Fenêtres intempestives, pro scanner 2009
Fermé
Loonilys
Messages postés
4
Date d'inscription
jeudi 4 décembre 2008
Statut
Membre
Dernière intervention
4 décembre 2008
-
4 déc. 2008 à 18:22
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008 - 4 déc. 2008 à 19:39
Loonilys Messages postés 4 Date d'inscription jeudi 4 décembre 2008 Statut Membre Dernière intervention 4 décembre 2008 - 4 déc. 2008 à 19:39
A voir également:
- Fenêtres intempestives, pro scanner 2009
- I14 pro max - Accueil - Guide téléphones
- Telecharger scanner - Télécharger - Divers Utilitaires
- Clé d'activation windows 10 pro - Guide
- Ccleaner pro gratuit - Télécharger - Optimisation
- Scanner un document - Guide
5 réponses
manyguess
Messages postés
149
Date d'inscription
jeudi 20 novembre 2008
Statut
Membre
Dernière intervention
8 mars 2014
4 déc. 2008 à 18:32
4 déc. 2008 à 18:32
SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE SPYWARE.................
Loonilys
Messages postés
4
Date d'inscription
jeudi 4 décembre 2008
Statut
Membre
Dernière intervention
4 décembre 2008
4 déc. 2008 à 18:48
4 déc. 2008 à 18:48
Oui, c'est bien ce que je pense...
Loonilys
Messages postés
4
Date d'inscription
jeudi 4 décembre 2008
Statut
Membre
Dernière intervention
4 décembre 2008
4 déc. 2008 à 18:49
4 déc. 2008 à 18:49
Je rajoute le rapport de Hijackthis.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:15:08, on 04/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\satellite m70-169\Bureau\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: (no name) - {cf9982f1-efed-4c36-b3c4-998c5393abd9} - C:\WINDOWS\system32\bupudofa.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [guruzuyafa] Rundll32.exe "C:\WINDOWS\system32\mifolole.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Pando] "C:\Program Files\Pando Networks\Pando\pando.exe" /Automation
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [toscdspd] TOSCDSPD.EXE
O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\utorrent\utorrent.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [RayV] C:\Program Files\RayV\RayV\RayV.exe /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [guruzuyafa] Rundll32.exe "C:\WINDOWS\system32\mifolole.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: BlueSoleil.lnk = C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
O4 - Global Startup: Bluetooth Monitor.lnk = ?
O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.genoom.com/js/photoUploader/control/ImageUploader5.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CFCBEE6F-BE54-4682-84F6-0E3FCDFAE3E2} (NowCAFE Control) - http://www.clubbox.co.kr/neo.fld/NowCAFE.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O16 - DPF: {F6E361B4-40F3-4C90-8A95-D95E0D8CBCD4} (MultiUpload Control) - http://www.clubbox.co.kr/neo.fld/MultiUpload.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: c:\windows\system32\yoyamama.dll C:\WINDOWS\system32\laraletu.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Unknown owner - C:\Program Files\Fichiers communs\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SessionLauncher - Unknown owner - C:\DOCUME~1\SATELL~1\LOCALS~1\Temp\DX9\SessionLauncher.exe (file missing)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:15:08, on 04/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\satellite m70-169\Bureau\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: (no name) - {cf9982f1-efed-4c36-b3c4-998c5393abd9} - C:\WINDOWS\system32\bupudofa.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [guruzuyafa] Rundll32.exe "C:\WINDOWS\system32\mifolole.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Pando] "C:\Program Files\Pando Networks\Pando\pando.exe" /Automation
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [toscdspd] TOSCDSPD.EXE
O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\utorrent\utorrent.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [RayV] C:\Program Files\RayV\RayV\RayV.exe /background
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - HKCU\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [guruzuyafa] Rundll32.exe "C:\WINDOWS\system32\mifolole.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: BlueSoleil.lnk = C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
O4 - Global Startup: Bluetooth Monitor.lnk = ?
O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.genoom.com/js/photoUploader/control/ImageUploader5.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CFCBEE6F-BE54-4682-84F6-0E3FCDFAE3E2} (NowCAFE Control) - http://www.clubbox.co.kr/neo.fld/NowCAFE.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O16 - DPF: {F6E361B4-40F3-4C90-8A95-D95E0D8CBCD4} (MultiUpload Control) - http://www.clubbox.co.kr/neo.fld/MultiUpload.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: c:\windows\system32\yoyamama.dll C:\WINDOWS\system32\laraletu.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: LiveShare P2P Server 10 (RoxLiveShare10) - Unknown owner - C:\Program Files\Fichiers communs\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SessionLauncher - Unknown owner - C:\DOCUME~1\SATELL~1\LOCALS~1\Temp\DX9\SessionLauncher.exe (file missing)
manyguess
Messages postés
149
Date d'inscription
jeudi 20 novembre 2008
Statut
Membre
Dernière intervention
8 mars 2014
4 déc. 2008 à 18:54
4 déc. 2008 à 18:54
ouai c'est bien se que je pensais aussi vas ici...
https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/41933.html
telecharge le et fais une analyse...
https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/41933.html
telecharge le et fais une analyse...
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Loonilys
Messages postés
4
Date d'inscription
jeudi 4 décembre 2008
Statut
Membre
Dernière intervention
4 décembre 2008
4 déc. 2008 à 19:39
4 déc. 2008 à 19:39
Tiens, une question d'ailleurs. Vu qu'il y a deux ordis en réseau, il faut également faire les manip' sur l'autre ? (a priori, il n'y a rien sur l'autre, Malware ne trouve rien du tout contrairement au mien)
J'ai fait l'analyse avec Spyware Terminator.
Logfile of Spyware Terminator v2.5.0.567
(db:2.012.004.000)
Scan Time: 04/12/2008 19:00:39 length: 2203 s
Platform: WXP (5.1.0.2600)
User: Admin
Boot Mode: Normal
Scan type: Full_Spyware_Scan
Scanned Objects: 81833 (Critical:13)
Filter: No System items, No Safe items, No
Invalid items
Running Processes
S24EvMon.exe [Intel Corporation ] : C:\Program
Files\Intel\Wireless\Bin\S24EvMon.exe
CFSvcs.exe [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\CFSvcs.exe
DVDRAMSV.exe [Matsushita Electric Industrial
Co., Ltd.] : C:\WINDOWS\system32\DVDRAMSV.exe
EvtEng.exe [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\EvtEng.exe
RegSrvc.exe [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\RegSrvc.exe
CFSServ.exe [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\CFSServ.exe
NDSTray.exe [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\NDSTray.exe
igfxpers.exe [Intel Corporation] :
C:\WINDOWS\system32\igfxpers.exe
ZCfgSvc.exe [Intel Corporation] : C:\Program
Files\Intel\Wireless\bin\ZCfgSvc.exe
GrooveMonitor.exe [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveMonitor.exe
SearchSettings.exe [Vendio Services, Inc.] :
C:\Program Files\Search
Settings\SearchSettings.exe
UnlockerAssistant.exe : C:\Program
Files\Unlocker\UnlockerAssistant.exe
VeohClient.exe [Veoh Networks] : C:\Program
Files\Veoh Networks\Veoh\VeohClient.exe
PrintScreen.exe [Gadwin Systems, Inc] :
C:\Program Files\Gadwin
Systems\PrintScreen\PrintScreen.exe
BlueSoleil.exe [IVT Corporation.] : C:\Program
Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
BtMon2.exe [TOSHIBA] : C:\Program
Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
WinCinemaMgr.exe [InterVideo Inc.] : C:\Program
Files\InterVideo\Common\Bin\WinCinemaMgr.exe
RAMASST.exe [Matsushita Electric Industrial Co.,
Ltd.] : C:\WINDOWS\system32\RAMASST.exe
mpbtn.exe : C:\Program Files\Club-Internet\Dr
Club Internet\bin\mpbtn.exe
MegaManager.exe [Megaupload Limited] :
C:\Program Files\Megaupload\Mega
Manager\MegaManager.exe
Internet Settings
R - HKCU\Software\Microsoft\Internet
Explorer\Main, Search Bar =
http://www.google.com/toolbar/ie8/sidebar.html
R - HKLM\Software\Microsoft\Internet
Explorer\Main, Start Page =
https://www.msn.com/fr-fr/?ocid=iehp
R - HKLM\Software\Microsoft\Internet
Explorer\Search, SearchAssistant =
http://www.google.com/toolbar/ie8/sidebar.html
R - HKLM\Software\Microsoft\Internet
Explorer\Search, CustomizeSearch =
https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89
{SUB_RFC1766}/srchasst/srchcust.htm
R -
HKCU\Software\Microsoft\Windows\CurrentVersion\I
nternet Settings, ProxyOverride =
127.0.0.1;localhost
R -
HKLM\System\CurrentControlSet\Services\Tcpip\Par
ameters, Domain =
R -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\T
elephony, DomainName =
BHO
02 - BHO: RealPlayer Download and Record Plugin
for Internet Explorer - {3049C3E9-B461-4BC5-
8870-4C09146192CA} - [RealPlayer] : C:\Program
Files\Real\RealPlayer\rpbrowserrecordplugin.dll
02 - BHO: Groove GFS Browser Helper - {72853161
-30C5-4D22-B7F9-0BBC1D38A37E} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
02 - BHO: Google Toolbar Helper - {AA58ED58-
01DD-4d91-8333-CF10577473F7} - [Google Inc.] :
C:\Program Files\google\googletoolbar4.dll
02 - BHO: IeMonitorBho Class - {bf00e119-21a3-
4fd1-b178-3b8537e75c92} - [Megaupload Limited]
: C:\Program Files\Megaupload\Mega
Manager\MegaIEMn.dll
02 - BHO: - {cf9982f1-efed-4c36-b3c4-
998c5393abd9} - : C:\WINDOWS\system32
\bupudofa.dll
02 - BHO: SearchSettings Class - {E312764E-7706
-43F1-8DAB-FCDD2B1E416D} - [Vendio Services,
Inc.] : C:\Program Files\Search Settings\kb127
\SearchSettings.dll
Toolbars
03 - Toolbar: &Google - {2318C2B1-4965-11d4-
9B18-009027A5CD4F} - [Google Inc.] : C:\Program
Files\google\googletoolbar4.dll
03 - Toolbar: Veoh Browser Plug-in - {D0943516-
5076-4020-A3B5-AEFAF26AB263} - [Veoh Networks
Inc] : C:\Program Files\Veoh
Networks\Veoh\Plugins\reg\VeohToolbar.dll
StartUps
04 -
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, Veoh : [Veoh Networks] : C:\Program
Files\Veoh Networks\Veoh\VeohClient.exe
04 -
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, Gadwin PrintScreen : [Gadwin Systems, Inc]
: C:\Program Files\Gadwin
Systems\PrintScreen\PrintScreen.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, MSPY2002 : : C:\WINDOWS\system32
\IME\PINTLGNT\IMSCINST.EXE
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, Persistence : [Intel Corporation] :
C:\WINDOWS\system32\igfxpers.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, IntelZeroConfig : [Intel Corporation] :
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, GrooveMonitor : [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveMonitor.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, SearchSettings : [Vendio Services, Inc.] :
C:\Program Files\Search
Settings\SearchSettings.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, UnlockerAssistant : : C:\Program
Files\Unlocker\UnlockerAssistant.exe
04 - Startup: %STARTUPALL%\BlueSoleil.lnk [IVT
Corporation.] : C:\Program Files\IVT
Corporation\BlueSoleil\BlueSoleil.exe
04 - Startup: %STARTUPALL%\Bluetooth Monitor.lnk
[TOSHIBA] : C:\Program Files\TOSHIBA\Bluetooth
Monitor\BtMon2.exe
04 - Startup: %STARTUPALL%\Docteur Club
Internet.lnk [Motive Communications, Inc.] :
C:\Program Files\Club-Internet\Dr Club
Internet\bin\matcli.exe
04 - Startup: %STARTUPALL%\InterVideo WinCinema
Manager.lnk [InterVideo Inc.] : C:\Program
Files\InterVideo\Common\Bin\WinCinemaMgr.exe
04 - Startup: %STARTUPALL%\Lancement rapide
d'Adobe Reader.lnk [Adobe Systems Incorporated]
: C:\Program Files\Adobe\Acrobat 7.0
\Reader\reader_sl.exe
04 - Startup: %STARTUPALL%\RAMASST.lnk
[Matsushita Electric Industrial Co., Ltd.] :
C:\WINDOWS\system32\RAMASST.exe
Shell Extensions
TouchPad PropSheet Class - {9ED66769-A198-41FE-
8615-601691C68846} - [COMPAL ELECTRONIC INC.] :
C:\WINDOWS\system32\TPprop.dll
RecordNow! SendToExt - {DEE12703-6333-4D4E-8F34
-738C4DCC2E04} - : C:\Program
Files\Sonic\RecordNow!\shlext.dll
RecordNow! ContextMenuExt - {E91B2703-013E-4A99
-AD33-2B6FB00AA356} - : C:\Program
Files\Sonic\RecordNow!\shlext.dll
IZArc DragDrop Menu - {CA5FEE26-14C1-4B5A-86E9-
233FC0EE2682} - : C:\Program
Files\IZArc\IZArcCM.dll
IZArc Shell Context Menu - {8D9D4D0D-FDDD-44CB-
AAB2-6161FA0757C5} - : C:\Program
Files\IZArc\IZArcCM.dll
RealOne Player Context Menu Class - {F0CB00CD-
5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks,
Inc.] : C:\Program
Files\Real\RealPlayer\rpshell.dll
My Logitech Pictures - {400CFEE2-39D0-46DC-96DF
-E0BB5A4324B3} - [Logitech Inc.] : C:\Program
Files\Logitech\Video\Namespc2.dll
Mes dossiers de partage - {FC9FB64A-1EB2-4CCF-
AF5E-1A497A9B5C2D} - [Microsoft Corporation] :
C:\Program Files\Windows
Live\Messenger\fsshext.8.5.1302.1018.dll
- {06A2568A-CED6-4187-BB20-400B8C02BE5A} -
[Microsoft Corporation] : C:\Program
Files\Windows Live\Photo
Gallery\WLXPhotoAcquireWizard.exe
Page de propriétés sans fil - {20082881-FC36-
4E47-9A7A-644C95FF749F} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLWIR.DLL
Page des propriétés de la roulette - {AF90F543-
6A3A-4C1B-8B16-ECEC073E69BE} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLWHL.DLL
Page des propriétés des activités - {653DCCC2-
13DB-45B2-A389-427885776CFE} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLACT.DLL
Page des propriétés des boutons - {124597D8-
850A-41AE-849C-017A4FA99CA2} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLBTN.DLL
Groove GFS Browser Helper - {72853161-30C5-4D22
-B7F9-0BBC1D38A37E} - [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Folder Synchronization - {2A541AE1-5BF6-
4665-A8A3-CFA9672E4291} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove GFS Stub Icon Handler - {A449600E-1DC6-
4232-B948-9BD794D62056} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove GFS Stub Execution Hook - {B5A7F190-DDA6
-4420-B3BA-52453494E6CD} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove GFS Context Menu Handler - {6C467336-
8281-4E60-8204-430CED96822D} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove XML Icon Handler - {387E725D-DC16-4D76-
B310-2C93ED4752A0} - [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 3 (GFS Folder) -
{16F3DD56-1AF5-4347-846D-7C10C4192619} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 2 (GFS Stub) -
{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 4 (GFS Unread Mark)
- {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 1 (GFS Unread Stub)
- {99FD978C-D287-4F50-827F-B2C658EDA8E7} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 2.5 (GFS Unread
Folder) - {920E6DB1-9907-4370-B3A0-BAFC03D81399}
- [Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Microsoft Office OneNote Namespace Extension for
Windows Desktop Search - {5858A72C-C2B4-4dd7-
B2BF-B76DB1BD9F6C} - [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\ONFILTER.DLL
Shell Extecute Hooks
Groove GFS Stub Execution Hook - {{B5A7F190-
DDA6-4420-B3BA-52453494E6CD}} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Protocol Handler
BackWeb GA Pluggable Protocol - {9462A756-7B47-
47BC-8C80-C34B9B80B32B} - [Logitech Inc.] :
C:\Program Files\Logitech\Desktop
Messenger\8876480\Program\GAPlugProtocol-
8876480.dll
Local Groove Web Services Protocol - {88FED34C-
F0CA-4636-A375-3CB6248B04CD} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveSystemServices.dll
- {828030A1-22C1-4009-854F-8E305202313F} -
[Microsoft Corporation] : C:\Program
Files\Windows
Live\Messenger\msgrapp.8.5.1302.1018.dll
- {828030A1-22C1-4009-854F-8E305202313F} -
[Microsoft Corporation] : C:\Program
Files\Windows
Live\Messenger\msgrapp.8.5.1302.1018.dll
Services
23 - [Cisco Systems, Inc.] :
C:\WINDOWS\system32\DRIVERS\AegisP.sys
23 - [Agere Systems] : C:\WINDOWS\system32
\DRIVERS\AGRSM.sys
23 - [Realtek Semiconductor Corp.] :
C:\WINDOWS\system32\drivers\ALCXWDM.SYS
23 - [Alps Electric Co., Ltd.] :
C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
23 - [GRISOFT, s.r.o.] : C:\WINDOWS\system32
\DRIVERS\avgarkt.sys
23 - [GRISOFT, s.r.o.] : C:\WINDOWS\system32
\DRIVERS\AvgArCln.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\blueletaudio.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\BlueletSCOAudio.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\btnetdrv.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\Drivers\vbtenum.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\Drivers\BTHidMgr.sys
23 - [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\CFSvcs.exe
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\drvmcdb.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\drvnddm.sys
23 - [Matsushita Electric Industrial Co., Ltd.]
: C:\WINDOWS\system32\DVDRAMSV.exe
23 - [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\EvtEng.exe
23 - [Intel Corporation] : C:\WINDOWS\system32
\DRIVERS\igxpmp32.sys
23 - [InterVideo, Inc.] : C:\WINDOWS\system32
\drivers\iviaspi.sys
23 - [Matsushita Electric Industrial Co.,Ltd.] :
C:\WINDOWS\system32\Drivers\meiudf.sys
23 - [TOSHIBA Corporation.] :
C:\WINDOWS\system32\DRIVERS\netdevio.sys
23 - [VSO Software] : C:\WINDOWS\system32
\Drivers\pcouffin.sys
23 - [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\RegSrvc.exe
23 - [Realtek Semiconductor Corporation] :
C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
23 - [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\S24EvMon.exe
23 - [Intel Corporation] : C:\WINDOWS\system32
\DRIVERS\s24trans.sys
23 - [COMPAL ELECTRONIC INC.] :
C:\WINDOWS\system32\Drivers\SSIoMngr.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\sscdbhk5.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\ssrtln.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnboio.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsncofs.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsndrct.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsndres.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnifs.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnopio.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnpool.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnudf.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnudfa.sys
23 - [Texas Instruments] : C:\WINDOWS\system32
\drivers\tifm21.sys
23 - [TOSHIBA] : C:\WINDOWS\system32
\Drivers\TPwSav.sys
23 - [TOSHIBA Corporation] :
C:\WINDOWS\system32\DRIVERS\Tvs.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\VComm.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\Drivers\VcommMgr.sys
Winlogon Notify
HKLM\Software\Microsoft\Windows
NT\CurrentVersion\Winlogon\Notify\igfxcui,
DLLName : [Intel Corporation] :
C:\WINDOWS\system32\igfxdev.dll
IE URL Search Hooks
SearchSettings Class - {{E312764E-7706-43F1-
8DAB-FCDD2B1E416D}} - [Vendio Services, Inc.] :
C:\Program Files\Search Settings\kb127
\SearchSettings.dll
Threat Files
<WhenU.SaveNow> : C:\Program Files\vvsn\vvsn.cfg
<Ircfast> : C:\Documents and Settings\satellite
m70-169\Favoris\Jeux.url
<Ircfast> : C:\Documents and Settings\satellite
m70-169\Favoris\Traducteur.url
<AdTool.MyWebSearch.bm> : C:\Documents and
Settings\satellite m70-169\Local
Settings\Temp\NERO13356\Toolbar.exe
<Trojan.Downloader.Agent.aaar> : C:\Program
Files\Fichiers
communs\Real\GToolbar\GoogleToolbarInstaller.exe
Advanced Files Report
%SYSDIR%\laraletu.dll
MD5=56BF6D960F4C8AAFC030DAD9E7741075 SIZE=63029
%SYSDIR%\netprovcredman.dll [Intel Corporation]
[NetProvCredMan Dynamic Link Library]
MD5=0A11C88BDBAD54B8FA4EBDB62CB916F7 SIZE=212992
%PROGRAMFILES%\Intel\Wireless\Bin\S24EvMon.exe
[Intel Corporation] [Intel(R) PROSet/Wireless
Service] MD5=E087728D371709C1817EF6487F3E2E73
SIZE=1187840
%PROGRAMFILES%\Intel\Wireless\Bin\TraceAPI.DLL
[Intel Corporation] [TraceAPI Module]
MD5=327C7AC2F1CAED6670F4726C50278B8B SIZE=585728
%PROGRAMFILES%\Intel\Wireless\Bin\PsRegApi.dll
[Intel Corporation] [PsRegApi]
MD5=2E9DD9CEDF15C4C2938D52863BF766DA SIZE=679936
%PROGRAMFILES%\Intel\Wireless\Bin\LIBEAY32.dll
[The OpenSSL Project, https://www.openssl.org/]
[The OpenSSL Toolkit]
MD5=11ADD8816D61A6025844EB5123EC92D3
SIZE=1089536
%PROGRAMFILES%\Intel\Wireless\Bin\IntStngs.dll
[Intel Corporation] [IntelSettings Dynamic Link
Library] MD5=3A8FF9C6CC9F1007A8B44A4AB09A2BD9
SIZE=507904
%PROGRAMFILES%\Intel\Wireless\Bin\IWMSPROV.DLL
MD5=F30158BC4314AE5638747205C505725C SIZE=245760
%PROGRAMFILES%\Alwil Software\Avast4
\French\Base.dll [ALWIL Software] [avast!
Antivirus] MD5=5F97B49F7C30A99AAF138F598625CF0D
SIZE=98304
%SYSDIR%\tbtmon.dll [Toshiba America Business
Solutions, Inc.] [Toshiba Bluetooth Port
Monitor] MD5=D6385B6A3C92085BF603397A602FEA4B
SIZE=167936
%SYSDIR%\TosBtHcrpAPI.dll
MD5=353DE1DEFD41B1E4A1B668320135200B SIZE=94208
%SYSDIR%\TosBtAPI.dll [TOSHIBA CORPORATION.]
[Bluetooth Stack for Windows by TOSHIBA]
MD5=4F623CB89FEAF45DB76CE062F1DA0AE6 SIZE=172104
%SYSDIR%\TosBdAPI.dll [TOSHIBA CORPORATION.]
[Bluetooth Stack for Windows by TOSHIBA]
MD5=3D8F7CB3824F6F83E22E7873230C0112 SIZE=98304
%SYSDIR%\tbtmon98Language.dll [Toshiba] [Toshiba
Test] MD5=E3E76EC6BC1104D067B7C60A3573EAE9
SIZE=36864
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFSvcs.exe
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=3CB0CC8879956C187E87E18634EE5164 SIZE=40960
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSAPI.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=3B6C054AB0CB4EA03B184DC39E0EC28C SIZE=196608
%PROGRAMFILES%\TOSHIBA\ConfigFree\IpAdrSet.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=05E97E1B4A2793B3451DAA903A031877 SIZE=98304
%SYSDIR%\DVDRAMSV.exe [Matsushita Electric
Industrial Co., Ltd.]
MD5=C9FFBD6B8EDC46CD3D13E3C6DB914FB7 SIZE=110592
%PROGRAMFILES%\Intel\Wireless\Bin\EvtEng.exe
[Intel Corporation] [Intel(R) PROSet/Wireless
Event Log] MD5=A2CA7C9169F5781A261310DFADC52514
SIZE=823296
%PROGRAMFILES%\Intel\Wireless\Bin\PfMgrApi.dll
[Intel Corporation] [ProfileMgrApi Dynamic Link
Library] MD5=CDBF865495B59C2E40B3FF52F4A3141C
SIZE=1241088
%PROGRAMFILES%\Intel\Wireless\Bin\DbEngine.dll
[Intel Corporation] [Secure Database Egnine]
MD5=1629CD0F29E53A2632AC886BBAA7D888 SIZE=524288
%PROGRAMFILES%\Intel\Wireless\Bin\MurocApi.dll
[Intel Corporation] [MurocApi Dynamic Link
Library] MD5=32EEF5AC23570B2295618A694B5D8741
SIZE=790528
%PROGRAMFILES%\Intel\Wireless\Bin\S24MUDLL.dll
[Intel Corporation] [Intel Mobile Unit Support
Service] MD5=45AF88F3FA53BB8933263C2A630ADB89
SIZE=172032
%PROGRAMFILES%\Intel\Wireless\Bin\RegSrvc.exe
[Intel Corporation] [Intel(R) PROSet/Wireless
Registry Service]
MD5=8477D7C3EE18513911547785A06EAF70 SIZE=483328
%PROGRAMFILES%\Unlocker\UnlockerHook.dll
MD5=78D62115F51B641A9F12AFDF50A352FC SIZE=4608
%PROGRAMFILES%\Malwarebytes' Anti-
Malware\mbamext.dll [Malwarebytes Corporation]
[Malwarebytes' Anti-Malware]
MD5=43169E9B8121AB037F49DAC91EE5DC66 SIZE=73360
%PROGRAMFILES%\IZArc\IZArcCM.dll
MD5=39DFCB1FDA8EC938E90C2CAD4AEF0E2B SIZE=617472
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFSServ.exe
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=49976054F72480E7BD7DD7F3A0451ED5 SIZE=798720
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSParts.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=0A28BB98E81FE2B4D06475B323B6F826
SIZE=1859584
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSNLS.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=060090C882B05E15A21090FAC0C4ECA4 SIZE=32768
%PROGRAMFILES%\TOSHIBA\ConfigFree\VENAPI.dll
[TOSHIBA] [TOSHIBA VENAPI]
MD5=68E922CAF28C5AC75713C38EB1A43C50 SIZE=139264
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFDropEx.dll
[TOSHIBA] [ConfigFree(TM)]
MD5=F83CEDC0BDE4EA183498A7B396856EF2 SIZE=57344
%SYSDIR%\TosBtAerialAPI.dll [TOSHIBA
CORPORATION.] [Bluetooth(TM) Stack for Windows
(R) by Toshiba]
MD5=635BE51F73CAA14ADA66AB1B8B470C0A SIZE=73728
%SYSDIR%\TosBtECCAPI.dll [TOSHIBA CORPORATION.]
[Bluetooth(TM) Stack for Windows(R) by Toshiba]
MD5=6860098EBDF05DA68F71F5A9C0AF0099 SIZE=69632
%PROGRAMFILES%\TOSHIBA\ConfigFree\TWLMAPI.dll
[TOSHIBA] [twlmapi Dynamic Link Library]
MD5=CEA174EA30D95B03E296B8906DD4F3ED
SIZE=1159168
%PROGRAMFILES%\TOSHIBA\ConfigFree\OpenProp.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=F88259E28C954C73F1E7394BA6B55CDC SIZE=57344
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFXFER.dll
[TOSHIBA CORPORATION] [ConfigFree]
MD5=F5ACC9CA2FF209BC409B315BA33E4BC9 SIZE=57344
%SYSDIR%\TSBWLS.dll [COMPAL ELECTRONIC INC.]
[TSBWLS Dynamic Link Library]
MD5=BA8DF1E786B30A5BC188D65486E95645 SIZE=24576
%SYSDIR%\EKECioCtl.dll [EKECioCtl Dynamic Link
Library] MD5=BD0B062A9FD4398E51EAD110F503A007
SIZE=24576
%SYSDIR%\EBLib.dll [EBLib Dynamic Link Library]
MD5=21FD368F8BA632D6D4522C5F8430CB61 SIZE=28672
%PROGRAMFILES%\Alwil Software\Avast4
\French\Lang.dll [ALWIL Software] [avast!
Antivirus] MD5=68D17141D79B4EFA70412DAE5DB68543
SIZE=2572288
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSTray.exe
[TOSHIBA CORPORATION] [ConfigFree(TM) Tray]
MD5=947625435C542A62B2703A61F9665B85 SIZE=978944
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFWAN.dll
[TOSHIBA CORPORATION] [ConfigFree(TM) WAN DLL]
MD5=0544108FA6859BEF5F29137F2FBCBA22 SIZE=974848
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFUPNP.dll
[TOSHIBA CORPORATION] [ConfigFree]
MD5=74ED6C7EDF2B5508B25B890454AC7B35 SIZE=32768
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFP2API.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=5186927C4F740FB6D683BBB406DCC4D5 SIZE=69632
%PROGRAMFILES%\TOSHIBA\ConfigFree\QCDPJ.dll
[Toshiba] [Toshiba QCDPJ]
MD5=EA872F0D31C9A5C5F8BF2B1A3A28D3D5 SIZE=172032
%SYSDIR%\hccutils.DLL [Intel Corporation]
[Intel(R) Common User Interface]
MD5=D0127023AF6070D5B479B1AE65B107A2 SIZE=102400
%SYSDIR%\igfxsrvc.dll [Intel Corporation]
[Intel(R) Common User Interface]
MD5=09A350F25D94D18190A8988E25671844 SIZE=46080
%SYSDIR%\igfxres.dll [Intel Corporation] [Intel
(R) Common User Interface]
MD5=AAF3461B06C18C6855B1ECF521C2494C SIZE=184320
%PROGRAMFILES%\Intel\Wireless\Bin\ZcSvcFRA.dll
[Intel Corporation] [ZeroCfgSvc Application]
MD5=4A34FF5CD0D7D27097563A66BF5F30F3 SIZE=65536
%PROGRAMFILES%\Intel\Wireless\Bin\FrWrkFRA.dll
[Intel Corporation] [Intel(R) PROSet/Wireless]
MD5=7A570A8B794E6CD716AF875F3F3084F7 SIZE=53248
%PROGRAMFILES%
\Intel\Wireless\Bin\FrameworkPlugins\ConnMgr.dll
[Intel Corporation] [Intel PROSet/Wireless]
MD5=512523E2A65778727A7A838F774B9A2F
SIZE=1548288
%PROGRAMFILES%\Intel\Wireless\Bin\IntWAFRA.dll
[Intel Corporation] [Intel PROSet/Wireless]
MD5=3A4EB6050C6664D204AB6027C0AAFB60 SIZE=401408
%PROGRAMFILES%\Search Settings\kb127
\SearchSettingsRes409.dll [Vendio Services,
Inc.] [Search Settings]
MD5=547BD4D968137ECCA42598A983E0D2D0 SIZE=50528
%PROGRAMFILES%
\Google\GoogleToolbarNotifier\3.1.807.1746
\gtn.dll [Google Inc.] [GoogleToolbarNotifier]
MD5=C287432FD819BB1E3A6AF2D3B73DF084 SIZE=130544
%PROGRAMFILES%\Veoh Networks\Veoh\BugSplat.dll
[BugSplat, LLC] [BugSplat Dynamic Link Library]
MD5=50A0A49F1901B56FC940B7A8076A8AD3 SIZE=227408
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\BlueSoleil.exe [IVT
Corporation.] [BlueSoleil]
MD5=39C3E3FDB5DDC7506110C77BFF262403 SIZE=661776
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\setup.dll [IVT
Corporation.] [BlueSoleil]
MD5=1B915385A08CAAA460E586130CB61188 SIZE=114761
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\btpcfg.dll [IVT
Corporation.] [BlueSoleil]
MD5=F03B517A820A6A184E9326DEA7FEE75B SIZE=299108
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\btwin.dll [IVT
Corporation.] [BlueSoleil]
MD5=7A5195733D7D7728822EB881BCB1E248 SIZE=131147
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\versit.dll [IVT
Corporation.] [BlueSoleil]
MD5=A9A1434C4B94351196DE168E47342EA2 SIZE=110661
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\btpres.dll [IVT
Corporation.] [BlueSoleil]
MD5=10062C12329C01522AF783113F7A96BF
SIZE=2338816
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\Driver\USB\btcusb.dll
[IVT Corporation.] [IVT usb driver for Bluetooth
device] MD5=CEED0EA62631CD5FB964DAE7FACC7248
SIZE=51984
%SYSDIR%\lameACM.acm http://www.mp3dev.org/
[Lame MP3 codec]
MD5=22722B4E887BB95AB071542DE5A42C80 SIZE=839680
%SYSDIR%\ac3acm.acm [fccHandler] [AC-3 ACM
Codec] MD5=D95393B383FB3DB265836C84B53892A3
SIZE=118784
%PROGRAMFILES%\TOSHIBA\Bluetooth
Monitor\BtMon2.exe [TOSHIBA] [Bluetooth Monitor
2.0] MD5=547DE23D8D36FD1BBA618EE6A179674C
SIZE=65536
%PROGRAMFILES%
\InterVideo\Common\Bin\WinCinemaMgr.exe
[InterVideo Inc.] [WinCinema Manager for
InterVideo WinCinema products]
MD5=8A19ADA7FDA64C31AACB51A891C27BCB SIZE=278528
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\backWeb.dll [BackWeb
Technologies Inc.] [BackWeb]
MD5=84AFB4711D4109F29D881EA7CFC69F47
SIZE=2293804
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\bwsec.dll [BackWeb
Technologies Inc.] [BackWeb bwsec]
MD5=BB8BC9BC13D87B2C855B2BD50FBD1DCF SIZE=225335
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\clntutil.dll
MD5=F2D0AD019503C48D85C5F70771288B63 SIZE=61496
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\EN\ClientRc.dll [BackWeb
Technologies Inc.] [BackWeb]
MD5=9E2C13A26926EBB05015B8B41B4298C5 SIZE=172032
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\Program\BWfiles-8876480.dll
[Logitech Inc.] [Logitech Desktop Messenger]
MD5=8C620F16E1D024049046F93B12E38855 SIZE=28711
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\BWfiles.dll [BackWeb
Technologies Inc.] [BackWeb]
MD5=DAC29AD3DE12E0CAC510DE0FB1CBEC3B SIZE=159781
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\Program\SyncExt.dll [Logitech]
[Logitech Desktop Messenger]
MD5=13965F4C5201DB7FCB34EF8CC05E47B5 SIZE=149008
%SYSDIR%\RAMASST.exe [Matsushita Electric
Industrial Co., Ltd.]
MD5=5648152AD2CCAB0265EAB9711755F484 SIZE=155648
%PROGRAMFILES%\Alwil Software\Avast4
\French\langmai.dll [ALWIL Software] [avast!
Antivirus] MD5=2D1F08241B5B85920FD430054166C2CB
SIZE=61440
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\mpbtn.exe
MD5=056B62587DCCE5E9480745BE84A0B765 SIZE=192512
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\clientutil52.dll [Motive
Communications, Inc.] [Motive System]
MD5=2FBA68B1B780B5A16CAA07EA9FE44D45 SIZE=282624
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\AsstCatalog.dll
MD5=B92BFEA21487CFFF3619CC5E61260F8A SIZE=57344
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\resource.dll [Motive
Communications, Inc.] [Motive System]
MD5=85EF775E01F1B5003DEFEF0B03EEF65C SIZE=45056
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe
Systems, Inc.] [Shockwave Flash]
MD5=58F41CA8F9C2014709F9547B2B81A468
SIZE=3695008
%PROGRAMFILES%\Megaupload\Mega
Manager\MegaManager.exe [Megaupload Limited]
[Mega Manager]
MD5=4D5FFF2E8C2484E4C5DC335F6CBE8314
SIZE=1945600
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwutils.dll
MD5=06C8170366F01AEEB9B9D3FDBCAB309D SIZE=36864
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwcore.dll
MD5=2BACE2D1D25F234FF6012B4C5CDCB3D7 SIZE=151552
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwinit.dll
MD5=1920437AE454F93C530F255CDC3565D6 SIZE=16384
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwfile.dll
MD5=F5801D5AD4AE071F1ADF0A09D8B47707 SIZE=28672
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwtrans.dll
MD5=B40B2CAAC0B333EA48F0467CD38122D9 SIZE=18432
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwdir.dll
MD5=7913A2F0B249A5C9F27886FE0CC611C0 SIZE=18944
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwhtml.dll
MD5=81759E98C869E04175B26C0515015089 SIZE=61440
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwapp.dll
MD5=555A1D991A209D77F449768D24278B6B SIZE=61440
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwstream.dll
MD5=36904038C2B9510E95B632BA83C1CD0F SIZE=23552
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwhttp.dll
MD5=EE8AD16F8CB832F7C537DBC7833D72EA SIZE=81920
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwmime.dll
MD5=F5DEACFB135891C8351B03E59D3CD15D SIZE=30208
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwcache.dll
MD5=EB790CED0AAF138F48520B8A4140B5EA SIZE=24576
%PROGRAMFILES%\Megaupload\Mega
Manager\HS_REGEX.dll
MD5=2BCD870B3E27818D725C90663A553448 SIZE=62464
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwftp.dll
MD5=8361DEF4B7392110D7613FD8A87AC000 SIZE=33280
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwssl.dll
MD5=0A7EC2AE589CFE093342A96022E3F16E SIZE=13312
%PROGRAMFILES%\Megaupload\Mega
Manager\SSLEAY32.dll
MD5=9E7AA75F2ABB7B182E3572A3BD13093F SIZE=159744
%PROGRAMFILES%\Megaupload\Mega
Manager\LIBEAY32.dll
MD5=DB4BA0130D2A4727ABE171750CF7031D SIZE=839680
%PROGRAMFILES%\Megaupload\Mega Manager\res.dll
[Megaupload Limited] [Mega Manager]
MD5=9502F45E2CFDA937B321FA3AC55B39AC SIZE=307200
%SYSDIR%\Macromed\Flash\Flash9f.ocx [Adobe
Systems, Inc.] [Shockwave Flash]
MD5=48FDF435B8595604E54125B321924510
SIZE=2991488
%PROGRAMFILES%\PANDO NETWORKS\PANDO\PANDO.EXE
TOSCDSPD.EXE
%PROGRAMFILES%\RayV\RayV\RayV.exe \background
CFSServ.exe -NoClient
NDSTray.exe
%SYSDIR%\mifolole.dll
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\matcli.exe [Motive Communications,
Inc.] [Motive System]
MD5=90AEBCCB2E6AB9180113F21792D11C32 SIZE=217088
%PROGRAMFILES%\Adobe\Acrobat 7.0
\Reader\reader_sl.exe [Adobe Systems
Incorporated] [Adobe Acrobat]
MD5=DFCB9ADE94A4F8A7C42EEF41101A30AD SIZE=29696
%PROGRAMFILES%\google\googletoolbar4.dll [Google
Inc.] [Barre d'outils Google pour IE]
MD5=6D44E0C3B43D27484FBB355E470C4188
SIZE=2436160
deskpan.dll
%SYSDIR%\TPprop.dll [COMPAL ELECTRONIC INC.]
[TPprop Module]
MD5=CEE772DE5965CFA8DDE9A04D130351A3 SIZE=94208
%PROGRAMFILES%\Sonic\RecordNow!\shlext.dll
[RecordNow!]
MD5=D19305A60C4E181F1CE1DAA8F45638BA SIZE=73728
%PROGRAMFILES%\Real\RealPlayer\rpshell.dll
[RealNetworks, Inc.] [RealPlayer]
MD5=D3EA9C1687A12608BF4D505EDAC585D6 SIZE=63040
%PROGRAMFILES%\Logitech\Video\Namespc2.dll
[Logitech Inc.] [Logitech QuickCam]
MD5=2263BE04A864489E2828A9C4A1EAA5E1 SIZE=135168
%PROGRAMFILES%\Windows
Live\Messenger\fsshext.8.5.1302.1018.dll
[Microsoft Corporation] [Messenger]
MD5=8BDE1F61DFBAAE7A2916170E8B75FE0F SIZE=329240
%PROGRAMFILES%\Windows Live\Photo
Gallery\WLXPhotoAcquireWizard.exe [Microsoft
Corporation] [Windows Live Photo Gallery]
MD5=47851C6AFE59E6B850D14E347A2FA4FC SIZE=229920
%SYSDIR%\rundll32.exe "C:\Program Files\Windows
Live\Photo
Gallery\WLXPhotoViewer.dll",PhotoViewerComServer
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C}
%SYSDIR%\rundll32.exe "C:\Program Files\Windows
Live\Photo
Gallery\WLXPhotoViewer.dll",PhotoViewerComServer
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C}
%SYSDIR%\rundll32.exe "C:\Program Files\Windows
Live\Photo
Gallery\WLXPhotoViewer.dll",PhotoViewerComServer
{00F374B7-B390-4884-B372-2FC349F2172B}
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLWIR.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=17412817CCA4D5CF610ADFF3FFC9E341 SIZE=777048
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLWHL.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=24B70851DDF6D620E8680C6BC69FD020 SIZE=416600
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLACT.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=E6B021E49A1027CA6CAF953128ABFFD2 SIZE=363352
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLBTN.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=949B4467D13E025E0B0672C042673FC7 SIZE=629592
%PROGRAMFILES%\Microsoft Office\Office12
\ONFILTER.DLL [Microsoft Corporation] [Microsoft
Office OneNote]
MD5=23CD837C3E94BAF99C0B327C660D1DA6 SIZE=74800
%SYSDIR%\igfxdev.dll [Intel Corporation] [Intel
(R) Common User Interface]
MD5=58C8809D7486DB2D9C6A24A8630A5478 SIZE=204800
%SYSDIR%\DRIVERS\AegisP.sys [Cisco Systems,
Inc.] [AEGIS Protocol 3.7.5.0]
MD5=023867B6606FBABCDD52E089C4A507DA SIZE=21361
%SYSDIR%\DRIVERS\AGRSM.sys [Agere Systems]
[Agere SoftModem Driver]
MD5=029E01CB2938BEC5AF31BF47B6AF0159
SIZE=1066278
%SYSDIR%\drivers\ALCXWDM.SYS [Realtek
Semiconductor Corp.] [Windows (R) WDM driver for
Realtek AC'97 Audio(HRTF data Copyright 1994 by
MIT Media Lab)]
MD5=35045A23957A71BA649740741E69408C
SIZE=2324480
%SYSDIR%\DRIVERS\Apfiltr.sys [Alps Electric Co.,
Ltd.] [Alps Pointing-device Driver for Windows
2000/XP] MD5=87EC3FDCAF6C5052E2E72B861DEDD3D3
SIZE=101874
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\DRIVERS\avgarkt.sys [GRISOFT, s.r.o.]
[AVG Anti-Rootkit]
MD5=E8054A423E5D2BDAE6062BAB6DA159C4 SIZE=5632
%SYSDIR%\DRIVERS\AvgArCln.sys [GRISOFT, s.r.o.]
[AVG7 Clean Driver]
MD5=EC08D1625F5C6CF2A57B79EB35186F8C SIZE=3968
%SYSDIR%\DRIVERS\blueletaudio.sys [IVT
Corporation.] [Bluelet Audio Driver]
MD5=852A1BD08E7DFEB9E30B5440881C0501 SIZE=34704
%SYSDIR%\DRIVERS\BlueletSCOAudio.sys [IVT
Corporation.] [Bluelet Audio Driver]
MD5=8FC27B12A02B43947787F0EF1885DF9B SIZE=27792
%SYSDIR%\DRIVERS\btnetdrv.sys [IVT Corporation.]
[Bluetooth PAN Network Adapter Driver]
MD5=C5CCE2B26F73F8CF7F3C82159E79AA08 SIZE=18320
%SYSDIR%\Drivers\vbtenum.sys [IVT Corporation.]
[Bluetooth HID Enumerator Driver]
MD5=CE643D0918123D76A5CAAB008FCA9663 SIZE=20880
%SYSDIR%\Drivers\BTHidMgr.sys [IVT Corporation.]
[Bluetooth HID Manager Device Driver]
MD5=DFCA4FE4C8AEC786B4D0F432EB730F48 SIZE=35600
%SYSDIR%\svchost -k DcomLaunch
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\drivers\drvmcdb.sys [Sonic Solutions]
MD5=96BC8F872F0270C10EDC3931F1C03776 SIZE=88352
%SYSDIR%\drivers\drvnddm.sys [Sonic Solutions]
MD5=5AFBEC7A6AC61B211633DFDB1D9E0C89 SIZE=40544
%SYSDIR%\DRIVERS\igxpmp32.sys [Intel
Corporation] [Intel Graphics Accelerator Drivers
for Windows NT(R)]
MD5=2AAE7BE67911F4AEC9AD28E9CFB9096F
SIZE=5672032
%SYSDIR%\drivers\iviaspi.sys [InterVideo, Inc.]
[InterVideo ASPI Shell]
MD5=F59C3569A2F2C464BB78CB1BDCDCA55E SIZE=21060
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\Drivers\meiudf.sys [Matsushita Electric
Industrial Co.,Ltd.]
MD5=7EFAC183A25B30FB5D64CC9D484B1EB6 SIZE=102384
%SYSDIR%\DRIVERS\netdevio.sys [TOSHIBA
Corporation.] [TOSHIBA Network Device Usermode
I/O protocol]
MD5=1265EB253ED4EBE4ACB3BD5F548FF796 SIZE=12032
%SYSDIR%\Drivers\pcouffin.sys [VSO Software]
[Patin couffin engine]
MD5=5B6C11DE7E839C05248CED8825470FEF SIZE=47360
%SYSDIR%\svchost -k rpcss
%SYSDIR%\DRIVERS\Rtlnicxp.sys [Realtek
Semiconductor Corporation] [Realtek 10/100/1000
NIC Family all in one NDIS Driver]
MD5=7F0413BDD7D53EB4C7A371E7F6F84DF1 SIZE=74496
%SYSDIR%\DRIVERS\s24trans.sys [Intel
Corporation] [Intel Wireless LAN Packet Driver]
MD5=15F598DDAAFAE02102438F09D4D14461 SIZE=12288
%SYSDIR%\Drivers\SSIoMngr.sys [COMPAL ELECTRONIC
INC.] [Compal IoManager Application]
MD5=79B7AF340D55861DF1D69E7BAC975FCC SIZE=6400
%SYSDIR%\drivers\sscdbhk5.sys [Sonic Solutions]
MD5=98625722AD52B40305E74AAA83C93086 SIZE=5627
%SYSDIR%\drivers\ssrtln.sys [Sonic Solutions]
MD5=D79412E3942C8A257253487536D5A994 SIZE=23545
%SYSDIR%\svchost.exe -k imgsvc
%SYSDIR%\dla\tfsnboio.sys [Sonic Solutions]
MD5=D0177776E11B0B3F272EEBD262A69661 SIZE=25725
%SYSDIR%\dla\tfsncofs.sys [Sonic Solutions]
MD5=599804BC938B8305A5422319774DA871 SIZE=34845
%SYSDIR%\dla\tfsndrct.sys [Sonic Solutions]
MD5=A1902C00ADC11C4D83F8E3ED947A6A32 SIZE=4125
%SYSDIR%\dla\tfsndres.sys [Sonic Solutions]
MD5=E2260A2BB1B24526BFAA7DF426B69B20 SIZE=2273
%SYSDIR%\dla\tfsnifs.sys [Sonic Solutions]
MD5=C4F2DEA75300971CDAEE311007DE138D SIZE=86876
%SYSDIR%\dla\tfsnopio.sys [Sonic Solutions]
MD5=272925BE0EA919F08286D2EE6F102B0F SIZE=15069
%SYSDIR%\dla\tfsnpool.sys [Sonic Solutions]
MD5=7B7D955E5CEBC2FB88B03EF875D52A2F SIZE=6365
%SYSDIR%\dla\tfsnudf.sys [Sonic Solutions]
MD5=E3D01263109D800C1967C12C10A0B018 SIZE=98716
%SYSDIR%\dla\tfsnudfa.sys [Sonic Solutions]
MD5=B9E9C377906E3A65BC74598FFF7F7458 SIZE=100605
%SYSDIR%\drivers\tifm21.sys [Texas Instruments]
[Texas Instruments PCIxx21/PCIxx12 Integrated
FlashMedia Controller]
MD5=0EDC3CF7B38F4260EB006C38E4A44DE4 SIZE=162176
%SYSDIR%\Drivers\TPwSav.sys [TOSHIBA]
MD5=F163E994D26C2B17FEE748FA84FBDBA5 SIZE=9600
%SYSDIR%\DRIVERS\Tvs.sys [TOSHIBA Corporation]
[Audio Filter]
MD5=925B851B10EEFECE7ED6B9A1C8873135 SIZE=30592
%SYSDIR%\DRIVERS\VComm.sys [IVT Corporation.]
[Bluetooth Serial Port Driver]
MD5=51750B0539986186C6931FC40D171521 SIZE=34448
%SYSDIR%\Drivers\VcommMgr.sys [IVT Corporation.]
[Bluetooth VcommMgr Driver]
MD5=6D9C891C0A761AFED1F3609C2E56F2B9 SIZE=44304
%SYSDIR%\svchost.exe -k WudfServiceGroup
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\Program\GAPlugProtocol-
8876480.dll [Logitech Inc.] [Logitech Desktop
Messenger] MD5=8C620F16E1D024049046F93B12E38855
SIZE=28711
%PROGRAMFILES%\Microsoft Office\Office12
\GrooveSystemServices.dll [Microsoft
Corporation] [GrooveSystemServices Module]
MD5=C48CBBD38D7FBB0E86F4364062EBC66E SIZE=224128
%PROGRAMFILES%\Windows
Live\Messenger\msgrapp.8.5.1302.1018.dll
[Microsoft Corporation] [Messenger]
MD5=56319E6B4D190A2DEB4463A9CE4D4F74 SIZE=66072
%WINDIR%\AGRSMMSG.exe [Agere Systems] [Agere
SoftModem Messaging Applet]
MD5=B2ED4020EE2A9446649CE6B0A918C91C SIZE=88358
%PROGRAMFILES%\Lavasoft\Ad-Aware SE Personal\Ad
-Aware.exe [Lavasoft Sweden] [Lavasoft Ad-Aware
SE] MD5=1B0EDBF799B57EAD6EF68A82906C2097
SIZE=824832
%SYSDIR%\pxcpyi64.exe [Sonic Solutions]
MD5=81647023B248DE7880FAB1FC4185E6E4 SIZE=120304
%SYSDIR%\vxblock.dll [Sonic Solutions]
MD5=E9DECCCF20DEB7D5E904F35A7C483EAD SIZE=88560
%WINDIR%
\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e
3b_8.0.50727.762_x-ww_91481303\mfc80ITA.dll
[Microsoft Corporation] [Microsoft® Visual
Studio® 2005]
MD5=CB23B162AC655F24C6711A5F5DF348C6 SIZE=61440
%WINDIR%
\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_
8.0.50727.762_x-ww_3bf8fa05\mfc80.dll [Microsoft
Corporation] [Microsoft® Visual Studio® 2005]
MD5=1B7524806D0270B81360C63A2FA047CB
SIZE=1101824
%PROGRAMFILES%\Java\jre1.6.0_07\bin\JdbcOdbc.dll
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=F708430AE09C4102933E24CD6D12780D
SIZE=36352
%PROGRAMFILES%\Java\jre1.6.0_07\bin\dcpr.dll
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=D6E7FFCD38ECDFE4BD8DCE29D8D1A654
SIZE=143360
%PROGRAMFILES%\Java\jre1.6.0_07\bin\ioser12.dll
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=5CF15BC4493299F6645DB27B51278D2A
SIZE=12800
%PROGRAMFILES%\Java\jre1.6.0_07\bin\javacpl.cpl
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=370716E3CA99E6A4346F272DA56017C1
SIZE=73728
%PROGRAMFILES%\Java\jre1.6.0_07
\bin\policytool.exe [Sun Microsystems, Inc.]
[Java(TM) Platform SE 6 U7]
MD5=1C0C6888952D9EC22A7B5C6FAD0E8160 SIZE=25600
%SYSDIR%\MFC71DEU.DLL [Microsoft Corporation]
[Microsoft® Visual Studio .NET]
MD5=C94D9D5B96D385586063093BAAD8F206 SIZE=65536
%COMMONFILES%\Microsoft
Shared\GRPHFLT\CGMIMP32.FLT [Microsoft
Corporation] [2007 Microsoft Office system]
MD5=ED6FD771408178CECC82E1D84BEBF196 SIZE=290680
%COMMONFILES%\Microsoft Shared\MODI\12.0
\BINDER.DLL [ScanSoft, Inc.] [ScanSoft API]
MD5=623BFFC21F6258855673B751CC81E2DA SIZE=22936
%COMMONFILES%\Microsoft Shared\MODI\12.0
\FORM.DLL [Tsinghua/Wintone and ScanSoft, Inc.]
[Asian OCR for ScanSoft API]
MD5=51B3711D0BC33C6BD9AD3461DC7551C4 SIZE=78728
%COMMONFILES%\Microsoft Shared\MODI\12.0
\REVERSE.DLL [Tsinghua/Wintone and ScanSoft,
Inc.] [Asian OCR for ScanSoft API]
MD5=4EFF9C4F83DFCC7D902C588AF2CB4349 SIZE=22416
%COMMONFILES%\Microsoft Shared\MODI\12.0
\THOCR.PSP [ScanSoft, Inc.] [ScanSoft API]
MD5=FDD07C0A5B579645EFECBC304D9DA32B SIZE=190464
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACECORE.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=77B7089D98E0CFABBB2EE56B8579CF18
SIZE=1754536
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEES.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=9584476B8082C208B6206D9B5B810538 SIZE=193992
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEODDBS.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=63D501D1AAF0B91BF66CF7DD203AC5D3 SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEODEXL.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=6014430D5B1406BE794AA8FD6EE756C9 SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEODTXT.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=E41A3724A30C92353FD9151A8F687DEC SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEPDE.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=3569A008EF6EA8A713E37C2AE508FFAF SIZE=394688
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACER2X.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=C9EA14E222E1193AD172838EE493D601 SIZE=263616
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEREP.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=9C82A5B565FFEB99F98F85370BF13124 SIZE=554440
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEWDAT.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=B574E857BA27BD814D4B1DCD76A8375B SIZE=826232
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEWSS.DLL [Microsoft Corporation] [Microsoft
Office System 2007]
MD5=FA7748447F93D72F4DC5A0F12AD9C452 SIZE=201664
%COMMONFILES%\Microsoft Shared\OFFICE12
\LBGHOST.DLL [Microsoft Corporation] [Microsoft
Office Program Recovery]
MD5=1634146F136AD3CCA799C1E5137A82AE SIZE=70976
%COMMONFILES%\Microsoft Shared\OFFICE12
\MSOMSE.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=7D03DEF7CD3597DAF8EA663DC4F3B463 SIZE=66368
%COMMONFILES%\Microsoft Shared\OFFICE12\MSSH.DLL
[Microsoft Corporation] [2007 Microsoft Office
system] MD5=7F8223AE42E47C9EAD7B1EDEE3806DEE
SIZE=43832
%COMMONFILES%\Microsoft Shared\OFFICE12
\MSSOAP30.DLL [Microsoft Corporation] [Microsoft
Office Soap SDK]
MD5=8E72F01D9B2C5F120486B3A8C5491D93 SIZE=507768
%COMMONFILES%\Microsoft Shared\OFFICE12
\OFFLB.EXE [Microsoft Corporation] [Microsoft
Office Program Recovery]
MD5=64865C2D27EFA61AF879B665ED676966 SIZE=556424
%COMMONFILES%\Microsoft Shared\OFFICE12
\WISC30.DLL [Microsoft Corporation] [Microsoft
Office Soap SDK 3.0]
MD5=9E8A7DABAF456A67798929A4C4F06218 SIZE=123720
%COMMONFILES%\Microsoft Shared\PROOF\MSHY3ES.DLL
[Spanish Hyphenation Engine]
MD5=E6B933E95B55D65A64FB8AFF60FD42E9 SIZE=919696
%COMMONFILES%\Microsoft Shared\Smart
Tag\FPERSON.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=F1D0AF8645A1B9AB82470F409F42CE6E SIZE=149816
%COMMONFILES%\System\Ole DB\msmgdsrv.dll
[Microsoft Corporation] [Microsoft SQL Server
Analysis Services]
MD5=30982CC1E54A6D33C84010415289007F
SIZE=6040432
%PROGRAMFILES%\Microsoft Office\Office12
\ACCVDT.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=CCA024C8B032EFEE7E8AC932ED1BA63D
SIZE=3135304
%PROGRAMFILES%\Microsoft Office\Office12
\CDLMSO.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=BA9EC8513C365E999FA1E9F823D2FA68 SIZE=402784
%PROGRAMFILES%\Microsoft Office\Office12
\GREN50.OLB [Microsoft Corporation] [Microsoft
Graph] MD5=998732254D8D7E19EB75083657756635
SIZE=57344
%PROGRAMFILES%\Microsoft Office\Office12
\MLCFG32.CPL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=CD2E930E206F5D6647C12C0BCB614101 SIZE=83264
%PROGRAMFILES%\Microsoft Office\Office12
\MSCAL.OCX [Microsoft Corporation] [Contrôle
Calendrier Microsoft]
MD5=C76EC546CB449D19D2EBEE8E4BDFF728 SIZE=113024
%PROGRAMFILES%\Microsoft Office\Office12
\MSODCW.DLL [Microsoft Corporation] [Microsoft
Office Disk Cleanup Wizard]
MD5=AED71BD7CFE150290A53B8E3B6F3E0D1 SIZE=431456
%PROGRAMFILES%\Microsoft Office\Office12
\MSPST32.DLL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=4909A838F2BD9C4ED7CF7EFFDF3F1E15
SIZE=1110112
%PROGRAMFILES%\Microsoft Office\Office12
\NAME.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=1C7A4288196FE72EF9AB885CF047C67C SIZE=68464
%PROGRAMFILES%\Microsoft Office\Office12\OIS.EXE
[Microsoft Corporation] [Microsoft Office
Picture Manager]
MD5=34331352E23FE6219F517C1709E63C61 SIZE=277384
%PROGRAMFILES%\Microsoft Office\Office12
\OUTLPH.DLL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=F63AD09A21D6FD6E1E14D6666799380D SIZE=180800
%PROGRAMFILES%\Microsoft Office\Office12
\RECALL.DLL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=4F296FD5CF0F0790E221CFBFCAD800E2 SIZE=39208
%PROGRAMFILES%\Microsoft Office\Office12
\VPREVIEW.EXE [Microsoft Corporation] [2007
Microsoft Office system]
MD5=16110CC8422078F4707895CAAB470BFE SIZE=33080
%PROGRAMFILES%\Microsoft Office\Office12
\VVIEWDWG.DLL [Microsoft Corporation]
[Microsoft® Office Visio® 2007]
MD5=46C669646C7BE721D1C73D08FC70772A
SIZE=1846160
%PROGRAMFILES%\Microsoft Office\Office12
\WINWORD.EXE [Microsoft Corporation] [2007
Microsoft Office system]
MD5=55A949AB657322ED818F8BFD786D8573 SIZE=349720
%PROGRAMFILES%\Microsoft Office\Office12
\XLCALL32.DLL [Microsoft Corporation] [Microsoft
Office Excel]
MD5=F1446D85469492DEEC3D4E91C7028911 SIZE=13368
%PROGRAMFILES%\Microsoft Office\Office12
\nlsdata0000.dll [Microsoft Corporation]
[Natural Language Components]
MD5=4BE858FC7835BEFE6A5A6AB669805016
SIZE=1512304
%PROGRAMFILES%\Microsoft Works\ltkrn13n.dll
[LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for
Win32] MD5=9F55BFD2C68DDD94F261B4E7A177042B
SIZE=468568
%SYSDIR%\SCP32.DLL [Microsoft Corporation]
[Microsoft Visual Basic for Applications]
MD5=781BB5095E39817469AB034138C07EBE SIZE=15872
%SYSDIR%\THREED32.OCX [Sheridan Software
Systems, Inc.] [Microsoft Visual Basic]
MD5=A9A7BA22719F38BC03A914F6EE59AF2F SIZE=200704
%SYSDIR%\tabctl32.ocx [Microsoft Corporation]
[TabCtl32 Object Library]
MD5=DC925B6D77BA9ECB532E2F6750BE943B SIZE=224016
End of Report
Suppression:
Préparation…
Création d'un point de restauration
Supprimer WhenU.SaveNow
Les fichiers sélectionnés ont été supprimés.:
C:\Program Files\vvsn\vvsn.cfg
Supprimer le répertoire: C:\Program
Files\vvsn\
Supprimer Ircfast
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\Favoris\Jeux.url
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\Favoris\Traducteur.url
Supprimer Trojan.Downloader.Agent.aaar
Les fichiers sélectionnés ont été supprimés.:
C:\Program Files\Fichiers
communs\Real\GToolbar\GoogleToolbarInstaller.exe
Supprimer Affiliate tracking cookie
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@2o7[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@ads.pointroll[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@advertising[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@apmebf[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@atdmt[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@doubleclick[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@mediaplex[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@serving-sys[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@spaces.live[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@statse.webtrendslive
[2].txt
Supprimer AdTool.MyWebSearch.bm
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\Local Settings\Temp\NERO13356\Toolbar.exe
Supprimer Invalid Startup Items
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un Pando
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un toscdspd
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un BgMonitor_{79662E04-7C6C-4d9f-84C7-
88D8A56B10AA}
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un RayV
Suppression de la clé registre :
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un CFSServ.exe
Suppression de la clé registre :
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un NDSTray.exe
Suppression de la clé registre :
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un guruzuyafa
Fermeture du point de restauration système
Analyse(s) terminée(s)
J'ai fait l'analyse avec Spyware Terminator.
Logfile of Spyware Terminator v2.5.0.567
(db:2.012.004.000)
Scan Time: 04/12/2008 19:00:39 length: 2203 s
Platform: WXP (5.1.0.2600)
User: Admin
Boot Mode: Normal
Scan type: Full_Spyware_Scan
Scanned Objects: 81833 (Critical:13)
Filter: No System items, No Safe items, No
Invalid items
Running Processes
S24EvMon.exe [Intel Corporation ] : C:\Program
Files\Intel\Wireless\Bin\S24EvMon.exe
CFSvcs.exe [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\CFSvcs.exe
DVDRAMSV.exe [Matsushita Electric Industrial
Co., Ltd.] : C:\WINDOWS\system32\DVDRAMSV.exe
EvtEng.exe [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\EvtEng.exe
RegSrvc.exe [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\RegSrvc.exe
CFSServ.exe [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\CFSServ.exe
NDSTray.exe [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\NDSTray.exe
igfxpers.exe [Intel Corporation] :
C:\WINDOWS\system32\igfxpers.exe
ZCfgSvc.exe [Intel Corporation] : C:\Program
Files\Intel\Wireless\bin\ZCfgSvc.exe
GrooveMonitor.exe [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveMonitor.exe
SearchSettings.exe [Vendio Services, Inc.] :
C:\Program Files\Search
Settings\SearchSettings.exe
UnlockerAssistant.exe : C:\Program
Files\Unlocker\UnlockerAssistant.exe
VeohClient.exe [Veoh Networks] : C:\Program
Files\Veoh Networks\Veoh\VeohClient.exe
PrintScreen.exe [Gadwin Systems, Inc] :
C:\Program Files\Gadwin
Systems\PrintScreen\PrintScreen.exe
BlueSoleil.exe [IVT Corporation.] : C:\Program
Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
BtMon2.exe [TOSHIBA] : C:\Program
Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
WinCinemaMgr.exe [InterVideo Inc.] : C:\Program
Files\InterVideo\Common\Bin\WinCinemaMgr.exe
RAMASST.exe [Matsushita Electric Industrial Co.,
Ltd.] : C:\WINDOWS\system32\RAMASST.exe
mpbtn.exe : C:\Program Files\Club-Internet\Dr
Club Internet\bin\mpbtn.exe
MegaManager.exe [Megaupload Limited] :
C:\Program Files\Megaupload\Mega
Manager\MegaManager.exe
Internet Settings
R - HKCU\Software\Microsoft\Internet
Explorer\Main, Search Bar =
http://www.google.com/toolbar/ie8/sidebar.html
R - HKLM\Software\Microsoft\Internet
Explorer\Main, Start Page =
https://www.msn.com/fr-fr/?ocid=iehp
R - HKLM\Software\Microsoft\Internet
Explorer\Search, SearchAssistant =
http://www.google.com/toolbar/ie8/sidebar.html
R - HKLM\Software\Microsoft\Internet
Explorer\Search, CustomizeSearch =
https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89
{SUB_RFC1766}/srchasst/srchcust.htm
R -
HKCU\Software\Microsoft\Windows\CurrentVersion\I
nternet Settings, ProxyOverride =
127.0.0.1;localhost
R -
HKLM\System\CurrentControlSet\Services\Tcpip\Par
ameters, Domain =
R -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\T
elephony, DomainName =
BHO
02 - BHO: RealPlayer Download and Record Plugin
for Internet Explorer - {3049C3E9-B461-4BC5-
8870-4C09146192CA} - [RealPlayer] : C:\Program
Files\Real\RealPlayer\rpbrowserrecordplugin.dll
02 - BHO: Groove GFS Browser Helper - {72853161
-30C5-4D22-B7F9-0BBC1D38A37E} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
02 - BHO: Google Toolbar Helper - {AA58ED58-
01DD-4d91-8333-CF10577473F7} - [Google Inc.] :
C:\Program Files\google\googletoolbar4.dll
02 - BHO: IeMonitorBho Class - {bf00e119-21a3-
4fd1-b178-3b8537e75c92} - [Megaupload Limited]
: C:\Program Files\Megaupload\Mega
Manager\MegaIEMn.dll
02 - BHO: - {cf9982f1-efed-4c36-b3c4-
998c5393abd9} - : C:\WINDOWS\system32
\bupudofa.dll
02 - BHO: SearchSettings Class - {E312764E-7706
-43F1-8DAB-FCDD2B1E416D} - [Vendio Services,
Inc.] : C:\Program Files\Search Settings\kb127
\SearchSettings.dll
Toolbars
03 - Toolbar: &Google - {2318C2B1-4965-11d4-
9B18-009027A5CD4F} - [Google Inc.] : C:\Program
Files\google\googletoolbar4.dll
03 - Toolbar: Veoh Browser Plug-in - {D0943516-
5076-4020-A3B5-AEFAF26AB263} - [Veoh Networks
Inc] : C:\Program Files\Veoh
Networks\Veoh\Plugins\reg\VeohToolbar.dll
StartUps
04 -
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, Veoh : [Veoh Networks] : C:\Program
Files\Veoh Networks\Veoh\VeohClient.exe
04 -
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, Gadwin PrintScreen : [Gadwin Systems, Inc]
: C:\Program Files\Gadwin
Systems\PrintScreen\PrintScreen.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, MSPY2002 : : C:\WINDOWS\system32
\IME\PINTLGNT\IMSCINST.EXE
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, Persistence : [Intel Corporation] :
C:\WINDOWS\system32\igfxpers.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, IntelZeroConfig : [Intel Corporation] :
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, GrooveMonitor : [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveMonitor.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, SearchSettings : [Vendio Services, Inc.] :
C:\Program Files\Search
Settings\SearchSettings.exe
04 -
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un, UnlockerAssistant : : C:\Program
Files\Unlocker\UnlockerAssistant.exe
04 - Startup: %STARTUPALL%\BlueSoleil.lnk [IVT
Corporation.] : C:\Program Files\IVT
Corporation\BlueSoleil\BlueSoleil.exe
04 - Startup: %STARTUPALL%\Bluetooth Monitor.lnk
[TOSHIBA] : C:\Program Files\TOSHIBA\Bluetooth
Monitor\BtMon2.exe
04 - Startup: %STARTUPALL%\Docteur Club
Internet.lnk [Motive Communications, Inc.] :
C:\Program Files\Club-Internet\Dr Club
Internet\bin\matcli.exe
04 - Startup: %STARTUPALL%\InterVideo WinCinema
Manager.lnk [InterVideo Inc.] : C:\Program
Files\InterVideo\Common\Bin\WinCinemaMgr.exe
04 - Startup: %STARTUPALL%\Lancement rapide
d'Adobe Reader.lnk [Adobe Systems Incorporated]
: C:\Program Files\Adobe\Acrobat 7.0
\Reader\reader_sl.exe
04 - Startup: %STARTUPALL%\RAMASST.lnk
[Matsushita Electric Industrial Co., Ltd.] :
C:\WINDOWS\system32\RAMASST.exe
Shell Extensions
TouchPad PropSheet Class - {9ED66769-A198-41FE-
8615-601691C68846} - [COMPAL ELECTRONIC INC.] :
C:\WINDOWS\system32\TPprop.dll
RecordNow! SendToExt - {DEE12703-6333-4D4E-8F34
-738C4DCC2E04} - : C:\Program
Files\Sonic\RecordNow!\shlext.dll
RecordNow! ContextMenuExt - {E91B2703-013E-4A99
-AD33-2B6FB00AA356} - : C:\Program
Files\Sonic\RecordNow!\shlext.dll
IZArc DragDrop Menu - {CA5FEE26-14C1-4B5A-86E9-
233FC0EE2682} - : C:\Program
Files\IZArc\IZArcCM.dll
IZArc Shell Context Menu - {8D9D4D0D-FDDD-44CB-
AAB2-6161FA0757C5} - : C:\Program
Files\IZArc\IZArcCM.dll
RealOne Player Context Menu Class - {F0CB00CD-
5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks,
Inc.] : C:\Program
Files\Real\RealPlayer\rpshell.dll
My Logitech Pictures - {400CFEE2-39D0-46DC-96DF
-E0BB5A4324B3} - [Logitech Inc.] : C:\Program
Files\Logitech\Video\Namespc2.dll
Mes dossiers de partage - {FC9FB64A-1EB2-4CCF-
AF5E-1A497A9B5C2D} - [Microsoft Corporation] :
C:\Program Files\Windows
Live\Messenger\fsshext.8.5.1302.1018.dll
- {06A2568A-CED6-4187-BB20-400B8C02BE5A} -
[Microsoft Corporation] : C:\Program
Files\Windows Live\Photo
Gallery\WLXPhotoAcquireWizard.exe
Page de propriétés sans fil - {20082881-FC36-
4E47-9A7A-644C95FF749F} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLWIR.DLL
Page des propriétés de la roulette - {AF90F543-
6A3A-4C1B-8B16-ECEC073E69BE} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLWHL.DLL
Page des propriétés des activités - {653DCCC2-
13DB-45B2-A389-427885776CFE} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLACT.DLL
Page des propriétés des boutons - {124597D8-
850A-41AE-849C-017A4FA99CA2} - [Microsoft
Corporation] : C:\Program Files\MICROSOFT
INTELLIPOINT\IPCPLBTN.DLL
Groove GFS Browser Helper - {72853161-30C5-4D22
-B7F9-0BBC1D38A37E} - [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Folder Synchronization - {2A541AE1-5BF6-
4665-A8A3-CFA9672E4291} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove GFS Stub Icon Handler - {A449600E-1DC6-
4232-B948-9BD794D62056} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove GFS Stub Execution Hook - {B5A7F190-DDA6
-4420-B3BA-52453494E6CD} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove GFS Context Menu Handler - {6C467336-
8281-4E60-8204-430CED96822D} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Groove XML Icon Handler - {387E725D-DC16-4D76-
B310-2C93ED4752A0} - [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 3 (GFS Folder) -
{16F3DD56-1AF5-4347-846D-7C10C4192619} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 2 (GFS Stub) -
{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 4 (GFS Unread Mark)
- {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 1 (GFS Unread Stub)
- {99FD978C-D287-4F50-827F-B2C658EDA8E7} -
[Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Groove Explorer Icon Overlay 2.5 (GFS Unread
Folder) - {920E6DB1-9907-4370-B3A0-BAFC03D81399}
- [Microsoft Corporation] : C:\Program
Files\Microsoft Office\Office12
\GrooveShellExtensions.dll
Microsoft Office OneNote Namespace Extension for
Windows Desktop Search - {5858A72C-C2B4-4dd7-
B2BF-B76DB1BD9F6C} - [Microsoft Corporation] :
C:\Program Files\Microsoft Office\Office12
\ONFILTER.DLL
Shell Extecute Hooks
Groove GFS Stub Execution Hook - {{B5A7F190-
DDA6-4420-B3BA-52453494E6CD}} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveShellExtensions.dll
Protocol Handler
BackWeb GA Pluggable Protocol - {9462A756-7B47-
47BC-8C80-C34B9B80B32B} - [Logitech Inc.] :
C:\Program Files\Logitech\Desktop
Messenger\8876480\Program\GAPlugProtocol-
8876480.dll
Local Groove Web Services Protocol - {88FED34C-
F0CA-4636-A375-3CB6248B04CD} - [Microsoft
Corporation] : C:\Program Files\Microsoft
Office\Office12\GrooveSystemServices.dll
- {828030A1-22C1-4009-854F-8E305202313F} -
[Microsoft Corporation] : C:\Program
Files\Windows
Live\Messenger\msgrapp.8.5.1302.1018.dll
- {828030A1-22C1-4009-854F-8E305202313F} -
[Microsoft Corporation] : C:\Program
Files\Windows
Live\Messenger\msgrapp.8.5.1302.1018.dll
Services
23 - [Cisco Systems, Inc.] :
C:\WINDOWS\system32\DRIVERS\AegisP.sys
23 - [Agere Systems] : C:\WINDOWS\system32
\DRIVERS\AGRSM.sys
23 - [Realtek Semiconductor Corp.] :
C:\WINDOWS\system32\drivers\ALCXWDM.SYS
23 - [Alps Electric Co., Ltd.] :
C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
23 - [GRISOFT, s.r.o.] : C:\WINDOWS\system32
\DRIVERS\avgarkt.sys
23 - [GRISOFT, s.r.o.] : C:\WINDOWS\system32
\DRIVERS\AvgArCln.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\blueletaudio.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\BlueletSCOAudio.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\btnetdrv.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\Drivers\vbtenum.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\Drivers\BTHidMgr.sys
23 - [TOSHIBA CORPORATION] : C:\Program
Files\TOSHIBA\ConfigFree\CFSvcs.exe
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\drvmcdb.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\drvnddm.sys
23 - [Matsushita Electric Industrial Co., Ltd.]
: C:\WINDOWS\system32\DVDRAMSV.exe
23 - [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\EvtEng.exe
23 - [Intel Corporation] : C:\WINDOWS\system32
\DRIVERS\igxpmp32.sys
23 - [InterVideo, Inc.] : C:\WINDOWS\system32
\drivers\iviaspi.sys
23 - [Matsushita Electric Industrial Co.,Ltd.] :
C:\WINDOWS\system32\Drivers\meiudf.sys
23 - [TOSHIBA Corporation.] :
C:\WINDOWS\system32\DRIVERS\netdevio.sys
23 - [VSO Software] : C:\WINDOWS\system32
\Drivers\pcouffin.sys
23 - [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\RegSrvc.exe
23 - [Realtek Semiconductor Corporation] :
C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
23 - [Intel Corporation] : C:\Program
Files\Intel\Wireless\Bin\S24EvMon.exe
23 - [Intel Corporation] : C:\WINDOWS\system32
\DRIVERS\s24trans.sys
23 - [COMPAL ELECTRONIC INC.] :
C:\WINDOWS\system32\Drivers\SSIoMngr.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\sscdbhk5.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\drivers\ssrtln.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnboio.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsncofs.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsndrct.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsndres.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnifs.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnopio.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnpool.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnudf.sys
23 - [Sonic Solutions] : C:\WINDOWS\system32
\dla\tfsnudfa.sys
23 - [Texas Instruments] : C:\WINDOWS\system32
\drivers\tifm21.sys
23 - [TOSHIBA] : C:\WINDOWS\system32
\Drivers\TPwSav.sys
23 - [TOSHIBA Corporation] :
C:\WINDOWS\system32\DRIVERS\Tvs.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\DRIVERS\VComm.sys
23 - [IVT Corporation.] : C:\WINDOWS\system32
\Drivers\VcommMgr.sys
Winlogon Notify
HKLM\Software\Microsoft\Windows
NT\CurrentVersion\Winlogon\Notify\igfxcui,
DLLName : [Intel Corporation] :
C:\WINDOWS\system32\igfxdev.dll
IE URL Search Hooks
SearchSettings Class - {{E312764E-7706-43F1-
8DAB-FCDD2B1E416D}} - [Vendio Services, Inc.] :
C:\Program Files\Search Settings\kb127
\SearchSettings.dll
Threat Files
<WhenU.SaveNow> : C:\Program Files\vvsn\vvsn.cfg
<Ircfast> : C:\Documents and Settings\satellite
m70-169\Favoris\Jeux.url
<Ircfast> : C:\Documents and Settings\satellite
m70-169\Favoris\Traducteur.url
<AdTool.MyWebSearch.bm> : C:\Documents and
Settings\satellite m70-169\Local
Settings\Temp\NERO13356\Toolbar.exe
<Trojan.Downloader.Agent.aaar> : C:\Program
Files\Fichiers
communs\Real\GToolbar\GoogleToolbarInstaller.exe
Advanced Files Report
%SYSDIR%\laraletu.dll
MD5=56BF6D960F4C8AAFC030DAD9E7741075 SIZE=63029
%SYSDIR%\netprovcredman.dll [Intel Corporation]
[NetProvCredMan Dynamic Link Library]
MD5=0A11C88BDBAD54B8FA4EBDB62CB916F7 SIZE=212992
%PROGRAMFILES%\Intel\Wireless\Bin\S24EvMon.exe
[Intel Corporation] [Intel(R) PROSet/Wireless
Service] MD5=E087728D371709C1817EF6487F3E2E73
SIZE=1187840
%PROGRAMFILES%\Intel\Wireless\Bin\TraceAPI.DLL
[Intel Corporation] [TraceAPI Module]
MD5=327C7AC2F1CAED6670F4726C50278B8B SIZE=585728
%PROGRAMFILES%\Intel\Wireless\Bin\PsRegApi.dll
[Intel Corporation] [PsRegApi]
MD5=2E9DD9CEDF15C4C2938D52863BF766DA SIZE=679936
%PROGRAMFILES%\Intel\Wireless\Bin\LIBEAY32.dll
[The OpenSSL Project, https://www.openssl.org/]
[The OpenSSL Toolkit]
MD5=11ADD8816D61A6025844EB5123EC92D3
SIZE=1089536
%PROGRAMFILES%\Intel\Wireless\Bin\IntStngs.dll
[Intel Corporation] [IntelSettings Dynamic Link
Library] MD5=3A8FF9C6CC9F1007A8B44A4AB09A2BD9
SIZE=507904
%PROGRAMFILES%\Intel\Wireless\Bin\IWMSPROV.DLL
MD5=F30158BC4314AE5638747205C505725C SIZE=245760
%PROGRAMFILES%\Alwil Software\Avast4
\French\Base.dll [ALWIL Software] [avast!
Antivirus] MD5=5F97B49F7C30A99AAF138F598625CF0D
SIZE=98304
%SYSDIR%\tbtmon.dll [Toshiba America Business
Solutions, Inc.] [Toshiba Bluetooth Port
Monitor] MD5=D6385B6A3C92085BF603397A602FEA4B
SIZE=167936
%SYSDIR%\TosBtHcrpAPI.dll
MD5=353DE1DEFD41B1E4A1B668320135200B SIZE=94208
%SYSDIR%\TosBtAPI.dll [TOSHIBA CORPORATION.]
[Bluetooth Stack for Windows by TOSHIBA]
MD5=4F623CB89FEAF45DB76CE062F1DA0AE6 SIZE=172104
%SYSDIR%\TosBdAPI.dll [TOSHIBA CORPORATION.]
[Bluetooth Stack for Windows by TOSHIBA]
MD5=3D8F7CB3824F6F83E22E7873230C0112 SIZE=98304
%SYSDIR%\tbtmon98Language.dll [Toshiba] [Toshiba
Test] MD5=E3E76EC6BC1104D067B7C60A3573EAE9
SIZE=36864
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFSvcs.exe
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=3CB0CC8879956C187E87E18634EE5164 SIZE=40960
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSAPI.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=3B6C054AB0CB4EA03B184DC39E0EC28C SIZE=196608
%PROGRAMFILES%\TOSHIBA\ConfigFree\IpAdrSet.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=05E97E1B4A2793B3451DAA903A031877 SIZE=98304
%SYSDIR%\DVDRAMSV.exe [Matsushita Electric
Industrial Co., Ltd.]
MD5=C9FFBD6B8EDC46CD3D13E3C6DB914FB7 SIZE=110592
%PROGRAMFILES%\Intel\Wireless\Bin\EvtEng.exe
[Intel Corporation] [Intel(R) PROSet/Wireless
Event Log] MD5=A2CA7C9169F5781A261310DFADC52514
SIZE=823296
%PROGRAMFILES%\Intel\Wireless\Bin\PfMgrApi.dll
[Intel Corporation] [ProfileMgrApi Dynamic Link
Library] MD5=CDBF865495B59C2E40B3FF52F4A3141C
SIZE=1241088
%PROGRAMFILES%\Intel\Wireless\Bin\DbEngine.dll
[Intel Corporation] [Secure Database Egnine]
MD5=1629CD0F29E53A2632AC886BBAA7D888 SIZE=524288
%PROGRAMFILES%\Intel\Wireless\Bin\MurocApi.dll
[Intel Corporation] [MurocApi Dynamic Link
Library] MD5=32EEF5AC23570B2295618A694B5D8741
SIZE=790528
%PROGRAMFILES%\Intel\Wireless\Bin\S24MUDLL.dll
[Intel Corporation] [Intel Mobile Unit Support
Service] MD5=45AF88F3FA53BB8933263C2A630ADB89
SIZE=172032
%PROGRAMFILES%\Intel\Wireless\Bin\RegSrvc.exe
[Intel Corporation] [Intel(R) PROSet/Wireless
Registry Service]
MD5=8477D7C3EE18513911547785A06EAF70 SIZE=483328
%PROGRAMFILES%\Unlocker\UnlockerHook.dll
MD5=78D62115F51B641A9F12AFDF50A352FC SIZE=4608
%PROGRAMFILES%\Malwarebytes' Anti-
Malware\mbamext.dll [Malwarebytes Corporation]
[Malwarebytes' Anti-Malware]
MD5=43169E9B8121AB037F49DAC91EE5DC66 SIZE=73360
%PROGRAMFILES%\IZArc\IZArcCM.dll
MD5=39DFCB1FDA8EC938E90C2CAD4AEF0E2B SIZE=617472
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFSServ.exe
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=49976054F72480E7BD7DD7F3A0451ED5 SIZE=798720
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSParts.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=0A28BB98E81FE2B4D06475B323B6F826
SIZE=1859584
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSNLS.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=060090C882B05E15A21090FAC0C4ECA4 SIZE=32768
%PROGRAMFILES%\TOSHIBA\ConfigFree\VENAPI.dll
[TOSHIBA] [TOSHIBA VENAPI]
MD5=68E922CAF28C5AC75713C38EB1A43C50 SIZE=139264
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFDropEx.dll
[TOSHIBA] [ConfigFree(TM)]
MD5=F83CEDC0BDE4EA183498A7B396856EF2 SIZE=57344
%SYSDIR%\TosBtAerialAPI.dll [TOSHIBA
CORPORATION.] [Bluetooth(TM) Stack for Windows
(R) by Toshiba]
MD5=635BE51F73CAA14ADA66AB1B8B470C0A SIZE=73728
%SYSDIR%\TosBtECCAPI.dll [TOSHIBA CORPORATION.]
[Bluetooth(TM) Stack for Windows(R) by Toshiba]
MD5=6860098EBDF05DA68F71F5A9C0AF0099 SIZE=69632
%PROGRAMFILES%\TOSHIBA\ConfigFree\TWLMAPI.dll
[TOSHIBA] [twlmapi Dynamic Link Library]
MD5=CEA174EA30D95B03E296B8906DD4F3ED
SIZE=1159168
%PROGRAMFILES%\TOSHIBA\ConfigFree\OpenProp.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=F88259E28C954C73F1E7394BA6B55CDC SIZE=57344
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFXFER.dll
[TOSHIBA CORPORATION] [ConfigFree]
MD5=F5ACC9CA2FF209BC409B315BA33E4BC9 SIZE=57344
%SYSDIR%\TSBWLS.dll [COMPAL ELECTRONIC INC.]
[TSBWLS Dynamic Link Library]
MD5=BA8DF1E786B30A5BC188D65486E95645 SIZE=24576
%SYSDIR%\EKECioCtl.dll [EKECioCtl Dynamic Link
Library] MD5=BD0B062A9FD4398E51EAD110F503A007
SIZE=24576
%SYSDIR%\EBLib.dll [EBLib Dynamic Link Library]
MD5=21FD368F8BA632D6D4522C5F8430CB61 SIZE=28672
%PROGRAMFILES%\Alwil Software\Avast4
\French\Lang.dll [ALWIL Software] [avast!
Antivirus] MD5=68D17141D79B4EFA70412DAE5DB68543
SIZE=2572288
%PROGRAMFILES%\TOSHIBA\ConfigFree\NDSTray.exe
[TOSHIBA CORPORATION] [ConfigFree(TM) Tray]
MD5=947625435C542A62B2703A61F9665B85 SIZE=978944
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFWAN.dll
[TOSHIBA CORPORATION] [ConfigFree(TM) WAN DLL]
MD5=0544108FA6859BEF5F29137F2FBCBA22 SIZE=974848
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFUPNP.dll
[TOSHIBA CORPORATION] [ConfigFree]
MD5=74ED6C7EDF2B5508B25B890454AC7B35 SIZE=32768
%PROGRAMFILES%\TOSHIBA\ConfigFree\CFP2API.dll
[TOSHIBA CORPORATION] [ConfigFree(TM)]
MD5=5186927C4F740FB6D683BBB406DCC4D5 SIZE=69632
%PROGRAMFILES%\TOSHIBA\ConfigFree\QCDPJ.dll
[Toshiba] [Toshiba QCDPJ]
MD5=EA872F0D31C9A5C5F8BF2B1A3A28D3D5 SIZE=172032
%SYSDIR%\hccutils.DLL [Intel Corporation]
[Intel(R) Common User Interface]
MD5=D0127023AF6070D5B479B1AE65B107A2 SIZE=102400
%SYSDIR%\igfxsrvc.dll [Intel Corporation]
[Intel(R) Common User Interface]
MD5=09A350F25D94D18190A8988E25671844 SIZE=46080
%SYSDIR%\igfxres.dll [Intel Corporation] [Intel
(R) Common User Interface]
MD5=AAF3461B06C18C6855B1ECF521C2494C SIZE=184320
%PROGRAMFILES%\Intel\Wireless\Bin\ZcSvcFRA.dll
[Intel Corporation] [ZeroCfgSvc Application]
MD5=4A34FF5CD0D7D27097563A66BF5F30F3 SIZE=65536
%PROGRAMFILES%\Intel\Wireless\Bin\FrWrkFRA.dll
[Intel Corporation] [Intel(R) PROSet/Wireless]
MD5=7A570A8B794E6CD716AF875F3F3084F7 SIZE=53248
%PROGRAMFILES%
\Intel\Wireless\Bin\FrameworkPlugins\ConnMgr.dll
[Intel Corporation] [Intel PROSet/Wireless]
MD5=512523E2A65778727A7A838F774B9A2F
SIZE=1548288
%PROGRAMFILES%\Intel\Wireless\Bin\IntWAFRA.dll
[Intel Corporation] [Intel PROSet/Wireless]
MD5=3A4EB6050C6664D204AB6027C0AAFB60 SIZE=401408
%PROGRAMFILES%\Search Settings\kb127
\SearchSettingsRes409.dll [Vendio Services,
Inc.] [Search Settings]
MD5=547BD4D968137ECCA42598A983E0D2D0 SIZE=50528
%PROGRAMFILES%
\Google\GoogleToolbarNotifier\3.1.807.1746
\gtn.dll [Google Inc.] [GoogleToolbarNotifier]
MD5=C287432FD819BB1E3A6AF2D3B73DF084 SIZE=130544
%PROGRAMFILES%\Veoh Networks\Veoh\BugSplat.dll
[BugSplat, LLC] [BugSplat Dynamic Link Library]
MD5=50A0A49F1901B56FC940B7A8076A8AD3 SIZE=227408
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\BlueSoleil.exe [IVT
Corporation.] [BlueSoleil]
MD5=39C3E3FDB5DDC7506110C77BFF262403 SIZE=661776
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\setup.dll [IVT
Corporation.] [BlueSoleil]
MD5=1B915385A08CAAA460E586130CB61188 SIZE=114761
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\btpcfg.dll [IVT
Corporation.] [BlueSoleil]
MD5=F03B517A820A6A184E9326DEA7FEE75B SIZE=299108
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\btwin.dll [IVT
Corporation.] [BlueSoleil]
MD5=7A5195733D7D7728822EB881BCB1E248 SIZE=131147
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\versit.dll [IVT
Corporation.] [BlueSoleil]
MD5=A9A1434C4B94351196DE168E47342EA2 SIZE=110661
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\btpres.dll [IVT
Corporation.] [BlueSoleil]
MD5=10062C12329C01522AF783113F7A96BF
SIZE=2338816
%PROGRAMFILES%\IVT
Corporation\BlueSoleil\Driver\USB\btcusb.dll
[IVT Corporation.] [IVT usb driver for Bluetooth
device] MD5=CEED0EA62631CD5FB964DAE7FACC7248
SIZE=51984
%SYSDIR%\lameACM.acm http://www.mp3dev.org/
[Lame MP3 codec]
MD5=22722B4E887BB95AB071542DE5A42C80 SIZE=839680
%SYSDIR%\ac3acm.acm [fccHandler] [AC-3 ACM
Codec] MD5=D95393B383FB3DB265836C84B53892A3
SIZE=118784
%PROGRAMFILES%\TOSHIBA\Bluetooth
Monitor\BtMon2.exe [TOSHIBA] [Bluetooth Monitor
2.0] MD5=547DE23D8D36FD1BBA618EE6A179674C
SIZE=65536
%PROGRAMFILES%
\InterVideo\Common\Bin\WinCinemaMgr.exe
[InterVideo Inc.] [WinCinema Manager for
InterVideo WinCinema products]
MD5=8A19ADA7FDA64C31AACB51A891C27BCB SIZE=278528
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\backWeb.dll [BackWeb
Technologies Inc.] [BackWeb]
MD5=84AFB4711D4109F29D881EA7CFC69F47
SIZE=2293804
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\bwsec.dll [BackWeb
Technologies Inc.] [BackWeb bwsec]
MD5=BB8BC9BC13D87B2C855B2BD50FBD1DCF SIZE=225335
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\clntutil.dll
MD5=F2D0AD019503C48D85C5F70771288B63 SIZE=61496
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\EN\ClientRc.dll [BackWeb
Technologies Inc.] [BackWeb]
MD5=9E2C13A26926EBB05015B8B41B4298C5 SIZE=172032
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\Program\BWfiles-8876480.dll
[Logitech Inc.] [Logitech Desktop Messenger]
MD5=8C620F16E1D024049046F93B12E38855 SIZE=28711
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\8.1.1.50-
8876480SL\Program\BWfiles.dll [BackWeb
Technologies Inc.] [BackWeb]
MD5=DAC29AD3DE12E0CAC510DE0FB1CBEC3B SIZE=159781
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\Program\SyncExt.dll [Logitech]
[Logitech Desktop Messenger]
MD5=13965F4C5201DB7FCB34EF8CC05E47B5 SIZE=149008
%SYSDIR%\RAMASST.exe [Matsushita Electric
Industrial Co., Ltd.]
MD5=5648152AD2CCAB0265EAB9711755F484 SIZE=155648
%PROGRAMFILES%\Alwil Software\Avast4
\French\langmai.dll [ALWIL Software] [avast!
Antivirus] MD5=2D1F08241B5B85920FD430054166C2CB
SIZE=61440
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\mpbtn.exe
MD5=056B62587DCCE5E9480745BE84A0B765 SIZE=192512
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\clientutil52.dll [Motive
Communications, Inc.] [Motive System]
MD5=2FBA68B1B780B5A16CAA07EA9FE44D45 SIZE=282624
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\AsstCatalog.dll
MD5=B92BFEA21487CFFF3619CC5E61260F8A SIZE=57344
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\resource.dll [Motive
Communications, Inc.] [Motive System]
MD5=85EF775E01F1B5003DEFEF0B03EEF65C SIZE=45056
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe
Systems, Inc.] [Shockwave Flash]
MD5=58F41CA8F9C2014709F9547B2B81A468
SIZE=3695008
%PROGRAMFILES%\Megaupload\Mega
Manager\MegaManager.exe [Megaupload Limited]
[Mega Manager]
MD5=4D5FFF2E8C2484E4C5DC335F6CBE8314
SIZE=1945600
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwutils.dll
MD5=06C8170366F01AEEB9B9D3FDBCAB309D SIZE=36864
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwcore.dll
MD5=2BACE2D1D25F234FF6012B4C5CDCB3D7 SIZE=151552
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwinit.dll
MD5=1920437AE454F93C530F255CDC3565D6 SIZE=16384
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwfile.dll
MD5=F5801D5AD4AE071F1ADF0A09D8B47707 SIZE=28672
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwtrans.dll
MD5=B40B2CAAC0B333EA48F0467CD38122D9 SIZE=18432
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwdir.dll
MD5=7913A2F0B249A5C9F27886FE0CC611C0 SIZE=18944
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwhtml.dll
MD5=81759E98C869E04175B26C0515015089 SIZE=61440
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwapp.dll
MD5=555A1D991A209D77F449768D24278B6B SIZE=61440
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwstream.dll
MD5=36904038C2B9510E95B632BA83C1CD0F SIZE=23552
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwhttp.dll
MD5=EE8AD16F8CB832F7C537DBC7833D72EA SIZE=81920
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwmime.dll
MD5=F5DEACFB135891C8351B03E59D3CD15D SIZE=30208
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwcache.dll
MD5=EB790CED0AAF138F48520B8A4140B5EA SIZE=24576
%PROGRAMFILES%\Megaupload\Mega
Manager\HS_REGEX.dll
MD5=2BCD870B3E27818D725C90663A553448 SIZE=62464
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwftp.dll
MD5=8361DEF4B7392110D7613FD8A87AC000 SIZE=33280
%PROGRAMFILES%\Megaupload\Mega
Manager\wwwssl.dll
MD5=0A7EC2AE589CFE093342A96022E3F16E SIZE=13312
%PROGRAMFILES%\Megaupload\Mega
Manager\SSLEAY32.dll
MD5=9E7AA75F2ABB7B182E3572A3BD13093F SIZE=159744
%PROGRAMFILES%\Megaupload\Mega
Manager\LIBEAY32.dll
MD5=DB4BA0130D2A4727ABE171750CF7031D SIZE=839680
%PROGRAMFILES%\Megaupload\Mega Manager\res.dll
[Megaupload Limited] [Mega Manager]
MD5=9502F45E2CFDA937B321FA3AC55B39AC SIZE=307200
%SYSDIR%\Macromed\Flash\Flash9f.ocx [Adobe
Systems, Inc.] [Shockwave Flash]
MD5=48FDF435B8595604E54125B321924510
SIZE=2991488
%PROGRAMFILES%\PANDO NETWORKS\PANDO\PANDO.EXE
TOSCDSPD.EXE
%PROGRAMFILES%\RayV\RayV\RayV.exe \background
CFSServ.exe -NoClient
NDSTray.exe
%SYSDIR%\mifolole.dll
%PROGRAMFILES%\Club-Internet\Dr Club
Internet\bin\matcli.exe [Motive Communications,
Inc.] [Motive System]
MD5=90AEBCCB2E6AB9180113F21792D11C32 SIZE=217088
%PROGRAMFILES%\Adobe\Acrobat 7.0
\Reader\reader_sl.exe [Adobe Systems
Incorporated] [Adobe Acrobat]
MD5=DFCB9ADE94A4F8A7C42EEF41101A30AD SIZE=29696
%PROGRAMFILES%\google\googletoolbar4.dll [Google
Inc.] [Barre d'outils Google pour IE]
MD5=6D44E0C3B43D27484FBB355E470C4188
SIZE=2436160
deskpan.dll
%SYSDIR%\TPprop.dll [COMPAL ELECTRONIC INC.]
[TPprop Module]
MD5=CEE772DE5965CFA8DDE9A04D130351A3 SIZE=94208
%PROGRAMFILES%\Sonic\RecordNow!\shlext.dll
[RecordNow!]
MD5=D19305A60C4E181F1CE1DAA8F45638BA SIZE=73728
%PROGRAMFILES%\Real\RealPlayer\rpshell.dll
[RealNetworks, Inc.] [RealPlayer]
MD5=D3EA9C1687A12608BF4D505EDAC585D6 SIZE=63040
%PROGRAMFILES%\Logitech\Video\Namespc2.dll
[Logitech Inc.] [Logitech QuickCam]
MD5=2263BE04A864489E2828A9C4A1EAA5E1 SIZE=135168
%PROGRAMFILES%\Windows
Live\Messenger\fsshext.8.5.1302.1018.dll
[Microsoft Corporation] [Messenger]
MD5=8BDE1F61DFBAAE7A2916170E8B75FE0F SIZE=329240
%PROGRAMFILES%\Windows Live\Photo
Gallery\WLXPhotoAcquireWizard.exe [Microsoft
Corporation] [Windows Live Photo Gallery]
MD5=47851C6AFE59E6B850D14E347A2FA4FC SIZE=229920
%SYSDIR%\rundll32.exe "C:\Program Files\Windows
Live\Photo
Gallery\WLXPhotoViewer.dll",PhotoViewerComServer
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C}
%SYSDIR%\rundll32.exe "C:\Program Files\Windows
Live\Photo
Gallery\WLXPhotoViewer.dll",PhotoViewerComServer
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C}
%SYSDIR%\rundll32.exe "C:\Program Files\Windows
Live\Photo
Gallery\WLXPhotoViewer.dll",PhotoViewerComServer
{00F374B7-B390-4884-B372-2FC349F2172B}
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLWIR.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=17412817CCA4D5CF610ADFF3FFC9E341 SIZE=777048
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLWHL.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=24B70851DDF6D620E8680C6BC69FD020 SIZE=416600
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLACT.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=E6B021E49A1027CA6CAF953128ABFFD2 SIZE=363352
%PROGRAMFILES%\MICROSOFT
INTELLIPOINT\IPCPLBTN.DLL [Microsoft
Corporation] [Microsoft IntelliPoint]
MD5=949B4467D13E025E0B0672C042673FC7 SIZE=629592
%PROGRAMFILES%\Microsoft Office\Office12
\ONFILTER.DLL [Microsoft Corporation] [Microsoft
Office OneNote]
MD5=23CD837C3E94BAF99C0B327C660D1DA6 SIZE=74800
%SYSDIR%\igfxdev.dll [Intel Corporation] [Intel
(R) Common User Interface]
MD5=58C8809D7486DB2D9C6A24A8630A5478 SIZE=204800
%SYSDIR%\DRIVERS\AegisP.sys [Cisco Systems,
Inc.] [AEGIS Protocol 3.7.5.0]
MD5=023867B6606FBABCDD52E089C4A507DA SIZE=21361
%SYSDIR%\DRIVERS\AGRSM.sys [Agere Systems]
[Agere SoftModem Driver]
MD5=029E01CB2938BEC5AF31BF47B6AF0159
SIZE=1066278
%SYSDIR%\drivers\ALCXWDM.SYS [Realtek
Semiconductor Corp.] [Windows (R) WDM driver for
Realtek AC'97 Audio(HRTF data Copyright 1994 by
MIT Media Lab)]
MD5=35045A23957A71BA649740741E69408C
SIZE=2324480
%SYSDIR%\DRIVERS\Apfiltr.sys [Alps Electric Co.,
Ltd.] [Alps Pointing-device Driver for Windows
2000/XP] MD5=87EC3FDCAF6C5052E2E72B861DEDD3D3
SIZE=101874
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\DRIVERS\avgarkt.sys [GRISOFT, s.r.o.]
[AVG Anti-Rootkit]
MD5=E8054A423E5D2BDAE6062BAB6DA159C4 SIZE=5632
%SYSDIR%\DRIVERS\AvgArCln.sys [GRISOFT, s.r.o.]
[AVG7 Clean Driver]
MD5=EC08D1625F5C6CF2A57B79EB35186F8C SIZE=3968
%SYSDIR%\DRIVERS\blueletaudio.sys [IVT
Corporation.] [Bluelet Audio Driver]
MD5=852A1BD08E7DFEB9E30B5440881C0501 SIZE=34704
%SYSDIR%\DRIVERS\BlueletSCOAudio.sys [IVT
Corporation.] [Bluelet Audio Driver]
MD5=8FC27B12A02B43947787F0EF1885DF9B SIZE=27792
%SYSDIR%\DRIVERS\btnetdrv.sys [IVT Corporation.]
[Bluetooth PAN Network Adapter Driver]
MD5=C5CCE2B26F73F8CF7F3C82159E79AA08 SIZE=18320
%SYSDIR%\Drivers\vbtenum.sys [IVT Corporation.]
[Bluetooth HID Enumerator Driver]
MD5=CE643D0918123D76A5CAAB008FCA9663 SIZE=20880
%SYSDIR%\Drivers\BTHidMgr.sys [IVT Corporation.]
[Bluetooth HID Manager Device Driver]
MD5=DFCA4FE4C8AEC786B4D0F432EB730F48 SIZE=35600
%SYSDIR%\svchost -k DcomLaunch
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\drivers\drvmcdb.sys [Sonic Solutions]
MD5=96BC8F872F0270C10EDC3931F1C03776 SIZE=88352
%SYSDIR%\drivers\drvnddm.sys [Sonic Solutions]
MD5=5AFBEC7A6AC61B211633DFDB1D9E0C89 SIZE=40544
%SYSDIR%\DRIVERS\igxpmp32.sys [Intel
Corporation] [Intel Graphics Accelerator Drivers
for Windows NT(R)]
MD5=2AAE7BE67911F4AEC9AD28E9CFB9096F
SIZE=5672032
%SYSDIR%\drivers\iviaspi.sys [InterVideo, Inc.]
[InterVideo ASPI Shell]
MD5=F59C3569A2F2C464BB78CB1BDCDCA55E SIZE=21060
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\Drivers\meiudf.sys [Matsushita Electric
Industrial Co.,Ltd.]
MD5=7EFAC183A25B30FB5D64CC9D484B1EB6 SIZE=102384
%SYSDIR%\DRIVERS\netdevio.sys [TOSHIBA
Corporation.] [TOSHIBA Network Device Usermode
I/O protocol]
MD5=1265EB253ED4EBE4ACB3BD5F548FF796 SIZE=12032
%SYSDIR%\Drivers\pcouffin.sys [VSO Software]
[Patin couffin engine]
MD5=5B6C11DE7E839C05248CED8825470FEF SIZE=47360
%SYSDIR%\svchost -k rpcss
%SYSDIR%\DRIVERS\Rtlnicxp.sys [Realtek
Semiconductor Corporation] [Realtek 10/100/1000
NIC Family all in one NDIS Driver]
MD5=7F0413BDD7D53EB4C7A371E7F6F84DF1 SIZE=74496
%SYSDIR%\DRIVERS\s24trans.sys [Intel
Corporation] [Intel Wireless LAN Packet Driver]
MD5=15F598DDAAFAE02102438F09D4D14461 SIZE=12288
%SYSDIR%\Drivers\SSIoMngr.sys [COMPAL ELECTRONIC
INC.] [Compal IoManager Application]
MD5=79B7AF340D55861DF1D69E7BAC975FCC SIZE=6400
%SYSDIR%\drivers\sscdbhk5.sys [Sonic Solutions]
MD5=98625722AD52B40305E74AAA83C93086 SIZE=5627
%SYSDIR%\drivers\ssrtln.sys [Sonic Solutions]
MD5=D79412E3942C8A257253487536D5A994 SIZE=23545
%SYSDIR%\svchost.exe -k imgsvc
%SYSDIR%\dla\tfsnboio.sys [Sonic Solutions]
MD5=D0177776E11B0B3F272EEBD262A69661 SIZE=25725
%SYSDIR%\dla\tfsncofs.sys [Sonic Solutions]
MD5=599804BC938B8305A5422319774DA871 SIZE=34845
%SYSDIR%\dla\tfsndrct.sys [Sonic Solutions]
MD5=A1902C00ADC11C4D83F8E3ED947A6A32 SIZE=4125
%SYSDIR%\dla\tfsndres.sys [Sonic Solutions]
MD5=E2260A2BB1B24526BFAA7DF426B69B20 SIZE=2273
%SYSDIR%\dla\tfsnifs.sys [Sonic Solutions]
MD5=C4F2DEA75300971CDAEE311007DE138D SIZE=86876
%SYSDIR%\dla\tfsnopio.sys [Sonic Solutions]
MD5=272925BE0EA919F08286D2EE6F102B0F SIZE=15069
%SYSDIR%\dla\tfsnpool.sys [Sonic Solutions]
MD5=7B7D955E5CEBC2FB88B03EF875D52A2F SIZE=6365
%SYSDIR%\dla\tfsnudf.sys [Sonic Solutions]
MD5=E3D01263109D800C1967C12C10A0B018 SIZE=98716
%SYSDIR%\dla\tfsnudfa.sys [Sonic Solutions]
MD5=B9E9C377906E3A65BC74598FFF7F7458 SIZE=100605
%SYSDIR%\drivers\tifm21.sys [Texas Instruments]
[Texas Instruments PCIxx21/PCIxx12 Integrated
FlashMedia Controller]
MD5=0EDC3CF7B38F4260EB006C38E4A44DE4 SIZE=162176
%SYSDIR%\Drivers\TPwSav.sys [TOSHIBA]
MD5=F163E994D26C2B17FEE748FA84FBDBA5 SIZE=9600
%SYSDIR%\DRIVERS\Tvs.sys [TOSHIBA Corporation]
[Audio Filter]
MD5=925B851B10EEFECE7ED6B9A1C8873135 SIZE=30592
%SYSDIR%\DRIVERS\VComm.sys [IVT Corporation.]
[Bluetooth Serial Port Driver]
MD5=51750B0539986186C6931FC40D171521 SIZE=34448
%SYSDIR%\Drivers\VcommMgr.sys [IVT Corporation.]
[Bluetooth VcommMgr Driver]
MD5=6D9C891C0A761AFED1F3609C2E56F2B9 SIZE=44304
%SYSDIR%\svchost.exe -k WudfServiceGroup
%PROGRAMFILES%\Logitech\Desktop
Messenger\8876480\Program\GAPlugProtocol-
8876480.dll [Logitech Inc.] [Logitech Desktop
Messenger] MD5=8C620F16E1D024049046F93B12E38855
SIZE=28711
%PROGRAMFILES%\Microsoft Office\Office12
\GrooveSystemServices.dll [Microsoft
Corporation] [GrooveSystemServices Module]
MD5=C48CBBD38D7FBB0E86F4364062EBC66E SIZE=224128
%PROGRAMFILES%\Windows
Live\Messenger\msgrapp.8.5.1302.1018.dll
[Microsoft Corporation] [Messenger]
MD5=56319E6B4D190A2DEB4463A9CE4D4F74 SIZE=66072
%WINDIR%\AGRSMMSG.exe [Agere Systems] [Agere
SoftModem Messaging Applet]
MD5=B2ED4020EE2A9446649CE6B0A918C91C SIZE=88358
%PROGRAMFILES%\Lavasoft\Ad-Aware SE Personal\Ad
-Aware.exe [Lavasoft Sweden] [Lavasoft Ad-Aware
SE] MD5=1B0EDBF799B57EAD6EF68A82906C2097
SIZE=824832
%SYSDIR%\pxcpyi64.exe [Sonic Solutions]
MD5=81647023B248DE7880FAB1FC4185E6E4 SIZE=120304
%SYSDIR%\vxblock.dll [Sonic Solutions]
MD5=E9DECCCF20DEB7D5E904F35A7C483EAD SIZE=88560
%WINDIR%
\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e
3b_8.0.50727.762_x-ww_91481303\mfc80ITA.dll
[Microsoft Corporation] [Microsoft® Visual
Studio® 2005]
MD5=CB23B162AC655F24C6711A5F5DF348C6 SIZE=61440
%WINDIR%
\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_
8.0.50727.762_x-ww_3bf8fa05\mfc80.dll [Microsoft
Corporation] [Microsoft® Visual Studio® 2005]
MD5=1B7524806D0270B81360C63A2FA047CB
SIZE=1101824
%PROGRAMFILES%\Java\jre1.6.0_07\bin\JdbcOdbc.dll
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=F708430AE09C4102933E24CD6D12780D
SIZE=36352
%PROGRAMFILES%\Java\jre1.6.0_07\bin\dcpr.dll
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=D6E7FFCD38ECDFE4BD8DCE29D8D1A654
SIZE=143360
%PROGRAMFILES%\Java\jre1.6.0_07\bin\ioser12.dll
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=5CF15BC4493299F6645DB27B51278D2A
SIZE=12800
%PROGRAMFILES%\Java\jre1.6.0_07\bin\javacpl.cpl
[Sun Microsystems, Inc.] [Java(TM) Platform SE 6
U7] MD5=370716E3CA99E6A4346F272DA56017C1
SIZE=73728
%PROGRAMFILES%\Java\jre1.6.0_07
\bin\policytool.exe [Sun Microsystems, Inc.]
[Java(TM) Platform SE 6 U7]
MD5=1C0C6888952D9EC22A7B5C6FAD0E8160 SIZE=25600
%SYSDIR%\MFC71DEU.DLL [Microsoft Corporation]
[Microsoft® Visual Studio .NET]
MD5=C94D9D5B96D385586063093BAAD8F206 SIZE=65536
%COMMONFILES%\Microsoft
Shared\GRPHFLT\CGMIMP32.FLT [Microsoft
Corporation] [2007 Microsoft Office system]
MD5=ED6FD771408178CECC82E1D84BEBF196 SIZE=290680
%COMMONFILES%\Microsoft Shared\MODI\12.0
\BINDER.DLL [ScanSoft, Inc.] [ScanSoft API]
MD5=623BFFC21F6258855673B751CC81E2DA SIZE=22936
%COMMONFILES%\Microsoft Shared\MODI\12.0
\FORM.DLL [Tsinghua/Wintone and ScanSoft, Inc.]
[Asian OCR for ScanSoft API]
MD5=51B3711D0BC33C6BD9AD3461DC7551C4 SIZE=78728
%COMMONFILES%\Microsoft Shared\MODI\12.0
\REVERSE.DLL [Tsinghua/Wintone and ScanSoft,
Inc.] [Asian OCR for ScanSoft API]
MD5=4EFF9C4F83DFCC7D902C588AF2CB4349 SIZE=22416
%COMMONFILES%\Microsoft Shared\MODI\12.0
\THOCR.PSP [ScanSoft, Inc.] [ScanSoft API]
MD5=FDD07C0A5B579645EFECBC304D9DA32B SIZE=190464
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACECORE.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=77B7089D98E0CFABBB2EE56B8579CF18
SIZE=1754536
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEES.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=9584476B8082C208B6206D9B5B810538 SIZE=193992
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEODDBS.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=63D501D1AAF0B91BF66CF7DD203AC5D3 SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEODEXL.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=6014430D5B1406BE794AA8FD6EE756C9 SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEODTXT.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=E41A3724A30C92353FD9151A8F687DEC SIZE=17800
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEPDE.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=3569A008EF6EA8A713E37C2AE508FFAF SIZE=394688
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACER2X.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=C9EA14E222E1193AD172838EE493D601 SIZE=263616
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEREP.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=9C82A5B565FFEB99F98F85370BF13124 SIZE=554440
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEWDAT.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=B574E857BA27BD814D4B1DCD76A8375B SIZE=826232
%COMMONFILES%\Microsoft Shared\OFFICE12
\ACEWSS.DLL [Microsoft Corporation] [Microsoft
Office System 2007]
MD5=FA7748447F93D72F4DC5A0F12AD9C452 SIZE=201664
%COMMONFILES%\Microsoft Shared\OFFICE12
\LBGHOST.DLL [Microsoft Corporation] [Microsoft
Office Program Recovery]
MD5=1634146F136AD3CCA799C1E5137A82AE SIZE=70976
%COMMONFILES%\Microsoft Shared\OFFICE12
\MSOMSE.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=7D03DEF7CD3597DAF8EA663DC4F3B463 SIZE=66368
%COMMONFILES%\Microsoft Shared\OFFICE12\MSSH.DLL
[Microsoft Corporation] [2007 Microsoft Office
system] MD5=7F8223AE42E47C9EAD7B1EDEE3806DEE
SIZE=43832
%COMMONFILES%\Microsoft Shared\OFFICE12
\MSSOAP30.DLL [Microsoft Corporation] [Microsoft
Office Soap SDK]
MD5=8E72F01D9B2C5F120486B3A8C5491D93 SIZE=507768
%COMMONFILES%\Microsoft Shared\OFFICE12
\OFFLB.EXE [Microsoft Corporation] [Microsoft
Office Program Recovery]
MD5=64865C2D27EFA61AF879B665ED676966 SIZE=556424
%COMMONFILES%\Microsoft Shared\OFFICE12
\WISC30.DLL [Microsoft Corporation] [Microsoft
Office Soap SDK 3.0]
MD5=9E8A7DABAF456A67798929A4C4F06218 SIZE=123720
%COMMONFILES%\Microsoft Shared\PROOF\MSHY3ES.DLL
[Spanish Hyphenation Engine]
MD5=E6B933E95B55D65A64FB8AFF60FD42E9 SIZE=919696
%COMMONFILES%\Microsoft Shared\Smart
Tag\FPERSON.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=F1D0AF8645A1B9AB82470F409F42CE6E SIZE=149816
%COMMONFILES%\System\Ole DB\msmgdsrv.dll
[Microsoft Corporation] [Microsoft SQL Server
Analysis Services]
MD5=30982CC1E54A6D33C84010415289007F
SIZE=6040432
%PROGRAMFILES%\Microsoft Office\Office12
\ACCVDT.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=CCA024C8B032EFEE7E8AC932ED1BA63D
SIZE=3135304
%PROGRAMFILES%\Microsoft Office\Office12
\CDLMSO.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=BA9EC8513C365E999FA1E9F823D2FA68 SIZE=402784
%PROGRAMFILES%\Microsoft Office\Office12
\GREN50.OLB [Microsoft Corporation] [Microsoft
Graph] MD5=998732254D8D7E19EB75083657756635
SIZE=57344
%PROGRAMFILES%\Microsoft Office\Office12
\MLCFG32.CPL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=CD2E930E206F5D6647C12C0BCB614101 SIZE=83264
%PROGRAMFILES%\Microsoft Office\Office12
\MSCAL.OCX [Microsoft Corporation] [Contrôle
Calendrier Microsoft]
MD5=C76EC546CB449D19D2EBEE8E4BDFF728 SIZE=113024
%PROGRAMFILES%\Microsoft Office\Office12
\MSODCW.DLL [Microsoft Corporation] [Microsoft
Office Disk Cleanup Wizard]
MD5=AED71BD7CFE150290A53B8E3B6F3E0D1 SIZE=431456
%PROGRAMFILES%\Microsoft Office\Office12
\MSPST32.DLL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=4909A838F2BD9C4ED7CF7EFFDF3F1E15
SIZE=1110112
%PROGRAMFILES%\Microsoft Office\Office12
\NAME.DLL [Microsoft Corporation] [2007
Microsoft Office system]
MD5=1C7A4288196FE72EF9AB885CF047C67C SIZE=68464
%PROGRAMFILES%\Microsoft Office\Office12\OIS.EXE
[Microsoft Corporation] [Microsoft Office
Picture Manager]
MD5=34331352E23FE6219F517C1709E63C61 SIZE=277384
%PROGRAMFILES%\Microsoft Office\Office12
\OUTLPH.DLL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=F63AD09A21D6FD6E1E14D6666799380D SIZE=180800
%PROGRAMFILES%\Microsoft Office\Office12
\RECALL.DLL [Microsoft Corporation] [Microsoft
Office Outlook]
MD5=4F296FD5CF0F0790E221CFBFCAD800E2 SIZE=39208
%PROGRAMFILES%\Microsoft Office\Office12
\VPREVIEW.EXE [Microsoft Corporation] [2007
Microsoft Office system]
MD5=16110CC8422078F4707895CAAB470BFE SIZE=33080
%PROGRAMFILES%\Microsoft Office\Office12
\VVIEWDWG.DLL [Microsoft Corporation]
[Microsoft® Office Visio® 2007]
MD5=46C669646C7BE721D1C73D08FC70772A
SIZE=1846160
%PROGRAMFILES%\Microsoft Office\Office12
\WINWORD.EXE [Microsoft Corporation] [2007
Microsoft Office system]
MD5=55A949AB657322ED818F8BFD786D8573 SIZE=349720
%PROGRAMFILES%\Microsoft Office\Office12
\XLCALL32.DLL [Microsoft Corporation] [Microsoft
Office Excel]
MD5=F1446D85469492DEEC3D4E91C7028911 SIZE=13368
%PROGRAMFILES%\Microsoft Office\Office12
\nlsdata0000.dll [Microsoft Corporation]
[Natural Language Components]
MD5=4BE858FC7835BEFE6A5A6AB669805016
SIZE=1512304
%PROGRAMFILES%\Microsoft Works\ltkrn13n.dll
[LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for
Win32] MD5=9F55BFD2C68DDD94F261B4E7A177042B
SIZE=468568
%SYSDIR%\SCP32.DLL [Microsoft Corporation]
[Microsoft Visual Basic for Applications]
MD5=781BB5095E39817469AB034138C07EBE SIZE=15872
%SYSDIR%\THREED32.OCX [Sheridan Software
Systems, Inc.] [Microsoft Visual Basic]
MD5=A9A7BA22719F38BC03A914F6EE59AF2F SIZE=200704
%SYSDIR%\tabctl32.ocx [Microsoft Corporation]
[TabCtl32 Object Library]
MD5=DC925B6D77BA9ECB532E2F6750BE943B SIZE=224016
End of Report
Suppression:
Préparation…
Création d'un point de restauration
Supprimer WhenU.SaveNow
Les fichiers sélectionnés ont été supprimés.:
C:\Program Files\vvsn\vvsn.cfg
Supprimer le répertoire: C:\Program
Files\vvsn\
Supprimer Ircfast
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\Favoris\Jeux.url
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\Favoris\Traducteur.url
Supprimer Trojan.Downloader.Agent.aaar
Les fichiers sélectionnés ont été supprimés.:
C:\Program Files\Fichiers
communs\Real\GToolbar\GoogleToolbarInstaller.exe
Supprimer Affiliate tracking cookie
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@2o7[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@ads.pointroll[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@advertising[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@apmebf[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@atdmt[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@doubleclick[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@mediaplex[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@serving-sys[2].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@spaces.live[1].txt
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\cookies\satellite_m70-169@statse.webtrendslive
[2].txt
Supprimer AdTool.MyWebSearch.bm
Les fichiers sélectionnés ont été supprimés.:
C:\Documents and Settings\satellite m70-169
\Local Settings\Temp\NERO13356\Toolbar.exe
Supprimer Invalid Startup Items
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un Pando
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un toscdspd
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un BgMonitor_{79662E04-7C6C-4d9f-84C7-
88D8A56B10AA}
Suppression de la clé registre :
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un RayV
Suppression de la clé registre :
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un CFSServ.exe
Suppression de la clé registre :
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un NDSTray.exe
Suppression de la clé registre :
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\R
un guruzuyafa
Fermeture du point de restauration système
Analyse(s) terminée(s)