Posté le 14 mai 2012
Télécharger | Reposter | Largeur fixe

OTL Extras logfile created on: 14/05/2012 19:10:26 - Run 1
OTL by OldTimer - Version 3.2.42.3 Folder = D:\Documents and Settings\olivier\Bureau
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

2,00 Gb Total Physical Memory | 1,54 Gb Available Physical Memory | 77,02% Memory free
3,85 Gb Paging File | 3,59 Gb Available in Paging File | 93,43% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,99 Gb Total Space | 9,37 Gb Free Space | 31,24% Space Free | Partition Type: NTFS
Drive D: | 202,89 Gb Total Space | 101,96 Gb Free Space | 50,25% Space Free | Partition Type: NTFS

Computer Name: SN115895780316 | User Name: olivier | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"9510:TCP" = 9510:TCP:*:Enabled:emule
"18257:UDP" = 18257:UDP:*:Enabled:emule2

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\AOL 9.0\aol.exe" = C:\Program Files\AOL 9.0\aol.exe:*:Disabled:AOL
"C:\APPS\Inventime\my.exe" = C:\APPS\Inventime\my.exe:*:Disabled:INVENTIME
"C:\Program Files\UBISOFT\Splinter Cell Pandora Tomorrow\pandora.exe" = C:\Program Files\UBISOFT\Splinter Cell Pandora Tomorrow\pandora.exe:*:Disabled:PANDORA
"C:\Program Files\UBISOFT\Splinter Cell Pandora Tomorrow\logo_ubi.exe" = C:\Program Files\UBISOFT\Splinter Cell Pandora Tomorrow\logo_ubi.exe:*:Disabled:SPLINTER CELL PANDORA
"C:\WINDOWS\system32\ZoneLabs\avsys\ScanningProcess.exe" = C:\WINDOWS\system32\ZoneLabs\avsys\ScanningProcess.exe:*:Enabled:Kaspersky AV Scanner
"C:\WINDOWS\system32\muzapp.exe" = C:\WINDOWS\system32\muzapp.exe:*:Enabled:MUZ AOD APP player -- (Musiccity Co.Ltd.)
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe" = C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" = C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe" = C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe" = C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" = C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe" = C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe
"C:\Program Files\eMule\emule.exe" = C:\Program Files\eMule\emule.exe:*:Enabled:eMule -- (http://www.emule-project.net)
"C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" = C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club -- (Take-Two Interactive Software, Inc.)
"D:\Programmes\GTA4\Grand Theft Auto IV\LaunchGTAIV.exe" = D:\Programmes\GTA4\Grand Theft Auto IV\LaunchGTAIV.exe:*:Enabled:Grand Theft Auto IV -- (Sony DADC Austria AG)
"C:\WINDOWS\system32\ZoneLabs\vsmon.exe" = C:\WINDOWS\system32\ZoneLabs\vsmon.exe:*:Enabled:vsmon
"C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetup.exe" = C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetup.exe:LocalSubNet:Enabled:Configuration du périphérique HP -- (Hewlett-Packard Co.)
"C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicator.exe" = C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicator.exe:LocalSubNet:Enabled:Communicateur réseau HP -- (Hewlett-Packard Co.)
"C:\Program Files\SopCast\adv\SopAdver.exe" = C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver -- (www.sopcast.com)
"C:\Program Files\SopCast\SopCast.exe" = C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application -- (www.sopcast.com)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{02D4DDD1-144E-4E7E-8D01-B059D2D88843}" = ActivInspire Help (FRA) v1
"{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{05653DE1-6567-40C6-B930-39D399B64369}" = OpenOffice.org 3.3
"{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}" = Microsoft Games for Windows - LIVE Redistributable
"{06A940CD-4924-485E-8500-476C9E08A820}" = Samsung PC Studio 3
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant
"{08B3869E-D282-424C-9AFC-870E04A4BA14}" = Rockstar Games Social Club
"{0965D484-1777-4BA5-8C3A-095A6B0D2696}_is1" = Driver Sweeper 1.5.5
"{133742BA-6F46-4D3E-85AF-78631D9AD8B8}" = Installation Windows Live
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Outil de téléchargement Windows Live
"{21657574-BD54-48A2-9450-EB03B2C7FC29}" = Sonic MyDVD
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22
"{26A24AE4-039D-4CA4-87B4-2F83216022FF}" = Java(TM) 6 Update 24
"{2A947CBB-4F5E-38D8-F49E-6C2C0D9D848E}" = Catalyst Control Center Graphics Previews Common
"{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
"{30DE45EC-48B3-7617-193A-7B4CDCE18D22}" = Skins
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{3248F0A8-6813-11D6-A77B-00B0D0150040}" = J2SE Runtime Environment 5.0 Update 4
"{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java(TM) 6 Update 2
"{3248F0A8-6813-11D6-A77B-00B0D0160040}" = Java(TM) 6 Update 4
"{350C940c-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3F7924B9-D148-3141-87B1-68F36043A940}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA
"{445B183D-F4F1-45C8-B9DB-F11355CA657B}" = Windows Live Messenger
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AA68A73-DB9C-439D-9481-981C82BD008B}" = Nokia Connectivity Cable Driver
"{4D243BA7-9AC4-46D1-90E5-EEB88974F501}" = Microsoft Games for Windows - LIVE
"{511DF669-2930-30C0-8EB6-552887E29EC8}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{5B76AEA2-D4E5-3B55-B965-ACC36AE0EAFC}" = Microsoft .NET Framework 3.5 Language Pack - fra
"{5C08205C-C9E0-A607-9EB1-EB0D7C5659B3}" = Catalyst Control Center Core Implementation
"{66910000-8B30-4973-A159-6371345AFFA5}" = WebReg
"{67EC0AB2-8CF7-4415-9F70-7FBC593C0D5E}" = ScanSoft PDF Create! 4
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{782E1916-7A78-47F7-9AF3-2233B83026F2}" = ActivInspire HWR Resources (INT) v1
"{7970AA03-F817-4916-AE77-80DC801646CC}" = ActivInspire v1
"{7D1D6A24-65D4-454C-8815-4F08A5FFF12C}" = Macromedia Shockwave Player
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8795CBED-55E2-4693-9F14-84EC446935BE}" = SpeechRedist
"{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A4CE7FD-9657-4B06-9943-E1819F3D5D67}" = DocProc
"{90120000-0010-040C-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (French) 12
"{90120000-0015-040C-0000-0000000FF1CE}" = Microsoft Office Access MUI (French) 2007
"{90120000-0015-040C-0000-0000000FF1CE}_PROR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-040C-0000-0000000FF1CE}" = Microsoft Office Excel MUI (French) 2007
"{90120000-0016-040C-0000-0000000FF1CE}_PROR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (French) 2007
"{90120000-0018-040C-0000-0000000FF1CE}_PROR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-040C-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (French) 2007
"{90120000-0019-040C-0000-0000000FF1CE}_PROR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-040C-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (French) 2007
"{90120000-001A-040C-0000-0000000FF1CE}_PROR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-040C-0000-0000000FF1CE}" = Microsoft Office Word MUI (French) 2007
"{90120000-001B-040C-0000-0000000FF1CE}_PROR_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proof (Arabic) 2007
"{90120000-001F-0401-0000-0000000FF1CE}_PROR_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_PROR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007
"{90120000-001F-0413-0000-0000000FF1CE}_PROR_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2007
"{90120000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2007
"{90120000-006E-040C-0000-0000000FF1CE}_PROR_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90A2EB5A-8446-1554-235A-D174E39AF4E5}" = Catalyst Control Center Graphics Full Existing
"{91120000-0014-0000-0000-0000000FF1CE}" = Microsoft Office Professional 2007
"{91120000-0014-0000-0000-0000000FF1CE}_PROR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}" = Nokia Suite
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9541FED0-327F-4DF0-8B96-EF57EF622F19}" = Sonic RecordNow!
"{9899605D-68FE-4457-BA7C-05A1813AB7F1}" = ActivDriver v5.4.6
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A040AC77-C1AA-4CC9-8931-9F648AF178F6}" = VC 9.0 Runtime
"{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
"{A2AA4204-C05A-4013-888A-AD153139297F}" = PC Connectivity Solution
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{AC76BA86-7AD7-1036-7B44-A83000000003}" = Adobe Reader 8.3.1 - Français
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B3B487E7-6171-4376-9074-B28082CEB504}" = Windows Live Call
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B48442EE-FF84-3A89-CA50-EA2D1C64733E}" = ccc-utility
"{BD88845C-00DF-43F2-97D1-E71C408FB5CC}" = Logiciel de base du périphérique HP Deskjet 3050 J610 series
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C20CE592-B0F8-4D20-BF31-0151CA6331A6}" = Samsung Media Studio
"{C4A4722E-79F9-417C-BD72-8D359A090C97}" = Samsung PC Studio 3
"{C7355D45-6D2D-4557-9B3E-10DE8FE74144}" = HP Deskjet 3050 J610 series - Enquête sur l'amélioration du produit
"{CC1086AD-1635-01EF-3137-04AB16B46F9F}" = ccc-core-preinstall
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D01B4212-C867-9074-217D-B40BB5A578FE}" = Catalyst Control Center Graphics Full New
"{D3B1C799-CB73-42DE-BA0F-2344793A095C}" = Catalyst Control Center - Branding
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{DCFF3DB2-0E96-6DF5-DF22-AB1C18CF5E86}" = Catalyst Control Center Graphics Light
"{DE9D0AF5-08ED-70A5-66FA-4C3B3E2A85E8}" = Catalyst Control Center HydraVision Full
"{DF74C7BA-5C9F-4F17-8B6F-5ECE08280F34}" = ScanSoft OmniPage 16
"{E0F07676-2C60-4465-A727-20DE3BFCABAC}" = Tony Hawks Pro Skater 4
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Codeur Windows Media Série 9
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{E45873F4-AB2D-473F-9CBB-78125F4BF624}" = Cabri Géomètre II Plus
"{EC64B779-10A2-448C-8104-00B6790836A9}" = Samsung PC Studio
"{EF1394D4-9FB6-4F1F-9A09-20FF3033AE14}" = Tony Hawk's Underground 2
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F104E135-A5EF-9551-4924-2A7B94DDDADF}" = ccc-core-static
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}" = HP Deskjet 3050 J610 series Aide
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FBB6D1D6-BD35-50E0-37B7-375BAB8E199B}" = CCC Help English
"504244733D18C8F63FF584AEB290E3904E791693" = Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"ActiveScan 2.0" = Panda ActiveScan 2.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"All ATI Software" = ATI - Software Uninstall Utility
"ALUpdate_is1" = ALTools Update
"ALZip_is1" = ALZip
"Atelier de géométrie 3D (V 1.01)_is1" = La Version 0101
"ATI Display Driver" = ATI Display Driver
"cabrilog_cabri3d_v1_is1" = Cabri 3D 1.0.3
"CCleaner" = CCleaner (remove only)
"eMule" = eMule
"GeoGebra" = GeoGebra
"Geoplan-Geospace" = Geoplan-Geospace
"Graphmatica" = Graphmatica
"HD Tune_is1" = HD Tune 2.55
"HijackThis" = HijackThis 2.0.2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"ie8" = Windows Internet Explorer 8
"InstallShield_{EF1394D4-9FB6-4F1F-9A09-20FF3033AE14}" = Tony Hawk's Underground 2
"Le Petit Robert" = Désinstaller Le Petit Robert de la langue française
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.61.0.1400
"Microsoft .NET Framework 3.5 Language Pack - fra" = Module linguistique Microsoft .NET Framework 3.5 - fra
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"mIRC" = mIRC
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"MSNINST" = MSN
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"Nokia Suite" = Nokia Suite
"PROR" = Microsoft Office Professional 2007
"SAMSUNG CDMA Modem" = SAMSUNG CDMA Modem Driver Set
"SAMSUNG Mobile Composite Device" = SAMSUNG Mobile Composite Device Software
"Seagate SeaTools Online French" = Seagate SeaTools Online French
"SopCast" = SopCast 3.2.9
"Sophos-AntiRootkit" = Sophos Anti-Rootkit 1.5.0
"Spybot - Search & Destroy_is1" = Spybot - Search & Destroy 1.5.2.20
"StreamTorrent 1.0" = StreamTorrent 1.0
"Veetle TV" = Veetle TV 0.9.18
"VLC media player" = VideoLAN VLC media player 0.8.6c
"vShare" = vShare Plugin
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"WIC" = Windows Imaging Component
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service" = Windows XP Service Pack 3
"WinLiveSuite_Wave3" = Installation Windows Live
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"GeoGebra" = GeoGebra

========== Last 10 Event Log Errors ==========

[ Antivirus Events ]
Error - 06/04/2008 18:41:40 | Computer Name = SN115895780316 | Source = avast! | ID = 33554522
Description =

Error - 07/04/2008 06:50:19 | Computer Name = SN115895780316 | Source = avast! | ID = 33554522
Description =

Error - 08/04/2008 03:53:50 | Computer Name = SN115895780316 | Source = avast! | ID = 33554522
Description =

[ Application Events ]
Error - 12/04/2012 13:56:21 | Computer Name = SN115895780316 | Source = Application Error | ID = 1000
Description = Application défaillante gta_sa.exe, version 0.0.0.0, module défaillant
gta_sa.exe, version 0.0.0.0, adresse de défaillance 0x0014f493.

Error - 24/04/2012 04:55:59 | Computer Name = SN115895780316 | Source = Application Hang | ID = 1002
Description = Application bloquée iexplore.exe, version 8.0.6001.18702, module bloqué
hungapp, version 0.0.0.0, adresse de blocage 0x00000000.

Error - 30/04/2012 13:00:10 | Computer Name = SN115895780316 | Source = Application Hang | ID = 1002
Description = Application bloquée emule.exe, version 0.49.2.37, module bloqué hungapp,
version 0.0.0.0, adresse de blocage 0x00000000.

Error - 30/04/2012 15:27:03 | Computer Name = SN115895780316 | Source = Application Error | ID = 1000
Description = Application défaillante wmplayer.exe, version 10.0.0.3646, module
défaillant nokiah264hpmpdectfilter.dll, version 2.0.0.9, adresse de défaillance
0x0003c132.

Error - 30/04/2012 15:29:44 | Computer Name = SN115895780316 | Source = Application Error | ID = 1000
Description = Application défaillante wmplayer.exe, version 10.0.0.3646, module
défaillant nokiah264hpmpdectfilter.dll, version 2.0.0.9, adresse de défaillance
0x0003c132.

Error - 01/05/2012 05:54:47 | Computer Name = SN115895780316 | Source = Application Error | ID = 1000
Description = Application défaillante wmplayer.exe, version 10.0.0.3646, module
défaillant nokiah264hpmpdectfilter.dll, version 2.0.0.9, adresse de défaillance
0x0003c132.

Error - 09/05/2012 15:48:31 | Computer Name = SN115895780316 | Source = Application Error | ID = 1000
Description = Application défaillante , version 0.0.0.0, module défaillant unknown,
version 0.0.0.0, adresse de défaillance 0x00000000.

Error - 13/05/2012 11:50:33 | Computer Name = SN115895780316 | Source = crypt32 | ID = 131083
Description = Échec de l'extraction de la liste racine tierce partie depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l'erreur : Un certificat requis n'est pas dans sa période de validité selon
la vérification par rapport à l'horloge système en cours ou le tampon daté dans
le fichier signé.

Error - 13/05/2012 11:50:33 | Computer Name = SN115895780316 | Source = crypt32 | ID = 131083
Description = Échec de l'extraction de la liste racine tierce partie depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l'erreur : Un certificat requis n'est pas dans sa période de validité selon
la vérification par rapport à l'horloge système en cours ou le tampon daté dans
le fichier signé.

Error - 13/05/2012 13:22:36 | Computer Name = SN115895780316 | Source = Application Error | ID = 1000
Description = Application défaillante gta_sa.exe, version 0.0.0.0, module défaillant
gta_sa.exe, version 0.0.0.0, adresse de défaillance 0x0014f493.

[ OSession Events ]
Error - 12/11/2009 10:53:48 | Computer Name = SN115895780316 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1367
seconds with 1320 seconds of active time. This session ended with a crash.

Error - 06/06/2010 10:45:05 | Computer Name = SN115895780316 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6504.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1
seconds with 0 seconds of active time. This session ended with a crash.

Error - 30/01/2011 06:07:03 | Computer Name = SN115895780316 | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1350
seconds with 900 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 13/05/2012 10:45:18 | Computer Name = SN115895780316 | Source = DCOM | ID = 10005
Description = DCOM a reçu l'erreur "%1084" lors de la mise en route du service StiSvc
avec les arguments "" pour démarrer le serveur : {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 13/05/2012 10:47:47 | Computer Name = SN115895780316 | Source = DCOM | ID = 10005
Description = DCOM a reçu l'erreur "%1084" lors de la mise en route du service StiSvc
avec les arguments "" pour démarrer le serveur : {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 13/05/2012 10:49:03 | Computer Name = SN115895780316 | Source = DCOM | ID = 10005
Description = DCOM a reçu l'erreur "%1084" lors de la mise en route du service EventSystem
avec les arguments "" pour démarrer le serveur : {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 13/05/2012 10:50:30 | Computer Name = SN115895780316 | Source = Service Control Manager | ID = 7000
Description = Le service AOL Connectivity Service n'a pas pu démarrer en raison
de l'erreur : %%3

Error - 13/05/2012 10:50:31 | Computer Name = SN115895780316 | Source = Print | ID = 19
Description = Échec du partage de l'imprimante + 1722, Imprimante PDFCreator nom
de partage PDFCreator.

Error - 13/05/2012 10:56:12 | Computer Name = SN115895780316 | Source = Service Control Manager | ID = 7000
Description = Le service AOL Connectivity Service n'a pas pu démarrer en raison
de l'erreur : %%3

Error - 13/05/2012 11:27:55 | Computer Name = SN115895780316 | Source = Service Control Manager | ID = 7000
Description = Le service AOL Connectivity Service n'a pas pu démarrer en raison
de l'erreur : %%3

Error - 13/05/2012 11:32:55 | Computer Name = SN115895780316 | Source = DCOM | ID = 10005
Description = DCOM a reçu l'erreur "%1058" lors de la mise en route du service WSearch
avec les arguments "" pour démarrer le serveur : {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error - 14/05/2012 08:51:32 | Computer Name = SN115895780316 | Source = Service Control Manager | ID = 7000
Description = Le service AOL Connectivity Service n'a pas pu démarrer en raison
de l'erreur : %%3

Error - 14/05/2012 12:31:13 | Computer Name = SN115895780316 | Source = Service Control Manager | ID = 7000
Description = Le service AOL Connectivity Service n'a pas pu démarrer en raison
de l'erreur : %%3


< End of report >





OTL logfile created on: 14/05/2012 19:10:25 - Run 1
OTL by OldTimer - Version 3.2.42.3 Folder = D:\Documents and Settings\olivier\Bureau
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

2,00 Gb Total Physical Memory | 1,54 Gb Available Physical Memory | 77,02% Memory free
3,85 Gb Paging File | 3,59 Gb Available in Paging File | 93,43% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 29,99 Gb Total Space | 9,37 Gb Free Space | 31,24% Space Free | Partition Type: NTFS
Drive D: | 202,89 Gb Total Space | 101,96 Gb Free Space | 50,25% Space Free | Partition Type: NTFS

Computer Name: SN115895780316 | User Name: olivier | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - D:\Documents and Settings\olivier\Bureau\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
PRC - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation)
PRC - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\system32\HPZipm12.exe (HP)
PRC - c:\APPS\Powercinema\Kernel\TV\CLSched.exe ()
PRC - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe ()
PRC - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLService.exe (Cyberlink)
PRC - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe (Cyberlink)
PRC - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)


========== Modules (No Company Name) ==========

MOD - C:\Program Files\Alwil Software\Avast5\defs\12051400\algo.dll ()
MOD - C:\WINDOWS\system32\msdmo.dll ()
MOD - c:\APPS\Powercinema\Kernel\TV\CLSched.exe ()
MOD - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe ()
MOD - c:\APPS\Powercinema\Kernel\TV\CLCapEngine.dll ()
MOD - c:\APPS\Powercinema\Kernel\TV\CLSchMgr.dll ()
MOD - c:\APPS\Powercinema\Kernel\TV\CLCapSvcps.dll ()


========== Win32 Services (SafeList) ==========

SRV - (AppMgmt) -- %SystemRoot%\System32\appmgmts.dll File not found
SRV - (AOL ACS) -- C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe File not found
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (ServiceLayer) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (odserv) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)
SRV - (NMSAccess) -- C:\Program Files\CDBurnerXP\NMSAccessU.exe ()
SRV - (wlidsvc) -- C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation)
SRV - (Pml Driver HPZ12) -- C:\WINDOWS\system32\HPZipm12.exe (HP)
SRV - (ose) -- C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (CLSched) CyberLink Task Scheduler (CTS) -- c:\APPS\Powercinema\Kernel\TV\CLSched.exe ()
SRV - (CLCapSvc) CyberLink Background Capture Service (CBCS) -- c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe ()
SRV - (CyberLink Media Library Service) -- c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe (Cyberlink)
SRV - (UleadBurningHelper) -- C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)


========== Driver Services (SafeList) ==========

DRV - (WDICA) -- File not found
DRV - (srescan) -- system32\ZoneLabs\srescan.sys File not found
DRV - (PDRFRAME) -- File not found
DRV - (PDRELI) -- File not found
DRV - (PDFRAME) -- File not found
DRV - (PDCOMP) -- File not found
DRV - (PCIDump) -- File not found
DRV - (MEMSWEEP2) -- C:\WINDOWS\system32\2.tmp File not found
DRV - (lbrtfdc) -- File not found
DRV - (Changer) -- File not found
DRV - (Ad-Watch Connect Filter) -- C:\WINDOWS\system32\drivers\NSDriver.sys File not found
DRV - (a0xkakia) -- File not found
DRV - (nmwcd) -- C:\WINDOWS\system32\drivers\ccdcmb.sys (Nokia)
DRV - (UsbserFilt) -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys (Nokia)
DRV - (upperdev) -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys (Nokia)
DRV - (nmwcdnsu) -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys (Nokia)
DRV - (nmwcdc) -- C:\WINDOWS\system32\drivers\ccdcmbo.sys (Nokia)
DRV - (nmwcdnsuc) -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys (Nokia)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (ALWIL Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (ALWIL Software)
DRV - (StarOpen) -- C:\WINDOWS\System32\drivers\StarOpen.sys ()
DRV - (prmvmouse) -- C:\WINDOWS\system32\drivers\activmouse.sys (Promethean Technologies Ltd)
DRV - (Lbd) -- C:\WINDOWS\system32\drivers\Lbd.sys ()
DRV - (pavboot) -- C:\WINDOWS\system32\drivers\pavboot.sys (Panda Security, S.L.)
DRV - (SAVRKBootTasks) -- C:\WINDOWS\system32\SAVRKBootTasks.sys (Sophos Plc)
DRV - (ActivHidSerMini) -- C:\WINDOWS\system32\drivers\activhidsermini.sys (Promethean Technologies Ltd)
DRV - (ati2mtag) -- C:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)
DRV - (ACEDRV07) -- C:\WINDOWS\system32\drivers\ACEDRV07.sys (Protect Software GmbH)
DRV - (pccsmcfd) -- C:\WINDOWS\system32\drivers\pccsmcfd.sys (Nokia)
DRV - (AtiHdmiService) -- C:\WINDOWS\system32\drivers\AtiHdmi.sys (ATI Research Inc.)
DRV - (MPE) -- C:\WINDOWS\system32\drivers\mpe.sys (Microsoft Corporation)
DRV - (sptd) -- C:\WINDOWS\system32\drivers\sptd.sys ()
DRV - (sscdmdm) -- C:\WINDOWS\system32\drivers\sscdmdm.sys (MCCI)
DRV - (sscdmdfl) -- C:\WINDOWS\system32\drivers\sscdmdfl.sys (MCCI)
DRV - (sscdbus) SAMSUNG USB Composite Device driver (WDM) -- C:\WINDOWS\system32\drivers\sscdbus.sys (MCCI)
DRV - (Aspi32) -- C:\WINDOWS\system32\drivers\ASPI32.SYS (Adaptec)
DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\WINDOWS\system32\drivers\alcxwdm.sys (Realtek Semiconductor Corp.)
DRV - (3xHybrid) -- C:\WINDOWS\system32\drivers\3xHybrid.sys (Philips Semiconductors GmbH)
DRV - (AmdK8) -- C:\WINDOWS\system32\drivers\AmdK8.sys (Advanced Micro Devices)
DRV - (RTL8023xp) -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys (Realtek Semiconductor Corporation )
DRV - (SI3112r) -- C:\WINDOWS\system32\drivers\SI3112r.sys (Silicon Image, Inc.)
DRV - (SiFilter) -- C:\WINDOWS\system32\drivers\SiWinAcc.sys (Silicon Image, Inc.)
DRV - (wanatw) WAN Miniport (ATW) -- C:\WINDOWS\system32\drivers\wanatw4.sys (America Online, Inc.)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKLM\..\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}: "URL" = http://toolbar.ask.com/toolbarv/askRedirect?o=13925&gct=&gc=1&q={searchTerms}&crm=1


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://webmail.numericable.fr/
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "https://moncompte.kyrielles.fr/home"
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@Cabrilog.com/Cabri 3D,version=1.0: C:\Program Files\Cabri 3D\bin\npcabri3d.dll (Cabrilog)
FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandasecurity.com/activescan: C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll (Panda Security, S.L.)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2088: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.2146: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1069: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fe_9.0@nokia.com: C:\Program Files\Nokia\Nokia Suite\Connectors\Bookmarks Connector\FirefoxExtension_9.0 [2012/04/22 18:27:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\te_9.0@nokia.com: C:\Program Files\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_9.0 [2012/04/22 18:27:45 | 000,000,000 | ---D | M]

[2010/02/18 20:00:36 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\olivier\Application Data\Mozilla\Extensions

O1 HOSTS File: ([2012/05/07 13:27:02 | 000,000,761 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (vShare Toolbar) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll ()
O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (vShare Toolbar) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll ()
O3 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
O3 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\..\Toolbar\WebBrowser: (vShare Toolbar) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files\vShare\vshare_toolbar.dll ()
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)
O4 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006..\Run: [] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 128
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 128
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 128
O7 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: EditLevel = 0
O7 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0
O7 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCommonGroups = 0
O7 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 128
O7 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 File not found
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O15 - HKU\S-1-5-21-3605488381-1036888668-1655580073-1006\..Trusted Domains: iufm.fr ([www.aix-mrs] http in Trusted sites)
O16 - DPF: {275D2217-FFE8-46B5-8FD2-B18CA0B7EE36} file:///C:/DRIVERS/snapsys/HDDDiag/bin/npseatools.cab (Seagate SeaTools Online French)
O16 - DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} http://quickscan.bitdefender.com/qsax/qsax.cab (Bitdefender QuickScan Control)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab (BDSCANONLINE Control)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1236110874406 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab (ActiveScan 2.0 Installer Class)
O16 - DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab (Java Plug-in 1.6.0_04)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{72608CE0-ACB6-409E-91F9-AEDB5F45A520}: DhcpNameServer = 89.2.0.1 89.2.0.2
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files\vShare\vshare_toolbar.dll ()
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: D:\Documents and Settings\olivier\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: D:\Documents and Settings\olivier\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {88485281-8b4b-4f8d-9ede-82e29a064277} - C:\Program Files\MarkAny\ContentSafer\MACSMANAGER.dll (MarkAny Cooperation.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012/05/13 16:59:36 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2012/05/13 16:59:36 | 000,000,000 | RHSD | M] - D:\autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (aswBoot.exe /M:13a873168c)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

MsConfig - Services: "aawservice"
MsConfig - Services: "NMSAccess"
MsConfig - StartUpFolder: D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Démarrage rapide de HP Photosmart Premier.lnk - - File not found
MsConfig - StartUpFolder: D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^HP Digital Imaging Monitor.lnk - - File not found
MsConfig - StartUpFolder: D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk - - File not found
MsConfig - StartUpFolder: D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Outil de mise à jour Google.lnk - - File not found
MsConfig - StartUpFolder: D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe - (Microsoft Corporation)
MsConfig - StartUpFolder: D:^Documents and Settings^olivier^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 3.3.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe - ()
MsConfig - StartUpReg: ACTIVBOARD - hkey= - key= - c:\APPS\ABOARD\ABOARD.EXE (NEC Computers International)
MsConfig - StartUpReg: ActivControl - hkey= - key= - C:\Program Files\Activ Software\ActivDriver\ActivControl2.exe (Promethean Technologies Group Ltd)
MsConfig - StartUpReg: Adobe ARM - hkey= - key= - C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
MsConfig - StartUpReg: Adobe Reader Speed Launcher - hkey= - key= - C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
MsConfig - StartUpReg: ATICCC - hkey= - key= - File not found
MsConfig - StartUpReg: ATICustomerCare - hkey= - key= - File not found
MsConfig - StartUpReg: ATIModeChange - hkey= - key= - File not found
MsConfig - StartUpReg: CatalystRegistration - hkey= - key= - File not found
MsConfig - StartUpReg: ctfmon.exe - hkey= - key= - File not found
MsConfig - StartUpReg: DAEMON Tools - hkey= - key= - C:\Program Files\DAEMON Tools\daemon.exe (DT Soft Ltd.)
MsConfig - StartUpReg: EmailChecker - hkey= - key= - C:\APPS\EmailChecker\ech.exe (NEC Computers International)
MsConfig - StartUpReg: HP Software Update - hkey= - key= - C:\Program Files\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
MsConfig - StartUpReg: IMJPMIG8.1 - hkey= - key= - C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
MsConfig - StartUpReg: ISUSPM Startup - hkey= - key= - C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
MsConfig - StartUpReg: ISUSScheduler - hkey= - key= - C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
MsConfig - StartUpReg: KernelFaultCheck - hkey= - key= - File not found
MsConfig - StartUpReg: MAAgent - hkey= - key= - C:\Program Files\MarkAny\ContentSafer\MaAgent.exe ((&#51452;)&#47560;&#53356;&#50528;&#45768;)
MsConfig - StartUpReg: Malwarebytes Anti-Malware (reboot) - hkey= - key= - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
MsConfig - StartUpReg: MSMSGS - hkey= - key= - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
MsConfig - StartUpReg: msnmsgr - hkey= - key= - C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
MsConfig - StartUpReg: NeroFilterCheck - hkey= - key= - File not found
MsConfig - StartUpReg: NokiaMServer - hkey= - key= - File not found
MsConfig - StartUpReg: OpAgent - hkey= - key= - File not found
MsConfig - StartUpReg: PCMService - hkey= - key= - c:\apps\Powercinema\PCMService.exe (CyberLink Corp.)
MsConfig - StartUpReg: PHIME2002A - hkey= - key= - File not found
MsConfig - StartUpReg: PHIME2002ASync - hkey= - key= - File not found
MsConfig - StartUpReg: QuickTime Task - hkey= - key= - File not found
MsConfig - StartUpReg: RGSC - hkey= - key= - C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (Take-Two Interactive Software, Inc.)
MsConfig - StartUpReg: SmpcSys - hkey= - key= - C:\APPS\SMP\SMPSYS.EXE (Packard Bell BV)
MsConfig - StartUpReg: SMSTray - hkey= - key= - C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe (SAMSUNG ELECTRONICS)
MsConfig - StartUpReg: SoundMan - hkey= - key= - C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
MsConfig - StartUpReg: SSBkgdUpdate - hkey= - key= - C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.)
MsConfig - StartUpReg: StartCCC - hkey= - key= - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
MsConfig - StartUpReg: Steam - hkey= - key= - File not found
MsConfig - StartUpReg: SunJavaUpdateSched - hkey= - key= - C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
MsConfig - StartUpReg: swg - hkey= - key= - File not found
MsConfig - StartUpReg: TkBellExe - hkey= - key= - C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
MsConfig - StartUpReg: Ulead AutoDetector v2 - hkey= - key= - C:\Program Files\Fichiers communs\Ulead Systems\AutoDetector\Monitor.exe (Ulead Systems, Inc.)
MsConfig - StartUpReg: Vade Retro Outlook Express - hkey= - key= - C:\Program Files\Goto Software\Vade Retro\Vaderetro_oe.exe ()
MsConfig - StartUpReg: Windl - hkey= - key= - C:\WINDOWS\Windl\mirc.exe (mIRC Co. Ltd.)
MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 0
MsConfig - State: "services" - 2
MsConfig - State: "startup" - 2

SafeBootMin: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: AppMgmt - %SystemRoot%\System32\appmgmts.dll File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1056

========== Files/Folders - Created Within 30 Days ==========

[2012/05/13 21:06:58 | 000,595,456 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\olivier\Bureau\OTL.exe
[2012/05/13 18:13:20 | 000,028,552 | ---- | C] (Panda Security, S.L.) -- C:\WINDOWS\System32\drivers\pavboot.sys
[2012/05/13 18:13:13 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security
[2012/05/13 17:50:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\olivier\Application Data\QuickScan
[2012/05/13 16:59:36 | 000,000,000 | RHSD | C] -- C:\autorun.inf
[2012/04/22 18:31:17 | 000,000,000 | ---D | C] -- D:\Documents and Settings\olivier\Local Settings\Application Data\NokiaAccount
[2012/04/22 18:27:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Nokia
[2012/04/22 18:25:59 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2012/04/22 18:25:46 | 000,008,576 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\nmwcdnsuc.sys
[2012/04/22 18:25:45 | 000,137,600 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\nmwcdnsu.sys
[2012/04/22 18:25:44 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2012/04/22 18:25:43 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2012/04/22 18:25:42 | 000,023,168 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2012/04/22 18:25:41 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys
[2012/04/22 18:13:55 | 000,000,000 | ---D | C] -- D:\Documents and Settings\olivier\Application Data\Nokia Suite
[2012/04/22 18:13:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\olivier\Application Data\Nokia
[2012/04/22 18:13:17 | 000,000,000 | ---D | C] -- D:\Documents and Settings\olivier\Mes documents\Nokia Suite
[2010/12/23 14:00:18 | 000,047,360 | ---- | C] (VSO Software) -- D:\Documents and Settings\olivier\Application Data\pcouffin.sys
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012/05/14 18:36:15 | 000,001,002 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/05/14 18:30:40 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/05/14 14:54:49 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{1C69707B-AB9A-4C69-9AD2-66C3622EAC78}.job
[2012/05/13 21:07:01 | 000,595,456 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\olivier\Bureau\OTL.exe
[2012/05/13 20:40:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\tasks\At2.job
[2012/05/13 18:29:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2012/05/13 18:12:09 | 000,259,695 | ---- | M] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\census.cache
[2012/05/13 18:12:05 | 000,242,234 | ---- | M] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\ars.cache
[2012/05/13 18:04:12 | 000,000,036 | ---- | M] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\housecall.guid.cache
[2012/05/13 17:02:44 | 000,000,296 | RHS- | M] () -- C:\BOOT.INI
[2012/05/13 16:29:44 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/05/13 14:00:01 | 000,000,460 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2012/05/12 11:29:15 | 000,421,432 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/05/11 18:03:06 | 000,586,136 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2012/05/11 18:03:06 | 000,492,524 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/05/11 18:03:06 | 000,108,444 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2012/05/11 18:03:06 | 000,083,850 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/05/11 17:58:39 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012/05/09 17:18:54 | 000,000,669 | ---- | M] () -- D:\Documents and Settings\All Users\Bureau\Malwarebytes Anti-Malware.lnk
[2012/05/07 13:27:02 | 000,000,761 | RHS- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20120513-134746.backup
[2012/05/07 13:27:02 | 000,000,761 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.20120513-134814.backup
[2012/05/07 13:27:02 | 000,000,761 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2012/05/06 00:36:47 | 000,132,608 | ---- | M] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/04/30 10:10:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2012/04/22 18:27:56 | 000,001,636 | ---- | M] () -- D:\Documents and Settings\All Users\Bureau\Nokia Suite.lnk
[2012/04/22 17:15:45 | 000,001,529 | ---- | M] () -- D:\Documents and Settings\All Users\Bureau\CDBurnerXP.lnk
[2012/04/21 15:39:34 | 000,002,453 | ---- | M] () -- D:\Documents and Settings\olivier\Bureau\Microsoft Office Word 2007.lnk
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012/05/13 18:12:09 | 000,259,695 | ---- | C] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\census.cache
[2012/05/13 18:12:05 | 000,242,234 | ---- | C] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\ars.cache
[2012/05/13 18:04:12 | 000,000,036 | ---- | C] () -- D:\Documents and Settings\olivier\Local Settings\Application Data\housecall.guid.cache
[2012/05/11 17:54:04 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012/04/22 18:27:56 | 000,001,636 | ---- | C] () -- D:\Documents and Settings\All Users\Bureau\Nokia Suite.lnk
[2012/02/16 17:49:44 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011/03/19 21:24:17 | 000,000,112 | ---- | C] () -- C:\WINDOWS\ActiveSkin.INI
[2010/12/23 14:00:18 | 000,087,608 | ---- | C] () -- D:\Documents and Settings\olivier\Application Data\inst.exe
[2010/12/23 14:00:18 | 000,007,887 | ---- | C] () -- D:\Documents and Settings\olivier\Application Data\pcouffin.cat
[2010/12/23 14:00:18 | 000,001,144 | ---- | C] () -- D:\Documents and Settings\olivier\Application Data\pcouffin.inf
[2010/12/23 13:55:27 | 000,001,057 | ---- | C] () -- D:\Documents and Settings\olivier\Application Data\vso_ts_preview.xml
[2010/12/22 22:34:21 | 000,401,390 | ---- | C] () -- D:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat

========== LOP Check ==========

[2009/02/22 22:13:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Administrateur.SN115895780316.000\Application Data\ScanSoft
[2009/10/22 12:34:31 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Administrateur.SN115895780316.000\Application Data\Windows Search
[2009/02/21 12:32:43 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Administrateur.SN115895780316.000\Application Data\Zeon
[2011/05/04 17:07:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Activ Software
[2010/02/12 11:57:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Alwil Software
[2010/12/23 13:27:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Canneverbe Limited
[2011/11/12 12:33:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\CheckPoint
[2010/12/22 15:39:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Installations
[2007/05/11 22:10:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\MailFrontier
[2011/11/26 17:39:57 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Nokia
[2011/10/01 13:43:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
[2007/05/11 21:21:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\OD2
[2011/09/05 17:32:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\PC Suite
[2011/05/04 17:16:31 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Promethean
[2008/07/09 13:59:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\ScanSoft
[2007/05/11 21:27:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Ulead Systems
[2007/05/11 21:22:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\VadeRetro
[2007/05/11 21:21:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Viewpoint
[2008/07/09 13:59:02 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Zeon
[2007/11/07 20:26:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\.Cabri3D
[2011/05/04 17:06:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\ACTIV Software
[2010/12/23 13:27:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Canneverbe Limited
[2011/11/12 12:34:02 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\CheckPoint
[2008/01/02 20:45:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\DataCast
[2010/12/23 14:36:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\DeepBurner
[2010/12/23 14:08:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\DVDVideoSoft
[2010/02/18 20:00:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\e-kyrielles
[2008/03/01 13:12:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Graphe Easy
[2009/04/04 14:38:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Image Zone Express
[2007/11/12 19:56:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Leadertech
[2012/04/22 18:13:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Nokia
[2012/04/22 18:13:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Nokia Suite
[2007/05/11 21:52:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\OD2
[2011/05/03 18:24:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\OpenOffice.org
[2011/09/05 17:40:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\PC Suite
[2008/03/11 21:05:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Printer Info Cache
[2011/05/04 18:00:15 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Promethean
[2012/05/13 17:50:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\QuickScan
[2007/12/19 20:44:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Samsung
[2008/07/09 14:08:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\ScanSoft
[2010/08/21 18:27:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\StreamTorrent
[2011/02/19 20:24:36 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\vShare
[2010/12/23 14:00:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Vso
[2009/08/18 12:10:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Windows Desktop Search
[2009/10/21 21:55:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Windows Search
[2008/07/09 14:05:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Zeon
[2012/04/30 10:10:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2012/05/13 20:40:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2012/05/13 18:29:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2012/05/13 14:00:01 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
[2012/05/14 14:54:49 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{1C69707B-AB9A-4C69-9AD2-66C3622EAC78}.job

========== Purity Check ==========



========== Custom Scans ==========

< MD5 for: EXPLORER.EXE >
[2004/08/05 14:00:00 | 001,036,288 | ---- | M] (Microsoft Corporation) MD5=4C33E5B9A6197B6ED215F6CFBA0A2DAA -- C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
[2007/06/13 15:10:53 | 001,037,312 | ---- | M] (Microsoft Corporation) MD5=B795475444D6D57A572C14B9E1A29839 -- C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[2007/06/13 15:22:28 | 001,037,312 | ---- | M] (Microsoft Corporation) MD5=D0288319660EDCFED07C7E74C4EA38A5 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
[2008/04/14 04:34:03 | 001,037,824 | ---- | M] (Microsoft Corporation) MD5=F2317622D29F9FF0F88AEECD5F60F0DD -- C:\WINDOWS\explorer.exe
[2008/04/14 04:34:03 | 001,037,824 | ---- | M] (Microsoft Corporation) MD5=F2317622D29F9FF0F88AEECD5F60F0DD -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe

< MD5 for: SVCHOST.EXE >
[2012/04/04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2004/08/05 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=1BD6C2F707A275CB7C16FD99FE0F31CA -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
[2008/04/14 04:34:23 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=E4BDF223CD75478BF44567B4D5C2634D -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008/04/14 04:34:23 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=E4BDF223CD75478BF44567B4D5C2634D -- C:\WINDOWS\system32\svchost.exe

< MD5 for: USERINIT.EXE >
[2004/08/05 14:00:00 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=D6D65EA32B190401B57EDB6706F29669 -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008/04/14 04:34:26 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=E74DDB12188C2FF57A78624DBF7332FC -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008/04/14 04:34:26 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=E74DDB12188C2FF57A78624DBF7332FC -- C:\WINDOWS\system32\userinit.exe

< MD5 for: VOLSNAP.IN_ >
[2004/08/05 14:00:00 | 000,000,836 | ---- | M] () MD5=5CCEC9B18D084C7B936E4E6D3628D2AF -- C:\WINDOWS\I386\VOLSNAP.IN_

< MD5 for: VOLSNAP.INF >
[2004/08/05 14:00:00 | 000,002,246 | ---- | M] () MD5=F17CBADDC17090C568384B6D67749FAD -- C:\WINDOWS\inf\volsnap.inf

< MD5 for: VOLSNAP.PNF >
[2011/12/08 19:59:02 | 000,005,028 | ---- | M] () MD5=94E67F666617558D27D0C4EF115F035F -- C:\WINDOWS\inf\volsnap.PNF

< MD5 for: VOLSNAP.SY_ >
[2004/08/05 14:00:00 | 000,025,572 | ---- | M] () MD5=4451C78D4B861207D04E52A1A14013CA -- C:\WINDOWS\I386\VOLSNAP.SY_

< MD5 for: VOLSNAP.SYS >
[2004/08/05 14:00:00 | 000,053,376 | ---- | M] (Microsoft Corporation) MD5=313B1A0D5DB26DFE1C34A6C13B2CE0A7 -- C:\WINDOWS\$NtServicePackUninstall$\volsnap.sys
[2008/04/14 03:56:04 | 000,053,376 | ---- | M] (Microsoft Corporation) MD5=46DE1126684369BACE4849E4FC8C43CA -- C:\WINDOWS\ServicePackFiles\i386\volsnap.sys
[2008/04/14 03:56:04 | 000,053,376 | ---- | M] (Microsoft Corporation) MD5=46DE1126684369BACE4849E4FC8C43CA -- C:\WINDOWS\system32\drivers\volsnap.sys

< MD5 for: WINLOGON.EXE >
[2012/04/04 15:56:38 | 000,199,240 | ---- | M] () MD5=097D0E812D7A9A3101CE46CB2BE0474D -- C:\Program Files\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2004/08/05 14:00:00 | 000,506,368 | ---- | M] (Microsoft Corporation) MD5=D2DE785AEAB0BB8CA4C14A8A199DBE4E -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008/04/14 04:34:28 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=DD73D6B9F6B4CB630CF35B438B540174 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008/04/14 04:34:28 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=DD73D6B9F6B4CB630CF35B438B540174 -- C:\WINDOWS\system32\winlogon.exe

< %temp%\*.exe /s >
[2012/05/13 18:04:19 | 002,423,744 | ---- | M] (Igor Pavlov) -- D:\DOCUME~1\olivier\LOCALS~1\Temp\HCBackup\hcpackage.exe
[1 D:\DOCUME~1\olivier\LOCALS~1\Temp\HCBackup\*.tmp files -> D:\DOCUME~1\olivier\LOCALS~1\Temp\HCBackup\*.tmp -> ]
[2010/09/29 10:51:40 | 000,192,512 | ---- | M] () -- D:\DOCUME~1\olivier\LOCALS~1\Temp\HouseCall\bspatch.exe
[1 D:\DOCUME~1\olivier\LOCALS~1\Temp\HouseCall\*.tmp files -> D:\DOCUME~1\olivier\LOCALS~1\Temp\HouseCall\*.tmp -> ]

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2010/10/07 07:43:28 | 000,365,912 | ---- | M] (ESTsoft Corp.) -- D:\Documents and Settings\All Users\Application Data\ESTsoft\ALAuth\AuthSerialReg.exe
[2010/04/27 06:20:44 | 000,374,104 | ---- | M] (ESTsoft corp.) -- D:\Documents and Settings\All Users\Application Data\ESTsoft\ALCM\ALCMUpdate.exe
[2010/05/20 18:12:48 | 004,238,264 | ---- | M] (Adobe Systems, Inc.) -- D:\Documents and Settings\All Users\Application Data\HP\HP Deskjet 3050 J610 series\Help\flash\FlashPla.exe
[2010/12/22 15:51:00 | 000,053,248 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\Installations\{DB7AE42C-695D-4D36-A8FA-31A1C6454436}\Installer\CommonCustomActions\closeapp.exe
[2010/12/22 15:51:02 | 000,086,016 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\Installations\{DB7AE42C-695D-4D36-A8FA-31A1C6454436}\Packages\NPCIA\CustomActions\uninstall.exe
[2012/05/09 17:18:18 | 010,063,000 | ---- | M] (Malwarebytes Corporation ) -- D:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
[2012/03/12 16:04:27 | 071,043,416 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer.exe
[2012/04/22 18:24:58 | 000,125,952 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer\InstallerService.exe
[2012/04/22 18:24:58 | 000,053,760 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer\InstallerServiceExec.exe
[2012/04/22 18:24:58 | 000,054,784 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer\IsPinned.exe
[2012/04/22 18:25:08 | 000,046,144 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer\CommonCustomActions\pcswpc.exe
[2012/04/22 18:25:08 | 000,047,616 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer\CommonCustomActions\RepairMplatform.exe
[2012/04/22 18:25:08 | 000,077,824 | ---- | M] () -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache\ProductCache\{D5878294-C113-43c5-A24F-FC333C52015A}\{92D1CEBC-7C72-4ECF-BFC6-C131EF3FE6A7}\Installer\CommonCustomActions\Run_XML6_SP1.exe

< %ALLUSERSPROFILE%\Application Data\*. >
[2011/05/04 17:07:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Activ Software
[2011/06/17 22:16:15 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Adobe
[2010/02/12 11:57:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Alwil Software
[2007/05/11 21:21:43 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\AOL
[2009/02/23 15:56:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\ATI
[2009/02/20 20:27:35 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\ATI(2)
[2010/12/23 13:27:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Canneverbe Limited
[2011/11/12 12:33:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\CheckPoint
[2008/02/08 18:59:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\CyberLink
[2011/05/02 18:30:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\ESTsoft
[2007/11/06 17:22:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Google
[2011/11/11 14:32:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\HP
[2010/12/22 15:39:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Installations
[2008/07/09 13:58:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\InstallShield
[2010/01/16 13:17:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Lavasoft
[2007/05/11 22:10:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\MailFrontier
[2009/10/22 13:48:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/11/11 14:43:25 | 000,000,000 | --SD | M] -- D:\Documents and Settings\All Users\Application Data\Microsoft
[2012/05/13 00:19:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Microsoft Help
[2010/12/23 18:26:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Nero
[2011/11/26 17:39:57 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Nokia
[2011/10/01 13:43:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
[2007/05/11 21:21:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\OD2
[2011/09/05 17:32:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\PC Suite
[2011/05/04 17:16:31 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Promethean
[2008/02/07 19:18:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\QuickTime
[2007/05/12 06:05:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\SBSI
[2008/07/09 13:59:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\ScanSoft
[2008/03/11 21:16:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Sonic
[2012/05/13 13:23:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2011/05/02 18:23:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Sun
[2007/05/11 21:54:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Symantec
[2007/05/11 21:27:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Ulead Systems
[2007/05/11 21:22:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\VadeRetro
[2007/05/11 21:21:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Viewpoint
[2007/05/11 23:05:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2008/07/09 13:59:02 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Application Data\Zeon

< %APPDATA%\*.exe /s >
[2010/12/23 14:00:18 | 000,087,608 | ---- | M] () -- D:\Documents and Settings\olivier\Application Data\inst.exe
[2012/05/01 20:33:48 | 010,145,632 | ---- | M] (ESTsoft Corp.) -- D:\Documents and Settings\olivier\Application Data\ESTsoft\ALUpdate\ALZIP\newfile\TEMP\ALZip851.exe

< %APPDATA%\*. >
[2007/11/07 20:26:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\.Cabri3D
[2011/05/04 17:06:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\ACTIV Software
[2008/04/08 12:38:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Adobe
[2007/11/06 12:30:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\AdobeUM
[2009/02/23 15:56:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\ATI
[2010/12/23 13:27:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Canneverbe Limited
[2011/11/12 12:34:02 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\CheckPoint
[2008/02/08 18:59:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\CyberLink
[2008/01/02 20:45:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\DataCast
[2010/12/23 14:36:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\DeepBurner
[2010/06/26 13:07:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\dvdcss
[2010/12/23 14:08:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\DVDVideoSoft
[2010/02/18 20:00:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\e-kyrielles
[2011/01/31 13:05:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\ESTsoft
[2007/05/11 22:02:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Google
[2008/03/01 13:12:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Graphe Easy
[2008/02/21 17:47:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Help
[2007/11/06 13:26:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\HP
[2011/11/11 14:23:45 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\HpUpdate
[2007/05/12 06:05:06 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Identities
[2009/04/04 14:38:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Image Zone Express
[2008/01/02 20:44:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\InstallShield
[2007/11/12 19:56:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Leadertech
[2007/05/11 22:15:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Macromedia
[2009/10/22 13:48:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Malwarebytes
[2010/08/13 18:09:01 | 000,000,000 | --SD | M] -- D:\Documents and Settings\olivier\Application Data\Microsoft
[2010/02/18 20:00:36 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Mozilla
[2010/12/23 18:35:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Nero
[2012/04/22 18:13:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Nokia
[2012/04/22 18:13:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Nokia Suite
[2007/05/11 21:52:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\OD2
[2011/05/03 18:24:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\OpenOffice.org
[2011/09/05 17:40:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\PC Suite
[2008/03/11 21:05:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Printer Info Cache
[2011/05/04 18:00:15 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Promethean
[2012/05/13 17:50:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\QuickScan
[2007/11/19 12:41:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Real
[2007/12/19 20:44:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Samsung
[2008/07/09 14:08:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\ScanSoft
[2009/02/08 20:23:00 | 000,000,000 | RH-D | M] -- D:\Documents and Settings\olivier\Application Data\SecuROM
[2007/11/12 19:56:31 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Sonic
[2010/08/21 18:27:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\StreamTorrent
[2007/11/06 16:40:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Sun
[2007/05/11 21:23:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Symantec
[2007/11/06 11:25:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\vlc
[2011/02/19 20:24:36 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\vShare
[2010/12/23 14:00:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Vso
[2009/08/18 12:10:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Windows Desktop Search
[2009/10/21 21:55:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Windows Search
[2007/05/11 21:21:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\You've Got Pictures Screensaver
[2008/07/09 14:05:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\olivier\Application Data\Zeon

< %SYSTEMDRIVE%\*.exe >
[2001/05/24 13:59:30 | 000,162,304 | ---- | M] () -- C:\UNWISE.EXE

< %systemroot%\Tasks\*.* /s >
[2012/05/14 18:36:15 | 000,001,002 | ---- | M] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2012/04/30 10:10:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
[2012/05/13 20:40:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
[2012/05/13 18:29:00 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
[2012/05/13 14:00:01 | 000,000,460 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
[2004/08/05 14:00:00 | 000,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini
[2012/05/14 18:31:00 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT
[2012/05/14 14:54:49 | 000,000,436 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{1C69707B-AB9A-4C69-9AD2-66C3622EAC78}.job

< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\aol.exe\InstallInfo\\ReinstallCommand: C:\PROGRA~1\AOL9~1.0\accdef.exe -rb
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\aol.exe\InstallInfo\\HideIconsCommand: C:\PROGRA~1\AOL9~1.0\accdef.exe -hb
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\aol.exe\InstallInfo\\ShowIconsCommand: C:\PROGRA~1\AOL9~1.0\accdef.exe -sb
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\system32\ie4uinit.exe" -reinstall [2012/02/29 14:17:40 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -hide [2012/02/29 14:17:40 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\system32\ie4uinit.exe" -show [2012/02/29 14:17:40 | 000,174,080 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2009/03/08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: C:\Program Files\Internet Explorer\iexplore.exe [2009/03/08 14:09:26 | 000,638,816 | ---- | M] (Microsoft Corporation)

< End of report >





x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.