 1:03:32 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D043BCA6-79AC-42D6-8A8D-AB36EE302350}
O43 - CFD: 11/7/2011 - 1:04:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D24FB3C9-CAF0-42E3-AE94-396981EDEED9}
O43 - CFD: 1/6/2012 - 9:35:44 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D3D9AD68-B18F-425B-9B2B-93883A030BD6}
O43 - CFD: 1/2/2012 - 7:20:46 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D5820D57-F047-49E3-866F-02DDB1A297C3}
O43 - CFD: 2/24/2012 - 11:29:34 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D5E7A365-D0DA-4528-8C04-5125D7D624C1}
O43 - CFD: 1/8/2012 - 1:25:40 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D72C6B92-3EF7-4193-A247-EAFC37DE928E}
O43 - CFD: 11/19/2011 - 11:03:28 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D7984D2C-A4C7-45E4-8425-7BFE01E4CA1E}
O43 - CFD: 12/14/2011 - 5:34:40 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D7F7752F-A7F7-444D-876C-209A5530E985}
O43 - CFD: 12/17/2011 - 9:14:40 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{D95119B3-800E-4E66-A98E-502169BD430F}
O43 - CFD: 12/27/2011 - 3:13:36 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DA7F2E63-718D-47F4-BE49-48CD68D7F848}
O43 - CFD: 2/18/2012 - 11:02:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DBA80FF9-BF68-48CF-9010-9B67FB89DBD2}
O43 - CFD: 12/20/2011 - 2:01:34 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DDBBEC24-2BF9-4030-B160-70806B15A08C}
O43 - CFD: 2/5/2012 - 3:31:42 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DDC5EC43-1236-4937-A8D2-31A88083BF87}
O43 - CFD: 11/6/2011 - 12:42:52 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DE08131A-E339-401F-A76B-C4C0F4D24469}
O43 - CFD: 10/31/2011 - 11:56:04 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DE50F47C-013E-4CAB-9AA3-26A67AE304F7}
O43 - CFD: 2/17/2012 - 7:49:56 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DF18B24D-534F-4C53-A571-FC5D0287FE7D}
O43 - CFD: 11/23/2011 - 1:32:32 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{DF4A29C0-BCC7-423B-B71F-455CAACB518A}
O43 - CFD: 11/11/2011 - 5:52:22 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E07F3773-FCB5-45A0-9F88-F32B571802C7}
O43 - CFD: 2/1/2012 - 7:23:36 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E092FAEA-044B-41CD-AEFB-3FCC7851EEA3}
O43 - CFD: 11/20/2011 - 11:42:40 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E150052D-0859-48F4-940A-5912FA9AC2A3}
O43 - CFD: 11/1/2011 - 12:29:58 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E1EA7CA1-B466-4244-A98E-F1807D05EF70}
O43 - CFD: 12/25/2011 - 11:56:16 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E1FD52B5-5E8A-4CBA-A159-F6597450D592}
O43 - CFD: 12/25/2011 - 11:57:12 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E2086116-770A-4462-AB03-5422AEBC1753}
O43 - CFD: 2/13/2012 - 11:30:00 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E2326690-A975-4B87-AA1D-9340F86CCCCC}
O43 - CFD: 12/3/2011 - 11:32:46 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E2F41E56-AFB8-49CC-B96A-70E79F399E63}
O43 - CFD: 12/6/2011 - 12:24:10 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E384F312-3715-4EA2-A9D9-A4F88F427D33}
O43 - CFD: 2/15/2012 - 6:23:26 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E4A276A5-0080-42EB-8CCB-9853FC6F78BA}
O43 - CFD: 12/19/2011 - 12:57:52 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E5E2040E-1D71-4B8F-A83B-5842D7BFAF3A}
O43 - CFD: 12/7/2011 - 6:49:28 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E7EAEDD5-0716-47D0-9384-069AB470C3F8}
O43 - CFD: 2/13/2012 - 11:29:20 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E882A081-7228-4A34-B6A0-FCA8FE4C253E}
O43 - CFD: 2/19/2012 - 1:29:30 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E90CC331-6AC7-46AE-AC2B-BF0676C20DC4}
O43 - CFD: 1/9/2012 - 1:54:40 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E922737E-C32F-44BF-BAE1-1EA67EB8125C}
O43 - CFD: 11/10/2011 - 5:51:44 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{E985EA16-35A3-4F27-9315-E090DDE250D4}
O43 - CFD: 12/10/2011 - 9:44:50 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{EA08F4AC-C924-4470-83DF-CCAB442A3BD5}
O43 - CFD: 2/27/2012 - 2:54:06 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{EAE0C6E6-F4DF-478B-9777-174C5F9CBE91}
O43 - CFD: 2/14/2012 - 12:27:00 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{EAF87929-7A3B-4643-A7ED-C9B35B6B7F96}
O43 - CFD: 12/7/2011 - 2:36:04 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{ECF0A95E-0E55-44DD-8E87-5C63461572B5}
O43 - CFD: 2/2/2012 - 6:02:22 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{EEC9DDC4-9130-4659-9A61-848352DEAC00}
O43 - CFD: 11/11/2011 - 5:52:50 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F0121AF0-C155-4DD0-A165-CE83144CAA53}
O43 - CFD: 1/30/2012 - 9:28:06 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F1C06982-A9D1-45F7-A92E-CC0DA70CADC6}
O43 - CFD: 11/19/2011 - 7:35:04 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F4903FDF-5648-463A-8052-1E339EFD189D}
O43 - CFD: 11/10/2011 - 12:17:56 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F66EC981-5C36-402A-90DF-E9E5ADAEB3BE}
O43 - CFD: 11/4/2011 - 5:57:24 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F6EBEC33-2E66-46A4-BDAD-6B72BFB19C2C}
O43 - CFD: 11/25/2011 - 6:11:38 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F8B4A2A1-03EC-4FDF-A46F-6407CAA01851}
O43 - CFD: 11/8/2011 - 7:56:54 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{F8DB1CE5-8780-4715-8ECD-2E7DEC9A90D5}
O43 - CFD: 11/6/2011 - 1:02:50 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{FAC31B1E-5DA1-42AB-9C08-F993572029E8}
O43 - CFD: 11/22/2011 - 1:03:52 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{FB31AA49-1BC8-4BDD-99B5-DDD581514C98}
O43 - CFD: 12/25/2011 - 11:56:04 AM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{FF6B0E00-5753-4C3B-AB5B-E5808AD048B8}
O43 - CFD: 12/4/2011 - 11:59:38 PM - [0] ----D- C:\Users\DABSIDIK\AppData\Local\{FFEF971E-857B-4C67-964F-D214B576F25A}
~ Scan Program Folder in 46mn AMs



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.4B333D3CC96AE66BD754329FD2989EE2] - 2/15/2012 - 6:31:22 AM ---A- . (...) -- C:\windows\system32\ieuinit.inf [72822]
O44 - LFC:[MD5.DAAA694A37D64896DB62D3DE52403490] - 2/15/2012 - 6:32:36 AM ---A- . (...) -- C:\windows\IE9_main.log [4796]
O44 - LFC:[MD5.4A0B459D37021EF9B1AB7EC23913769F] - 2/17/2012 - 3:32:42 AM ---A- . (...) -- C:\windows\system32\FNTCACHE.DAT [418696]
O44 - LFC:[MD5.BEA826FEFE9865E1691218C0B4298A8E] - 2/18/2012 - 3:03:44 AM ---A- . (...) -- C:\windows\win.ini [519]
O44 - LFC:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 2/19/2012 - 2:54:13 PM ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\windows\system32\drivers\mbam.sys [20464]
O44 - LFC:[MD5.F2F73241B4846B2D0785C83DEF378283] - 2/2/2012 - 9:01:30 PM RSH-- . (...) -- C:\windows\system32\30D82B770D.sys [88]
O44 - LFC:[MD5.7532DFF3207825EF735321AD33D4B63B] - 2/2/2012 - 9:01:37 PM -SHA- . (...) -- C:\windows\system32\KGyGaAvL.sys [2828]
O44 - LFC:[MD5.0C1CF3A941BBEA522794E0FA2C0EA9E8] - 2/20/2012 - 10:46:22 AM ---A- . (...) -- C:\windows\PFRO.log [719708]
O44 - LFC:[MD5.581B82DF5DBCC1DDA6B775FAC0D92472] - 2/23/2012 - 4:10:16 PM ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\windows\system32\drivers\aswFsBlk.sys [20696]
O44 - LFC:[MD5.0787B434E9098840966C23BB1C77DF49] - 2/23/2012 - 4:10:34 PM ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\windows\system32\drivers\aswMonFlt.sys [57688]
O44 - LFC:[MD5.3AC73A9E7378848D1BDE174B4BB39212] - 2/23/2012 - 4:10:39 PM ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\windows\system32\drivers\aswTdi.sys [53848]
O44 - LFC:[MD5.03A901B0BA42AAC44D7669C7C71DBBC0] - 2/23/2012 - 4:10:59 PM ---A- . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\windows\system32\drivers\aswRdr2.sys [44376]
O44 - LFC:[MD5.D58AC76EB4D2B478B654EBD6550965BB] - 2/23/2012 - 4:11:24 PM ---A- . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\windows\system32\drivers\aswKbd.sys [24408]
O44 - LFC:[MD5.525A3EBC871C34B966167E9B00E459AD] - 2/23/2012 - 4:12:01 PM ---A- . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\windows\system32\drivers\aswNdis2.sys [196440]
O44 - LFC:[MD5.05EA22DDE5CA7EE3A865046AFF2F0229] - 2/23/2012 - 4:12:16 PM ---A- . (.AVAST Software - avast! self protection module.) -- C:\windows\system32\drivers\aswSP.sys [337112]
O44 - LFC:[MD5.CA9601CD277A1E510B80422A40240A95] - 2/23/2012 - 4:12:28 PM ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\windows\system32\drivers\aswSnx.sys [610648]
O44 - LFC:[MD5.1366147FF64FD82F833C16D0C17D4121] - 2/23/2012 - 4:13:00 PM ---A- . (.AVAST Software - avast! Filtering TDI driver.) -- C:\windows\system32\drivers\aswFW.sys [112984]
O44 - LFC:[MD5.B7C92CCA6E030C423D1550F9888D1A00] - 2/23/2012 - 4:23:21 PM ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\windows\system32\aswBoot.exe [201352]
O44 - LFC:[MD5.FC8CC0EF1F640C1D905ABDE2A2AB704A] - 2/23/2012 - 4:23:26 PM ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\windows\avastSS.scr [41184]
O44 - LFC:[MD5.2E75557EB71BDD77510CB84DF7FDAA9C] - 2/26/2012 - 3:57:46 AM ---A- . (...) -- C:\windows\system32\PerfStringBackup.INI [1549936]
O44 - LFC:[MD5.A5071A328B1983C11F6A071CEE039C39] - 2/26/2012 - 3:57:46 AM ---A- . (...) -- C:\windows\system32\perfc009.dat [106622]
O44 - LFC:[MD5.09A46DC097384521EA53D08CF9659C07] - 2/26/2012 - 3:57:46 AM ---A- . (...) -- C:\windows\system32\perfc00C.dat [130988]
O44 - LFC:[MD5.AB51B62D6D201D79F0FF2F6B5CB65AEB] - 2/26/2012 - 3:57:46 AM ---A- . (...) -- C:\windows\system32\perfh009.dat [616242]
O44 - LFC:[MD5.9FE5C3B2E0694D7AACC3D2DC8136B4EA] - 2/26/2012 - 3:57:46 AM ---A- . (...) -- C:\windows\system32\perfh00C.dat [704714]
O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 2/26/2012 - 4:11:30 PM ---A- . (...) -- C:\windows\system32\config.nt [2577]
O44 - LFC:[MD5.2669E223F4F3258BD898BD109838BF34] - 2/27/2012 - 10:47:48 PM ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [17847]
O44 - LFC:[MD5.2673727E9D5962319B660ED93EBBE334] - 2/27/2012 - 10:54:40 PM ---A- . (...) -- C:\Ad-Report-CLEAN[2].txt [9367]
O44 - LFC:[MD5.8D2F03B7ED3777CB00F74D3C01084E61] - 2/27/2012 - 10:57:40 PM ---A- . (...) -- C:\Ad-Report-CLEAN[3].txt [9433]
O44 - LFC:[MD5.73B5215EC100D1FE57EE3B2A6EDA257A] - 2/27/2012 - 11:14:39 PM ---A- . (...) -- C:\Ad-Report-CLEAN[4].txt [9499]
O44 - LFC:[MD5.02B4FC064D5FE81399B33D0A6DCC0A46] - 2/27/2012 - 11:15:33 PM -S-A- . (...) -- C:\windows\bootstat.dat [67584]
O44 - LFC:[MD5.292FBC0BB1F9EEFA3FCBF37AF85A1717] - 2/27/2012 - 11:15:34 PM ---A- . (...) -- C:\windows\setupact.log [129381]
O44 - LFC:[MD5.2AE5D5A6B3A3C6EA6E5B5C64D12B37BA] - 2/27/2012 - 11:22:47 PM ---A- . (...) -- C:\windows\WindowsUpdate.log [1380334]
O44 - LFC:[MD5.E39E99686E8A4356B2318BABFBB74D7B] - 2/27/2012 - 9:04:09 PM ---A- . (...) -- C:\AdwCleaner[S1].txt [66709]
~ Scan Files in 39mn AMs



---\\ Déni du service (Local Security Authority) (O48)
O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l’Éditeur de configuration de sécurité Windows.) -- C:\Windows\System32\scecli.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Package de sécurité Kerberos.) -- C:\Windows\System32\kerberos.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\TSpkg.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pku2u Security Package.) -- C:\Windows\System32\pku2u.dll
O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corp. - LiveSSP.) -- C:\Windows\System32\LIVESSP.dll
~ Scan Keys in 00mn AMs



---\\ Contrôle du Safe Boot (CSB) (O49)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\windows\system32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\windows\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\windows\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\windows\system32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\windows\system32\Drivers\volmgrx.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\system32\Drivers\ipnat.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\windows\system32\Drivers\nsiproxy.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\windows\system32\Drivers\rdpencdd.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\windows\system32\Drivers\sermouse.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\windows\system32\Drivers\vga.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\windows\system32\Drivers\vgasave.sys (.not file.)
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\windows\system32\Drivers\volmgr.sys
O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\windows\system32\Drivers\volmgrx.sys
~ Scan CSB in 00mn AMs



---\\ MountPoints2 Shell Key (O51) (None)

---\\ Trojan Driver Search Data (HKLM) (O52)
O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll
O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm
~ Scan Keys in 00mn AMs



---\\ ShareTools MSconfig StartupReg (O53)
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
O53 - SMSR:HKLM\...\startupreg\facemoods [Key] . (...) -- C:\Program Files\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NvCplDaemon [Key] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\windows\system32\NvCpl.dll
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O53 - SMSR:HKLM\...\startupreg\swg [Key] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O53 - SMSR:HKLM\...\startupreg\Tray Roam [Key] . (...) -- C:\ProgramData\castshowshow.tteqvdj"
~ Scan SMSR Keys in 00mn AMs



---\\ Microsoft Control Security Providers (O54)
O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\windows\system32\credssp.dll
O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\windows\system32\credssp.dll
~ Scan Keys in 00mn AMs



---\\ Microsoft Windows Policies System (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ Scan Keys in 00mn AMs



---\\ Liste des Drivers Système (O58)
O58 - SDL:[MD5.21E785EBD7DC90A06391141AAC7892FB] - 7/14/2009 - 1:26:15 AM ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\system32\drivers\adp94xx.sys [422976]
O58 - SDL:[MD5.0C676BC278D5B59FF5ABD57BBE9123F2] - 7/14/2009 - 1:26:17 AM ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\system32\drivers\adpahci.sys [297552]
O58 - SDL:[MD5.7C7B5EE4B7B822EC85321FE23A27DB33] - 7/14/2009 - 1:26:15 AM ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\windows\system32\drivers\adpu320.sys [146512]
O58 - SDL:[MD5.0D40BCF52EA90FC7DF2AEAB6503DEA44] - 7/14/2009 - 1:26:15 AM ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\system32\drivers\aliide.sys [14400]
O58 - SDL:[MD5.19CE906B4CDC11FC4FEF5745F33A63B6] - 3/11/2011 - 5:43:46 AM ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\system32\drivers\amdsata.sys [80256]
O58 - SDL:[MD5.EA43AF0C423FF267355F74E7A53BDABA] - 7/14/2009 - 1:26:15 AM ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows fa.) -- C:\windows\system32\drivers\amdsbs.sys [159312]
O58 - SDL:[MD5.869E67D66BE326A5A9159FBA8746FA70] - 3/11/2011 - 5:43:46 AM ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\system32\drivers\amdxata.sys [22400]
O58 - SDL:[MD5.2932004F49677BD84DBC72EDB754FFB3] - 7/14/2009 - 1:26:15 AM ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\system32\drivers\arc.sys [76368]
O58 - SDL:[MD5.5D6F36C46FD283AE1B57BD2E9FEB0BC7] - 7/14/2009 - 1:26:15 AM ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\system32\drivers\arcsas.sys [86608]
O58 - SDL:[MD5.581B82DF5DBCC1DDA6B775FAC0D92472] - 2/23/2012 - 4:10:16 PM ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\windows\system32\drivers\aswFsBlk.sys [20696]
O58 - SDL:[MD5.1366147FF64FD82F833C16D0C17D4121] - 2/23/2012 - 4:13:00 PM ---A- . (.AVAST Software - avast! Filtering TDI driver.) -- C:\windows\system32\drivers\aswFW.sys [112984]
O58 - SDL:[MD5.D58AC76EB4D2B478B654EBD6550965BB] - 2/23/2012 - 4:11:24 PM ---A- . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\windows\system32\drivers\aswKbd.sys [24408]
O58 - SDL:[MD5.0787B434E9098840966C23BB1C77DF49] - 2/23/2012 - 4:10:34 PM ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\windows\system32\drivers\aswMonFlt.sys [57688]
O58 - SDL:[MD5.7B948E3657BEA62E437BC46CA6EF6012] - 7/4/2011 - 11:12:07 AM ---A- . (.ALWIL Software - avast! Filtering NDIS driver.) -- C:\windows\system32\drivers\aswNdis.sys [12112]
O58 - SDL:[MD5.525A3EBC871C34B966167E9B00E459AD] - 2/23/2012 - 4:12:01 PM ---A- . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\windows\system32\drivers\aswNdis2.sys [196440]
O58 - SDL:[MD5.352D5A48EBAB35A7693B048679304831] - 11/28/2011 - 5:52:19 PM ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\windows\system32\drivers\aswRdr.sys [34392]
O58 - SDL:[MD5.03A901B0BA42AAC44D7669C7C71DBBC0] - 2/23/2012 - 4:10:59 PM ---A- . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\windows\system32\drivers\aswRdr2.sys [44376]
O58 - SDL:[MD5.CA9601CD277A1E510B80422A40240A95] - 2/23/2012 - 4:12:28 PM ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\windows\system32\drivers\aswSnx.sys [610648]
O58 - SDL:[MD5.05EA22DDE5CA7EE3A865046AFF2F0229] - 2/23/2012 - 4:12:16 PM ---A- . (.AVAST Software - avast! self protection module.) -- C:\windows\system32\drivers\aswSP.sys [337112]
O58 - SDL:[MD5.3AC73A9E7378848D1BDE174B4BB39212] - 2/23/2012 - 4:10:39 PM ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\windows\system32\drivers\aswTdi.sys [53848]
O58 - SDL:[MD5.AC4ADAC154563AB41CC79B0257BC685A] - 9/21/2009 - 4:58:28 PM ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\windows\system32\drivers\athr.sys [1218048]
O58 - SDL:[MD5.BD8869EB9CDE6BBE4508D869929869EE] - 7/13/2009 - 10:02:49 PM ---A- . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gigabit Ethernet..) -- C:\windows\system32\drivers\b57nd60x.sys [229888]
O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 7/13/2009 - 10:53:28 PM ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\windows\system32\drivers\BrFiltLo.sys [13568]
O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 7/13/2009 - 10:53:28 PM ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\windows\system32\drivers\BrFiltUp.sys [5248]
O58 - SDL:[MD5.845B8CE732E67F3B4133164868C666EA] - 7/14/2009 - 12:57:25 AM ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\system32\drivers\BrSerId.sys [272128]
O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 7/13/2009 - 10:53:32 PM ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\system32\drivers\BrSerWdm.sys [62336]
O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 7/13/2009 - 10:53:33 PM ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\system32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 7/13/2009 - 10:53:33 PM ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\system32\drivers\BrUsbSer.sys [11904]
O58 - SDL:[MD5.1A231ABEC60FD316EC54C66715543CEC] - 7/13/2009 - 10:02:48 PM ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\system32\drivers\bxvbdx.sys [430080]
O58 - SDL:[MD5.C82F4CC10AD315B6D6BCB14D0A7CAD66] - 5/2/2008 - 9:58:12 AM ---A- . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\windows\system32\drivers\ccdcmb.sys [17536]
O58 - SDL:[MD5.60EF5F5621D7832F00A3F190A0C905E2] - 5/2/2008 - 9:58:14 AM ---A- . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\windows\system32\drivers\ccdcmbo.sys [20864]
O58 - SDL:[MD5.C537B1DB64D495B9B4717B4D6D9EDBF2] - 7/14/2009 - 1:26:21 AM ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\system32\drivers\cmdide.sys [15952]
O58 - SDL:[MD5.8B30250D573A8F6B4BD23195160D8707] - 7/14/2009 - 1:20:28 AM ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\windows\system32\drivers\djsvs.sys [70720]
O58 - SDL:[MD5.0ED67910C8C326796FAA00B2BF6D9D3C] - 7/14/2009 - 1:20:28 AM ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\windows\system32\drivers\elxstor.sys [453712]
O58 - SDL:[MD5.024E1B5CAC09731E4D868E64DBFB4AB0] - 7/13/2009 - 10:02:48 PM ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\system32\drivers\evbdx.sys [3100160]
O58 - SDL:[MD5.8182FF89C65E4D38B2DE4BB0FB18564E] - 5/18/2009 - 1:17:00 PM ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\windows\system32\drivers\GEARAspiWDM.sys [26600]
O58 - SDL:[MD5.C44E3C2BAB6837DB337DDEE7544736DB] - 7/13/2009 - 10:54:14 PM ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\windows\system32\drivers\hcw85cir.sys [26624]
O58 - SDL:[MD5.295FDC419039090EB8B49FFDBB374549] - 7/14/2009 - 1:20:28 AM ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\windows\system32\drivers\HpSAMD.sys [67152]
O58 - SDL:[MD5.D483687EACE0C065EE772481A96E05F5] - 6/4/2009 - 9:43:16 AM ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\windows\system32\drivers\iaStor.sys [330264]
O58 - SDL:[MD5.71F1A494FEDF4B33C02C4A6A28D6D9E9] - 3/11/2011 - 5:43:55 AM ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\windows\system32\drivers\iaStorV.sys [332160]
O58 - SDL:[MD5.AD626F6964F4D364D226C39E06872DD3] - 6/10/2009 - 9:19:30 PM ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\system32\drivers\igdkmd32.sys [4756480]
O58 - SDL:[MD5.4173FF5708F3236CF25195FECD742915] - 7/14/2009 - 1:20:36 AM ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\system32\drivers\iirsp.sys [41040]
O58 - SDL:[MD5.EB119A53CCF2ACC000AC71B065B78FEF] - 7/14/2009 - 1:20:36 AM ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\system32\drivers\lsi_fc.sys [95824]
O58 - SDL:[MD5.8ADE1C877256A22E49B75D1CC9161F9C] - 7/14/2009 - 1:20:37 AM ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\system32\drivers\lsi_sas.sys [89168]
O58 - SDL:[MD5.DC9DC3D3DAA0E276FD2EC262E38B11E9] - 7/14/2009 - 1:20:36 AM ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\system32\drivers\lsi_sas2.sys [54864]
O58 - SDL:[MD5.0A036C7D7CAB643A7F07135AC47E0524] - 7/14/2009 - 1:20:36 AM ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\system32\drivers\lsi_scsi.sys [96848]
O58 - SDL:[MD5.B7CA8CC3F978201856B6AB82F40953C3] - 12/10/2011 - 3:24:06 PM ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\windows\system32\drivers\mbam.sys [20464]
O58 - SDL:[MD5.0FFF5B045293002AB38EB1FD1FC2FB74] - 7/14/2009 - 1:20:36 AM ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7 for x86.) -- C:\windows\system32\drivers\megasas.sys [30800]
O58 - SDL:[MD5.DCBAB2920C75F390CAF1D29F675D03D6] - 7/14/2009 - 1:20:36 AM ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\system32\drivers\MegaSR.sys [235584]
O58 - SDL:[MD5.61448BA3CCA3063541437694A5527AF2] - 1/1/2011 - 10:12:18 AM ---A- . (.MotioninJoy - MotioninJoy DS3 driver.) -- C:\windows\system32\drivers\MijXfilt.sys [81168]
O58 - SDL:[MD5.1D85C4B390B0EE09C7A46B91EFB2C097] - 7/14/2009 - 1:20:44 AM ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\system32\drivers\nfrd960.sys [44624]
O58 - SDL:[MD5.E380BBCAD640304737650367DDFA2366] - 6/28/2007 - 10:44:58 AM ---A- . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\windows\system32\drivers\nmwcd.sys [137216]
O58 - SDL:[MD5.2713392707E515EFB671751FA767EBD2] - 9/1/2009 - 8:19:18 AM ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 186.91.) -- C:\windows\system32\drivers\nvlddmkm.sys [9825728]
O58 - SDL:[MD5.F1B0BED906F97E16F6D0C3629D2F21C6] - 3/11/2011 - 5:44:01 AM ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\system32\drivers\nvraid.sys [117120]
O58 - SDL:[MD5.4520B63899E867F354EE012D34E11536] - 3/11/2011 - 5:44:01 AM ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\system32\drivers\nvstor.sys [143744]
O58 - SDL:[MD5.AB95ECF1F6659A60DDC166D8315B0751] - 7/14/2009 - 1:19:04 AM ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\system32\drivers\ql2300.sys [1383488]
O58 - SDL:[MD5.B4DD51DD25182244B86737DC51AF2270] - 7/14/2009 - 1:19:04 AM ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\system32\drivers\ql40xx.sys [106064]
O58 - SDL:[MD5.6465166DD9B2F841DABAD16ABDADBE98] - 7/31/2009 - 3:58:00 AM ---A- . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Driver.) -- C:\windows\system32\drivers\Rt86win7.sys [187392]
O58 - SDL:[MD5.5CEEF2CCCB4FE00D3FFBFEB12BCFA07F] - 8/19/2009 - 1:30:42 AM ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\windows\system32\drivers\RTKVHDA.sys [2752352]
O58 - SDL:[MD5.6E5FBB7CBAEC47038B945D5E9B144A64] - 5/28/2009 - 6:38:12 AM ---A- . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\windows\system32\drivers\SABI.sys [10752]
O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 7/13/2009 - 8:50:20 PM ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\windows\system32\drivers\secdrv.sys [20480]
O58 - SDL:[MD5.A9F0486851BECB6DDA1D89D381E71055] - 7/14/2009 - 1:19:04 AM ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\system32\drivers\sisraid2.sys [40016]
O58 - SDL:[MD5.3727097B55738E2F554972C3BE5BC1AA] - 7/14/2009 - 1:19:04 AM ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\system32\drivers\sisraid4.sys [77888]
O58 - SDL:[MD5.11BB0E11D42CC3A43D741D9B30839BE1] - 3/27/2007 - 4:19:36 PM ---A- . (.Sonix Co. Ltd. - USB PC Camera driver.) -- C:\windows\system32\drivers\snpstd3.sys [10252544]
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 11/21/2011 - 12:00:00 AM ---A- . (...) -- C:\windows\system32\drivers\sptd.sys [691696]
O58 - SDL:[MD5.EAA66218CD39F5BB1B4853A78C67C787] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI - SAMSUNG USB Mobile Device.) -- C:\windows\system32\drivers\ss_bbus.sys [90112]
O58 - SDL:[MD5.F8A771C5A63DC641772B7A3B05AF173F] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\windows\system32\drivers\ss_bcm.sys [12160]
O58 - SDL:[MD5.F8A771C5A63DC641772B7A3B05AF173F] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\windows\system32\drivers\ss_bcmnt.sys [12160]
O58 - SDL:[MD5.91765F99914ED8693D8BC76524F21581] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI Corporation - SAMSUNG USB Mobile Modem Filter.) -- C:\windows\system32\drivers\ss_bmdfl.sys [14976]
O58 - SDL:[MD5.840E7B738B03C10EE91D9B7D3D6EFF15] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI Corporation - SAMSUNG USB Mobile Modem.) -- C:\windows\system32\drivers\ss_bmdm.sys [121856]
O58 - SDL:[MD5.29B73D03AE6EDABB88E50364B066A6CA] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP support functions).) -- C:\windows\system32\drivers\ss_bwh.sys [12160]
O58 - SDL:[MD5.29B73D03AE6EDABB88E50364B066A6CA] - 3/20/2009 - 9:01:26 AM ---A- . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP support functions).) -- C:\windows\system32\drivers\ss_bwhnt.sys [12160]
O58 - SDL:[MD5.306521935042FC0A6988D528643619B3] - 10/25/2007 - 4:26:10 PM ---A- . (...) -- C:\windows\system32\drivers\StarOpen.sys [5632]
O58 - SDL:[MD5.DB32D325C192B801DF274BFD12A7E72B] - 7/14/2009 - 1:19:04 AM ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\windows\system32\drivers\stexstor.sys [21072]
O58 - SDL:[MD5.7A9025D8F7852B06D6D08ED536135E7E] - 7/14/2009 - 11:16:34 PM ---A- . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\windows\system32\drivers\SynTP.sys [212656]
O58 - SDL:[MD5.1DF89C499BF45D878B87EBD4421D462D] - 8/28/2009 - 6:42:52 PM ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\windows\system32\drivers\usbaapl.sys [40448]
O58 - SDL:[MD5.BB16932A4189E82D6C455042C11849B6] - 5/2/2008 - 9:58:14 AM ---A- . (.Windows (R) Codename Longhorn DDK provider - Filter Driver for the Toaster Stack.) -- C:\windows\system32\drivers\usbser_lowerflt.sys [8064]
O58 - SDL:[MD5.E748D50B3B2EC7F40A2BA67FB094CF01] - 5/2/2008 - 9:58:28 AM ---A- . (.Windows (R) Codename Longhorn DDK provider - Filter Driver for the Toaster Stack.) -- C:\windows\system32\drivers\usbser_lowerfltj.sys [8064]
O58 - SDL:[MD5.E43574F6A56A0EE11809B48C09E4FD3C] - 7/14/2009 - 1:19:10 AM ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\system32\drivers\viaide.sys [16976]
O58 - SDL:[MD5.9DFA0CC2F8855A04816729651175B631] - 7/14/2009 - 1:19:11 AM ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\system32\drivers\vsmraid.sys [141904]
O58 - SDL:[MD5.F2F73241B4846B2D0785C83DEF378283] - 12/30/1899 - 9:01:30 PM RSH-- . (...) -- C:\windows\system32\30D82B770D.sys [88]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 7/13/2009 - 9:40:41 PM ---A- . (...) -- C:\windows\system32\ANSI.SYS [9029]
O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 7/13/2009 - 9:40:44 PM ---A- . (...) -- C:\windows\system32\country.sys [27097]
O58 - SDL:[MD5.790A4CA68F44BE35967B3DF61F3E4675] - 9/21/2009 - 8:33:06 AM ---A- . (...) -- C:\windows\system32\FsUsbExDisk.Sys [36608]
O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 7/13/2009 - 9:40:40 PM ---A- . (...) -- C:\windows\system32\HIMEM.SYS [4768]
O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 7/13/2009 - 9:40:43 PM ---A- . (...) -- C:\windows\system32\KEY01.SYS [42809]
O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 7/13/2009 - 9:40:43 PM ---A- . (...) -- C:\windows\system32\KEYBOARD.SYS [42537]
O58 - SDL:[MD5.7532DFF3207825EF735321AD33D4B63B] - 12/30/1899 - 9:01:37 PM -SHA- . (...) -- C:\windows\system32\KGyGaAvL.sys [2828]
O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 7/13/2009 - 9:40:23 PM ---A- . (...) -- C:\windows\system32\NTDOS.SYS [27866]
O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 7/13/2009 - 9:40:31 PM ---A- . (...) -- C:\windows\system32\NTDOS404.SYS [29146]
O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 7/13/2009 - 9:40:35 PM ---A- . (...) -- C:\windows\system32\NTDOS411.SYS [29370]
O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 7/13/2009 - 9:40:39 PM ---A- . (...) -- C:\windows\system32\NTDOS412.SYS [29274]
O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 7/13/2009 - 9:40:27 PM ---A- . (...) -- C:\windows\system32\NTDOS804.SYS [29146]
O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 7/13/2009 - 9:40:11 PM ---A- . (...) -- C:\windows\system32\NTIO.SYS [33952]
O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 7/13/2009 - 9:40:15 PM ---A- . (...) -- C:\windows\system32\NTIO404.SYS [34672]
O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 7/13/2009 - 9:40:17 PM ---A- . (...) -- C:\windows\system32\NTIO411.SYS [35776]
O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 7/13/2009 - 9:40:19 PM ---A- . (...) -- C:\windows\system32\NTIO412.SYS [35536]
O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 7/13/2009 - 9:40:13 PM ---A- . (...) -- C:\windows\system32\NTIO804.SYS [34672]
O58 - SDL:[MD5.354585D8E53F2FF9B8AD5E1E2EF68CEF] - 9/25/2008 - 7:07:08 PM ---A- . (.Matsushita Electric Industrial Co., Ltd. - Phoebe Photo Distribution Manager.) -- C:\windows\system32\PhDi2.sys [45056]
~ Scan Drivers in 18mn AMs



---\\ Liste des outils de nettoyage (O63)
O63 - Logiciel: Ad-Remover par C_XX - (.C_XX.) [HKLM] -- Ad-Remover
O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1
~ Scan ADS in 00mn AMs



---\\ Liste des services Legacy (O64)
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\aswFsBlk.sys (aswFsBlk) .(.AVAST Software - avast! File System Access Blocking Driver.) - LEGACY_ASWFSBLK
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\aswFW.sys (aswFW) .(.AVAST Software - avast! Filtering TDI driver.) - LEGACY_ASWFW
O64 - Services: CurCS - 2/23/2012 - C:\windows\system32\drivers\aswMonFlt.sys (aswMonFlt) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\aswNdis2.sys (aswNdis2) .(.AVAST Software - avast! Filtering NDIS driver.) - LEGACY_ASWNDIS2
O64 - Services: CurCS - 2/23/2012 - C:\windows\system32\Drivers\aswrdr2.sys (aswRdr) .(.AVAST Software - avast! WFP Redirect Driver.) - LEGACY_ASWRDR
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\aswSnx.sys (aswSnx) .(.AVAST Software - avast! Virtualization Driver.) - LEGACY_ASWSNX
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\aswSP.sys (aswSP) .(.AVAST Software - avast! self protection module.) - LEGACY_ASWSP
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\aswTdi.sys (aswTdi) .(.AVAST Software - avast! TDI Filter Driver.) - LEGACY_ASWTDI
O64 - Services: CurCS - 9/21/2009 - C:\windows\system32\FsUsbExDisk.sys - FsUsbExDisk (FsUsbExDisk) .(...) - LEGACY_FSUSBEXDISK
O64 - Services: CurCS - 5/28/2009 - C:\windows\system32\Drivers\SABI.sys (SABI) .(.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) - LEGACY_SABI
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV
O64 - Services: CurCS - 12/30/1899 - C:\windows\system32\Drivers\sptd.sys - sptd (sptd) .(...) - LEGACY_SPTD
~ Scan Services in 00mn AMs



---\\ File Associations Shell Spawning (O67)
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\windows\system32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\windows\system32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\windows\system32\control.exe
O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKCR\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Observateur d’événements.) -- C:\windows\system32\eventvwr.exe
O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe
O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
~ Scan Keys in 00mn AMs



---\\ Start Menu Internet (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\InstallInfo\ShowIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\InstallInfo\ReinstallCommand] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Explorer par utilisateur.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\InstallInfo\HideIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
~ Scan Keys in 00mn AMs



---\\ Search Browser Infection (O69)
O69 - SBI: SearchScopes [HKCU] ${searchCLSID} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {0FEF2D2C-CDA6-45E4-B2ED-9DF7C50C95FF} - (Web Search...) - http://gb.toolbarhome.com
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com
O69 - SBI: SearchScopes [HKCU] {9D5BD211-422C-4164-9298-BB4186A30F31} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {DECA3892-BA8F-44b8-A993-A466AD694AE4} - (Yahoo!) - http://fr.search.yahoo.com
~ Scan Keys in 00mn AMs



---\\ Recherche des services démarrés par Svchost (O83)
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\windows\system32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\windows\system32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de cartes à puce Microsoft.) -- C:\windows\system32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\windows\system32\srvsvc.dll [168448]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\windows\system32\gpsvc.dll [591360]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\windows\system32\ikeext.dll [667136]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\windows\system32\Audiosrv.dll [473088]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’accès distant.) -- C:\windows\system32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\windows\system32\rasmans.dll [285184]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\windows\system32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements système (SENS).) -- C:\windows\system32\sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à Microsoft NAT.) -- C:\windows\system32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM).) -- C:\windows\system32\tapisrv.dll [241664]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du serveur hôte de session Burea.) -- C:\windows\system32\termsrv.dll [543232]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Update.) -- C:\windows\system32\wuaueng.dll [1912832]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\windows\system32\qmgr.dll [589312]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\windows\system32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur un réseau IPv4..) -- C:\windows\system32\iphlpsvc.dll [497152]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secondaire.) -- C:\windows\system32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\windows\system32\appinfo.dll [46592]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\windows\system32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédias.) -- C:\windows\system32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\windows\system32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\windows\system32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [162816]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\windows\system32\schedsvc.dll [749056]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\windows\system32\kmsvc.dll [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à distance.) -- C:\windows\system32\sessenv.dll [99328]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\windows\system32\browser.dll [102400]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\windows\system32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\windows\system32\bdesvc.dll [76800]
~ Scan Services in 00mn AMs



---\\ Recherche particuliere à la racine de certains dossiers (O84)
[MD5.D41D8CD98F00B204E9800998ECF8427E] [SPRF][6/29/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\GURE542.exe [0]
[MD5.A67CD566C78B77D6A6BA84029FA7B300] [SPRF][11/6/2010] (.iMesh Inc. - iMesh.) -- C:\Users\DABSIDIK\AppData\Local\Temp\iMesh_setup.exe [2297120]
[MD5.1B365CA6FBDEA9303D64994AE06684E1] [SPRF][8/9/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\installhelper.dll [1467392]
[MD5.7132F91F5497498068837186DA47CFB3] [SPRF][1/31/2010] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\isconfig.dat [500]
[MD5.4CEDDE81D3111522E503DD7921A0B6AA] [SPRF][7/12/2010] (.Microsoft Corporation - Microsoft Malware Protection Engine.) -- C:\Users\DABSIDIK\AppData\Local\Temp\mpengine.dll [5488976]
[MD5.A0FC43A1ED7F015A04EFA5E77A74595D] [SPRF][10/3/2005] (.Electronic Arts Inc. - Uninstalls the CD key.) -- C:\Users\DABSIDIK\AppData\Local\Temp\Need for Speed Most Wanted_uninst.exe [73728]
[MD5.AA45D1903016750C588E6D228948781C] [SPRF][5/25/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\nsa4B92.tmp.exe [4632430]
[MD5.D50ED28C3DDEFF9528A2B72C32352A3C] [SPRF][11/17/2010] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\nscB695.tmp.exe [166840]
[MD5.D50ED28C3DDEFF9528A2B72C32352A3C] [SPRF][11/17/2010] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\nsuE6AD.tmp.exe [166840]
[MD5.107B88C8BF40E3A6F33B72482E5DD557] [SPRF][11/17/2010] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\nsy372.tmp.exe [1714743]
[MD5.088A6E0E5FDA73F3A951CDF9044D5CF4] [SPRF][10/23/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\raptrpatch.exe [24046288]
[MD5.D3E007FBC92173642415D33A0CD83D18] [SPRF][9/19/2010] (.Google Inc. - GoogleToolbarNotifier.) -- C:\Users\DABSIDIK\AppData\Local\Temp\SearchWithGoogleUpdate.exe [426552]
[MD5.D6A91A20DE7C2828F433842F98725FD9] [SPRF][1/4/2012] (.Ask - Wrapper Application.) -- C:\Users\DABSIDIK\AppData\Local\Temp\Setup.exe [3884200]
[MD5.7548EC5E61BDB1D5435EA4A95FD0239B] [SPRF][9/2/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\SetupDataMngr_Searchqu.exe [3811544]
[MD5.61FBC6C9BE728206CD74CEBBCC328847] [SPRF][10/18/2011] (.Skype Technologies S.A. - Skype.) -- C:\Users\DABSIDIK\AppData\Local\Temp\SkypeSetup.exe [23803016]
[MD5.BFE94A86CE15AF0633416D4169790050] [SPRF][3/23/2010] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\Softonic_France.exe [1644368]
[MD5.72412B526BCC716382E62B7939DCFD8F] [SPRF][8/9/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\SRAssetsHelper.dll [1085952]
[MD5.7EC6C8E88BECD3C40AE35AAD1DF6EB0A] [SPRF][11/9/2011] (.RealNetworks, Inc. - RealDownloader Application.) -- C:\Users\DABSIDIK\AppData\Local\Temp\stubhelper.dll [90624]
[MD5.96A3450FB4DFDC4539185D68C7826616] [SPRF][6/17/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\thanks.bat [84]
[MD5.2CA8B5CD5D2EDF2C033DB34E7E09DC1D] [SPRF][5/16/2011] (.BabylonToolbar - Pas de description.) -- C:\Users\DABSIDIK\AppData\Local\Temp\Toolbar_Phpnuke.exe [1334800]
[MD5.FBF795BB0E1BABB8632DB4BD747281D5] [SPRF][9/14/2011] (.Tarma Software Research Pty Ltd - Tarma® InstallMate Setup Library.) -- C:\Users\DABSIDIK\AppData\Local\Temp\Tsu-19A4.dll [251528]
[MD5.FFFC9FD0CF1597826BA8CCD5968CDCEB] [SPRF][4/7/2010] (.Herzog & Partner GmbH - Helper DLL implementing various UI enhancements for Wise dialogs.) -- C:\Users\DABSIDIK\AppData\Local\Temp\uitools.dll [10240]
[MD5.86E393713FA708FDFD1B8C38ECDBBC59] [SPRF][2/27/2012] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\Uninst.bat [473]
[MD5.10AA6B56FCF5298F3B90D9281C4145A2] [SPRF][3/11/2011] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\utt84C2.tmp.bat [73]
[MD5.5C82BE7AD1775B67916EE19C15B99331] [SPRF][5/14/2007] (.Microsoft Corporation - Win32 Cabinet Self-Extractor.) -- C:\Users\DABSIDIK\AppData\Local\Temp\vcredist_x86_2005.exe [2723264]
[MD5.B936F0F378B9A35489353E878154E899] [SPRF][11/7/2007] (.Microsoft Corporation - Microsoft Visual C++ 2008 Redistributable Setup.) -- C:\Users\DABSIDIK\AppData\Local\Temp\vcredist_x86_2008.exe [1821192]
[MD5.D7D9445362AEE97FAA2214CB21B28C2F] [SPRF][5/7/2010] (.Microsoft Corporation - Windows Live Installer.) -- C:\Users\DABSIDIK\AppData\Local\Temp\wlsetup-cvr.exe [84621672]
[MD5.EA0A48D11236513334B33670750799B0] [SPRF][2/15/2010] (...) -- C:\Users\DABSIDIK\AppData\Local\Temp\_inst1.exe [223182]
[MD5.FBAB280D0CAC5E21C72F0A1A7B5B9608] [SPRF][6/22/2007] (.Macrovision Corporation - Setup.exe.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_is696.exe [455600]
[MD5.1108B166160D6023AF76435B074052B6] [SPRF][4/5/2007] (.Macrovision Corporation - Setup.exe.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_is90DB.exe [455600]
[MD5.1108B166160D6023AF76435B074052B6] [SPRF][1/20/2007] (.Macrovision Corporation - Setup.exe.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_isE33A.exe [455600]
[MD5.11C2B883AF5384AF3761BD22D342DD0F] [SPRF][8/16/2011] (.DsNET Corp - Pas de description.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_MTB19252962158431682011.exe [13748560]
[MD5.11C2B883AF5384AF3761BD22D342DD0F] [SPRF][8/16/2011] (.DsNET Corp - Pas de description.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_MTB23066348212281682011.exe [13748560]
[MD5.2812E78668DE4982E6C97D53540D842B] [SPRF][8/16/2011] (.DsNET Corp - Pas de description.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_MTB52283877201091682011.exe [13741008]
[MD5.2812E78668DE4982E6C97D53540D842B] [SPRF][8/16/2011] (.DsNET Corp - Pas de description.) -- C:\Users\DABSIDIK\AppData\Local\Temp\_MTB697933372016551682011.exe [13741008]
[MD5.63B26744A4BEF078A9A6D95C7AA385A0] [SPRF][2/19/2012] (...) -- C:\Users\DABSIDIK\Desktop\corbeille bis.reg [766390]
[MD5.1D955460E075B549BF351C58EE28B7DB] [SPRF][1/1/2011] (.www.motioninjoy.com - MotioninJoy Dualshock 3 driver Setup.) -- C:\Users\DABSIDIK\Desktop\MotioninJoy_060003_x86_signed.exe [2019736]
[MD5.D5E00A92B66366CCAB2E20D7DDE189E2] [SPRF][10/18/2011] (...) -- C:\Users\DABSIDIK\Desktop\SkypeIcon.exe [371272]
[MD5.61FBC6C9BE728206CD74CEBBCC328847] [SPRF][10/18/2011] (.Skype Technologies S.A. - Skype.) -- C:\Users\DABSIDIK\Desktop\SkypeSetup.exe [23803016]
[MD5.6F315BDFE7148459DE3B4B59E6DFA1D4] [SPRF][8/19/2009] (.Microsoft® Corporation - Windows Live Photo Upload Tool.) -- C:\windows\Downloaded Program Files\MsnPUpld.dll [641368]
[MD5.732CACA8E848F6E721B093E51FC50B1D] [SPRF][1/9/2007] (.Microsoft® Corporation - Outil MSN Téléchargement de photos.) -- C:\windows\Downloaded Program Files\PURfr-be.dll [110592]
~ Scan Files in 10mn AMs



---\\ Firewall Active Exception List (FirewallRules) (O87)
O87 - FAEL: "{157F876D-056D-48E0-B46E-EEB5CD93CA2F}" | In - None - P17 - TRUE | .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe
O87 - FAEL: "{CDBC3321-5C0D-4AD4-92AC-A81CB973946C}" |In - Domain - P6 - TRUE | .(...) -- C:\Program Files\iMesh Applications\iMesh\iMesh.exe (.not file.)
O87 - FAEL: "{5E3C8DCC-0D69-4271-87C7-4989EA3C9950}" |In - Domain - P17 - TRUE | .(...) -- C:\Program Files\iMesh Applications\iMesh\iMesh.exe (.not file.)
O87 - FAEL: "{68D751AF-C679-4516-A88A-E4618B3CE532}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\iMesh Applications\iMesh\iMesh.exe (.not file.)
O87 - FAEL: "{FF3850C0-92A2-4809-93D6-018FC95C4826}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\iMesh Applications\iMesh\iMesh.exe (.not file.)
O87 - FAEL: "{644A127B-11AE-4CE4-8516-A3FAFB948C78}" | In - Private - P6 - TRUE | .(.PeeringPortal - KTF MUSIC AoD Server.) -- C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe
O87 - FAEL: "{B724D1E3-F20D-45B3-AE2D-408E8FA048B8}" | In - Private - P17 - TRUE | .(.PeeringPortal - KTF MUSIC AoD Server.) -- C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe
O87 - FAEL: "{308BD633-541D-4DA0-9F2D-06BC4EF26028}" | In - Private - P6 - TRUE | .(.PeeringPortal - KTF MUSIC VoD Server.) -- C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe
O87 - FAEL: "{E366A4D9-F80A-4E65-84DF-8A2EBE664660}" | In - Private - P17 - TRUE | .(.PeeringPortal - KTF MUSIC VoD Server.) -- C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe
O87 - FAEL: "{1641FDE4-45BC-4F46-95E2-864D080F23FE}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\Datamngr\ToolBar\dtUser.exe (.not file.)
O87 - FAEL: "{22560347-A263-43DB-8206-4383FAE6F6EA}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\Datamngr\ToolBar\dtUser.exe (.not file.)
O87 - FAEL: "{A5DF5CEE-0F17-4E06-894F-AF8688AF287C}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe (.not file.)
O87 - FAEL: "{96CB6743-A0B4-4A9D-B096-969B5878F5DD}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe (.not file.)
O87 - FAEL: "{0114961E-9561-4154-987B-B7AD8DC7E3CB}" | In - None - P6 - TRUE | .(.BitTorrent, Inc. - BitTorrent.) -- C:\Program Files\BitTorrent\bittorrent.exe
O87 - FAEL: "{DD115A84-0F0C-4E4F-ADC9-A06C2D34D1AF}" | In - None - P17 - TRUE | .(.BitTorrent, Inc. - BitTorrent.) -- C:\Program Files\BitTorrent\bittorrent.exe
O87 - FAEL: "TCP Query User{CED62894-CB93-42E7-AA82-31D849B62198}C:\program files\google\google earth\client\googleearth.exe" | In - Private - P6 - TRUE | .(.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe
O87 - FAEL: "UDP Query User{89510ED6-3EAA-420F-A9EA-E78EBC148E16}C:\program files\google\google earth\client\googleearth.exe" | In - Private - P17 - TRUE | .(.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe
O87 - FAEL: "TCP Query User{CC54FD79-1A3B-4428-8F2A-4E55A9D3E0DE}C:\program files\freetvradio\freetvradio.exe" |In - Private - P6 - TRUE | .(...) -- C:\program files\freetvradio\freetvradio.exe (.not file.)
O87 - FAEL: "UDP Query User{44C55CCA-E351-4EC8-B9BC-32FD189C8C02}C:\program files\freetvradio\freetvradio.exe" |In - Private - P17 - TRUE | .(...) -- C:\program files\freetvradio\freetvradio.exe (.not file.)
O87 - FAEL: "TCP Query User{8FE19EAF-7258-44A2-B3E0-150F4C106B87}C:\program files\videolan\vlc\vlc.exe" | In - Private - P6 - TRUE | .(...) -- C:\Program Files\VideoLAN\VLC\vlc.exe
O87 - FAEL: "UDP Query User{65E3A98D-CEED-41D6-91D7-A1B792D5C6F9}C:\program files\videolan\vlc\vlc.exe" | In - Private - P17 - TRUE | .(...) -- C:\Program Files\VideoLAN\VLC\vlc.exe
O87 - FAEL: "{6692A754-D95B-4F05-8809-EFD6951D85C1}" | In - Public - P6 - TRUE | .(.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe
O87 - FAEL: "TCP Query User{A05EAF29-08E7-47AC-A67D-EE103C3E4E0A}C:\program files\google\google earth\client\googleearth.exe" | In - Public - P6 - TRUE | .(.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe
O87 - FAEL: "UDP Query User{E75A062C-7716-4264-BFD4-21623843AE8B}C:\program files\google\google earth\client\googleearth.exe" | In - Public - P17 - TRUE | .(.Google - Google Earth.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe
O87 - FAEL: "{8619175E-2C17-4360-8F1F-E0FFE407F940}" | In - Private - P6 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{B6D3D931-95C3-4BA9-B3A9-6FC6A4B8EDFA}" | In - Private - P17 - TRUE | .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: "{6E88D83E-0B8A-44F1-B436-0D9AEF59F13A}" | In - None - P17 - TRUE | .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
O87 - FAEL: "{3FCD00B3-E5DC-4C57-AF68-A5AA9551CF94}" | In - Public - P6 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr.exe
O87 - FAEL: "{2DD75C78-853D-424C-985D-9F82DB4CCD4C}" | In - Public - P17 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr.exe
O87 - FAEL: "{CE3322F4-F856-4F8D-964E-C1FFE47726B0}" | In - Public - P6 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr_im.exe
O87 - FAEL: "{76AC80B1-DA53-416B-8794-74ACDFD85AC3}" | In - Public - P17 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr_im.exe
O87 - FAEL: "TCP Query User{96840053-EC5B-44AA-9B96-D0D4B8538B71}C:\program files\freetvradio\freetvradio.exe" |In - Public - P6 - TRUE | .(...) -- C:\program files\freetvradio\freetvradio.exe (.not file.)
O87 - FAEL: "UDP Query User{670A2F73-B6B9-48A8-8C1D-330126771EDA}C:\program files\freetvradio\freetvradio.exe" |In - Public - P17 - TRUE | .(...) -- C:\program files\freetvradio\freetvradio.exe (.not file.)
O87 - FAEL: "TCP Query User{5872DC5D-E90D-49F8-A07C-6E628D86818D}C:\program files\sega\football manager 2012\fm.exe" | In - Private - P6 - TRUE | .(.Sports Interactive.) -- C:\Program Files\SEGA\Football Manager 2012\fm.exe
O87 - FAEL: "UDP Query User{506C62FB-BDFA-4F57-AC03-9ACA097A32D8}C:\program files\sega\football manager 2012\fm.exe" | In - Private - P17 - TRUE | .(.Sports Interactive.) -- C:\Program Files\SEGA\Football Manager 2012\fm.exe
O87 - FAEL: "{79CF3F9F-C190-41A0-B478-EBB643F49464}" | In - Private - P6 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr.exe
O87 - FAEL: "{645857FB-6E13-4239-8487-791049A9A1F0}" | In - Private - P17 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr.exe
O87 - FAEL: "{5CEB6B10-B067-4D9D-9966-BDC848B8FCD9}" | In - Private - P6 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr_im.exe
O87 - FAEL: "{86C70301-84F9-4058-BF37-42C6FE34A3C9}" | In - Private - P17 - TRUE | .(.Raptr, Inc - Raptr Client.) -- C:\Program Files\Raptr\raptr_im.exe
O87 - FAEL: "{67B02E62-B2E9-46CE-9337-97A71384E1EF}" | In - None - P17 - TRUE | .(.Skype Limited - Facebook Video Calling.) -- C:\Users\DABSIDIK\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
O87 - FAEL: "TCP Query User{FA2FEA60-DF9A-4E04-B2DC-3F985370FCD5}C:\program files\konami\pro evolution soccer 2011\pes2011.exe" | In - Private - P6 - TRUE | .(.Konami Digital Entertainment Co., Ltd..) -- C:\Program Files\Konami\Pro Evolution Soccer 2011\
O87 - FAEL: "UDP Query User{A9199272-14EE-4E0A-9FFE-744AB08018D4}C:\program files\konami\pro evolution soccer 2011\pes2011.exe" | In - Private - P17 - TRUE | .(.Konami Digital Entertainment Co., Ltd..) -- C:\Program Files\Konami\Pro Evolution Soccer 2011
~ Scan Firewall in 04mn AMs



---\\ Scan Additionnel (O88)
Database Version : 9066 - (05/02/2012)
Clés trouvées (Keys found) : 56
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 8
Fichiers trouvés (Files found) : 0

[HKCR\mime\database\content type\application/x-zix] =>Trojan.Lop
[HKLM\Software\Classes\Applications\iMeshV10.exe] =>PUP.iMesh
[HKLM\Software\Classes\AppID\DiscoveryHelper.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\iMesh.exe] =>PUP.iMesh
[HKLM\Software\Classes\AppID\IMTrProgress.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\IMWeb.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\Launcher.EXE] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioCDGrabber2.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioCompress3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFile3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFileWMA3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\NCTAudioFormatSettings3.DLL] =>PUP.BearShare
[HKLM\Software\Classes\AppID\WMHelper.DLL] =>PUP.BearShare
[HKLM\Software\Classes\escort.escrtBtn.1] =>Toolbar.Babylon
[HKLM\Software\Classes\imweb.imwebcontrol] =>PUP.iMesh
[HKLM\Software\Classes\nctaudiocdwriter2.audiocdwriter2] =>Adware.RecordNRip
[HKLM\Software\Classes\nctaudiocdwriter2.audiocdwriter2.1] =>Adware.RecordNRip
[HKLM\Software\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1c491116-c175-45e1-a570-6fb14fea8b7b}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1c491116-c175-45e1-a570-6fb14fea8b7b}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{1c491116-c175-45e1-a570-6fb14fea8b7b}] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1c491116-c175-45e1-a570-6fb14fea8b7b}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{416ae1cb-7257-484a-b912-aebc7fdad4ce}] =>Adware.SPointer
[HKLM\Software\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4daac69c-cba7-45e2-9bc8-1044483d3352}] =>Toolbar.Conduit
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4daac69c-cba7-45e2-9bc8-1044483d3352}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{4daac69c-cba7-45e2-9bc8-1044483d3352}] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4daac69c-cba7-45e2-9bc8-1044483d3352}] =>Toolbar.Conduit
[HKLM\Software\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}] =>PUP.BearShare
[HKLM\Software\Classes\AppID\{5e50ae1d-bc76-418b-94c4-efeac0cef80c}] =>Toolbar.Kiwee
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{64182481-4F71-486b-A045-B233BD0DA8FC}] =>Toolbar.Facemood
[HKLM\Software\Classes\CLSID\{6BC38BF4-E84D-46E1-920B-42D31AEA617E}] =>Toolbar.Agent
[HKLM\Software\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}] =>PUP.iMesh
[HKLM\Software\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}] =>PUP.iMesh
[HKLM\Software\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}] =>PUP.BearShare
[HKLM\Software\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}] =>PUP.BearShare
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB4E9724-F518-4dfd-9C7C-78B52103CAB9}] =>Toolbar.Facemood
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}] =>Toolbar.Agent
[HKLM\Software\Classes\AppID\{F54A0D21-6A53-460C-8301-C694EC9E1033}] =>PUP.iMesh
[HKLM\Software\Classes\AppID\{F7BCCFD4-2FA6-477D-A1B0-EF7500B3C49E}] =>PUP.iMesh
[HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Facemoods] =>Toolbar.Facemoods
[HKLM\Software\ilivid] =>Adware.Bandoo
[HKLM\Software\iMeshMediabarTB] =>PUP.iMesh
[HKCU\Software\AppDataLow\Software\PHPNukeFR] =>Toolbar.Conduit
[HKLM\Software\PHPNukeFR] =>Toolbar.Conduit
[HKCU\Software\AppDataLow\Software\Softonic_France] =>Toolbar.Conduit
[HKLM\Software\Softonic_France] =>Toolbar.Conduit
[HKLM\Software\torrentspeeder] =>Trojan.Lop
[HKLM\Software\winzix] =>Trojan.Lop
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\iLivid] =>Adware.Bandoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\PHPNukeFR Toolbar] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar] =>Adware.Bandoo
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Softonic_France Toolbar] =>Toolbar.Conduit
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\torrentspeeder] =>Trojan.Lop
C:\Program Files\PHPNukeFR =>Toolbar.Conduit
C:\Program Files\Softonic_France =>Toolbar.Conduit
C:\Users\DABSIDIK\AppData\LocalLow\facemoods.com =>Toolbar.Facemoods
C:\Users\DABSIDIK\AppData\LocalLow\PHPNukeFR =>Toolbar.Conduit
C:\Users\DABSIDIK\AppData\LocalLow\searchqutoolbar =>Adware.Bandoo
C:\Users\DABSIDIK\AppData\LocalLow\Softonic_France =>Toolbar.Conduit
C:\Users\DABSIDIK\AppData\Local\Temp\AskSearch =>Toolbar.AskBarDis
C:\Users\DABSIDIK\AppData\Local\Temp\Babylon =>Toolbar.Babylon
~ Scan Additionnel in 13mn AMs



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SR - | Auto 10/24/2011 55144 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 2/23/2012 44768 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
SR - | Auto 2/23/2012 131288 | (avast! Firewall) . (.AVAST Software.) - C:\Program Files\Alwil Software\Avast5\afwServ.exe
SS - | Demand 4/1/2011 183560 | (BBSvc) . (.Microsoft Corporation..) - C:\Program Files\Microsoft\BingBar\BBSvc.exe
SR - | Auto 8/30/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 10/8/2009 238952 | (FsUsbExService) . (.Teruten.) - C:\Windows\System32\FsUsbExService.exe
SS - | Auto 2/5/2010 135664 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 2/5/2010 135664 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 9/25/2009 182768 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - | Demand 11/13/2011 821608 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 8/31/2009 211560 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe
SR - | Auto 44312 | (OberonGameConsoleService) . (...) - C:\Program Files\Samsung Casual Games\GameConsole\OberonGameConsoleService.exe
SR - | Auto 174656 | (ProtexisLicensing) . (...) - C:\Windows\System32\PSIService.exe
SS - | Auto 1/31/2012 158856 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SR - | Auto 7/14/2009 20992 | C:\windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 11/9/2008 602392 | (YahooAUService) . (.Yahoo! Inc..) - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
~ Scan Services in 18mn AMs



---\\ Liste des émulateurs de CD/DVD (Hook du MBR)
O58 - SDL:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 11/21/2011 - 12:00:00 AM ---A- . (...) -- C:\windows\system32\drivers\sptd.sys [691696]
~ Scan Emulateurs in 18mn AMs



End of the scan (1965 lines in 03mn AMs)(0)
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 28 Fév 2012 00:36

oulaahh. je sais pas si c normal, mais les rapports sont vraiment lonng.. :s ! bon je crois que jai posté tout ce qu'il fallait que je fasse. non? merci de votre aide. bon reveil et passez une super journée. :wink:
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Re: Mon pc rame virus

Message le 28 Fév 2012 10:33

Bonjour

Merci d'utiliser les balises "code" pour les long rapports et d'héberger (chez http://cjoint.com/ par exemple) les rapports trop longs pour les balises

sinon les pages deviennent rapidement pénible à lire, Merci
Avatar de l'utilisateur
EinsteinZero
Moderateur
Moderateur
 
Messages: 18408
Inscription: 27 Déc 2009 16:22
Localisation: Normandie
 

Re: Mon pc rame virus

Message le 28 Fév 2012 12:56

Bonjour , :)

En effet , peut tu héberger le rapport ZHPDiag sur le site Image stp ...

Merci ;)
Avatar de l'utilisateur
Del-crosseur
Expert(e)
Expert(e)
 
Messages: 1833
Inscription: 08 Juin 2009 06:46
Localisation: Nord-(59)
 

Re: Mon pc rame virus

Message le 28 Fév 2012 17:04

bonjour a tous :D si si, c vrai que c quand même lourd de lire des longs trucs. bon je l'ai fait. voila l'adresse du ZH sur cjoint: http://cjoint.com/?BBCrb3nq2Kp
ben.d
Visiteur Confirmé
Visiteur Confirmé
 
Messages: 16
Inscription: 26 Fév 2012 17:46
 

Suivante


Sujets similaires

Message [Réglé] Mauvaise performance SSD NVME
Bonjour, j'ai un WDC PC SN530 SDBPNPZ-512G, et quand je fais des benchmark où je ne comprends rien, ils m'indiquent dès résultat pas terrible, y a t'il moyen d'arranger ça ?https://www.userbenchmark.com/UserRun/68904129Merci de votre aide.
Réponses: 9

Message [Réglé] Mini PC pour la 4k HDR
Bonjour (et bonne année a tous ),Actuellement, j'ai mon bon vieux mini PC (I5-4210U) , fonctionnel mais hélas devenu trop limité en performance pour la 4K (j'arrive à lire des fichiers en H264 avec très peu voir pas de lags tout dépend le lecteur) et on parle même pas avec du H265 (saccadé à mort) ...
Réponses: 6

Message [Réglé] android auto
Bonjour Je possede un tel. samsung S7 . Je viens d'intaller android auto et chaque fois que je branche mon tel. sur mon vehicule , mon telephone me dit de mettre android à jour. En fouillant un peu sur le net j'ai cru voir que samsung avait arreté les mises à jour sur les S7 . Est ce vrai , sinon co ...
Réponses: 3

Message [Réglè] HELP
Bonjour a tous,j'ai voulu désinstaller les pilotes AMD high définition audio device dans le gestionnaire croyant que les pilotes realtek prendraient la place j'ai redémarré mon PC et depuis je n'ai plus de son l?icône est affublée d'une belle croix rouge (aucun haut parleur ou casque n'est branché) ...
Réponses: 7

Message Son 5.1 [Réglé]
Bonjour,J'ouvre un autre post concernant mon souci de sortie son qui est désespérément figé sur "Stéréo". Mon PC Assemblé par mes soins possède une Carte Mère Gigabyte B550M DS3H "affublée" d'une carte Graphique AMD RX6600 Pulse. Mon PC est relié de ma carte graphique à mon TV à ...
Réponses: 3

Message [Réglé] Fenêtre intempestive Powershell au démarrage
Bonjour,Je m'ajoute à la longue liste des victimes de la fenêtre pop-up bleue qui s'ouvre et qui se ferme à chaque connexion de session, et quelques fois après.J'ai passé les antimalware et ESET... mais rien à faire.Je possède un Lenovo TrigKey AZW S3 en AMD Ryzen 7 qui tourne sur W11 64bits.je vous ...
Réponses: 11

Message [Réglé] Suite de mon sujet Démarrage PC parfois difficile
Bonjour,j'avais ouvert un sujet suite au démarrage très lent de mon PC. Votre aide m'a permis d'améliorer la situation mais ce n'est pas parfait (plus de 2 minutes avant la fenêtre de saisie du code d'accès Windows).On m'a conseillé de demander une désinfection. J'ai suivi la procédure et je joins l ...
Réponses: 12


Qui est en ligne

Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 16 invités


.: Nous contacter :: Flux RSS :: Données personnelles :.