Ver, comment le supprimer! Help!
RésoluJ'ai chopé un ver du nom de Backdoor.VanBot.DW.Dam.
Moon anti-virus ne peux le supprimer car il est dans les archive;
Je possède Windows vista.
Comment puis-je le supprimer svp? Je n'y connais pratiquement rien en informatique et j'ai besoin d'aide!
Configuration: Windows Vista Firefox 3.5.2
52 réponses
Le problème concerne la suppression du ver Backdoor.VanBot.DW.Dam sur un système Windows Vista lorsque l’antivirus ne peut pas enlever le malware parce qu’il est contenu dans des archives. Plusieurs solutions visent à contourner le blocage et à nettoyer, notamment l’analyse hors ligne via DiagHelp puis l’emploi de ComboFix et MBAM pour détecter et supprimer les malwares. D’autres approches recommandent d’activer temporairement les droits administrateur, d’afficher les fichiers système cachés, puis de lancer des scans supplémentaires et de retirer les cracks ou barres associées. En dernier lieu, des conseils insistent sur la mise à jour des outils et sur la prudence lors des téléchargements pour éviter une réinfection et améliorer la stabilité système.
-
Contributeur sécuritéBonsoir ;
Télécharge DiagHelp.zip de Malekal_morte sur ton bureau - Tuto : http://www.malekal.com/DiagHelp/DiagHelp.php
* Ne double-clic pas dessus !! Fais un clic droit sur le fichier et extraire tout
* Un nouveau dossier chercher va être créer DiagHelp
* Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
* Une fenêtre va s'ouvrir, choisis l'option 1
* L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande.
* A la fin de l'analyse, il te sera redemandé de redémarrer l'ordinateur.
* Une fois l'ordinateur redémarré le rapport va apparaître sur le bloc-note.. Ce dernier se trouve sur C:\resultat.txt
* Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :
* Dans le bloc-note, cliquez sur le menu Edition / Sélectionner tout
* A nouveau menu Edition / copier
* Dans un nouveau message ici, faire un clic droit / coller
==================
Ensuite :
Télécharges ComboFix à partir d'un de ces liens :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
https://forospyware.com
http://www.geekstogo.com/forum/files/file/197-combofix-by-subs/
Et important, enregistre le sur le bureau.
Avant d'utiliser ComboFix :
? Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.
? Désactive provisoirement et seulement le temps de l'utilisation de ComboFix,
la protection en temps réel de ton Antivirus et de tes Antispywares,
qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt,.
est automatiquement sauvegardé et rangé à C:\Combofix.txt)
? Réactive la protection en temps réel de ton Antivirus et de tes Antispywares,
avant de te reconnecter à internet.
? Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
-
ça marche pas, ça me dit qu'il me manque des fichier pour DiagHelp...
-
Puis-je faire directement l'étape de Combo Fix sans passer par DiagHelp pour supprimer le ver?
(il semble que mon ordi a détecter et supprimer un cheval de troie dans DiaHelp et je crois que c'est pour ça que ça marche pas)
édit: désolée si je suis lourde mais... je sais pas quoi faire! ça me stress à mort ce truc! Je sais même pas si c'est dangereux ou non et ce que ça peut me faire! T-T )
édit 2: Re-désolée, mais aidez-moi s'il vous plait... je sais bien que les gens on leur vie à coté et ne sont pas plantée 24h/24 devant un ordi mais là, ce truc me stress tellement que j'en ai les larmes aux yeux et je panique, ne sachant que faire... )
édit 3: Bon, j'ai chialé un bon coup et ça va mieux mais je stress toujours autant... J'ai lancé un scan de Stinger et de McAfee SecurityCenter.
Ces deux programmes pourront-ils me supprimer ce ver ou je dois faire autre chose?
(C'est BitDefender qui m'avait signaler le ver sans pouvoir me le supprimer)
(autre nom du ver: W32/Agobot-Q )
[help... et sorry, je sais que je suis lourde là... Mais je stress trop... T-T Désolée.] -
Contributeur sécuritéPoste moi le rapport de Combofix mais ne lance pas un bataillon de logiciels "anti-tout" au risque de tomber sur un rogue !
-
Ok, merci, je vais faire ça.
-
(dsl, je sais, je suis vraiment une m*rde en informatique mais... comment je désactive provisoirement mes anti-virus avant de lancer Combofix? ... merci)
(j'ai BitDefendre, McAfee SecurityCenter et Stinger)
[je suis vraiment obligée de le faire? je risque rien? dsl, je dois te paraitre énervante mais je stress un max pour mon ordi... -_-" ] -
Contributeur sécuritéRegarde dans ta barre de tache pour désactiver ton antivirus (clic droit).
-
Y a pas "désactiver" avec clic droit.
Pour McAfee je pense pouvoir le faire manuellement mais pour Bitdefender je vois pas vraiment...
je suis vraiment obliger de les désactiver? -
Contributeur sécuritéPour bitdefender ,va dans le gestionnaire de taches puis processus et désactive : bdagent.exe
Je te reprend demain .....Je vais o dodo -
ok, merci.
Juste une chose, ça craint rien si j'éteind mon ordi après? -
Voilà le rapport:
ComboFix 09-08-04.04 - Leslie 05/08/2009 23:45.1.2 - NTFSx86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6001.1.1252.33.1036.18.3061.1374 [GMT 2:00]
Running from: c:\users\Leslie\Desktop\Desktop\ComboFix.exe
AV: Antivirus BitDefender *On-access scanning disabled* (Updated) {6C4BB89C-B0ED-4F41-A29C-4373888923BB}
FW: Pare-feu BitDefender *disabled* {4055920F-2E99-48A8-A270-4243D2B8F242}
SP: BitDefender AntiSpam *disabled* (Updated) {8B2012EC-32D4-494F-BC03-832DB3BDF911}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\$recycle.bin\S-1-5-21-937169961-4036166135-2064105715-500
c:\program files\Dealio Toolbar
c:\program files\Dealio Toolbar\config.ini
c:\program files\Dealio Toolbar\DealioToolbarIE.dll
c:\program files\Dealio Toolbar\Res\amazon.gif
c:\program files\Dealio Toolbar\Res\apple.gif
c:\program files\Dealio Toolbar\Res\barnes.gif
c:\program files\Dealio Toolbar\Res\bestbuy.gif
c:\program files\Dealio Toolbar\Res\dealio_logo.gif
c:\program files\Dealio Toolbar\Res\dealio_logo_hover.gif
c:\program files\Dealio Toolbar\Res\ebay.gif
c:\program files\Dealio Toolbar\Res\icon_settings.gif
c:\program files\Dealio Toolbar\Res\macys.gif
c:\program files\Dealio Toolbar\Res\newegg.gif
c:\program files\Dealio Toolbar\Res\overstock.gif
c:\program files\Dealio Toolbar\Res\search-button-hover.gif
c:\program files\Dealio Toolbar\Res\search-button.gif
c:\program files\Dealio Toolbar\Res\search-chevron-hover.gif
c:\program files\Dealio Toolbar\Res\search-chevron.gif
c:\program files\Dealio Toolbar\Res\search_amazon.gif
c:\program files\Dealio Toolbar\Res\search_dealio.gif
c:\program files\Dealio Toolbar\Res\search_ebay.gif
c:\program files\Dealio Toolbar\Res\search_yahoo.gif
c:\program files\Dealio Toolbar\Res\separator.gif
c:\program files\Dealio Toolbar\Res\target.gif
c:\program files\Dealio Toolbar\Res\walmart.gif
c:\program files\Dealio Toolbar\Res\widgets.xml
c:\program files\Dealio Toolbar\SearchSettingsKit.exe
c:\program files\Dealio Toolbar\WidgiHelper.exe
c:\program files\Search Settings
c:\program files\Search Settings\kb128\SearchSettings.dll
c:\program files\Search Settings\kb128\SearchSettingsRes409.dll
c:\program files\Search Settings\SearchSettings.exe
c:\windows\Temp\log.txt
.
((((((((((((((((((((((((( Files Created from 2009-07-05 to 2009-08-05 )))))))))))))))))))))))))))))))
.
2009-08-05 21:52 . 2009-08-05 21:52 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-08-05 20:05 . 2009-08-05 20:32 -------- d-----w- c:\program files\Fighters
2009-08-05 20:05 . 2009-08-05 20:05 -------- d-----w- c:\programdata\Fighters
2009-08-05 18:15 . 2009-03-27 15:38 366344 ----a-w- c:\users\Leslie\AppData\Roaming\HouseCall 6.6\AU_Log\TempSave\6980_6308\2\554172416\tsc.exe
2009-08-05 18:11 . 2009-08-05 18:11 183356 ----a-w- c:\users\Leslie\AppData\Roaming\HouseCall 6.6\Uninstaller.exe
2009-08-05 18:11 . 2009-08-05 18:17 -------- d-----w- c:\users\Leslie\AppData\Roaming\HouseCall 6.6
2009-08-05 18:04 . 2009-08-05 18:04 -------- d-----w- c:\programdata\CheckPoint
2009-08-05 18:04 . 2009-08-05 18:04 -------- d-----w- c:\program files\Zone Labs
2009-08-05 17:35 . 2009-08-05 18:04 -------- d-----w- c:\windows\Internet Logs
2009-08-05 13:23 . 2009-08-05 13:23 -------- d-----w- c:\users\Leslie\AppData\Roaming\InstallShield
2009-08-05 12:34 . 2006-08-21 13:58 4874240 ----a-w- c:\windows\system32\DSE2_DFT.dll
2009-08-05 12:34 . 2006-07-06 13:25 200704 ----a-w- c:\windows\system32\libguide40.dll
2009-08-01 14:39 . 2005-05-26 13:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2009-07-29 10:05 . 2009-07-29 10:05 -------- d-----w- c:\programdata\DAEMON Tools Lite
2009-07-29 10:05 . 2009-07-29 10:05 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2009-07-29 10:05 . 2009-07-29 10:05 -------- d-----w- c:\program files\DAEMON Tools Lite
2009-07-29 09:51 . 2009-07-29 09:51 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-07-29 09:51 . 2009-07-31 15:38 -------- d-----w- c:\users\Leslie\AppData\Roaming\DAEMON Tools Lite
2009-07-27 08:36 . 2009-07-27 08:36 -------- d-----w- c:\program files\RPG Maker VX
2009-07-26 17:31 . 2009-08-01 13:36 -------- d-----w- c:\users\Leslie\scan
2009-07-24 21:04 . 2009-08-05 12:28 -------- d-----w- c:\users\Leslie\Azureus Download
2009-07-24 20:15 . 2009-07-24 20:15 -------- d-----w- c:\programdata\WindowsSearch
2009-07-24 11:28 . 2009-07-24 11:28 471664 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtb9CCD.tmp.exe
2009-07-22 10:39 . 2008-06-20 01:14 97800 ----a-w- c:\windows\system32\infocardapi.dll
2009-07-22 10:39 . 2008-06-20 01:14 105016 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-07-22 10:39 . 2008-06-20 01:14 622080 ----a-w- c:\windows\system32\icardagt.exe
2009-07-22 10:39 . 2008-06-20 01:14 43544 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2009-07-22 10:39 . 2008-06-20 01:14 11264 ----a-w- c:\windows\system32\icardres.dll
2009-07-22 10:39 . 2008-06-20 01:14 781344 ----a-w- c:\windows\system32\PresentationNative_v0300.dll
2009-07-22 10:39 . 2008-06-20 01:14 326160 ----a-w- c:\windows\system32\PresentationHost.exe
2009-07-22 10:31 . 2008-07-27 18:03 96760 ----a-w- c:\windows\system32\dfshim.dll
2009-07-22 10:31 . 2008-07-27 18:03 282112 ----a-w- c:\windows\system32\mscoree.dll
2009-07-22 10:31 . 2008-07-27 18:03 41984 ----a-w- c:\windows\system32\netfxperf.dll
2009-07-22 10:31 . 2008-07-27 18:03 158720 ----a-w- c:\windows\system32\mscorier.dll
2009-07-22 10:31 . 2008-07-27 18:03 83968 ----a-w- c:\windows\system32\mscories.dll
2009-07-21 14:05 . 2009-07-21 14:05 -------- d-----w- c:\programdata\Azureus
2009-07-21 14:04 . 2009-08-04 23:41 -------- d-----w- c:\users\Leslie\AppData\Roaming\Azureus
2009-07-21 14:02 . 2009-07-21 14:02 -------- d-----w- c:\program files\Vuze
2009-07-21 13:39 . 2009-07-21 13:39 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-07-21 13:39 . 2009-07-21 13:39 -------- d-----w- c:\program files\Java
2009-07-20 18:39 . 2009-07-20 18:39 -------- d-----w- c:\program files\Microsoft FrontPage
2009-07-20 18:36 . 2009-07-20 18:36 -------- d-----w- c:\users\Leslie\AppData\Roaming\Microsoft Web Folders
2009-07-20 15:51 . 2009-07-20 15:51 -------- d-----w- c:\program files\SiteAdvisor
2009-07-20 11:30 . 2009-07-20 11:30 -------- d-----w- c:\users\Leslie\AppData\Roaming\Media Player Classic
2009-07-20 11:29 . 2009-07-20 11:30 -------- d-----w- c:\program files\Satsuki Decoder Pack
2009-07-20 10:28 . 2008-10-22 01:22 2048 ----a-w- c:\windows\system32\tzres.dll
2009-07-19 13:07 . 2009-07-19 13:07 -------- d-----w- c:\programdata\FLEXnet
2009-07-19 12:37 . 2009-07-19 12:37 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2009-07-19 12:31 . 2009-07-19 12:31 -------- d-----w- c:\programdata\Corel
2009-07-19 12:31 . 2009-07-19 12:31 -------- d-----w- c:\program files\Corel
2009-07-19 12:20 . 2009-07-19 12:21 -------- d-----w- c:\program files\PENSUITEPRO
2009-07-19 12:18 . 2009-07-19 12:20 -------- d-----w- c:\program files\G-PEN SERIES
2009-07-19 12:00 . 2009-01-22 13:28 290816 ----a-w- c:\windows\system32\decdll.dll
2009-07-19 12:00 . 2009-07-19 12:00 -------- d-----w- c:\program files\Free Video Converter
2009-07-19 10:40 . 2009-04-30 12:37 428544 ----a-w- c:\windows\system32\EncDec.dll
2009-07-19 10:40 . 2009-04-30 12:37 293376 ----a-w- c:\windows\system32\psisdecd.dll
2009-07-19 10:36 . 2009-07-19 13:05 -------- d-----w- c:\users\Leslie\AppData\Local\Apple Computer
2009-07-19 10:35 . 2009-07-19 10:35 -------- d-----w- c:\users\Leslie\AppData\Roaming\Apple Computer
2009-07-19 10:35 . 2009-07-19 10:35 -------- d-----w- c:\program files\iPod
2009-07-19 10:35 . 2009-07-21 14:09 -------- d-----w- c:\program files\iTunes
2009-07-19 10:33 . 2008-11-01 03:44 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2009-07-19 10:33 . 2008-11-01 01:21 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2009-07-19 10:33 . 2008-06-26 03:29 303616 ----a-w- c:\windows\system32\wmpeffects.dll
2009-07-19 10:33 . 2008-09-05 05:14 1191936 ----a-w- c:\windows\system32\msxml3.dll
2009-07-19 10:33 . 2008-12-16 05:31 7680 ----a-w- c:\windows\system32\spwmp.dll
2009-07-19 10:33 . 2008-12-16 05:31 4096 ----a-w- c:\windows\system32\dxmasf.dll
2009-07-19 10:33 . 2008-12-16 03:29 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2009-07-19 10:33 . 2009-04-23 12:42 636928 ----a-w- c:\windows\system32\localspl.dll
2009-07-19 10:31 . 2008-08-12 03:39 443392 ----a-w- c:\windows\system32\win32spl.dll
2009-07-19 10:26 . 2009-07-22 19:34 -------- d-----w- c:\program files\Bonjour
2009-07-19 10:25 . 2009-07-19 10:26 -------- d-----w- c:\program files\QuickTime
2009-07-19 10:25 . 2009-07-19 10:35 -------- d-----w- c:\programdata\Apple Computer
2009-07-19 10:24 . 2009-07-19 10:24 -------- d-----w- c:\users\Leslie\AppData\Local\Apple
2009-07-19 10:24 . 2009-07-19 10:24 -------- d-----w- c:\program files\Apple Software Update
2009-07-19 10:23 . 2009-07-19 10:23 -------- d-----w- c:\programdata\Apple
2009-07-19 10:23 . 2009-07-19 10:23 -------- d-----w- c:\program files\Common Files\Apple
2009-07-19 10:23 . 2009-04-23 12:43 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2009-07-19 10:22 . 2008-09-10 03:40 1334272 ----a-w- c:\windows\system32\msxml6.dll
2009-07-19 10:20 . 2009-07-27 23:58 -------- d-----r- c:\users\Leslie\Video - projet
2009-07-19 10:12 . 2008-10-16 21:09 51224 ----a-w- c:\windows\system32\wuauclt.exe
2009-07-19 10:12 . 2008-10-16 21:09 43544 ----a-w- c:\windows\system32\wups2.dll
2009-07-19 10:12 . 2008-10-16 21:13 1809944 ----a-w- c:\windows\system32\wuaueng.dll
2009-07-19 10:12 . 2008-10-16 20:56 1524736 ----a-w- c:\windows\system32\wucltux.dll
2009-07-19 10:12 . 2008-10-16 21:12 561688 ----a-w- c:\windows\system32\wuapi.dll
2009-07-19 10:12 . 2008-10-16 21:08 34328 ----a-w- c:\windows\system32\wups.dll
2009-07-19 10:12 . 2008-10-16 20:55 83456 ----a-w- c:\windows\system32\wudriver.dll
2009-07-19 10:11 . 2008-10-16 12:08 162064 ----a-w- c:\windows\system32\wuwebv.dll
2009-07-19 10:11 . 2008-10-16 11:56 31232 ----a-w- c:\windows\system32\wuapp.exe
2009-07-18 21:50 . 2009-07-18 21:50 -------- d-----w- c:\program files\MSN Messenger
2009-07-18 21:45 . 2009-07-28 13:12 -------- d-----r- c:\users\Leslie\Photo
2009-07-18 21:39 . 2009-07-29 09:48 -------- d-----r- c:\users\Leslie\Divers
2009-07-18 21:04 . 2009-07-18 21:04 -------- d-----w- c:\users\Leslie\AppData\Roaming\e frontier
2009-07-18 19:37 . 2009-07-18 19:37 -------- d-----w- c:\program files\e frontier
2009-07-18 19:37 . 1998-10-29 14:45 306688 ----a-w- c:\windows\IsUninst.exe
2009-07-18 19:32 . 2009-07-28 13:33 -------- d-----w- c:\users\Leslie\AppData\Local\Adobe
2009-07-18 18:25 . 2009-07-18 18:25 -------- d-----w- c:\users\Leslie\AppData\Local\Mozilla
2009-07-18 18:20 . 2009-07-20 18:24 -------- d-----r- c:\users\Leslie\Fic
2009-07-18 18:20 . 2009-07-27 14:51 -------- d-----w- c:\users\Leslie\Student Exchange
2009-07-18 18:19 . 2009-08-03 10:36 -------- d-----r- c:\users\Leslie\Graphisme
2009-07-18 17:48 . 2009-08-05 16:56 81984 ----a-w- c:\windows\system32\bdod.bin
2009-07-18 17:37 . 2009-07-18 17:37 -------- d-----w- c:\users\Leslie\AppData\Roaming\BitDefender
2009-07-18 17:37 . 2009-07-18 17:42 -------- d-----w- c:\programdata\BitDefender
2009-07-18 17:37 . 2009-07-18 17:37 -------- d-----w- c:\program files\BitDefender
2009-07-18 17:36 . 2009-07-18 17:37 -------- d-----w- c:\program files\Common Files\BitDefender
2009-07-18 17:29 . 2009-07-24 21:26 -------- d-----w- c:\users\Leslie\AppData\Local\Google
2009-07-18 17:29 . 2009-07-18 17:29 -------- d--h--w- c:\users\Leslie\AppData\Local\acer eNM
2009-07-18 17:28 . 2009-07-18 17:28 110576 ----a-w- c:\programdata\Partner\partner.exe
2009-07-18 17:28 . 2009-07-18 17:28 157168 ----a-w- c:\programdata\Partner\partner.dll
2009-07-18 17:28 . 2009-07-18 17:28 -------- d-----w- c:\programdata\Partner
2009-07-18 17:28 . 2009-07-20 15:40 -------- d-----w- c:\program files\Google
2009-07-18 17:28 . 2009-07-18 17:28 -------- d-----w- c:\program files\Acer
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\users\Default\Voisinage réseau
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\users\Default\Voisinage d'impression
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\users\Default\Modèles
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\users\Default\Mes documents
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\users\Default\Menu Démarrer
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\users\Default\AppData\Local\Historique
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\programdata\Modèles
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\programdata\Menu Démarrer
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\programdata\Favoris
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\programdata\Bureau
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\program files\Fichiers communs
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-08-05 13:53 . 2008-03-26 20:24 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-08-04 09:54 . 2008-03-26 20:57 -------- d-----w- c:\program files\McAfee
2009-07-31 15:42 . 2008-03-27 05:08 724052 ----a-w- c:\windows\system32\perfh00C.dat
2009-07-31 15:42 . 2008-03-27 05:08 146398 ----a-w- c:\windows\system32\perfc00C.dat
2009-07-29 08:43 . 2006-11-02 12:37 -------- d-----w- c:\program files\Microsoft Games
2009-07-22 09:58 . 2009-07-18 17:27 115952 ----a-w- c:\users\Leslie\AppData\Local\GDIPFONTCACHEV1.DAT
2009-07-21 21:52 . 2009-07-29 07:48 915456 ----a-w- c:\windows\system32\wininet.dll
2009-07-21 21:47 . 2009-07-29 07:48 109056 ----a-w- c:\windows\system32\iesysprep.dll
2009-07-21 21:47 . 2009-07-29 07:48 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-07-21 20:13 . 2009-07-29 07:48 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-07-20 18:42 . 2009-07-20 18:42 5058 ----a-w- c:\windows\Help\hhcolreg.dat
2009-07-20 11:23 . 2008-03-26 20:58 -------- d-----w- c:\programdata\SiteAdvisor
2009-07-20 11:19 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2009-07-20 10:16 . 2008-03-26 20:57 -------- d-----w- c:\programdata\McAfee
2009-07-19 12:50 . 2008-03-26 20:38 -------- d-----w- c:\program files\Common Files\Adobe
2009-07-18 19:32 . 2009-07-18 19:32 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-07-18 18:48 . 2008-10-17 12:01 104328 ----a-w- c:\windows\system32\drivers\bdfndisf.sys
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\programdata\Modèles
2009-07-18 17:22 . 2009-07-18 17:22 -------- d-sh--we c:\programdata\Menu Démarrer
2009-06-15 15:24 . 2009-07-19 10:34 156672 ----a-w- c:\windows\system32\t2embed.dll
2009-06-15 15:20 . 2009-07-19 10:34 72704 ----a-w- c:\windows\system32\fontsub.dll
2009-06-15 15:20 . 2009-07-19 10:34 10240 ----a-w- c:\windows\system32\dciman32.dll
2009-06-15 12:52 . 2009-07-19 10:34 289792 ----a-w- c:\windows\system32\atmfd.dll
2009-07-18 18:47 . 2009-07-18 18:49 49664 ----a-w- c:\program files\mozilla firefox\components\FFComm.dll
2009-01-21 23:43 . 2009-01-21 23:43 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
2009-07-18 17:28 157168 ----a-w- c:\programdata\Partner\partner.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-01-03 01:00 39472 ----a-w- c:\acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-07-18 68856]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-10-03 178712]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-09-07 102400]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-03-08 40048]
"mcagent_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2007-08-03 582992]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-08-28 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-08-28 154136]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-08-28 137752]
"PLFSetI"="c:\windows\PLFSetI.exe" [2007-10-23 200704]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2008-01-22 81920]
"LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2007-10-11 62760]
"eDataSecurity Loader"="c:\acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe" [2008-01-03 521776]
"LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2008-01-07 858632]
"WarReg_PopUp"="c:\program files\Acer\WR_PopUp\WarReg_PopUp.exe" [2008-01-29 303104]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2009-07-18 24064]
"BDAgent"="c:\program files\BitDefender\BitDefender 2009\bdagent.exe" [2009-07-18 778240]
"BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2009\IEShow.exe" [2009-07-18 69632]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-10 116040]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2008-05-27 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-07-10 289064]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-07-21 148888]
"RtHDVCpl"="RtHDVCpl.exe" - c:\windows\RtHDVCpl.exe [2008-01-08 4853760]
"WTClient"="WTClient.exe" - c:\windows\System32\WTClient.exe [2007-04-11 40960]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Empowering Technology Launcher.lnk - c:\acer\Empowering Technology\eAPLauncher.exe [2008-3-26 535336]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office\OSA9.EXE [1999-2-17 65588]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{A16FE80C-A904-4FD8-A791-79F71906B0D6}"= Profile=Private|Profile=Public|c:\program files\Common Files\Mcafee\MNA\McNaSvc.exe:McAfee Network Agent
"{8905E6E5-F505-43C1-A69C-40BE3672DAAB}"= TCP:6004|c:\program files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"{D3413F87-A5E9-4F82-BA67-607D2F48881A}"= c:\program files\CyberLink\PowerDVD\PowerDVD.EXE:CyberLink PowerDVD
"{4C7BC3F2-C616-4733-9403-525225229462}"= c:\program files\MSN Messenger\livecall.exe:Windows Live Messenger 8.1 (Phone)
"{6C1CA697-7D32-4BF2-A9BC-B8DB46BF24BF}"= UDP:c:\program files\iTunes\iTunes.exe:iTunes
"{46AC7785-B34E-4621-9C94-07810125FEC8}"= TCP:c:\program files\iTunes\iTunes.exe:iTunes
"{069A43EB-EBCD-4F26-B215-D47B36D341E6}"= UDP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour
"{6A54855E-5E86-426E-9954-6A6E750D483C}"= TCP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)
R2 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2009\BDVEDISK.sys [06/10/2008 17:16 82696]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\McAfee\SiteAdvisor\McSACore.exe [20/07/2009 12:16 210216]
R2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ);c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [14/04/2006 11:07 28933976]
R3 bdfm;BDFM;c:\windows\System32\drivers\bdfm.sys [18/09/2008 11:09 111112]
R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\System32\drivers\bdfndisf.sys [17/10/2008 14:01 104328]
R3 PTSimBus;PenTablet Bus Enumerator;c:\windows\System32\drivers\PTSimBus.sys [07/06/2007 19:16 18944]
S3 Arrakis3;BitDefender Arrakis Server;c:\program files\Common Files\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [17/07/2008 12:06 118784]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\System32\drivers\b57nd60x.sys [22/07/2007 16:00 180736]
S3 GoogleDesktopManager-080708-050100;Google Desktop Manager 5.7.808.7150;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [18/07/2009 19:28 24064]
S3 PTSimHid;PenTablet Simulated HID MiniDriver;c:\windows\System32\drivers\PTSimHid.sys [23/04/2007 17:28 10752]
--- Other Services/Drivers In Memory ---
*NewlyCreated* - 426B940E
*NewlyCreated* - 620ECF0E
*Deregistered* - 426b940e
*Deregistered* - 620ecf0e
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\System32\rundll32.exe" "c:\windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder
2008-03-26 c:\windows\Tasks\McDefragTask.job
- c:\progra~1\mcafee\mqc\QcConsol.exe [2009-07-18 11:32]
2008-03-26 c:\windows\Tasks\McQcTask.job
- c:\progra~1\mcafee\mqc\QcConsol.exe [2009-07-18 11:32]
.
- - - - ORPHANS REMOVED - - - -
BHO-{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - c:\program files\Dealio Toolbar\DealioToolbarIE.dll
Toolbar-{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - c:\program files\Dealio Toolbar\DealioToolbarIE.dll
HKLM-Run-SearchSettings - c:\program files\Search Settings\SearchSettings.exe
HKLM-Run-eRecoveryService - (no file)
.
------- Supplementary Scan -------
.
uStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620
uInternet Settings,ProxyOverride = *.local
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: {703B369B-ADBA-4AE5-840E-BAD0FDFEF66A} = 80.10.246.2,80.10.246.129
FF - ProfilePath - c:\users\Leslie\AppData\Roaming\Mozilla\Firefox\Profiles\8tkdb852.default\
FF - component: c:\program files\McAfee\SiteAdvisor\components\McFFPlg.dll
FF - component: c:\program files\Mozilla Firefox\components\FFComm.dll
FF - component: c:\program files\Mozilla Firefox\extensions\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}\components\DealioToolbarFF.dll
FF - component: c:\program files\Mozilla Firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-08-05 23:52
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2009-08-05 23:54
ComboFix-quarantined-files.txt 2009-08-05 21:54
Pre-Run: 101 026 959 360 octets libres
Post-Run: 101 589 749 760 octets libres
384 --- E O F --- 2009-07-29 09:07 -
ModérateurSalut,
jfkpresident étant parti (petit coucou au passage), je viens juste te rassurer sur le fait que tu peux éteindre ton PC.
PS :
Combofix a bien travaillé ;-).
Je éclipse.
Bonne fin de soirée et bonne continuation dans ta désinfection.
A+.
Crapoulou. -
Contributeur sécuritéMerci pour ton passage la crapule -;)
Désactive le contrôle des comptes utilisateurs
(tu le réactiveras après ta désinfection):
* Va dans démarrer puis panneau de configuration
* Double Clique sur l'icône "Comptes d'utilisateurs"
* Clique ensuite sur désactiver et valide.
Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2
Clique-droit sur le raccourci de Toolbar-S&D sur le Bureau et choisis " Exécuter en tant qu' Administrateur ".
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
========================
Ouvre ce lien et télécharge ZHPDiag :
https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
Une fois le téléchargement achevé, dézippe le fichier obtenu et place ZHPDiag.exe sur ton Bureau.
Double-clique sur l'icône pour lancer le programme.
Clique sur Tous pour cocher toutes les cases des options.
Clique sur la loupe pour lancer l'analyse.
A la fin de l'analyse, clique sur l'appareil photo et enregistre le rapport sur ton Bureau.
Ouvre le fichier sauvegardé (ZHPDiag.txt)avec le Bloc-Notes et copie son contenu dans ta réponse.
Postes le en deux fois s'il le faut (le log est assez long).
-
Voilà le rapport de ToolBar:
(et merci du passage crapoulou ^^)
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5670 @ 1.80GHz )
BIOS : Ver 1.00PARTTBL
USER : Leslie ( Administrator )
BOOT : Normal boot
Antivirus : Antivirus BitDefender 12.0 (Activated)
Firewall : Pare-feu BitDefender 12.0 (Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:94 Go)
D:\ (Local Disk) - NTFS - Total:144 Go (Free:130 Go)
E:\ (CD or DVD)
F:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 06/08/2009|10:35 )
[ UAC => 1 ]
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\DAEMON Tools Toolbar
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.js
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.xul
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.dtd
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.properties
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620"
"Url"="https://www.msn.com/fr-fr/actualite/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\Windows\\System32\\blank.htm"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\_Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\__Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\___Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe CS4 Master Collection [working crack] - Darkman.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (2).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (3).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (4).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (5).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_Photoshop_CS4_Extended_Incl_Keygen_[dukehill221].5010089.TPB(2).torrent.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_Photoshop_CS4_Extended_Incl_Keygen_[dukehill221].5010089.TPB.torrent.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\crack.lnk
C:\Users\Leslie\Desktop\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
[ UAC => 1 ]
1 - "C:\ToolBar SD\TB_1.txt" - 06/08/2009|10:35 - Option : [1]
-----------\\ Fin du rapport a 10:35:58,34 -
Rapport de ZHPDiag (partie 1)
Rapport de ZHPDiag v1.24.03 par Nicolas Coolman
Enregistré le 06/08/2009 10:42:23
Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Platform : Windows Vista (TM) Home Premium (6.0.6001) Service Pack 1
MSIE: Internet Explorer v8.0.6001.18813
MFIE: Mozilla Firefox (3.5.2)
---\\ Processus lancés
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
c:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Windows\system32\igfxtray.exe
C:\Windows\system32\hkcmd.exe
C:\Windows\system32\igfxpers.exe
C:\Windows\PLFSetI.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\PowerDVD\Language\Language.exe
C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
C:\PROGRA~1\LAUNCH~1\LManager.exe
C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
---\\ Pages de recherche de Mozilla Firefox (M1)
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla FireFox\extensions\search@searchsettings.com
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,
---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620
---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
---\\ Internet Explorer URLSearchHook (R3)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\system32\ieframe.dll
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAntiPhishingBHO - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\partner.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll
O3 - Toolbar: C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
---\\ Applications démarrées automatiquement par le registre (O4)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] c:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [LanguageShortcut] C:\Program Files\CyberLink\PowerDVD\Language\Language.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [BDAgent] C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [WTClient] WTClient.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe
O4 - HKCU\..\Run: [MsnMsgr] C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKLM\..\policies\Explorer: [NoDrives] Data=0
O4 - Global Startup: Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe
O4 - Global Startup: Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFBARH.ICO
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
---\\ Protocole additionnel et piratage de protocole (O18)
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\system32\urlmon.dll
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL
O18 - Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui - C:\Windows\System32\igfxdev.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GoogleDesktopNetwork3.dll
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSODL) (O21)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\System32\webcheck.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - %SystemRoot%\system32\browseui.dll
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\McDefragTask.job
O39 - APT:Automatic Planified Task - C:\Windows\Tasks\McQcTask.job
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - (not file)
O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\System32\wmpdxm.dll
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\Windows\system32\regsvr32.exe /s /n /i:/UserInstall C:\Windows\system32\themeui.dll
O40 - ASIC: Offline Browsing Pack - {3af36230-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
O40 - ASIC: DirectDrawEx - {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - (not file)
O40 - ASIC: Internet Explorer Help - {45ea75a0-a269-11d1-b5bf-0000f8051515} - (not file)
O40 - ASIC: Microsoft Windows Script 5.8 - {4f645220-306d-11d2-995d-00c04f98bbc9} - (not file)
O40 - ASIC: Internet Explorer Setup Tools - {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
O40 - ASIC: MSN Site Access - {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - (not file)
O40 - ASIC: Dossiers Web - {73FA19D0-2D75-11D2-995D-00C04F98BBC9} - (not file)
O40 - ASIC: Address Book 7 - {7790769C-0471-11d2-AF11-00C04FA35D02} - (not file)
O40 - ASIC: .NET Framework - {7C028AF8-F614-47B3-82DA-BA94E41B1089} - (not file)
O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
O40 - ASIC: Internet Explorer - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
O40 - ASIC: Dynamic HTML Data Binding - {9381D8F2-0288-11D0-9501-00AA00B911A5} - (not file)
O40 - ASIC: .NET Framework - {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - (not file)
O40 - ASIC: Internet Explorer Core Fonts - {C9E9A340-D1F1-11D0-821E-444553540600} - (not file)
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11CF-96B8-444553540000} - C:\Windows\system32\Macromed\Flash\Flash9e.ocx
O40 - ASIC: HTML Help - {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - (not file)
O40 - ASIC: Active Directory Service Interface - {E92B03AB-B707-11d2-9CBD-0000F87A369E} - (not file)
---\\ Logiciels installés (O42)
O42 - Logiciel: 2007 Microsoft Office Suite Service Pack 1 (SP1)
O42 - Logiciel: 2007 Microsoft Office system
O42 - Logiciel: Acer Crystal Eye Webcam 2.0.8
O42 - Logiciel: Acer Empowering Technology
O42 - Logiciel: Acer GridVista
O42 - Logiciel: Acer Mobility Center Plug-In
O42 - Logiciel: Acer ScreenSaver
O42 - Logiciel: Acer eDataSecurity Management
O42 - Logiciel: Acer eLock Management
O42 - Logiciel: Acer eNet Management
O42 - Logiciel: Acer ePower Management
O42 - Logiciel: Acer ePresentation Management
O42 - Logiciel: Acer eSettings Management
O42 - Logiciel: Activation Assistant for the 2007 Microsoft Office suites
O42 - Logiciel: Adobe Anchor Service CS3
O42 - Logiciel: Adobe Asset Services CS3
O42 - Logiciel: Adobe Bridge CS3
O42 - Logiciel: Adobe Bridge Start Meeting
O42 - Logiciel: Adobe CMaps
O42 - Logiciel: Adobe Camera Raw 4.0
O42 - Logiciel: Adobe Color - Photoshop Specific
O42 - Logiciel: Adobe Color Common Settings
O42 - Logiciel: Adobe Color EU Extra Settings
O42 - Logiciel: Adobe Color JA Extra Settings
O42 - Logiciel: Adobe Color NA Recommended Settings
O42 - Logiciel: Adobe Default Language CS3
O42 - Logiciel: Adobe Device Central CS3
O42 - Logiciel: Adobe ExtendScript Toolkit 2
O42 - Logiciel: Adobe Flash Player 10 Plugin
O42 - Logiciel: Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Fonts All
O42 - Logiciel: Adobe Help Viewer CS3
O42 - Logiciel: Adobe Linguistics CS3
O42 - Logiciel: Adobe PDF Library Files
O42 - Logiciel: Adobe Photoshop CS3
O42 - Logiciel: Adobe Reader 8.1.0
O42 - Logiciel: Adobe Setup
O42 - Logiciel: Adobe Stock Photos CS3
O42 - Logiciel: Adobe Type Support
O42 - Logiciel: Adobe Update Manager CS3
O42 - Logiciel: Adobe Version Cue CS3 Client
O42 - Logiciel: Adobe WinSoft Linguistics Plugin
O42 - Logiciel: Adobe XMP Panels CS3
O42 - Logiciel: Apple Mobile Device Support
O42 - Logiciel: Apple Software Update
O42 - Logiciel: Archiveur WinRAR
O42 - Logiciel: BitDefender Internet Security 2009
O42 - Logiciel: Bonjour
O42 - Logiciel: Broadcom Gigabit Integrated Controller
O42 - Logiciel: Corel Painter X
O42 - Logiciel: Dealio Toolbar v4.0
O42 - Logiciel: Fable - The Lost Chapters
O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Français)
O42 - Logiciel: Free Video Converter V 2.1
O42 - Logiciel: Gestionnaire de contacts professionnels pour Outlook 2007 SP1
O42 - Logiciel: Google Desktop
O42 - Logiciel: Google Toolbar for Internet Explorer
O42 - Logiciel: HDAUDIO Soft Data Fax Modem with SmartCP
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver
O42 - Logiciel: Intel(R) Matrix Storage Manager
O42 - Logiciel: Java(TM) 6 Update 14
O42 - Logiciel: Launch Manager
O42 - Logiciel: Manga Studio EX 3.0
O42 - Logiciel: McAfee SecurityCenter
O42 - Logiciel: Microsoft .NET Framework 3.5 Language Pack SP1 - fra
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft Office 2000 Premium
O42 - Logiciel: Microsoft Office 2003 Web Components
O42 - Logiciel: Microsoft Office 2007 Primary Interop Assemblies
O42 - Logiciel: Microsoft Office Access MUI (French) 2007
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007
O42 - Logiciel: Microsoft Office Professional Hybrid 2007
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007
O42 - Logiciel: Microsoft Office Proof (English) 2007
O42 - Logiciel: Microsoft Office Proof (French) 2007
O42 - Logiciel: Microsoft Office Proof (German) 2007
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007
O42 - Logiciel: Microsoft Office Proofing (French) 2007
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007
O42 - Logiciel: Microsoft Office Small Business Connectivity Components
O42 - Logiciel: Microsoft Office Word MUI (French) 2007
O42 - Logiciel: Microsoft SQL Server 2005
O42 - Logiciel: Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
O42 - Logiciel: Microsoft SQL Server Native Client
O42 - Logiciel: Microsoft SQL Server VSS Writer
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable
O42 - Logiciel: Module linguistique Microsoft .NET Framework 3.5 SP1- fra
O42 - Logiciel: Mozilla Firefox (3.5.2)
O42 - Logiciel: NTI Backup NOW! 4.7
O42 - Logiciel: NTI CD & DVD-Maker
O42 - Logiciel: NTI Shadow
O42 - Logiciel: PDF Settings
O42 - Logiciel: PowerDVD
O42 - Logiciel: QuickTime
O42 - Logiciel: RPG Maker VX 1.02
O42 - Logiciel: Realtek High Definition Audio Driver
O42 - Logiciel: Satsuki Decoder Pack
O42 - Logiciel: Search Settings 1.2.1
O42 - Logiciel: Synaptics Pointing Device Driver
O42 - Logiciel: Texas Instruments PCIxx21/x515/xx12 drivers.
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
O42 - Logiciel: Update for Office 2007 (KB946691)
O42 - Logiciel: VC 9.0 Runtime
O42 - Logiciel: Vuze
O42 - Logiciel: Windows Live Messenger
O42 - Logiciel: Windows Live Sign-in Assistant
O42 - Logiciel: ZHPDiag 1.24
O42 - Logiciel: iTunes
---\\ Contenu des dossiers Fichiers Communs (O43)
O43 - CFD:Common File Directory ----D- C:\Program Files\Acer
O43 - CFD:Common File Directory ----D- C:\Program Files\Acer Inc
O43 - CFD:Common File Directory ----D- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files\Apple Software Update
O43 - CFD:Common File Directory ----D- C:\Program Files\BitDefender
O43 - CFD:Common File Directory ----D- C:\Program Files\Bonjour
O43 - CFD:Common File Directory ----D- C:\Program Files\Broadcom
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files
O43 - CFD:Common File Directory ----D- C:\Program Files\CONEXANT
O43 - CFD:Common File Directory ----D- C:\Program Files\Corel
O43 - CFD:Common File Directory ----D- C:\Program Files\CyberLink
O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Lite
O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Toolbar
O43 - CFD:Common File Directory ----D- C:\Program Files\e frontier
O43 - CFD:Common File Directory -SH-D- C:\Program Files\Fichiers communs
O43 - CFD:Common File Directory ----D- C:\Program Files\Fighters
O43 - CFD:Common File Directory ----D- C:\Program Files\Free Video Converter
O43 - CFD:Common File Directory ----D- C:\Program Files\G-PEN SERIES
O43 - CFD:Common File Directory ----D- C:\Program Files\Google
O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD:Common File Directory ----D- C:\Program Files\Intel
O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer
O43 - CFD:Common File Directory ----D- C:\Program Files\iPod
O43 - CFD:Common File Directory ----D- C:\Program Files\iTunes
O43 - CFD:Common File Directory ----D- C:\Program Files\Java
O43 - CFD:Common File Directory ----D- C:\Program Files\Launch Manager
O43 - CFD:Common File Directory ----D- C:\Program Files\McAfee
O43 - CFD:Common File Directory ----D- C:\Program Files\McAfee.com
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft FrontPage
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Games
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Small Business
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft SQL Server
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Visual Studio
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Works
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft.NET
O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker
O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox
O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild
O43 - CFD:Common File Directory ----D- C:\Program Files\MSN Messenger
O43 - CFD:Common File Directory ----D- C:\Program Files\NewTech Infosystems
O43 - CFD:Common File Directory ----D- C:\Program Files\PENSUITEPRO
O43 - CFD:Common File Directory ----D- C:\Program Files\QuickTime
O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek
O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies
O43 - CFD:Common File Directory ----D- C:\Program Files\RPG Maker VX
O43 - CFD:Common File Directory ----D- C:\Program Files\Satsuki Decoder Pack
O43 - CFD:Common File Directory ----D- C:\Program Files\SiteAdvisor
O43 - CFD:Common File Directory ----D- C:\Program Files\Synaptics
O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information
O43 - CFD:Common File Directory ----D- C:\Program Files\Vuze
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Calendar
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Collaboration
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Defender
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Journal
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Mail
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Photo Gallery
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Sidebar
O43 - CFD:Common File Directory ----D- C:\Program Files\WinRAR
O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPDiag
O43 - CFD:Common File Directory ----D- C:\Program Files\Zone Labs
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Apple
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\BitDefender
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\DESIGNER
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\InstallShield
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\LightScribe
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Macrovision Shared
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\McAfee
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\microsoft shared
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\muvee Technologies
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\NewTech Infosystems
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Services
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\SpeechEngines
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\System
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:Last File Created 01/08/2009 - 15:40:30 ---A- C:\Windows\DXError.log
O44 - LFC:Last File Created 01/08/2009 - 15:40:30 ---A- C:\Windows\DirectX.log
O44 - LFC:Last File Created 05/08/2009 - 13:39:47 --H-- C:\Windows\vcldsetup.log
O44 - LFC:Last File Created 05/08/2009 - 17:54:24 ---A- C:\Windows\System32\BDUpdateV1.xml
O44 - LFC:Last File Created 05/08/2009 - 22:52:33 ---A- C:\Windows\system.ini
O44 - LFC:Last File Created 06/08/2009 - 00:36:07 ---A- C:\Windows\System32\bdod.bin
O44 - LFC:Last File Created 06/08/2009 - 09:27:23 ---A- C:\Windows\PFRO.log
O44 - LFC:Last File Created 06/08/2009 - 09:27:27 -S-A- C:\Windows\bootstat.dat
O44 - LFC:Last File Created 06/08/2009 - 09:28:42 ---A- C:\Windows\System32\Config.MPF
O44 - LFC:Last File Created 06/08/2009 - 09:29:51 ---A- C:\Windows\WindowsUpdate.log
O44 - LFC:Last File Created 07/07/2009 - 07:10:58 ---A- C:\Windows\System32\mrt.exe
O44 - LFC:Last File Created 13/07/2009 - 04:48:54 ---A- C:\Windows\PEV.exe
O44 - LFC:Last File Created 18/07/2009 - 18:28:04 ---A- C:\Windows\PreLaunch.log
O44 - LFC:Last File Created 18/07/2009 - 18:29:43 ---A- C:\Windows\USER.XML
O44 - LFC:Last File Created 18/07/2009 - 18:29:43 ---A- C:\Windows\launApp.log
O44 - LFC:Last File Created 18/07/2009 - 18:42:25 ---A- C:\Windows\System32\user_gensett.xml
O44 - LFC:Last File Created 18/07/2009 - 18:42:26 ---A- C:\Windows\System32\ProductTweaks.xml
O44 - LFC:Last File Created 18/07/2009 - 19:48:19 ---A- C:\Windows\System32\drivers\bdfndisf.sys
O44 - LFC:Last File Created 18/07/2009 - 20:32:16 --HA- C:\Windows\System32\drivers\Msft_User_WpdFs_01_00_00.Wdf
O44 - LFC:Last File Created 18/07/2009 - 20:34:28 --H-- C:\Windows\dace9604.dat
O44 - LFC:Last File Created 18/07/2009 - 22:50:33 ---A- C:\Windows\DPINST.LOG
O44 - LFC:Last File Created 19/07/2009 - 01:23:37 ---A- C:\Windows\System32\license.rtf
O44 - LFC:Last File Created 19/07/2009 - 01:27:12 ---A- C:\Windows\MBRWR.LOG
O44 - LFC:Last File Created 20/07/2009 - 12:30:09 ---A- C:\Windows\System32\satsukidecodersettings.ini
O44 - LFC:Last File Created 20/07/2009 - 19:41:45 ---A- C:\Windows\win.ini
O44 - LFC:Last File Created 20/07/2009 - 19:42:15 ---A- C:\Windows\vbaddin.ini
O44 - LFC:Last File Created 20/07/2009 - 19:42:24 ---A- C:\Windows\ODBC.INI
O44 - LFC:Last File Created 21/07/2009 - 14:39:04 ---A- C:\Windows\System32\deploytk.dll
O44 - LFC:Last File Created 21/07/2009 - 14:39:04 ---A- C:\Windows\System32\java.exe
O44 - LFC:Last File Created 21/07/2009 - 14:39:04 ---A- C:\Windows\System32\javaw.exe
O44 - LFC:Last File Created 21/07/2009 - 14:39:04 ---A- C:\Windows\System32\javaws.exe
O44 - LFC:Last File Created 21/07/2009 - 19:31:43 ---A- C:\Windows\System32\ieuinit.inf
O44 - LFC:Last File Created 21/07/2009 - 21:12:49 ---A- C:\Windows\System32\mshtml.tlb
O44 - LFC:Last File Created 21/07/2009 - 21:13:15 ---A- C:\Windows\System32\msfeedssync.exe
O44 - LFC:Last File Created 21/07/2009 - 21:13:51 ---A- C:\Windows\System32\ie4uinit.exe
O44 - LFC:Last File Created 21/07/2009 - 21:13:58 ---A- C:\Windows\System32\ieUnatt.exe
O44 - LFC:Last File Created 21/07/2009 - 22:47:21 ---A- C:\Windows\System32\iedkcs32.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:26 ---A- C:\Windows\System32\ieframe.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:26 ---A- C:\Windows\System32\iepeers.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:26 ---A- C:\Windows\System32\iernonce.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:27 ---A- C:\Windows\System32\iertutil.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:27 ---A- C:\Windows\System32\iesetup.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:28 ---A- C:\Windows\System32\iesysprep.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:28 ---A- C:\Windows\System32\ieui.dll
O44 - LFC:Last File Created 21/07/2009 - 22:47:41 ---A- C:\Windows\System32\inetcpl.cpl
O44 - LFC:Last File Created 21/07/2009 - 22:47:47 ---A- C:\Windows\System32\jsproxy.dll
O44 - LFC:Last File Created 21/07/2009 - 22:48:27 ---A- C:\Windows\System32\msfeeds.dll
O44 - LFC:Last File Created 21/07/2009 - 22:48:27 ---A- C:\Windows\System32\msfeedsbs.dll
O44 - LFC:Last File Created 21/07/2009 - 22:48:31 ---A- C:\Windows\System32\mshtml.dll
O44 - LFC:Last File Created 21/07/2009 - 22:50:46 ---A- C:\Windows\System32\occache.dll
O44 - LFC:Last File Created 21/07/2009 - 22:52:13 ---A- C:\Windows\System32\urlmon.dll
O44 - LFC:Last File Created 21/07/2009 - 22:52:28 ---A- C:\Windows\System32\wininet.dll
O44 - LFC:Last File Created 22/07/2009 - 11:03:08 ---A- C:\Windows\System32\FNTCACHE.DAT
O44 - LFC:Last File Created 24/07/2009 - 06:47:19 ---A- C:\Windows\ie8_main.log
O44 - LFC:Last File Created 29/07/2009 - 11:39:03 ---A- C:\Windows\setupact.log
O44 - LFC:Last File Created 31/07/2009 - 16:42:47 ---A- C:\Windows\System32\PerfStringBackup.INI
O44 - LFC:Last File Created 31/07/2009 - 16:42:47 ---A- C:\Windows\System32\perfc009.dat
O44 - LFC:Last File Created 31/07/2009 - 16:42:47 ---A- C:\Windows\System32\perfc00C.dat
O44 - LFC:Last File Created 31/07/2009 - 16:42:47 ---A- C:\Windows\System32\perfh009.dat
O44 - LFC:Last File Created 31/07/2009 - 16:42:47 ---A- C:\Windows\System32\perfh00C.dat
---\\ Trojan Driver Search Data (TDSD) (O52)
O52 - TDSD:HKLM\...\Drivers\"timer"="timer.drv"
O52 - TDSD:HKLM\...\Drivers32\"vidc.mrle"="msrle32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.msvc"="msvidc32.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.imaadpcm"="imaadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msg711"="msg711.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msgsm610"="msgsm32.acm"
O52 - TDSD:HKLM\...\Drivers32\"msacm.msadpcm"="msadp32.acm"
O52 - TDSD:HKLM\...\Drivers32\"midimapper"="midimap.dll"
O52 - TDSD:HKLM\...\Drivers32\"wavemapper"="msacm32.drv"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.UYVY"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.YUY2"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.YVYU"="msyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.IYUV"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.i420"="iyuv_32.dll"
O52 - TDSD:HKLM\...\Drivers32\"VIDC.YVU9"="tsbyuv.dll"
O52 - TDSD:HKLM\...\Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm"
O52 - TDSD:HKLM\...\Drivers32\"vidc.cvid"="iccvid.dll"
O52 - TDSD:HKLM\...\Drivers32\"MSVideo8"="VfWWDM32.dll"
O52 - TDSD:HKLM\...\Drivers32\"wave"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"midi"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"mixer"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"aux"="wdmaud.drv"
O52 - TDSD:HKLM\...\Drivers32\"msacm.siren"="sirenacm.dll"
O52 - TDSD:HKLM\...\Drivers32\"vidc.ffds"="ff_vfw.dll"
O52 - TDSD:HKLM\...\drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec"
O52 - TDSD:HKLM\...\drivers.desc\"wdmaud.drv"="Realtek High Definition Audio"
O52 - TDSD:HKLM\...\drivers.desc\"vfwwdm32.dll"="WDM Video For Windows Capture Driver (Win32)"
O52 - TDSD:HKLM\...\drivers.desc\"sirenacm.dll"="Messenger Audio Codec"
---\\ Microsoft Windows Policies System (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2
O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1
O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1
O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0
O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=
O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=
O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0
O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0
---\\ Microsoft Windows Policies Explorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\Policies\Explorer] - "NoDrives"=0
---\\ Liste des Drivers Système (SDL) (O58)
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\1394bus.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\acpi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\adp94xx.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\adpahci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\adpu160m.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\adpu320.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\afd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\AGP440.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\aliide.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\AMDAGP.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\amdide.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\amdk7.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\amdk8.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\arc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\arcsas.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\asyncmac.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\atapi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ataport.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\b57nd60x.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\battc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bdasup.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bdfm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bdfndisf.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bdfsfltr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BDVEDISK.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\beep.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\blbdrive.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bowser.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BrFiltLo.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BrFiltUp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bridge.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BrSerId.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BrSerWdm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BrUsbMdm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\BrUsbSer.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\bthmodem.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\cdfs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\cdrom.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\circlass.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Classpnp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\CmBatt.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\cmdide.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\compbatt.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\crashdmp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\crcdisk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\crusoe.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\dfsc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\disk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Diskdump.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\djsvs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\DKbFltr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\drmk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\drmkaud.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Dumpata.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\dxapi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\dxg.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\dxgkrnl.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\E1G60I32.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ecache.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\elxstor.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\errdev.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\exfat.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\fastfat.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\fdc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\fileinfo.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\filetrace.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\flpydisk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\fltMgr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\fs_rec.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\FWPKCLNT.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\GAGP30KX.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\GEARAspiWDM.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\hdaudbus.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\HdAudio.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\hidbth.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\hidclass.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\hidir.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\hidparse.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\hidusb.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\HpCISSs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\HSXHWAZL.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\HSX_CNXT.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\HSX_DPV.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\http.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\i2omgmt.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\i2omp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\i8042prt.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\iaStor.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\iaStorV.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\igdkmd32.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\iirsp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\int15.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\int15_64.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\intelide.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\intelppm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ipfltdrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\IPMIDrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ipnat.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\irda.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\irenum.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\isapnp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\iteatapi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\iteraid.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\kbdclass.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ks.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ksecdd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\lltdio.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\lsi_fc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\lsi_sas.sys -
Rapport de ZHPDiag (partie 2)
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\lsi_scsi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\luafv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mcd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mdmxsdk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\megasas.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\MegaSR.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mfeavfk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mfebopk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mfehidk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mferkdk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mfesmfk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\modem.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\monitor.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mouclass.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mouhid.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mountmgr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Mpfp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mpio.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mpsdrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Mraid35x.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mrxdav.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mrxsmb.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mrxsmb10.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mrxsmb20.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\msahci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\msdsm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\msfs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\msisadrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\msiscsi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mskssrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mspclock.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mspqm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\msrpc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mssmbios.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mstee.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\mup.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ndis.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ndistapi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ndisuio.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ndiswan.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ndproxy.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\netbios.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\netbt.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\netio.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\NETw3v32.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\NETw4v32.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\nfrd960.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\npfs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\nscirda.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\nsiproxy.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ntfs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\NTIDrvr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ntrigdigi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\null.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\nvraid.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\nvstor.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\NV_AGP.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\nwifi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ohci1394.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\pacer.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\parport.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\partmgr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\parvdm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\pci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\pciide.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\pciidex.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\pcmcia.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\PEAuth.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\portcls.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\processr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\psdfilter.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\PSDNServ.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\PSDVdisk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\PTSimBus.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\PTSimHid.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ql2300.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ql40xx.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\qwavedrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rasacd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rasl2tp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\raspppoe.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\raspptp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rassstp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rdbss.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\RDPCDD.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rdpdr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\RDPENCDD.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rdpwd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rmcast.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\RNDISMP.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rootmdm.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\rspndr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\RTKVHDA.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sbp2port.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\scsiport.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sdbus.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\secdrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\serenum.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\serial.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sermouse.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sffdisk.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sffp_mmc.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sffp_sd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sfloppy.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\SISAGP.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sisraid2.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sisraid4.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\smb.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\smclib.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\spldr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\spsys.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sptd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\srv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\srv2.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\srvnet.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Storport.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\stream.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\swenum.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\symc8xx.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sym_hi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\sym_u3.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\SynTP.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Tablet2k.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tape.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\TClass2k.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tcpip.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tcpipreg.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tdi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tdpipe.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tdtcp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tdx.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\termdd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tifm21.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tssecsrv.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\TUNMP.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\tunnel.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\TVicPort.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\TVicPort64.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\UAGP35.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\UCTblHid.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\udfs.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ULIAGPKX.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\uliahci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ulsata.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ulsata2.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\umbus.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\umpass.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usb8023.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\USBCAMD.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\USBCAMD2.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbccgp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbcir.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbehci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbhub.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbohci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbport.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbprint.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\USBSTOR.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbuhci.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\usbvideo.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\vga.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\vgapnp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\VIAAGP.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\viac7.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\viaide.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\videoprt.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\volmgr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\volmgrx.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\volsnap.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\vsmraid.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\VSTAZL3.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\VSTCNXT3.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\VSTDPV3.SYS
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\wacompen.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\wanarp.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\watchdog.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\wd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\Wdf01000.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\WdfLdr.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\wmiacpi.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\wmilib.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\ws2ifsl.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\WUDFPf.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\WUDFRd.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\XAudio.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\zntport.sys
O58 - SDL:System Drivers List - C:\Windows\system32\drivers\zntport64.sys
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC:Last File Created 03/08/2009 - 10:58:16 ---A- C:\Users\Leslie\Music\Vocaloid\Miku Hatsune - Melody.mp3
O61 - LFC:Last File Created 03/08/2009 - 11:04:51 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Miku-chan.gif
O61 - LFC:Last File Created 03/08/2009 - 11:07:21 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Meiko.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:07:25 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Kaito.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:07:32 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Miku Hatsune.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:07:37 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Rin et Ren.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:07:46 ---A- C:\Users\Leslie\Pictures\Vocaloid\lukame10.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:07:50 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Kamui.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:08:13 ---A- C:\Users\Leslie\Pictures\Vocaloid\Blue dream.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:08:28 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Iku.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:08:31 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi Yowane.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:14:19 ---A- C:\Users\Leslie\Music\Vocaloid\Miku Hatsune - Last night, good night.mp3
O61 - LFC:Last File Created 03/08/2009 - 11:15:10 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chain.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:29:00 ---A- C:\Users\Leslie\Pictures\Vocaloid\Kawai Luka.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:49:49 ---A- C:\Users\Leslie\Graphisme\Yumeless (Miku version)\Signature.jpg
O61 - LFC:Last File Created 03/08/2009 - 11:49:57 ---A- C:\Users\Leslie\Graphisme\Yumeless (Miku version)\Avatar.jpg
O61 - LFC:Last File Created 03/08/2009 - 12:11:05 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\Friends_1.log
O61 - LFC:Last File Created 03/08/2009 - 12:22:47 ---A- C:\Users\Leslie\Pictures\Vocaloid\Black Rock Shooter.jpg
O61 - LFC:Last File Created 03/08/2009 - 12:25:35 ---A- C:\Users\Leslie\Pictures\image manga\Kemonomimi\Little_Prince_by_Felicia_Val.png
O61 - LFC:Last File Created 03/08/2009 - 12:26:05 ---A- C:\Users\Leslie\Pictures\Vocaloid\Black Rock Shooter (Fan art).png
O61 - LFC:Last File Created 03/08/2009 - 12:26:12 ---A- C:\Users\Leslie\Pictures\Vocaloid\Blue fan art.png
O61 - LFC:Last File Created 03/08/2009 - 12:27:46 ---A- C:\Users\Leslie\Pictures\Vocaloid\Megurine.png
O61 - LFC:Last File Created 03/08/2009 - 12:28:04 ---A- C:\Users\Leslie\Pictures\Vocaloid\Diva.png
O61 - LFC:Last File Created 03/08/2009 - 12:28:17 ---A- C:\Users\Leslie\Pictures\Vocaloid\Ribon Miku.png
O61 - LFC:Last File Created 03/08/2009 - 12:29:08 ---A- C:\Users\Leslie\Pictures\Vocaloid\Song of Miku.jpg
O61 - LFC:Last File Created 03/08/2009 - 12:31:59 ---A- C:\Users\Leslie\Pictures\Vocaloid\My_voice_is_yours_by_Felicia_Val.png
O61 - LFC:Last File Created 03/08/2009 - 12:32:21 ---A- C:\Users\Leslie\Pictures\Vocaloid\Kaito x Reen.png
O61 - LFC:Last File Created 03/08/2009 - 12:32:31 ---A- C:\Users\Leslie\Pictures\Vocaloid\Miku, Rin, Ren et Kaito.png
O61 - LFC:Last File Created 03/08/2009 - 12:46:15 ---A- C:\Users\Leslie\Music\Vocaloid\Aku no Musune [1] - Daughter of Evil (Rin Kagamine).mp3
O61 - LFC:Last File Created 03/08/2009 - 12:53:16 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcnasvc\mcnasvc000.log
O61 - LFC:Last File Created 03/08/2009 - 12:58:16 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcnasvc\log.ini
O61 - LFC:Last File Created 03/08/2009 - 13:03:33 ---A- C:\Users\Leslie\Music\Vocaloid\Aku no musune [2] - Servant of Evil (Ren Kagamine).mp3
O61 - LFC:Last File Created 03/08/2009 - 13:03:56 ---A- C:\Users\Leslie\Music\Vocaloid\Aku no Musune [3] - Regret message (Rin Kagamine).mp3
O61 - LFC:Last File Created 03/08/2009 - 13:30:25 ---A- C:\Users\Leslie\Pictures\Vocaloid\Aku no Musune.jpg
O61 - LFC:Last File Created 03/08/2009 - 14:56:56 ---A- C:\Users\Leslie\Pictures\Vocaloid\Heart.jpg
O61 - LFC:Last File Created 03/08/2009 - 15:23:03 ---A- C:\Users\All Users\McAfee\MCLOGS\McInst\mskdict.inf004.log
O61 - LFC:Last File Created 03/08/2009 - 15:23:04 ---A- C:\Users\All Users\McAfee\MCLOGS\McInst\mskrules.inf004.log
O61 - LFC:Last File Created 03/08/2009 - 15:23:05 ---A- C:\Users\All Users\McAfee\MCLOGS\McInst\msksbt.inf004.log
O61 - LFC:Last File Created 03/08/2009 - 15:23:06 ---A- C:\Users\All Users\McAfee\MCLOGS\McInst\Cleanup004.log
O61 - LFC:Last File Created 03/08/2009 - 15:23:06 ---A- C:\Users\All Users\McAfee\MCLOGS\McInst\Common004.log
O61 - LFC:Last File Created 03/08/2009 - 15:23:06 ---A- C:\Users\All Users\McAfee\MCLOGS\McInst\mskbkupd.inf004.log
O61 - LFC:Last File Created 03/08/2009 - 17:06:26 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\v3.Friends_1.log
O61 - LFC:Last File Created 03/08/2009 - 17:56:52 ---A- C:\Users\Leslie\Pictures\Vocaloid\Story of Evil.jpg
O61 - LFC:Last File Created 03/08/2009 - 17:59:40 ---A- C:\Users\Leslie\Pictures\Vocaloid\Miku's Revolution.jpg
O61 - LFC:Last File Created 03/08/2009 - 18:08:25 ---A- C:\Users\Leslie\Pictures\Vocaloid\Strip.jpg
O61 - LFC:Last File Created 03/08/2009 - 18:11:33 ---A- C:\Users\Leslie\Pictures\Vocaloid\Cendrillon.jpg
O61 - LFC:Last File Created 03/08/2009 - 18:12:15 ---A- C:\Users\Leslie\Pictures\Vocaloid\Raiwbon Miku.jpg
O61 - LFC:Last File Created 03/08/2009 - 18:15:59 ---A- C:\Users\Leslie\Pictures\Vocaloid\Miku et Rin.jpg
O61 - LFC:Last File Created 03/08/2009 - 18:29:43 ---A- C:\Users\Leslie\Student Exchange\Diaporama\France.ppt
O61 - LFC:Last File Created 03/08/2009 - 18:33:19 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\VuzeActivities.config
O61 - LFC:Last File Created 03/08/2009 - 18:33:19 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\VuzeActivities.config.bak
O61 - LFC:Last File Created 03/08/2009 - 19:04:51 ---A- C:\Users\Leslie\Pictures\Vocaloid\St Valentin Miku x Luka.jpg
O61 - LFC:Last File Created 03/08/2009 - 19:05:08 ---A- C:\Users\Leslie\AppData\Roaming\Microsoft\Office\MSOut12.pip
O61 - LFC:Last File Created 03/08/2009 - 19:05:26 ---A- C:\Users\Leslie\Pictures\Vocaloid\Birday Kaito.jpg
O61 - LFC:Last File Created 03/08/2009 - 19:06:29 ---A- C:\Users\Leslie\Pictures\Vocaloid\Rin et Ren grandissent.jpg
O61 - LFC:Last File Created 03/08/2009 - 19:08:39 ---A- C:\Users\Leslie\Pictures\Vocaloid\Rin et Ren (LoL).jpg
O61 - LFC:Last File Created 03/08/2009 - 19:13:13 ---A- C:\Users\All Users\McAfee\MCLOGS\SiteAdvisor\McSACore\McSACore000.log
O61 - LFC:Last File Created 03/08/2009 - 19:29:48 ---A- C:\Users\Leslie\Pictures\Vocaloid\Miko Miku.jpg
O61 - LFC:Last File Created 03/08/2009 - 19:32:16 ---A- C:\Users\Leslie\Pictures\Vocaloid\Lycéenne.jpg
O61 - LFC:Last File Created 03/08/2009 - 19:37:23 ---A- C:\Users\Leslie\Pictures\Vocaloid\Rin grandi.jpg
O61 - LFC:Last File Created 03/08/2009 - 21:15:13 ---A- C:\Users\Leslie\Pictures\Vocaloid\Miku's derivation.jpg
O61 - LFC:Last File Created 03/08/2009 - 21:15:32 ---A- C:\Users\Leslie\Pictures\Vocaloid\Miku et Black.jpg
O61 - LFC:Last File Created 03/08/2009 - 22:14:38 ---A- C:\Users\Leslie\Pictures\Vocaloid\Roméo & Cindarella.jpg
O61 - LFC:Last File Created 03/08/2009 - 22:16:31 ---A- C:\Users\Leslie\Pictures\Vocaloid\Butterfly Miku & Luka.jpg
O61 - LFC:Last File Created 03/08/2009 - 22:21:42 ---A- C:\Users\Leslie\Pictures\Vocaloid\Vampire.jpg
O61 - LFC:Last File Created 03/08/2009 - 22:22:18 ---A- C:\Users\Leslie\AppData\Roaming\Adobe\Flash Player\AssetCache\26N8KN4Y\1C04C61346A1FA3139A37D860ED92632AA13DECF.heu
O61 - LFC:Last File Created 03/08/2009 - 22:22:18 ---A- C:\Users\Leslie\AppData\Roaming\Adobe\Flash Player\AssetCache\26N8KN4Y\1C04C61346A1FA3139A37D860ED92632AA13DECF.swz
O61 - LFC:Last File Created 03/08/2009 - 22:22:22 ---A- C:\Users\Leslie\AppData\Roaming\Adobe\Flash Player\AssetCache\26N8KN4Y\F7536EF0D78A77B889EEBE98BF96BA5321A1FDE0.heu
O61 - LFC:Last File Created 03/08/2009 - 22:22:22 ---A- C:\Users\Leslie\AppData\Roaming\Adobe\Flash Player\AssetCache\26N8KN4Y\F7536EF0D78A77B889EEBE98BF96BA5321A1FDE0.swz
O61 - LFC:Last File Created 03/08/2009 - 22:22:22 ---A- C:\Users\Leslie\AppData\Roaming\Adobe\Flash Player\AssetCache\26N8KN4Y\cacheSize.txt
O61 - LFC:Last File Created 04/08/2009 - 15:21:36 ---A- C:\Users\Leslie\Music\Vocaloid\Miku_Meiko_Kaito_Rin_Ren - Alice Human Sacrifice.mp3
O61 - LFC:Last File Created 04/08/2009 - 15:26:59 ---A- C:\Users\Leslie\Music\Vocaloid\Rin et Ren Kagamine - White Black Hospital Ward.mp3
O61 - LFC:Last File Created 04/08/2009 - 15:36:21 ---A- C:\Users\Leslie\Music\Vocaloid\World is Mine (Ren version).mp3
O61 - LFC:Last File Created 04/08/2009 - 15:39:45 ---A- C:\Users\All Users\McAfee\VirusScan\Data\VMapLogs.old
O61 - LFC:Last File Created 04/08/2009 - 15:40:12 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcupdmgr\mcupdmgr000.log
O61 - LFC:Last File Created 04/08/2009 - 15:50:56 ---A- C:\Users\Leslie\Music\Vocaloid\World Is Mine (Kaito version).mp3
O61 - LFC:Last File Created 04/08/2009 - 15:54:07 ---A- C:\Users\Leslie\Music\Vocaloid\Cantarella (Rin et Ren version).mp3
O61 - LFC:Last File Created 04/08/2009 - 16:03:38 ---A- C:\Users\Leslie\Pictures\Vocaloid\Cantarella.jpg
O61 - LFC:Last File Created 04/08/2009 - 16:07:53 ---A- C:\Users\Leslie\Music\Vocaloid\Meiko - Conchita, The Epicurean Daughter of Evil (with Rin and Ren).mp3
O61 - LFC:Last File Created 04/08/2009 - 16:17:09 ---A- C:\Users\Leslie\Music\Vocaloid\Rin et Ren Kagamine - Romeo & Cinderella.mp3
O61 - LFC:Last File Created 04/08/2009 - 16:39:39 ---A- C:\Users\Leslie\Music\Vocaloid\Luka Megurine et Rin Kagamine - Anti The Holic.mp3
O61 - LFC:Last File Created 04/08/2009 - 17:39:33 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\torrents\Vocaloid.4032429.TPB.torrent
O61 - LFC:Last File Created 04/08/2009 - 17:39:45 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\plugins\azupnpav\cd.dat
O61 - LFC:Last File Created 04/08/2009 - 17:50:04 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\clientid_1.log
O61 - LFC:Last File Created 04/08/2009 - 18:01:15 ---A- C:\Users\Leslie\Graphisme\Shiki\Miku version\Sans titre 1.bmp
O61 - LFC:Last File Created 04/08/2009 - 18:01:31 ---A- C:\Users\Leslie\Graphisme\Shiki\Miku version\avatar.jpg
O61 - LFC:Last File Created 04/08/2009 - 19:10:40 ---A- C:\Users\Leslie\Pictures\Vocaloid\Alice Human Sacrifice.jpg
O61 - LFC:Last File Created 04/08/2009 - 19:11:13 ---A- C:\Users\Leslie\Pictures\Vocaloid\Symbole - Alice Human sacrifice.jpg
O61 - LFC:Last File Created 04/08/2009 - 20:05:58 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\AU_Log\TempSave\6980_6308\server.ini
O61 - LFC:Last File Created 04/08/2009 - 22:32:53 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\active\8037DBB03A259CD0A0E33C3EC3C390440D7F5BA1.dat.bak
O61 - LFC:Last File Created 04/08/2009 - 22:32:53 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\active\C5AE7554EA40AD8B26AEA1934D88046D27CDF11B.dat.bak
O61 - LFC:Last File Created 04/08/2009 - 22:34:55 ---A- C:\Users\All Users\Azureus\azCID.txt
O61 - LFC:Last File Created 04/08/2009 - 22:34:55 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\ipfilter.cache
O61 - LFC:Last File Created 04/08/2009 - 22:34:58 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU4800109308862562984.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:34:59 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\unsentdata.config
O61 - LFC:Last File Created 04/08/2009 - 22:34:59 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\unsentdata.config.bak
O61 - LFC:Last File Created 04/08/2009 - 22:34:59 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\v3.Friends.dat
O61 - LFC:Last File Created 04/08/2009 - 22:34:59 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\v3.Friends.dat.bak
O61 - LFC:Last File Created 04/08/2009 - 22:35:01 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU7827577230734501871.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:35:02 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\MetaSearch_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:35:02 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU7945292490694800310.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:35:03 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\CNetworks_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:35:04 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\v3.Stream_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:35:07 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\seltrace_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:35:07 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\v3.PMsgr_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:35:08 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\v3.CMsgr_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:35:32 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\dht\version.dat
O61 - LFC:Last File Created 04/08/2009 - 22:36:53 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU2190113693927888221.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:36:53 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU2521008767259453154.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:36:53 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU5421491985328855303.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:37:53 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU664060007757176461.tmp
O61 - LFC:Last File Created 04/08/2009 - 22:38:01 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\Subscriptions_1.log
O61 - LFC:Last File Created 04/08/2009 - 22:40:01 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\v3.ads_1.log
O61 - LFC:Last File Created 04/08/2009 - 23:02:01 ---A- C:\Users\Leslie\Pictures\Vocaloid\Beach.jpg
O61 - LFC:Last File Created 05/08/2009 - 00:40:31 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\v3.Friends_2.log
O61 - LFC:Last File Created 05/08/2009 - 00:40:40 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU1172758473219466021.tmp
O61 - LFC:Last File Created 05/08/2009 - 00:41:26 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\devices.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:26 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\devices.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:26 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\thread_1.log
O61 - LFC:Last File Created 05/08/2009 - 00:41:26 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\net\pm_3215.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\azureus.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\azureus.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\Devices_1.log
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\sidebarauto.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\sidebarauto.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tables.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:27 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tables.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:28 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\NetStatus_1.log
O61 - LFC:Last File Created 05/08/2009 - 00:41:29 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\dht\contacts.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:29 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\dht\diverse.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\active\8037DBB03A259CD0A0E33C3EC3C390440D7F5BA1.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\active\C5AE7554EA40AD8B26AEA1934D88046D27CDF11B.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\active\cache.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\azureus.statistics
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\azureus.statistics.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\dht\general.dat
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\downloads.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\downloads.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\friends.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\friends.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\Friends_2.log
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tracker.config
O61 - LFC:Last File Created 05/08/2009 - 00:41:30 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tracker.config.bak
O61 - LFC:Last File Created 05/08/2009 - 00:41:31 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU3163406397849212823.tmp
O61 - LFC:Last File Created 05/08/2009 - 00:41:33 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\debug_1.log
O61 - LFC:Last File Created 05/08/2009 - 11:46:31 ---A- C:\Users\All Users\McAfee\MCLOGS\VirusScan\mcmscsvc\mcmscsvc000.log
O61 - LFC:Last File Created 05/08/2009 - 12:17:29 ---A- C:\Users\Leslie\Pictures\Vocaloid\Duo Miku x Luka.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:17:41 ---A- C:\Users\Leslie\Pictures\Vocaloid\Luka et Tako Luka.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:00 ---A- C:\Users\Leslie\Pictures\Vocaloid\Informatique.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:04 ---A- C:\Users\Leslie\Pictures\Vocaloid\Song's Luka.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:08 ---A- C:\Users\Leslie\Pictures\Vocaloid\Awakening's Luka.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:21 ---A- C:\Users\Leslie\Pictures\Vocaloid\Luka - cosplay de Miku.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:27 ---A- C:\Users\Leslie\Pictures\Vocaloid\Little Luka-chan.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:33 ---A- C:\Users\Leslie\Pictures\Vocaloid\Snow Luka.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:18:40 ---A- C:\Users\Leslie\Pictures\Vocaloid\Luka-chan.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:38:24 ---A- C:\Users\Leslie\AppData\Local\Google\Google Desktop\09c0d0913eb1\sites.txt
O61 - LFC:Last File Created 05/08/2009 - 12:45:06 ---A- C:\Users\Leslie\Pictures\Vocaloid\Divers Vocaloid.png
O61 - LFC:Last File Created 05/08/2009 - 12:45:20 ---A- C:\Users\Leslie\Pictures\Vocaloid\Chibi vocaloids.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:45:30 ---A- C:\Users\Leslie\Pictures\Vocaloid\Mirror.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:46:18 ---A- C:\Users\Leslie\Pictures\Vocaloid\Haku and her little brother.jpg
O61 - LFC:Last File Created 05/08/2009 - 12:49:25 ---A- C:\Users\Leslie\Pictures\Vocaloid\Luka et Miku Hachune.png
O61 - LFC:Last File Created 05/08/2009 - 13:28:50 ---A- C:\Users\Leslie\AppData\Roaming\Microsoft\Office\Récents\Diaporama.lnk
O61 - LFC:Last File Created 05/08/2009 - 13:28:50 ---A- C:\Users\Leslie\AppData\Roaming\Microsoft\Office\Récents\France.lnk
O61 - LFC:Last File Created 05/08/2009 - 13:30:35 ---A- C:\Users\Leslie\AppData\Roaming\Microsoft\Office\PowerPoi.pip
O61 - LFC:Last File Created 05/08/2009 - 13:30:35 ---A- C:\Users\Leslie\AppData\Roaming\Microsoft\PowerPoint\PPT.pcb
O61 - LFC:Last File Created 05/08/2009 - 13:32:52 ---A- C:\Users\Leslie\AppData\Roaming\DAEMON Tools Lite\ImageCatalog.xml
O61 - LFC:Last File Created 05/08/2009 - 14:35:36 ---A- C:\Users\All Users\McAfee\MCLOGS\Mps\mcproxy\mcproxy000.log
O61 - LFC:Last File Created 05/08/2009 - 14:42:19 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcmscsvc\log.ini
O61 - LFC:Last File Created 05/08/2009 - 14:42:19 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcmscsvc\mcmscsvc002.log
O61 - LFC:Last File Created 05/08/2009 - 15:42:50 ---A- C:\Users\All Users\McAfee\VirusScan\Data\VMapLogs.log
O61 - LFC:Last File Created 05/08/2009 - 15:43:27 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcupdmgr\mcupdmgr001.log
O61 - LFC:Last File Created 05/08/2009 - 15:43:28 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcupdmgr\log.ini
O61 - LFC:Last File Created 05/08/2009 - 17:42:17 ---A- C:\Users\All Users\McAfee\MCLOGS\SiteAdvisor\McSACore\McSACore001.log
O61 - LFC:Last File Created 05/08/2009 - 17:46:21 ---A- C:\Users\All Users\McAfee\MCLOGS\VirusScan\mcshell\mcshell000.log
O61 - LFC:Last File Created 05/08/2009 - 17:52:18 ---A- C:\Users\All Users\McAfee\MCLOGS\SiteAdvisor\McSACore\log.ini
O61 - LFC:Last File Created 05/08/2009 - 17:56:32 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcsysmon\mcsysmon000.log
O61 - LFC:Last File Created 05/08/2009 - 17:59:55 ---A- C:\Users\All Users\McAfee\MCLOGS\MpsMISP\mcproxy\mcproxy000.log
O61 - LFC:Last File Created 05/08/2009 - 18:01:56 ---A- C:\Users\Leslie\AppData\Local\Temp\~DF381C.tmp
O61 - LFC:Last File Created 05/08/2009 - 18:12:36 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar History\thumbnails\00000001.png
O61 - LFC:Last File Created 05/08/2009 - 18:12:36 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar History\urls\00000001
O61 - LFC:Last File Created 05/08/2009 - 18:30:28 ---A- C:\Users\Leslie\AppData\Roaming\Google\Local Search History\google%2Eweb.w
O61 - LFC:Last File Created 05/08/2009 - 18:31:00 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar History\thumbnails\00000002.png
O61 - LFC:Last File Created 05/08/2009 - 18:31:00 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar History\urls\00000002
O61 - LFC:Last File Created 05/08/2009 - 19:11:51 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Uninstaller.exe
O61 - LFC:Last File Created 05/08/2009 - 19:11:51 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\uninstall.dat
O61 - LFC:Last File Created 05/08/2009 - 19:12:04 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\dsvout.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:04 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\jlea.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:04 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\lea.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:05 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Toolkit.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:25 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\PATCHW32.DLL
O61 - LFC:Last File Created 05/08/2009 - 19:12:25 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\TmUpdate.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:25 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\aucfg.ini
O61 - LFC:Last File Created 05/08/2009 - 19:12:25 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\ciussi32.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:25 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\patch.exe
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Microsoft.VC80.CRT.manifest
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Microsoft.VC80.MFC.manifest
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\getMac.exe
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\mfc80.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\mfc80u.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\mfcm80.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\mfcm80u.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\msvcm80.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\msvcp80.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:56 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\msvcr80.dll
O61 - LFC:Last File Created 05/08/2009 - 19:12:57 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\client-defaults.profile.xml
O61 - LFC:Last File Created 05/08/2009 - 19:12:57 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\fullscan.profile.xml
O61 - LFC:Last File Created 05/08/2009 - 19:12:57 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\server-defaults.profile.xml
O61 - LFC:Last File Created 05/08/2009 - 19:12:58 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\TmEngDrv.dll
O61 - LFC:Last File Created 05/08/2009 - 19:13:30 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\housecall-v8.activeupdate.trendmicro.com\ini_xml.zip
O61 - LFC:Last File Created 05/08/2009 - 19:13:43 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\housecall-v8.activeupdate.trendmicro.com\dce-exe-mssign-v6.1-1027.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:10 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\ushousecall02.trendmicro.com\ssapi32.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:22 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\housecall-v8.activeupdate.trendmicro.com\ssapi32.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:33 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\ushousecall02.trendmicro.com\ini_xml.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:34 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\ushousecall02.trendmicro.com\dce-exe-mssign-v6.1-1027.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:39 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\AU_Log\TempSave\6980_6308\ini_xml.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:39 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\GetServer.ini
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\AU_Log\TempSave\6980_6308\AU_Down\engine\dce-exe-mssign-v6.1-1027.zip
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\housecall-v8.activeupdate.trendmicro.com\dce-exe-mssign-v6.1-1027.zip.etag
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\housecall-v8.activeupdate.trendmicro.com\ini_xml.zip.etag
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\housecall-v8.activeupdate.trendmicro.com\ssapi32.zip.etag
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\ushousecall02.trendmicro.com\dce-exe-mssign-v6.1-1027.zip.etag
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\ushousecall02.trendmicro.com\ini_xml.zip.etag
O61 - LFC:Last File Created 05/08/2009 - 19:15:42 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\Update\AU_Cache\ushousecall02.trendmicro.com\ssapi32.zip.etag
O61 - LFC:Last File Created 05/08/2009 - 19:15:44 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\AU_Log\TempSave\6980_6308\AuPatch.ini
O61 - LFC:Last File Created 05/08/2009 - 19:15:45 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\AU_Log\TmuDump.txt
O61 - LFC:Last File Created 05/08/2009 - 19:17:37 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\local.conf
O61 - LFC:Last File Created 05/08/2009 - 19:17:37 ---A- C:\Users\Leslie\AppData\Roaming\HouseCall 6.6\log\housecall0.log
O61 - LFC:Last File Created 05/08/2009 - 19:47:03 ---A- C:\Users\All Users\McAfee\VirusScan\Quarantine\7d985142f23020.bup
O61 - LFC:Last File Created 05/08/2009 - 19:50:02 ---A- C:\Users\All Users\McAfee\VirusScan\Quarantine\7d9851432226f0.bup
O61 - LFC:Last File Created 05/08/2009 - 19:58:10 ---A- C:\Users\Leslie\Documents\Backup.reg
O61 - LFC:Last File Created 05/08/2009 - 20:06:55 ---A- C:\Users\All Users\McAfee\VirusScan\Logs\OAS.Log
O61 - LFC:Last File Created 05/08/2009 - 20:06:55 ---A- C:\Users\All Users\McAfee\VirusScan\Quarantine\7d9851563713d0.bup
O61 - LFC:Last File Created 05/08/2009 - 20:07:00 ---A- C:\Users\All Users\McAfee\MCLOGS\VirusScan\mcshield\mcshield000.log
O61 - LFC:Last File Created 05/08/2009 - 20:44:58 ---A- C:\Users\All Users\McAfee\MCLOGS\mcinfo\mcinfo000.log
O61 - LFC:Last File Created 05/08/2009 - 21:11:18 ---A- C:\Users\All Users\McAfee\HackerWatch\data\HwShared.xdb
O61 - LFC:Last File Created 05/08/2009 - 21:12:29 ---A- C:\Users\All Users\Fighters\spywarefighter\logs\install.txt
O61 - LFC:Last File Created 05/08/2009 - 21:12:29 ---A- C:\Users\Leslie\AppData\Roaming\install.txt
O61 - LFC:Last File Created 05/08/2009 - 22:19:55 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcshell\mcshell000.log
O61 - LFC:Last File Created 05/08/2009 - 22:35:57 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar History\thumbnails\00000003.png
O61 - LFC:Last File Created 05/08/2009 - 22:35:57 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar History\urls\00000003
O61 - LFC:Last File Created 05/08/2009 - 22:43:10 ---A- C:\Users\Leslie\AppData\Local\Google\Toolbar\metrics.xml
O61 - LFC:Last File Created 05/08/2009 - 22:44:28 --HA- C:\Users\Default\ntuser.dat.LOG1
O61 - LFC:Last File Created 05/08/2009 - 22:44:28 -SHA- C:\Users\Default\NTUSER.DAT
O61 - LFC:Last File Created 05/08/2009 - 22:56:28 ---A- C:\Users\All Users\McAfee\MSC\Logs\Events.dat
O61 - LFC:Last File Created 05/08/2009 - 23:14:05 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU2135228124158662851.tmp
O61 - LFC:Last File Created 05/08/2009 - 23:17:35 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\dht\addresses.dat
O61 - LFC:Last File Created 05/08/2009 - 23:17:36 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\AutoSpeedSearchHistory_1.log
O61 - LFC:Last File Created 05/08/2009 - 23:17:36 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU2421247876552859863.tmp
O61 - LFC:Last File Created 05/08/2009 - 23:30:06 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\tmp\AZU7478847009335795449.tmp
O61 - LFC:Last File Created 05/08/2009 - 23:35:04 ---A- C:\Users\Leslie\AppData\Roaming\Azureus\logs\thread_2.log
O61 - LFC:Last File Created 06/08/2009 - 00:33:00 ---A- C:\Users\All Users\McAfee\VirusScan\Logs\Leslie_ODS.Log
O61 - LFC:Last File Created 06/08/2009 - 00:33:05 ---A- C:\Users\All Users\McAfee\MSC\McConfig.dat
O61 - LFC:Last File Created 06/08/2009 - 00:33:15 ---A- C:\Users\All Users\McAfee\MSC\Logs\{D232EBA1-39EC-4BC6-96C9-610FDF81662F}.log
O61 - LFC:Last File Created 06/08/2009 - 00:35:24 --HA- C:\Users\Leslie\AppData\Local\IconCache.db
O61 - LFC:Last File Created 06/08/2009 - 00:36:04 ---A- C:\Users\All Users\McAfee\MPF\data\History.dat
O61 - LFC:Last File Created 06/08/2009 - 09:27:47 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\MskSrver\MskSrver000.log
O61 - LFC:Last File Created 06/08/2009 - 09:27:48 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\MPFSrv\MPFSrv000.log
O61 - LFC:Last File Created 06/08/2009 - 09:27:48 ---A- C:\Users\All Users\McAfee\MCLOGS\Personal Firewall\MPFSrv\MPFSrv000.log
O61 - LFC:Last File Created 06/08/2009 - 09:28:00 ---A- C:\Users\Leslie\AppData\Local\Temp\RtkBtMnt.exe
O61 - LFC:Last File Created 06/08/2009 - 09:28:11 ---A- C:\Users\All Users\McAfee\MCLOGS\Anti-Spam\MskSrver\MskSrver000.log
O61 - LFC:Last File Created 06/08/2009 - 09:28:29 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcagent\mcagent000.log
O61 - LFC:Last File Created 06/08/2009 - 09:28:33 ---A- C:\Users\All Users\McAfee\MPF\data\log.edb
O61 - LFC:Last File Created 06/08/2009 - 09:28:36 ---A- C:\Users\All Users\McAfee\MCLOGS\mcoemmgr\McOEMMGr\McOEMMGr000.log
O61 - LFC:Last File Created 06/08/2009 - 09:30:07 ---A- C:\Users\Leslie\AppData\Local\Temp\~DF6E73.tmp
O61 - LFC:Last File Created 06/08/2009 - 09:30:25 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcnasvc\mcnasvc001.log
O61 - LFC:Last File Created 06/08/2009 - 09:32:20 ---A- C:\Users\All Users\McAfee\MSC\McSetng.ini
O61 - LFC:Last File Created 06/08/2009 - 09:33:27 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\McUpdate\McUpdate000.log
O61 - LFC:Last File Created 06/08/2009 - 09:33:33 ---A- C:\Users\All Users\McAfee\MSC\mcifolog.log
O61 - LFC:Last File Created 06/08/2009 - 09:33:47 ---A- C:\Users\Leslie\AppData\Local\Temp\Leslie.bmp
O61 - LFC:Last File Created 06/08/2009 - 09:33:49 ---A- C:\Users\All Users\McAfee\MCLOGS\VirusScan\mcupdmgr\mcupdmgr000.log
O61 - LFC:Last File Created 06/08/2009 - 09:33:52 ---A- C:\Users\Leslie\AppData\Local\Temp\jusched.log
O61 - LFC:Last File Created 06/08/2009 - 09:33:57 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcupdmgr\mcupdmgr002.log
O61 - LFC:Last File Created 06/08/2009 - 09:33:59 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcmscsvc\mcmscsvc000.log
O61 - LFC:Last File Created 06/08/2009 - 09:34:01 ---A- C:\Users\All Users\McAfee\MCLOGS\MISP\mcsvrcnt\mcsvrcnt000.log
O61 - LFC:Last File Created 06/08/2009 - 09:40:07 ---A- C:\Users\Leslie\AppData\Local\Google\Google Desktop\09c0d0913eb1\uinfo.dat
O61 - LFC:Last File Created 06/08/2009 - 09:42:54 ---A- C:\Users\All Users\McAfee\MCLOGS\SiteAdvisor\McSACore\McSACore002.log
O61 - LFC:Last File Created 06/08/2009 - 09:42:55 ---A- C:\Users\All Users\McAfee\SiteAdvisor\SA.dat
O61 - LFC:Last File Created 06/08/2009 - 23:17:37 ---A- C:\Users\All Users\McAfee\VirusScan\Quarantine\7d985151d378d0.bup
O61 - LFC:Last File Created 06/08/2009 - 23:17:38 ---A- C:\Users\All Users\McAfee\MSC\Logs\{14D7179E-331B-46C1-B27E-48738B2AFD91}.log
O61 - LFC:Last File Created 06/08/2009 - 23:17:38 ---A- C:\Users\All Users\McAfee\VirusScan\Data\mcvsrpt.dat
End of the scan: 1060 lines -
Contributeur sécuritéAssure-toi que l'UAC-User Account Control -contrôle des comptes utilisateurs est bien désactivé.
Clique-droit sur le raccourci Toolbar-S&D sur le Bureau et choisis " Exécuter en tant qu' Administrateur ".
Tape sur "2" puis valide en appuyant sur "Entrée".
! Ne ferme pas la fenêtre lors de la suppression !
Un rapport sera généré, poste son contenu ici.
==========================
/!\Désinstalle également Mc Afee afin de ne garder qu'un antivirus sur ton pc /!\ -
Voilà le rapport:
(ps: c'est gênant d'avoir BitDefender et McAfee en même temps? MacAfee était sur l'ordi dès le début, c'est le vendeur qui m'a donné ensuite BitDefender à installer...)
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5670 @ 1.80GHz )
BIOS : Ver 1.00PARTTBL
USER : Leslie ( Administrator )
BOOT : Normal boot
Antivirus : Antivirus BitDefender 12.0 (Activated)
Firewall : Pare-feu BitDefender 12.0 (Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:94 Go)
D:\ (Local Disk) - NTFS - Total:144 Go (Free:130 Go)
E:\ (CD or DVD)
F:\ (CD or DVD)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 06/08/2009|12:51 )
[ UAC => 1 ]
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
Supprime! - C:\Program Files\DAEMON Tools Toolbar
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://homepage.acer.com/rdr.aspx?b=ACAW&l=040c&s=2&o=vp32&d=0109&m=extensa_5620"
"Url"="https://www.msn.com/fr-fr/actualite/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Local Page"="C:\\Windows\\System32\\blank.htm"
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\_Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\__Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Azureus\torrents\___Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe CS4 Master Collection [working crack] - Darkman.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (2).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (3).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (4).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (5).lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_Photoshop_CS4_Extended_Incl_Keygen_[dukehill221].5010089.TPB(2).torrent.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_Photoshop_CS4_Extended_Incl_Keygen_[dukehill221].5010089.TPB.torrent.lnk
C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\crack.lnk
C:\Users\Leslie\Desktop\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
[ UAC => 1 ]
1 - "C:\ToolBar SD\TB_1.txt" - 06/08/2009|10:35 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 06/08/2009|12:52 - Option : [2]
-----------\\ Fin du rapport a 12:52:55,42 -
Contributeur sécurité
c'est gênant d'avoir BitDefender et McAfee en même temps?
Oui ,il risque de se détecter entre eux,ralentir ton pc ......
Les premiers vecteurs d'infections ! Les Cracks :C:\Users\Leslie\AppData\Roaming\Azureus\torrents\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent C:\Users\Leslie\AppData\Roaming\Azureus\torrents\_Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent C:\Users\Leslie\AppData\Roaming\Azureus\torrents\__Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent C:\Users\Leslie\AppData\Roaming\Azureus\torrents\___Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe CS4 Master Collection [working crack] - Darkman.lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (2).lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (3).lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (4).lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB (5).lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_Photoshop_CS4_Extended_Incl_Keygen_[dukehill221].5010089.TPB(2).torrent.lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\Adobe_Photoshop_CS4_Extended_Incl_Keygen_[dukehill221].5010089.TPB.torrent.lnk C:\Users\Leslie\AppData\Roaming\Microsoft\Windows\Recent\crack.lnk C:\Users\Leslie\Desktop\Adobe_CS4_Master_Collection_Full___working_crack_[Darkman].4696574.TPB.torrent
Supprimes les STP .
============================
1) Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.
2) Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre le sur ton Bureau à partir de ce lien :
https://www.malwarebytes.com/
3) A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.
4) Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.
5) Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.
6) MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse. Comme MBAM se met automatiquement à jour en fin d'installation, clique sur OK pour fermer la boîte de dialogue. La fenêtre principale de MBAM s'affiche :
7) Dans l'onglet analyse, vérifie que "Exécuter un examen complet" est coché et clique sur le bouton Rechercher pour démarrer l'analyse.
8) MBAM analyse ton ordinateur. L'analyse peut prendre un certain temps. Il suffit de vérifier de temps en temps son avancement.
9) A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.
10) Si des malwares ont été détectés, leur liste s'affiche.
En cliquant sur Suppression (?) , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
11) MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Ferme le Bloc-notes. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)
12) Ferme MBAM en cliquant sur Quitter.
13) Poste le rapport dans ta réponse
-
Je te conseille d'utiliser Remover pour supprimer les vers + un antivirus (Ex : Avast - Avira - Kaspersky - Norton ...)
Pour telecharger Remover :
https://www.commentcamarche.net/telecharger/securite/4251-avcleaner-gdata-uninstaller/
- 1
- 2
- 3