L'ordinateur est neuf et la personne qui l'a reçu n'a pas pensé que la priorité était d'installer les systèmes de sécurité. Par ailleurs, une bonne partie des données ont été transféré d'un autre ordinateur par le disque externe, c'est peut être lui le fautif.
Rapport OTViewIt :
OTViewIt logfile created on: 21/12/2008 23:36:44 - Run
OTViewIt by OldTimer - Version 1.0.20.1 Folder = C:\Documents and Settings\Ishadawn\Bureau
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 100,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 100,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,77 Gb Total Space | 146,35 Gb Free Space | 62,87% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 93,16 Gb Total Space | 61,86 Gb Free Space | 66,40% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: JEANNICK
Current User Name: Ishadawn
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Whitelist: On
File Age = 30 Days
========== Processes ==========
[2008/06/30 03:42:42 | 00,024,064 | ---- | M] () -- C:\WINDOWS\system32\WLTRYSVC.EXE
[2008/06/30 03:42:14 | 01,961,984 | ---- | M] (Dell Inc.) -- C:\WINDOWS\system32\BCMWLTRY.EXE
[2008/10/15 13:31:25 | 00,068,865 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
[2008/02/21 22:24:56 | 00,159,744 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
[2008/02/21 22:21:56 | 16,855,552 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE
[2008/04/14 13:00:00 | 00,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
[2008/04/14 13:00:00 | 00,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
[2008/07/16 22:32:06 | 00,036,864 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\OEM13Mon.exe
[2008/12/14 03:25:43 | 00,136,600 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe
[2007/07/27 16:43:34 | 00,118,784 | ---- | M] (Creative Technology Ltd.) -- C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe
[2008/02/21 22:24:54 | 00,050,736 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe
[2008/06/30 03:42:40 | 02,220,032 | ---- | M] (Dell Inc.) -- C:\WINDOWS\system32\WLTRAY.EXE
[2008/02/22 12:43:38 | 01,245,184 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\QuickSet\quickset.exe
[2008/02/21 22:25:06 | 00,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe
[2008/02/21 22:24:54 | 00,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
[2008/06/12 02:38:00 | 00,034,672 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
[2008/10/15 10:23:49 | 00,029,744 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
[2008/05/23 14:06:08 | 00,128,296 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
[2008/10/15 10:23:49 | 00,029,744 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
[2008/02/13 13:02:46 | 00,564,496 | ---- | M] () -- C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
[2008/02/13 13:06:58 | 02,196,240 | ---- | M] () -- C:\Program Files\Logitech\QuickCam\Quickcam.exe
[2007/10/14 21:17:32 | 00,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
[2007/08/22 16:31:16 | 00,080,896 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
[2008/06/12 13:28:40 | 00,266,497 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
[2006/09/11 04:40:32 | 00,218,032 | ---- | M] (Macrovision Corporation) -- C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
[2008/12/19 08:44:09 | 00,342,848 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\DNA\btdna.exe
[2008/10/15 10:23:49 | 00,029,744 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
[2008/10/15 13:29:28 | 00,151,297 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
[2008/12/14 03:25:43 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
[2008/02/05 18:18:48 | 00,186,904 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
[2008/02/05 18:20:42 | 00,150,040 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
[2008/07/01 00:18:24 | 00,159,812 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
[2005/01/28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe
[2008/10/16 14:09:44 | 00,051,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
[2008/04/14 13:00:00 | 00,218,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
[2008/04/14 13:00:00 | 00,218,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
[2008/02/05 18:18:48 | 00,186,904 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
[2008/02/13 13:02:24 | 00,405,776 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\LQCVFX\COCIManager.exe
[2008/12/21 23:35:49 | 00,423,424 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Ishadawn\Bureau\OTViewIt.exe
========== (O23) Win32 Services ==========
[2008/10/15 13:31:25 | 00,068,865 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe -- (antivirscheduler [Auto | Running])
[2008/10/15 13:29:28 | 00,151,297 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe -- (antivirservice [Auto | Running])
[2005/09/23 20:28:32 | 00,029,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped])
[2005/09/23 20:28:56 | 00,066,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped])
[2006/10/21 10:21:24 | 00,036,864 | ---- | M] (Microsoft Corporation) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped])
[2008/10/15 10:23:49 | 00,029,744 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe -- (GoogleDesktopManager-010708-104812 [On_Demand | Stopped])
[2008/10/15 10:23:47 | 00,138,168 | ---- | M] (Google) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc [On_Demand | Stopped])
[2006/10/30 16:33:58 | 00,741,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped])
[2008/12/14 03:25:43 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running])
[2008/02/05 18:18:48 | 00,186,904 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe -- (LVCOMSer [Auto | Running])
[2008/02/05 18:20:42 | 00,150,040 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv [Auto | Running])
[2008/02/05 18:22:36 | 00,141,848 | ---- | M] (Logitech Inc.) -- C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe -- (LVSrvLauncher [Auto | Stopped])
[2006/10/30 16:34:02 | 00,122,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing [Disabled | Stopped])
[2008/07/01 00:18:24 | 00,159,812 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc [Auto | Running])
[2007/07/11 09:33:28 | 00,069,632 | R--- | M] (MicroVision Development, Inc.) -- C:\Program Files\Fichiers communs\SureThing Shared\stllssvr.exe -- (stllssvr [On_Demand | Stopped])
[2005/01/28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe -- (UMWdf [Auto | Running])
[2007/01/19 12:54:14 | 00,097,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc [On_Demand | Stopped])
[2008/06/30 03:42:42 | 00,024,064 | ---- | M] () -- C:\WINDOWS\system32\WLTRYSVC.EXE -- (wltrysvc [Auto | Running])
========== Driver Services ==========
[2001/08/18 10:51:56 | 00,005,248 | ---- | M] (Acer Laboratories Inc.) -- C:\WINDOWS\system32\drivers\aliide.sys -- (AliIde [Disabled | Stopped])
[2008/04/14 00:36:40 | 00,043,008 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\system32\drivers\AMDAGP.SYS -- (amdagp [Disabled | Stopped])
[2008/02/21 22:24:52 | 00,155,136 | ---- | M] (Alps Electric Co., Ltd.) -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService [On_Demand | Running])
[2005/08/12 16:50:46 | 00,016,128 | ---- | M] (Dell Inc) -- C:\WINDOWS\system32\drivers\APPDRV.SYS -- (APPDRV [System | Running])
[2001/08/18 10:52:00 | 00,026,496 | ---- | M] (Advanced System Products, Inc.) -- C:\WINDOWS\system32\drivers\asc.sys -- (asc [Disabled | Stopped])
[2001/08/18 10:51:58 | 00,014,848 | ---- | M] (Advanced System Products, Inc.) -- C:\WINDOWS\system32\drivers\asc3550.sys -- (asc3550 [Disabled | Stopped])
[2007/02/27 14:24:55 | 00,011,840 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys -- (avgio [System | Running])
[2008/05/20 15:29:43 | 00,052,032 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys -- (avgntflt [On_Demand | Running])
[2008/10/30 10:21:03 | 00,075,072 | ---- | M] (Avira GmbH) -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb [System | Running])
[2008/06/30 03:42:26 | 01,287,552 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX [On_Demand | Running])
[2001/08/24 06:04:44 | 00,006,656 | ---- | M] (CMD Technology, Inc.) -- C:\WINDOWS\system32\drivers\cmdide.sys -- (CmdIde [Disabled | Stopped])
[2001/08/18 10:52:16 | 00,179,584 | ---- | M] (Mylex Corporation) -- C:\WINDOWS\system32\drivers\dac2w2k.sys -- (dac2w2k [Disabled | Stopped])
[2007/07/23 15:04:58 | 00,037,360 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLABMFSM.SYS -- (DLABMFSM [Auto | Running])
[2007/07/23 15:04:52 | 00,032,848 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLABOIOM.SYS -- (DLABOIOM [Auto | Running])
[2007/07/23 14:49:44 | 00,014,576 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM [Boot | Running])
[2007/07/23 15:05:26 | 00,009,136 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLADResM.SYS -- (DLADResM [Auto | Running])
[2007/07/23 15:04:50 | 00,108,752 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLAIFS_M.SYS -- (DLAIFS_M [Auto | Running])
[2007/07/23 15:04:54 | 00,027,216 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLAOPIOM.SYS -- (DLAOPIOM [Auto | Running])
[2007/07/23 15:04:52 | 00,016,304 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLAPoolM.SYS -- (DLAPoolM [Auto | Running])
[2007/07/23 14:49:44 | 00,030,064 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLARTL_M.SYS -- (DLARTL_M [System | Running])
[2007/07/23 15:04:56 | 00,093,552 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLAUDFAM.SYS -- (DLAUDFAM [Auto | Running])
[2007/07/23 15:04:56 | 00,098,448 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DLAUDF_M.SYS -- (DLAUDF_M [Auto | Running])
[2007/07/23 14:55:44 | 00,099,808 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\system32\drivers\DRVMCDB.SYS -- (DRVMCDB [Boot | Running])
[2007/07/23 14:43:42 | 00,052,000 | ---- | M] (Roxio) -- C:\WINDOWS\system32\drivers\DRVNDDM.SYS -- (DRVNDDM [Auto | Running])
[2008/02/06 03:21:48 | 00,023,832 | R--- | M] (Logitech Inc.) -- C:\WINDOWS\system32\drivers\lvuvcflt.sys -- (FilterService [On_Demand | Stopped])
[2008/04/14 13:00:00 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus [On_Demand | Running])
[2007/10/30 10:25:53 | 00,049,920 | R--- | M] (HP) -- C:\WINDOWS\system32\drivers\HPZid412.sys -- (HPZid412 [On_Demand | Stopped])
[2007/10/30 10:25:54 | 00,016,496 | R--- | M] (HP) -- C:\WINDOWS\system32\drivers\HPZipr12.sys -- (HPZipr12 [On_Demand | Stopped])
[2007/10/30 10:25:55 | 00,021,568 | R--- | M] (HP) -- C:\WINDOWS\system32\drivers\HPZius12.sys -- (HPZius12 [On_Demand | Stopped])
[2008/03/17 22:50:02 | 00,305,176 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\drivers\iaStor.sys -- (iaStor [Boot | Running])
[2008/02/21 22:21:58 | 04,625,408 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running])
[2008/04/14 13:00:00 | 00,014,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\kbdhid.sys -- (kbdhid [System | Stopped])
[2008/02/05 18:18:12 | 00,689,176 | ---- | M] (Logitech Inc.) -- C:\WINDOWS\system32\drivers\Lvckap.sys -- (LVcKap [On_Demand | Running])
[2008/02/05 18:20:08 | 00,025,624 | ---- | M] () -- C:\WINDOWS\system32\drivers\LVPr2Mon.sys -- (LVPr2Mon [On_Demand | Running])
[2008/02/06 03:21:25 | 00,041,752 | R--- | M] (Logitech Inc.) -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta [On_Demand | Running])
[2008/02/06 03:21:37 | 04,658,456 | R--- | M] (Logitech Inc.) -- C:\WINDOWS\system32\drivers\lvuvc.sys -- (LVUVC [On_Demand | Running])
[2001/08/18 10:52:12 | 00,017,280 | ---- | M] (American Megatrends Inc.) -- C:\WINDOWS\system32\drivers\mraid35x.sys -- (mraid35x [Disabled | Stopped])
[2008/07/01 00:17:44 | 06,584,160 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv [On_Demand | Running])
[2008/02/21 22:38:24 | 00,048,472 | ---- | M] (O2Micro ) -- C:\WINDOWS\system32\drivers\o2media.sys -- (O2MDRDR [On_Demand | Running])
[2008/02/21 22:38:30 | 00,043,480 | ---- | M] (O2Micro ) -- C:\WINDOWS\system32\drivers\o2sd.sys -- (O2SDRDR [On_Demand | Running])
[2008/07/16 22:32:00 | 00,141,376 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\drivers\OEM13Afx.sys -- (OEM13Afx [On_Demand | Running])
[2008/07/16 22:32:10 | 00,007,424 | ---- | M] (EyePower Games Pte. Ltd.) -- C:\WINDOWS\system32\drivers\OEM13Vfx.sys -- (OEM13Vfx [On_Demand | Running])
[2008/07/16 22:32:12 | 00,235,840 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\drivers\OEM13Vid.sys -- (OEM13Vid [On_Demand | Running])
[2008/04/14 13:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink [On_Demand | Running])
[2007/07/26 03:00:00 | 00,043,872 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\system32\drivers\pxhelp20.sys -- (PxHelp20 [Boot | Running])
[2001/08/18 10:52:20 | 00,040,320 | ---- | M] (QLogic Corporation) -- C:\WINDOWS\system32\drivers\ql1080.sys -- (ql1080 [Disabled | Stopped])
[2001/08/18 10:52:20 | 00,045,312 | ---- | M] (QLogic Corporation) -- C:\WINDOWS\system32\drivers\ql12160.sys -- (ql12160 [Disabled | Stopped])
[2001/08/18 10:52:18 | 00,049,024 | ---- | M] (QLogic Corporation) -- C:\WINDOWS\system32\drivers\ql1280.sys -- (ql1280 [Disabled | Stopped])
[2008/02/22 01:28:14 | 00,105,856 | ---- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp [On_Demand | Stopped])
[2008/04/14 13:00:00 | 00,079,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\sdbus.sys -- (sdbus [On_Demand | Stopped])
[2008/04/14 13:00:00 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv [On_Demand | Stopped])
[2008/04/14 00:36:40 | 00,040,960 | ---- | M] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\system32\drivers\SISAGP.SYS -- (sisagp [Disabled | Stopped])
[2001/08/18 11:07:44 | 00,019,072 | ---- | M] (Adaptec, Inc.) -- C:\WINDOWS\system32\drivers\sparrow.sys -- (Sparrow [Disabled | Stopped])
[2007/11/08 18:03:26 | 00,021,248 | ---- | M] (AVIRA GmbH) -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv [System | Running])
[2001/08/18 11:07:34 | 00,016,256 | ---- | M] (Symbios Logic Inc.) -- C:\WINDOWS\system32\drivers\symc810.sys -- (symc810 [Disabled | Stopped])
[2001/08/18 11:07:36 | 00,032,640 | ---- | M] (LSI Logic) -- C:\WINDOWS\system32\drivers\symc8xx.sys -- (symc8xx [Disabled | Stopped])
[2001/08/18 11:07:40 | 00,028,384 | ---- | M] (LSI Logic) -- C:\WINDOWS\system32\drivers\sym_hi.sys -- (sym_hi [Disabled | Stopped])
[2001/08/18 11:07:42 | 00,030,688 | ---- | M] (LSI Logic) -- C:\WINDOWS\system32\drivers\sym_u3.sys -- (sym_u3 [Disabled | Stopped])
[2001/08/18 10:52:22 | 00,036,736 | ---- | M] (Promise Technology, Inc.) -- C:\WINDOWS\system32\drivers\ultra.sys -- (ultra [Disabled | Stopped])
[2008/04/13 11:45:14 | 00,060,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\USBAUDIO.sys -- (usbaudio [On_Demand | Running])
[2008/04/14 00:46:22 | 00,121,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\usbvideo.sys -- (usbvideo [On_Demand | Stopped])
[2004/06/26 15:22:00 | 00,006,016 | ---- | M] (RDV Soft) -- C:\WINDOWS\system32\drivers\vnccom.SYS -- (vnccom [Auto | Running])
[2004/06/26 15:22:00 | 00,004,736 | ---- | M] (RDV Soft) -- C:\WINDOWS\system32\drivers\vncdrv.sys -- (vncdrv [On_Demand | Running])
[2006/11/02 20:22:54 | 00,492,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\wdf01000.sys -- (Wdf01000 [On_Demand | Running])
[2008/04/14 00:36:40 | 00,008,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drivers\wmiacpi.sys -- (WmiAcpi [System | Running])
========== (R ) Internet Explorer ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main]
"Default_Page_URL"=http://go.microsoft.com/fwlink/?LinkId=69157
"Default_Search_URL"=http://go.microsoft.com/fwlink/?LinkId=54896
"Local Page"=%SystemRoot%\system32\blank.htm
"Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896
"Start Page"=http://fr.msn.com/
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
"CustomizeSearch"=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
"Default_Page_URL"=http://partnerpage.google.com/smallbiz.dell.com/fr_fr?hl=fr&client=dell-row&channel=fr-smb&ibd=4081015
"SearchAssistant"=http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
"Start Page"=http://partnerpage.google.com/smallbiz.dell.com/fr_fr?hl=fr&client=dell-row&channel=fr-smb&ibd=4081015
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main]
"Local Page"=C:\WINDOWS\system32\blank.htm
"Search Page"=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
"Start Page"=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURL]
"provider"=Barre d'outils PDFCreator
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" (HKLM) -- C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = 0
========== (O1) Hosts File ==========
HOSTS File = (27 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
First 25 entries...
127.0.0.1 localhost
========== (O2) BHO's ==========
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\]
{0347C33E-8762-4905-BF09-768834316C61} (HKLM) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} (HKLM) -- c:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (HKLM) -- C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
{AA58ED58-01DD-4d91-8333-CF10577473F7} (HKLM) -- c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (HKLM) -- C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll (Google Inc.)
{C451C08A-EC37-45DF-AAAD-18B51AB5E837} (HKLM) -- C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll ()
{CA6319C0-31B7-401E-A518-A07C3DB8F777} (HKLM) -- C:\Program Files\Dell\BAE\BAE.dll (Dell Inc.)
{DBC80044-A445-435b-BC74-9C25C1C588A9} (HKLM) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} (HKLM) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} (HKLM) -- C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
========== (O3) Toolbars ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
"{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}" (HKLM) -- C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll ()
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" (HKLM) -- c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
"{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}" (HKLM) -- C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll ()
========== (O4) Run Keys ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" (Adobe Systems Incorporated)
"Apoint"=C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min (Avira GmbH)
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe (Dell Inc.)
"Dell QuickSet"=C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
"DELL Webcam Manager"="C:\Program Files\Dell\Dell Webcam Manager\DellWMgr.exe" /s (Creative Technology Ltd.)
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" ( )
"ECenter"=C:\Dell\E-Center\EULALauncher.exe ( )
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup (Google)
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard)
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe (Hewlett-Packard)
"LogitechCommunicationsManager"="C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" ()
"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide ()
"NvCplDaemon"=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup (NVIDIA Corporation)
"NVHotkey"=rundll32.exe nvHotkey.dll,Start (NVIDIA Corporation)
"NvMediaCenter"=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit (NVIDIA Corporation)
"nwiz"=nwiz.exe /installquiet ()
"OEM13Mon.exe"=C:\WINDOWS\OEM13Mon.exe (Creative Technology Ltd.)
"PDVDDXSrv"="C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe" (CyberLink Corp.)
"RTHDCPL"=RTHDCPL.EXE (Realtek Semiconductor Corp.)
"SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe" (Sun Microsystems, Inc.)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent DNA"="C:\Program Files\DNA\btdna.exe" (BitTorrent, Inc.)
"ISUSPM"="C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler (Macrovision Corporation)
========== (O4) Startup Folders ==========
========== (O6 & O7) Current Version Policies ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableRegistryTools"=0
"HideLegacyLogonScripts"=0
"HideLogoffScripts"=0
"RunLogonScriptSync"=1
"RunStartupScriptSync"=0
"HideStartupScripts"=0
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System]
"HideLegacyLogonScripts"=0
"HideLogoffScripts"=0
"HideStartupScripts"=0
"RunLogonScriptSync"=1
"RunStartupScriptSync"=0
========== (O9) IE Extensions ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
{DDE87865-83C5-48c4-8357-2F5B1AA84522}: Button: Sélection intelligente HP -- %ProgramFiles%\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007/11/06 01:50:44 | 00,542,016 | ---- | M] (Hewlett-Packard Co.)
{e2e2dd38-d088-4134-82b7-f2ba38496583}: Menu: @xpsp3res.dll,-20001 -- %SystemRoot%\Network Diagnostic\xpnetdiag.exe [2008/04/14 13:00:00 | 00,558,080 | ---- | M] (Microsoft Corporation)
{FB5F1910-F110-11d2-BB9E-00C04F795683}: Button: Messenger -- %ProgramFiles%\Messenger\msmsgs.exe [2008/04/14 08:34:14 | 01,695,232 | ---- | M] (Microsoft Corporation)
{FB5F1910-F110-11d2-BB9E-00C04F795683}: Menu: Windows Messenger -- %ProgramFiles%\Messenger\msmsgs.exe [2008/04/14 08:34:14 | 01,695,232 | ---- | M] (Microsoft Corporation)
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\]
CmdMapping\\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> [Reg Error: Value does not exist or could not be read.] -> File not found
CmdMapping\\{DDE87865-83C5-48c4-8357-2F5B1AA84522} [HKLM] -> %ProgramFiles%\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [ClipBookBtn Class] -> [2007/11/06 01:50:44 | 00,542,016 | ---- | M] (Hewlett-Packard Co.)
CmdMapping\\{e2e2dd38-d088-4134-82b7-f2ba38496583} [HKLM] -> %SystemRoot%\Network Diagnostic\xpnetdiag.exe [@xpsp3res.dll,-20001] -> [2008/04/14 13:00:00 | 00,558,080 | ---- | M] (Microsoft Corporation)
CmdMapping\\{FB5F1910-F110-11d2-BB9E-00C04F795683} [HKLM] -> %ProgramFiles%\Messenger\msmsgs.exe [Messenger] -> [2008/04/14 08:34:14 | 01,695,232 | ---- | M] (Microsoft Corporation)
========== (O12) Internet Explorer Plugins ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\]
PluginsPage: "" =
http://activex.microsoft.com/controls/find.asp?ext=%s&mime=%s
PluginsPageFriendlyName: "" = Bibliothèque de contrôles ActiveX Microsoft
========== (O13) Default Prefixes ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix]
""=http://
========== (O15) Trusted Sites ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\]
1 domain(s) and sub-domain(s) not assigned to a zone.
========== (O16) DPF ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\]
{8AD9C840-044E-11D1-B3E9-00805F499D93}:
http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab -- Java Plug-in 1.6.0_11
{C3F79A2B-B9B4-4A66-B012-3EE46475B072}:
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab -- MessengerStatsClient Class
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:
http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab -- Java Plug-in 1.6.0_07
{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:
http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab -- Java Plug-in 1.6.0_11
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}:
http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab -- Java Plug-in 1.6.0_11
========== (O17) DNS Name Servers ==========
{0087CBDC-F9A7-4B41-8C7E-2B60B283A197} (Servers: | Description: Carte Mini de réseau local sans fil Wireless 1395 de Dell)
{07831521-82C7-4A66-A040-31E0DFE58ECF} (Servers: | Description: )
{0D99D345-4A5E-4AE6-8B2B-EA5E4C817986} (Servers: | Description: Realtek RTL8168C(P)/8111C(P) PCI-E Gigabit Ethernet NIC)
{A2971415-DA15-43A0-8A73-123FE4AA3411} (Servers: | Description: Carte réseau 1394)
========== Safeboot Options ==========
"AlternateShell"=cmd.exe
========== CDRom AutoRun Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom]
"AutoRun" = 1
========== Autorun Files on Drives ==========
AUTOEXEC.BAT []
[2008/04/25 19:00:56 | 00,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT -- [ NTFS ]
========== Files/Folders - Created Within 30 Days ==========
[1 C:\WINDOWS\System32\*.tmp files]
File not found -- C:\Documents and Settings\Ishadawn\Bureau\Dél[1]. S.
[2008/12/21 23:35:41 | 00,423,424 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Ishadawn\Bureau\OTViewIt.exe
[2008/12/21 22:56:30 | 00,000,099 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\Internet Explorer - résolution de problèmes.url
[2008/12/21 21:49:57 | 32,195,74784 | -HS- | C] () -- C:\hiberfil.sys
[2008/12/21 20:59:25 | 00,001,853 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\AntiVir PE Classic.lnk
[2008/12/21 20:59:20 | 00,045,376 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2008/12/21 20:59:20 | 00,022,336 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2008/12/21 20:59:20 | 00,021,248 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2008/12/21 20:59:18 | 00,075,072 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2008/12/21 20:59:18 | 00,000,000 | ---D | C] -- C:\Program Files\Avira
[2008/12/21 20:59:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Avira
[2008/12/21 20:48:28 | 22,148,280 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\antivir_workstation_winu_fr_h.exe
[2008/12/21 20:20:33 | 00,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2008/12/21 20:20:33 | 00,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2008/12/21 20:20:33 | 00,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2008/12/21 20:20:33 | 00,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2008/12/21 20:20:33 | 00,089,504 | ---- | C] (Smallfrogs Studio) -- C:\WINDOWS\fdsv.exe
[2008/12/21 20:20:33 | 00,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2008/12/21 20:20:33 | 00,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2008/12/21 20:20:33 | 00,049,152 | ---- | C] () -- C:\WINDOWS\VFIND.exe
[2008/12/21 20:20:33 | 00,028,672 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2008/12/21 20:20:27 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2008/12/21 20:20:27 | 00,000,000 | ---D | C] -- C:\Qoobox
[2008/12/21 20:02:43 | 00,001,522 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\UsbFix.lnk
[2008/12/21 20:02:36 | 00,000,000 | ---D | C] -- C:\Program Files\UsbFix
[2008/12/21 20:01:59 | 00,726,134 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\UsbFix.exe
[2008/12/21 16:45:15 | 00,106,496 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\Développe[1]..doc
[2008/12/21 16:21:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\SmitfraudFix
[2008/12/21 13:52:22 | 00,153,600 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\Développe[1]...doc
[2008/12/20 18:45:41 | 00,145,391 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\plan.jpg
[2008/12/19 09:14:27 | 00,041,984 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\Entretien avec un fumeur.doc
[2008/12/18 21:02:03 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Malwarebytes
[2008/12/18 21:01:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2008/12/18 21:00:24 | 02,539,168 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Ishadawn\Bureau\mbam-setup.exe
[2008/12/18 20:45:43 | 09,860,828 | ---- | C] () -- C:\upload_moi_JEANNICK.tar.gz
[2008/12/18 20:39:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\clean
[2008/12/18 20:31:58 | 02,885,589 | R--- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\ComboFix.exe
[2008/12/18 20:31:58 | 02,884,875 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\ComboFix2.exe
[2008/12/18 20:24:54 | 00,001,736 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\HijackThis.lnk
[2008/12/18 20:24:54 | 00,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2008/12/18 20:24:35 | 00,812,344 | ---- | C] (Trend Micro Inc.) -- C:\Documents and Settings\Ishadawn\Bureau\HJTInstall.exe
[2008/12/18 16:20:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Grisoft
[2008/12/18 16:20:20 | 00,000,000 | ---D | C] -- C:\Program Files\Grisoft
[2008/12/17 20:35:29 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
[2008/12/15 22:57:43 | 00,000,000 | ---D | C] -- C:\Program Files\Alwil Software
[2008/12/15 21:03:13 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
[2008/12/15 21:02:51 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
[2008/12/15 16:14:09 | 00,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2008/12/15 16:10:50 | 00,000,002 | ---- | C] () -- C:\38773665
[2008/12/15 16:10:38 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
[2008/12/15 01:48:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\courtois
[2008/12/15 01:44:31 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\delvenne
[2008/12/15 00:10:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\OpenOffice.org
[2008/12/15 00:08:52 | 00,000,000 | ---D | C] -- C:\Program Files\JRE
[2008/12/15 00:08:49 | 00,000,000 | ---D | C] -- C:\Program Files\OpenOffice.org 3
[2008/12/14 21:40:06 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Mes documents\Downloads
[2008/12/14 21:34:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\BitTorrent
[2008/12/14 21:34:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\DNA
[2008/12/14 21:34:26 | 00,000,000 | ---D | C] -- C:\Program Files\DNA
[2008/12/14 21:34:26 | 00,000,000 | ---D | C] -- C:\Program Files\BitTorrent
[2008/12/14 21:34:26 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\DNA
[2008/12/14 17:55:26 | 00,000,000 | ---D | C] -- C:\Program Files\Foxit Software
[2008/12/14 17:15:14 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\WinRAR
[2008/12/14 17:14:58 | 00,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2008/12/14 03:30:57 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\Disque actuel
[2008/12/14 03:28:03 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\Disque 2
[2008/12/14 00:32:40 | 00,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Macromedia
[2008/12/14 00:32:18 | 00,000,000 | ---D | C] -- C:\Program Files\Macromedia
[2008/12/14 00:13:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Roxio
[2008/12/12 14:45:29 | 00,247,326 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\strmdll.dll
[2008/12/12 00:17:45 | 00,253,139 | ---- | C] (pdfforge.org) -- C:\WINDOWS\PDFCreator_Toolbar_Uninstaller_343.exe
[2008/12/12 00:17:45 | 00,000,000 | ---D | C] -- C:\Program Files\PDFCreator Toolbar
[2008/12/12 00:17:37 | 00,137,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSMAPI32.OCX
[2008/12/12 00:17:36 | 00,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll
[2008/12/12 00:17:35 | 00,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCMCFR.DLL
[2008/12/12 00:17:35 | 00,119,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VB6FR.DLL
[2008/12/12 00:17:35 | 00,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCC2FR.DLL
[2008/12/12 00:17:34 | 00,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSMPIDE.DLL
[2008/12/12 00:17:34 | 00,000,000 | ---D | C] -- C:\Program Files\PDFCreator
[2008/12/09 21:26:42 | 00,055,808 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Mes documents\Courtois2.doc
[2008/12/09 20:55:42 | 05,758,667 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\Voyage Astral.mp3
[2008/12/09 20:28:33 | 64,401,452 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\ahccai.wav
[2008/12/09 20:00:57 | 00,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Msstdfmt.dll
[2008/12/09 20:00:57 | 00,032,768 | ---- | C] (Veinge Musik och Data) -- C:\WINDOWS\System32\prjKnob.ocx
[2008/12/09 20:00:57 | 00,000,000 | ---D | C] -- C:\WINDOWS\speech
[2008/12/09 20:00:57 | 00,000,000 | ---D | C] -- C:\Program Files\Subliminal Visualizer Pro
[2008/12/09 20:00:28 | 00,662,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCT2.OCX
[2008/12/09 20:00:28 | 00,415,176 | ---- | C] (Microsoft Corporation ) -- C:\WINDOWS\System32\Comct332.ocx
[2008/12/09 20:00:28 | 00,203,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RichTx32.ocx
[2008/12/09 20:00:28 | 00,000,000 | ---D | C] -- C:\Program Files\SRSRipper
[2008/12/09 20:00:10 | 01,101,824 | ---- | C] (JB) -- C:\WINDOWS\System32\vbskpro.ocx
[2008/12/09 20:00:10 | 00,608,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ComCtl32.ocx
[2008/12/09 20:00:10 | 00,503,808 | ---- | C] (xFX JumpStart®) -- C:\WINDOWS\System32\DXVUMeter.ocx
[2008/12/09 20:00:10 | 00,049,152 | ---- | C] () -- C:\WINDOWS\System32\mp3enc.dll
[2008/12/09 20:00:09 | 00,368,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vbar332.dll
[2008/12/09 20:00:09 | 00,164,864 | ---- | C] () -- C:\WINDOWS\UNWISE.EXE
[2008/12/09 20:00:09 | 00,000,000 | ---D | C] -- C:\Program Files\SRS5-1XP
[2008/12/08 18:21:49 | 00,000,033 | ---- | C] () -- C:\WINDOWS\System32\minsage
[2008/12/08 18:21:38 | 01,071,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCTL.OCX
[2008/12/08 18:21:38 | 00,209,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Tabctl32.ocx
[2008/12/08 18:21:38 | 00,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Comdlg32.ocx
[2008/12/08 18:21:38 | 00,000,000 | ---D | C] -- C:\Program Files\MB Free Subliminal Message Software
[2008/12/07 21:58:56 | 00,000,000 | ---D | C] -- C:\Program Files\Audacity
[2008/12/07 21:32:36 | 00,010,752 | -HS- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\Thumbs.db
@Alternate Data Stream - 0 bytes -> C:\Documents and Settings\Ishadawn\Bureau\Thumbs.db:encryptable
[2008/12/07 18:21:04 | 00,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2008/12/07 14:46:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Artweaver
[2008/12/07 14:46:43 | 00,000,000 | ---D | C] -- C:\Program Files\Artweaver 0.5
[2008/12/07 14:09:18 | 00,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Jasc Software Inc
[2008/12/07 14:09:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Mes documents\Mes fichiers PSP
[2008/12/07 14:09:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Jasc Software Inc
[2008/12/07 14:07:21 | 00,000,000 | ---D | C] -- C:\Program Files\Jasc Software Inc
[2008/12/07 13:53:20 | 00,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2008/12/07 11:38:23 | 00,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2008/12/04 21:17:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\WEBREG
[2008/12/04 21:15:08 | 00,309,760 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\difxapi.dll
[2008/12/04 21:15:07 | 00,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbscan.sys
[2008/12/04 21:15:07 | 00,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbscan.sys
[2008/12/04 21:02:46 | 00,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbprint.sys
[2008/12/04 21:02:46 | 00,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbprint.sys
[2008/12/04 21:02:30 | 00,000,000 | -H-D | C] -- C:\Config.Msi
[2008/12/03 23:39:59 | 00,000,000 | ---D | C] -- C:\Program Files\SubliSoft
[2008/12/01 18:06:49 | 04,886,569 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Mes documents\12Correspondances-pdf.axx
[2008/12/01 18:06:49 | 01,288,753 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Mes documents\AxCrypt+tutorial.zip
[2008/12/01 18:06:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Mes documents\AxCrypt+tutorial
[2008/12/01 15:10:42 | 00,000,000 | ---D | C] -- C:\Program Files\Axon Data
[2008/12/01 15:08:59 | 04,886,569 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Bureau\12Correspondances-pdf.axx
[2008/12/01 07:43:35 | 00,003,500 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Mes documents\FAMP2.doc
[2008/11/30 17:17:34 | 01,001,984 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Mes documents\FAMP.doc
[2008/11/28 21:30:08 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Mes documents\Dell Webcam Center
[2008/11/28 21:30:06 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Creative
[2008/11/28 21:26:55 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2008/11/28 21:25:31 | 17,593,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2008/11/28 21:24:50 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\drivers\lvuvc.hs
[2008/11/28 21:24:38 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\drivers\logiflt.iad
[2008/11/28 21:08:41 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Leadertech
[2008/11/28 21:07:16 | 00,066,482 | R--- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2008/11/28 21:07:16 | 00,025,056 | R--- | C] () -- C:\WINDOWS\System32\Repository.reg
[2008/11/28 21:05:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Logishrd
[2008/11/28 21:05:49 | 00,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\LogiShrd
[2008/11/28 21:05:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Logitech
[2008/11/28 21:05:31 | 00,000,000 | ---D | C] -- C:\Program Files\Logitech
[2008/11/28 20:54:48 | 00,060,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys
[2008/11/28 20:54:48 | 00,060,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbaudio.sys
[2008/11/28 19:21:42 | 00,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2008/11/27 20:15:12 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Media Player Classic
[2008/11/27 20:13:16 | 00,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2008/11/27 20:13:15 | 00,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2008/11/27 20:13:14 | 00,839,680 | ---- | C] (http://www.mp3dev.org/) -- C:\WINDOWS\System32\lameACM.acm
[2008/11/27 20:13:14 | 00,755,027 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2008/11/27 20:13:14 | 00,217,088 | ---- | C] (www.helixcommunity.org) -- C:\WINDOWS\System32\yv12vfw.dll
[2008/11/27 20:13:14 | 00,118,784 | ---- | C] (fccHandler) -- C:\WINDOWS\System32\ac3acm.acm
[2008/11/27 20:13:14 | 00,000,414 | ---- | C] () -- C:\WINDOWS\System32\lame_acm.xml
[2008/11/27 20:13:13 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008/11/27 20:13:13 | 00,159,839 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2008/11/27 20:13:13 | 00,081,920 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\dpl100.dll
[2008/11/27 20:13:12 | 00,684,032 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx.dll
[2008/11/27 20:13:11 | 00,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008/11/27 20:13:10 | 00,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack
[2008/11/26 14:44:23 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Journal Viewer
[2008/11/25 13:01:18 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2008/11/24 17:59:15 | 00,000,048 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2008/11/24 17:59:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\skypePM
[2008/11/24 17:58:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Skype
[2008/11/24 17:58:16 | 00,000,000 | ---D | C] -- C:\Program Files\Skype
[2008/11/24 17:58:16 | 00,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Skype
[2008/11/24 17:58:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Skype
[2008/11/24 15:10:25 | 00,138,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\afd.sys
[2008/11/24 15:10:18 | 00,333,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srv.sys
[2008/11/24 15:10:13 | 01,846,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\win32k.sys
[2008/11/24 15:09:08 | 02,147,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2008/11/24 15:09:08 | 02,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlpa.exe
[2008/11/24 15:09:08 | 02,025,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2008/11/24 15:09:07 | 02,191,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2008/11/24 15:07:47 | 00,455,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2008/11/24 15:07:29 | 00,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadce.dll
[2008/11/24 15:07:25 | 00,691,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcomm.dll
[2008/11/24 15:06:59 | 00,337,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\netapi32.dll
[2008/11/24 15:06:54 | 01,106,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml3.dll
[2008/11/24 15:05:46 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2008/11/23 21:59:15 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Template
[2008/11/23 21:59:14 | 00,009,146 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Application Data\wklnhst.dat
[2008/11/23 20:59:16 | 00,000,000 | ---D | C] -- C:\Program Files\eMule
[2008/11/23 20:40:01 | 00,000,017 | ---- | C] () -- C:\WINDOWS\System32\'
[2008/11/23 20:39:51 | 00,006,016 | ---- | C] (RDV Soft) -- C:\WINDOWS\System32\drivers\vnccom.SYS
[2008/11/23 20:39:45 | 00,012,800 | ---- | C] (RDV Soft) -- C:\WINDOWS\System32\vncdrv.dll
[2008/11/23 20:39:45 | 00,005,760 | ---- | C] (RDV Soft) -- C:\WINDOWS\System32\vnchelp.dll
[2008/11/23 20:39:45 | 00,004,736 | ---- | C] (RDV Soft) -- C:\WINDOWS\System32\drivers\vncdrv.sys
[2008/11/23 20:39:45 | 00,000,000 | ---D | C] -- C:\Program Files\UltraVNC
[2008/11/23 17:20:57 | 00,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2008/11/23 17:19:05 | 00,000,000 | ---D | C] -- C:\Program Files\Winamp
[2008/11/23 14:47:19 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
[2008/11/23 10:52:54 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Mes documents\Mes Historiques de Conversation
[2008/11/23 10:37:45 | 00,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2008/11/23 09:57:39 | 00,000,579 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Mes documents\Mes dossiers de partage.lnk
[2008/11/23 09:56:06 | 00,000,000 | ---D | C] -- C:\Program Files\Messenger Plus! Live
[2008/11/23 09:56:03 | 00,000,268 | -H-- | C] () -- C:\sqmdata00.sqm
[2008/11/23 09:56:03 | 00,000,244 | -H-- | C] () -- C:\sqmnoopt00.sqm
[2008/11/23 09:55:30 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Mes documents\Mes fichiers reçus
[2008/11/23 09:55:19 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2008/11/23 09:55:15 | 00,000,000 | ---D | C] -- C:\Program Files\MSN Messenger
[2008/11/23 00:27:53 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Bureau\Disque 1
[2008/11/23 00:15:25 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2008/11/23 00:14:16 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\SupportSoft
[2008/11/23 00:11:35 | 00,038,912 | ---- | C] () -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/11/23 00:08:01 | 00,000,000 | ---D | C] -- C:\Program Files\Philips
[2008/11/22 23:57:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\CyberLink
[2008/11/22 23:57:12 | 00,026,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS
[2008/11/22 23:57:12 | 00,026,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbstor.sys
[2008/11/22 23:54:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\nView_Profiles
[2008/11/22 23:54:31 | 00,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2008/11/22 23:54:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\Mozilla
[2008/11/22 23:54:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Mozilla
[2008/11/22 23:54:24 | 00,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2008/11/22 23:49:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Macromedia
[2008/11/22 23:15:00 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Ishadawn\Application Data\Adobe
========== Files - Modified Within 30 Days ==========
[1 C:\WINDOWS\System32\*.tmp files]
File not found -- C:\Documents and Settings\Ishadawn\Bureau\Dél[1]. S.
[2008/12/21 23:35:49 | 00,423,424 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Ishadawn\Bureau\OTViewIt.exe
[2008/12/21 23:35:02 | 00,126,724 | ---- | M] () -- C:\WINDOWS\System32\nvModes.001
[2008/12/21 23:35:01 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2008/12/21 23:33:18 | 00,189,259 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2008/12/21 23:33:15 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2008/12/21 23:33:13 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2008/12/21 23:33:10 | 32,195,74784 | -HS- | M] () -- C:\hiberfil.sys
[2008/12/21 23:33:09 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\lvuvc.hs
[2008/12/21 23:33:07 | 00,000,000 | ---- | M] () -- C:\WINDOWS\System32\drivers\logiflt.iad
[2008/12/21 22:56:30 | 00,000,099 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\Internet Explorer - résolution de problèmes.url
[2008/12/21 22:56:11 | 00,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2008/12/21 21:54:59 | 00,506,698 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2008/12/21 21:54:59 | 00,438,036 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2008/12/21 21:54:59 | 00,084,354 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2008/12/21 21:54:59 | 00,071,130 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2008/12/21 21:54:58 | 01,113,158 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2008/12/21 21:49:02 | 04,240,656 | -H-- | M] () -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\IconCache.db
[2008/12/21 20:59:25 | 00,001,853 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\AntiVir PE Classic.lnk
[2008/12/21 20:55:15 | 00,003,072 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2008/12/21 20:51:00 | 22,148,280 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\antivir_workstation_winu_fr_h.exe
[2008/12/21 20:39:36 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2008/12/21 20:39:28 | 00,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2008/12/21 20:20:10 | 02,885,589 | R--- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\ComboFix.exe
[2008/12/21 20:02:43 | 00,001,522 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\UsbFix.lnk
[2008/12/21 20:02:15 | 00,726,134 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\UsbFix.exe
[2008/12/21 16:45:17 | 00,009,146 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Application Data\wklnhst.dat
[2008/12/21 16:45:16 | 00,106,496 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\Développe[1]..doc
[2008/12/21 13:52:23 | 00,153,600 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\Développe[1]...doc
[2008/12/21 13:51:32 | 00,000,579 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Mes documents\Mes dossiers de partage.lnk
[2008/12/20 18:45:41 | 00,145,391 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\plan.jpg
[2008/12/19 09:14:28 | 00,041,984 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\Entretien avec un fumeur.doc
[2008/12/18 21:00:38 | 02,539,168 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Ishadawn\Bureau\mbam-setup.exe
[2008/12/18 20:45:43 | 09,860,828 | ---- | M] () -- C:\upload_moi_JEANNICK.tar.gz
[2008/12/18 20:32:19 | 02,884,875 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\ComboFix2.exe
[2008/12/18 20:24:54 | 00,001,736 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\HijackThis.lnk
[2008/12/18 20:24:42 | 00,812,344 | ---- | M] (Trend Micro Inc.) -- C:\Documents and Settings\Ishadawn\Bureau\HJTInstall.exe
[2008/12/17 11:51:25 | 00,038,912 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008/12/17 03:42:24 | 00,126,724 | ---- | M] () -- C:\WINDOWS\System32\nvModes.dat
[2008/12/15 16:12:46 | 00,000,002 | ---- | M] () -- C:\38773665
[2008/12/15 16:12:44 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\svchost.exe
[2008/12/15 16:12:44 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\svchost.exe
[2008/12/15 15:20:51 | 00,185,016 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008/12/12 00:17:45 | 00,253,139 | ---- | M] (pdfforge.org) -- C:\WINDOWS\PDFCreator_Toolbar_Uninstaller_343.exe
[2008/12/10 00:24:37 | 17,593,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2008/12/09 23:38:20 | 00,055,808 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Mes documents\Courtois2.doc
[2008/12/09 20:56:12 | 05,758,667 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\Voyage Astral.mp3
[2008/12/09 20:28:36 | 64,401,452 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\ahccai.wav
[2008/12/09 20:00:59 | 00,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2008/12/09 20:00:59 | 00,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2008/12/08 18:21:49 | 00,000,033 | ---- | M] () -- C:\WINDOWS\System32\minsage
[2008/12/07 21:32:36 | 00,010,752 | -HS- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\Thumbs.db
@Alternate Data Stream - 0 bytes -> C:\Documents and Settings\Ishadawn\Bureau\Thumbs.db:encryptable
[2008/12/04 21:16:26 | 00,000,512 | ---- | M] () -- C:\WINDOWS\win.ini
[2008/12/01 15:57:08 | 00,003,500 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Mes documents\FAMP2.doc
[2008/12/01 15:08:59 | 04,886,569 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Mes documents\12Correspondances-pdf.axx
[2008/12/01 15:08:59 | 04,886,569 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Bureau\12Correspondances-pdf.axx
[2008/12/01 15:03:37 | 01,288,753 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Mes documents\AxCrypt+tutorial.zip
[2008/11/30 17:17:44 | 01,001,984 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Mes documents\FAMP.doc
[2008/11/28 19:21:42 | 00,000,754 | ---- | M] () -- C:\WINDOWS\WORDPAD.INI
[2008/11/24 17:59:15 | 00,000,048 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2008/11/23 20:40:01 | 00,000,017 | ---- | M] () -- C:\WINDOWS\System32\'
[2008/11/23 17:21:11 | 00,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2008/11/23 09:56:03 | 00,000,268 | -H-- | M] () -- C:\sqmdata00.sqm
[2008/11/23 09:56:03 | 00,000,244 | -H-- | M] () -- C:\sqmnoopt00.sqm
[2008/11/22 23:54:31 | 00,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2008/11/22 23:32:29 | 00,000,134 | -HS- | M] () -- C:\Documents and Settings\All Users\Documents\desktop.ini
[2008/11/22 23:14:56 | 00,000,131 | ---- | M] () -- C:\Documents and Settings\Ishadawn\Local Settings\Application Data\fusioncache.dat
< End of report >
Rapport Extras :
OTViewIt Extras logfile created on: 21/12/2008 23:36:44 - Run
OTViewIt by OldTimer - Version 1.0.20.1 Folder = C:\Documents and Settings\Ishadawn\Bureau
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 100,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 100,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 232,77 Gb Total Space | 146,35 Gb Free Space | 62,87% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 93,16 Gb Total Space | 61,86 Gb Free Space | 66,40% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: JEANNICK
Current User Name: Ishadawn
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Whitelist: On
File Age = 30 Days
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled"=1
"AntiVirusDisableNotify"=0
"FirewallDisableNotify"=0
"UpdatesDisableNotify"=0
"AntiVirusOverride"=0
"FirewallOverride"=0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts]
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[2008/04/14 13:00:00 | 00,558,080 | ---- | M] (Microsoft Corporation) -- %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
[2008/04/14 13:00:00 | 00,142,848 | ---- | M] (Microsoft Corporation) -- %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
[2007/01/19 12:55:02 | 05,674,352 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1
[2007/01/04 16:10:02 | 00,297,752 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
[2008/04/14 13:00:00 | 00,558,080 | ---- | M] (Microsoft Corporation) -- %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
[2008/04/14 13:00:00 | 00,142,848 | ---- | M] (Microsoft Corporation) -- %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
[2007/01/19 12:55:02 | 05,674,352 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1
[2007/01/04 16:10:02 | 00,297,752 | ---- | M] (Microsoft Corporation) -- C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)
[2006/07/17 15:44:52 | 00,364,544 | ---- | M] (www.ultravnc.fr) -- C:\Program Files\UltraVNC\winvnc.exe:*:Enabled:Serveur VNC pour Win32
[2007/10/14 20:38:52 | 00,214,360 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe
[2007/10/19 20:46:08 | 00,184,320 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe
[2007/11/30 01:12:40 | 00,107,864 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe
[2007/12/20 11:05:54 | 01,421,312 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe
[2007/10/31 14:45:22 | 00,147,456 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe
[2002/06/04 15:23:10 | 09,797,632 | ---- | M] (Macromedia, Inc.) -- C:\Program Files\Macromedia\Dreamweaver MX\Dreamweaver.exe:*:Enabled:Dreamweaver MX
[2008/12/19 08:44:09 | 00,342,848 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\DNA\btdna.exe:*:Enabled:DNA
[2008/11/11 02:34:02 | 00,637,232 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent
[2008/11/18 16:31:04 | 21,633,320 | R--- | M] (Skype Technologies S.A.) -- C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
========== (O18) Protocol Handlers ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\]
ipp: [HKLM - No CLSID value]
[2002/05/24 09:22:16 | 00,532,480 | ---- | M] (Microsoft Corporation) C:\Program Files\Fichiers communs\System\Ole