Virus URL : mal

Fermé
jojokilo - Modifié par jojokilo le 31/07/2012 à 16:47
 jojo - 31 juil. 2012 à 23:36
Bonjour,





slt avast ma signale ce virus ; c louche ?

je poste le rapport zhpdialog


Rapport de ZHPDiag v1.31.11 par Nicolas Coolman, Update du 21/07/2012
Run by toan at 31/07/2012 16:31:32
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Web site : http://nicolascoolman.skyrock.com/
State :


---\\ Web Browser
MSIE: Internet Explorer v
GCIE: Google Chrome v20.0.1132.57 (Defaut)

---\\ Windows Product Information
~ Langage: Français
Windows 7 Business Edition, 32-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
~ Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 733WD
Windows License : OK
~ Windows Remaining Initializations Number : 4
Software Protection Service (Protection logicielle) : KO
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System Information
~ Processor: x86 Family 6 Model 37 Stepping 5, GenuineIntel
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 2933 MB (57% free)
System Restore: Inconnu (Unknown)
System drive C: has 159 GB (68%) free of 232 GB

---\\ Logged in mode
~ Computer Name: TOAN-PC
~ User Name: toan
~ All Users Names: toan, HomeGroupUser$, Administrateur,
~ Unselected Option: ,,,,,,,
Logged in as Administrator

---\\ Environnement Variables
~ System Unit : C:\
~ %AppData% : C:\Users\toan\AppData\Roaming\
~ %Desktop% : C:\Users\toan\Desktop\
~ %Favorites% : C:\Users\toan\Favorites\
~ %LocalAppData% : C:\Users\toan\AppData\Local\
~ %StartMenu% : C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 159 Go of 232 Go)
D:\ CD-ROM drive (Not Inserted)



---\\ Security Center & Tools Informations
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
~ Scan Security Center in 00mn 00s



---\\
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) (.25/02/2011 - 06:30:54.) -- C:\Windows\Explorer.exe [2616320]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\System32\Wininit.exe [96256]
[MD5.8E87270C4704CF2951E1E7820D6C8A2B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.02/06/2012 - 09:25:08.) -- C:\Windows\System32\wininet.dll [1129472]
[MD5.6D13E1406F50C66E2A95D97F22C47560] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.20/11/2010 - 13:17:54.) -- C:\Windows\System32\Winlogon.exe [286720]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) (.20/11/2010 - 13:21:24.) -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.9EBBBA55060F786F0FCAA3893BFA2806] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.25/04/2011 - 03:18:03.) -- C:\Windows\system32\Drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\Drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 09:38:10.) -- C:\Windows\system32\Drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 09:42:32.) -- C:\Windows\system32\Drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 10:59:29.) -- C:\Windows\system32\Drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\Drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\Drivers\IpNat.sys [101888]
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/04/2011 - 03:17:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [123904]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 09:39:44.) -- C:\Windows\system32\Drivers\netBT.sys [187904]
[MD5.81189C3D7763838E55C397759D49007A] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.11/03/2011 - 06:39:00.) -- C:\Windows\system32\Drivers\ntfs.sys [1211264]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\Drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [78848]
[MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.20/11/2010 - 11:24:46.) -- C:\Windows\system32\Drivers\rdpdr.sys [133632]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 00:53:41.) -- C:\Windows\system32\Drivers\smb.sys [71168]
[MD5.B459575348C20E8121D6039DA063C704] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 09:39:17.) -- C:\Windows\system32\Drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.20/11/2010 - 13:30:16.) -- C:\Windows\system32\Drivers\volsnap.sys [245632]
~ Scan Generic Processes in 00mn 01s



---\\
~ Mes images (My Pictures) : 1/42
~ Mes Videos (My Videos) : 1/51
~ Mes Favoris (My Favorites) : 1/28
~ Mes Documents (My Documents) : 1/432
~ Mon Bureau (My Desktop) : 1/885
~ Menu demarrer (Programs) : 1/32
~ Scan Hidden Files in 00mn 04s



---\\
[MD5.6E097BE822B87D9956895CE32CFA488C].(.IDT, Inc..IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe [495708] [PID.3692]
[MD5.22001D1308E34153D2BCD51368E14F7B].(.Dell Inc..DW WLAN Card Wireless Network Tray Applet.) -- C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [5249024] [PID.3228]
[MD5.79B6690186CCC8F4B078BB7F55B873A9].(.Wave Systems Corp..WavX Document Manager Application.) -- C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin\WavXDocMgr.exe [147840] [PID.824]
[MD5.C973C36D057A121A8BB940CB74AFF53F].(.Broadcom Corporation.Dell Security Device and Task Status.) -- C:\Program Files\Dell\Dell ControlPoint\Security Manager\BcmDeviceAndTaskStatusService.exe [34232] [PID.3896]
[MD5.7DA77557B339A4CDC6EAB9327331E321].(.Intel Corporation.igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [142616] [PID.3556]
[MD5.0B92113765B45B1C0458593A6B87D379].(.Intel Corporation.hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [177432] [PID.1928]
[MD5.B7480BA5924D07D5797C834E4B158EEB].(.Intel Corporation.persistence Module.) -- C:\Windows\System32\igfxpers.exe [176408] [PID.1480]
[MD5.4F8DD1CEA5412541283F1E9EE02F7AB2].(.RealNetworks, Inc..RealNetworks Scheduler.) -- C:\Program Files\Real\RealPlayer\Update\realsched.exe [296056] [PID.3560]
[MD5.98A078F838A70F84E1BD490D7C7675F4].(.Sun Microsystems, Inc..Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254696] [PID.4680]
[MD5.20C4535969F2006F6082CDF146CD95C4].(.AVAST Software.avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4273976] [PID.4708]
[MD5.36E5CA5DCE72A831A3F7C7ED8AEA83AE].(.Brother Industries, Ltd..Control Center 3 Main Program.) -- C:\Program Files\Brother\ControlCenter3\brccMCtl.exe [872448] [PID.4728]
[MD5.FF4106B0288EF02EBB3133D95895EB87].(.Emsisoft GmbH.Background Guard.) -- C:\Program Files\Emsisoft Anti-Malware\a2guard.exe [3408288] [PID.]
[MD5.C5F1D82D9CC8979971CC748FCB2EE7CA].(.Lavasoft.Ad-Aware Browsing Protection.) -- C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [198032] [PID.5188]
[MD5.5FDF1C6FDEC0158B72D0EE9340CF5126].(..VProtect Application.) -- C:\Program Files\AVG Secure Search\vprot.exe [1147488] [PID.5280]
[MD5.0C2E901D4C29F7C319C9186585550CEE].(.Akamai Technologies, Inc.Akamai NetSession Client.) -- C:\Users\toan\AppData\Local\Akamai\netsession_win.exe [4327744] [PID.5836]
[MD5.B624202660474516E73AA95238FD9843].(.Logitech, Inc..Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe [813584] [PID.5908]
[MD5.E96BC31E0114F0999FB0F92FC65D61CA].(.Logitech, Inc..Logitech KHAL Main Process.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe [55824] [PID.6136]
[MD5.0D98EE9F2296576639FD89C6FF92EDD4].(.Google Inc..Google Chrome.) -- C:\Users\toan\AppData\Local\Google\Chrome\Application\chrome.exe [1250328] [PID.5600]
[MD5.51138BEEA3E2C21EC44D0932C71762A8].(...) -- ystem32\rundll32.exe [0] [PID.8000]
[MD5.72AE847EB2B526CC0551C88B9A2970C1].(...) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [3763200] [PID.7356]
~ Scan Processes Running in 00mn 20s



---\\
C:\Users\toan\AppData\Local\Google\Chrome\User Data\Default\Preferences
G0 - GCSP: Preference [User Data\Default][HomePage] https://isearch.avg.com
G0 - GCSP: Preference [User Data\Default] https://isearch.avg.com
G1 - GCS: Preference [User Data\Default] None
~ Scan Google Browser in 00mn 00s



---\\
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Users\toan\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll
P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Users\toan\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll
~ Scan Firefox Browser in 00mn 00s



---\\
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Google Inc. - Google Update.) (No version) -- (.not file.)
~ Scan IE Browser in 00mn 00s



---\\
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <local>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Scan Proxy management in 00mn 00s



---\\
~ Le fichier hosts est sain (The hosts file is clean).
~ Scan Hosts File in 00mn 00s
~ Nombre de lignes (Lines number): 0



---\\
O4 - HKCU\..\Run: [Messenger (Yahoo!)] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\toan\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc - Akamai NetSession Client.) -- C:\Users\toan\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-1006100480-1310152007-3121482933-1001\..\Run: [Messenger (Yahoo!)] . (.Yahoo! Inc. - Yahoo! Messenger.) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O4 - HKUS\S-1-5-21-1006100480-1310152007-3121482933-1001\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\toan\AppData\Local\Google\Update\GoogleUpdate.exe
O4 - HKUS\S-1-5-21-1006100480-1310152007-3121482933-1001\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc - Akamai NetSession Client.) -- C:\Users\toan\AppData\Local\Akamai\netsession_win.exe
~ Scan Application in 00mn 00s



---\\
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\toan\Desktop\Acheter RegSupreme Pro.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme Pro\RegSupremePro.exe
O4 - Global Startup: C:\Users\toan\Desktop\BitTorrent - Raccourci.lnk . (.BitTorrent, Inc..) -- C:\Program Files\BitTorrent\BitTorrent.exe
O4 - Global Startup: C:\Users\toan\Desktop\Civ4BeyondSword - Raccourci.lnk . (.Firaxis Games.) -- C:\Program Files\2K Games\Firaxis Games\Sid Meier's Civilization 4 Complete\Beyond the Sword\Civ4BeyondSword.exe
O4 - Global Startup: C:\Users\toan\Desktop\Civ4Fans 2009.lnk . (...) -- C:\Program Files\Civ4Fans 2009\Civ4Fans2009.exe
O4 - Global Startup: C:\Users\toan\Desktop\HiJackThis.lnk . (.Trend Micro Inc..) -- C:\Users\toan\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
O4 - Global Startup: C:\Users\toan\Desktop\JDownloader.lnk . (.AppWork GmbH.) -- C:\Program Files\JDownloader\JDownloaderPortable.exe
O4 - Global Startup: C:\Users\toan\Desktop\RegSupreme Pro.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme Pro\RegSupremePro.exe
O4 - Global Startup: C:\Users\toan\Desktop\SopCast.lnk . (.www.sopcast.com.) -- C:\Program Files\SopCast\SopCast.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Civ4Fans 2009.lnk . (...) -- C:\Program Files\Civ4Fans 2009\Civ4Fans2009.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Emsisoft Anti-Malware.lnk . (.Emsisoft GmbH.) -- C:\Program Files\Emsisoft Anti-Malware\a2start.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ethereal.lnk . (.The Ethereal developer community, http://ww.) -- C:\Program Files\Ethereal\ethereal.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk . (.Gretech Corp..) -- C:\Program Files\GRETECH\GomPlayer\GOM.EXE
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\JDownloader.lnk . (.AppWork GmbH.) -- C:\Program Files\JDownloader\JDownloaderPortable.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\RegSupreme Pro.lnk . (.Macecraft Software.) -- C:\Program Files\RegSupreme Pro\RegSupremePro.exe
O4 - Global Startup: C:\Users\toan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk . (.Yahoo! Inc..) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
~ Scan Global Startup in 00mn 01s



---\\
O24 - Default MHTML Editor: Last - .(...) - (.not file.)
~ Scan Desktop Component in 00mn 00s



---\\
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1006100480-1310152007-3121482933-1001Core.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1006100480-1310152007-3121482933-1001UA.job
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-1006100480-1310152007-3121482933-1001Core] (.Google Inc..) -- C:\Users\toan\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskUserS-1-5-21-1006100480-1310152007-3121482933-1001UA] (.Google Inc..) -- C:\Users\toan\AppData\Local\Google\Update\GoogleUpdate.exe
[MD5.13FBAAC844080B75D082FEA55718D2F8] [APT] [RealUpgradeLogonTaskS-1-5-21-1006100480-1310152007-3121482933-1001] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
[MD5.13FBAAC844080B75D082FEA55718D2F8] [APT] [RealUpgradeScheduledTaskS-1-5-21-1006100480-1310152007-3121482933-1001] (.RealNetworks, Inc..) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe
[MD5.2D79A30E0F0814CC770B366DF97F9140] [APT] [RNUpgradeHelperResumePrompt_toan] (.RealNetworks, Inc..) -- C:\Users\toan\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\9.11\rnupgagent.exe
[MD5.00000000000000000000000000000000] [APT] [{2D165416-22DA-4B44-9CEB-CD6E0749A25E}] (...) -- D:\Setup.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{47E804D7-3834-4A88-97D4-19C1504543AF}] (...) -- C:\Users\toan\Downloads\Win7Vista_151712.exe (.not file.)
[MD5.5D539617604E953FD2DF852F4B51A383] [APT] [{4F49F0F8-D4C4-4928-B15C-CCCEDF2246DB}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe
[MD5.8D699C26857440661FAD1AED839FFC79] [APT] [{5C7FAEC8-17B5-4710-A20E-419A21B93BA0}] (.Acresso Software Inc..) -- C:\Program Files\InstallShield Installation Information\{87434D51-51DB-4109-B68F-A829ECDCF380}\setup.exe
[MD5.00000000000000000000000000000000] [APT] [{6FF66F7D-C8C7-48A4-8EAC-FBAD24C6CB69}] (...) -- C:\Program Files\Alwil Software\Avast5\aswRundll.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{7062F44D-76CD-4C74-AFD7-3FA47B67DC2F}] (...) -- C:\Users\toan\Desktop\KW_5\KW.exe (.not file.)
~ Scan Scheduled Task in 00mn 07s



---\\ (None)

---\\
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU] -- Akamai
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome

---\\ HKCU & HKLM Software Keys
[HKCU\Software\ALWIL Software]
[HKCU\Software\AVAST Software]
[HKCU\Software\AVG Secure Search]
[HKCU\Software\Adobe]
[HKCU\Software\Alps]
[HKCU\Software\AppDataLow\Software\Microsoft]
[HKCU\Software\AppDataLow\Software\PriceGong]
[HKCU\Software\AppDataLow\Software\Yahoo]
[HKCU\Software\AppDataLow\Software\adaware]
[HKCU\Software\AppDataLow\Software\adawaretb]
[HKCU\Software\AppDataLow\Software\searchqutoolbar]
[HKCU\Software\AppDataLow\Software]
[HKCU\Software\AppDataLow]
[HKCU\Software\BitTorrent]
[HKCU\Software\Broadcom]
[HKCU\Software\Brother]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\Creative Tech]
[HKCU\Software\CyberLink]
[HKCU\Software\Datamngr]
[HKCU\Software\Dell]
[HKCU\Software\DivXNetworks]
[HKCU\Software\GNU]
[HKCU\Software\GRETECH]
[HKCU\Software\Gabest]
[HKCU\Software\GameSpy]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\Hewlett-Packard]
[HKCU\Software\IGearSettings]
[HKCU\Software\IM Providers]
[HKCU\Software\Intel]
[HKCU\Software\JavaSoft]
[HKCU\Software\LAV]
[HKCU\Software\Lake]
[HKCU\Software\Leadertech]
[HKCU\Software\Logitech]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Netscape]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RealNetworks]
[HKCU\Software\RealVNC]
[HKCU\Software\Roxio]
[HKCU\Software\SAMSUNG]
[HKCU\Software\Skype]
[HKCU\Software\Slipknot Corp.]
[HKCU\Software\SuperSoftwarePackage]
[HKCU\Software\SweetIM]
[HKCU\Software\System Requirements Lab]
[HKCU\Software\TomTom]
[HKCU\Software\Trend Micro]
[HKCU\Software\Trolltech]
[HKCU\Software\Widcomm]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\YahooPartnerToolbar]
[HKCU\Software\Yahoo]
[HKCU\Software\cybelsoft]
[HKCU\Software\eMule]
[HKCU\Software\ej-technologies]
[HKCU\Software\yahooinstall]
~ Scan Softwares in 00mn 00s



---\\
O43 - CFD: 26/03/2012 - 13:44:16 - [-513,765] ----D C:\Program Files\2K Games
O43 - CFD: 29/07/2012 - 01:26:08 - [179,970] ----D C:\Program Files\Ad-Aware Antivirus
O43 - CFD: 28/07/2012 - 23:43:17 - [2,692] ----D C:\Program Files\adawaretb
O43 - CFD: 06/04/2012 - 01:17:58 - [113,359] ----D C:\Program Files\Adobe
O43 - CFD: 08/02/2011 - 14:25:06 - [0,001] ----D C:\Program Files\Alwil Software
O43 - CFD: 28/07/2012 - 00:10:51 - [237,559] ----D C:\Program Files\AVAST Software
O43 - CFD: 29/07/2012 - 19:42:40 - [8,285] ----D C:\Program Files\AVG Secure Search
O43 - CFD: 31/05/2012 - 15:02:37 - [6,084] ----D C:\Program Files\BitTorrent
O43 - CFD: 08/02/2011 - 15:10:13 - [27,907] ----D C:\Program Files\Broadcom
O43 - CFD: 18/05/2012 - 01:22:11 - [31,804] ----D C:\Program Files\Brother
O43 - CFD: 27/12/2011 - 22:55:49 - [4,137] ----D C:\Program Files\CCleaner
O43 - CFD: 24/01/2011 - 19:11:38 - [2,558] ----D C:\Program Files\Cisco
O43 - CFD: 29/07/2012 - 00:08:14 - [4,854] ----D C:\Program Files\Civ4Fans 2009
O43 - CFD: 29/07/2012 - 19:59:36 - [35,012] ----D C:\Program Files\Combined Community Codec Pack
O43 - CFD: 29/07/2012 - 19:42:01 - [400,998] ----D C:\Program Files\Common Files
O43 - CFD: 24/01/2011 - 19:17:58 - [1,867] ----D C:\Program Files\Creative
O43 - CFD: 24/01/2011 - 19:20:07 - [138,552] ----D C:\Program Files\CyberLink
O43 - CFD: 24/01/2011 - 19:16:56 - [364,646] ----D C:\Program Files\Dell
O43 - CFD: 24/01/2011 - 19:03:02 - [10,182] ----D C:\Program Files\Dell Inc
O43 - CFD: 24/01/2011 - 19:17:48 - [23,581] ----D C:\Program Files\Dell Webcam
O43 - CFD: 31/01/2011 - 15:21:57 - [16,421] ----D C:\Program Files\DellTPad
O43 - CFD: 24/01/2011 - 19:07:17 - [1,759] ----D C:\Program Files\DIFX
O43 - CFD: 16/03/2011 - 19:32:03 - [79,371] ----D C:\Program Files\DVD Maker
O43 - CFD: 31/07/2012 - 16:23:04 - [254,416] ----D C:\Program Files\Emsisoft Anti-Malware
O43 - CFD: 03/04/2012 - 01:26:25 - [10,401] ----D C:\Program Files\eMule
O43 - CFD: 28/03/2012 - 12:41:43 - [52,238] ----D C:\Program Files\Ethereal
O43 - CFD: 31/01/2011 - 15:04:43 - [0] ----D C:\Program Files\Fichiers communs
O43 - CFD: 24/01/2011 - 19:07:16 - [8,758] ----D C:\Program Files\Fingerprint Sensor
O43 - CFD: 30/08/2011 - 11:35:51 - [7,237] ----D C:\Program Files\FLV Blaster
O43 - CFD: 29/07/2012 - 19:38:23 - [21,153] ----D C:\Program Files\GRETECH
O43 - CFD: 24/01/2011 - 11:58:18 - [34,827] ----D C:\Program Files\IDT
O43 - CFD: 18/05/2012 - 01:22:08 - [243,425] --H-D C:\Program Files\InstallShield Installation Information
O43 - CFD: 07/04/2012 - 16:20:39 - [4,637] ----D C:\Program Files\Intel
O43 - CFD: 15/07/2012 - 14:40:58 - [4,938] ----D C:\Program Files\Internet Explorer
O43 - CFD: 21/06/2012 - 11:48:05 - [84,568] ----D C:\Program Files\Java
O43 - CFD: 29/07/2012 - 20:50:44 - [60,004] ----D C:\Program Files\JDownloader
O43 - CFD: 07/04/2012 - 16:29:53 - [16,127] ----D C:\Program Files\Logitech
O43 - CFD: 07/04/2012 - 16:14:19 - [6,206] ----D C:\Program Files\ma-config.com
O43 - CFD: 30/07/2012 - 02:05:23 - [22,300] ----D C:\Program Files\Microsoft
O43 - CFD: 11/05/2012 - 13:35:03 - [27,777] ----D C:\Program Files\Microsoft Silverlight
O43 - CFD: 24/01/2011 - 19:30:13 - [1,745] ----D C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 31/01/2011 - 15:37:08 - [0,015] ----D C:\Program Files\Microsoft.NET
O43 - CFD: 14/07/2009 - 06:52:30 - [0,025] ----D C:\Program Files\MSBuild
O43 - CFD: 31/01/2011 - 15:14:53 - [0] ----D C:\Program Files\MSXML 4.0
O43 - CFD: 24/01/2011 - 19:13:36 - [2,923] ----D C:\Program Files\NTRU Cryptosystems
O43 - CFD: 24/01/2011 - 19:06:24 - [1,140] ----D C:\Program Files\O2Micro OZ776 SCR Driver
O43 - CFD: 29/03/2011 - 23:28:00 - [0,385] ----D C:\Program Files\PriceGong
O43 - CFD: 20/12/2011 - 22:31:23 - [93,920] ----D C:\Program Files\Real
O43 - CFD: 26/06/2011 - 12:18:47 - [9,984] ----D C:\Program Files\RealVNC
O43 - CFD: 14/07/2009 - 06:52:30 - [37,349] ----D C:\Program Files\Reference Assemblies
O43 - CFD: 28/07/2012 - 23:07:09 - [4,706] ----D C:\Program Files\RegSupreme Pro
O43 - CFD: 24/01/2011 - 19:24:46 - [392,287] ----D C:\Program Files\Roxio
O43 - CFD: 11/05/2012 - 21:32:30 - [17,960] ----D C:\Program Files\SAMSUNG
O43 - CFD: 25/07/2011 - 00:08:11 - [14,440] R---D C:\Program Files\Skype
O43 - CFD: 23/05/2012 - 21:55:48 - [8,533] ----D C:\Program Files\SopCast
O43 - CFD: 29/07/2012 - 02:04:03 - [0,029] ----D C:\Program Files\stinger
O43 - CFD: 24/01/2011 - 19:08:35 - [3,532] ----D C:\Program Files\STMicroelectronics
O43 - CFD: 29/07/2012 - 02:25:46 - [2,484] ----D C:\Program Files\SweetIM
O43 - CFD: 08/02/2011 - 14:55:41 - [0,751] ----D C:\Program Files\SystemRequirementsLab
O43 - CFD: 12/04/2012 - 02:42:31 - [0,021] ----D C:\Program Files\TomTom International B.V
O43 - CFD: 28/07/2012 - 23:43:16 - [0,656] ----D C:\Program Files\Toolbar Cleaner
O43 - CFD: 29/07/2012 - 00:44:03 - [0,370] ----D C:\Program Files\Trend Micro
O43 - CFD: 14/07/2009 - 06:53:23 - [0] --H-D C:\Program Files\Uninstall Information
O43 - CFD: 29/03/2011 - 23:28:45 - [92,147] ----D C:\Program Files\VideoLAN
O43 - CFD: 24/01/2011 - 19:16:13 - [125,322] ----D C:\Program Files\Wave Systems Corp
O43 - CFD: 24/01/2011 - 19:12:14 - [113,972] ----D C:\Program Files\WIDCOMM
O43 - CFD: 16/03/2011 - 19:32:02 - [2,909] ----D C:\Program Files\Windows Defender
O43 - CFD: 11/05/2012 - 21:59:02 - [6,689] ----D C:\Program Files\Windows Journal
O43 - CFD: 04/09/2011 - 00:56:48 - [176,264] ----D C:\Program Files\Windows Live
O43 - CFD: 16/03/2011 - 19:32:04 - [5,895] ----D C:\Program Files\Windows Mail
O43 - CFD: 16/03/2011 - 19:32:03 - [6,298] ----D C:\Program Files\Windows Media Player
O43 - CFD: 31/01/2011 - 15:04:43 - [11,632] ----D C:\Program Files\Windows NT
O43 - CFD: 16/03/2011 - 19:32:03 - [4,213] ----D C:\Program Files\Windows Photo Viewer
O43 - CFD: 16/03/2011 - 19:32:03 - [0,181] ----D C:\Program Files\Windows Portable Devices
O43 - CFD: 16/03/2011 - 19:32:04 - [6,558] ----D C:\Program Files\Windows Sidebar
O43 - CFD: 08/02/2011 - 15:09:28 - [3,706] ----D C:\Program Files\WinRAR
O43 - CFD: 19/05/2012 - 23:49:30 - [32,187] ----D C:\Program Files\Yahoo!
O43 - CFD: 31/07/2012 - 16:26:36 - [12,787] ----D C:\Program Files\ZHPDiag
O43 - CFD: 08/07/2011 - 23:31:18 - [3,652] ----D C:\Program Files\Common Files\Adobe
O43 - CFD: 06/04/2012 - 01:17:56 - [30,057] ----D C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 29/07/2012 - 19:42:17 - [7,648] ----D C:\Program Files\Common Files\AVG Secure Search
O43 - CFD: 24/01/2011 - 19:20:07 - [0,115] ----D C:\Program Files\Common Files\CyberLink
O43 - CFD: 24/01/2011 - 19:17:33 - [3,598] ----D C:\Program Files\Common Files\InstallShield
O43 - CFD: 08/02/2011 - 14:51:38 - [12,691] ----D C:\Program Files\Common Files\Intel
O43 - CFD: 06/03/2012 - 14:28:37 - [1,201] ----D C:\Program Files\Common Files\Java
O43 - CFD: 07/04/2012 - 16:33:14 - [13,330] ----D C:\Program Files\Common Files\Logishrd
O43 - CFD: 29/07/2012 - 00:34:19 - [54,488] ----D C:\Program Files\Common Files\microsoft shared
O43 - CFD: 24/01/2011 - 19:25:07 - [4,297] ----D C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 24/01/2011 - 19:25:45 - [218,872] ----D C:\Program Files\Common Files\Roxio Shared
O43 - CFD: 14/07/2009 - 04:37:05 - [0,003] ----D C:\Program Files\Common Files\Services
O43 - CFD: 24/01/2011 - 19:24:41 - [1,045] ----D C:\Program Files\Common Files\Sonic Shared
O43 - CFD: 14/07/2009 - 04:37:05 - [39,200] ----D C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 24/01/2011 - 19:24:39 - [0,699] ----D C:\Program Files\Common Files\SureThing Shared
O43 - CFD: 20/11/2011 - 15:33:47 - [9,767] ----D C:\Program Files\Common Files\System
O43 - CFD: 24/01/2011 - 19:26:11 - [0] ----D C:\Program Files\Common Files\Windows Live
O43 - CFD: 20/12/2011 - 22:31:22 - [0,336] ----D C:\Program Files\Common Files\xing shared
O43 - CFD: 31/07/2012 - 14:24:17 - [0,587] ----D C:\ProgramData\Ad-Aware Browsing Protection
O43 - CFD: 06/04/2012 - 01:15:46 - [259,418] ----D C:\ProgramData\Adobe
O43 - CFD: 08/02/2011 - 14:25:06 - [11,120] ----D C:\ProgramData\Alwil Software
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Application Data
O43 - CFD: 28/07/2012 - 00:10:51 - [7,155] ----D C:\ProgramData\AVAST Software
O43 - CFD: 29/07/2012 - 19:43:13 - [0,423] ----D C:\ProgramData\AVG Secure Search
O43 - CFD: 31/08/2011 - 10:47:28 - [0,000] ----D C:\ProgramData\boost_interprocess
O43 - CFD: 10/04/2012 - 14:36:24 - [0,111] ----D C:\ProgramData\Brother
O43 - CFD: 31/01/2011 - 15:04:43 - [0] --H-D C:\ProgramData\Bureau
O43 - CFD: 29/07/2012 - 19:38:58 - [0,000] --H-D C:\ProgramData\Common Files
O43 - CFD: 05/01/2012 - 19:03:04 - [0,030] ----D C:\ProgramData\Creative
O43 - CFD: 24/01/2011 - 19:16:56 - [0,000] ----D C:\ProgramData\Dell
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Documents
O43 - CFD: 03/04/2012 - 01:27:24 - [0] ----D C:\ProgramData\eMule
O43 - CFD: 31/01/2011 - 15:04:43 - [0] --H-D C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Favorites
O43 - CFD: 16/10/2011 - 18:55:26 - [0,116] ----D C:\ProgramData\HP
O43 - CFD: 29/07/2012 - 00:34:33 - [0,133] ----D C:\ProgramData\Lavasoft
O43 - CFD: 07/04/2012 - 16:33:25 - [0,000] ----D C:\ProgramData\LogiShrd
O43 - CFD: 07/04/2012 - 16:30:15 - [20,210] ----D C:\ProgramData\Logitech
O43 - CFD: 07/04/2012 - 16:14:19 - [1,205] ----D C:\ProgramData\ma-config.com
O43 - CFD: 24/01/2011 - 19:22:45 - [3,389] ----D C:\ProgramData\Macrovision
O43 - CFD: 07/04/2012 - 16:23:43 - [89,769] ----D C:\ProgramData\Malwarebytes
O43 - CFD: 31/01/2011 - 15:04:43 - [0] --H-D C:\ProgramData\Menu Démarrer
O43 - CFD: 29/07/2012 - 20:10:53 - [28,806] -S--D C:\ProgramData\Microsoft
O43 - CFD: 31/01/2011 - 15:04:43 - [0] --H-D C:\ProgramData\Modèles
O43 - CFD: 24/01/2011 - 19:13:36 - [0,000] ----D C:\ProgramData\NTRU Cryptosystems
O43 - CFD: 03/04/2012 - 16:13:31 - [0,050] ----D C:\ProgramData\OPHC
O43 - CFD: 24/01/2011 - 19:24:27 - [17,271] ----D C:\ProgramData\PhotoShow Shared Assets
O43 - CFD: 29/06/2011 - 00:47:50 - [1,974] ----D C:\ProgramData\Real
O43 - CFD: 24/01/2011 - 19:24:26 - [20,832] ----D C:\ProgramData\Roxio
O43 - CFD: 11/05/2012 - 21:31:42 - [0,133] ----D C:\ProgramData\Samsung
O43 - CFD: 06/07/2011 - 22:15:33 - [21,278] ----D C:\ProgramData\Skype
O43 - CFD: 29/07/2012 - 01:26:28 - [0,141] ----D C:\ProgramData\Sonic
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Start Menu
O43 - CFD: 24/01/2011 - 19:04:26 - [0,000] ----D C:\ProgramData\Sun
O43 - CFD: 29/07/2012 - 02:24:46 - [0,001] ----D C:\ProgramData\SweetIM
O43 - CFD: 24/01/2011 - 19:19:38 - [0,051] ----D C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - 06:53:55 - [0] --H-D C:\ProgramData\Templates
O43 - CFD: 24/01/2011 - 19:25:45 - [5,367] ----D C:\ProgramData\Uninstall
O43 - CFD: 24/01/2011 - 19:16:30 - [1,517] ----D C:\ProgramData\Wave Systems Corp
O43 - CFD: 21/02/2011 - 19:37:04 - [0,727] ----D C:\ProgramData\Yahoo!
O43 - CFD: 29/07/2012 - 00:43:14 - [0,004] ----D C:\Users\toan\AppData\Roaming\Ad-Aware Antivirus
O43 - CFD: 06/04/2012 - 01:15:46 - [17,767] ----D C:\Users\toan\AppData\Roaming\Adobe
O43 - CFD: 30/08/2011 - 11:38:32 - [0] ----D C:\Users\toan\AppData\Roaming\Bandoo
O43 - CFD: 04/06/2012 - 01:35:00 - [1,600] ----D C:\Users\toan\AppData\Roaming\BitTorrent
O43 - CFD: 31/01/2011 - 15:05:53 - [0] ----D C:\Users\toan\AppData\Roaming\Broadcom
O43 - CFD: 31/01/2011 - 15:05:42 - [0,000] ----D C:\Users\toan\AppData\Roaming\Creative
O43 - CFD: 28/03/2012 - 12:42:39 - [0,002] ----D C:\Users\toan\AppData\Roaming\Ethereal
O43 - CFD: 29/07/2012 - 19:47:54 - [0,001] ----D C:\Users\toan\AppData\Roaming\GRETECH
O43 - CFD: 31/01/2011 - 15:05:20 - [0] ----D C:\Users\toan\AppData\Roaming\Identities
O43 - CFD: 08/02/2011 - 15:10:01 - [0] ----D C:\Users\toan\AppData\Roaming\InstallShield
O43 - CFD: 07/04/2012 - 16:33:17 - [0,000] ----D C:\Users\toan\AppData\Roaming\Leadertech
O43 - CFD: 03/07/2012 - 16:23:32 - [0] ----D C:\Users\toan\AppData\Roaming\liQeNSoft
O43 - CFD: 07/04/2012 - 16:33:23 - [0,003] ----D C:\Users\toan\AppData\Roaming\Logitech
O43 - CFD: 31/01/2011 - 15:27:07 - [0,054] ----D C:\Users\toan\AppData\Roaming\Macromedia
O43 - CFD: 07/04/2012 - 16:23:49 - [4,306] ----D C:\Users\toan\AppData\Roaming\Malwarebytes
O43 - CFD: 14/07/2009 - 11:00:41 - [0] ----D C:\Users\toan\AppData\Roaming\Media Center Programs
O43 - CFD: 11/05/2012 - 21:32:31 - [4,012] -S--D C:\Users\toan\AppData\Roaming\Microsoft
O43 - CFD: 24/07/2012 - 20:45:45 - [0,269] ----D C:\Users\toan\AppData\Roaming\OPHC
O43 - CFD: 20/12/2011 - 22:31:39 - [55,505] ----D C:\Users\toan\AppData\Roaming\Real
O43 - CFD: 29/07/2012 - 18:40:55 - [0] ----D C:\Users\toan\AppData\Roaming\RealNetworks
O43 - CFD: 31/01/2011 - 15:05:49 - [0,001] ----D C:\Users\toan\AppData\Roaming\Roxio
O43 - CFD: 27/12/2011 - 23:01:20 - [1,577] ----D C:\Users\toan\AppData\Roaming\Skype
O43 - CFD: 08/02/2011 - 14:55:35 - [0,374] ----D C:\Users\toan\AppData\Roaming\SystemRequirementsLab
O43 - CFD: 30/07/2012 - 12:21:40 - [0,077] ----D C:\Users\toan\AppData\Roaming\vlc
O43 - CFD: 31/01/2011 - 15:05:53 - [0] ----D C:\Users\toan\AppData\Roaming\Wave Systems Corp
O43 - CFD: 08/02/2011 - 15:09:36 - [0,000] ----D C:\Users\toan\AppData\Roaming\WinRAR
O43 - CFD: 29/07/2012 - 00:36:25 - [4,412] ----D C:\Users\toan\AppData\Local\adaware
O43 - CFD: 06/04/2012 - 01:17:48 - [14,705] ----D C:\Users\toan\AppData\Local\Adobe
O43 - CFD: 29/03/2011 - 23:13:05 - [13,350] ----D C:\Users\toan\AppData\Local\adslTV
O43 - CFD: 31/07/2012 - 00:45:12 - [24,131] ----D C:\Users\toan\AppData\Local\Akamai
O43 - CFD: 31/01/2011 - 15:04:57 - [0] ----D C:\Users\toan\AppData\Local\Application Data
O43 - CFD: 31/01/2011 - 15:26:06 - [1,173] ----D C:\Users\toan\AppData\Local\Apps
O43 - CFD: 29/07/2012 - 19:43:03 - [1,068] ----D C:\Users\toan\AppData\Local\AVG Secure Search
O43 - CFD: 31/01/2011 - 15:05:45 - [0] ----D C:\Users\toan\AppData\Local\Broadcom
O43 - CFD: 31/01/2011 - 15:26:18 - [0] ----D C:\Users\toan\AppData\Local\Deployment
O43 - CFD: 29/07/2012 - 10:51:03 - [0,061] ----D C:\Users\toan\AppData\Local\Diagnostics
O43 - CFD: 29/07/2012 - 00:33:10 - [139,596] ----D C:\Users\toan\AppData\Local\Downloaded Installations
O43 - CFD: 29/07/2012 - 19:29:08 - [0] ----D C:\Users\toan\AppData\Local\ElevatedDiagnostics
O43 - CFD: 03/04/2012 - 01:26:25 - [0,047] ----D C:\Users\toan\AppData\Local\eMule
O43 - CFD: 31/01/2011 - 15:26:59 - [448,928] ----D C:\Users\toan\AppData\Local\Google
O43 - CFD: 31/01/2011 - 15:04:57 - [0] ----D C:\Users\toan\AppData\Local\Historique
O43 - CFD: 30/08/2011 - 13:32:06 - [0,014] ----D C:\Users\toan\AppData\Local\Ilivid Player
O43 - CFD: 03/07/2012 - 16:23:25 - [0,001] ----D C:\Users\toan\AppData\Local\liQeNSoft
O43 - CFD: 29/07/2012 - 20:10:53 - [166,087] ----D C:\Users\toan\AppData\Local\Microsoft
O43 - CFD: 26/03/2012 - 15:37:52 - [4,761] ----D C:\Users\toan\AppData\Local\My Games
O43 - CFD: 06/04/2012 - 01:13:29 - [0,048] ----D C:\Users\toan\AppData\Local\P5
O43 - CFD: 30/08/2011 - 11:37:40 - [0] ----D C:\Users\toan\AppData\Local\PackageAware
O43 - CFD: 31/07/2012 - 16:31:53 - [1266,802] ----D C:\Users\toan\AppData\Local\Temp
O43 - CFD: 31/01/2011 - 15:04:57 - [0] ----D C:\Users\toan\AppData\Local\Temporary Internet Files
O43 - CFD: 19/05/2012 - 10:56:53 - [0] ----D C:\Users\toan\AppData\Local\TomTom
O43 - CFD: 16/10/2011 - 12:07:52 - [31,074] ----D C:\Users\toan\AppData\Local\VirtualStore
O43 - CFD: 29/07/2012 - 19:31:18 - [0,055] ----D C:\Users\toan\AppData\Local\Windows Live
O43 - CFD: 21/02/2011 - 19:38:07 - [0,080] ----D C:\Users\toan\AppData\Local\Yahoo
O43 - CFD: 04/09/2011 - 00:52:41 - [0] ----D C:\Users\toan\AppData\Local\{0457CE13-54B7-4275-AFCB-7C0EA1DC7FD4}
O43 - CFD: 07/10/2011 - 22:30:57 - [0] ----D C:\Users\toan\AppData\Local\{11300FB9-7C6C-4117-981F-3C8D2642EA31}
O43 - CFD: 14/09/2011 - 18:04:50 - [0] ----D C:\Users\toan\AppData\Local\{1366A169-A8AF-41FA-97C4-A02C292A7CFA}
O43 - CFD: 11/10/2011 - 19:19:58 - [0] ----D C:\Users\toan\AppData\Local\{1468ABDD-2D22-4AF0-AF56-34101BC70CFC}
O43 - CFD: 02/09/2011 - 15:45:52 - [0] ----D C:\Users\toan\AppData\Local\{1470EA0A-BD12-4DD4-B127-0DCB9B9F20EB}
O43 - CFD: 23/10/2011 - 13:24:58 - [0] ----D C:\Users\toan\AppData\Local\{15CFBFE6-A5DF-438D-B810-6875957D61B6}
O43 - CFD: 19/10/2011 - 17:22:43 - [0] ----D C:\Users\toan\AppData\Local\{194CB331-2E24-4C11-B89D-4936219A37F0}
O43 - CFD: 14/10/2011 - 19:47:30 - [0] ----D C:\Users\toan\AppData\Local\{1FF19232-604B-45A1-B7A7-BFB85ECD1566}
O43 - CFD: 16/10/2011 - 02:20:58 - [0] ----D C:\Users\toan\AppData\Local\{20200FAF-62FF-45E6-86B0-2395D407907B}
O43 - CFD: 28/09/2011 - 14:03:52 - [0] ----D C:\Users\toan\AppData\Local\{213FB4BE-3754-4E3E-ABF1-E984BC707F1D}
O43 - CFD: 12/10/2011 - 18:49:53 - [0] ----D C:\Users\toan\AppData\Local\{21676D9C-E6A8-4662-B81B-B005C04712B6}
O43 - CFD: 12/09/2011 - 00:03:03 - [0] ----D C:\Users\toan\AppData\Local\{251D5474-0188-42D7-AA65-FF9D9898D87F}
O43 - CFD: 05/10/2011 - 00:57:30 - [0] ----D C:\Users\toan\AppData\Local\{3575A261-9D03-4EAD-AA3C-C86C2F282EFC}
O43 - CFD: 26/09/2011 - 16:33:01 - [0] ----D C:\Users\toan\AppData\Local\{3599A928-8328-474F-A284-600E42B1DF6F}
O43 - CFD: 29/07/2012 - 19:31:17 - [0] ----D C:\Users\toan\AppData\Local\{35A9F67F-103D-4C17-8ED3-B428821A570E}
O43 - CFD: 16/10/2011 - 02:20:37 - [0] ----D C:\Users\toan\AppData\Local\{35F1770F-2A22-40C1-BB7E-5260B6CF2F37}
O43 - CFD: 25/09/2011 - 05:40:31 - [0] ----D C:\Users\toan\AppData\Local\{369907F8-38B1-4D0E-96A9-34F693BC9EEC}
O43 - CFD: 18/09/2011 - 02:46:52 - [0] ----D C:\Users\toan\AppData\Local\{36B5D130-2DFD-4BCD-BD3B-03E487DAEE9A}
O43 - CFD: 22/09/2011 - 19:29:34 - [0] ----D C:\Users\toan\AppData\Local\{39490D04-2721-4F49-8526-391B3E557594}
O43 - CFD: 24/10/2011 - 12:30:28 - [0] ----D C:\Users\toan\AppData\Local\{3E2EF183-EC79-40DF-9BA2-BD7879B1B28A}
O43 - CFD: 19/09/2011 - 00:32:30 - [0] ----D C:\Users\toan\AppData\Local\{444504F1-DE3A-46E0-9C76-52AE05139DEF}
O43 - CFD: 17/10/2011 - 16:25:19 - [0] ----D C:\Users\toan\AppData\Local\{4F4DE112-7327-4DE7-9308-882A00AD876B}
O43 - CFD: 11/07/2011 - 17:39:12 - [0] ----D C:\Users\toan\AppData\Local\{51365F3A-9993-4A54-8896-675FD9AC597F}
O43 - CFD: 12/10/2011 - 18:49:25 - [0] ----D C:\Users\toan\AppData\Local\{51CD3291-40B9-4CB3-9F18-E1C521E26B94}
O43 - CFD: 30/09/2011 - 20:10:34 - [0] ----D C:\Users\toan\AppData\Local\{58FCE0A0-AED6-4E64-BB04-C41D28FB1F3B}
O43 - CFD: 18/09/2011 - 02:46:31 - [0] ----D C:\Users\toan\AppData\Local\{5DFFF584-3587-4304-9F0C-B8256BD33491}
O43 - CFD: 11/09/2011 - 01:25:35 - [0] ----D C:\Users\toan\AppData\Local\{63E81892-BA5C-4D07-9316-C345AB33C73C}
O43 - CFD: 20/10/2011 - 17:46:49 - [0] ----D C:\Users\toan\AppData\Local\{65800801-B3FF-44D4-868D-A808135F6D19}
O43 - CFD: 18/07/2011 - 21:02:29 - [0] ----D C:\Users\toan\AppData\Local\{66E9A4CF-0CEA-45C2-B72F-54569F2BA855}
O43 - CFD: 22/09/2011 - 19:29:47 - [0] ----D C:\Users\toan\AppData\Local\{692CF7DA-95BC-4D51-AEF5-7062CB4DFF2E}
O43 - CFD: 30/09/2011 - 20:10:48 - [0] ----D C:\Users\toan\AppData\Local\{6A79198B-7D84-4575-BB58-908E8C1290EE}
O43 - CFD: 20/09/2011 - 23:25:43 - [0] ----D C:\Users\toan\AppData\Local\{7083BAFC-39AE-4713-9C81-D1C48859FB63}
O43 - CFD: 14/09/2011 - 18:05:23 - [0] ----D C:\Users\toan\AppData\Local\{7200AA67-4645-436F-B6CA-62C105AFB108}
O43 - CFD: 26/09/2011 - 16:32:50 - [0] ----D C:\Users\toan\AppData\Local\{79BB1EBA-AC74-4D74-91DD-8B752E3D46D5}
O43 - CFD: 14/10/2011 - 19:47:41 - [0] ----D C:\Users\toan\AppData\Local\{8100D5B6-2864-4D51-B7D2-59B5EBC50C39}
O43 - CFD: 05/10/2011 - 16:09:38 - [0] ----D C:\Users\toan\AppData\Local\{8392812C-BED2-4512-8246-AFDBC5E35AEF}
O43 - CFD: 10/10/2011 - 14:27:25 - [0] ----D C:\Users\toan\AppData\Local\{883A8573-817E-43B5-8B8C-10F809B17C31}
O43 - CFD: 15/09/2011 - 23:55:40 - [0] ----D C:\Users\toan\AppData\Local\{8A569B07-48DA-435A-8D42-FAF5F43443CF}
O43 - CFD: 24/07/2011 - 23:58:22 - [0] ----D C:\Users\toan\AppData\Local\{8D6FF331-4489-4BED-9A35-3C541A8F9DB8}
O43 - CFD: 13/10/2011 - 19:01:28 - [0] ----D C:\Users\toan\AppData\Local\{8F0634A2-EAC0-404C-B7D9-FD41AC2D0EA9}
O43 - CFD: 20/10/2011 - 17:47:11 - [0] ----D C:\Users\toan\AppData\Local\{927150F6-1456-4FC0-B4AB-03BF70498CC5}
O43 - CFD: 16/10/2011 - 16:09:10 - [0] ----D C:\Users\toan\AppData\Local\{9675EBB8-59B1-4F12-B587-7CEA79F53D30}
O43 - CFD: 29/09/2011 - 18:26:49 - [0] ----D C:\Users\toan\AppData\Local\{970AD479-300B-4232-B83D-9243824414B8}
O43 - CFD: 16/10/2011 - 16:08:54 - [0] ----D C:\Users\toan\AppData\Local\{9A194DB3-35E0-4E85-959B-54356164E1D3}
O43 - CFD: 17/07/2011 - 21:29:56 - [0] ----D C:\Users\toan\AppData\Local\{9D562BEE-4D1C-4256-BFD2-3EFA68F060CC}
O43 - CFD: 15/09/2011 - 16:49:31 - [0] ----D C:\Users\toan\AppData\Local\{9D8D5AB1-0012-40E8-B8BF-E0A125A80F5E}
O43 - CFD: 23/10/2011 - 13:24:35 - [0] ----D C:\Users\toan\AppData\Local\{A9D2ADD0-5C52-46D7-9352-27502F87B677}
O43 - CFD: 13/07/2011 - 17:16:43 - [0] ----D C:\Users\toan\AppData\Local\{AA4CCA2C-0491-4805-B7F2-E66B940142C8}
O43 - CFD: 15/07/2011 - 13:52:01 - [0] ----D C:\Users\toan\AppData\Local\{AACBFA43-C171-4219-A2BF-4E84ABAB1212}
O43 - CFD: 08/10/2011 - 10:31:22 - [0] ----D C:\Users\toan\AppData\Local\{AC193858-6131-408B-9D45-E82DE2F0F5B7}
O43 - CFD: 05/10/2011 - 16:09:27 - [0] ----D C:\Users\toan\AppData\Local\{B1A87850-EBE0-4E6E-BB70-3BE1A710B40E}
O43 - CFD: 08/10/2011 - 10:31:34 - [0] ----D C:\Users\toan\AppData\Local\{B2D482E7-11F8-431D-9DF4-689D0C8D0B74}
O43 - CFD: 09/10/2011 - 19:41:26 - [0] ----D C:\Users\toan\AppData\Local\{B4EA9B17-1755-4821-85F3-AD33AD8E0105}
O43 - CFD: 17/10/2011 - 16:25:05 - [0] ----D C:\Users\toan\AppData\Local\{B8028DB2-8A0D-4325-97E8-F3CEE3BF849C}
O43 - CFD: 12/09/2011 - 00:03:24 - [0] ----D C:\Users\toan\AppData\Local\{B96E9B86-561A-4485-8BE4-2FD38C12EB1D}
O43 - CFD: 16/09/2011 - 23:50:58 - [0] ----D C:\Users\toan\AppData\Local\{B98A2DD3-EAA7-44AC-A0E7-555E2E8B7C7C}
O43 - CFD: 18/10/2011 - 18:26:12 - [0] ----D C:\Users\toan\AppData\Local\{BB4EBADB-0A61-4A88-A0EE-311B3BA2BEBB}
O43 - CFD: 28/09/2011 - 14:04:03 - [0] ----D C:\Users\toan\AppData\Local\{BD2D577B-78A3-44DB-99C5-E155F3AFEABD}
O43 - CFD: 27/09/2011 - 23:41:31 - [0] ----D C:\Users\toan\AppData\Local\{BDA99438-8A5D-4923-87DA-C33A9A16FCF0}
O43 - CFD: 13/10/2011 - 19:01:15 - [0] ----D C:\Users\toan\AppData\Local\{C6EF39EC-6DCE-4A66-AA21-8FEF42F1DAEA}
O43 - CFD: 06/10/2011 - 23:02:25 - [0] ----D C:\Users\toan\AppData\Local\{C8B16D93-86DB-4151-BAA3-1DBE35193271}
O43 - CFD: 11/09/2011 - 01:25:12 - [0] ----D C:\Users\toan\AppData\Local\{CCF8B7C7-096D-4893-86C5-5C206DFA96E7}
O43 - CFD: 12/07/2011 - 15:54:36 - [0] ----D C:\Users\toan\AppData\Local\{CE5CD967-8F4B-442E-A632-EEB642F40781}
O43 - CFD: 04/09/2011 - 23:43:19 - [0] ----D C:\Users\toan\AppData\Local\{D0F74B52-70D1-437A-BAB0-101C8EA63145}
O43 - CFD: 29/09/2011 - 18:27:10 - [0] ----D C:\Users\toan\AppData\Local\{D300370D-2283-407E-A7BB-1087306D6274}
O43 - CFD: 29/07/2012 - 19:31:18 - [0] ----D C:\Users\toan\AppData\Local\{D31319E2-29A1-4042-AC2D-F32B75467225}
O43 - CFD: 15/07/2011 - 15:20:50 - [0] ----D C:\Users\toan\AppData\Local\{D4A7F51A-76AC-41ED-ABEA-A1EDA38B60F2}
O43 - CFD: 10/10/2011 - 14:27:49 - [0] ----D C:\Users\toan\AppData\Local\{DB669848-79EE-4993-BF2E-919052339C37}
O43 - CFD: 04/09/2011 - 00:52:30 - [0] ----D C:\Users\toan\AppData\Local\{DC1644D7-6CE9-418B-B7BD-F9EFAAF6B9E7}
O43 - CFD: 04/09/2011 - 23:42:56 - [0] ----D C:\Users\toan\AppData\Local\{DDE4007C-B05D-40AA-955A-A6E8DB64EA3C}
O43 - CFD: 02/10/2011 - 23:14:28 - [0] ----D C:\Users\toan\AppData\Local\{E1C5453C-9AFE-4F83-A02C-4CE86057DC21}
O43 - CFD: 24/10/2011 - 12:30:45 - [0] ----D C:\Users\toan\AppData\Local\{E76F6F33-EEA3-499E-B64B-0AD1878454B9}
O43 - CFD: 21/09/2011 - 20:46:13 - [0] ----D C:\Users\toan\AppData\Local\{EF8D1B1C-D16A-4C04-A5FE-458FBE9325FB}
O43 - CFD: 18/10/2011 - 18:26:00 - [0] ----D C:\Users\toan\AppData\Local\{F0291553-FE47-4994-ABF8-3AEF5E41027D}
O43 - CFD: 19/10/2011 - 17:22:07 - [0] ----D C:\Users\toan\AppData\Local\{F350F361-0558-445E-8CCF-45AB492FF25C}
O43 - CFD: 08/07/2011 - 16:08:47 - [0] ----D C:\Users\toan\AppData\Local\{F371CE6B-3454-4CED-845F-BB800B831E84}
O43 - CFD: 16/09/2011 - 23:51:09 - [0] ----D C:\Users\toan\AppData\Local\{FC4533DB-7ABD-4B73-9C7C-52E3D9EF46FA}
O43 - CFD: 03/10/2011 - 23:12:04 - [0] ----D C:\Users\toan\AppData\Local\{FD879218-C306-4535-973D-386379D688DE}
O43 - CFD: 14/07/2009 - 06:42:04 - [0,014] R---D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/07/2012 - 11:55:04 - [0,000] R---D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 31/01/2011 - 15:27:00 - [0,005] ----D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 29/07/2012 - 00:44:04 - [0,003] ----D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
O43 - CFD: 14/07/2009 - 06:37:42 - [0,001] R---D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 19/04/2012 - 14:37:42 - [0,002] ----D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Périphériques Bluetooth
O43 - CFD: 11/05/2012 - 21:32:31 - [0,004] ----D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 23/05/2012 - 21:55:45 - [0] ----D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast
O43 - CFD: 13/07/2012 - 11:55:45 - [0,000] R---D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 08/02/2011 - 15:09:28 - [0,003] ----D C:\Users\toan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
~ Scan Program Folder in 00mn 59s



---\\
O44 - LFC:[MD5.9D8C480FE14F1D588E5FFAE246AF40A8] - 31/07/2012 - 15:25:33 ---A- . (...) -- C:\MyHosts.txt [230]
O44 - LFC:[MD5.62030314B81E04022F2983213268D6D1] - 31/07/2012 - 14:47:53 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1292247]
O44 - LFC:[MD5.FAC77A6E252B2E1ED34B94C832B82540] - 31/07/2012 - 14:47:35 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.57321802A62061AD3FD2402CEB82FCDB] - 31/07/2012 - 13:22:53 ---A- . (...) -- C:\Windows\setupact.log [20720]
O44 - LFC:[MD5.B3574622B7A13F84443C9B3FA9C3C4B9] - 31/07/2012 - 01:44:56 ---A- . (...) -- C:\Windows\System32\CountScans.XML [334]
O44 - LFC:[MD5.004EC4FDDAC246C82A2568CD673FC2E0] - 31/07/2012 - 01:44:56 ---A- . (...) -- C:\Windows\System32\ServiceConfig.xml [1190]
O44 - LFC:[MD5.C915D74F62C0BC43C23E9BCB000BAC45] - 30/07/2012 - 23:49:34 ---A- . (...) -- C:\Windows\System32\perfc009.dat [106622]
O44 - LFC:[MD5.1FA78CF012474BF462D3528DCDA2BD34] - 30/07/2012 - 23:49:34 ---A- . (...) -- C:\Windows\System32\perfc00C.dat [130988]
O44 - LFC:[MD5.7F317F5FB49CC4A4C4502444B702C3CF] - 30/07/2012 - 23:49:34 ---A- . (...) -- C:\Windows\System32\perfh009.dat [616242]
O44 - LFC:[MD5.A176D8C3DACFCED2A0A51D4F23393636] - 30/07/2012 - 23:49:34 ---A- . (...) -- C:\Windows\System32\perfh00C.dat [704714]
O44 - LFC:[MD5.7061E5A5856BF182ED11727BEF3AA077] - 30/07/2012 - 23:49:33 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1549936]
O44 - LFC:[MD5.684DE9D6E62BFB177AABED3C62FDEAB3] - 29/07/2012 - 18:42:14 ---A- . (.AVG Technologies - .) -- C:\Windows\System32\Drivers\avgtpx86.sys [27496]
O44 - LFC:[MD5.1AFD7178AB9C4FCE2D332DA7AA474FA6] - 28/07/2012 - 23:34:37 ---A- . (.GFI Software - GFI Firewall SDK Host Intrusion Prevention.) -- C:\Windows\System32\Drivers\sbhips.sys [93816]
O44 - LFC:[MD5.B4FA6D277F63CE3E5E547DD40365F178] - 28/07/2012 - 22:18:26 ---A- . (.McAfee, Inc. - McAfee Labs® GetSusp(TM) Utility Driver.) -- C:\Windows\stinger.sys [14664]
O44 - LFC:[MD5.AC2590F8231DD95933A34E26B4BC0F57] - 28/07/2012 - 22:07:18 ---A- . (...) -- C:\Windows\System32\dfabfdfbaddf8_d.ocx [23]
O44 - LFC:[MD5.6734F3D4C4B12EA532B6EA5ECCD29F1D] - 28/07/2012 - 22:07:18 -SHA- . (...) -- C:\Windows\System32\ccbfcfbecb3_d.dll [23]
O44 - LFC:[MD5.01C47C2ECED034EF6F8C1552A97CFF00] - 27/07/2012 - 23:11:18 ---A- . (...) -- C:\Windows\System32\config.nt [2577]
O44 - LFC:[MD5.80613208232214626E74653F13C3BF8F] - 27/07/2012 - 23:08:30 ---A- . (...) -- C:\Windows\PFRO.log [8210]
O44 - LFC:[MD5.F2C3D957F08A49ABFAFA9B21678C92A4] - 13/07/2012 - 02:18:50 ---A- . (...) -- C:\Windows\System32\FNTCACHE.DAT [319760]
O44 - LFC:[MD5.7109A9AA551F37CD168C02368465957E] - 03/07/2012 - 17:21:54 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\Drivers\aswTdi.sys [54232]
O44 - LFC:[MD5.1C1F3D6DDDC046C920C493A779649F66] - 03/07/2012 - 17:21:53 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\Drivers\aswFsBlk.sys [21256]
O44 - LFC:[MD5.A48D8015AF2A0D8B4937613FFBFD28DE] - 03/07/2012 - 17:21:53 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\Drivers\aswMonFlt.sys [57656]
O44 - LFC:[MD5.73DBCF808E00580F2A47F93DD9B03876] - 03/07/2012 - 17:21:53 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\Drivers\aswSnx.sys [721000]
O44 - LFC:[MD5.4A951BEBA9E49410CDE478B6F6ABB252] - 03/07/2012 - 17:21:53 ---A- . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\Drivers\aswRdr2.sys [44784]
O44 - LFC:[MD5.6CBD7D3A33F498D09C831CDD732DA2E0] - 03/07/2012 - 17:21:53 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\Drivers\aswSP.sys [353688]
O44 - LFC:[MD5.7946D9F881715414B9F5D80D16752664] - 03/07/2012 - 17:21:32 ---A- . (.AVAST Software - avast! Screen Saver stub.) -- C:\Windows\avastSS.scr [41224]
O44 - LFC:[MD5.011A849235BACE60852566530B52AF91] - 03/07/2012 - 17:21:28 ---A- . (.AVAST Software - avast! start-up scanner.) -- C:\Windows\System32\aswBoot.exe [227648]
~ Scan Files in 01mn 11s



---\\ (None)

---\\
O51 - MPSK:{343804fb-27a0-11e0-b80e-806e6f6e6963}\AutoRun\command. (...) -- D:\setup.exe (.not file.)
O51 - MPSK:{59321fd2-9b9f-11e1-869a-c0cb38a830bc}\AutoRun\command. (...) -- E:\ICM_Manager.exe (.not file.)
~ Scan Keys in 00mn 00s



---\\ (None)

---\\
O58 - SDL:[MD5.AF1F178B0218B44876E63BF0B019E96B] - 18/01/2010 - 14:56:26 ---A- . (.ST Microelectronics - Accelerometer Port I/O.) -- C:\Windows\System32\Drivers\Accelern.sys [42672]
O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]
~ Scan Drivers in 00mn 00s



---\\
O63 - Logiciel: RSIT - (.random/random.)
~ Scan ADS in 00mn 00s



---\\
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\toan\AppData\Local\Google\Chrome\Application\chrome.exe
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCR\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\toan\AppData\Local\Google\Chrome\Application\chrome.exe
~ Scan Keys in 00mn 00s



---\\ (None)

---\\
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com
O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} [DefaultScope] - (AVG Secure Search) - http://isearch.avg.com
O69 - SBI: SearchScopes [HKCU] {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} - (Web Search) - http://www.searchqu.com
~ Scan Keys in 00mn 00s



---\\ (None)

---\\
[MD5.D41D8CD98F00B204E9800998ECF8427E] [SPRF][31/07/2012] (...) -- C:\Users\toan\AppData\Local\WavXMapDrive.bat [0]
[MD5.A1D6E71006A1023433944007E9BAB475] [SPRF][28/07/2012] (.Lavasoft Limited - Setup Launcher Unicode.) -- C:\Users\toan\AppData\Local\Temp\0780f288-0ff2-4e47-8042-137b637fcf61.exe [18865000]
[MD5.8CDC078CB09D8EBA5E33F05F98EDB3F8] [SPRF][28/07/2012] (...) -- C:\Users\toan\AppData\Local\Temp\2acb52d8-f90f-4fda-ad06-6f6bee661ade.dat [1674]
[MD5.007ED410E16BC1AF33646ADC253286C6] [SPRF][28/07/2012] (.GFI Software - TODO: <File description>.) -- C:\Users\toan\AppData\Local\Temp\940705a9-d3db-4d16-990d-0945ae1de35c.dll [117616]
[MD5.08B04D5673C9283D3DBDBC4F845F049A] [SPRF][29/07/2012] (.AVG Technologies CZ, s.r.o. - AVG UID module.) -- C:\Users\toan\AppData\Local\Temp\avguidx.dll [255072]
[MD5.B33B8A481D51D73A24895D5DE676C659] [SPRF][29/07/2012] (.Microsoft Corporation - BingBarSetup-Partner.) -- C:\Users\toan\AppData\Local\Temp\BingBarSetup-Partner.exe [7809120]
[MD5.2F4363F25D3BFEF838FB39705DFEA0F5] [SPRF][28/07/2012] (...) -- C:\Users\toan\AppData\Local\Temp\ca803e69-a04d-4ff3-b3ff-d0c93612922f.exe [9443]
[MD5.7F0CABD796B825951E0375B28AD8160D] [SPRF][29/07/2012] (. - CommonInstaller Application.) -- C:\Users\toan\AppData\Local\Temp\CommonInstaller.exe [4476512]
[MD5.D1B5A6008CE6ED7B02FB2318F5DE2675] [SPRF][28/07/2012] (.Lavasoft - Ad-Aware Security Toolbar Installer.) -- C:\Users\toan\AppData\Local\Temp\d4d23bb1-2f07-4f15-9943-ea93f46e98ad.exe [2560376]
[MD5.F3D3DB668FA0C94C01C5D0EB20E12980] [SPRF][29/07/2012] (...) -- C:\Users\toan\AppData\Local\Temp\defaultCache.reg [1409366]
[MD5.D0103DA25CEF21CDC1591683FB96F5FC] [SPRF][30/10/2009] (.Gretech Corporation - GOM ENCODER Installer.) -- C:\Users\toan\AppData\Local\Temp\GomEncDnInstaller.exe [217088]
[MD5.AEF3400641A03972B2377B2C1622B950] [SPRF][29/03/2012] (...) -- C:\Users\toan\AppData\Local\Temp\install_reader10_fr_mssd_aih.bat [213]
[MD5.32EB77A66ECF955A8AE3B112D98DC6E8] [SPRF][29/03/2012] (.Solid State Networks - Adobe Reader Installer.) -- C:\Users\toan\AppData\Local\Temp\install_reader10_fr_mssd_aih.exe [786416]
[MD5.EE622B2CD2D3C5CD950D49BD1708A9D4] [SPRF][20/02/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\toan\AppData\Local\Temp\jre-6u31-windows-i586-iftw-rv.exe [909600]
[MD5.107167F15D30AA71D7CAFC0326AFB315] [SPRF][08/06/2012] (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Users\toan\AppData\Local\Temp\jre-6u33-windows-i586-iftw.exe [909104]
[MD5.B28293AFA170528F0578F13FD0B169C1] [SPRF][29/07/2012] (. - MachineIdCreator Application.) -- C:\Users\toan\AppData\Local\Temp\MachineIdCreator.exe [163936]
[MD5.BD406FBD6D4B848448F1B14FD6028253] [SPRF][29/07/2012] (. - IntToolbarInstaller Application.) -- C:\Users\toan\AppData\Local\Temp\oi_{C0377C96-3E51-4254-BAD6-77158E47C0C4}.exe [11007072]
[MD5.10FF68B71C50D34FB21A7A7A8D0B85C5] [SPRF][04/06/2012] (.SweetIM Technologies Ltd. - SweetIM Installer by SweetPacks.) -- C:\Users\toan\AppData\Local\Temp\Shortcut_sweetimsetup.exe [350040]
[MD5.1A3D1A7349253561EF89D017F6EDD5FC] [SPRF][04/06/2012] (.SweetIM Technologies Lt - This installer.) -- C:\Users\toan\AppData\Local\Temp\SIMEEIInstaller.exe [2626512]
[MD5.95211A5BFF6315A7C9A3074D47FE7B66] [SPRF][07/04/2012] (.Macrovision Corporation - Setup.exe.) -- C:\Users\toan\AppData\Local\Temp\sp_100004f.exe [2119872]
[MD5.47C3B1B343E8CFC1141848ADA6ED280A] [SPRF][08/04/2012] (.Macrovision Corporation - Setup.exe.) -- C:\Users\toan\AppData\Local\Temp\sp_2000033.exe [2632897]
[MD5.99F13ADAFA16DB29D9C1E99705CFAA50] [SPRF][29/07/2012] (. - ToolbarInstaller.) -- C:\Users\toan\AppData\Local\Temp\ToolbarInstaller.exe [8118368]
[MD5.BA30773120175EE6A40C261F9DE7FCD3] [SPRF][27/02/2007] (.Macrovision Corporation - Setup.exe.) -- C:\Users\toan\AppData\Local\Temp\_isF5C3.exe [456416]
[MD5.C96E489C18CB47824571D8139BC2D520] [SPRF][12/07/2012] (...) -- C:\Users\toan\AppData\Local\Temp\{6B4F5D71-99A4-47BD-9D57-02103E631033}-20.0.1132.57_20.0.1132.47_chrome_updater.exe [330410]
[MD5.B063839D5B8F1A8208038D1F3728BF7B] [SPRF][24/07/2012] (...) -- C:\Users\toan\AppData\Roaming\Opusbext.dat [46]
~ Scan Files in 00mn 04s



End of the scan (691 lines in 03mn 09s)(0)


et le rapport rsitt


info.txt logfile of random's system information tool 1.09 2012-07-31 16:34:41

======Uninstall list======

-->C:\Program Files\Toolbar Cleaner\uninstall.exe
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BC12448A-0B41-4E11-B242-B1129512F5B7}\setup.exe" -l0x40c
AccelerometerP11-->"C:\Program Files\InstallShield Installation Information\{87434D51-51DB-4109-B68F-A829ECDCF380}\setup.exe" -runfromtemp -l0x040c -removeonly
Ad-Aware Browsing Protection-->C:\ProgramData\Ad-Aware Browsing Protection\uninstall.exe
Ad-Aware Security Toolbar-->C:\Program Files\adawaretb\uninstall.exe
Adobe AIR-->c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{FDB3B167-F4FA-461D-976F-286304A57B2A}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10v_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil10w_Plugin.exe -maintain plugin
Adobe Reader X (10.1.3) - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-AA1000000001}
AuthenTec Fingerprint Software-->MsiExec.exe /I{560DCF39-61D1-43B0-86DA-5EFF8F7A5144}
avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
AVG Security Toolbar-->C:\Program Files\AVG Secure Search\UNINSTALL.exe /UNINSTALL
Bing Bar-->MsiExec.exe /X{16793295-2366-40F7-A045-A3E42A81365E}
BioAPI Framework-->MsiExec.exe /X{AF7E4468-E364-4991-BC2A-6E8293E1055B}
BitTorrent-->"C:\Program Files\BitTorrent\BitTorrent.exe" /UNINSTALL
Broadcom 802.11 Network Adapter-->"C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\Driver\bcmwlu00.exe" verbose /rootkey="Software\Broadcom\802.11\UninstallInfo" /rootdir="C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\Driver"
Broadcom NetXtreme-I Netlink Driver and Management Installer-->MsiExec.exe /I{982E1601-0DFC-4FD3-A427-AC6570697858}
Brother MFL-Pro Suite MFC-7320-->"C:\Program Files\InstallShield Installation Information\{46E1B1F2-A279-4356-9B17-029F9CC72EAE}\Setup.exe" -runfromtemp -l0x040c UNINSTALL Reg=ALL2FB -removeonly
C3200n Series GDI Driver from OKI® Printing Solutions for Windows -->C:\Program Files\InstallShield Installation Information\{2C52D6EB-EE7E-45C4-AFB8-1242164A4A44}\setup.exe -runfromtemp -l0x0009 -removeonly
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
Cisco EAP-FAST Module-->MsiExec.exe /I{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}
Cisco LEAP Module-->MsiExec.exe /I{51C7AD07-C3F6-4635-8E8A-231306D810FE}
Cisco PEAP Module-->MsiExec.exe /I{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}
Civ4Fans2009-->"C:\Program Files\Civ4Fans 2009\unins000.exe"
Combined Community Codec Pack 2011-11-11-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"
Complément Messenger-->MsiExec.exe /I{6E5324C1-84FC-4F76-9A3A-C65E07F80EE6}
Contrôle ActiveX Windows Live Mesh pour connexions à distance-->MsiExec.exe /I{55D003F4-9599-44BF-BA9E-95D060730DD3}
CyberLink PowerDVD 9.5-->"C:\Program Files\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\setup.exe" /z-uninstall
CyberLink PowerDVD 9.5-->"C:\Program Files\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\setup.exe" /z-uninstall
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Dell Control Point-->MsiExec.exe /I{A9C61491-EF2F-4ED8-8E10-FB33E3C6B55A}
Dell ControlPoint Security Manager-->"C:\Program Files\InstallShield Installation Information\{F4487649-7368-4217-AEA3-1E04DB3E2C5C}\setup.exe" -runfromtemp -l0x040c -removeonly
Dell Edoc Viewer-->MsiExec.exe /I{3138EAD3-700B-4A10-B617-B3F8096EE30D}
Dell Embassy Trust Suite by Wave Systems-->C:\Windows\Downloaded Installations\{ABBA2EA4-740E-4052-902B-9CA70B081E3F}\Installer.exe
Dell Security Device Driver Pack-->"C:\Program Files\InstallShield Installation Information\{FF1DDCF4-3A28-4F7F-96D8-E3F4BD1C1702}\setup.exe" -runfromtemp -l0x04

2 réponses

^Abel^ Messages postés 15399 Date d'inscription jeudi 14 juillet 2011 Statut Contributeur Dernière intervention 14 février 2023 6 859
31 juil. 2012 à 16:49
Bonjour,
Un début de réponse ici...
Nous ne sommes pas des robots... merci.
0
je ne pense pas avoir failli a la bienseance, cela dit mon message a été coupé, il est donc logique que vous en ayez raté la fin, qui était des plus courtoises...
crdlmt
0