OTL.txt
OTL logfile created on: 14/08/2009 21:55:21 - Run 1
OTL by OldTimer - Version 3.0.10.7 Folder = E:\Users\jean\Desktop
Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18813)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
2,00 Gb Total Physical Memory | 0,94 Gb Available Physical Memory | 46,94% Memory free
4,00 Gb Paging File | 3,10 Gb Available in Paging File | 77,41% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = E: | %SystemRoot% = E:\Windows | %ProgramFiles% = E:\Program Files
Drive C: | 92,23 Gb Total Space | 53,39 Gb Free Space | 57,89% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
Drive E: | 74,53 Gb Total Space | 19,17 Gb Free Space | 25,73% Space Free | Partition Type: NTFS
Drive F: | 94,64 Gb Total Space | 88,22 Gb Free Space | 93,22% Space Free | Partition Type: NTFS
Drive G: | 92,61 Gb Total Space | 77,27 Gb Free Space | 83,44% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
Drive I: | 74,52 Gb Total Space | 24,80 Gb Free Space | 33,27% Space Free | Partition Type: NTFS
Drive M: | 111,79 Gb Total Space | 38,01 Gb Free Space | 34,00% Space Free | Partition Type: NTFS
Computer Name: CDGJEAN
Current User Name: jean
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - E:\Windows\System32\nvvsvc.exe (NVIDIA Corporation)
PRC - E:\Windows\System32\nvvsvc.exe (NVIDIA Corporation)
PRC - E:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - E:\Windows\System32\oodtray.exe (O&O Software GmbH)
PRC - E:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
PRC - E:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation)
PRC - E:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
PRC - E:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
PRC - E:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
PRC - E:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
PRC - E:\Program Files\McAfee\SiteAdvisor\McSACore.exe ()
PRC - e:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
PRC - E:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation)
PRC - E:\Program Files\McAfee\MPF\MPFSrv.exe (McAfee, Inc.)
PRC - E:\Program Files\Microsoft Office\Office10\msoffice.exe (Microsoft Corporation)
PRC - E:\Program Files\McAfee\MSK\MskSrver.exe (McAfee, Inc.)
PRC - E:\Windows\System32\oodag.exe (O&O Software GmbH)
PRC - E:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - E:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
PRC - E:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.)
PRC - E:\Program Files\McAfee\VirusScan\Mcshield.exe (McAfee, Inc.)
PRC - E:\Windows\ehome\ehsched.exe (Microsoft Corporation)
PRC - E:\Windows\ehome\ehRecvr.exe (Microsoft Corporation)
PRC - e:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (McAfee, Inc.)
PRC - E:\Windows\System32\mobsync.exe (Microsoft Corporation)
PRC - E:\Windows\explorer.exe (Microsoft Corporation)
PRC - E:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - E:\Users\jean\Desktop\OTL.exe (OldTimer Tools)
========== Win32 Services (SafeList) ==========
SRV - (ACDaemon [Auto | Running]) -- E:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (Apple Mobile Device [Auto | Running]) -- E:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (aspnet_state [On_Demand | Stopped]) -- E:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (Bonjour Service [Auto | Running]) -- E:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.)
SRV - (Boostez votre PC Task Manager [Auto | Stopped]) -- File not found
SRV - (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) -- E:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (ehRecvr [On_Demand | Running]) -- E:\Windows\ehome\ehRecvr.exe (Microsoft Corporation)
SRV - (ehSched [On_Demand | Running]) -- E:\Windows\ehome\ehsched.exe (Microsoft Corporation)
SRV - (ehstart [Auto | Stopped]) -- E:\Windows\ehome\ehstart.dll (Microsoft Corporation)
SRV - (Eventlog [Auto | Running]) -- E:\Windows\System32\wevtsvc.dll (Microsoft Corporation)
SRV - (FLEXnet Licensing Service [On_Demand | Stopped]) -- E:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (FontCache3.0.0.0 [On_Demand | Stopped]) -- E:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (gupdate [Auto | Stopped]) -- E:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
SRV - (HDDSvc [Auto | Stopped]) -- File not found
SRV - (IDriverT [On_Demand | Stopped]) -- E:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (idsvc [Unknown | Stopped]) -- E:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (iPod Service [On_Demand | Stopped]) -- E:\Program Files\iPod\bin\iPodService.exe (Apple Inc.)
SRV - (LightScribeService [Auto | Running]) -- E:\Program Files\Common Files\LightScribe\LSSrvc.exe (Hewlett-Packard Company)
SRV - (MBackMonitor [On_Demand | Stopped]) -- E:\Program Files\McAfee\MBK\MBackMonitor.exe (McAfee)
SRV - (McAfee SiteAdvisor Service [Auto | Running]) -- E:\Program Files\McAfee\SiteAdvisor\McSACore.exe ()
SRV - (mcmscsvc [Auto | Running]) -- E:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.)
SRV - (McNASvc [Auto | Running]) -- e:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (McAfee, Inc.)
SRV - (McODS [On_Demand | Stopped]) -- E:\Program Files\McAfee\VirusScan\mcods.exe (McAfee, Inc.)
SRV - (McProxy [Auto | Running]) -- e:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.)
SRV - (McShield [Unknown | Running]) -- E:\Program Files\McAfee\VirusScan\Mcshield.exe (McAfee, Inc.)
SRV - (McSysmon [Disabled | Stopped]) -- E:\Program Files\McAfee\VirusScan\mcsysmon.exe (McAfee, Inc.)
SRV - (MDM [Auto | Running]) -- E:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corporation)
SRV - (Microsoft Office Groove Audit Service [On_Demand | Stopped]) -- E:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)
SRV - (MpfService [Auto | Running]) -- E:\Program Files\McAfee\MPF\MPFSrv.exe (McAfee, Inc.)
SRV - (MSK80Service [Auto | Running]) -- E:\Program Files\McAfee\MSK\MskSrver.exe (McAfee, Inc.)
SRV - (NetTcpPortSharing [Disabled | Stopped]) -- E:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (nvsvc [Auto | Running]) -- E:\Windows\System32\nvvsvc.exe (NVIDIA Corporation)
SRV - (O&O Defrag [Auto | Running]) -- E:\Windows\System32\oodag.exe (O&O Software GmbH)
SRV - (odserv [On_Demand | Stopped]) -- E:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (ose [On_Demand | Stopped]) -- E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
SRV - (PCLEPCI [Auto | Stopped]) -- E:\Windows\System32\drivers\pclepci.sys (Pinnacle Systems GmbH)
SRV - (PLFlash DeviceIoControl Service [Auto | Stopped]) -- File not found
SRV - (RapiMgr [Auto | Running]) -- E:\Windows\WindowsMobile\rapimgr.dll (Microsoft Corporation)
SRV - (Roxio UPnP Renderer 10 [On_Demand | Stopped]) -- E:\Program Files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe (Sonic Solutions)
SRV - (Roxio Upnp Server 10 [Auto | Stopped]) -- E:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe (Sonic Solutions)
SRV - (RoxLiveShare10 [Auto | Stopped]) -- E:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe (Sonic Solutions)
SRV - (RoxMediaDB10 [On_Demand | Stopped]) -- E:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe (Sonic Solutions)
SRV - (RoxWatch10 [Auto | Stopped]) -- E:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe (Sonic Solutions)
SRV - (Stereo Service [Auto | Running]) -- E:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (stllssvr [On_Demand | Stopped]) -- E:\Program Files\Common Files\SureThing Shared\stllssvr.exe (MicroVision Development, Inc.)
SRV - (WcesComm [Auto | Running]) -- E:\Windows\WindowsMobile\wcescomm.dll (Microsoft Corporation)
SRV - (WinDefend [On_Demand | Stopped]) -- E:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
SRV - (wlidsvc [Auto | Stopped]) -- File not found
SRV - (WMPNetworkSvc [On_Demand | Running]) -- E:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
========== Driver Services (SafeList) ==========
DRV - (adfs [Auto | Running]) -- E:\Windows\System32\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (adp94xx [Disabled | Stopped]) -- E:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (adpahci [Disabled | Stopped]) -- E:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (adpu160m [Disabled | Stopped]) -- E:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (adpu320 [Disabled | Stopped]) -- E:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (Afc [On_Demand | Running]) -- E:\Windows\System32\drivers\Afc.sys (Arcsoft, Inc.)
DRV - (aic78xx [Disabled | Stopped]) -- E:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (aliide [Disabled | Stopped]) -- E:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (arc [Disabled | Stopped]) -- E:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (archlp [System | Running]) -- E:\Windows\System32\drivers\archlp.sys ()
DRV - (arcsas [Disabled | Stopped]) -- E:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (BrFiltLo [On_Demand | Stopped]) -- E:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp [On_Demand | Stopped]) -- E:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (Brserid [Disabled | Stopped]) -- E:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrSerWdm [Disabled | Stopped]) -- E:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm [Disabled | Stopped]) -- E:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer [On_Demand | Stopped]) -- E:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (camfilt2 [On_Demand | Stopped]) -- E:\Windows\System32\Drivers\camfilt2.sys (Guillemot Corporation)
DRV - (CLBStor [System | Running]) -- E:\Windows\System32\drivers\CLBStor.sys (Cyberlink Co.,Ltd.)
DRV - (CLBUDF [Auto | Running]) -- E:\Windows\System32\drivers\CLBUDF.sys (CyberLink Corporation.)
DRV - (cmdide [Disabled | Stopped]) -- E:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (COMMONFX.DLL [On_Demand | Running]) -- E:\Windows\System32\COMMONFX.DLL (Creative Technology Ltd)
DRV - (CT20XUT.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CT20XUT.DLL (Creative Technology Ltd.)
DRV - (ctac32k [On_Demand | Stopped]) -- E:\Windows\System32\drivers\ctac32k.sys (Creative Technology Ltd)
DRV - (ctaud2k [On_Demand | Running]) -- E:\Windows\System32\drivers\ctaud2k.sys (Creative Technology Ltd)
DRV - (CTAUDFX.DLL [On_Demand | Running]) -- E:\Windows\System32\CTAUDFX.DLL (Creative Technology Ltd)
DRV - (ctdvda2k [On_Demand | Stopped]) -- E:\Windows\System32\drivers\ctdvda2k.sys (Creative Technology Ltd)
DRV - (CTEAPSFX.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTEAPSFX.DLL (Creative Technology Ltd)
DRV - (CTEDSPFX.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTEDSPFX.DLL (Creative Technology Ltd)
DRV - (CTEDSPIO.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTEDSPIO.DLL (Creative Technology Ltd)
DRV - (CTEDSPSY.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTEDSPSY.DLL (Creative Technology Ltd)
DRV - (CTERFXFX.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTERFXFX.DLL (Creative Technology Ltd)
DRV - (CTEXFIFX.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTEXFIFX.DLL (Creative Technology Ltd.)
DRV - (CTHWIUT.DLL [On_Demand | Stopped]) -- E:\Windows\System32\CTHWIUT.DLL (Creative Technology Ltd.)
DRV - (ctprxy2k [On_Demand | Running]) -- E:\Windows\System32\drivers\ctprxy2k.sys (Creative Technology Ltd)
DRV - (CTSBLFX.DLL [On_Demand | Running]) -- E:\Windows\System32\CTSBLFX.DLL (Creative Technology Ltd)
DRV - (ctsfm2k [On_Demand | Running]) -- E:\Windows\System32\drivers\ctsfm2k.sys (Creative Technology Ltd)
DRV - (DgiVecp [Auto | Stopped]) -- E:\Windows\System32\Drivers\DgiVecp.sys (Samsung Electronics Co., Ltd.)
DRV - (DIBLOAD2 [On_Demand | Stopped]) -- E:\Windows\System32\DRIVERS\dgtvload2.sys (Ultima S.A)
DRV - (E1G60 [On_Demand | Stopped]) -- E:\Windows\System32\DRIVERS\E1G60I32.sys (Intel Corporation)
DRV - (elxstor [Disabled | Stopped]) -- E:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (emupia [On_Demand | Running]) -- E:\Windows\System32\drivers\emupia2k.sys (Creative Technology Ltd)
DRV - (GEARAspiWDM [On_Demand | Running]) -- E:\Windows\System32\DRIVERS\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (guillflt [On_Demand | Stopped]) -- E:\Windows\System32\DRIVERS\guillflt.sys (Guillemot Corp S.A.)
DRV - (ha10kx2k [On_Demand | Running]) -- E:\Windows\System32\drivers\ha10kx2k.sys (Creative Technology Ltd)
DRV - (hap16v2k [On_Demand | Running]) -- E:\Windows\System32\drivers\hap16v2k.sys (Creative Technology Ltd)
DRV - (hap17v2k [On_Demand | Stopped]) -- E:\Windows\System32\drivers\hap17v2k.sys (Creative Technology Ltd)
DRV - (hcwhdpvr [On_Demand | Stopped]) -- E:\Windows\System32\DRIVERS\hcwhdpvr.sys (Hauppauge, Inc.)
DRV - (hcwPP2 [On_Demand | Running]) -- E:\Windows\System32\DRIVERS\hcwPP2.sys (Hauppauge Computer Works, Inc.)
DRV - (hotcore3 [Boot | Running]) -- E:\Windows\system32\drivers\hotcore3.sys (Paragon Software Group)
DRV - (HpCISSs [Disabled | Stopped]) -- E:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (iaStorV [Disabled | Stopped]) -- E:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (iirsp [Disabled | Stopped]) -- E:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (IntcAzAudAddService [On_Demand | Running]) -- E:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.)
DRV - (iteatapi [Disabled | Stopped]) -- E:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (iteraid [Disabled | Stopped]) -- E:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (Iviaspi [On_Demand | Running]) -- E:\Windows\System32\drivers\iviaspi.sys (InterVideo, Inc.)
DRV - (LSI_FC [Disabled | Stopped]) -- E:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (LSI_SAS [Disabled | Stopped]) -- E:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (LSI_SCSI [Disabled | Stopped]) -- E:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (MarvinBus [On_Demand | Running]) -- E:\Windows\System32\DRIVERS\MarvinBus.sys (Pinnacle Systems GmbH)
DRV - (megasas [Disabled | Stopped]) -- E:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation)
DRV - (mfeavfk [On_Demand | Running]) -- E:\Windows\System32\drivers\mfeavfk.sys (McAfee, Inc.)
DRV - (mfebopk [On_Demand | Running]) -- E:\Windows\System32\drivers\mfebopk.sys (McAfee, Inc.)
DRV - (mfehidk [System | Running]) -- E:\Windows\System32\drivers\mfehidk.sys (McAfee, Inc.)
DRV - (mferkdk [On_Demand | Running]) -- E:\Windows\System32\drivers\mferkdk.sys (McAfee, Inc.)
DRV - (mfesmfk [On_Demand | Stopped]) -- E:\Windows\System32\drivers\mfesmfk.sys (McAfee, Inc.)
DRV - (MODUSB [On_Demand | Stopped]) -- E:\Windows\System32\Drivers\dgtvcap.sys (DiBcom SA)
DRV - (MPFP [System | Running]) -- E:\Windows\System32\Drivers\Mpfp.sys (McAfee, Inc.)
DRV - (Mraid35x [Disabled | Stopped]) -- E:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (nfrd960 [Disabled | Stopped]) -- E:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (ntrigdigi [Disabled | Stopped]) -- E:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
DRV - (nvlddmkm [On_Demand | Running]) -- E:\Windows\System32\DRIVERS\nvlddmkm.sys (NVIDIA Corporation)
DRV - (nvraid [Disabled | Stopped]) -- E:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nvstor [Disabled | Stopped]) -- E:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (ossrv [On_Demand | Running]) -- E:\Windows\System32\drivers\ctoss2k.sys (Creative Technology Ltd.)
DRV - (PxHelp20 [Boot | Running]) -- E:\Windows\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (ql2300 [Disabled | Stopped]) -- E:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (ql40xx [Disabled | Stopped]) -- E:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (RTL8169 [On_Demand | Running]) -- E:\Windows\System32\DRIVERS\Rtlh86.sys (Realtek Corporation )
DRV - (RxFilter [Disabled | Stopped]) -- E:\Windows\System32\DRIVERS\RxFilter.sys (Sonic Solutions)
DRV - (SCDEmu [System | Running]) -- E:\Windows\System32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (secdrv [Auto | Running]) -- E:\Windows\System32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (sfdrv01 [Boot | Running]) -- E:\Windows\System32\drivers\sfdrv01.sys (Protection Technology (StarForce))
DRV - (sfhlp02 [Boot | Running]) -- E:\Windows\System32\drivers\sfhlp02.sys (Protection Technology (StarForce))
DRV - (sfvfs02 [Boot | Running]) -- E:\Windows\System32\drivers\sfvfs02.sys (Protection Technology (StarForce))
DRV - (SiSRaid2 [Disabled | Stopped]) -- E:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.)
DRV - (SiSRaid4 [Disabled | Stopped]) -- E:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (snapman [Boot | Running]) -- E:\Windows\system32\DRIVERS\snapman.sys (Acronis)
DRV - (SNP2UVC [On_Demand | Stopped]) -- E:\Windows\System32\DRIVERS\snp2uvc.sys ()
DRV - (sptd [Boot | Running]) -- E:\Windows\System32\Drivers\sptd.sys ()
DRV - (SSPORT [Auto | Running]) -- E:\Windows\System32\Drivers\SSPORT.sys (Samsung Electronics)
DRV - (Symc8xx [Disabled | Stopped]) -- E:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (Sym_hi [Disabled | Stopped]) -- E:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (Sym_u3 [Disabled | Stopped]) -- E:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (uliahci [Disabled | Stopped]) -- E:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (UlSata [Disabled | Stopped]) -- E:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (ulsata2 [Disabled | Stopped]) -- E:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (USBAAPL [On_Demand | Stopped]) -- E:\Windows\System32\Drivers\usbaapl.sys (Apple, Inc.)
DRV - (usbaudio [On_Demand | Stopped]) -- E:\Windows\System32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (viaide [Disabled | Stopped]) -- E:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (vsmraid [Disabled | Stopped]) -- E:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (winusb [On_Demand | Stopped]) -- E:\Windows\System32\DRIVERS\winusb.sys (Microsoft Corporation)
DRV - (X4HSX32Ex [Auto | Running]) -- E:\Program Files\Player Metaboli\X4HSX32Ex.Sys (Exent Technologies Ltd.)
DRV - ({95808DC4-FA4A-4C74-92FE-5B863F82066B} [Auto | Running]) -- E:\Program Files\CyberLink\PowerDVD\000.fcl (Cyberlink Corp.)
DRV - ({FE4C91E7-22C2-4D0C-9F6B-82F1B7742054} [Auto | Running]) -- E:\Program Files\CyberLink\PowerDVD8\000.fcl (Cyberlink Corp.)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://fr.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_page_URL =
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_search_url =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\S-1-5-21-1644491937-1085031214-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\S-1-5-21-1644491937-1085031214-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.order.1: "Yahoo"
FF - prefs.js..browser.search.param.yahoo-fr: "megaup"
FF - prefs.js..browser.search.param.yahoo-fr-cjkt: "megaup"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://jeancdg.aceboard.fr/index.php"
FF - prefs.js..extensions.enabledItems:
en-GB@dictionaries.addons.mozilla.org:1.19
FF - prefs.js..extensions.enabledItems:
piclens@cooliris.com:1.11.1
FF - prefs.js..extensions.enabledItems: {CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}:2.7.6.0623
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.6
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}:6.0.12
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}:6.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14
FF - prefs.js..extensions.enabledItems: {cdbbb3f6-a50e-4b20-a154-5fcbb3bbf43d}:1.2.6
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:2.8
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.1
FF - prefs.js..extensions.enabledItems: {E6C1199F-E687-42da-8C24-E7770CC3AE66}:0.4.2.1
FF - prefs.js..extensions.enabledItems:
en-US@dictionaries.addons.mozilla.org:3.0.3
FF - prefs.js..extensions.enabledItems: {2012933F-5996-499F-8FD1-E90828C3393A}:1.0
FF - prefs.js..extensions.enabledItems:
YPlayer@yummy.net:1.0.0.0
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.2
FF - prefs.js..extensions.enabledItems: {de5809e0-2b07-11dd-bd0b-0800200c9a66}:1.0.9
FF - prefs.js..extensions.enabledItems:
nasanightlaunch@example.com:0.6.20090630
FF - prefs.js..keyword.URL: "http://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA5&q="
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: E:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/06/24 13:22:41 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: E:\Program Files\McAfee\SiteAdvisor [2009/07/19 04:44:31 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2009/08/14 02:01:47 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.2\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2009/08/14 02:02:34 | 00,000,000 | ---D | M]
[2009/03/09 04:18:33 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Extensions
[2009/03/09 04:18:33 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009/08/14 17:03:09 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions
[2009/07/10 23:20:27 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009/07/18 13:10:14 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2009/07/22 11:09:10 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2009/04/01 18:27:52 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}
[2009/04/01 19:28:05 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{cdbbb3f6-a50e-4b20-a154-5fcbb3bbf43d}
[2009/07/11 00:23:41 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}
[2009/07/11 00:17:02 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{de5809e0-2b07-11dd-bd0b-0800200c9a66}
[2009/04/01 19:28:05 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\{E6C1199F-E687-42da-8C24-E7770CC3AE66}
[2009/03/27 15:56:15 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\en-GB@dictionaries.addons.mozilla.org
[2009/03/27 15:56:15 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\en-US@dictionaries.addons.mozilla.org
[2009/07/11 00:16:20 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\nasanightlaunch@example.com
[2009/07/11 00:23:27 | 00,000,000 | ---D | M] -- E:\Users\jean\AppData\Roaming\mozilla\Firefox\Profiles\hdr7utgp.default\extensions\piclens@cooliris.com
[2009/07/19 04:09:48 | 00,001,775 | ---- | M] () -- E:\Users\jean\AppData\Roaming\Mozilla\FireFox\Profiles\hdr7utgp.default\searchplugins\live-search.xml
[2009/08/14 17:03:09 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions
[2009/04/18 15:23:14 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions\{2012933F-5996-499F-8FD1-E90828C3393A}
[2009/08/04 12:40:55 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/04/01 19:25:08 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
[2009/04/01 20:47:46 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009/07/15 00:48:56 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
[2009/07/20 22:56:16 | 00,000,000 | ---D | M] -- E:\Program Files\mozilla firefox\extensions\YPlayer@yummy.net
[2009/08/04 12:40:52 | 00,023,544 | ---- | M] (Mozilla Foundation) -- E:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009/08/04 12:40:52 | 00,137,208 | ---- | M] (Mozilla Foundation) -- E:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009/05/01 23:02:48 | 01,044,480 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) -- E:\Program Files\mozilla firefox\plugins\libdivx.dll
[2007/04/10 18:21:08 | 00,163,256 | ---- | M] (Microsoft Corporation) -- E:\Program Files\mozilla firefox\plugins\np-mswmp.dll
[2009/01/16 20:17:04 | 00,114,688 | ---- | M] (Adobe Systems, Inc.) -- E:\Program Files\mozilla firefox\plugins\np32dsw.dll
[2009/05/21 11:33:58 | 00,410,984 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\mozilla firefox\plugins\npdeploytk.dll
[2009/05/12 20:46:20 | 01,650,992 | ---- | M] (DivX,Inc.) -- E:\Program Files\mozilla firefox\plugins\npdivx32.dll
[2009/05/19 00:41:32 | 00,098,304 | ---- | M] (DivX, Inc) -- E:\Program Files\mozilla firefox\plugins\npDivxPlayerPlugin.dll
[2006/09/21 18:29:00 | 00,135,227 | ---- | M] (Exent Technologies Ltd.) -- E:\Program Files\mozilla firefox\plugins\npExentCtl.dll
[2009/02/06 12:44:28 | 01,447,296 | ---- | M] (Microsoft Corporation) -- E:\Program Files\mozilla firefox\plugins\npLegitCheckPlugin.dll
[2009/08/04 12:40:54 | 00,065,016 | ---- | M] (mozilla.org) -- E:\Program Files\mozilla firefox\plugins\npnul32.dll
[2006/10/26 20:12:16 | 00,016,192 | ---- | M] (Microsoft Corporation) -- E:\Program Files\mozilla firefox\plugins\NPOFF12.DLL
[2009/02/27 12:13:42 | 00,103,792 | ---- | M] (Adobe Systems Inc.) -- E:\Program Files\mozilla firefox\plugins\nppdf32.dll
[2009/06/07 13:52:20 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin.dll
[2009/06/07 13:52:20 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin2.dll
[2009/06/07 13:52:21 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin3.dll
[2009/06/07 13:52:21 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin4.dll
[2009/06/07 13:52:21 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin5.dll
[2009/06/07 13:52:21 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin6.dll
[2009/06/07 13:52:21 | 00,143,360 | ---- | M] (Apple Inc.) -- E:\Program Files\mozilla firefox\plugins\npqtplugin7.dll
[2009/05/01 23:02:48 | 00,200,704 | ---- | M] (The OpenSSL Project,
http://www.openssl.org/) -- E:\Program Files\mozilla firefox\plugins\ssldivx.dll
[2009/07/18 00:15:41 | 00,001,516 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
[2009/07/18 00:15:41 | 00,001,822 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\cnrtl-tlfi-fr.xml
[2009/07/18 00:15:41 | 00,000,757 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
[2009/07/18 00:15:41 | 00,002,371 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\google.xml
[2006/09/10 13:35:08 | 00,000,748 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\MediaDICO-fr.xml
[2009/07/18 00:15:41 | 00,001,426 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
[2009/07/18 00:15:41 | 00,000,652 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml
[2009/06/07 16:14:31 | 00,000,710 | ---- | M] () -- E:\Program Files\mozilla firefox\searchplugins\yahoo.xml
O1 HOSTS File: (1249 bytes) - E:\Windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: ::1 localhost
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O2 - BHO: (SnagIt Toolbar Loader) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - E:\Program Files\TechSmith\Snagit 9\SnagitBHO.dll (TechSmith Corporation)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {27B47AD3-2380-361D-83E3-A008F592F141} - No CLSID value found.
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - e:\Program Files\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (Smart-Shopper) - {4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E} - E:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll (SmartShopper Networks)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - E:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live ID) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - Reg Error: Value error. File not found
O2 - BHO: (CoolIrisIEHelperObject.CoolIrisIEBHO) - {AD0BAB4B-212D-45D7-9E5B-CB1579132715} - E:\Program Files\CoolIris\CoolIrisIEHelperObject.dll (Cooliris)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - e:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O2 - BHO: (IeMonitorBho Class) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - E:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll (Megaupload Limited)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - E:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O2 - BHO: (no name) - {E9FF1CAC-D44E-4A35-A6CA-76FF9DE396AB} - No CLSID value found.
O2 - BHO: (no name) - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - E:\Program Files\PicLensIE\cooliris.dll (Cooliris Inc.)
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No CLSID value found.
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No CLSID value found.
O3 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..\Toolbar\WebBrowser: (no name) - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - No CLSID value found.
O3 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..\Toolbar\WebBrowser: (no name) - {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No CLSID value found.
O3 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..\Toolbar\WebBrowser: (no name) - {A057A204-BACC-4D26-8287-79A187E26987} - No CLSID value found.
O3 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - E:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [mcagent_exe] E:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [MSServer] E:\Windows\System32\rqRHyWMF.DLL ()
O4 - HKLM..\Run: [OODefragTray] E:\Windows\System32\oodtray.exe (O&O Software GmbH)
O4 - HKLM..\Run: [RtHDVCpl] E:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [WinSys2] E:\Windows\System32\startup.exe ()
O4 - HKU\.DEFAULT..\Run: [DevconDefaultDB] E:\Windows\System32\READREG.exe (Creative Technology Limited)
O4 - HKU\S-1-5-18..\Run: [DevconDefaultDB] E:\Windows\System32\READREG.exe (Creative Technology Limited)
O4 - HKU\S-1-5-19..\Run: [Sidebar] E:\Program Files\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] E:\Windows\System32\oobefldr.DLL (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] E:\Program Files\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] E:\Windows\System32\oobefldr.DLL (Microsoft Corporation)
O4 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004..\Run: [WMPNSCFG] E:\Program Files\Windows Media Player\WMPNSCFG.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: BindDirectlyToPropertySetStorage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O7 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xport to Microsoft Excel - E:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: E&xporter vers Microsoft Excel - E:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - E:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - E:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: @E:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - E:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @E:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - E:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - E:\Program Files\PicLensIE\cooliris.dll (Cooliris Inc.)
O9 - Extra Button: SmartShopper - Compare product prices - {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEBF} - E:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll (SmartShopper Networks)
O9 - Extra Button: SmartShopper - Compare travel rates - {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEC0} - E:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll (SmartShopper Networks)
O9 - Extra Button: CoolIris Preferences - {449DB14A-F988-4fd8-9361-F212D7B6414B} - E:\Program Files\CoolIris\CoolIrisPreferences.exe (Cooliris)
O9 - Extra 'Tools' menuitem : CoolIris Preferences - {449DB14A-F988-4fd8-9361-F212D7B6414B} - E:\Program Files\CoolIris\CoolIrisPreferences.exe (Cooliris)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - E:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..Trusted Domains: internet ([]about in Trusted sites)
O15 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..Trusted Domains: mcafee.com ([]http in Trusted sites)
O15 - HKU\S-1-5-21-1644491937-1085031214-839522115-1004\..Trusted Domains: mcafee.com ([]https in Trusted sites)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967}
http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.1.ca(...) (DLM Control)
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - E:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - E:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - E:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - E:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - E:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - E:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - E:\Program Files\Common Files\microsoft shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - e:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - E:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter: - text/xml - E:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\Windows\Explorer.exe (Microsoft Corporation)
O22 - SharedTaskScheduler: {E31004D1-A431-41B8-826F-E902F9D95C81} - Windows DreamScene - E:\Windows\System32\DreamScene.dll (Microsoft Corporation)
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O28 - HKLM ShellExecuteHooks: {235B90D6-CB93-40A6-8F1A-AF422ADA9637} - E:\Windows\System32\rqRHyWMF.dll ()
O28 - HKLM ShellExecuteHooks: {6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - E:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (E:\Windows\system32\cbXOGVnL) - File not found
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/08/08 00:01:25 | 00,000,256 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/09/18 23:43:36 | 00,000,024 | ---- | M] () - E:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{5922cd68-6cb2-11de-bdc8-0019dbf52e28}\Shell\AutoRun\command - "" = SYSTEM\S-3-7-89-2225458569-9856321456-454423558-8896\explorer.exe
O33 - MountPoints2\{5922cd68-6cb2-11de-bdc8-0019dbf52e28}\Shell\open\command - "" = SYSTEM\S-3-7-89-2225458569-9856321456-454423558-8896\explorer.exe
O33 - MountPoints2\{9ceef390-343c-11de-bced-0019dbf52e28}\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\J\Shell - "" = AutoRun
O33 - MountPoints2\O\Shell - "" = AutoRun
O33 - MountPoints2\Q\Shell - "" = AutoRun
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - E:\Windows\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O34 - HKLM BootExecute: (OODBS) - E:\Windows\System32\OODBS.exe (O&O Software GmbH)
========== Files/Folders - Created Within 30 Days ==========
[2009/08/14 21:08:59 | 00,001,630 | ---- | C] () -- E:\Users\jean\Desktop\Ad-remover.lnk
[2009/08/14 21:08:57 | 00,000,000 | ---D | C] -- E:\Program Files\Ad-remover
[2009/08/14 21:08:11 | 00,514,048 | ---- | C] (OldTimer Tools) -- E:\Users\jean\Desktop\OTL.exe
[2009/08/14 20:25:37 | 03,124,187 | ---- | C] () -- E:\Users\jean\Desktop\ComboFix.exe
[2009/08/14 20:03:59 | 00,026,624 | ---- | C] () -- E:\Windows\System32\rqRHyWMF.dll
[2009/08/14 19:45:52 | 00,001,834 | ---- | C] () -- E:\Users\jean\Desktop\HijackThis.lnk
[2009/08/14 19:45:52 | 00,000,000 | ---D | C] -- E:\Program Files\Trend Micro
[2009/08/14 16:49:19 | 00,000,638 | ---- | C] () -- E:\Users\Public\Desktop\Trojan Killer.lnk
[2009/08/13 15:19:51 | 00,001,147 | -H-- | C] () -- E:\Users\Public\Desktop\Tom Clancy's Rainbow Six Vegas.lnk
[2009/08/12 20:57:58 | 03,122,251 | -H-- | C] () -- E:\Users\jean\AppData\Local\IconCache.db
[2009/08/12 19:53:53 | 00,001,681 | ---- | C] () -- E:\Users\jean\Desktop\Start Download Manager.lnk
[2009/08/11 20:06:51 | 00,071,680 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\atl.dll
[2009/08/11 20:06:46 | 00,499,712 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\kerberos.dll
[2009/08/11 20:06:46 | 00,218,624 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\msv1_0.dll
[2009/08/11 20:06:46 | 00,175,104 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\wdigest.dll
[2009/08/11 20:06:45 | 01,259,008 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\lsasrv.dll
[2009/08/11 20:06:45 | 00,439,864 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\drivers\ksecdd.sys
[2009/08/11 20:06:45 | 00,270,848 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\schannel.dll
[2009/08/11 20:06:45 | 00,072,704 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\secur32.dll
[2009/08/11 20:06:44 | 00,009,728 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\lsass.exe
[2009/08/11 20:06:39 | 02,066,432 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\mstscax.dll
[2009/08/11 20:06:35 | 00,091,136 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\avifil32.dll
[2009/08/11 20:06:31 | 00,160,256 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\wkssvc.dll
[2009/08/11 20:06:24 | 00,071,168 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\telnet.exe
[2009/08/11 20:05:08 | 10,628,096 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\wmp.dll
[2009/08/11 20:05:06 | 00,313,344 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\wmpdxm.dll
[2009/08/11 20:05:05 | 00,007,680 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\spwmp.dll
[2009/08/11 20:05:05 | 00,004,096 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\msdxm.ocx
[2009/08/11 20:05:05 | 00,004,096 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\dxmasf.dll
[2009/08/11 20:05:04 | 08,147,456 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\wmploc.DLL
[2009/08/11 20:05:04 | 00,043,520 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\msdxm.tlb
[2009/08/11 20:05:04 | 00,018,432 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\amcompat.tlb
[2009/08/08 20:42:57 | 00,002,560 | ---- | C] () -- E:\Users\jean\AppData\Roaming\Par défaut.cls
[2009/08/08 13:24:39 | 00,000,882 | ---- | C] () -- E:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2009/08/08 13:24:37 | 00,000,878 | ---- | C] () -- E:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2009/08/08 00:47:21 | 00,000,000 | ---D | C] -- E:\Users\jean\Documents\Pinnacle Studio
[2009/08/08 00:44:19 | 00,000,000 | ---- | C] () -- E:\Windows\Graffiti5.2Pin.ini
[2009/08/08 00:37:10 | 00,000,000 | ---D | C] -- E:\Program Files\Common Files\Pinnacle
[2009/08/08 00:33:13 | 00,000,847 | -H-- | C] () -- E:\Users\Public\Desktop\Pinnacle Studio 12.lnk
[2009/08/08 00:30:32 | 00,000,000 | ---D | C] -- E:\Program Files\Common Files\Yahoo!
[2009/08/08 00:30:31 | 00,000,000 | ---D | C] -- E:\ProgramData\Studio 12
[2009/08/08 00:30:31 | 00,000,000 | ---D | C] -- E:\ProgramData\Pinnacle Studio Plus
[2009/08/08 00:17:26 | 00,000,000 | ---D | C] -- E:\Program Files\AdorageI-GfxDatas
[2009/08/08 00:08:59 | 00,000,855 | -H-- | C] () -- E:\Users\Public\Desktop\Studio.lnk
[2009/08/08 00:08:59 | 00,000,737 | -H-- | C] () -- E:\Users\Public\Desktop\Instant DVD Recorder.lnk
[2009/08/08 00:07:50 | 00,401,408 | ---- | C] (Pegasus Imaging Corporation) -- E:\Windows\System32\pvmjpg30.dll
[2009/08/08 00:06:11 | 00,233,472 | ---- | C] (Pinnacle Systems GmbH) -- E:\Windows\System32\DiskIO.dll
[2009/08/08 00:06:11 | 00,184,320 | ---- | C] (Pinnacle Systems GmbH) -- E:\Windows\System32\RALMain.dll
[2009/08/08 00:06:11 | 00,126,976 | ---- | C] (Pinnacle Systems GmbH) -- E:\Windows\System32\AVIPrAx.dll
[2009/08/08 00:06:11 | 00,073,728 | ---- | C] (Pinnacle Systems GmbH) -- E:\Windows\System32\MMAviAx.dll
[2009/08/08 00:06:11 | 00,041,984 | ---- | C] (Pinnacle Systems GmbH) -- E:\Windows\System32\cacheX.dll
[2009/08/08 00:06:11 | 00,032,768 | ---- | C] (Pinnacle Systems GmbH) -- E:\Windows\System32\MLPagAx.dll
[2009/08/08 00:06:06 | 02,079,232 | ---- | C] (LEAD Technologies, Inc.) -- E:\Windows\System32\LTCLR13s.dll
[2009/08/08 00:06:06 | 00,884,736 | ---- | C] (Fellowes, Inc.) -- E:\Windows\System32\LMUIRes.dll
[2009/08/08 00:06:06 | 00,064,512 | ---- | C] (LEAD Technologies, Inc.) -- E:\Windows\System32\lftga13s.dll
[2009/08/08 00:06:06 | 00,024,576 | ---- | C] (LEAD Technologies, Inc.) -- E:\Windows\System32\lftga13n.dll
[2009/08/08 00:06:06 | 00,012,288 | ---- | C] (Fellowes, Inc.) -- E:\Windows\System32\LMLRes.dll
[2009/08/08 00:04:04 | 00,000,000 | ---D | C] -- E:\Users\jean\Documents\My Projects
[2009/08/08 00:01:25 | 00,196,096 | ---- | C] () -- E:\Windows\System32\macd32.dll
[2009/08/08 00:01:25 | 00,138,752 | ---- | C] () -- E:\Windows\System32\mase32.dll
[2009/08/08 00:01:25 | 00,136,192 | ---- | C] () -- E:\Windows\System32\mamc32.dll
[2009/08/08 00:01:25 | 00,057,856 | ---- | C] () -- E:\Windows\System32\masd32.dll
[2009/08/08 00:01:25 | 00,027,648 | ---- | C] () -- E:\Windows\System32\ma32.dll
[2009/08/07 23:56:17 | 00,041,219 | ---- | C] (Pinnacle Systems) -- E:\Windows\RSETPATH.exe
[2009/08/07 23:56:00 | 00,027,807 | ---- | C] () -- E:\Windows\wmprfell.prx
[2009/08/07 23:56:00 | 00,020,481 | ---- | C] () -- E:\Windows\wmprfheb.prx
[2009/08/07 23:56:00 | 00,020,055 | ---- | C] () -- E:\Windows\wmprfsky.prx
[2009/08/07 23:56:00 | 00,019,751 | ---- | C] () -- E:\Windows\wmprfhun.prx
[2009/08/07 23:56:00 | 00,018,878 | ---- | C] () -- E:\Windows\wmprfcsy.prx
[2009/08/07 23:56:00 | 00,018,536 | ---- | C] () -- E:\Windows\wmprfplk.prx
[2009/08/07 23:56:00 | 00,018,422 | ---- | C] () -- E:\Windows\wmprfptg.prx
[2009/08/07 23:56:00 | 00,017,199 | ---- | C] () -- E:\Windows\wmprfptb.prx
[2009/08/07 23:56:00 | 00,017,019 | ---- | C] () -- E:\Windows\wmprfsve.prx
[2009/08/07 23:56:00 | 00,016,822 | ---- | C] () -- E:\Windows\wmprftrk.prx
[2009/08/07 23:56:00 | 00,016,814 | ---- | C] () -- E:\Windows\wmprfslv.prx
[2009/08/07 23:56:00 | 00,016,446 | ---- | C] () -- E:\Windows\wmprfnor.prx
[2009/08/07 23:56:00 | 00,016,398 | ---- | C] () -- E:\Windows\wmprfnld.prx
[2009/08/07 23:56:00 | 00,016,265 | ---- | C] () -- E:\Windows\wmprffin.prx
[2009/08/07 23:56:00 | 00,015,903 | ---- | C] () -- E:\Windows\wmprfdan.prx
[2009/08/07 23:56:00 | 00,000,635 | ---- | C] () -- E:\Windows\wmprfrus.prx
[2009/08/07 23:55:59 | 00,025,269 | ---- | C] () -- E:\Windows\WMPrfAra.prx
[2009/08/07 23:55:57 | 00,049,152 | ---- | C] (Pinnacle Systems) -- E:\Windows\System32\PCLEGetGuid.dll
[2009/08/07 23:55:13 | 00,000,000 | ---D | C] -- E:\Users\Public\Documents\Pinnacle Studio
[2009/08/06 20:54:52 | 00,000,690 | -H-- | C] () -- E:\Users\jean\Desktop\Lockdown..lnk
[2009/08/06 14:40:18 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Roaming\VistaCodecs
[2009/08/06 14:40:02 | 00,000,000 | ---D | C] -- E:\Program Files\VistaCodecPack
[2009/08/05 23:01:10 | 00,000,000 | ---D | C] -- E:\Users\jean\Documents\Ubisoft
[2009/08/05 21:42:53 | 00,285,793 | ---- | C] () -- E:\r1mz5l.jpg
[2009/08/05 21:42:53 | 00,050,969 | ---- | C] () -- E:\lefteye1071.jpg
[2009/08/05 15:50:34 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Roaming\TechSmith
[2009/08/05 15:46:19 | 00,000,000 | ---D | C] -- E:\Users\jean\Documents\Snagit Stamps
[2009/08/01 01:43:14 | 00,000,779 | -H-- | C] () -- E:\Users\jean\Desktop\Launch Cooliris.lnk
[2009/08/01 01:41:12 | 02,119,680 | ---- | C] () -- E:\Users\jean\AppData\Local\cooliris-win-ie-release-1.11.2.27471.en-US.msi
[2009/07/28 21:01:05 | 11,067,392 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\ieframe.dll
[2009/07/28 21:01:05 | 05,937,152 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\mshtml.dll
[2009/07/28 21:01:04 | 01,985,536 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\iertutil.dll
[2009/07/28 21:01:04 | 01,208,832 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\urlmon.dll
[2009/07/28 21:01:03 | 01,469,440 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\inetcpl.cpl
[2009/07/28 21:01:03 | 00,915,456 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\wininet.dll
[2009/07/28 21:01:03 | 00,594,432 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\msfeeds.dll
[2009/07/28 21:01:03 | 00,386,048 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\iedkcs32.dll
[2009/07/28 21:01:03 | 00,206,848 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\occache.dll
[2009/07/28 21:01:02 | 00,184,320 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\iepeers.dll
[2009/07/28 21:01:02 | 00,173,056 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\ie4uinit.exe
[2009/07/28 21:01:02 | 00,164,352 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\ieui.dll
[2009/07/28 21:01:02 | 00,133,632 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\ieUnatt.exe
[2009/07/28 21:01:02 | 00,109,056 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\iesysprep.dll
[2009/07/28 21:01:02 | 00,055,296 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\msfeedsbs.dll
[2009/07/28 21:01:02 | 00,025,600 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\jsproxy.dll
[2009/07/28 21:01:01 | 01,638,912 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\mshtml.tlb
[2009/07/28 21:01:01 | 00,071,680 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\iesetup.dll
[2009/07/28 21:01:01 | 00,057,667 | ---- | C] () -- E:\Windows\System32\ieuinit.inf
[2009/07/28 21:01:01 | 00,055,808 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\iernonce.dll
[2009/07/28 21:01:01 | 00,013,312 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\msfeedssync.exe
[2009/07/28 19:38:50 | 00,000,000 | ---D | C] -- E:\Users\jean\Documents\LogoMaker
[2009/07/28 14:18:56 | 00,000,000 | ---D | C] -- E:\ProgramData\Media Center Programs
[2009/07/28 01:43:12 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Local\GRAW2
[2009/07/28 01:43:12 | 00,000,000 | ---D | C] -- E:\ProgramData\GRAW2
[2009/07/26 16:39:34 | 00,000,000 | ---D | C] -- E:\Users\jean\Documents\Web Creator
[2009/07/26 16:32:19 | 00,000,000 | ---D | C] -- E:\Program Files\LMSOFT Web Creator Pro 4
[2009/07/25 15:26:42 | 00,000,729 | -H-- | C] () -- E:\Users\jean\Desktop\j2Launcher.lnk
[2009/07/25 15:04:17 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Roaming\WinRAR
[2009/07/24 22:31:50 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Roaming\THQ
[2009/07/24 18:43:24 | 00,000,683 | -H-- | C] () -- E:\Users\jean\Desktop\TmSunrise.lnk
[2009/07/24 14:34:57 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Local\Criterion Games
[2009/07/24 13:32:29 | 00,000,940 | -H-- | C] () -- E:\Users\jean\Desktop\BurnoutParadise..lnk
[2009/07/24 01:09:06 | 00,233,472 | ---- | C] (Propellerhead Software AB) -- E:\Windows\System32\REX Shared Library.dll
[2009/07/24 01:09:05 | 00,368,640 | ---- | C] (Propellerhead Software AB) -- E:\Windows\System32\ReWire.dll
[2009/07/24 01:07:44 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Roaming\Propellerhead Software
[2009/07/24 01:07:44 | 00,000,000 | ---D | C] -- E:\ProgramData\Propellerhead Software
[2009/07/23 21:36:54 | 00,000,000 | ---D | C] -- E:\Program Files\NVIDIA Corporation
[2009/07/23 21:31:04 | 00,485,920 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvudisp.exe
[2009/07/23 21:30:53 | 09,557,216 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\drivers\nvlddmkm.sys
[2009/07/23 21:30:53 | 00,010,161 | ---- | C] () -- E:\Windows\System32\nvdisp.nvu
[2009/07/23 21:30:53 | 00,004,224 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\drivers\nvBridge.kmd
[2009/07/23 21:30:52 | 03,287,040 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvwgf2um.dll
[2009/07/23 21:30:51 | 10,854,400 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvoglv32.dll
[2009/07/23 21:30:50 | 02,169,376 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvcuvid.dll
[2009/07/23 21:30:48 | 01,706,528 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvcuvenc.dll
[2009/07/23 21:30:47 | 01,983,488 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvcuda.dll
[2009/07/23 21:30:47 | 00,151,552 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvcod157.dll
[2009/07/23 21:30:47 | 00,151,552 | ---- | C] (NVIDIA Corporation) -- E:\Windows\System32\nvcod.dll
[2009/07/23 21:30:43 | 00,000,000 | ---D | C] -- E:\NVIDIA
[2009/07/23 21:21:58 | 00,000,708 | -H-- | C] () -- E:\Users\Public\Desktop\aMSN.lnk
[2009/07/23 21:21:30 | 00,000,000 | ---D | C] -- E:\Program Files\aMSN
[2009/07/21 19:08:14 | 00,066,872 | ---- | C] () -- E:\Windows\System32\PnkBstrA.exe
[2009/07/21 19:07:52 | 00,138,184 | ---- | C] () -- E:\Windows\System32\drivers\PnkBstrK.sys
[2009/07/21 19:07:43 | 00,183,112 | ---- | C] () -- E:\Windows\System32\PnkBstrB.exe
[2009/07/21 19:07:32 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Local\PunkBuster
[2009/07/21 19:06:42 | 00,000,803 | -H-- | C] () -- E:\Users\jean\Desktop\nfs.exe - Raccourci.lnk
[2009/07/21 19:06:14 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Roaming\Leadertech
[2009/07/21 13:43:32 | 00,000,000 | ---D | C] -- E:\Program Files\Microsoft WSE
[2009/07/21 00:37:01 | 00,000,000 | ---D | C] -- E:\Users\jean\AppData\Local\FlatOut Ultimate Carnage
[2009/07/21 00:36:56 | 00,000,899 | -H-- | C] () -- E:\Users\jean\Desktop\Flatout Ultimate Carnage.lnk
[2009/07/20 22:58:03 | 00,000,118 | -H-- | C] () -- E:\Users\Public\Desktop\Metaboli.url
[2009/07/20 22:56:07 | 00,350,312 | ---- | C] () -- E:\Windows\System32\SysCheck2.dll
[2009/07/20 22:56:06 | 00,000,146 | ---- | C] () -- E:\Windows\System32\SysChkVC.dll.manifest
[2009/07/19 19:23:37 | 00,000,847 | -H-- | C] () -- E:\Users\jean\Desktop\Tom Clancy's EndWar.lnk
[2009/07/19 19:17:43 | 00,509,448 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\XAudio2_2.dll
[2009/07/19 19:17:43 | 00,068,616 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\XAPOFX1_1.dll
[2009/07/19 19:17:42 | 00,238,088 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\xactengine3_2.dll
[2009/07/19 19:17:41 | 01,493,528 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\D3DCompiler_39.dll
[2009/07/19 19:17:41 | 00,467,984 | ---- | C] (Microsoft Corporation) -- E:\Windows\System32\d3dx10_39.dll
[2009/07/19