did80 a écrit :
salut je ne trouve aucun rapport
aucun lien
Je te pose les rapports ici :
RAPPORT : OTL. txt
OTL logfile created on: 16/07/2011 21:48:14 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Administrateur\Bureau
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
3,00 Gb Total Physical Memory | 2,49 Gb Available Physical Memory | 82,87% Memory free
5,29 Gb Paging File | 4,91 Gb Available in Paging File | 92,77% Paging File free
Paging file location(s): C:\pagefile.sys 2500 4096 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37,26 Gb Total Space | 23,69 Gb Free Space | 63,59% Space Free | Partition Type: NTFS
Drive E: | 465,65 Gb Total Space | 109,81 Gb Free Space | 23,58% Space Free | Partition Type: FAT32
Drive F: | 149,00 Gb Total Space | 112,69 Gb Free Space | 75,63% Space Free | Partition Type: FAT32
Computer Name: ORDINATEUR2 | User Name: Administrateur | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Administrateur\Bureau\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\WINDOWS\system32\lxducoms.exe ( )
PRC - C:\WINDOWS\system32\spool\drivers\w32x86\3\lxduserv.exe (Lexmark International, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\OpenOffice.org 2.4\program\soffice.bin (OpenOffice.org)
PRC - C:\Program Files\OpenOffice.org 2.4\program\soffice.exe (OpenOffice.org)
PRC - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Administrateur\Bureau\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\snxhk.dll (AVAST Software)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (Apple Mobile Device) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (lxdu_device) -- C:\WINDOWS\System32\lxducoms.exe ( )
SRV - (lxduCATSCustConnectService) -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxduserv.exe ()
SRV - (SoundMAX Agent Service (default)) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Driver Services (SafeList) ==========
DRV - (aswSnx) -- C:\WINDOWS\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (MBAMProtector) -- C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (atksgt) -- C:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (fssfltr) -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys (Microsoft Corporation)
DRV - (LMouKE) -- C:\WINDOWS\system32\drivers\LMouKE.Sys (Logitech, Inc.)
DRV - (LMouFilt) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (L8042mou) -- C:\WINDOWS\system32\drivers\L8042mou.Sys (Logitech, Inc.)
DRV - (L8042Kbd) -- C:\WINDOWS\system32\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV - (CHORUS2) -- C:\WINDOWS\system32\drivers\chorus2usb.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (NwlnkIpx) -- C:\WINDOWS\system32\drivers\nwlnkipx.sys (Microsoft Corporation)
DRV - (b57w2k) -- C:\WINDOWS\system32\drivers\b57xp32.sys (Broadcom Corporation)
DRV - (camfilt2) -- C:\WINDOWS\system32\drivers\camfilt2.sys (Guillemot Corporation)
DRV - (SNPSTD3) -- C:\WINDOWS\system32\drivers\snpstd3.sys (Sonix Co. Ltd.)
DRV - (RTL8023xp) -- C:\WINDOWS\system32\drivers\Rtnicxp.sys (Realtek Semiconductor Corporation )
DRV - (NwlnkNb) -- C:\WINDOWS\system32\drivers\nwlnknb.sys (Microsoft Corporation)
DRV - (NwlnkSpx) -- C:\WINDOWS\system32\drivers\nwlnkspx.sys (Microsoft Corporation)
DRV - (rtl8139) Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (imagesrv) -- C:\WINDOWS\system32\DRIVERS\imagesrv.sys (Ahead Software AG)
DRV - (imagedrv) -- C:\WINDOWS\System32\Drivers\imagedrv.sys (Ahead Software AG)
DRV - (ICDUSB2) Sony IC Recorder (P) -- C:\WINDOWS\system32\drivers\IcdUsb2.sys (Sony Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar =
http://search.msn.com/spbasic.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://fr.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.mynumericable.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
[2010/05/13 11:32:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Extensions
[2010/05/13 11:32:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Extensions\mozswing@mozswing.org
O1 HOSTS File: ([2011/07/12 11:47:10 | 000,435,814 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 14998 more lines...
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuw(...) (WUWebControl Class)
O16 - DPF: {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab (Java Plug-in 1.6.0_04)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/03/26 09:05:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011/06/25 11:53:22 | 000,000,051 | RHS- | M] () - E:\autorun.inf -- [ FAT32 ]
O32 - AutoRun File - [2011/06/25 11:53:22 | 000,000,051 | RHS- | M] () - F:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/07/16 21:37:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Bureau\docotl
[2011/07/16 21:28:04 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrateur\Bureau\OTL.exe
[2011/07/16 21:10:13 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrateur\Recent
[2011/07/15 18:38:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\tdsskiller
[2011/07/15 11:23:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Mes fichiers reçus
[2011/07/14 18:27:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\My Library
[2011/07/14 11:18:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\Malwarebytes
[2011/07/14 11:17:58 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/07/14 11:17:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware
[2011/07/14 11:17:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/07/14 11:17:52 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/07/14 11:17:52 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/07/14 11:16:03 | 009,435,312 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Administrateur\Mes documents\mbam-setup-1.51.0.1200.exe
[2011/07/14 11:10:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\Sammsoft
[2011/07/12 12:23:35 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Remover
[2011/07/09 16:43:49 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\L&H
[2011/07/08 11:29:42 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011/07/08 11:29:42 | 000,000,000 | ---D | C] -- C:\rsit
[2011/07/07 18:35:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\GlarySoft
[2011/07/07 18:31:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Glary Utilities
[2011/07/07 18:30:57 | 000,000,000 | ---D | C] -- C:\Program Files\Glary Utilities
[2011/07/07 18:30:31 | 008,877,376 | ---- | C] (Glarysoft Ltd ) -- C:\Documents and Settings\Administrateur\Mes documents\Glary Utilities(Doublon)setup.exe
[2011/07/07 17:31:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Bbox - Bouygues Telecom
[2011/07/07 17:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Bbox
[2011/07/07 17:11:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\TEST Barette Memoire
[2011/07/07 17:04:50 | 000,086,094 | ---- | C] (Ahead Software AG) -- C:\WINDOWS\System32\ImageDrive.cpl
[2011/07/06 19:54:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\PROG-BASE DE REGISTRE
[2011/07/06 19:48:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\PROG-Synthese Vocale Windows
[2011/07/05 16:06:42 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Mes vidéos
[2011/07/04 22:45:06 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy
[2011/07/04 22:25:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2011/07/04 11:40:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\RegistryKeys
[2011/07/03 17:35:39 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011/07/03 16:17:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8(2)
[2011/07/03 09:23:54 | 019,725,152 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Administrateur\Mes documents\installation-ie8-xp-01NET.exe
[2011/07/03 08:20:04 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Mes images
[2011/07/03 08:20:04 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Ma musique
[2011/06/27 12:31:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\InstallShield
[2011/06/27 08:09:31 | 003,096,424 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Administrateur\Mes documents\CcleanerV3.exe
[2011/06/19 10:01:49 | 003,120,288 | ---- | C] (Adobe Systems, Inc.) -- C:\Documents and Settings\Administrateur\Mes documents\install_flash_player_ax.exe
[2010/06/26 12:06:17 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Administrateur\Application Data\pcouffin.sys
[2010/05/19 13:25:42 | 000,057,344 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd3.dll
[2010/05/19 13:25:41 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd3.dll
[2010/02/02 12:03:07 | 000,851,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduusb1.dll
[2010/02/02 12:03:07 | 000,438,272 | ---- | C] ( ) -- C:\WINDOWS\System32\LXDUhcp.dll
[2010/02/02 12:03:07 | 000,364,544 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduinpa.dll
[2010/02/02 12:03:07 | 000,339,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduiesc.dll
[2010/02/02 12:03:06 | 001,069,056 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduserv.dll
[2010/02/02 12:03:06 | 000,651,264 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdupmui.dll
[2010/02/02 12:03:06 | 000,577,536 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdulmpm.dll
[2010/02/02 12:03:05 | 000,679,936 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduhbn3.dll
[2010/02/02 12:03:05 | 000,328,360 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduih.exe
[2010/02/02 12:03:04 | 000,765,952 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducomc.dll
[2010/02/02 12:03:04 | 000,594,600 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducoms.exe
[2010/02/02 12:03:04 | 000,376,832 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducomm.dll
[2010/02/02 12:03:04 | 000,369,320 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducfg.exe
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/07/16 21:52:00 | 000,001,072 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/07/16 21:28:13 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrateur\Bureau\OTL.exe
[2011/07/16 21:11:49 | 000,000,250 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Google.url
[2011/07/16 20:18:30 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/07/16 20:07:02 | 000,511,366 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2011/07/16 20:07:02 | 000,442,060 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/07/16 20:07:02 | 000,085,370 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2011/07/16 20:07:02 | 000,071,804 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/07/16 20:02:48 | 000,000,330 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2011/07/16 20:02:43 | 000,001,068 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/07/16 20:02:38 | 000,000,330 | -HS- | M] () -- C:\WINDOWS\tasks\EYXMRNQ.job
[2011/07/16 20:02:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/07/16 19:53:24 | 000,000,450 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{A7E68482-49FA-4D45-ACA1-502BBC95B8EE}.job
[2011/07/15 18:50:47 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Raccourci vers TDSSKiller.2.5.11.0_15.07.2011_18.38.41_log.lnk
[2011/07/15 18:37:33 | 001,383,430 | ---- | M] () -- C:\Documents and Settings\Administrateur\Mes documents\tdsskiller.zip
[2011/07/14 11:17:58 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2011/07/14 11:16:18 | 009,435,312 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Administrateur\Mes documents\mbam-setup-1.51.0.1200.exe
[2011/07/12 12:23:36 | 000,001,554 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\AD-R.lnk
[2011/07/12 11:47:10 | 000,435,814 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/07/12 10:36:35 | 000,000,933 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Spybot - Search & Destroy.lnk
[2011/07/12 10:21:39 | 000,000,541 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Connexion.url
[2011/07/10 20:46:31 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011/07/10 09:35:57 | 000,173,080 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/07/08 11:27:17 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
[2011/07/07 18:31:01 | 000,000,741 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Glary Utilities.lnk
[2011/07/07 17:31:53 | 000,000,263 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au Contrôle parental.url
[2011/07/07 17:31:53 | 000,000,261 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au pack Sécurité.url
[2011/07/07 17:31:53 | 000,000,235 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Bouygues Telecom - Mes services en un clic.url
[2011/07/07 14:21:18 | 000,127,860 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\memtest86+-4.20.usb.installer.zip
[2011/07/05 18:47:14 | 008,877,376 | ---- | M] (Glarysoft Ltd ) -- C:\Documents and Settings\Administrateur\Mes documents\Glary Utilities(Doublon)setup.exe
[2011/07/05 11:49:29 | 000,003,121 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/07/04 19:57:13 | 000,167,936 | ---- | M] () -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011/07/04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011/07/04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011/07/04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011/07/04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011/07/04 13:35:12 | 000,102,616 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011/07/04 13:35:09 | 000,096,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011/07/04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011/07/04 13:32:13 | 000,030,808 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011/07/04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011/07/03 09:46:10 | 000,000,237 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Facebook.url
[2011/07/03 09:23:54 | 019,725,152 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Administrateur\Mes documents\installation-ie8-xp-01NET.exe
[2011/06/27 08:10:45 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\CCleaner.lnk
[2011/06/27 08:09:39 | 003,096,424 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\Administrateur\Mes documents\CcleanerV3.exe
[2011/06/26 09:50:29 | 000,000,212 | -HS- | M] () -- C:\boot.ini
[2011/06/25 07:55:16 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\avast! Free Antivirus.lnk
[2011/06/25 07:46:59 | 000,000,437 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2011/06/19 10:02:32 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/06/19 10:02:02 | 003,120,288 | ---- | M] (Adobe Systems, Inc.) -- C:\Documents and Settings\Administrateur\Mes documents\install_flash_player_ax.exe
[2011/06/19 09:27:02 | 000,000,308 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Bouygues Telecom Internet.url
[2011/06/18 07:25:36 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Adobe Reader X.lnk
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/07/15 18:50:47 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Raccourci vers TDSSKiller.2.5.11.0_15.07.2011_18.38.41_log.lnk
[2011/07/15 18:37:26 | 001,383,430 | ---- | C] () -- C:\Documents and Settings\Administrateur\Mes documents\tdsskiller.zip
[2011/07/14 11:17:58 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2011/07/12 12:23:36 | 000,001,554 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\AD-R.lnk
[2011/07/08 11:27:16 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
[2011/07/07 18:31:06 | 000,000,330 | ---- | C] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2011/07/07 18:31:01 | 000,000,741 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Glary Utilities.lnk
[2011/07/07 17:31:53 | 000,000,263 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au Contrôle parental.url
[2011/07/07 17:31:53 | 000,000,261 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au pack Sécurité.url
[2011/07/07 17:31:53 | 000,000,235 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Bouygues Telecom - Mes services en un clic.url
[2011/07/07 14:21:52 | 000,127,860 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\memtest86+-4.20.usb.installer.zip
[2011/06/27 08:10:45 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\CCleaner.lnk
[2011/06/26 11:08:44 | 000,000,250 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Google.url
[2011/06/18 07:25:36 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Adobe Reader X.lnk
[2011/06/18 07:25:36 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Adobe Reader X.lnk
[2011/03/12 12:19:39 | 000,000,601 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2011/03/12 12:19:20 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2011/02/25 12:43:05 | 000,000,053 | ---- | C] () -- C:\WINDOWS\B51a_Down.INI
[2010/06/26 12:06:17 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\inst.exe
[2010/06/26 12:06:17 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\pcouffin.cat
[2010/06/26 12:06:17 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\pcouffin.inf
[2010/06/04 20:51:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\DVEdit.INI
[2010/05/22 12:08:38 | 000,279,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2010/05/22 12:08:38 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2010/05/19 13:25:41 | 000,015,478 | ---- | C] () -- C:\WINDOWS\snpstd3.ini
[2010/05/19 13:25:09 | 003,600,384 | ---- | C] () -- C:\WINDOWS\ffmpeg.exe
[2010/05/13 14:42:03 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010/03/14 14:58:34 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/02/28 13:22:37 | 000,167,936 | ---- | C] () -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/02 12:06:19 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxduvs.dll
[2010/02/02 12:06:18 | 000,360,448 | ---- | C] () -- C:\WINDOWS\System32\lxducoin.dll
[2010/02/02 12:05:42 | 001,036,288 | ---- | C] () -- C:\WINDOWS\System32\lxdudrs.dll
[2010/02/02 12:05:42 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\lxducaps.dll
[2010/02/02 12:05:41 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxducnv4.dll
[2010/02/02 12:05:26 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\lxduoem.dll
[2010/02/02 12:05:26 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\LXDUPMON.DLL
[2010/02/02 12:05:26 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\LXDUFXPU.DLL
[2010/02/02 12:03:50 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\lxdurwrd.ini
[2010/02/02 12:03:08 | 000,389,120 | ---- | C] () -- C:\WINDOWS\System32\LXDUinst.dll
[2010/02/02 12:03:05 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lxdugrd.dll
[2010/02/01 17:09:25 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System32\nvModes.dat
[2008/03/27 12:19:49 | 000,000,137 | ---- | C] () -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\fusioncache.dat
[2008/03/26 16:50:40 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\msssc.dll
[2008/03/26 09:56:35 | 000,004,205 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2008/03/26 09:55:29 | 000,173,080 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008/03/26 09:09:04 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2008/03/26 09:02:47 | 000,021,892 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2007/05/11 06:03:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2007/05/11 06:03:00 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2007/05/11 06:03:00 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2007/05/11 06:03:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2007/05/11 06:03:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2007/05/11 06:03:00 | 001,018,748 | ---- | C] () -- C:\WINDOWS\System32\nvucode.bin
[2007/05/11 06:03:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2007/05/11 06:03:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2007/05/11 06:03:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2007/05/11 06:03:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006/06/23 18:30:38 | 000,516,165 | ---- | C] () -- C:\WINDOWS\System32\BMP2JPG.dll
[2006/06/23 18:30:38 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\Eztw32.dll
[2004/08/05 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/08/05 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/05 14:00:00 | 000,511,366 | ---- | C] () -- C:\WINDOWS\System32\perfh00C.dat
[2004/08/05 14:00:00 | 000,442,060 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/05 14:00:00 | 000,322,810 | ---- | C] () -- C:\WINDOWS\System32\perfi00C.dat
[2004/08/05 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/05 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/05 14:00:00 | 000,085,370 | ---- | C] () -- C:\WINDOWS\System32\perfc00C.dat
[2004/08/05 14:00:00 | 000,071,804 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/05 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/05 14:00:00 | 000,034,108 | ---- | C] () -- C:\WINDOWS\System32\perfd00C.dat
[2004/08/05 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/05 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/08/05 14:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/08/05 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004/08/05 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
< End of report >
RAPPORT : EXTRAS.txt
OTL logfile created on: 16/07/2011 21:48:14 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Administrateur\Bureau
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
3,00 Gb Total Physical Memory | 2,49 Gb Available Physical Memory | 82,87% Memory free
5,29 Gb Paging File | 4,91 Gb Available in Paging File | 92,77% Paging File free
Paging file location(s): C:\pagefile.sys 2500 4096 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37,26 Gb Total Space | 23,69 Gb Free Space | 63,59% Space Free | Partition Type: NTFS
Drive E: | 465,65 Gb Total Space | 109,81 Gb Free Space | 23,58% Space Free | Partition Type: FAT32
Drive F: | 149,00 Gb Total Space | 112,69 Gb Free Space | 75,63% Space Free | Partition Type: FAT32
Computer Name: ORDINATEUR2 | User Name: Administrateur | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Documents and Settings\Administrateur\Bureau\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
PRC - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\WINDOWS\system32\lxducoms.exe ( )
PRC - C:\WINDOWS\system32\spool\drivers\w32x86\3\lxduserv.exe (Lexmark International, Inc.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\OpenOffice.org 2.4\program\soffice.bin (OpenOffice.org)
PRC - C:\Program Files\OpenOffice.org 2.4\program\soffice.exe (OpenOffice.org)
PRC - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Modules (SafeList) ==========
MOD - C:\Documents and Settings\Administrateur\Bureau\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Alwil Software\Avast5\snxhk.dll (AVAST Software)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (AVAST Software)
SRV - (MBAMService) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (Apple Mobile Device) -- C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (lxdu_device) -- C:\WINDOWS\System32\lxducoms.exe ( )
SRV - (lxduCATSCustConnectService) -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxduserv.exe ()
SRV - (SoundMAX Agent Service (default)) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
========== Driver Services (SafeList) ==========
DRV - (aswSnx) -- C:\WINDOWS\System32\drivers\aswSnx.sys (AVAST Software)
DRV - (aswSP) -- C:\WINDOWS\System32\drivers\aswSP.sys (AVAST Software)
DRV - (aswTdi) -- C:\WINDOWS\System32\drivers\aswTdi.sys (AVAST Software)
DRV - (aswMon2) -- C:\WINDOWS\System32\drivers\aswmon2.sys (AVAST Software)
DRV - (aswRdr) -- C:\WINDOWS\System32\drivers\aswRdr.sys (AVAST Software)
DRV - (Aavmker4) -- C:\WINDOWS\System32\drivers\aavmker4.sys (AVAST Software)
DRV - (aswFsBlk) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys (AVAST Software)
DRV - (MBAMProtector) -- C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (atksgt) -- C:\WINDOWS\system32\drivers\atksgt.sys ()
DRV - (lirsgt) -- C:\WINDOWS\system32\drivers\lirsgt.sys ()
DRV - (fssfltr) -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys (Microsoft Corporation)
DRV - (LMouKE) -- C:\WINDOWS\system32\drivers\LMouKE.Sys (Logitech, Inc.)
DRV - (LMouFilt) -- C:\WINDOWS\system32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\WINDOWS\system32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (L8042mou) -- C:\WINDOWS\system32\drivers\L8042mou.Sys (Logitech, Inc.)
DRV - (L8042Kbd) -- C:\WINDOWS\system32\drivers\L8042Kbd.sys (Logitech, Inc.)
DRV - (CHORUS2) -- C:\WINDOWS\system32\drivers\chorus2usb.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (NwlnkIpx) -- C:\WINDOWS\system32\drivers\nwlnkipx.sys (Microsoft Corporation)
DRV - (b57w2k) -- C:\WINDOWS\system32\drivers\b57xp32.sys (Broadcom Corporation)
DRV - (camfilt2) -- C:\WINDOWS\system32\drivers\camfilt2.sys (Guillemot Corporation)
DRV - (SNPSTD3) -- C:\WINDOWS\system32\drivers\snpstd3.sys (Sonix Co. Ltd.)
DRV - (RTL8023xp) -- C:\WINDOWS\system32\drivers\Rtnicxp.sys (Realtek Semiconductor Corporation )
DRV - (NwlnkNb) -- C:\WINDOWS\system32\drivers\nwlnknb.sys (Microsoft Corporation)
DRV - (NwlnkSpx) -- C:\WINDOWS\system32\drivers\nwlnkspx.sys (Microsoft Corporation)
DRV - (rtl8139) Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)
DRV - (imagesrv) -- C:\WINDOWS\system32\DRIVERS\imagesrv.sys (Ahead Software AG)
DRV - (imagedrv) -- C:\WINDOWS\System32\Drivers\imagedrv.sys (Ahead Software AG)
DRV - (ICDUSB2) Sony IC Recorder (P) -- C:\WINDOWS\system32\drivers\IcdUsb2.sys (Sony Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar =
http://search.msn.com/spbasic.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://fr.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.mynumericable.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
[2010/05/13 11:32:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Extensions
[2010/05/13 11:32:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrateur\Application Data\Mozilla\Extensions\mozswing@mozswing.org
O1 HOSTS File: ([2011/07/12 11:47:10 | 000,435,814 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 www.1-2005-search.com
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 14998 more lines...
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [avast] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuw(...) (WUWebControl Class)
O16 - DPF: {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab (Java Plug-in 1.6.0_04)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008/03/26 09:05:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011/06/25 11:53:22 | 000,000,051 | RHS- | M] () - E:\autorun.inf -- [ FAT32 ]
O32 - AutoRun File - [2011/06/25 11:53:22 | 000,000,051 | RHS- | M] () - F:\autorun.inf -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
========== Files/Folders - Created Within 30 Days ==========
[2011/07/16 21:37:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Bureau\docotl
[2011/07/16 21:28:04 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrateur\Bureau\OTL.exe
[2011/07/16 21:10:13 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrateur\Recent
[2011/07/15 18:38:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\tdsskiller
[2011/07/15 11:23:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Mes fichiers reçus
[2011/07/14 18:27:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\My Library
[2011/07/14 11:18:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\Malwarebytes
[2011/07/14 11:17:58 | 000,039,984 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/07/14 11:17:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Malwarebytes' Anti-Malware
[2011/07/14 11:17:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/07/14 11:17:52 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/07/14 11:17:52 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/07/14 11:16:03 | 009,435,312 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Administrateur\Mes documents\mbam-setup-1.51.0.1200.exe
[2011/07/14 11:10:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\Sammsoft
[2011/07/12 12:23:35 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Remover
[2011/07/09 16:43:49 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\L&H
[2011/07/08 11:29:42 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011/07/08 11:29:42 | 000,000,000 | ---D | C] -- C:\rsit
[2011/07/07 18:35:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\GlarySoft
[2011/07/07 18:31:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Glary Utilities
[2011/07/07 18:30:57 | 000,000,000 | ---D | C] -- C:\Program Files\Glary Utilities
[2011/07/07 18:30:31 | 008,877,376 | ---- | C] (Glarysoft Ltd ) -- C:\Documents and Settings\Administrateur\Mes documents\Glary Utilities(Doublon)setup.exe
[2011/07/07 17:31:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Bbox - Bouygues Telecom
[2011/07/07 17:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Bbox
[2011/07/07 17:11:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\TEST Barette Memoire
[2011/07/07 17:04:50 | 000,086,094 | ---- | C] (Ahead Software AG) -- C:\WINDOWS\System32\ImageDrive.cpl
[2011/07/06 19:54:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\PROG-BASE DE REGISTRE
[2011/07/06 19:48:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Mes documents\PROG-Synthese Vocale Windows
[2011/07/05 16:06:42 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Mes vidéos
[2011/07/04 22:45:06 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy
[2011/07/04 22:25:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2011/07/04 11:40:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\RegistryKeys
[2011/07/03 17:35:39 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2011/07/03 16:17:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8(2)
[2011/07/03 09:23:54 | 019,725,152 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Administrateur\Mes documents\installation-ie8-xp-01NET.exe
[2011/07/03 08:20:04 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Mes images
[2011/07/03 08:20:04 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrateur\Mes documents\Ma musique
[2011/06/27 12:31:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrateur\Application Data\InstallShield
[2011/06/27 08:09:31 | 003,096,424 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Administrateur\Mes documents\CcleanerV3.exe
[2011/06/19 10:01:49 | 003,120,288 | ---- | C] (Adobe Systems, Inc.) -- C:\Documents and Settings\Administrateur\Mes documents\install_flash_player_ax.exe
[2010/06/26 12:06:17 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Administrateur\Application Data\pcouffin.sys
[2010/05/19 13:25:42 | 000,057,344 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd3.dll
[2010/05/19 13:25:41 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd3.dll
[2010/02/02 12:03:07 | 000,851,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduusb1.dll
[2010/02/02 12:03:07 | 000,438,272 | ---- | C] ( ) -- C:\WINDOWS\System32\LXDUhcp.dll
[2010/02/02 12:03:07 | 000,364,544 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduinpa.dll
[2010/02/02 12:03:07 | 000,339,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduiesc.dll
[2010/02/02 12:03:06 | 001,069,056 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduserv.dll
[2010/02/02 12:03:06 | 000,651,264 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdupmui.dll
[2010/02/02 12:03:06 | 000,577,536 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdulmpm.dll
[2010/02/02 12:03:05 | 000,679,936 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduhbn3.dll
[2010/02/02 12:03:05 | 000,328,360 | ---- | C] ( ) -- C:\WINDOWS\System32\lxduih.exe
[2010/02/02 12:03:04 | 000,765,952 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducomc.dll
[2010/02/02 12:03:04 | 000,594,600 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducoms.exe
[2010/02/02 12:03:04 | 000,376,832 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducomm.dll
[2010/02/02 12:03:04 | 000,369,320 | ---- | C] ( ) -- C:\WINDOWS\System32\lxducfg.exe
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/07/16 21:52:00 | 000,001,072 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/07/16 21:28:13 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrateur\Bureau\OTL.exe
[2011/07/16 21:11:49 | 000,000,250 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Google.url
[2011/07/16 20:18:30 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/07/16 20:07:02 | 000,511,366 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2011/07/16 20:07:02 | 000,442,060 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/07/16 20:07:02 | 000,085,370 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2011/07/16 20:07:02 | 000,071,804 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/07/16 20:02:48 | 000,000,330 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2011/07/16 20:02:43 | 000,001,068 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/07/16 20:02:38 | 000,000,330 | -HS- | M] () -- C:\WINDOWS\tasks\EYXMRNQ.job
[2011/07/16 20:02:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/07/16 19:53:24 | 000,000,450 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{A7E68482-49FA-4D45-ACA1-502BBC95B8EE}.job
[2011/07/15 18:50:47 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Raccourci vers TDSSKiller.2.5.11.0_15.07.2011_18.38.41_log.lnk
[2011/07/15 18:37:33 | 001,383,430 | ---- | M] () -- C:\Documents and Settings\Administrateur\Mes documents\tdsskiller.zip
[2011/07/14 11:17:58 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2011/07/14 11:16:18 | 009,435,312 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Administrateur\Mes documents\mbam-setup-1.51.0.1200.exe
[2011/07/12 12:23:36 | 000,001,554 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\AD-R.lnk
[2011/07/12 11:47:10 | 000,435,814 | R--- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2011/07/12 10:36:35 | 000,000,933 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Spybot - Search & Destroy.lnk
[2011/07/12 10:21:39 | 000,000,541 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Connexion.url
[2011/07/10 20:46:31 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011/07/10 09:35:57 | 000,173,080 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/07/08 11:27:17 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
[2011/07/07 18:31:01 | 000,000,741 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Glary Utilities.lnk
[2011/07/07 17:31:53 | 000,000,263 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au Contrôle parental.url
[2011/07/07 17:31:53 | 000,000,261 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au pack Sécurité.url
[2011/07/07 17:31:53 | 000,000,235 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Bouygues Telecom - Mes services en un clic.url
[2011/07/07 14:21:18 | 000,127,860 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\memtest86+-4.20.usb.installer.zip
[2011/07/05 18:47:14 | 008,877,376 | ---- | M] (Glarysoft Ltd ) -- C:\Documents and Settings\Administrateur\Mes documents\Glary Utilities(Doublon)setup.exe
[2011/07/05 11:49:29 | 000,003,121 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/07/04 19:57:13 | 000,167,936 | ---- | M] () -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/07/04 13:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011/07/04 13:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011/07/04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011/07/04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011/07/04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011/07/04 13:35:12 | 000,102,616 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011/07/04 13:35:09 | 000,096,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011/07/04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011/07/04 13:32:13 | 000,030,808 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011/07/04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011/07/03 09:46:10 | 000,000,237 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Facebook.url
[2011/07/03 09:23:54 | 019,725,152 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Administrateur\Mes documents\installation-ie8-xp-01NET.exe
[2011/06/27 08:10:45 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\CCleaner.lnk
[2011/06/27 08:09:39 | 003,096,424 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\Administrateur\Mes documents\CcleanerV3.exe
[2011/06/26 09:50:29 | 000,000,212 | -HS- | M] () -- C:\boot.ini
[2011/06/25 07:55:16 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\avast! Free Antivirus.lnk
[2011/06/25 07:46:59 | 000,000,437 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
[2011/06/19 10:02:32 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/06/19 10:02:02 | 003,120,288 | ---- | M] (Adobe Systems, Inc.) -- C:\Documents and Settings\Administrateur\Mes documents\install_flash_player_ax.exe
[2011/06/19 09:27:02 | 000,000,308 | ---- | M] () -- C:\Documents and Settings\Administrateur\Bureau\Bouygues Telecom Internet.url
[2011/06/18 07:25:36 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Adobe Reader X.lnk
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/07/15 18:50:47 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Raccourci vers TDSSKiller.2.5.11.0_15.07.2011_18.38.41_log.lnk
[2011/07/15 18:37:26 | 001,383,430 | ---- | C] () -- C:\Documents and Settings\Administrateur\Mes documents\tdsskiller.zip
[2011/07/14 11:17:58 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Malwarebytes' Anti-Malware.lnk
[2011/07/12 12:23:36 | 000,001,554 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\AD-R.lnk
[2011/07/08 11:27:16 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
[2011/07/07 18:31:06 | 000,000,330 | ---- | C] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2011/07/07 18:31:01 | 000,000,741 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Glary Utilities.lnk
[2011/07/07 17:31:53 | 000,000,263 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au Contrôle parental.url
[2011/07/07 17:31:53 | 000,000,261 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Soucrire au pack Sécurité.url
[2011/07/07 17:31:53 | 000,000,235 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Bouygues Telecom - Mes services en un clic.url
[2011/07/07 14:21:52 | 000,127,860 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\memtest86+-4.20.usb.installer.zip
[2011/06/27 08:10:45 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\CCleaner.lnk
[2011/06/26 11:08:44 | 000,000,250 | ---- | C] () -- C:\Documents and Settings\Administrateur\Bureau\Google.url
[2011/06/18 07:25:36 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Adobe Reader X.lnk
[2011/06/18 07:25:36 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Adobe Reader X.lnk
[2011/03/12 12:19:39 | 000,000,601 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2011/03/12 12:19:20 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2011/02/25 12:43:05 | 000,000,053 | ---- | C] () -- C:\WINDOWS\B51a_Down.INI
[2010/06/26 12:06:17 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\inst.exe
[2010/06/26 12:06:17 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\pcouffin.cat
[2010/06/26 12:06:17 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Administrateur\Application Data\pcouffin.inf
[2010/06/04 20:51:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\DVEdit.INI
[2010/05/22 12:08:38 | 000,279,712 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2010/05/22 12:08:38 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2010/05/19 13:25:41 | 000,015,478 | ---- | C] () -- C:\WINDOWS\snpstd3.ini
[2010/05/19 13:25:09 | 003,600,384 | ---- | C] () -- C:\WINDOWS\ffmpeg.exe
[2010/05/13 14:42:03 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010/03/14 14:58:34 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/02/28 13:22:37 | 000,167,936 | ---- | C] () -- C:\Documents and Settings\Administrateur\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/02 12:06:19 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxduvs.dll
[2010/02/02 12:06:18 | 000,360,448 | ---- | C] () -- C:\WINDOWS\System32\lxducoin.dll
[2010/02/02 12:05:42 | 001,036,288 | ---- | C] () -- C:\WINDOWS\System32\lxdudrs.dll
[2010/02/02 12:05:42 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\lxducaps.dll
[2010/02/02 12:05:41 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxducnv4.dll
[2010/02/02 12:05:26 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\lxduoem.dll
[2010/02/02 12:05:26 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\LXDUPMON.DLL
[2010/02/02 12:05:26 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\LXDUFXPU.DLL
[2010/02/02 12:03:50 | 000,000,044 | ---- | C] () -- C:\WINDOWS\System32\lxdurwrd.ini
[2010/02/02 12:03:08 | 000,389,120 | ---- | C]