|
Bibou Le Forum Portail sur la sécurité |
| | [Résolu] comment enlever ilivid | |
| | Auteur | Message |
---|
vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 14:21 | |
| bonjour quand j'ouvre mozilla firefox j'ai ilivid j'ai le rapport : http://www.cijoint.fr/cjlink.php?file=cj201110/cijB3SNZQq.txt aidez moi svp | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 14:33 | |
| Bonjour Vandenkokof et sois le bienvenu sur le forum Tu es vraiment né un 9 octobre ? Si c'est le cas, bon anniversaire J'aimerais que tu fasses cela si tu veux bien : - Citation :
Cliquez ici pour Télécharger ZHPDiag ( de Nicolas coolman )
Double cliquez sur le fichier d'installation, puis installez le avec les paramètres par défaut (Cochez " Créer une icône sur le bureau " )
- Lancez ZHPDiag en double cliquant sur l'icône présente sur votre bureau (Clic droit -> Exécuter en tant qu'administrateur ( Vista/seven )
- Cliquez sur la loupe en haut à gauche, puis laissez l'outil scanner
- Une fois le scan terminé, cliquez sur l'icône en forme de disquette et enregistrez le fichier sur votre bureau
Postez le contenu du rapport Héberge le rapport sur cijoint comme tu l'as fait puis communique moi le lien s'il te plait. A plus tard | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 14:53 | |
| Rapport de ZHPDiag v1.28.1367 par Nicolas Coolman, Update du 05/10/2011 Run by Gaby at 09/10/2011 14:42:03 Web site : http://www.premiumorange.com/zeb-help-process/zhpdiag.html State : Version à jour.
---\\ Web Browser MSIE: Internet Explorer v8.0.7600.16385 MFIE: Mozilla Firefox 7.0.1 v7.0.1 (Defaut) GCIE: Google Chrome v14.0.835.202
---\\ Windows Product Information Windows 7 Starter Edition, 32-bit (Build 7600) Windows Server License Manager Script : OK ~ Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : GCFF6 Windows License : OK ~ Windows Remaining Initializations Number : 2 Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK
---\\ System Information ~ Processor: x86 Family 6 Model 28 Stepping 10, GenuineIntel ~ Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 1013 MB (13% free) System Restore: Activé (Enable) System drive C: has 151 GB (69%) free of 216 GB
---\\ Logged in mode ~ Computer Name: GABY-PC ~ User Name: Gaby ~ All Users Names: Gaby, Administrateur, ~ Unselected Option: O45,O61,O62,O65,O66,O82 Logged in as Administrator
---\\ Environnement Variables ~ System Unit : C:\ ~ %AppData% : C:\Users\Gaby\AppData\Roaming\ ~ %Desktop% : C:\Users\Gaby\Desktop\ ~ %Favorites% : C:\Users\Gaby\Favorites\ ~ %LocalAppData% : C:\Users\Gaby\AppData\Local\ ~ %StartMenu% : C:\Users\Gaby\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\system32\
---\\ DOS/Devices C:\ Hard drive, Flash drive, Thumb drive (Free 151 Go of 216 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 3 Go of 4 Go)
---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services] wscsvc : OK ~ Scan Security Center in 00mn 00s
---\\ Recherche particulière de fichiers génériques [MD5.2AF58D15EDC06EC6FDACCE1F19482BBF] - (.Microsoft Corporation - Explorateur Windows.) (.18/05/2011 - 06:33:07.) -- C:\Windows\Explorer.exe [2614784] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (....) (.14/07/2009 - 02:14:31.) -- C:\Windows\system32\rundll32.exe [44544] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:14:45.) -- C:\Windows\system32\Wininit.exe [96256] [MD5.EE0D7471EBF9CE40CC4A203B1F90F028] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.11/08/2011 - 06:36:36.) -- C:\Windows\system32\wininet.dll [981504] [MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.14/07/2010 - 12:01:28.) -- C:\Windows\system32\Winlogon.exe [285696] [MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - (.Microsoft Corporation - Bibliothèque de licences.) (.14/07/2009 - 02:16:15.) -- C:\Windows\system32\sppcomapi.dll [193024] [MD5.D8714A5FB3141F8226D16861F20C5AC4] - (....) (.04/12/2010 - 18:13:00.) -- C:\Windows\system32\fr-FR\user32.dll.mui [19968] [MD5.0DB7A48388D54D154EBEC120461A0FCD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.16/06/2011 - 03:35:40.) -- C:\Windows\system32\drivers\AFD.sys [338944] 1908 [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:26:15.) -- C:\Windows\system32\drivers\atapi.sys [21584] 1828 [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:11:15.) -- C:\Windows\system32\drivers\Cdfs.sys [70656] 1828 [MD5.BA6E70AA0E6091BC39DE29477D866A77] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.14/07/2009 - 00:11:26.) -- C:\Windows\system32\drivers\Cdrom.sys [108544] 1820 [MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.16/06/2011 - 03:33:46.) -- C:\Windows\system32\drivers\DfsC.sys [78336] 1868 [MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.14/07/2009 - 00:50:56.) -- C:\Windows\system32\drivers\HDAudBus.sys [108544] 1908 [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:11:24.) -- C:\Windows\system32\drivers\i8042prt.sys [80896] 1892 [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) (.14/07/2009 - 00:54:29.) -- C:\Windows\system32\drivers\IpNat.sys [101888] 1860 [MD5.CA7570E42522E24324A12161DB14EC02] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.16/06/2011 - 03:43:41.) -- C:\Windows\system32\drivers\MRxSmb.sys [123392] 1836 [MD5.DD52A733BF4CA5AF84562A5E2F963B91] - (.Microsoft Corporation - MBT Transport driver.) (.14/07/2009 - 00:12:21.) -- C:\Windows\system32\drivers\netBT.sys [187904] 1812 [MD5.187002CE05693C306F43C873F821381F] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.13/07/2011 - 06:44:01.) -- C:\Windows\system32\drivers\ntfs.sys [1210240] 1908 [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 00:45:35.) -- C:\Windows\system32\drivers\Parport.sys [79360] 1892 [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.14/07/2009 - 00:54:34.) -- C:\Windows\system32\drivers\Rasl2tp.sys [78848] 1900 [MD5.CB39E896A2A83702D1737BFD402B3542] - (.Microsoft Corporation - TDI Translation Driver.) (.14/07/2009 - 00:12:11.) -- C:\Windows\system32\drivers\tdx.sys [74240] 1804 ~ Scan Generic Processes in 00mn 01s
---\\ Etat des fichiers cachés (Caché/Total) ~ Mes images (My Pictures) : 5/6 ~ Mes musiques (My Musics) : 3/22 ~ Mes Videos (My Videos) : 1/56 ~ Mes Favoris (My Favorites) : 3/30 ~ Mes Documents (My Documents) : 1/2 ~ Mon Bureau (My Desktop) : 2/14 ~ Menu demarrer (Programs) : 7/24 ~ Scan Hidden Files in 00mn 01s
---\\ Processus lancés [MD5.38218E47372B77DDB3C9DDD4390CB960] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe [975952] [PID.1604] [MD5.CBEBF85763814AD2CA23491050B08D76] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696] [PID.1612] [MD5.60458F5BC459644C1EC1E345E13F69A1] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9398888] [PID.1620] [MD5.0ADF079D36B2C25E6E9BECE1BD937ACE] - (.Egis Technology Inc. - PMM Update Application.) -- C:\Program Files\EgisTec IPS\PmmUpdate.exe [407920] [PID.1652] [MD5.0D6972A795995F07B6D78CA7724744FB] - (.Egis Technology Inc. - MyWinLocker.) -- C:\Program Files\EgisTec MyWinLocker\x86\mwlDaemon.exe [349552] [PID.1692] [MD5.D0D2289B1F2B4697A33179E5E1DFF5B4] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [141848] [PID.1716] [MD5.BE2A9AB3C18AF1A712AAF8E86A5F959D] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [173592] [PID.1732] [MD5.62660ADA5E4C8418E71E7AB1992B3AE4] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [150552] [PID.1740] [MD5.CF8528FFD0EED7BA462146D65E40DEF5] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [248440] [PID.1748] [MD5.75102FC486595CF486DFD7239BE30DD5] - (.Pas de propriétaire - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe [206208] [PID.1756] [MD5.8DBB0AC174E75972A0A5CE89F3A3922D] - (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files\Bluetooth Suite\BtvStack.exe [486560] [PID.1780] [MD5.FB367409A60CECAEDFCB1AE0E1D9D994] - (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files\Bluetooth Suite\AthBtTray.exe [302240] [PID.1788] [MD5.8FD0A2FC099FFEEB3DA0691D1E3F0DA8] - (.Insyde Software Corp. - Sync Data.) -- C:\Program Files\Acer\Android Manager\iSync.exe [407416] [PID.1800] [MD5.E7D7CFBB241398E4B6899FE8F7BC3E99] - (.Insyde Software Corp. - Acer Updater for Android™.) -- C:\Program Files\Acer\Updater\iUpdate.exe [492096] [PID.1816] [MD5.78E4A4A955FB995BD41730A9CA99B9FA] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [715296] [PID.1828] [MD5.E7CF222185411C6A3E68273C452B3283] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3493720] [PID.1836] [MD5.24F82C8466B6F733360CDB27CB3CB02F] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [252952] [PID.2032] [MD5.322640D2A69831A182DE6BC937C1828E] - (.Acer Incorporated - Acer VCM.) -- C:\Program Files\Acer\Acer VCM\AcerVCM.exe [704032] [PID.392] [MD5.19180808CB15E6ADE43BEC99DD004ED8] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [55928] [PID.1276] [MD5.11E8D8272FDBE213ADE3DAD91427CE35] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe [11322880] [PID.2144] [MD5.F255E48EA981E943A14CF16269F3F3AF] - (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files\EgisTec IPS\EgisUpdate.exe [201584] [PID.2392] [MD5.2337EC951C4AF6E1AF65D10BD9615BEB] - (.OpenOffice.org - OpenOffice.org 3.3.) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin [11314688] [PID.2420] [MD5.C0B7D85C7BCA7B68FC9EBA04AFCE2F8C] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\Apntex.exe [55928] [PID.2432] [MD5.1DB860CA1C72B0B953B9555BB390E554] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files\Launch Manager\LMworker.exe [305744] [PID.1452] [MD5.A84DD8744F9F96066C8557E2737B39A6] - (.Intel Corporation - igfxext Module.) -- C:\Windows\system32\igfxext.exe [173080] [PID.2852] [MD5.DC192FBC410F2BF9FF59FCF54CD0840D] - (...) -- C:\Program Files\Ad-Remover\main.exe [545071] [PID.4496] [MD5.B0DA80FF42A0819D162A86612896AAF2] - (.Microsoft Corporation - Windows Update.) -- C:\Windows\system32\wuauclt.exe [47104] [PID.4228] [MD5.4E5585800B561FBEF64B27425365A36F] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [924632] [PID.3840] [MD5.83F4BA8B8CDA4F063AA2002955A508A9] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [16856] [PID.1576] [MD5.171D415FA44061250E85A52C4E57AE8E] - (.Nicolas Coolman - Nettoyeur de rapport ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPFix.exe [503296] [PID.2816] [MD5.7B2E3899314974CC40D93A6CD7C855C8] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [2134016] [PID.3204] ~ Scan Processes Running in 00mn 04s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] http://www.searchqu.com G0 - GCSP: Preference [User Data\Default][HomePage] http://www.searchqu.com G2 - GCE: Preference [User Data\Default] [lncjcfkpannmofmpgdfoonkniofdnaba] Shockwave Flash v.10,3,181,34 (Activé) ~ Scan Google Browser in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\prefs.js C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\user.js (.not file.) M3 - MFPP: Plugins - [Gaby] -- C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\searchplugins\SearchResults.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\amazon-france.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\bing.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\cnrtl-tlfi-fr.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\eBay-france.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\google.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\SearchResults.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\wikipedia-fr.xml M3 - MFPP: Plugins - [Gaby] -- C:\Program Files\Mozilla FireFox\searchplugins\yahoo-france.xml M0 - MFSP: prefs.js [Gaby - x6j78r7d.default] http://www.google.fr M2 - MFEP: prefs.js [Gaby - x6j78r7d.default\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}] [] uTorrentBar_FR Community Toolbar v3.7.0.6 (.Conduit Ltd..) M2 - MFEP: prefs.js [Gaby - x6j78r7d.default\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}] [greasemonkey] Greasemonkey v0.9.11 (.Aaron Boodman; http://youngpup.net/.) P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32.dll P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc. - Adobe Shockwave for Director Netscape plug-in, version 11.6.) -- C:\Windows\system32\Adobe\Director\np32dsw.dll P2 - FPN: [HKLM] [@Microsoft.com/NpCtrl,version=1.0] - (. Microsoft Corporation - 4.0.60531.0.) -- c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3508.1109] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3538.0513] - (.Microsoft Corporation - NPWLPG.) -- C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc. - Google Update.) -- C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll ~ Scan Firefox Browser in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R0 - HKUS\S-1-5-21-2846731399-201361375-565854648-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll R3 - URLSearchHook: (no name) - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (...) (No version) -- (.not file.) R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1 ~ Scan IE Browser in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Scan Proxy management in 00mn 00s
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe ~ Scan Keys in 00mn 00s
---\\ Redirection du fichier Hosts (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Scan Hosts File in 00mn 00s
---\\ Browser Helper Objects de navigateur (O2) O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} . (.Atheros Commnucations - Bluetooth IE PlugIn.) -- C:\Program Files\Bluetooth Suite\IEPlugIn.dll O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: SearchCore for Browsers - {9D717F81-9148-4f12-8568-69135F087DB0} . (.Bandoo Media, inc - Url Helper.) -- C:\PROGRA~1\SEARCH~1\SEARCH~1\BROWSE~1.DLL O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll ~ Scan BHO in 00mn 00s
---\\ Internet Explorer Toolbars (O3) O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - avast! WebRep Plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O3 - Toolbar: (no name) - {99079a25-328f-4bd4-be04-00955acaa0a7} . (...) -- (.not file.) ~ Scan Toolbar in 00mn 00s
---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe O4 - HKLM\..\Run: [SuiteTray] . (.Egis Technology Inc. - SuiteTray.) -- C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe O4 - HKLM\..\Run: [EgisUpdate] . (.Egis Technology Inc. - EgisUpdate Release Application.) -- C:\Program Files\EgisTec IPS\EgisUpdate.exe O4 - HKLM\..\Run: [EgisTecPMMUpdate] . (.Egis Technology Inc. - PMM Update Application.) -- C:\Program Files\EgisTec IPS\PmmUpdate.exe O4 - HKLM\..\Run: [mwlDaemon] . (.Egis Technology Inc. - MyWinLocker.) -- C:\Program Files\EgisTec MyWinLocker\x86\mwlDaemon.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe O4 - HKLM\..\Run: [PLFSetI] . (.Pas de propriétaire - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe O4 - HKLM\..\Run: [AtherosBtStack] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files\Bluetooth Suite\BtvStack.exe O4 - HKLM\..\Run: [AthBtTray] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files\Bluetooth Suite\AthBtTray.exe O4 - HKLM\..\Run: [iSyncData] . (.Insyde Software Corp. - Sync Data.) -- C:\Program Files\Acer\Android Manager\iSync.exe O4 - HKLM\..\Run: [AndroidManager] . (.Pas de propriétaire - Acer Configuration Manager for Android™ lau.) -- C:\Program Files\Acer\Android Manager\AML.exe O4 - HKLM\..\Run: [iPatchData] . (.Insyde Software Corp. - Acer Updater for Android™.) -- C:\Program Files\Acer\Updater\iUpdate.exe O4 - HKLM\..\Run: [Acer ePower Management] . (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe O4 - HKLM\..\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe O4 - HKCU\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-21-2846731399-201361375-565854648-1000\..\Run: [msnmsgr] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ~ Scan Application in 00mn 00s
---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Users\Gaby\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Users\Gaby\Desktop\Acer Crystal Eye Webcam.lnk . (.SuYin.) -- C:\Program Files\AcerCrystalEye\Acer Crystal Eye Webcam.exe O4 - Global Startup: C:\Users\Gaby\Desktop\Ad-Remover.lnk . (...) -- C:\Program Files\Ad-Remover\main.exe O4 - Global Startup: C:\Users\Gaby\Desktop\PhotoFiltre.lnk . (.Antonio Da Cruz.) -- C:\Program Files\PhotoFiltre\photofiltre.exe O4 - Global Startup: C:\Users\Gaby\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk . (.Google Inc..) -- C:\Program Files\Google\Chrome\Application\chrome.exe O4 - Global Startup: C:\Users\Gaby\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Scan Global Startup in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9) O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} . (.Microsoft Corporation - Windows Live Messenger Companion core resources.) -- C:\Program Files\Windows Live\Companion\companion O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBro O9 - Extra button: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} . (.Microsoft Corporation - Windows Live Writer Blog This Extension.) -- C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll ~ Scan IE Extra Buttons in 00mn 00s
---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Fournisseur Shim d’affectation de noms de messagerie.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Fournisseur d’espace de noms PNRP.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - Windows Sockets Helper DLL.) -- C:\Windows\system32\wshbth.dll O10 - WLSP:\000000000008\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL O10 - WLSP:\000000000009\Winsock LSP File . (.Microsoft Corp. - Microsoft® Windows Live ID Namespace Provider.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL ~ Scan Winsock in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{6F764042-12B7-4EF5-9E9C-FB11703FAE4B}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{9A586263-2682-4B2D-9ACD-3E916C9E64DC}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{6F764042-12B7-4EF5-9E9C-FB11703FAE4B}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{9A586263-2682-4B2D-9ACD-3E916C9E64DC}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{6F764042-12B7-4EF5-9E9C-FB11703FAE4B}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{9A586263-2682-4B2D-9ACD-3E916C9E64DC}: DhcpNameServer = 192.168.1.1 ~ Scan Domain in 00mn 00s
---\\ Protocole additionnel (O18) O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\system32\inetcomm.dll O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files\Acer\Acer VCM\Skype4COM.dll O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\msvidctl.dll O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\system32\mscoree.dll O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\system32\urlmon.dll ~ Scan Protocole Additionnel in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\system32\igfxdev.dll ~ Scan Winlogon in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - AppInit_DLLs: . (.Bandoo Media, inc - Data Manager.) - C:\PROGRA~1\SEARCH~1\SEARCH~1\datamngr.dll ~ Scan AppInit DLL in 00mn 00s
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ Scan SSODL in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files\Bluetooth Suite\adminservice.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe O23 - Service: Acer ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files\Acer\Registration\GREGsvc.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: Raw Socket Service (RS_Service) . (.Acer Incorporated - Raw Socket Service.) - C:\Program Files\Acer\Acer VCM\RS_Service.exe O23 - Service: Updater Service (Updater Service) . (.Acer Group - Updater Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe ~ Scan Services in 00mn 02s
---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Scan Desktop Component in 00mn 00s
---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job O39 - APT:Automatic Planified Task - C:\Windows\Tasks\Norton Security Scan for Gaby.job [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [MD5.EF6C857E9758308C577FB5CB208B7922] [APT] [Norton Security Scan for Gaby] (.Symantec Corporation.) -- C:\Program Files\Norton Security Scan\Engine\2.7.6.13\Nss.exe ~ Scan Scheduled Task in 00mn 09s
---\\ Pilotes lancés au démarrage (O41) O41 - Driver: C:\Windows\system32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: (blbdrive) . (.Microsoft Corporation - BLB Drive Driver.) - C:\Windows\system32\drivers\blbdrive.sys O41 - Driver: C:\Windows\system32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\system32\Drivers\dfsc.sys O41 - Driver: C:\Windows\system32\drivers\discache.sys (discache) . (.Microsoft Corporation - System Indexer/Cache Driver.) - C:\Windows\system32\drivers\discache.sys O41 - Driver: (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: (mwlPSDFilter) . (.Egis Technology Inc. - PSD Filter Driver.) - C:\Windows\system32\DRIVERS\mwlPSDFilter.sys O41 - Driver: (mwlPSDNServ) . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) - C:\Windows\system32\DRIVERS\mwlPSDNServ.sys O41 - Driver: (mwlPSDVDisk) . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) - C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\system32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\system32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\system32\DRIVERS\netbt.sys O41 - Driver: C:\Windows\system32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\system32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\system32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - Planificateur de paquets QoS.) - C:\Windows\system32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\system32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) - C:\Windows\system32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\system32\DRIVERS\RDPCDD.sys (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\system32\DRIVERS\RDPCDD.sys O41 - Driver: C:\Windows\system32\drivers\RDPENCDD.sys (RDPENCDD) . (.Microsoft Corporation - RDP Encoder Miniport.) - C:\Windows\system32\drivers\rdpencdd.sys O41 - Driver: C:\Windows\system32\drivers\RdpRefMp.sys (RDPREFMP) . (.Microsoft Corporation - RDP Reflector Driver Miniport.) - C:\Windows\system32\drivers\rdprefmp.sys O41 - Driver: C:\Windows\system32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys O41 - Driver: (TermDD) . (.Microsoft Corporation - Remote Desktop Server Driver.) - C:\Windows\system32\drivers\termdd.sys O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys O41 - Driver: (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys O41 - Driver: C:\Windows\system32\rascfg.dll (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\system32\DRIVERS\wanarp.sys O41 - Driver: (WfpLwf) . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) - C:\Windows\system32\DRIVERS\wfplwf.sys ~ Scan Drivers in 00mn 01s
---\\ Logiciels installés (O42) O42 - Logiciel: ALPS Touch Pad Driver - (.Alps Electric.) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} O42 - Logiciel: Acer Crystal Eye Webcam - (.Suyin Optronics Corp.) [HKLM] -- {7760D94E-B1B5-40A0-9AA0-ABF942108755} O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM] -- Acer Registration O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM] -- Acer Screensaver O42 - Logiciel: Acer Updater - (.Acer Incorporated.) [HKLM] -- {EE171732-BEB4-4576-887D-CB62727F01CA} O42 - Logiciel: Acer VCM - (.Acer Incorporated.) [HKLM] -- {047F790A-7A2A-4B6A-AD02-38092BA63DAC} O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964} O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Adobe Reader 9.1 MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001} O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player O42 - Logiciel: Airport Mania First Flight - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11505173} O42 - Logiciel: Akamai NetSession Interface - (.Pas de propriétaire.) [HKLM] -- Akamai O42 - Logiciel: AndroidInstaller - (.Nom de votre société.) [HKLM] -- InstallShield_{523281E5-91DD-49F5-9D85-954148F7596A} O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} O42 - Logiciel: Bluetooth Win7 Suite - (.Atheros Communications.) [HKLM] -- {101A497C-7EF6-4001-834D-E5FA1C70FEFA} O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Dream Day First Home - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110} O42 - Logiciel: ENE USB Card Reader Driver - (.ENE.) [HKLM] -- 3B29FD3CCF1F5B855DA0C521597413EBABE97DFB O42 - Logiciel: Galerie de photos Windows Live - (.Microsoft Corporation.) [HKLM] -- {488F0347-C4A7-4374-91A7-30818BEDA710} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM] -- Identity Card O42 - Logiciel: Install(Fr) - (.AeriaGames.) [HKLM] -- {E32B0931-C97B-48E1-A466-27D4088060EF} O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM] -- LManager O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: Merriam Websters Spell Jam - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile O42 - Logiciel: Microsoft .NET Framework 4 Client Profile - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6} O42 - Logiciel: Microsoft .NET Framework 4 Client Profile FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E} O42 - Logiciel: Microsoft SQL Server 2005 Compact Edition [ENU] - (.Microsoft Corporation.) [HKLM] -- {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} O42 - Logiciel: Module linguistique Microsoft .NET Framework 4 Client Profile FRA - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 4 Client Profile FRA Language Pack O42 - Logiciel: Mozilla Firefox 7.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 7.0.1 (x86 fr) O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM] -- {0D7CD0D9-4A88-4A63-8F91-3F4E8F371768} O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM] -- InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE} O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM] -- {738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE} O42 - Logiciel: Norton Security Scan - (.Symantec Corporation.) [HKLM] -- NSS O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A} O42 - Logiciel: PhotoFiltre - (.Pas de propriétaire.) [HKCU] -- PhotoFiltre O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: SearchCore for Browsers - (.SearchCore.) [HKLM] -- SearchCore for Browsers O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2446708 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2478663 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2518870 O42 - Logiciel: Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2539636 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2478663) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2478663 O42 - Logiciel: Security Update for Module linguistique Microsoft .NET Framework 4 Client Profile FRA (KB2518870) - (.Microsoft Corporation.) [HKLM] -- {0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}.KB2518870 O42 - Logiciel: Shredder - (.Egis Technology Inc..) [HKLM] -- {C2695E83-CF1D-43D1-84FE-B3BEC561012A} O42 - Logiciel: StarterBackgroundChanger - (.Renaud Gerson.) [HKLM] -- StarterBackgroundChanger O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2468871 O42 - Logiciel: Update for Microsoft .NET Framework 4 Client Profile (KB2533523) - (.Microsoft Corporation.) [HKLM] -- {3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2533523 O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM] -- Acer Welcome Center O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- WinLiveSuite O42 - Logiciel: Windows Live - (.Microsoft Corporation.) [HKLM] -- {34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5} O42 - Logiciel: Windows Live Communications Platform - (.Microsoft Corporation.) [HKLM] -- {D45240D3-B6B3-4FF9-B243-54ECE3E10066} O42 - Logiciel: Windows Live FolderShare - (.Microsoft Corporation.) [HKLM] -- {76810709-A7D3-468D-9167-A1780C1E766C} O42 - Logiciel: Windows Live ID Sign-in Assistant - (.Microsoft Corporation.) [HKLM] -- {C6150D8A-86ED-41D3-87BB-F3BB51B0B77F} O42 - Logiciel: Windows Live Installer - (.Microsoft Corporation.) [HKLM] -- {0B0F231F-CE6A-483D-AA23-77B364F75917} O42 - Logiciel: Windows Live MIME IFilter - (.Microsoft Corporation.) [HKLM] -- {AF844339-2F8A-4593-81B3-9F4C54038C4E} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9D56775A-93F3-44A3-8092-840E3826DE30} O42 - Logiciel: Windows Live Mail - (.Microsoft Corporation.) [HKLM] -- {9FAE6E8D-E686-49F5-A574-0A58DFD9580C} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {AB61A2E9-37D3-485D-9085-19FBDF8CEF4A} O42 - Logiciel: Windows Live Messenger - (.Microsoft Corporation.) [HKLM] -- {E5B21F11-6933-4E0B-A25C-7963E3C07D11} O42 - Logiciel: Windows Live Messenger Companion Core - (.Microsoft Corporation.) [HKLM] -- {78A96B4C-A643-4D0F-98C2-A8E16A6669F9} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {6DEC8BD5-7574-47FA-B080-492BBBE2FEA3} O42 - Logiciel: Windows Live Movie Maker - (.Microsoft Corporation.) [HKLM] -- {92EA4134-10D1-418A-91E1-5A0453131A38} O42 - Logiciel: Windows Live PIMT Platform - (.Microsoft Corporation.) [HKLM] -- {83C292B7-38A5-440B-A731-07070E81A64F} O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {A9BDCA6B-3653-467B-AC83-94367DA3BFE3} O42 - Logiciel: Windows Live Photo Common - (.Microsoft Corporation.) [HKLM] -- {C893D8C0-1BA0-4517-B11C-E89B65E72F70} O42 - Logiciel: Windows Live Photo Gallery - (.Microsoft Corporation.) [HKLM] -- {3336F667-9049-4D46-98B6-4C743EEBC5B1} O42 - Logiciel: Windows Live SOXE - (.Microsoft Corporation.) [HKLM] -- {682B3E4F-696A-42DE-A41C-4C07EA1678B4} O42 - Logiciel: Windows Live SOXE Definitions - (.Microsoft Corporation.) [HKLM] -- {200FEC62-3C34-4D60-9CE8-EC372E01C08F} O42 - Logiciel: Windows Live UX Platform - (.Microsoft Corporation.) [HKLM] -- {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2} O42 - Logiciel: Windows Live UX Platform Language Pack - (.Microsoft Corporation.) [HKLM] -- {05E379CC-F626-4E7D-8354-463865B303BF} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {3B9A92DA-6374-4872-B646-253F18624D5F} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {A726AE06-AAA3-43D1-87E3-70F510314F04} O42 - Logiciel: Windows Live Writer - (.Microsoft Corporation.) [HKLM] -- {AAAFC670-569B-4A2F-82B4-42945E0DE3EF} O42 - Logiciel: Windows Live Writer Resources - (.Microsoft Corporation.) [HKLM] -- {62687B11-58B5-4A18-9BC3-9DF4CE03F194} O42 - Logiciel: Windows Movie Maker 2.6 - (.Microsoft Corporation.) [HKLM] -- {B3DAF54F-DB25-4586-9EF1-96D24BB14088} O42 - Logiciel: Windows iLivid Toolbar - (.Bandoo Media, Inc.) [HKLM] -- Searchqu 406 MediaBar O42 - Logiciel: avast! Free Antivirus - (.AVAST Software.) [HKLM] -- avast O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726}
---\\ HKCU & HKLM Software Keys [HKCU\Software\AVAST Software] [HKCU\Software\Acer] [HKCU\Software\Adobe] [HKCU\Software\Alawar] [HKCU\Software\Alps] [HKCU\Software\AppDataLow\Software\Adobe] [HKCU\Software\AppDataLow\Software\Microsoft] [HKCU\Software\AppDataLow\Software\searchqutoolbar] [HKCU\Software\AppDataLow\Software\uTorrentBar_FR] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Atheros] [HKCU\Software\BackgroundChanger] [HKCU\Software\Bugsplat] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\DataMngr_Toolbar] [HKCU\Software\Dritek] [HKCU\Software\Google] [HKCU\Software\HookNetwork] [HKCU\Software\IM Providers] [HKCU\Software\Insyde Software] [HKCU\Software\Intel] [HKCU\Software\JavaSoft] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Macromedia] [HKCU\Software\MozillaPlugins] [HKCU\Software\OEM] [HKCU\Software\Oberon Media] [HKCU\Software\OpenOffice.org] [HKCU\Software\Policies] [HKCU\Software\Realtek] [HKCU\Software\SearchCore for Browsers] [HKCU\Software\Sonix] [HKCU\Software\StarterBackgroundChanger] [HKCU\Software\Suyin] [HKCU\Software\Trolltech] [HKCU\Software\WinRAR SFX] [HKCU\Software\Windows Live Writer] [HKCU\Software\ilivid] [HKLM\Software\ATHEROS] [HKLM\Software\ATI Technologies] [HKLM\Software\AVAST Software] [HKLM\Software\Acer Incorporated] [HKLM\Software\Acer] [HKLM\Software\Adobe] [HKLM\Software\AeriaGames] [HKLM\Software\Alawar] [HKLM\Software\Alps] [HKLM\Software\America Online] [HKLM\Software\AppDataLow] [HKLM\Software\Atheros Communications Inc.] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\DTS] [HKLM\Software\Dritek] [HKLM\Software\EgisTec IPS] [HKLM\Software\EgisTec Shredder] [HKLM\Software\EgisTec] [HKLM\Software\Google] [HKLM\Software\Insyde Software] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\Licenses] [HKLM\Software\Macromedia] [HKLM\Software\McAfeeInstaller] [HKLM\Software\MimarSinan] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\Norton] [HKLM\Software\ODBC] [HKLM\Software\OEM] [HKLM\Software\OOBEOffer] [HKLM\Software\Oberon Media] [HKLM\Software\OemSetup] [HKLM\Software\OpenOffice.org] [HKLM\Software\Policies] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SONOV] [HKLM\Software\SRS Labs] [HKLM\Software\SonicFocus] [HKLM\Software\Suyin Optronics Corp] [HKLM\Software\Symantec] [HKLM\Software\VideoLAN] [HKLM\Software\Volatile] [HKLM\Software\Waves Audio] [HKLM\Software\Wow6432Node] [HKLM\Software\mozilla.org] ~ Scan Softwares in 00mn 00s
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 14:55 | |
| ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 04/12/2010 - 11:04:08 - [117283765] ----D- C:\Program Files\Acer O43 - CFD: 17/05/2011 - 19:48:28 - [252757] ----D- C:\Program Files\Acer Accessory Store O43 - CFD: 17/05/2011 - 20:07:44 - [620935493] ----D- C:\Program Files\Acer GameZone O43 - CFD: 04/12/2010 - 10:52:30 - [2056302] ----D- C:\Program Files\AcerCrystalEye O43 - CFD: 09/10/2011 - 13:41:42 - [59838809] ----D- C:\Program Files\Ad-Remover O43 - CFD: 17/09/2010 - 11:43:58 - [685151689] ----D- C:\Program Files\Adobe O43 - CFD: 19/08/2011 - 12:02:26 - [297020] ----D- C:\Program Files\Alawar.fr O43 - CFD: 04/12/2010 - 10:51:36 - [12592999] ----D- C:\Program Files\Apoint2K O43 - CFD: 17/05/2011 - 20:16:40 - [165319366] ----D- C:\Program Files\AVAST Software O43 - CFD: 04/12/2010 - 10:55:02 - [30644633] ----D- C:\Program Files\Bluetooth Suite O43 - CFD: 19/05/2011 - 20:10:08 - [378607968] ----D- C:\Program Files\Common Files O43 - CFD: 17/09/2010 - 11:21:34 - [795472] ----D- C:\Program Files\DIFX O43 - CFD: 04/12/2010 - 19:20:42 - [4191414] ----D- C:\Program Files\DVD Maker O43 - CFD: 17/09/2010 - 11:40:54 - [3623787] ----D- C:\Program Files\EgisTec IPS O43 - CFD: 17/09/2010 - 11:40:04 - [50248318] ----D- C:\Program Files\EgisTec MyWinLocker O43 - CFD: 17/09/2010 - 11:39:04 - [2243204] ----D- C:\Program Files\EgisTec MyWinLockerSuite O43 - CFD: 17/09/2010 - 11:40:54 - [4136184] ----D- C:\Program Files\EgisTec Shredder O43 - CFD: 17/05/2011 - 19:47:32 - [0] -SH-D- C:\Program Files\Fichiers communs O43 - CFD: 19/08/2011 - 12:08:32 - [280818046] ----D- C:\Program Files\Google O43 - CFD: 28/05/2011 - 15:54:16 - [133758050] --H-D- C:\Program Files\InstallShield Installation Information O43 - CFD: 17/09/2010 - 11:12:02 - [18936203] ----D- C:\Program Files\Intel O43 - CFD: 12/08/2011 - 11:06:54 - [4496973] ----D- C:\Program Files\Internet Explorer O43 - CFD: 17/09/2010 - 11:06:22 - [7409720] ----D- C:\Program Files\Launch Manager O43 - CFD: 04/12/2010 - 11:03:28 - [0] ----D- C:\Program Files\Microsoft O43 - CFD: 14/07/2009 - 06:52:32 - [46683959] ----D- C:\Program Files\Microsoft Games O43 - CFD: 17/06/2011 - 16:25:20 - [38411899] ----D- C:\Program Files\Microsoft Silverlight O43 - CFD: 04/12/2010 - 11:10:36 - [1829877] ----D- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 20/05/2011 - 11:29:08 - [15715] ----D- C:\Program Files\Microsoft.NET O43 - CFD: 08/10/2011 - 17:58:54 - [9336778] ----D- C:\Program Files\Movie Maker 2.6 O43 - CFD: 08/10/2011 - 22:10:46 - [35794429] ----D- C:\Program Files\Mozilla Firefox O43 - CFD: 14/07/2009 - 06:52:32 - [25757] ----D- C:\Program Files\MSBuild O43 - CFD: 20/05/2011 - 21:02:34 - [12121496] ----D- C:\Program Files\Norton Security Scan O43 - CFD: 20/05/2011 - 21:02:26 - [8446259] ----D- C:\Program Files\NortonInstaller O43 - CFD: 18/05/2011 - 22:12:40 - [352657674] ----D- C:\Program Files\OpenOffice.org 3 O43 - CFD: 27/05/2011 - 17:53:38 - [3699431] ----D- C:\Program Files\PhotoFiltre O43 - CFD: 17/09/2010 - 11:31:52 - [1825075] ----D- C:\Program Files\Preload O43 - CFD: 17/09/2010 - 11:15:20 - [17785765] ----D- C:\Program Files\Realtek O43 - CFD: 14/07/2009 - 06:52:32 - [38597377] ----D- C:\Program Files\Reference Assemblies O43 - CFD: 08/10/2011 - 18:59:38 - [6980477] ----D- C:\Program Files\SearchCore for Browsers O43 - CFD: 18/05/2011 - 20:15:38 - [1320960] ----D- C:\Program Files\StarterBackgroundChanger O43 - CFD: 17/09/2010 - 11:16:14 - [0] --H-D- C:\Program Files\Temp O43 - CFD: 14/07/2009 - 06:53:24 - [0] --H-D- C:\Program Files\Uninstall Information O43 - CFD: 18/05/2011 - 15:57:42 - [84763010] ----D- C:\Program Files\VideoLAN O43 - CFD: 04/12/2010 - 19:20:42 - [3049984] ----D- C:\Program Files\Windows Defender O43 - CFD: 15/08/2011 - 15:58:14 - [151286648] ----D- C:\Program Files\Windows Live O43 - CFD: 18/05/2011 - 19:49:46 - [6180864] ----D- C:\Program Files\Windows Mail O43 - CFD: 04/12/2010 - 10:41:06 - [6607787] ----D- C:\Program Files\Windows Media Player O43 - CFD: 17/05/2011 - 19:47:32 - [12197556] ----D- C:\Program Files\Windows NT O43 - CFD: 04/12/2010 - 19:20:42 - [4417800] ----D- C:\Program Files\Windows Photo Viewer O43 - CFD: 14/07/2009 - 06:52:34 - [189440] ----D- C:\Program Files\Windows Portable Devices O43 - CFD: 04/12/2010 - 19:20:42 - [7452570] ----D- C:\Program Files\Windows Sidebar O43 - CFD: 19/08/2011 - 13:00:14 - [0] ----D- C:\Program Files\WinRAR O43 - CFD: 09/10/2011 - 14:42:30 - [5436031] ----D- C:\Program Files\ZHPDiag O43 - CFD: 17/09/2010 - 11:43:20 - [14779391] ----D- C:\Program Files\Common Files\Adobe O43 - CFD: 17/09/2010 - 11:43:48 - [31787256] ----D- C:\Program Files\Common Files\Adobe AIR O43 - CFD: 09/10/2011 - 13:46:48 - [24759283] ----D- C:\Program Files\Common Files\Akamai O43 - CFD: 17/09/2010 - 11:15:10 - [2037602] ----D- C:\Program Files\Common Files\InstallShield O43 - CFD: 17/06/2011 - 11:43:46 - [22577277] ----D- C:\Program Files\Common Files\microsoft shared O43 - CFD: 17/09/2010 - 11:24:14 - [354896] ----D- C:\Program Files\Common Files\Oberon Media O43 - CFD: 14/07/2009 - 04:37:06 - [2702] ----D- C:\Program Files\Common Files\Services O43 - CFD: 14/07/2009 - 04:37:06 - [41103783] ----D- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 04/12/2010 - 19:20:42 - [10102259] ----D- C:\Program Files\Common Files\System O43 - CFD: 04/12/2010 - 11:07:22 - [231103519] ----D- C:\Program Files\Common Files\Windows Live O43 - CFD: 17/09/2010 - 11:37:02 - [560290] ----D- C:\ProgramData\Acer O43 - CFD: 17/09/2010 - 11:43:48 - [761] ----D- C:\ProgramData\Adobe O43 - CFD: 21/07/2011 - 15:36:10 - [2171331] ----D- C:\ProgramData\AlawarWrapper O43 - CFD: 14/07/2009 - 06:53:56 - [0] -SH-D- C:\ProgramData\Application Data O43 - CFD: 17/05/2011 - 20:16:40 - [7771163] ----D- C:\ProgramData\AVAST Software O43 - CFD: 08/10/2011 - 21:52:44 - [12] ----D- C:\ProgramData\boost_interprocess O43 - CFD: 17/05/2011 - 19:47:32 - [0] -SH-D- C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - 06:53:56 - [0] -SH-D- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - 06:53:56 - [0] -SH-D- C:\ProgramData\Documents O43 - CFD: 04/12/2010 - 10:31:14 - [169899] ----D- C:\ProgramData\EgisTec IPS O43 - CFD: 17/09/2010 - 11:22:44 - [420] ----D- C:\ProgramData\eSobi O43 - CFD: 21/07/2011 - 15:53:10 - [36818] ----D- C:\ProgramData\FarmFrenzy3 O43 - CFD: 17/05/2011 - 19:47:32 - [0] -SH-D- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - 06:53:56 - [0] -SH-D- C:\ProgramData\Favorites O43 - CFD: 28/05/2011 - 14:04:18 - [0] ----D- C:\ProgramData\Google O43 - CFD: 17/05/2011 - 20:15:46 - [6746] ----D- C:\ProgramData\McAfee O43 - CFD: 17/05/2011 - 19:47:32 - [0] -SH-D- C:\ProgramData\Menu Démarrer O43 - CFD: 29/05/2011 - 11:10:16 - [167423312] -S--D- C:\ProgramData\Microsoft O43 - CFD: 17/05/2011 - 19:47:32 - [0] -SH-D- C:\ProgramData\Modèles O43 - CFD: 20/05/2011 - 21:02:48 - [3371] ----D- C:\ProgramData\Norton O43 - CFD: 20/05/2011 - 21:02:26 - [68167] ----D- C:\ProgramData\NortonInstaller O43 - CFD: 17/05/2011 - 19:52:22 - [736] ----D- C:\ProgramData\oem O43 - CFD: 14/07/2009 - 06:53:56 - [0] -SH-D- C:\ProgramData\Start Menu O43 - CFD: 20/05/2011 - 21:02:32 - [155] ----D- C:\ProgramData\Symantec O43 - CFD: 23/08/2011 - 19:06:04 - [0] ---AD- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - 06:53:56 - [0] -SH-D- C:\ProgramData\Templates O43 - CFD: 17/05/2011 - 21:08:10 - [2647424] ----D- C:\Users\Gaby\AppData\Roaming\Adobe O43 - CFD: 28/05/2011 - 13:58:40 - [853] ----D- C:\Users\Gaby\AppData\Roaming\eTeks O43 - CFD: 28/05/2011 - 14:04:36 - [564] ----D- C:\Users\Gaby\AppData\Roaming\Google O43 - CFD: 17/05/2011 - 19:51:24 - [0] ----D- C:\Users\Gaby\AppData\Roaming\Identities O43 - CFD: 20/05/2011 - 12:41:34 - [0] ----D- C:\Users\Gaby\AppData\Roaming\InstallShield O43 - CFD: 17/05/2011 - 19:52:34 - [303] ----D- C:\Users\Gaby\AppData\Roaming\Intel Corporation O43 - CFD: 17/05/2011 - 19:52:36 - [50157] ----D- C:\Users\Gaby\AppData\Roaming\Macromedia O43 - CFD: 29/05/2011 - 11:10:34 - [2067986] -S--D- C:\Users\Gaby\AppData\Roaming\Microsoft O43 - CFD: 17/05/2011 - 20:07:52 - [31550816] ----D- C:\Users\Gaby\AppData\Roaming\Mozilla O43 - CFD: 18/05/2011 - 22:17:34 - [1805126] ----D- C:\Users\Gaby\AppData\Roaming\OpenOffice.org O43 - CFD: 27/05/2011 - 18:20:06 - [497] ----D- C:\Users\Gaby\AppData\Roaming\PhotoFiltre O43 - CFD: 18/05/2011 - 20:15:52 - [7060289] ----D- C:\Users\Gaby\AppData\Roaming\RGE O43 - CFD: 08/10/2011 - 22:02:54 - [1753755] ----D- C:\Users\Gaby\AppData\Roaming\uTorrent O43 - CFD: 04/07/2011 - 16:40:50 - [1284017] ----D- C:\Users\Gaby\AppData\Roaming\vlc O43 - CFD: 18/05/2011 - 12:31:42 - [0] ----D- C:\Users\Gaby\AppData\Roaming\Windows Live Writer O43 - CFD: 28/05/2011 - 21:53:40 - [12] ----D- C:\Users\Gaby\AppData\Roaming\WinRAR O43 - CFD: 24/05/2011 - 16:23:54 - [23583022] ----D- C:\Users\Gaby\AppData\Local\Adobe O43 - CFD: 17/05/2011 - 19:47:52 - [0] -SH-D- C:\Users\Gaby\AppData\Local\Application Data O43 - CFD: 07/07/2011 - 18:00:24 - [4336675] ----D- C:\Users\Gaby\AppData\Local\CrashDumps O43 - CFD: 17/05/2011 - 19:52:12 - [179] ----D- C:\Users\Gaby\AppData\Local\EgisTec IPS O43 - CFD: 15/07/2011 - 09:28:14 - [35305599] ----D- C:\Users\Gaby\AppData\Local\Google O43 - CFD: 17/05/2011 - 19:47:52 - [0] -SH-D- C:\Users\Gaby\AppData\Local\Historique O43 - CFD: 08/10/2011 - 19:01:10 - [14821] ----D- C:\Users\Gaby\AppData\Local\Ilivid Player O43 - CFD: 08/10/2011 - 18:22:16 - [140533691] ----D- C:\Users\Gaby\AppData\Local\Microsoft O43 - CFD: 23/08/2011 - 19:04:06 - [614028] ----D- C:\Users\Gaby\AppData\Local\Microsoft Games O43 - CFD: 17/05/2011 - 20:06:40 - [53368798] ----D- C:\Users\Gaby\AppData\Local\Mozilla O43 - CFD: 19/05/2011 - 20:22:30 - [312] ----D- C:\Users\Gaby\AppData\Local\Oberon Games O43 - CFD: 08/10/2011 - 18:58:28 - [0] ----D- C:\Users\Gaby\AppData\Local\PackageAware O43 - CFD: 09/10/2011 - 14:40:18 - [118791355] ----D- C:\Users\Gaby\AppData\Local\Temp O43 - CFD: 17/05/2011 - 19:47:52 - [0] -SH-D- C:\Users\Gaby\AppData\Local\Temporary Internet Files O43 - CFD: 17/05/2011 - 19:47:54 - [0] ----D- C:\Users\Gaby\AppData\Local\VirtualStore O43 - CFD: 09/10/2011 - 10:08:42 - [102400] ----D- C:\Users\Gaby\AppData\Local\Windows Live O43 - CFD: 18/05/2011 - 12:31:48 - [375276] ----D- C:\Users\Gaby\AppData\Local\Windows Live Writer O43 - CFD: 09/10/2011 - 10:34:52 - [0] ----D- C:\Users\Gaby\AppData\Local\WMTools Downloaded Files O43 - CFD: 30/09/2011 - 18:25:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{00C7D049-76F4-4F30-ADB0-F060709B6968} O43 - CFD: 01/08/2011 - 18:50:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{0169A1D9-5816-481A-B7EC-3EEB8077F480} O43 - CFD: 20/07/2011 - 23:03:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{0171B0E1-BC7F-411D-825B-B236BA5D5A61} O43 - CFD: 01/09/2011 - 10:00:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{01C114B1-EC51-4CBC-8959-165969766921} O43 - CFD: 07/08/2011 - 14:58:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{01FBD5FB-9EA7-41B6-9515-B81C74B725A8} O43 - CFD: 09/08/2011 - 15:58:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{02673BC2-8289-42C5-A61C-57344299FBA7} O43 - CFD: 30/09/2011 - 18:26:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{026C15C6-FE9E-41FF-A392-72CADC5202A6} O43 - CFD: 06/08/2011 - 13:11:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{02AFE83D-5DEB-4EC8-B6F8-7D584FE914FF} O43 - CFD: 30/07/2011 - 20:35:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{031B1DF7-E833-4E59-BFF5-04E3D960D3FA} O43 - CFD: 05/08/2011 - 16:34:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{036B0A76-B10C-4D68-8D21-9B209797D297} O43 - CFD: 23/08/2011 - 12:18:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{04792055-DDDB-4B0B-82FD-8EA8B36B75A4} O43 - CFD: 24/05/2011 - 16:18:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{05706BA8-5213-4406-AC87-6593725778E0} O43 - CFD: 17/08/2011 - 20:26:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{05AD5B22-556C-4CDE-98F9-68AB258900C0} O43 - CFD: 09/08/2011 - 22:13:38 - [0] ----D- C:\Users\Gaby\AppData\Local\{065C62A8-3CC0-4A93-8F43-5F62F532F009} O43 - CFD: 07/08/2011 - 18:55:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{074854DF-1F26-4492-8A8A-6B0E66135DE5} O43 - CFD: 08/09/2011 - 12:26:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{07830A98-B4EE-4330-8AA7-33705C3F232F} O43 - CFD: 01/08/2011 - 16:35:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{079EA875-00C9-47A5-ABD0-937DED20B283} O43 - CFD: 06/08/2011 - 15:36:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{081EEAF5-7DDC-4DC8-AF55-B76142AF4B92} O43 - CFD: 26/07/2011 - 23:02:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{084E953B-7C02-4AE3-8FFE-29167E854245} O43 - CFD: 22/07/2011 - 11:35:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{08AAA8FC-F639-4FA3-A23A-AEAB4D65ED58} O43 - CFD: 20/08/2011 - 09:06:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{08C27F31-4B45-450D-83B2-6729C1F2157E} O43 - CFD: 03/08/2011 - 21:17:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{096812CE-FF7A-42FA-B022-8BA0FB706633} O43 - CFD: 09/08/2011 - 19:39:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{09D0C991-56EC-4B62-97AA-A9206F80A403} O43 - CFD: 14/08/2011 - 22:07:38 - [0] ----D- C:\Users\Gaby\AppData\Local\{0ABDFDE7-734C-468C-A47C-6776D4CE4DDC} O43 - CFD: 28/08/2011 - 10:34:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{0B38B998-EE10-4CB3-9E18-43D277B33284} O43 - CFD: 29/07/2011 - 16:33:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{0C3C0721-F583-4F01-A149-83E3E28AD103} O43 - CFD: 13/08/2011 - 21:25:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{0D51D79C-D9BC-432F-92F5-00866FCAF51B} O43 - CFD: 06/08/2011 - 22:34:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{0D788911-FDA5-4C1C-A90D-6F9135874FE9} O43 - CFD: 29/08/2011 - 11:24:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{0DDE429D-A611-45C4-8E3A-99D0D3195051} O43 - CFD: 14/08/2011 - 17:45:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{0E4833FB-C307-4E29-BECA-6AB85903CAD4} O43 - CFD: 01/08/2011 - 20:03:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{0E87AC5E-B738-4F5C-A8C7-BEAADDB16FDD} O43 - CFD: 09/08/2011 - 20:14:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{0EF1238C-E3AD-4CA4-BF42-5B00D5856E74} O43 - CFD: 23/05/2011 - 17:56:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{0F6796EE-F3CD-4903-8B08-685648101325} O43 - CFD: 07/08/2011 - 23:44:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{0FC660EA-8A2A-4DDC-8C68-53089A098E7A} O43 - CFD: 28/05/2011 - 10:17:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{10912260-82FC-4159-B342-5DE6F33CD903} O43 - CFD: 15/08/2011 - 11:20:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{10B8DF52-58AE-44B7-A341-CD080AB96DFD} O43 - CFD: 26/09/2011 - 16:00:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{11355647-62C7-4C90-85B2-0A83385A0EB4} O43 - CFD: 30/07/2011 - 17:52:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{122E5B2E-0792-4B3E-B445-8193D1B1A971} O43 - CFD: 05/07/2011 - 22:08:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{125AB425-2ADA-4E85-AFC3-F5BAD79574B6} O43 - CFD: 07/09/2011 - 11:38:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{128C1BC2-5D50-4FB7-AE56-7C7D1F85ADFB} O43 - CFD: 30/06/2011 - 12:57:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{12D0BF81-B6FD-4991-9D58-5983A52BEBFD} O43 - CFD: 01/10/2011 - 12:35:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{12F80C2F-3CA4-47FB-9F29-96774EA1DC03} O43 - CFD: 04/08/2011 - 22:21:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{130FDE98-ECCC-44B9-AF28-43FFF619862F} O43 - CFD: 15/08/2011 - 13:51:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{1328FB14-DE10-40C9-B285-C21844CFEB01} O43 - CFD: 06/06/2011 - 17:57:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{13D2EDF3-9047-4E5E-8B6A-5FF666F5B13D} O43 - CFD: 02/08/2011 - 15:12:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{13E75A79-BDB7-4DB1-8C95-30BD81BEF48C} O43 - CFD: 15/07/2011 - 09:15:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{14CAA5AE-EE0D-4BFC-8D19-D8CA91631116} O43 - CFD: 02/10/2011 - 12:47:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{15ADE03A-E229-4D60-A936-1D99C11FF1D1} O43 - CFD: 04/08/2011 - 12:10:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{15AF0DEE-71BE-4815-8AEC-62FFBB84BE4B} O43 - CFD: 15/08/2011 - 17:43:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{161A295C-29D2-4CE1-B064-37DF99AEC0B0} O43 - CFD: 31/05/2011 - 16:20:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{187E5D97-9062-4779-BBB4-582BF5A1DF21} O43 - CFD: 12/08/2011 - 12:20:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{1A158E37-24F7-4A5C-ABFF-CCC8717AA2D2} O43 - CFD: 08/08/2011 - 19:32:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{1A39374A-6792-4ED0-A573-DB4CB0D92F6D} O43 - CFD: 25/06/2011 - 11:45:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{1A9C8350-694E-4241-A28F-209121275A7E} O43 - CFD: 04/08/2011 - 20:35:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{1B18B612-E8EF-469A-8333-8E624021BBFA} O43 - CFD: 09/08/2011 - 12:15:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{1B9B71A2-7765-49E0-B96A-3E7F9C9D4871} O43 - CFD: 08/07/2011 - 23:37:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{1E109F69-4FC3-4FC6-A6BA-BE5805D88653} O43 - CFD: 17/09/2011 - 12:27:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{1E1D81B1-E48B-411E-B3CB-710714F068BC} O43 - CFD: 12/08/2011 - 19:28:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{1F6B7DD3-AB67-4C49-AFAE-F59F04F7A792} O43 - CFD: 24/09/2011 - 11:51:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{201B660C-3D73-437B-B976-7DE3F27ABACD} O43 - CFD: 20/05/2011 - 11:20:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{208CF639-A59E-43DE-A4BB-782D4F89B63C} O43 - CFD: 22/05/2011 - 10:32:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{20FC34BB-B73B-4458-A896-AE4D9B4F814B} O43 - CFD: 07/08/2011 - 23:37:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{20FC7F28-8AEA-491C-9885-78AF9C54455A} O43 - CFD: 31/08/2011 - 10:51:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{21119B56-52DA-43CD-BBCC-B87514C5EACC} O43 - CFD: 12/08/2011 - 12:20:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{2219DFEE-3D25-4055-B082-59DAC53292C1} O43 - CFD: 18/08/2011 - 22:10:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{223E43FC-D856-41ED-B912-DF3D8B753BAC} O43 - CFD: 09/06/2011 - 11:26:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{2299629B-7D7D-4E28-868B-BF0E86E71957} O43 - CFD: 09/08/2011 - 15:37:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{22F4BE16-2D24-4402-A8E6-AD4362941064} O43 - CFD: 28/07/2011 - 11:57:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{2368E5BA-8A34-477A-8B1D-4CD5768CBC77} O43 - CFD: 18/05/2011 - 12:31:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{23E5EE7D-700B-4D18-8CD4-E86C846A4E7C} O43 - CFD: 10/06/2011 - 16:25:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{24905AF5-7361-4531-9FAE-1B7D2E903F91} O43 - CFD: 29/07/2011 - 16:33:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{258F1CBF-5DBF-47A4-885C-0E2A5E34004E} O43 - CFD: 01/08/2011 - 19:27:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{259E98DD-8874-4CF3-BE4C-98AC0E66FA4B} O43 - CFD: 04/08/2011 - 11:42:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{262E018E-1A14-4527-80A9-F06E63604878} O43 - CFD: 12/08/2011 - 10:00:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{2674DE6F-EA3A-40FD-8536-8A8308C7FC27} O43 - CFD: 27/08/2011 - 22:25:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{26B9B0F1-2556-4882-9CE6-EC2459C887CE} O43 - CFD: 16/07/2011 - 17:57:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{27465C6F-1DF3-4E0C-AEF3-96F3318C4D1D} O43 - CFD: 20/09/2011 - 18:04:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{276E65C0-B9E3-4360-87C9-426798EE4433} O43 - CFD: 07/08/2011 - 23:30:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{2782435C-338B-47BD-9FC2-F492B25E7838} O43 - CFD: 29/07/2011 - 14:10:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{27A0A6BD-3200-4C9B-9CDB-F3893E4C62FF} O43 - CFD: 06/10/2011 - 09:21:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{27C7BE9F-60B5-43A8-BBDC-E7A45170856E} O43 - CFD: 03/09/2011 - 11:09:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{280496DD-84F4-47AD-AA92-16D4994DFEA0} O43 - CFD: 06/08/2011 - 16:15:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{29330EA8-AD3D-4302-AC28-834BBFAAC3FC} O43 - CFD: 09/08/2011 - 20:14:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{29346340-33C0-49A3-8913-50023419DE99} O43 - CFD: 10/08/2011 - 17:12:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{29A8CE8C-38A2-4E93-8100-3FA056E28B67} O43 - CFD: 30/07/2011 - 11:21:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{2A07C1DD-8627-45CA-8D54-EB83570A97A8} O43 - CFD: 08/08/2011 - 17:35:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{2AFF39C4-1A64-45CE-8E0F-703280152BA2} O43 - CFD: 06/08/2011 - 13:11:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{2B962975-9C3D-4361-8A9B-51CB9B6563B8} O43 - CFD: 07/08/2011 - 19:56:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{2BAC6933-8BA3-4EFF-81A3-74A9DC8EE4C2} O43 - CFD: 15/08/2011 - 15:42:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{2C0608F9-6BD0-4E12-9CA5-AB0362DDEF7B} O43 - CFD: 09/10/2011 - 10:09:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{2C28C41D-F41C-4D64-A821-54B3F0E69CC4} O43 - CFD: 13/08/2011 - 11:36:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{2CF0FF14-64D0-4A53-8172-64D6BE34D3FB} O43 - CFD: 10/08/2011 - 13:33:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{2E082FD2-F39B-4F5A-9D6C-CAEFD9AF6FA6} O43 - CFD: 18/08/2011 - 10:09:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{2E38BAB7-5364-4406-AF33-09623C6ABEC7} O43 - CFD: 13/09/2011 - 18:48:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{2E44E8D6-5945-4E1C-8338-47726FB2188E} O43 - CFD: 23/07/2011 - 23:23:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{2E5295E2-B097-4930-80F3-17619A7AE345} O43 - CFD: 21/08/2011 - 10:49:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{2F4E7BE3-F92B-4690-9FDD-EB83D8AB798F} O43 - CFD: 15/07/2011 - 13:41:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{30A6ADA0-1101-4A05-9A2B-20B517358C66} O43 - CFD: 02/07/2011 - 10:26:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{31AA17CE-BD7F-4A60-9E51-662C649BBE3D} O43 - CFD: 24/08/2011 - 22:24:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{3208C2F4-0EC3-48F2-A1B1-34E4F3EE42DD} O43 - CFD: 05/08/2011 - 14:46:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{32761987-D693-4927-9904-5043BEDAFC5B} O43 - CFD: 18/08/2011 - 22:09:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{33144620-BDD7-4DFB-8291-EA3B45AA3625} O43 - CFD: 08/08/2011 - 10:43:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{33CA4C32-CF16-4CC7-A00D-3C1B8B1E509C} O43 - CFD: 02/08/2011 - 13:09:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{33EFC1A1-79ED-43D6-9270-4684B444593C} O43 - CFD: 09/08/2011 - 14:51:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{34897663-2554-4259-94A3-42C1D5C7E9E4} O43 - CFD: 08/08/2011 - 19:32:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{34B0813E-BBD2-4707-8704-08355AB9BBCB} O43 - CFD: 04/09/2011 - 11:23:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{352743B6-BEAF-45D5-B6AF-761AF1786C3F} O43 - CFD: 05/10/2011 - 12:50:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{35CE99CA-5AB6-4391-8F20-7C852C9E7738} O43 - CFD: 21/05/2011 - 11:21:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{3631D689-9047-426D-B365-26AF42007124} O43 - CFD: 07/08/2011 - 14:03:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{36E75220-B901-43E4-88A9-D87E657B8929} O43 - CFD: 04/08/2011 - 17:14:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{37521D6D-3335-4038-9A97-7E646DC43E0D} O43 - CFD: 21/08/2011 - 22:50:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{37AFD6B4-E861-4BDC-B1FE-6146E9653A09} O43 - CFD: 10/08/2011 - 12:51:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{37BA2E81-376E-4A1C-B525-A73E5DE38CAF} O43 - CFD: 06/10/2011 - 21:23:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{37BE22B6-A4F2-40A1-91DA-39A13D625263} O43 - CFD: 11/08/2011 - 22:22:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{37E0F5BD-CAF8-402C-AB85-0D2B20DE802B} O43 - CFD: 10/08/2011 - 19:13:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{37EC12A6-F1D5-4AA9-BFF5-163E860B988A} O43 - CFD: 15/08/2011 - 12:02:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{37F083C8-44A0-4459-908E-566ABB2A6389} O43 - CFD: 04/07/2011 - 11:46:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{380BF347-D59F-40B9-9CE3-3DFEEC3113C7} O43 - CFD: 29/07/2011 - 12:21:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{3937305F-6D01-4857-B107-A13CC857A28D} O43 - CFD: 25/09/2011 - 10:20:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{39CA7DFA-608C-4BEB-9AAB-23B7F8860A28} O43 - CFD: 13/08/2011 - 19:00:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{3A63E0C5-F953-49BB-84E4-FC8F80DFA7CD} O43 - CFD: 07/08/2011 - 10:01:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{3C2F18FE-C5E2-49E5-A161-5913D0968B8D} O43 - CFD: 04/08/2011 - 17:31:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{3C3DD30A-E066-4E13-8F4B-F7814BC1E1A9} O43 - CFD: 18/07/2011 - 11:31:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{3CE1B079-86C3-4740-B1DB-278451C5DA95} O43 - CFD: 15/09/2011 - 12:25:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{3D2ADA9C-E1FC-4D2D-A345-AB0258DF72D4} O43 - CFD: 07/07/2011 - 22:40:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{3D7A1040-7101-484C-9502-6894591DAC3A} O43 - CFD: 13/08/2011 - 21:25:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{3ED9C00A-D6B9-4B0C-B26E-381BA3D7863F} O43 - CFD: 06/08/2011 - 11:31:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{3EFD99F8-D8E4-4EDE-85F9-B29773B1734E} O43 - CFD: 05/08/2011 - 10:02:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{3FA23494-01C2-4D23-9851-BF2DB02BEF87} O43 - CFD: 10/08/2011 - 15:21:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{42645524-389A-4238-BE31-A1F6B10D5476} O43 - CFD: 05/08/2011 - 14:46:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{4280D306-9D1F-4253-8D8C-BC80B8280533} O43 - CFD: 16/06/2011 - 15:26:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{429EB8B6-4644-4510-A479-E6330B841D1E} O43 - CFD: 13/09/2011 - 18:47:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{42DDCBE9-CC55-453B-A64C-9756AB37D3D9} O43 - CFD: 30/08/2011 - 10:26:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{4347A270-E05B-40BA-8B0D-1B1646962B9A} O43 - CFD: 21/07/2011 - 11:14:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{43EF032B-04CA-412C-B388-BA873FFCBB46} O43 - CFD: 11/06/2011 - 08:08:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{442F7500-2DCB-4B04-A4E6-5E51055F318A} O43 - CFD: 09/08/2011 - 19:06:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{44B86BF2-8850-4B87-B921-90242507D7BC} O43 - CFD: 28/07/2011 - 20:06:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{44CC2BC6-531D-4A1D-ABC7-2BDDE9A3E06E} O43 - CFD: 19/09/2011 - 11:19:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{457AA224-A09F-4D7D-808B-81B3C39BC71F} O43 - CFD: 25/08/2011 - 10:25:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{459F73EA-3AEB-42CD-8F4A-86FE15068DBD} O43 - CFD: 05/10/2011 - 12:50:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{465EEB9C-2A4F-41F4-8D64-4CF81398869F} O43 - CFD: 15/09/2011 - 12:26:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{4711AFFF-1EE8-4EE6-AD0F-99DCECDCF9C8} O43 - CFD: 01/08/2011 - 12:22:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{47DD8F8B-102C-44EE-BD47-FEE9C803B938} O43 - CFD: 06/08/2011 - 19:28:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{47E7670F-8468-4A14-B5C6-E2BD2C5602F3} O43 - CFD: 31/07/2011 - 21:33:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{481F0A72-5AAC-4F1C-9E09-80DE731D4DCF} O43 - CFD: 05/08/2011 - 19:17:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{4954307B-C731-4B08-9D0C-9325954A9F49} O43 - CFD: 09/08/2011 - 14:51:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{496505A6-3E94-4059-B06B-1E2F51A3627E} O43 - CFD: 25/09/2011 - 10:19:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{49A4F7A8-5FC7-42E6-8F5C-1B470C8685CF} O43 - CFD: 29/09/2011 - 09:44:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{4BEEF648-F82D-44F7-96C8-2BCBCDC830AB} O43 - CFD: 27/05/2011 - 11:22:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{4C592AF0-CA19-40DF-9029-6412B948D4C2} O43 - CFD: 14/08/2011 - 16:43:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{4CAE6D21-4C24-41C8-836D-EC442B51FAA0} O43 - CFD: 19/09/2011 - 11:21:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{4D689827-05F6-4F0E-9ABD-108AB6EB7A44} O43 - CFD: 12/08/2011 - 21:51:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{4F780556-D72E-4D5F-95D6-403A1D6BB6CE} O43 - CFD: 16/08/2011 - 22:19:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{4FC614EF-A059-4115-A18C-CB32022A8880} O43 - CFD: 01/08/2011 - 16:35:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{501F21B5-ED0B-48B5-BDEE-70E7F03A8B5A} O43 - CFD: 24/06/2011 - 22:09:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{50286F89-88EC-4F0E-ADE1-843C09EFBCB8} O43 - CFD: 07/08/2011 - 11:33:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{505E7B80-2942-4CFB-9C45-544B8582FFC8} O43 - CFD: 04/08/2011 - 20:36:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{508C6DC3-6586-4FB8-B13C-980E2CE9874D} O43 - CFD: 07/08/2011 - 10:01:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{5099BCC2-68CA-4B68-AE24-9F68DCC5B7D1} O43 - CFD: 15/08/2011 - 12:44:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{50FCDF31-780D-40DE-AA8B-6C02225C92E1} O43 - CFD: 10/08/2011 - 11:18:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{51D618BF-852E-4B7C-AE96-2C3F2C48F58F} O43 - CFD: 09/10/2011 - 10:08:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{53014EE6-335D-40AE-84C7-823D7D78E1EC} O43 - CFD: 09/08/2011 - 15:58:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{53ABA832-5801-44CA-9B06-759A5B8C2409} O43 - CFD: 28/07/2011 - 13:41:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{5547D919-9D86-40B1-804A-EC6C3BF5DC4B} O43 - CFD: 07/08/2011 - 23:30:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{5591AF1B-9048-442D-BE40-7535C6909801} O43 - CFD: 11/09/2011 - 10:56:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{56976167-AC2B-4307-B222-252C5FE2A7F6} O43 - CFD: 07/08/2011 - 14:59:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{58311D1A-368E-4E0F-8F7F-0C7042068799} O43 - CFD: 04/08/2011 - 10:32:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{588B1000-9B74-44D9-8650-892A89E9EE31} O43 - CFD: 02/09/2011 - 11:13:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{58FE74A2-4872-46BD-95FC-D58B66BDDF6D} O43 - CFD: 08/08/2011 - 12:56:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{595C1D45-4A01-421E-832C-FB0D9B57DD1D} O43 - CFD: 08/06/2011 - 11:26:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{59DE001D-E7A2-4309-8EDA-ADD63EE5185B} O43 - CFD: 06/08/2011 - 11:31:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{59FBAD61-A399-428D-8A2C-0FE6969158FA} O43 - CFD: 13/08/2011 - 09:45:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{5A48DE2C-AAAE-478B-AAC4-95AEC40902FE} O43 - CFD: 28/08/2011 - 23:00:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{5A4C5FBD-EDC9-4DEC-BD24-1DD49C4A7231} O43 - CFD: 02/08/2011 - 13:09:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{5BD0E7C5-F3FA-4941-B6FA-12930E5EC591} O43 - CFD: 15/08/2011 - 17:43:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{5DEDD6AB-1D2B-4CEA-9A09-A26E64977355} O43 - CFD: 19/08/2011 - 10:11:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{5EC21DD0-3A22-4A8C-927C-F5E8F8546938} O43 - CFD: 10/08/2011 - 21:15:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{5F2FBFE0-24D4-4D73-BE37-97BECCFB7B50} O43 - CFD: 30/07/2011 - 17:52:38 - [0] ----D- C:\Users\Gaby\AppData\Local\{5F72ED87-32FD-4528-9A82-D5F0041F1C87} O43 - CFD: 22/08/2011 - 10:52:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{5FD4383B-D343-4832-A694-72A79EE0ED30} O43 - CFD: 10/08/2011 - 10:40:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{5FFE6CAF-23C4-44C9-9A6F-8271AF432C49} O43 - CFD: 25/08/2011 - 22:25:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{603CE92C-EBDA-46CE-B66E-EFB2AC8D2350} O43 - CFD: 21/09/2011 - 12:42:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{6117CDE0-BA87-42D4-AB7D-C56D90F93413} O43 - CFD: 13/08/2011 - 18:44:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{61339051-8C87-4C8F-B78B-84906DA628C1} O43 - CFD: 01/09/2011 - 10:01:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{6142B5D1-6D6B-4919-BF35-F6F1ED23BC9A} O43 - CFD: 06/08/2011 - 15:37:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{6270E640-3BD3-4C5B-B04F-46D28F342779} O43 - CFD: 07/08/2011 - 13:06:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{62FE04B2-D082-49E0-A773-59F58BD9E291} O43 - CFD: 07/09/2011 - 11:39:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{64578832-4989-4300-977A-E4A6F9E9C40D} O43 - CFD: 08/10/2011 - 11:54:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{64C4F398-A2A2-4A5F-8FC9-9428828D4814} O43 - CFD: 11/08/2011 - 21:29:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{65627AAC-687B-4D08-B6D4-A35250708D76} O43 - CFD: 15/08/2011 - 15:42:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{6576B80A-4607-41BC-AF36-1C5451493778} O43 - CFD: 22/05/2011 - 22:33:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{65917567-7226-4593-B75A-ED8437C60009} O43 - CFD: 31/07/2011 - 19:33:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{67F84094-532C-44B1-BB2D-C768D0FAEE6C} O43 - CFD: 22/08/2011 - 22:54:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{68AC925B-0196-4213-A97D-F93F94A1B47E} O43 - CFD: 15/08/2011 - 13:51:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{68EB55B4-1E1D-4C7D-9BF5-5324E227354B} O43 - CFD: 31/07/2011 - 21:33:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{6AB7EE6B-A464-45B5-A93D-AA905FAA7C22} O43 - CFD: 14/07/2011 - 16:49:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{6B2F8CE7-D200-490F-BCBC-3181826B0C33} O43 - CFD: 29/07/2011 - 15:35:06 - [0] ----D- C:\Users\Gaby\AppData\Local\{6C2A6712-396D-41EF-9E71-371E0A0BBE54} O43 - CFD: 10/08/2011 - 19:13:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{6C7B67E0-4C9B-4B69-9C0E-1BAEFDA004EE} O43 - CFD: 09/08/2011 - 11:06:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{6D05424C-F3DD-41CF-84B4-7C9BEB34DFAF} O43 - CFD: 04/08/2011 - 16:37:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{6D25F0B6-7976-4B85-9F8D-9F8CC5361A0D} O43 - CFD: 28/07/2011 - 17:26:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{6D81923F-D1BA-4B99-B0B9-A4DB41D0161E} O43 - CFD: 09/08/2011 - 12:15:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{6DAB9E78-EAFE-49EC-8A31-BE3B2574A22B} O43 - CFD: 01/08/2011 - 17:04:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{6E06F2CE-E070-4F87-9B0C-116D3E6E7533} O43 - CFD: 28/07/2011 - 20:06:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{6E467B25-EC45-40FE-9146-2FBF59170579} O43 - CFD: 30/07/2011 - 18:23:38 - [0] ----D- C:\Users\Gaby\AppData\Local\{7074B053-799F-4C34-BEFE-494E93CC08C6} O43 - CFD: 02/08/2011 - 10:41:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{714CAD9E-AC65-40BC-8833-BD5B3DCA9738} O43 - CFD: 13/08/2011 - 09:44:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{72A27927-0CAA-4968-B16D-C5C2D31B4E92} O43 - CFD: 18/09/2011 - 09:53:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{72FCF195-2DD2-41B3-B883-0F198C790642} O43 - CFD: 01/07/2011 - 10:46:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{741338A4-A0BF-44E4-9097-78EF655B1FF7} O43 - CFD: 07/08/2011 - 23:44:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{74F86C16-C2E5-49C8-9FE6-8D80D6B3FEE4} O43 - CFD: 06/08/2011 - 22:01:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{75FA5085-1628-4B3D-8D54-175C3E05076F} O43 - CFD: 29/07/2011 - 21:27:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{764A5A86-2B9E-4E07-AA48-60218F69176C} O43 - CFD: 10/08/2011 - 17:12:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{76711D4B-ED5F-4ABC-8EF0-523E15FD366F} O43 - CFD: 13/08/2011 - 13:27:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{77376A16-B31A-47B0-81FE-40EB8F630857} O43 - CFD: 16/08/2011 - 22:18:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{77698EB9-1345-476E-B388-20AFECEBE630} O43 - CFD: 29/07/2011 - 14:09:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{78A58826-8D24-417A-94E0-7645C79CCFA2} O43 - CFD: 12/07/2011 - 22:29:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{78EF2762-EB68-4FF5-939A-97CDAEF3E5A4} O43 - CFD: 15/08/2011 - 12:33:38 - [0] ----D- C:\Users\Gaby\AppData\Local\{794AE8AE-62DD-4AC4-A105-87AAA3B07E5C} O43 - CFD: 06/10/2011 - 21:23:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{79852F6F-8C48-49E3-A6A5-C67290551D8C} O43 - CFD: 03/10/2011 - 17:21:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{7ABBD352-FBEF-450C-9EA6-0A087D0D6598} O43 - CFD: 11/09/2011 - 10:56:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{7AD61906-C1B9-4E2C-A5B6-BC5FE292F7B3} O43 - CFD: 03/06/2011 - 13:17:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{7B4C683B-F0EB-4328-A2DD-6086322B1BCA} O43 - CFD: 03/07/2011 - 11:59:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{7B5067D9-6D70-48B6-8085-45672B9808E9} O43 - CFD: 07/08/2011 - 14:03:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{7BD8EF03-F37D-4903-9D6E-50B0D3A98047} O43 - CFD: 13/08/2011 - 22:55:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{7C1E8356-7DD8-42E0-8604-3B98C4608F76} O43 - CFD: 19/07/2011 - 11:02:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{7C8D094E-7A22-4BC9-86F2-C6CD8F158AF3} O43 - CFD: 26/09/2011 - 16:01:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{7CC912BD-D12F-4E96-AB7A-C7B90A2D483E} O43 - CFD: 02/08/2011 - 21:13:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{7D8B7B16-D152-45D0-9851-F0D64FD8C593} O43 - CFD: 07/08/2011 - 13:06:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{7F7364DD-AE86-483E-9E9A-0A7D106E6E7E} O43 - CFD: 05/08/2011 - 13:18:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{80461164-3CF6-45E0-B856-3ECF6B80E04F} O43 - CFD: 28/07/2011 - 21:37:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{80BBD5EA-6BE5-4FBA-A804-6AFCEF51B181} O43 - CFD: 04/08/2011 - 13:32:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{810A0591-22AC-4524-A679-E7222BDD0257} O43 - CFD: 10/08/2011 - 12:51:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{821F9411-6186-49EC-A7D8-E336578A4E70} O43 - CFD: 27/08/2011 - 22:26:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{82AB1278-BF21-4C52-A748-169E48DA12C6} O43 - CFD: 12/07/2011 - 10:28:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{82C244D7-DC73-496C-B1EE-3170F831FC6C} O43 - CFD: 02/08/2011 - 15:12:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{82D3D144-0D40-426F-BC40-CF79808A670E} O43 - CFD: 22/09/2011 - 09:40:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{837445F9-66EE-4366-A695-543372D4A700} O43 - CFD: 20/08/2011 - 00:32:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{83D9D5E9-1470-4324-8F83-BA02680DA090} O43 - CFD: 14/08/2011 - 19:55:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{841ABD6F-1CC6-47C0-97FA-01852EDCBCE7} O43 - CFD: 21/06/2011 - 12:28:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{843D3F54-5A6B-48AA-85DE-31DA37308B2D} O43 - CFD: 07/07/2011 - 10:40:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{8451A2E7-C4C7-45AF-9787-ABD3B55CAFAE} O43 - CFD: 12/08/2011 - 10:00:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{852B116F-F2C9-4357-B758-BB78840369D2} O43 - CFD: 06/08/2011 - 18:27:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{85459B73-C2A1-43FE-8117-1FFF1C1767C2} O43 - CFD: 09/08/2011 - 22:13:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{86C7DAD0-1BBF-4D8C-A373-4D47BDF53019} O43 - CFD: 01/08/2011 - 18:50:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{87038133-DA5E-4572-A8CF-E221BE9BF9D9} O43 - CFD: 01/08/2011 - 19:27:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{870BBA5E-BF20-4110-B5C7-FE1933462938} O43 - CFD: 18/09/2011 - 09:54:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{875C087A-17A4-4002-A2B7-F44B8C642297} O43 - CFD: 18/06/2011 - 09:35:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{87B5A257-14E1-4BDA-B033-1F5A9D88D4AF} O43 - CFD: 27/09/2011 - 10:32:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{8874EB5B-F7F7-47AA-A9B8-1E580B14FDBA} O43 - CFD: 23/09/2011 - 18:00:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{88B70208-BFE2-4FD2-8316-45F11FF5C322} O43 - CFD: 01/08/2011 - 17:04:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{89246451-588E-4227-9391-3ACC5C54CB66} O43 - CFD: 20/07/2011 - 11:03:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{898548BB-C9F1-457A-8516-EB9506CF34AB} O43 - CFD: 19/07/2011 - 23:02:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{89A629DF-2556-484A-AE7D-5E487A116AFD} O43 - CFD: 04/08/2011 - 16:37:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{8A36AB8B-9AAA-4B5D-B5FE-E65FA52DA531} O43 - CFD: 13/08/2011 - 20:29:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{8A70FE60-0FDF-4159-B87C-86F618853C51} O43 - CFD: 07/08/2011 - 19:56:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{8B9480EF-ED60-489A-82CE-C2C2C58EB54C} O43 - CFD: 15/08/2011 - 12:02:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{8C6365E1-F5E6-4753-89BD-6FFE5C030AFB} O43 - CFD: 01/08/2011 - 20:02:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{8D30C0A8-0F51-47E4-98AB-2D596F0DCF5B} O43 - CFD: 10/08/2011 - 13:33:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{8D384F57-0077-492E-8F40-49DC55FDE792} O43 - CFD: 29/07/2011 - 15:35:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{8E986903-2EEE-4361-A0B2-5C760E9E0346} O43 - CFD: 13/08/2011 - 17:34:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{8EBD3DBD-6334-44FE-8D4F-5AD0FDB6566D} O43 - CFD: 01/08/2011 - 10:33:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{9105CA2F-59F6-40B8-8736-7B87D18DE3ED} O43 - CFD: 22/09/2011 - 09:34:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{9254F847-9EC1-4042-A8D4-ED7910E0A885} O43 - CFD: 22/08/2011 - 10:52:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{92ADE3B2-D6AA-49EA-A4BF-D51283481457} O43 - CFD: 11/08/2011 - 07:54:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{93363BF9-9868-45D6-801B-9AA8E0E4DB0D} O43 - CFD: 23/07/2011 - 11:08:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{9450179F-BE55-4AAC-8194-3B50D64BC08E} O43 - CFD: 14/08/2011 - 16:43:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{94F46C38-8B52-49F3-B981-4008027A36B6} O43 - CFD: 14/08/2011 - 19:56:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{9514919F-9DE0-4E8D-A285-F43248FBFA1C} O43 - CFD: 14/08/2011 - 17:45:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{966B740C-22BD-4C07-BB92-F779E42DF852} O43 - CFD: 26/06/2011 - 11:36:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{985A816D-306F-4E1B-B143-FBD510E99894} O43 - CFD: 13/08/2011 - 19:00:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{990E1B19-74C4-4A63-BFF2-F81FE6DFA831} O43 - CFD: 14/08/2011 - 14:32:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{9936A2ED-FED5-4129-81F1-0CD2B64F6A3F} O43 - CFD: 28/07/2011 - 21:38:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{9AA0FC7E-B30D-43C3-AB32-553F0910D7AB} O43 - CFD: 05/08/2011 - 10:03:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{9AC2C4E1-E855-4D51-9CA1-305543A8B17B} O43 - CFD: 21/09/2011 - 12:42:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{9B0C3184-A8AD-4161-9FB5-28FE776726D3} O43 - CFD: 27/08/2011 - 10:24:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{9B11384D-3829-4468-BD87-A959576F0782} O43 - CFD: 28/06/2011 - 20:29:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{9B600250-B15F-4AE1-A4EB-FBC850747287} O43 - CFD: 15/08/2011 - 12:33:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{9BC016F7-41AB-4EDA-A71D-A3D8F56A1B7B} O43 - CFD: 28/07/2011 - 19:16:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{9D472806-C77E-421F-8326-0742D6990D3B} O43 - CFD: 02/08/2011 - 10:40:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{9D4FF854-F289-4C9E-95FD-6B6BD668B70F} O43 - CFD: 14/08/2011 - 21:02:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{9DDC9BF7-E04C-4AD9-902A-626D3C481EE7} O43 - CFD: 04/08/2011 - 12:27:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{9E5F84CD-21F8-432E-BBAD-23899C44A7FA} O43 - CFD: 06/08/2011 - 22:34:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{9E91B121-EAD0-4999-BA14-630AA18AF04F} O43 - CFD: 24/05/2011 - 16:18:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{9EAF2E45-6D1A-416A-87A2-F04E86B8FC35} O43 - CFD: 18/08/2011 - 10:08:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{9EB299F0-9471-4D76-8520-B99CA01F632D} O43 - CFD: 13/07/2011 - 23:12:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{9EB9D563-63C6-49F0-A4A7-F47924E0D640} O43 - CFD: 01/10/2011 - 12:36:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{9EBD8161-4B58-437C-BACA-6E7BD13101DC} O43 - CFD: 19/08/2011 - 10:11:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{9F12FBB9-402A-4AC7-A553-691B94D2998B} O43 - CFD: 25/05/2011 - 12:34:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{9F3877EB-ED51-49FF-8586-6F29469422EB} O43 - CFD: 02/08/2011 - 22:37:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{9FDBBA6F-4637-4AF9-9D0A-34977B17D5E4} O43 - CFD: 04/08/2011 - 12:50:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{A08DD501-DAEC-4B11-8FA8-9276F1A07C7C} O43 - CFD: 30/07/2011 - 20:35:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{A0C17528-996D-466F-BC46-4F18A257CC9C}
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 15:13 | |
| O43 - CFD: 14/06/2011 - 16:28:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{D7BA8BB7-F09C-469C-924C-91104A22DBA0} O43 - CFD: 29/05/2011 - 10:56:42 - [0] ----D- C:\Users\Gaby\AppData\Local\{D7EE6197-45FA-49FD-8896-CB6473DB72A5} O43 - CFD: 09/08/2011 - 17:49:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{D825E284-8F86-416A-B0E0-EEA510281CBF} O43 - CFD: 31/07/2011 - 19:33:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{D8E84DF5-505B-4FBF-8BA1-4DFF7E4F24A4} O43 - CFD: 10/08/2011 - 11:18:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{DA952411-2D8B-4B27-8007-1F330616A1AF} O43 - CFD: 03/08/2011 - 21:18:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{DAA2CE71-FDDE-4DC6-A75C-7D47D8A4B66F} O43 - CFD: 13/08/2011 - 11:36:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{DB0379B6-EC0F-461D-8B17-4AA19BD19E69} O43 - CFD: 02/10/2011 - 12:47:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{DB4858CB-278E-43A6-A760-262ACFA689AC} O43 - CFD: 06/08/2011 - 16:15:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{DB573169-D51A-4C02-96F6-2CCCEED696BD} O43 - CFD: 28/07/2011 - 13:42:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{DD003C2C-F54C-49DF-925C-205D7803001B} O43 - CFD: 30/08/2011 - 22:28:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{DD1A7805-1EB0-4AC2-B364-3E676E3F2D97} O43 - CFD: 06/09/2011 - 17:56:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{DD6A8C7D-00B5-41B3-BFB3-4B5EAE58A4CF} O43 - CFD: 25/08/2011 - 10:25:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{DDA4113E-6577-4085-8731-7D758DC2B58E} O43 - CFD: 22/09/2011 - 09:35:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{DDFF4F21-5C4F-4748-95D7-1A4346534D67} O43 - CFD: 08/08/2011 - 16:01:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{DF40F955-2356-4B69-835D-745D6FEE1A23} O43 - CFD: 08/08/2011 - 22:51:40 - [0] ----D- C:\Users\Gaby\AppData\Local\{DF689088-C9EA-43E7-B1CF-AEAFD71C8A4C} O43 - CFD: 02/06/2011 - 12:05:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{DF9F342F-C9B7-46BB-AAD8-1F9D8CD838FE} O43 - CFD: 07/06/2011 - 17:34:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{DFF84BC8-DDD2-4D5A-B019-6FE4F4CAF770} O43 - CFD: 06/08/2011 - 12:02:00 - [0] ----D- C:\Users\Gaby\AppData\Local\{E0392C95-BB30-41F3-96EC-963618B1D54D} O43 - CFD: 07/08/2011 - 10:43:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{E1EC10A7-6A65-49DF-B070-13B59A675BA7} O43 - CFD: 22/09/2011 - 09:41:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{E209FBBE-D078-4008-BAA6-27888FA87B7E} O43 - CFD: 08/09/2011 - 12:25:38 - [0] ----D- C:\Users\Gaby\AppData\Local\{E2D9F439-FE00-4A5D-AFC2-0F365C245B2B} O43 - CFD: 10/08/2011 - 21:15:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{E2EF2263-D6D4-4B15-A31F-6432A985F57C} O43 - CFD: 04/08/2011 - 12:26:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{E3100BC0-6F87-4E9C-AC37-83DDC63B4B1D} O43 - CFD: 29/09/2011 - 09:43:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{E320451B-F471-47F2-92E4-4671341D7DFA} O43 - CFD: 15/06/2011 - 12:33:56 - [0] ----D- C:\Users\Gaby\AppData\Local\{E3875820-0D0D-4913-BA56-A75B4D9B9A81} O43 - CFD: 30/07/2011 - 18:23:54 - [0] ----D- C:\Users\Gaby\AppData\Local\{E40DB567-C23A-482E-8A0C-2EB2AB85C81B} O43 - CFD: 07/08/2011 - 17:10:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{E4701BF1-9E4F-4403-B57F-0EE1B270AB7C} O43 - CFD: 12/08/2011 - 19:28:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{E48518C7-A3E6-45D8-85C3-F96DC773136E} O43 - CFD: 22/07/2011 - 11:15:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{E4D2DCAE-B3CA-406D-9C36-2AFDB4239456} O43 - CFD: 25/08/2011 - 22:26:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{E60D374D-702A-44A3-B3F1-859CCC5AF70B} O43 - CFD: 10/09/2011 - 12:22:28 - [0] ----D- C:\Users\Gaby\AppData\Local\{E6D5FD5D-F9A7-481F-8CC6-49CC1E88BF5B} O43 - CFD: 12/09/2011 - 18:22:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{E6E85761-A3C8-46AA-A229-0CA863339F96} O43 - CFD: 06/07/2011 - 17:32:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{E7090220-18C5-4554-8572-AD716CA84165} O43 - CFD: 02/09/2011 - 11:14:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{E713A284-58E6-46FE-9DF5-BCE6896D0BBA} O43 - CFD: 21/08/2011 - 10:50:22 - [0] ----D- C:\Users\Gaby\AppData\Local\{E8BB4DB4-ED89-4AA2-81DD-480758D107B4} O43 - CFD: 08/10/2011 - 11:54:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{E98F9B42-1DF5-414B-B1EF-1D0D8E1DA4C8} O43 - CFD: 27/09/2011 - 10:32:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{EA88563E-5492-4A9F-AD55-62CED4BF75CB} O43 - CFD: 05/08/2011 - 19:17:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{EA9EB155-F312-4968-A771-7BD733B24302} O43 - CFD: 14/08/2011 - 22:07:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{EBD98542-B44E-467E-8BCB-B5EB3791FE61} O43 - CFD: 06/08/2011 - 19:28:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{ED8A41D5-8873-4AF6-8634-B1550547AAED} O43 - CFD: 07/08/2011 - 23:37:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{EE1AFAFA-2EAB-4E9E-8BB0-1961FEF157E9} O43 - CFD: 14/08/2011 - 14:32:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{EE6D5B9E-B954-48CA-A083-91EC26395F62} O43 - CFD: 06/08/2011 - 14:39:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{EE9D8CAA-D59E-4F85-AD1F-5311915DD8A8} O43 - CFD: 20/08/2011 - 09:05:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{EF138413-8DB4-4EDD-B887-8AF3159BD630} O43 - CFD: 25/07/2011 - 11:19:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{EF18D626-F1BB-4323-86A8-2228159EAB84} O43 - CFD: 08/08/2011 - 20:42:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{EF2F415D-FA3A-47FA-B75E-23BDF3E65031} O43 - CFD: 30/07/2011 - 21:16:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{EF657BE0-D80D-4587-A6F7-621B89B2722E} O43 - CFD: 16/09/2011 - 17:40:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{EF93CA25-6CD0-4D43-BB65-2184771EA590} O43 - CFD: 09/08/2011 - 19:06:18 - [0] ----D- C:\Users\Gaby\AppData\Local\{EFF4925A-BB98-46BF-8649-902CFE95C680} O43 - CFD: 24/08/2011 - 10:22:48 - [0] ----D- C:\Users\Gaby\AppData\Local\{F01A8DFC-E085-4731-8598-E5C81597E109} O43 - CFD: 29/07/2011 - 11:06:34 - [0] ----D- C:\Users\Gaby\AppData\Local\{F1BFD931-C9F6-45A6-A3CA-D1D149FE65C2} O43 - CFD: 09/08/2011 - 13:24:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{F2582234-510A-4719-A2CE-1CEBC23F0841} O43 - CFD: 29/08/2011 - 11:22:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{F324B9CD-A0E2-4C00-8A5C-11833B629C8F} O43 - CFD: 19/05/2011 - 13:09:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{F3ADF04B-3B1C-4B0B-9FAF-9F28DC46B1B6} O43 - CFD: 26/08/2011 - 10:29:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{F42053A7-84CA-48EB-A86A-D232C42000FE} O43 - CFD: 04/10/2011 - 18:41:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{F44B7CB5-9D93-4FC3-A665-1AE81985F39A} O43 - CFD: 24/06/2011 - 10:08:46 - [0] ----D- C:\Users\Gaby\AppData\Local\{F52722B7-D426-4E79-8892-9F0983055B49} O43 - CFD: 27/06/2011 - 10:28:02 - [0] ----D- C:\Users\Gaby\AppData\Local\{F58171DA-5304-4C97-B40D-257C8A469768} O43 - CFD: 05/09/2011 - 13:25:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{F6D41E49-1D5E-458E-B3AD-30FC7F9E047F} O43 - CFD: 16/07/2011 - 11:55:04 - [0] ----D- C:\Users\Gaby\AppData\Local\{F6F2C256-BD01-4E66-891B-987FA461F893} O43 - CFD: 08/08/2011 - 12:56:36 - [0] ----D- C:\Users\Gaby\AppData\Local\{F70A80B7-DEE0-454E-B7CF-1843250DB843} O43 - CFD: 10/08/2011 - 14:33:50 - [0] ----D- C:\Users\Gaby\AppData\Local\{F7EDD30B-988B-479F-BBFC-C4135101AF2E} O43 - CFD: 28/07/2011 - 17:26:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{F82B64D1-5422-49C0-9563-AF26986FE29A} O43 - CFD: 24/09/2011 - 11:52:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{F85F75E9-3422-4E2A-8B21-3411D63F90FA} O43 - CFD: 01/08/2011 - 21:56:24 - [0] ----D- C:\Users\Gaby\AppData\Local\{F8758072-E950-4F02-94C2-61C07515670D} O43 - CFD: 24/07/2011 - 11:27:26 - [0] ----D- C:\Users\Gaby\AppData\Local\{F93CF4BF-3642-4E8D-8498-E3C572CA2C3D} O43 - CFD: 29/06/2011 - 13:03:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{F95989F6-2253-4D87-A157-8C1F4352AEDE} O43 - CFD: 11/06/2011 - 20:33:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{F9E1B3BD-AFAC-41C7-9E9B-65B390C17D17} O43 - CFD: 29/07/2011 - 21:27:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{FA08614C-335F-48B4-B76B-DEED699B1BEF} O43 - CFD: 22/06/2011 - 10:43:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{FA6F2430-A151-431E-BFB0-6D86F62D45CA} O43 - CFD: 06/08/2011 - 22:01:08 - [0] ----D- C:\Users\Gaby\AppData\Local\{FB7F54FD-C756-4D85-8E09-A50204C367DA} O43 - CFD: 04/08/2011 - 19:06:44 - [0] ----D- C:\Users\Gaby\AppData\Local\{FC0903D2-F669-41DD-83B8-6503D72EBF25} O43 - CFD: 09/09/2011 - 17:44:52 - [0] ----D- C:\Users\Gaby\AppData\Local\{FC5F63E9-A9F4-44FD-AC17-D38DA3E021C0} O43 - CFD: 17/07/2011 - 11:06:30 - [0] ----D- C:\Users\Gaby\AppData\Local\{FCC11341-A3B9-44F4-A05C-12CEAD9CE272} O43 - CFD: 30/07/2011 - 11:21:20 - [0] ----D- C:\Users\Gaby\AppData\Local\{FDA58622-1D4C-44E6-856B-4FE27465DEF6} O43 - CFD: 07/08/2011 - 10:44:12 - [0] ----D- C:\Users\Gaby\AppData\Local\{FDD25D45-1071-4CC1-8D03-A206C0AF3165} O43 - CFD: 04/08/2011 - 17:31:16 - [0] ----D- C:\Users\Gaby\AppData\Local\{FE253E3E-41AD-462B-8192-76718E758DAC} O43 - CFD: 24/08/2011 - 10:21:58 - [0] ----D- C:\Users\Gaby\AppData\Local\{FE3D310B-4F8E-44EC-BD43-13066F96CF1E} O43 - CFD: 06/09/2011 - 17:57:10 - [0] ----D- C:\Users\Gaby\AppData\Local\{FE437876-F82A-46C9-B96C-AF8481177004} O43 - CFD: 26/07/2011 - 10:31:32 - [0] ----D- C:\Users\Gaby\AppData\Local\{FEF6D3D7-D4BA-49CE-9D16-17FA35E114C4} O43 - CFD: 13/08/2011 - 14:41:14 - [0] ----D- C:\Users\Gaby\AppData\Local\{FFA4C2B9-198B-48CC-9832-602DC8B90B8C} ~ Scan Program Folder in 00mn 47s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.73FB87A6E652E12B5A583BBC431DD5E5] - 09/10/2011 - 12:52:24 ---A- . (...) -- C:\Ad-Report-CLEAN[2].txt [3989] O44 - LFC:[MD5.1B6283FEED488031C8A3664F8A05805C] - 09/10/2011 - 12:50:03 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1229926] O44 - LFC:[MD5.84B1BAE182921BB3EC90869A976FB810] - 09/10/2011 - 12:45:58 ---A- . (...) -- C:\Windows\setupact.log [89191] O44 - LFC:[MD5.756CBE0E9585642C9F2711B20A45AC46] - 09/10/2011 - 12:45:55 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.445A384CEDBA10C49E0F5702F87E2983] - 09/10/2011 - 12:44:19 ---A- . (...) -- C:\Ad-Report-CLEAN[1].txt [14163] O44 - LFC:[MD5.B23B3BDA029B3417985367BC3789DF15] - 28/09/2011 - 17:21:09 ---A- . (...) -- C:\Windows\system32\perfc00C.dat [130754] O44 - LFC:[MD5.8C953861190DC82596D3CC71F26CD714] - 28/09/2011 - 17:21:09 ---A- . (...) -- C:\Windows\system32\perfh009.dat [616008] O44 - LFC:[MD5.818B493ADB968337C66BE70E17E56EEB] - 28/09/2011 - 17:21:09 ---A- . (...) -- C:\Windows\system32\perfh00C.dat [704480] O44 - LFC:[MD5.A7D1DA04C22F22CD5BD2B21564529D6F] - 28/09/2011 - 17:21:08 ---A- . (...) -- C:\Windows\system32\PerfStringBackup.INI [1549700] O44 - LFC:[MD5.9B989AE231CE5D2CEAC9E3AA4E85B199] - 28/09/2011 - 17:21:08 ---A- . (...) -- C:\Windows\system32\perfc009.dat [106388] ~ Scan Files in 00mn 29s
---\\ Contrôle du Safe Boot (CSB) (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\Wdf01000.sys . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\system32\Drivers\Wdf01000.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\system32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\system32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\system32\Drivers\rdpencdd.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\system32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\system32\Drivers\vga.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\system32\Drivers\vgasave.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\system32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volumes.) -- C:\Windows\system32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\Wdf01000.sys . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en mode noyau.) -- C:\Windows\system32\Drivers\Wdf01000.sys ~ Scan CSB in 00mn 00s
---\\ Trojan Driver Search Data (HKLM) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\system32\iccvid.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm ~ Scan Keys in 00mn 01s
---\\ Microsoft Control Security Providers (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\system32\credssp.dll ~ Scan Keys in 00mn 00s
---\\ Microsoft Windows Policies System (O55) O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ Scan Keys in 00mn 00s
---\\ Liste des Drivers Système (O58) O58 - SDL:[MD5.21E785EBD7DC90A06391141AAC7892FB] - 10/06/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\system32\drivers\adp94xx.sys [422976] O58 - SDL:[MD5.0C676BC278D5B59FF5ABD57BBE9123F2] - 14/07/2009 - 02:26:17 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\system32\drivers\adpahci.sys [297552] O58 - SDL:[MD5.7C7B5EE4B7B822EC85321FE23A27DB33] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\system32\drivers\adpu320.sys [146512] O58 - SDL:[MD5.0D40BCF52EA90FC7DF2AEAB6503DEA44] - 14/07/2009 - 02:26:15 ---A- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\system32\drivers\aliide.sys [14400] O58 - SDL:[MD5.19CE906B4CDC11FC4FEF5745F33A63B6] - 13/07/2011 - 06:43:46 ---A- . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\system32\drivers\amdsata.sys [80256] O58 - SDL:[MD5.EA43AF0C423FF267355F74E7A53BDABA] - 10/06/2009 - 02:26:15 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows fa.) -- C:\Windows\system32\drivers\amdsbs.sys [159312] O58 - SDL:[MD5.869E67D66BE326A5A9159FBA8746FA70] - 13/07/2011 - 06:43:46 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\system32\drivers\amdxata.sys [22400] O58 - SDL:[MD5.10B2C784163208693248AF6241C011FF] - 17/09/2010 - 07:16:50 ---A- . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\system32\drivers\Apfiltr.sys [252536] O58 - SDL:[MD5.2932004F49677BD84DBC72EDB754FFB3] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\system32\drivers\arc.sys [76368] O58 - SDL:[MD5.5D6F36C46FD283AE1B57BD2E9FEB0BC7] - 14/07/2009 - 02:26:15 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\system32\drivers\arcsas.sys [86608] O58 - SDL:[MD5.861CB512E4E850E87DD2316F88D69330] - 17/05/2011 - 12:32:12 ---A- . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\system32\drivers\aswFsBlk.sys [19544] O58 - SDL:[MD5.FF83C93AEEE8B0CF4B464CA667A67ACD] - 17/05/2011 - 12:32:20 ---A- . (.AVAST Software - avast! File System Minifilter for Windows 2003/Vista.) -- C:\Windows\system32\drivers\aswMonFlt.sys [54104] O58 - SDL:[MD5.8DB043BF96BB6D334E5B4888E709E1C7] - 17/05/2011 - 12:32:32 ---A- . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\system32\drivers\aswRdr.sys [25432] O58 - SDL:[MD5.17230708A2028CD995656DF455F2E303] - 17/05/2011 - 12:36:43 ---A- . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\system32\drivers\aswSnx.sys [441176] O58 - SDL:[MD5.DBEDD9D43B00630966EF05D2D8D04CEE] - 17/05/2011 - 12:36:32 ---A- . (.AVAST Software - avast! self protection module.) -- C:\Windows\system32\drivers\aswSP.sys [309848] O58 - SDL:[MD5.984CFCE2168286C2511695C2F9621475] - 17/05/2011 - 12:35:23 ---A- . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\system32\drivers\aswTdi.sys [43608] O58 - SDL:[MD5.C35AF075C15827D74B5C9702CBCB175B] - 17/09/2010 - 22:57:36 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\system32\drivers\athr.sys [1906024] O58 - SDL:[MD5.BD8869EB9CDE6BBE4508D869929869EE] - 14/07/2009 - 23:02:49 ---A- . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gigabit Ethernet..) -- C:\Windows\system32\drivers\b57nd60x.sys [229888] O58 - SDL:[MD5.9F9ACC7F7CCDE8A15C282D3F88B43309] - 14/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\system32\drivers\BrFiltLo.sys [13568] O58 - SDL:[MD5.56801AD62213A41F6497F96DEE83755A] - 14/07/2009 - 23:53:28 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\system32\drivers\BrFiltUp.sys [5248] O58 - SDL:[MD5.845B8CE732E67F3B4133164868C666EA] - 14/07/2009 - 01:57:25 ---A- . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\system32\drivers\BrSerId.sys [272128] O58 - SDL:[MD5.203F0B1E73ADADBBB7B7B1FABD901F6B] - 14/07/2009 - 23:53:32 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\system32\drivers\BrSerWdm.sys [62336] O58 - SDL:[MD5.BD456606156BA17E60A04E18016AE54B] - 14/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\system32\drivers\BrUsbMdm.sys [12160] O58 - SDL:[MD5.AF72ED54503F717A43268B3CC5FAEC2E] - 14/07/2009 - 23:53:33 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\system32\drivers\BrUsbSer.sys [11904] O58 - SDL:[MD5.ED84067704F7CB92C5DCE0FA9CC1616A] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - Atheros A2DP driver.) -- C:\Windows\system32\drivers\btath_a2dp.sys [260968] O58 - SDL:[MD5.3D58BED2BFA9EC2F060811B8F5EF1D3B] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - Atheros BUS driver.) -- C:\Windows\system32\drivers\btath_bus.sys [26984] O58 - SDL:[MD5.61361A8A62A193C339DACB341D246E63] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - Atheros FILTER driver.) -- C:\Windows\system32\drivers\btath_flt.sys [37224] O58 - SDL:[MD5.C1D73E8E7570F8BBD27A034F8E3F890B] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - Atheros HCRP driver.) -- C:\Windows\system32\drivers\btath_hcrp.sys [178024] O58 - SDL:[MD5.CB2A26BA734C58DCBDE4BA444D21DE3B] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - Atheros FILTER driver.) -- C:\Windows\system32\drivers\btath_lwflt.sys [51560] O58 - SDL:[MD5.954678976BBACCAB3F7D7ACE875AA193] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\system32\drivers\btath_rcp.sys [143336] O58 - SDL:[MD5.0A53B4F35A035A46AAC08D8BF8B470B0] - 04/12/2010 - 12:13:42 ---A- . (.Atheros - BtFilter Driver.) -- C:\Windows\system32\drivers\btfilter.sys [242024] O58 - SDL:[MD5.1A231ABEC60FD316EC54C66715543CEC] - 10/06/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\system32\drivers\bxvbdx.sys [430080] O58 - SDL:[MD5.C537B1DB64D495B9B4717B4D6D9EDBF2] - 14/07/2009 - 02:26:21 ---A- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\cmdide.sys [15952] O58 - SDL:[MD5.8B30250D573A8F6B4BD23195160D8707] - 10/06/2009 - 02:20:28 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\system32\drivers\djsvs.sys [70720] O58 - SDL:[MD5.0ED67910C8C326796FAA00B2BF6D9D3C] - 10/06/2009 - 02:20:28 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\system32\drivers\elxstor.sys [453712] O58 - SDL:[MD5.4FAB8DFAF156E048AD514EABD268AB3A] - 17/09/2010 - 07:50:38 ---A- . (.ENE Technology Inc. - ENE USB Memory Card Reader Driver.) -- C:\Windows\system32\drivers\EUCR6SK.sys [82768] O58 - SDL:[MD5.024E1B5CAC09731E4D868E64DBFB4AB0] - 10/06/2009 - 23:02:48 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\system32\drivers\evbdx.sys [3100160] O58 - SDL:[MD5.C44E3C2BAB6837DB337DDEE7544736DB] - 14/07/2009 - 23:54:14 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\system32\drivers\hcw85cir.sys [26624] O58 - SDL:[MD5.295FDC419039090EB8B49FFDBB374549] - 14/07/2009 - 02:20:28 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\system32\drivers\HpSAMD.sys [67152] O58 - SDL:[MD5.D80AA0907748D7CC8EFAB3773F32629B] - 17/09/2010 - 18:23:34 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\system32\drivers\iaStor.sys [435736] O58 - SDL:[MD5.71F1A494FEDF4B33C02C4A6A28D6D9E9] - 13/07/2011 - 06:43:55 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\system32\drivers\iaStorV.sys [332160] O58 - SDL:[MD5.D0074897C6BC132F3980EA4654BF7FB9] - 17/09/2010 - 02:12:58 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\system32\drivers\igdkmd32.sys [4806144] O58 - SDL:[MD5.4173FF5708F3236CF25195FECD742915] - 14/07/2009 - 02:20:36 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\system32\drivers\iirsp.sys [41040] O58 - SDL:[MD5.1A91EAAD2D73758140B3B7B6AD736573] - 17/09/2010 - 10:55:52 ---A- . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controller.) -- C:\Windows\system32\drivers\L1C62x86.sys [68208] O58 - SDL:[MD5.EB119A53CCF2ACC000AC71B065B78FEF] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_fc.sys [95824] O58 - SDL:[MD5.8ADE1C877256A22E49B75D1CC9161F9C] - 14/07/2009 - 02:20:37 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas.sys [89168] O58 - SDL:[MD5.DC9DC3D3DAA0E276FD2EC262E38B11E9] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_sas2.sys [54864] O58 - SDL:[MD5.0A036C7D7CAB643A7F07135AC47E0524] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\system32\drivers\lsi_scsi.sys [96848] O58 - SDL:[MD5.0FFF5B045293002AB38EB1FD1FC2FB74] - 10/06/2009 - 02:20:36 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows 7 for x86.) -- C:\Windows\system32\drivers\megasas.sys [30800] O58 - SDL:[MD5.DCBAB2920C75F390CAF1D29F675D03D6] - 14/07/2009 - 02:20:36 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\system32\drivers\MegaSR.sys [235584] O58 - SDL:[MD5.CB47C414E083CA6E50E634B148F28F64] - 17/09/2010 - 03:15:34 ---A- . (.Egis Technology Inc. - PSD Filter Driver.) -- C:\Windows\system32\drivers\mwlPSDFilter.sys [18992] O58 - SDL:[MD5.647B953019559BFF07536F5C6121F333] - 17/09/2010 - 03:15:38 ---A- . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) -- C:\Windows\system32\drivers\mwlPSDNserv.sys [16432] O58 - SDL:[MD5.5A236A36DB8687D1E64DC81C03EAABE1] - 17/09/2010 - 03:15:40 ---A- . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) -- C:\Windows\system32\drivers\mwlPSDVDisk.sys [60976] O58 - SDL:[MD5.1D85C4B390B0EE09C7A46B91EFB2C097] - 14/07/2009 - 02:20:44 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\system32\drivers\nfrd960.sys [44624] O58 - SDL:[MD5.F1B0BED906F97E16F6D0C3629D2F21C6] - 13/07/2011 - 06:44:01 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\system32\drivers\nvraid.sys [117120] O58 - SDL:[MD5.4520B63899E867F354EE012D34E11536] - 13/07/2011 - 06:44:01 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\system32\drivers\nvstor.sys [143744] O58 - SDL:[MD5.AB95ECF1F6659A60DDC166D8315B0751] - 10/06/2009 - 02:19:04 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\system32\drivers\ql2300.sys [1383488] O58 - SDL:[MD5.B4DD51DD25182244B86737DC51AF2270] - 14/07/2009 - 02:19:04 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\system32\drivers\ql40xx.sys [106064] O58 - SDL:[MD5.8C92829CCAE93139B90C46389FBEF4CF] - 17/09/2010 - 11:07:44 ---A- . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function Driver.) -- C:\Windows\system32\drivers\RTKVHDA.sys [3158120] O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 14/07/2009 - 21:50:20 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\system32\drivers\secdrv.sys [20480] O58 - SDL:[MD5.A9F0486851BECB6DDA1D89D381E71055] - 10/06/2009 - 02:19:04 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\system32\drivers\sisraid2.sys [40016] O58 - SDL:[MD5.3727097B55738E2F554972C3BE5BC1AA] - 14/07/2009 - 02:19:04 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\system32\drivers\sisraid4.sys [77888] O58 - SDL:[MD5.DB32D325C192B801DF274BFD12A7E72B] - 14/07/2009 - 02:19:04 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\system32\drivers\stexstor.sys [21072] O58 - SDL:[MD5.E43574F6A56A0EE11809B48C09E4FD3C] - 14/07/2009 - 02:19:10 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\system32\drivers\viaide.sys [16976] O58 - SDL:[MD5.9DFA0CC2F8855A04816729651175B631] - 10/06/2009 - 02:19:11 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\system32\drivers\vsmraid.sys [141904] O58 - SDL:[MD5.8AAD333C876590293F72B315E162BCC7] - 13/07/2009 - 22:40:41 ---A- . (...) -- C:\Windows\system32\ANSI.SYS [9029] O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 13/07/2009 - 22:40:44 ---A- . (...) -- C:\Windows\system32\country.sys [27097] O58 - SDL:[MD5.E6BC0F98FECEF245A0010D350C1A0B9B] - 13/07/2009 - 22:40:40 ---A- . (...) -- C:\Windows\system32\HIMEM.SYS [4768] O58 - SDL:[MD5.492090267B9608C62B956CD29BE3AFB7] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\system32\KEY01.SYS [42809] O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 13/07/2009 - 22:40:43 ---A- . (...) -- C:\Windows\system32\KEYBOARD.SYS [42537] O58 - SDL:[MD5.FFFF296A08DBF2AC0126C62E3778AC0D] - 13/07/2009 - 22:40:23 ---A- . (...) -- C:\Windows\system32\NTDOS.SYS [27866] O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 13/07/2009 - 22:40:31 ---A- . (...) -- C:\Windows\system32\NTDOS404.SYS [29146] O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 13/07/2009 - 22:40:35 ---A- . (...) -- C:\Windows\system32\NTDOS411.SYS [29370] O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 13/07/2009 - 22:40:39 ---A- . (...) -- C:\Windows\system32\NTDOS412.SYS [29274] O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 13/07/2009 - 22:40:27 ---A- . (...) -- C:\Windows\system32\NTDOS804.SYS [29146] O58 - SDL:[MD5.2E4112FB7D1B76E11ADFD7487B5D0E95] - 13/07/2009 - 22:40:11 ---A- . (...) -- C:\Windows\system32\NTIO.SYS [33952] O58 - SDL:[MD5.A98EBD4C2DF983665BF2D1AF49949974] - 13/07/2009 - 22:40:15 ---A- . (...) -- C:\Windows\system32\NTIO404.SYS [34672] O58 - SDL:[MD5.3F7E6406EDEF197C5CAAB2240EEF6F48] - 13/07/2009 - 22:40:17 ---A- . (...) -- C:\Windows\system32\NTIO411.SYS [35776] O58 - SDL:[MD5.3E64D681B776CC57BDC38A46D881F85B] - 13/07/2009 - 22:40:19 ---A- . (...) -- C:\Windows\system32\NTIO412.SYS [35536] O58 - SDL:[MD5.D86B6435729231C171432B4E77801BDB] - 13/07/2009 - 22:40:13 ---A- . (...) -- C:\Windows\system32\NTIO804.SYS [34672] ~ Scan Drivers in 00mn 47s
---\\ Liste des outils de nettoyage (O63) O63 - Logiciel: ZHPDiag 1.28 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 O63 - Logiciel: Ad-Remover - (.Pas de propriétaire.) [HKCU] -- Ad-Remover ~ Scan ADS in 00mn 00s
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 15:14 | |
| ---\\ Liste des services Legacy (O64) O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\adp94xx.sys - No object(No service) .(.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) - LEGACY_ADP94XX O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\adpahci.sys - No object(No service) .(.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) - LEGACY_ADPAHCI O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\adpu320.sys - No object(No service) .(.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) - LEGACY_ADPU320 O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\djsvs.sys - No object(No service) .(.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) - LEGACY_AIC78XX O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\aliide.sys - No object(No service) .(.Acer Laboratories Inc. - ALi mini IDE Driver.) - LEGACY_ALIIDE O64 - Services: CurCS - 11/03/2011 - C:\Windows\system32\drivers\amdsata.sys - No object(No service) .(.Advanced Micro Devices - AHCI 1.2 Device Driver.) - LEGACY_AMDSATA O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\amdsbs.sys - No object(No service) .(.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) - LEGACY_AMDSBS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\arc.sys - No object(No service) .(.Adaptec, Inc. - Adaptec RAID Storport Driver.) - LEGACY_ARC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\arcsas.sys - No object(No service) .(.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) - LEGACY_ARCSAS O64 - Services: CurCS - 04/07/2011 - C:\Windows\system32\drivers\aswMonFlt.sys - No object(No service) .(.AVAST Software - avast! File System Minifilter for Windows 2.) - LEGACY_ASWMONFLT O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\cmdide.sys - No object(No service) .(.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) - LEGACY_CMDIDE O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\elxstor.sys - No object(No service) .(.Emulex - Storport Miniport Driver for LightPulse HBA.) - LEGACY_ELXSTOR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\HpSAMD.sys - No object(No service) .(.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) - LEGACY_HPSAMD O64 - Services: CurCS - 11/03/2011 - C:\Windows\system32\drivers\iaStorV.sys - No object(No service) .(.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) - LEGACY_IASTORV O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\iirsp.sys - No object(No service) .(.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) - LEGACY_IIRSP O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\lsi_fc.sys - No object(No service) .(.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) - LEGACY_LSI_FC O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\lsi_sas.sys - No object(No service) .(.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) - LEGACY_LSI_SAS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\lsi_sas2.sys - No object(No service) .(.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) - LEGACY_LSI_SAS2 O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\lsi_scsi.sys - No object(No service) .(.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) - LEGACY_LSI_SCSI O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\megasas.sys - No object(No service) .(.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) - LEGACY_MEGASAS O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\MegaSR.sys - No object(No service) .(.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) - LEGACY_MEGASR O64 - Services: CurCS - 03/06/2009 - C:\Windows\system32\DRIVERS\mwlPSDFilter.sys - No object(No service) .(.Egis Technology Inc. - PSD Filter Driver.) - LEGACY_MWLPSDFILTER O64 - Services: CurCS - 03/06/2009 - C:\Windows\system32\DRIVERS\mwlPSDNServ.sys - No object(No service) .(.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) - LEGACY_MWLPSDNSERV O64 - Services: CurCS - 03/06/2009 - C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys - No object(No service) .(.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) - LEGACY_MWLPSDVDISK O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\nfrd960.sys - No object(No service) .(.IBM Corporation - IBM ServeRAID Controller Driver.) - LEGACY_NFRD960 O64 - Services: CurCS - 11/03/2011 - C:\Windows\system32\drivers\nvraid.sys - No object(No service) .(.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) - LEGACY_NVRAID O64 - Services: CurCS - 11/03/2011 - C:\Windows\system32\drivers\nvstor.sys - No object(No service) .(.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) - LEGACY_NVSTOR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\ql2300.sys - No object(No service) .(.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) - LEGACY_QL2300 O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\ql40xx.sys - No object(No service) .(.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) - LEGACY_QL40XX O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\SiSRaid2.sys - No object(No service) .(.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) - LEGACY_SISRAID2 O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\sisraid4.sys - No object(No service) .(.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) - LEGACY_SISRAID4 O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\stexstor.sys - No object(No service) .(.Promise Technology - Promise SuperTrak EX Series Driver for Win.) - LEGACY_STEXSTOR O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\viaide.sys - No object(No service) .(.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) - LEGACY_VIAIDE O64 - Services: CurCS - 14/07/2009 - C:\Windows\system32\drivers\vsmraid.sys - No object(No service) .(.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) - LEGACY_VSMRAID ~ Scan Services in 00mn 14s
---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (. - .) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKCR\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.com> [HKCR\..\open\Command] (.Microsoft Corporation - Windows Control Panel.) -- "%1" %* O67 - Shell Spawning: <.exe> [HKCR\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> [HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ~ Scan Keys in 00mn 00s
---\\ Start Menu Internet (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Scan Keys in 00mn 00s
---\\ Search Browser Infection (O69) O69 - SBI: SearchScopes [HKCU] ${searchCLSID} [DefaultScope] - (@ieframe.dll,-12512) - http://search.live.com O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://search.live.com ~ Scan Keys in 00mn 00s
---\\ Recherche particuliere à la racine de certains dossiers (O84) [MD5.4AE8A3249D951EB5F46799F852A5F66D] [SPRF][09/12/2010] (...) -- C:\Users\Gaby\AppData\Local\Temp\GLFA8B3.tmp.ConduitEngineSetup.exe [157536] [MD5.8781926C6F8D5AFEE5D662839D4C719D] [SPRF][17/05/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\iet9D78.tmp.exe [2487632] [MD5.F4048FD8A19A366A0BE35C6E6D6CAFD1] [SPRF][30/05/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\installhelper.dll [1399808] [MD5.19CEE58DC4BD63D4AB21E3EC055EDF71] [SPRF][13/08/2010] (.Microsoft Corporation - Barre d'outils Bing.) -- C:\Users\Gaby\AppData\Local\Temp\MSN25F9.exe [468232] [MD5.813EB60A3F2E3587DEAF57E8693D9B7C] [SPRF][30/05/2011] (.Ask - Wrapper Application.) -- C:\Users\Gaby\AppData\Local\Temp\setup.exe [3486088] [MD5.95FFF4764F7A9CBFDFB6246FCAF4CB1E] [SPRF][08/10/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\SetupDataMngr_Searchqu.exe [3725728] [MD5.44F6F957C3277833BEEDD639ACBE632C] [SPRF][20/05/2011] (.Adobe Systems Inc. - Adobe Shockwave Player.) -- C:\Users\Gaby\AppData\Local\Temp\Shockwave_Installer_FF.exe [148512] [MD5.72412B526BCC716382E62B7939DCFD8F] [SPRF][26/05/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\SRAssetsHelper.dll [1085952] [MD5.D9A0CE26ADA5BD15B1B03A752DDF14A6] [SPRF][09/12/2010] (.Conduit Ltd. - Conduit Toolbar.) -- C:\Users\Gaby\AppData\Local\Temp\tbuTor.dll [3911776] [MD5.C90B895088357BCB4669B47FB38BF8F8] [SPRF][08/10/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\thanks.bat [84] [MD5.00E220222110A2355391758C1041CDC7] [SPRF][08/10/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\utt29CD.tmp.bat [53] [MD5.719AF0A81B65A4AEB4BA7BD6644BB1A7] [SPRF][17/05/2011] (...) -- C:\Users\Gaby\AppData\Local\Temp\WLM2011Installer.exe [1289216] [MD5.64281AF23447705DAB84E1A198D920C7] [SPRF][17/05/2011] (.Microsoft Corporation - Windows Live Installer.) -- C:\Users\Gaby\AppData\Local\Temp\WLM_2011.exe [1289576] ~ Scan Files in 00mn 01s
---\\ Firewall Active Exception List (FirewallRules) (O87) O87 - FAEL: "{E75D8D9A-3B17-412E-9D76-DB76ADDF56C0}" |In - Public - P6 - TRUE | .(...) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (.not file.) O87 - FAEL: "{99FDBDD0-1696-410A-AE1E-5DBC0CEEC3A7}" |In - Public - P17 - TRUE | .(...) -- C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (.not file.) O87 - FAEL: "{20A5C867-274F-42F1-9D16-16A2D07B9D9D}" | In - None - P17 - TRUE | .(.Acer Incoporated - Acer Video Quality Enhancement.) -- C:\Program Files\Acer\Acer VCM\VC.exe O87 - FAEL: "{D6007FF0-E302-4277-94AD-6649D4AC5171}" | In - None - P17 - TRUE | .(.Acer Incorporated - Raw Socket Service.) -- C:\Program Files\Acer\Acer VCM\RS_Service.exe O87 - FAEL: "TCP Query User{0EE4C452-BE04-4B3C-A3B4-5323B669E28E}C:\program files\videolan\vlc\vlc.exe" | In - Private - P6 - TRUE | .(...) -- C:\program files\videolan\vlc\vlc.exe O87 - FAEL: "UDP Query User{A72631DB-FF0E-4902-8966-7C7679F7B348}C:\program files\videolan\vlc\vlc.exe" | In - Private - P17 - TRUE | .(...) -- C:\program files\videolan\vlc\vlc.exe O87 - FAEL: "{8476E289-E1A5-4C44-BE4C-523FB6D287D2}" |In - Private - P6 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\Datamngr\ToolBar\dtUser.exe (.not file.) O87 - FAEL: "{1463E4EC-210A-4CA6-BC7F-F80DC3A92508}" |In - Private - P17 - TRUE | .(...) -- C:\Program Files\Windows iLivid Toolbar\Datamngr\ToolBar\dtUser.exe (.not file.) ~ Scan Firewall in 00mn 04s
---\\ Scan Additionnel (O88) Database Version : 8703 - (05/10/2011) Clés trouvées (Keys found) : 7 Valeurs trouvées (Values found) : 1 Dossiers trouvés (Folders found) : 3 Fichiers trouvés (Files found) : 0
[HKLM\Software\Classes\SearchQUIEHelper.DNSGuard] =>Adware.Bandoo [HKLM\Software\Classes\SearchQUIEHelper.DNSGuard.1] =>Adware.Bandoo [HKCU\Software\DataMngr_Toolbar] =>Toolbar.Agent [HKCU\Software\ilivid] =>Adware.Bandoo [HKCU\Software\AppDataLow\Software\searchqutoolbar] =>Adware.Bandoo [HKCU\Software\AppDataLow\Software\uTorrentBar_FR] =>Toolbar.Conduit [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar] =>Adware.Bandoo [HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{99079A25-328F-4BD4-BE04-00955ACAA0A7} =>Adware.Bandoo C:\Users\Gaby\AppData\LocalLow\searchquband =>Adware.Bandoo C:\Users\Gaby\AppData\LocalLow\uTorrentBar_FR =>Toolbar.Conduit C:\Users\Gaby\AppData\Local\Temp\AskSearch =>Toolbar.AskBarDis ~ Scan Additionnel in 00mn 58s
---\\ Recherche détournement de DNS routeur (O89) Serveur : neufbox Address: 192.168.1.1 Nom : www.l.google.com Addresses: 209.85.148.104 209.85.148.103 209.85.148.105 209.85.148.99 209.85.148.106 209.85.148.147 Aliases: www.google.fr www.google.com ~ Scan DNS in 00mn 03s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 04/12/2010 56480 | (AtherosSvc) . (.Atheros Commnucations.) - C:\Program Files\Bluetooth Suite\adminservice.exe SR - | Auto 04/07/2011 42184 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SR - | Auto 17/09/2010 321104 | (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe SR - | Auto 04/12/2010 735776 | (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe SR - | Auto 17/09/2010 23584 | (GREGService) . (.Acer Incorporated.) - C:\Program Files\Acer\Registration\GREGsvc.exe SS - | Auto 05/07/2011 136176 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SS - | Demand 05/07/2011 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe SR - | Auto 17/09/2010 13336 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe SS - | Demand 17/09/2010 305520 | (MWLService) . (.Egis Technology Inc..) - C:\Program Files\EgisTec MyWinLocker\x86\MWLService.exe SR - | Auto 17/09/2010 260640 | (RS_Service) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer VCM\RS_Service.exe SR - | Auto 17/09/2010 243232 | (Updater Service) . (.Acer Group.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe SR - | Auto 14/07/2009 20992 | C:\Windows\system32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\system32\svchost.exe ~ Scan Services in 00mn 09s
---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net Run by Gaby at 09/10/2011 14:46:38
device: opened successfully user: MBR read successfully
Disk trace: called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll iaStor.sys ndis.sys athr.sys intelppm.sys C:\Windows\system32\drivers\iaStor.sys Intel Corporation Intel Rapid Storage Technology driver C:\Windows\system32\DRIVERS\athr.sys Atheros Communications, Inc. Driver for Atheros CB42/CB43/MB42/MB43 Network Adapter 1 ntkrnlpa!IofCallDriver[0x81C7F458] -> \Device\Harddisk0\DR0[0x85EFD5C0] 3 CLASSPNP[0x86B8D59E] -> ntkrnlpa!IofCallDriver[0x81C7F458] -> [0x8442E8E8] 5 ACPI[0x864A83B2] -> ntkrnlpa!IofCallDriver[0x81C7F458] -> \Device\Ide\IAAStorageDevice-0[0x83772028] kernel: MBR read successfully user & kernel MBR OK ~ Scan MBR in 00mn 11s
End of the scan (1595 lines in 04mn 37s)(0)
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 15:40 | |
| voila mon rapport et oui je suis bien née un 9 octobre merci beaucoup | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 19:03 | |
| Re
Désinstalle les programmes suivants si tu les trouves : SearchCore for Browsers Windows iLivid Toolbar
*****************************************************************************************************
Clique ici pour télécharger AdwCleaner sur ton bureau Lance AdwCleaner.exe Accepte l'avertissement qui suit, et clique sur Recherche Patiente le temps de la recherche, puis poste le rapport qui apparait à la fin. | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 20:21 | |
| # AdwCleaner v1.310 - Rapport créé le 09/10/2011 à 20:21:11 # Mis à jour le 07/10/11 à 19h par Xplode # Système d'exploitation : Windows 7 Starter (32 bits) # Nom d'utilisateur : Gaby - GABY-PC (Administrateur) # Exécuté depuis : C:\Users\Gaby\Downloads\adwcleaner.exe # Option [Recherche]
***** [Processus] *****
***** [Services] *****
***** [Fichiers / Dossiers] *****
Dossier Présent : C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\searchqutoolbar Fichier Présent : C:\Program Files\Mozilla Firefox\searchplugins\SearchResults.xml Fichier Présent : C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\searchplugins\SearchResults.xml
***** [Registre] *****
Clé Présente : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard Clé Présente : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1 Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Clé Présente : HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15} Clé Présente : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4f12-8568-69135F087DB0} Clé Présente : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4f12-8568-69135F087DB0} Valeur Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{99079a25-328f-4bd4-be04-00955acaa0a7}]
***** [Navigateurs] *****
-\\ Internet Explorer v8.0.7600.16385
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Mozilla Firefox v7.0.1 (fr)
Profil : x6j78r7d.default Fichier : C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\prefs.js
Présente : user_pref("CT2851639..clientLogIsEnabled", true); Présente : user_pref("CT2851639..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); Présente : user_pref("CT2851639..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); Présente : user_pref("CT2851639.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx"); Présente : user_pref("CT2851639.CTID", "CT2851639"); Présente : user_pref("CT2851639.CurrentServerDate", "18-5-2011"); Présente : user_pref("CT2851639.DialogsAlignMode", "LTR"); Présente : user_pref("CT2851639.DialogsGetterLastCheckTime", "Wed May 18 2011 12:38:03 GMT+0200"); Présente : user_pref("CT2851639.DownloadReferralCookieData", ""); Présente : user_pref("CT2851639.EMailNotifierPollDate", "Wed May 18 2011 12:48:06 GMT+0200"); Présente : user_pref("CT2851639.EnableClickToSearchBox", false); Présente : user_pref("CT2851639.EnableSearchHistory", false); Présente : user_pref("CT2851639.EnableSearchSuggest", false); Présente : user_pref("CT2851639.FeedLastCount2548968607390276962", 139); Présente : user_pref("CT2851639.FeedPollDate129351529712775081", "Wed May 18 2011 12:38:06 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775087", "Wed May 18 2011 12:38:06 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775093", "Wed May 18 2011 12:38:07 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775099", "Wed May 18 2011 12:38:07 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775105", "Wed May 18 2011 12:38:07 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775111", "Wed May 18 2011 12:38:07 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775117", "Wed May 18 2011 12:38:07 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775123", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775129", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775135", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.FeedPollDate129351529712775141", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.FeedTTL129351529712775081", 10); Présente : user_pref("CT2851639.FeedTTL129351529712775105", 15); Présente : user_pref("CT2851639.FeedTTL129351529712775117", 5); Présente : user_pref("CT2851639.FeedTTL129351529712775129", 5); Présente : user_pref("CT2851639.FirstServerDate", "18-5-2011"); Présente : user_pref("CT2851639.FirstTime", true); Présente : user_pref("CT2851639.FirstTimeFF3", true); Présente : user_pref("CT2851639.FixPageNotFoundErrors", false); Présente : user_pref("CT2851639.GroupingServerCheckInterval", 1440); Présente : user_pref("CT2851639.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/"); Présente : user_pref("CT2851639.HasUserGlobalKeys", true); Présente : user_pref("CT2851639.Initialize", true); Présente : user_pref("CT2851639.InitializeCommonPrefs", true); Présente : user_pref("CT2851639.InstallationAndCookieDataSentCount", 1); Présente : user_pref("CT2851639.InstallationType", "UnknownIntegration"); Présente : user_pref("CT2851639.InstalledDate", "Wed May 18 2011 12:38:02 GMT+0200"); Présente : user_pref("CT2851639.IsGrouping", false); Présente : user_pref("CT2851639.IsMulticommunity", false); Présente : user_pref("CT2851639.IsOpenThankYouPage", true); Présente : user_pref("CT2851639.IsOpenUninstallPage", false); Présente : user_pref("CT2851639.LanguagePackLastCheckTime", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.LanguagePackReloadIntervalMM", 1440); Présente : user_pref("CT2851639.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx"); Présente : user_pref("CT2851639.LastLogin_3.3.3.2", "Wed May 18 2011 12:38:05 GMT+0200"); Présente : user_pref("CT2851639.LatestVersion", "3.3.3.2"); Présente : user_pref("CT2851639.Locale", "fr"); Présente : user_pref("CT2851639.MCDetectTooltipHeight", "83"); Présente : user_pref("CT2851639.MCDetectTooltipShow", false); Présente : user_pref("CT2851639.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Présente : user_pref("CT2851639.MCDetectTooltipWidth", "295"); Présente : user_pref("CT2851639.SearchBackToDefaultEngine", false); Présente : user_pref("CT2851639.SearchFromAddressBarIsInit", true); Présente : user_pref("CT2851639.SearchInNewTabEnabled", true); Présente : user_pref("CT2851639.SearchInNewTabIntervalMM", 1440); Présente : user_pref("CT2851639.SearchInNewTabLastCheckTime", "Wed May 18 2011 12:38:06 GMT+0200"); Présente : user_pref("CT2851639.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID"); Présente : user_pref("CT2851639.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID"); Présente : user_pref("CT2851639.SearchInNewTabUserEnabled", false); Présente : user_pref("CT2851639.ServiceMapLastCheckTime", "Wed May 18 2011 12:37:59 GMT+0200"); Présente : user_pref("CT2851639.SettingsLastCheckTime", "Wed May 18 2011 12:38:00 GMT+0200"); Présente : user_pref("CT2851639.SettingsLastUpdate", "1304004054"); Présente : user_pref("CT2851639.ThirdPartyComponentsInterval", 504); Présente : user_pref("CT2851639.ThirdPartyComponentsLastCheck", "Wed May 18 2011 12:37:59 GMT+0200"); Présente : user_pref("CT2851639.ThirdPartyComponentsLastUpdate", "1255344667"); Présente : user_pref("CT2851639.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2851639"); Présente : user_pref("CT2851639.UserID", "UN57018307330427959"); Présente : user_pref("CT2851639.WeatherNetwork", ""); Présente : user_pref("CT2851639.WeatherPollDate", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.WeatherUnit", "C"); Présente : user_pref("CT2851639.alertChannelId", "1243674"); Présente : user_pref("CT2851639.backendstorage.enableinj", ""); Présente : user_pref("CT2851639.components.1000034", false); Présente : user_pref("CT2851639.components.1000234", false); Présente : user_pref("CT2851639.components.129351529700900053", false); Présente : user_pref("CT2851639.components.129351529701212556", false); Présente : user_pref("CT2851639.components.129351529703087570", false); Présente : user_pref("CT2851639.components.129351529703087571", false); Présente : user_pref("CT2851639.components.129422840102831305", false); Présente : user_pref("CT2851639.components.2548968607390276962", false); Présente : user_pref("CT2851639.generalConfigFromLogin", "{\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdownload.conduit.com/\"}"); Présente : user_pref("CT2851639.globalFirstTimeInfoLastCheckTime", "Wed May 18 2011 12:38:07 GMT+0200"); Présente : user_pref("CT2851639.isAppTrackingManagerOn", true); Présente : user_pref("CT2851639.myStuffEnabled", true); Présente : user_pref("CT2851639.myStuffPublihserMinWidth", 400); Présente : user_pref("CT2851639.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID"); Présente : user_pref("CT2851639.myStuffServiceIntervalMM", 1440); Présente : user_pref("CT2851639.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT"); Présente : user_pref("CT2851639.testingCtid", ""); Présente : user_pref("CT2851639.toolbarAppMetaDataLastCheckTime", "Wed May 18 2011 12:38:01 GMT+0200"); Présente : user_pref("CT2851639.toolbarContextMenuLastCheckTime", "Wed May 18 2011 12:38:08 GMT+0200"); Présente : user_pref("CT2851639.usageEnabled", false); Présente : user_pref("CT2851639.usagesFlag", 1);
-\\ Google Chrome v [Impossible d'obtenir la version]
Fichier : C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[R1].txt - [10197 octets] - [09/10/2011 20:21:11]
########## EOF - C:\AdwCleaner[R1].txt - [10326 octets] ##########
| |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Dim 9 Oct 2011 - 22:22 | |
| Re On va supprimer ce qu'AdwCleaner a détecté. Lance AdwCleaner.exeAccepte l'avertissement qui suit, et clique sur SuppressionPatiente le temps de la suppression, puis poste le rapport qui apparait à la fin. ================================================================== Lance ZHPDiag pour générer un nouveau rapport. Ça me permettra de voir si il reste des choses. J'aimerais que tu héberges ce nouveau rapport sur le site http://www.cijoint.fr ================================================================== Bonne soirée | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Lun 10 Oct 2011 - 16:38 | |
| # AdwCleaner v1.310 - Rapport créé le 10/10/2011 à 16:37:02 # Mis à jour le 07/10/11 à 19h par Xplode # Système d'exploitation : Windows 7 Starter (32 bits) # Nom d'utilisateur : Gaby - GABY-PC (Administrateur) # Exécuté depuis : C:\Users\Gaby\Downloads\adwcleaner.exe # Option [Suppression]
***** [KillNav] *****
# firefox.exe [PID:2996] -> Tué
***** [Processus] *****
***** [Services] *****
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\searchqutoolbar Fichier Supprimé : C:\Program Files\Mozilla Firefox\searchplugins\SearchResults.xml Fichier Supprimé : C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\searchplugins\SearchResults.xml
***** [Registre] *****
Clé Supprimée : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard Clé Supprimée : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1 Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87} Clé Supprimée : HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4f12-8568-69135F087DB0} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9} Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{5B4144E1-B61D-495A-9A50-CD1A95D86D15} Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D717F81-9148-4f12-8568-69135F087DB0} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4f12-8568-69135F087DB0} Valeur Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{99079a25-328f-4bd4-be04-00955acaa0a7}]
***** [Navigateurs] *****
-\\ Internet Explorer v8.0.7600.16385
[OK] Le registre ne contient aucune entrée illégitime.
-\\ Mozilla Firefox v7.0.1 (fr)
Profil : x6j78r7d.default Fichier : C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\prefs.js
Supprimée : user_pref("CT2851639..clientLogIsEnabled", true); Supprimée : user_pref("CT2851639..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent"); Supprimée : user_pref("CT2851639..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation"); Supprimée : user_pref("CT2851639.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx"); Supprimée : user_pref("CT2851639.CTID", "CT2851639"); Supprimée : user_pref("CT2851639.CurrentServerDate", "18-5-2011"); Supprimée : user_pref("CT2851639.DialogsAlignMode", "LTR"); Supprimée : user_pref("CT2851639.DialogsGetterLastCheckTime", "Wed May 18 2011 12:38:03 GMT+0200"); Supprimée : user_pref("CT2851639.DownloadReferralCookieData", ""); Supprimée : user_pref("CT2851639.EMailNotifierPollDate", "Wed May 18 2011 12:48:06 GMT+0200"); Supprimée : user_pref("CT2851639.EnableClickToSearchBox", false); Supprimée : user_pref("CT2851639.EnableSearchHistory", false); Supprimée : user_pref("CT2851639.EnableSearchSuggest", false); Supprimée : user_pref("CT2851639.FeedLastCount2548968607390276962", 139); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775081", "Wed May 18 2011 12:38:06 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775087", "Wed May 18 2011 12:38:06 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775093", "Wed May 18 2011 12:38:07 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775099", "Wed May 18 2011 12:38:07 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775105", "Wed May 18 2011 12:38:07 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775111", "Wed May 18 2011 12:38:07 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775117", "Wed May 18 2011 12:38:07 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775123", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775129", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775135", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.FeedPollDate129351529712775141", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.FeedTTL129351529712775081", 10); Supprimée : user_pref("CT2851639.FeedTTL129351529712775105", 15); Supprimée : user_pref("CT2851639.FeedTTL129351529712775117", 5); Supprimée : user_pref("CT2851639.FeedTTL129351529712775129", 5); Supprimée : user_pref("CT2851639.FirstServerDate", "18-5-2011"); Supprimée : user_pref("CT2851639.FirstTime", true); Supprimée : user_pref("CT2851639.FirstTimeFF3", true); Supprimée : user_pref("CT2851639.FixPageNotFoundErrors", false); Supprimée : user_pref("CT2851639.GroupingServerCheckInterval", 1440); Supprimée : user_pref("CT2851639.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/"); Supprimée : user_pref("CT2851639.HasUserGlobalKeys", true); Supprimée : user_pref("CT2851639.Initialize", true); Supprimée : user_pref("CT2851639.InitializeCommonPrefs", true); Supprimée : user_pref("CT2851639.InstallationAndCookieDataSentCount", 1); Supprimée : user_pref("CT2851639.InstallationType", "UnknownIntegration"); Supprimée : user_pref("CT2851639.InstalledDate", "Wed May 18 2011 12:38:02 GMT+0200"); Supprimée : user_pref("CT2851639.IsGrouping", false); Supprimée : user_pref("CT2851639.IsMulticommunity", false); Supprimée : user_pref("CT2851639.IsOpenThankYouPage", true); Supprimée : user_pref("CT2851639.IsOpenUninstallPage", false); Supprimée : user_pref("CT2851639.LanguagePackLastCheckTime", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.LanguagePackReloadIntervalMM", 1440); Supprimée : user_pref("CT2851639.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx"); Supprimée : user_pref("CT2851639.LastLogin_3.3.3.2", "Wed May 18 2011 12:38:05 GMT+0200"); Supprimée : user_pref("CT2851639.LatestVersion", "3.3.3.2"); Supprimée : user_pref("CT2851639.Locale", "fr"); Supprimée : user_pref("CT2851639.MCDetectTooltipHeight", "83"); Supprimée : user_pref("CT2851639.MCDetectTooltipShow", false); Supprimée : user_pref("CT2851639.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Supprimée : user_pref("CT2851639.MCDetectTooltipWidth", "295"); Supprimée : user_pref("CT2851639.SearchBackToDefaultEngine", false); Supprimée : user_pref("CT2851639.SearchFromAddressBarIsInit", true); Supprimée : user_pref("CT2851639.SearchInNewTabEnabled", true); Supprimée : user_pref("CT2851639.SearchInNewTabIntervalMM", 1440); Supprimée : user_pref("CT2851639.SearchInNewTabLastCheckTime", "Wed May 18 2011 12:38:06 GMT+0200"); Supprimée : user_pref("CT2851639.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID"); Supprimée : user_pref("CT2851639.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageService.asmx/UsersRequests?ctid=EB_TOOLBAR_ID"); Supprimée : user_pref("CT2851639.SearchInNewTabUserEnabled", false); Supprimée : user_pref("CT2851639.ServiceMapLastCheckTime", "Wed May 18 2011 12:37:59 GMT+0200"); Supprimée : user_pref("CT2851639.SettingsLastCheckTime", "Wed May 18 2011 12:38:00 GMT+0200"); Supprimée : user_pref("CT2851639.SettingsLastUpdate", "1304004054"); Supprimée : user_pref("CT2851639.ThirdPartyComponentsInterval", 504); Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastCheck", "Wed May 18 2011 12:37:59 GMT+0200"); Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastUpdate", "1255344667"); Supprimée : user_pref("CT2851639.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2851639"); Supprimée : user_pref("CT2851639.UserID", "UN57018307330427959"); Supprimée : user_pref("CT2851639.WeatherNetwork", ""); Supprimée : user_pref("CT2851639.WeatherPollDate", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.WeatherUnit", "C"); Supprimée : user_pref("CT2851639.alertChannelId", "1243674"); Supprimée : user_pref("CT2851639.backendstorage.enableinj", ""); Supprimée : user_pref("CT2851639.components.1000034", false); Supprimée : user_pref("CT2851639.components.1000234", false); Supprimée : user_pref("CT2851639.components.129351529700900053", false); Supprimée : user_pref("CT2851639.components.129351529701212556", false); Supprimée : user_pref("CT2851639.components.129351529703087570", false); Supprimée : user_pref("CT2851639.components.129351529703087571", false); Supprimée : user_pref("CT2851639.components.129422840102831305", false); Supprimée : user_pref("CT2851639.components.2548968607390276962", false); Supprimée : user_pref("CT2851639.generalConfigFromLogin", "{\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdownload.conduit.com/\"}"); Supprimée : user_pref("CT2851639.globalFirstTimeInfoLastCheckTime", "Wed May 18 2011 12:38:07 GMT+0200"); Supprimée : user_pref("CT2851639.isAppTrackingManagerOn", true); Supprimée : user_pref("CT2851639.myStuffEnabled", true); Supprimée : user_pref("CT2851639.myStuffPublihserMinWidth", 400); Supprimée : user_pref("CT2851639.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID"); Supprimée : user_pref("CT2851639.myStuffServiceIntervalMM", 1440); Supprimée : user_pref("CT2851639.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT"); Supprimée : user_pref("CT2851639.testingCtid", ""); Supprimée : user_pref("CT2851639.toolbarAppMetaDataLastCheckTime", "Wed May 18 2011 12:38:01 GMT+0200"); Supprimée : user_pref("CT2851639.toolbarContextMenuLastCheckTime", "Wed May 18 2011 12:38:08 GMT+0200"); Supprimée : user_pref("CT2851639.usageEnabled", false); Supprimée : user_pref("CT2851639.usagesFlag", 1);
-\\ Google Chrome v [Impossible d'obtenir la version]
Fichier : C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] Le fichier ne contient aucune entrée illégitime.
*************************
AdwCleaner[R1].txt - [10328 octets] - [09/10/2011 20:21:11] AdwCleaner[S1].txt - [10431 octets] - [10/10/2011 16:37:02]
*************************
Dossier Temporaire : 139 dossier(s) et 167 fichier(s) supprimé(s)
########## EOF - C:\AdwCleaner[S1].txt - [10658 octets] ##########
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Lun 10 Oct 2011 - 16:48 | |
| bonjour voila mon rapport : http://www.cijoint.fr/cjlink.php?file=cj201110/cij4zqTHz5.txt | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Lun 10 Oct 2011 - 21:25 | |
| Bonsoir Vandenkokof Il semble que tu aies désactivé le contrôle des comptes utilisateurs. Je t'encourage vivement à le réactiver pour accroitre la sécurité de ton système. http://www.bibou0007.com/t132-tutorial-desactiver-l-uac-sur-vista ================================================================================ Je te demandais de désinstaller certains programmes : SearchCore for Browsers Windows iLivid ToolbarApparemment, ils sont toujours là. C'est un oubli ou tu ne les as pas trouvés ? Si c'est un oubli, désinstalle les s'il te plait ================================================================================ Voici un script qui va cibler certains éléments. Copie le contenu du cadre ci dessous : - Citation :
G1 - GCS: Preference [User Data\Default] http://www.searchqu.com G0 - GCSP: Preference [User Data\Default][HomePage] http://www.searchqu.com M2 - MFEP: prefs.js [Gaby - x6j78r7d.default\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}] [] uTorrentBar_FR Community Toolbar v3.7.0.6 (.Conduit Ltd..) R3 - URLSearchHook: (no name) - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (...) (No version) -- (.not file.) O20 - AppInit_DLLs: . (.Bandoo Media, inc - Data Manager.) - C:\PROGRA~1\SEARCH~1\SEARCH~1\datamngr.dll [HKCU\Software\AppDataLow\Software\searchqutoolbar] [HKCU\Software\AppDataLow\Software\uTorrentBar_FR] [HKCU\Software\DataMngr_Toolbar] [HKCU\Software\SearchCore for Browsers] [HKCU\Software\ilivid] O43 - CFD: 08/10/2011 - 18:59:38 - [6980477] ----D- C:\Program Files\SearchCore for Browsers O43 - CFD: 08/10/2011 - 19:01:10 - [14821] ----D- C:\Users\Gaby\AppData\Local\Ilivid Player [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar] =>Adware.Bandoo C:\Users\Gaby\AppData\LocalLow\searchquband =>Adware.Bandoo C:\Users\Gaby\AppData\LocalLow\uTorrentBar_FR =>Toolbar.Conduit EmptyTemp EmptyFlash FirewallRAZ Lance ZHPFix qui est sur ton bureau (Utilisateur de Vista/Seven, effectue un clic droit sur ZHPFix et sélectionne "Exécuter en tant qu'administrateur") - Clique sur l’icône représentant la lettre H (« coller les lignes Helper »). Le script doit automatiquement apparaitre dans ZHPFix, sinon, colle-le
- Clique sur le bouton GO pour lancer le nettoyage
- Copie/colle la totalité du rapport dans ta prochaine réponse
Pendant l'exécution du script, ton bureau va disparaitre et pourrait ne pas réapparaitre. Si tel est le cas, il suffit de relancer explorer de la façon suivante : - Appuie simultanément sur les touches ctrl+alt+suppr pour ouvrir le gestionnaire des tâches.
- Dans le gestionnaire, clique sur "fichier" puis sur "nouvelle tâche(Exécuter...)"
- Dans la petite fenêtre qui s'ouvre, tape explorer.exe et valide.
Le bureau devrait réapparaitre.
================================================================================ Clique ici pour télécharger MalwareByte's Anti-Malware sur ton bureau. - Installe le programme
- Lance-le et mets à jour la base de définition en allant dans l'onglet "mise à jour" puis "Recherche de mise à jour".
- Choisis "Exécuter un examen rapide" puis Rechercher
- Laisse l'analyse se faire (cela peut durer longtemps).
Une fois le scan terminé, clique sur "Afficher les résultats", vérifie que les éléments trouvés soient cochés puis sur Supprimer la sélection" en bas. Un redémarrage peut être nécessaire.Un rapport va s'afficher, enregistre-le sur ton bureau. Sinon, après le démarrage, il se trouvera dans l'onglet Rapports/logs de Malwarebyte[/list] Poste le rapport svp Une aide à l'utilisation ici================================================================================ Pour faire le point, qu'est ce que ça donne ? As tu d'autres problèmes ? Bonne soirée | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 12:42 | |
| concernant : SearchCore for Browsers Windows iLivid Toolbar ce n'est pas un oubli je ne les trouves pas. | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 18:04 | |
| bonsoir c bon je les ai trouver et supprimer par contre la page searchqu.com/406 ne s'affiche plus est-ce que je suis obligée de faire les dernières choses que vous m'avez demandé ???
merci | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 19:16 | |
| Re - vandenkokof a écrit:
- est-ce que je suis obligée de faire les dernières choses que vous m'avez demandé ???
Obligé ? Non rien n'est obligatoire, mais ce serait plus "propre" | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 20:16 | |
| voila le rapport : Rapport de ZHPFix 1.12.3363 par Nicolas Coolman, Update du 05/10/2011 Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-11-10-2011-20-15-33.txt Run by Gaby at 11/10/2011 20:15:33 Windows 7 Starter Edition, 32-bit (Build 7600) Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html
========== Clé(s) du Registre ========== SUPPRIME Key: HKCU\Software\AppDataLow\Software\searchqutoolbar SUPPRIME Key: HKCU\Software\AppDataLow\Software\uTorrentBar_FR SUPPRIME Key: HKCU\Software\DataMngr_Toolbar SUPPRIME Key: HKCU\Software\SearchCore for Browsers SUPPRIME Key: HKCU\Software\ilivid SUPPRIME Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar
========== Valeur(s) du Registre ========== SUPPRIME URLSearchHook: {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} ABSENT Valeur Standard Profile: FirewallRaz : ABSENT Valeur Domain Profile: FirewallRaz : SUPPRIME FirewallRaz (Public) : {E75D8D9A-3B17-412E-9D76-DB76ADDF56C0} SUPPRIME FirewallRaz (Public) : {99FDBDD0-1696-410A-AE1E-5DBC0CEEC3A7} SUPPRIME FirewallRaz (None) : {E7422088-D831-4052-82FE-B95E49DF1B5D} SUPPRIME FirewallRaz (Private) : {8476E289-E1A5-4C44-BE4C-523FB6D287D2} SUPPRIME FirewallRaz (Private) : {1463E4EC-210A-4CA6-BC7F-F80DC3A92508}
========== Elément(s) de donnée du Registre ========== SUPPRIME AppInit: ta Manager.) - C:\PROGRA~1\SEARCH~1\SEARCH~1\datamngr.dll
========== Préférences navigateur ========== PRESENT Chrome File: C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com PRESENT Chrome File: C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences ABSENT Chrome Site: http://www.searchqu.com
========== Dossier(s) ========== SUPPRIME Reboot Folder**: C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\extensions\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} ABSENT C:\Program Files\SearchCore for Browsers SUPPRIME Folder: C:\Users\Gaby\AppData\Local\Ilivid Player SUPPRIME Folder: c:\users\gaby\appdata\locallow\searchquband SUPPRIME Folder: c:\users\gaby\appdata\locallow\utorrentbar_fr SUPPRIME Temporaires Windows: : 4 SUPPRIME Flash Cookies: 203
========== Fichier(s) ========== ABSENT File: c:\progra~1\search~1\search~1\datamngr.dll SUPPRIME Temporaires Windows: : 7 SUPPRIME Flash Cookies: 139
========== Récapitulatif ========== 6 : Clé(s) du Registre 8 : Valeur(s) du Registre 1 : Elément(s) de donnée du Registre 7 : Dossier(s) 3 : Fichier(s) 8 : Préférences navigateur
End of clean in 00mn 21s
========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 11/10/2011 20:15:33 [2786]
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 20:30 | |
| vola le deuxième rapport : Malwarebytes' Anti-Malware 1.51.2.1300 www.malwarebytes.org
Version de la base de données: 7924
Windows 6.1.7600 Internet Explorer 8.0.7600.16385
11/10/2011 20:29:15 mbam-log-2011-10-11 (20-29-15).txt
Type d'examen: Examen rapide Elément(s) analysé(s): 159773 Temps écoulé: 8 minute(s), 12 seconde(s)
Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0
Processus mémoire infecté(s): (Aucun élément nuisible détecté)
Module(s) mémoire infecté(s): (Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté)
Dossier(s) infecté(s): (Aucun élément nuisible détecté)
Fichier(s) infecté(s): (Aucun élément nuisible détecté) | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 20:33 | |
| Ok. D'après le rapport ZHPFix, il en restait quand même des traces même après désinstallation. Je vais te demander de générer un (dernier) nouveau rapport ZHPDiag pour m'assurer que je n'ai rien manqué. Héberge le rapport sur cijoint.fr puis communique moi le lien s'il te plait | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Mar 11 Oct 2011 - 20:47 | |
| voila le lien : http://www.cijoint.fr/cjlink.php?file=cj201110/cijQUuewCh.txt | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Ven 14 Oct 2011 - 14:52 | |
| Bonjour Vandenkokof Désolé pour le délai, je n'ai pas eu le temps de répondre avant. Apparemment, tout n'est pas parti. En fait, presque rien n'a été supprimé. Si Avast! réagit à la suite et te demande de lancer ZHPFix dans la sandbox, assure toi que ZHPFix soit lancé normalement. Voici un script qui va cibler certains éléments. Copie le contenu du cadre ci dessous : - Citation :
G1 - GCS: Preference [User Data\Default] http://www.searchqu.com G0 - GCSP: Preference [User Data\Default][HomePage] http://www.searchqu.com M2 - MFEP: prefs.js [Gaby - x6j78r7d.default\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}] [] uTorrentBar_FR Community Toolbar v3.7.0.6 (.Conduit Ltd..) O20 - AppInit_DLLs: . (...) - C:\PROGRA~1\SEARCH~1\SEARCH~1\datamngr.dll (.not file.) O42 - Logiciel: SearchCore for Browsers - (.SearchCore.) [HKLM] -- SearchCore for Browsers O42 - Logiciel: Windows iLivid Toolbar - (.Bandoo Media, Inc.) [HKLM] -- Searchqu 406 MediaBar [HKCU\Software\AppDataLow\Software\searchqutoolbar] [HKCU\Software\AppDataLow\Software\uTorrentBar_FR] [HKCU\Software\DataMngr_Toolbar] [HKCU\Software\SearchCore for Browsers] [HKCU\Software\ilivid] O43 - CFD: 08/10/2011 - 19:01:10 - [14821] ----D- C:\Users\Gaby\AppData\Local\Ilivid Player [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar] =>Adware.Bandoo C:\Users\Gaby\AppData\LocalLow\searchquband =>Adware.Bandoo C:\Users\Gaby\AppData\LocalLow\uTorrentBar_FR =>Toolbar.Conduit EmptyTemp EmptyFlash FirewallRAZ Lance ZHPFix qui est sur ton bureau (Utilisateur de Vista/Seven, effectue un clic droit sur ZHPFix et sélectionne "Exécuter en tant qu'administrateur") - Clique sur l’icône représentant la lettre H (« coller les lignes Helper »). Le script doit automatiquement apparaitre dans ZHPFix, sinon, colle-le
- Clique sur le bouton GO pour lancer le nettoyage
- Copie/colle la totalité du rapport dans ta prochaine réponse
Pendant l'exécution du script, ton bureau va disparaitre et pourrait ne pas réapparaitre. Si tel est le cas, il suffit de relancer explorer de la façon suivante : - Appuie simultanément sur les touches ctrl+alt+suppr pour ouvrir le gestionnaire des tâches.
- Dans le gestionnaire, clique sur "fichier" puis sur "nouvelle tâche(Exécuter...)"
- Dans la petite fenêtre qui s'ouvre, tape explorer.exe et valide.
Le bureau devrait réapparaitre.
======================================================================= Redémarre normalement, puis relance ZHPDiag pour générer un nouveau rapport. Héberge le sur cijoint.fr s'il te plait. ======================================================================= Bon après midi | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Ven 14 Oct 2011 - 18:33 | |
| Rapport de ZHPFix 1.12.3363 par Nicolas Coolman, Update du 05/10/2011 Fichier d'export Registre : C:\ZHP\ZHPExportRegistry-14-10-2011-18-30-34.txt Run by Gaby at 14/10/2011 18:30:33 Windows 7 Starter Edition, 32-bit (Build 7600) Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html
========== Logiciel(s) ========== ABSENT Uninstall Process: c:\program files\searchcore for browsers\uninstall.exe ABSENT Uninstall Process: c:\program files\windows ilivid toolbar\datamngr\toolbar\uninstalltb.exe
========== Clé(s) du Registre ========== SUPPRIME [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchCore for Browsers] SUPPRIME [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar] SUPPRIME Key: HKCU\Software\AppDataLow\Software\searchqutoolbar SUPPRIME Key: HKCU\Software\AppDataLow\Software\uTorrentBar_FR SUPPRIME Key: HKCU\Software\DataMngr_Toolbar SUPPRIME Key: HKCU\Software\SearchCore for Browsers SUPPRIME Key: HKCU\Software\ilivid ABSENT Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu 406 MediaBar
========== Valeur(s) du Registre ========== ABSENT Valeur Standard Profile: FirewallRaz : ABSENT Valeur Domain Profile: FirewallRaz : SUPPRIME FirewallRaz (Public) : {E75D8D9A-3B17-412E-9D76-DB76ADDF56C0} SUPPRIME FirewallRaz (Public) : {99FDBDD0-1696-410A-AE1E-5DBC0CEEC3A7} SUPPRIME FirewallRaz (None) : {E7422088-D831-4052-82FE-B95E49DF1B5D} SUPPRIME FirewallRaz (Private) : {8476E289-E1A5-4C44-BE4C-523FB6D287D2} SUPPRIME FirewallRaz (Private) : {1463E4EC-210A-4CA6-BC7F-F80DC3A92508}
========== Elément(s) de donnée du Registre ========== SUPPRIME AppInit: \PROGRA~1\SEARCH~1\SEARCH~1\datamngr.dll
========== Préférences navigateur ========== PRESENT Chrome File: C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com SUPPRIME Chrome Site: http://www.searchqu.com PRESENT Chrome File: C:\Users\Gaby\AppData\Local\Google\Chrome\User Data\Default\Preferences ABSENT Chrome Site: http://www.searchqu.com
========== Dossier(s) ========== SUPPRIME Folder: C:\Users\Gaby\AppData\Roaming\Mozilla\Firefox\Profiles\x6j78r7d.default\extensions\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} SUPPRIME Folder: C:\Users\Gaby\AppData\Local\Ilivid Player SUPPRIME Folder: c:\users\gaby\appdata\locallow\searchquband SUPPRIME Folder: c:\users\gaby\appdata\locallow\utorrentbar_fr SUPPRIME Temporaires Windows: : 5 SUPPRIME Flash Cookies: 211
========== Fichier(s) ========== ABSENT File: \progra~1\search~1\search~1\datamngr.dll SUPPRIME Temporaires Windows: : 10 SUPPRIME Flash Cookies: 148
========== Récapitulatif ========== 8 : Clé(s) du Registre 7 : Valeur(s) du Registre 1 : Elément(s) de donnée du Registre 6 : Dossier(s) 3 : Fichier(s) 2 : Logiciel(s) 8 : Préférences navigateur
End of clean in 01mn 24s
========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 14/10/2011 18:30:34 [3064]
| |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Ven 14 Oct 2011 - 18:54 | |
| bonsoir : voila le lien
http://www.cijoint.fr/cjlink.php?file=cj201110/cij7VESA3C.txt | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Sam 15 Oct 2011 - 10:44 | |
| Salut Ok, alors on retire ce que je t'ai demandé d'utiliser : Relance Ad-remover et sélectionne " Désinstaller". Relance AdwCleaner et sélectionne " Désinstallation". ================================================================================ Clique ici pour télécharger Delfix sur ton bureau. - Lance le et clique sur "Suppression".
Quitte Delfix, puis relance le pour cliquer sur "Désinstallation".
Supprime les éventuels rapports et logiciels qui n'auraient pas été supprimés par DelFix. Je te conseille de conserver Malwarebytes et de l'utiliser régulièrement : Tutoriel Malwarebytes antimalwareTutoriel mettre à jour manuellement Malwarebytes' Anti-malware================================================================================ - Clique ici pour télécharger OTL (de Old Timer) sur ton bureau
- Double clique sur OTL.exe pour le lancer.
- Dans le cadre Personnalisation qui est en bas, colle le contenu du cadre ci dessous :
- Citation :
:reg [-HKEY_LOCAL_MACHINE\Software\SearchCore for Browsers]
:Commands [CLEARALLRESTOREPOINTS] Puis clique sur le bouton Correction en haut.
- Laisse OTL tourner. Un nouveau rapport va s'ouvrir, ferme le, je n'en ai pas besoin.
- Clique sur "Purge Outils", et laisse le pc redémarrer.
================================================================================ Certains de tes logiciels ne sont pas à jour, je t'invite à corriger cela : Acrobat Reader : http://get.adobe.com/fr/reader/ Internet Explorer : http://windows.microsoft.com/fr-FR/internet-explorer/products/ie/home ================================================================================ Voilà, c'est bon pour moi. Ton problème était le suivant : http://www.malekal.com/2011/08/11/searchqu-bandoo-pup-hijacker-page-de-demarragerecherche/ Fais attention à ce que tu télécharges Télécharge toujours sur le site de l'éditeur ou sur de grands sites tels que clubic, 01net, etc. Si tu as des questions, n'hésite pas. Bonne journée | |
| | | vandenkokof Bibou
Nombre de messages : 17 Age : 27 Localisation : france Date d'inscription : 09/10/2011
| Sujet: Re: [Résolu] comment enlever ilivid Dim 16 Oct 2011 - 11:41 | |
| bonjour,
je vous remercie beaucoup de m'avoir aidé a l'enlever bonne journée a vous
merci | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Dim 16 Oct 2011 - 12:54 | |
| Bonjour Vandenkokof Le plaisir a été pour moi. Bonne journée et bon surf | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] comment enlever ilivid Dim 16 Oct 2011 - 12:55 | |
| Le sujet semble résolu, je le verrouille. Si pour une raison ou une autre, vous avez besoin de le réouvrir, faites en la demande par Messagerie Privée en précisant la raison et le lien vers ce sujet. Ceci ne s'applique qu'à Vandenkokof. Pour les autres, créez votre propre sujet svp. | |
| | | Contenu sponsorisé
| Sujet: Re: [Résolu] comment enlever ilivid | |
| |
| | | | [Résolu] comment enlever ilivid | |
|
Sujets similaires | |
|
| Permission de ce forum: | Vous ne pouvez pas répondre aux sujets dans ce forum
| |
| |
| |
|