J'ai dû me prendre les pieds dans le tapis, comme d'hab .... désolé.
J'essaie comme ça quitte à me faire disputer :
Rapport ZHPDiag :
Rapport de ZHPDiag v1.27.101 par Nicolas Coolman, Update du 05/11/2010
Run by JEAN MARIE at 08/11/2010 23:09:01
Web site :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Contact : nicolascoolman@yahoo.fr
---\\ Web Browser
MSIE: Internet Explorer v8.0.6001.18702
---\\ System Information
Windows XP Home Edition Service Pack 3 (Build 2600)
Processor: x86 Family 6 Model 8 Stepping 1, AuthenticAMD
Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 1279 MB (43% free)
System drive C: has 5 GB (25%) free of 20 GB
---\\ Logged in mode
Computer Name: JEAN-MARIE
User Name: JEAN MARIE
All Users Names: SUPPORT_388945a0, JEAN MARIE, HelpAssistant, ASPNET, Administrateur,
Unselected Option: O1,O45,O61,O62,O65,O82
Logged in as Administrator
---\\ DOS/Devices
C:\ Hard drive, Flash drive, Thumb drive (Free 5 Go of 20 Go)
D:\ CD-ROM drive (Not Inserted)
E:\ CD-ROM drive (Not Inserted)
F:\ Hard drive, Flash drive, Thumb drive (Free 36 Go of 38 Go)
I:\ Floppy drive, Flash card reader, USB Key (Not Inserted)
---\\ Security Center & Tools Informations
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSearch: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
---\\ Recherche particulière de fichiers génériques
[MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) (.14/04/2008 03:34:03.) -- C:\Windows\Explorer.exe [1037824]
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows NT.) (.14/04/2008 03:34:28.) -- C:\Windows\System32\Winlogon.exe [512000]
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) (.13/04/2008 19:40:30.) -- C:\Windows\System32\drivers\atapi.sys [96512]
---\\ Processus lancés
[MD5.2A27A3A8634FB9E29F539D6D3ED3646A] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- C:\WINDOWS\system32\Ati2evxx.exe [602112]
[MD5.855E795383BED05C481575BD0C1C0D37] - (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files\F-Secure\Common\FSM32.EXE [122929]
[MD5.76A3A30B58405C2C6D833895253A51A9] - (.Apple Computer, Inc. - Pas de description.) -- C:\Program Files\QuickTime\qttask.exe [98304]
[MD5.E616A6A6E91B0A86F2F6217CDE835FFE] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856]
[MD5.9BDBDA21D3BA8E374FD06A405BE10215] - (.Macrovision - Macrovision RTS Service.) -- C:\WINDOWS\System32\drivers\CDAC11BA.EXE [54784]
[MD5.1EE42860D3922B2A634191A4B9BFDD9E] - (.F-Secure Corp. - fsgk32st.) -- C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe [45056]
[MD5.C6E593B4884721673280B96FF8519722] - (.F-Secure Corp. - fsbwsys.) -- C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe [270428]
[MD5.552558067857E5EDEE8D52E369B962BF] - (.F-Secure Corp. - Gatekeeper Handler II.) -- C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE [289792]
[MD5.A796880CED6D0849E0D8DFC35821D931] - (.F-Secure Corporation - F-Secure Management Agent.) -- C:\Program Files\F-Secure\Common\FSMA32.EXE [61490]
[MD5.4819DE1A6281E7228A19105A680C5AEE] - (.F-Secure Corp. - fssm32.) -- C:\Program Files\F-Secure\Anti-Virus\fssm32.exe [247296]
[MD5.7DC7D1F5E4F27B13FA3954B848860D36] - (.F-Secure Corporation - F-Secure Message Broker.) -- C:\Program Files\F-Secure\Common\FSMB32.EXE [180274]
[MD5.32192B4EBE8720ED8D49A455C962CB91] - (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [152984]
[MD5.872F3321742B9F679255BB9A031C4121] - (.F-Secure Corporation - F-Secure Configuration Handler.) -- C:\Program Files\F-Secure\Common\FCH32.EXE [65585]
[MD5.F5937DD8CDFA5160D84B22C504B32806] - (.F-Secure Corporation - F-Secure Alert and Management Extension Han.) -- C:\Program Files\F-Secure\Common\FAMEH32.EXE [270387]
[MD5.9228561F71BF2B53411E886915D302E2] - (.F-Secure Corporation - F-Secure Quarantine Handler.) -- C:\Program Files\F-Secure\Anti-Virus\fsqh.exe [32826]
[MD5.E32C981D8CB776B68CEEAC49DC7D8273] - (.F-Secure Corporation - F-Secure System Control.) -- C:\Program Files\F-Secure\Anti-Virus\fsrw.exe [159804]
[MD5.8418AF831240CEFC33EADF9B2C4E9D60] - (.F-Secure Corporation - F-Secure Network Request Broker.) -- C:\Program Files\F-Secure\Common\FNRB32.EXE [110642]
[MD5.5CC16616F6EF3378957221BA2507469D] - (.F-Secure Corporation - F-Secure Anti-Virus Internet Shield daemon.) -- C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe [208959]
[MD5.ECC4688AAF154C8ACA6C90B700CDEF46] - (.F-Secure Corporation - F-Secure Installation Launcher.) -- C:\Program Files\F-Secure\Common\FIH32.EXE [57393]
[MD5.F9121960D19C2ED28588222000F98AED] - (.F-Secure Corporation - FSAV Handler.) -- C:\Program Files\F-Secure\Anti-Virus\fsav32.exe [176128]
[MD5.CA7B45FF01073256DB9E172DEBC16D29] - (.F-Secure Corporation - F-Secure Browser Control.) -- C:\PROGRA~1\F-Secure\ANTI-S~1\fsaw.exe [86064]
[MD5.B45E0348FC9B89F701D5166A09F51B5A] - (.F-Secure Corporation - F-Secure GUI component.) -- C:\Program Files\F-Secure\FSGUI\fsguidll.exe [233537]
[MD5.B60DDDD2D63CE41CB8C487FCFBB6419E] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [638816]
[MD5.47476A06159C6E6B63ADD57945D99613] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [617472]
---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"
---\\ Pages de démarrage d'Internet Explorer (R0)
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.naturestore.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
---\\ Pages de recherche d'Internet Explorer (R1)
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://home.free.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.google.com/ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.com/ie
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <local>
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
---\\ Internet Explorer URLSearchHook (R3)
R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18968 (longhorn_ie8_gdr.100824-1830)) -- C:\WINDOWS\system32\ieframe.dll
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} Clé orpheline
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} . (.Pas de propriétaire - AcroIEHelper Module.) -- C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} Clé orpheline
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} . (.Sun Microsystems, Inc. - Java(TM) Quick Starter binary.) -- C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) - {ACB1E670-3217-45C4-A021-6B829A8A27CB} . (.Pas de propriétaire - Pas de description.) -- (.not file.)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
---\\ Applications démarrées par registre & par dossier (O4)
O4 - HKLM\..\Run: [load32] Clé orpheline
O4 - HKLM\..\Run: [Config Loader] Clé orpheline
O4 - HKLM\..\Run: [Registry Loader] Clé orpheline
O4 - HKLM\..\Run: [MS Config Loader] Clé orpheline
O4 - HKLM\..\Run: [Microsoft Office] Clé orpheline
O4 - HKLM\..\Run: [Microsoft Office Start] Clé orpheline
O4 - HKLM\..\Run: [Windows Backup Configuration] Clé orpheline
O4 - HKLM\..\Run: [Config Loader2] Clé orpheline
O4 - HKLM\..\Run: [Office Startup] Clé orpheline
O4 - HKLM\..\Run: [Quicktime Pro 3.0] Clé orpheline
O4 - HKLM\..\Run: [Svhost Loader] Clé orpheline
O4 - HKLM\..\Run: [MS Security Hotfix] Clé orpheline
O4 - HKLM\..\Run: [Windows Communicator] Clé orpheline
O4 - HKLM\..\Run: [Config Loader for Microsoft Windows] Clé orpheline
O4 - HKLM\..\Run: [System Loaderav] Clé orpheline
O4 - HKLM\..\Run: [ConfiggLoader] Clé orpheline
O4 - HKLM\..\Run: [Sound Loader] Clé orpheline
O4 - HKLM\..\Run: [Windows Config Manager] Clé orpheline
O4 - HKLM\..\Run: [Windows Loader] Clé orpheline
O4 - HKLM\..\Run: [Service Controller] Clé orpheline
O4 - HKLM\..\Run: [Ms Task] Clé orpheline
O4 - HKLM\..\Run: [Mixer] Clé orpheline
O4 - HKLM\..\Run: [System Loaderap] Clé orpheline
O4 - HKLM\..\Run: [Update] Clé orpheline
O4 - HKLM\..\Run: [Configuration Loading] Clé orpheline
O4 - HKLM\..\Run: [MS Config Stream] Clé orpheline
O4 - HKLM\..\Run: [Win Init] Clé orpheline
O4 - HKLM\..\Run: [Windows Startup] Clé orpheline
O4 - HKLM\..\Run: [machine-debugger] Clé orpheline
O4 - HKLM\..\Run: [Windows Media Player] Clé orpheline
O4 - HKLM\..\Run: [WindowsFS] Clé orpheline
O4 - HKLM\..\Run: [NPSStartup] Clé orpheline
O4 - HKLM\..\Run: [F-Secure Manager] . (.F-Secure Corporation - F-Secure Settings and Statistics.) -- C:\Program Files\F-Secure\Common\FSM32.exe
O4 - HKLM\..\Run: [F-Secure TNB] . (.F-Secure Corporation - tnbutil.) -- C:\Program Files\F-Secure\TNB\TNBUtil.exe
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Computer, Inc. - Pas de description.) -- C:\Program Files\QuickTime\qttask.exe
O4 - HKLM\..\Run: [MSConfig] . (.Microsoft Corporation - Utilitaire de configuration système.) -- C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.exe
O4 - HKLM\..\RunServices: [Config Loader] Clé orpheline
O4 - HKLM\..\RunServices: [Registry Loader] Clé orpheline
O4 - HKLM\..\RunServices: [MS Config Loader] Clé orpheline
O4 - HKLM\..\RunServices: [Microsoft Office] Clé orpheline
O4 - HKLM\..\RunServices: [Microsoft Office Start] Clé orpheline
O4 - HKLM\..\RunServices: [Windows Backup Configuration] Clé orpheline
O4 - HKLM\..\RunServices: [Config Loader2] Clé orpheline
O4 - HKLM\..\RunServices: [Office Startup] Clé orpheline
O4 - HKLM\..\RunServices: [Quicktime Pro 3.0] Clé orpheline
O4 - HKLM\..\RunServices: [Svhost Loader] Clé orpheline
O4 - HKLM\..\RunServices: [MS Security Hotfix] Clé orpheline
O4 - HKLM\..\RunServices: [Windows Communicator] Clé orpheline
O4 - HKLM\..\RunServices: [Config Loader for Microsoft Windows] Clé orpheline
O4 - HKLM\..\RunServices: [System Loaderav] Clé orpheline
O4 - HKLM\..\RunServices: [ConfiggLoader] Clé orpheline
O4 - HKLM\..\RunServices: [Sound Loader] Clé orpheline
O4 - HKLM\..\RunServices: [Windows Config Manager] Clé orpheline
O4 - HKLM\..\RunServices: [Windows Loader] Clé orpheline
O4 - HKLM\..\RunServices: [Service Controller] Clé orpheline
O4 - HKLM\..\RunServices: [Ms Task] Clé orpheline
O4 - HKLM\..\RunServices: [Mixer] Clé orpheline
O4 - HKLM\..\RunServices: [System Loaderap] Clé orpheline
O4 - HKLM\..\RunServices: [Windows Update Service] Clé orpheline
O4 - HKLM\..\RunServices: [Update] Clé orpheline
O4 - HKLM\..\RunServices: [Configuration Loading] Clé orpheline
O4 - HKLM\..\RunServices: [MS Config Stream] Clé orpheline
O4 - HKLM\..\RunServices: [Win Init] Clé orpheline
O4 - HKLM\..\RunServices: [Windows Startup] Clé orpheline
O4 - HKLM\..\RunServices: [WindowsFS] Clé orpheline
O4 - HKCU\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\System32\CTFMON.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\System32\CTFMON.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\System32\CTFMON.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\System32\CTFMON.exe
O4 - HKUS\S-1-5-21-1417001333-573735546-682003330-1004\..\Run: [ctfmon.exe] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-21-1417001333-573735546-682003330-1004\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
---\\ Autres liens utilisateurs (O4)
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Acrobat Reader 5.0.lnk . (.Adobe Systems Incorporated.) -- C:\Program Files\Adobe\Acrobat 5.0\Reader\AcroRd32.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe ImageReady 7.0.lnk . (.Adobe Systems Incorporated.) -- C:\Program Files\Adobe\Photoshop 7.0\ImageReady.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Adobe Photoshop 7.0.lnk . (.Adobe Systems, Incorporated.) -- C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Classeur Microsoft Office.lnk . (.Pas de propriétaire.) -- C:\Program Files\Microsoft Office\Office\BINDER.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\IncrediMail.lnk . (.IncrediMail, Ltd..) -- C:\Program Files\IncrediMail\bin\IncMail.exe
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Excel.lnk . (.Pas de propriétaire.) -- C:\Program Files\Microsoft Office\Office\EXCEL.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Outlook.lnk . (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office\Office\OUTLOOK.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft PowerPoint.lnk . (.Pas de propriétaire.) -- C:\Program Files\Microsoft Office\Office\POWERPNT.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Word.lnk . (.Pas de propriétaire.) -- C:\Program Files\Microsoft Office\Office\WINWORD.EXE
O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe
O4 - Global Startup: C:\Documents And Settings\JEAN MARIE\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe
O4 - Global Startup: C:\Documents And Settings\JEAN MARIE\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - Global Startup: C:\Documents And Settings\JEAN MARIE\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe
O4 - Global Startup: C:\Documents And Settings\JEAN MARIE\Menu Démarrer\Programmes\Windows Media Player.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe
---\\ Lignes supplémentaires dans le menu contextuel d'Internet Explorer (O8)
O8 - Extra context menu item: &Add animation to IncrediMail Style Box . (.Pas de propriétaire - Pas de description.) -- C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &Block this popup . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\F-Secure\Anti-Spyware\blockpopups.htm
O8 - Extra context menu item: Google Sidewiki... . (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: IE Shield... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} . (.Pas de propriétaire - Pas de description.) -- C:\Program Files\F-Secure\Anti-Spyware\ieshieldh.ico
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} . (.not file.) - (.not file.)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} . (.not file.) - (.not file.)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} . (.not file.) - C:\Program Files\Messenger\msmsgs.exe
---\\ Winsock hijacker (Layered Service Provider) (O10)
O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll
O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll
O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll
---\\ Objets ActiveX (Downloaded Program Files)(O16)
O16 - DPF: Garmin Communicator Plug-In (Garmin Communicator Plug-In) -
https://static.garmincdn.com/gcp/ie/2.9.2.0/GarminAxControl.CAB
O16 - DPF: Microsoft XML Parser for Java (Microsoft XML Parser for Java) - (.not file.) - file:\\C:\WINDOWS\Java\classes\xmldso.cab
O16 - DPF: {01347765-1965-426B-91A4-AA6BB342B9A3} (InstallerObj Class) -
http://www.1-click.com/common/files/installer-hidden-test.cab
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) -
http://fr.encyclopedia.yahoo.com/rsc/tdserver.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) -
http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
http://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://download.microsoft.com/...
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) -
http://www.srtest.com/srl_bin/sysreqlab_srl.cab
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} (Shockwave ActiveX Control) -
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {2A3DFC59-8A87-49A1-85D1-42903410911F} () -
http://scripts.dlv4.com/binaries/egaccess4/egaccess4_1058_XP.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) -
http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} () -
http://207.188.7.150/03312754df0e2f548b18/netzip/RdxIE601_fr.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) -
http://www.extrafilm.fr/ImageUploader5.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net/...
O16 - DPF: {87AF076E-D86D-4E87-ADDD-F05804E1F150} () -
https://www.virginmega.fr/DownloadManager/Release/Prod/DownMan.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) -
http://212.157.152.82/AxisCamControl.ocx
O16 - DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} (ExtraFilm Uploader Control) -
http://www.extrafilm.fr/ExtraFilmUploader6.cab
O16 - DPF: {C1FDEE68-98D5-4F42-A4DD-D0BECF5077EB} (EPUImageControl Class) -
http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-27-0.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) -
http://security.symantec.com/SSC/SharedContent/common/bin/cabsa.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) -
http://www.live365.com/players/play365.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class) -
http://www2.incredimail.com/contents/setup/downloader/imloader.cab
O16 - DPF: {F2A84794-EE6D-447B-8C21-3BA1DC77C5B4} (SDKInstall Class) -
http://activex.microsoft.com/activex/controls/sdkupdate/sdkinst.cab
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{ADE169AA-FD2A-48BE-9E46-9C585796F4A2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\..\{ADE169AA-FD2A-48BE-9E46-9C585796F4A2}: DhcpNameServer = 212.198.0.91 212.198.2.51
O17 - HKLM\System\CS2\Services\Tcpip\..\{ADE169AA-FD2A-48BE-9E46-9C585796F4A2}: DhcpNameServer = 212.27.40.241 212.27.40.240
O17 - HKLM\System\CS1\Services\Tcpip\..\{ADE169AA-FD2A-48BE-9E46-9C585796F4A2}: DhcpDomain = cybercable.fr
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.241 212.27.40.240
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: AtiExtEvent . (.ATI Technologies Inc. - ATI External Event Utility DLL Module.) -- C:\Windows\System32\Ati2evxx.dll
O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll
O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll
O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\Windows\System32\cscdll.dll
O20 - Winlogon Notify: dimsntfy . (.Microsoft Corporation - DIMS Notification Handler.) -- C:\WINDOWS\System32\dimsntfy.dll
O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\Windows\System32\sclgntfy.dll
O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\WlNotify.dll
O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
O20 - Winlogon Notify: WgaLogon . (.Microsoft Corporation - Notifications Windows Genuine Advantage.) -- C:\Windows\System32\WgaLogon.dll
O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll
---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\System32\stobject.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} . (.Microsoft Corporation - Windows Portable Device Shell Service Objec.) -- C:\WINDOWS\system32\WPDShServiceObj.dll
---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22)
O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\System32\browseui.dll
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart (ATI Smart) . (.Pas de propriétaire - ATI Smart.) - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: F-Secure Automatic Update (BackWeb Plug-in - 7681197) . (.F-Secure Automatic Update - F-Secure Automatic Update.) - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.exe
O23 - Service: C-DillaCdaC11BA (C-DillaCdaC11BA) . (.Macrovision - Macrovision RTS Service.) - C:\WINDOWS\System32\drivers\CDAC11BA.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) . (.F-Secure Corp. - fsgk32st.) - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys (fsbwsys) . (.F-Secure Corp. - fsbwsys.) - C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
O23 - Service: F-Secure Management Agent (FSMA) . (.F-Secure Corporation - F-Secure Management Agent.) - C:\Program Files\F-Secure\Common\FSMA32.exe
O23 - Service: Google Update Service (gupdate1c9a425caa2e2ac) (gupdate1c9a425caa2e2ac) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java(TM) Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Planificateur LiveUpdate automatique (Planificateur LiveUpdate automatique) . (.Pas de propriétaire - Pas de description.) - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (.not file.)
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop Component 0: (no name) - file:
http://multimedia.fnac.com/...
O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.)
---\\ Tâches planifiées en automatique (O39)
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Scheduled scanning task.job
---\\ Composants installés (ActiveSetup Installed Components) (O40)
O40 - ASIC: Personnalisation du navigateur - >{E3792637-9A5F-4311-ACD0-D10712846C4E} . (.Pas de propriétaire - Pas de description.) -- Rundll32 IEDKCS32.dll
O40 - ASIC: Macromedia Shockwave Director 10.1 - {166B1BCA-3F9C-11CF-8075-444553540000} . (.Adobe Systems, Inc. - Shockwave ActiveX Control.) -- C:\WINDOWS\system32\Adobe\Director\SwDir.dll
O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msnetmtg.inf
O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msmsgs.inf
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\wmp11.inf
O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.1 r85.) -- C:\WINDOWS\system32\Macromed\Flash\Flash10k.ocx
---\\ Logiciels installés (O42)
O42 - Logiciel: ACDSee 3.1 (SR-1) Standard - (.ACD Systems Ltd.) [HKLM] -- {930EAE5E-436E-40C4-AFFC-F73D550C0E51}
O42 - Logiciel: ATI - Utilitaire de désinstallation du logiciel - (.Pas de propriétaire.) [HKLM] -- All ATI Software
O42 - Logiciel: ATI AVIVO Codecs - (.ATI Technologies Inc..) [HKLM] -- {89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}
O42 - Logiciel: ATI Catalyst Control Center - (.Pas de propriétaire.) [HKLM] -- {055EE59D-217B-43A7-ABFF-507B966405D8}
O42 - Logiciel: ATI Display Driver - (.Pas de propriétaire.) [HKLM] -- ATI Display Driver
O42 - Logiciel: ATI HYDRAVISION - (.Pas de propriétaire.) [HKLM] -- {3EA9D975-BFDC-4E8E-B88B-0446FBC8CA66}
O42 - Logiciel: ATI Parental Control & Encoder - (.Nom de votre société.) [HKLM] -- {36CDA33B-909B-4719-97D1-C4B99309BDC7}
O42 - Logiciel: ATI Problem Report Wizard - (.ATI Technologies.) [HKLM] -- {5DA6F06A-B389-407B-BF8C-1548767914D8}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {B194272D-1F92-46DF-99EB-8D5CE91CB4EC}
O42 - Logiciel: Adobe Acrobat 4.0, 5.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Acrobat 5.0
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop 7.0
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player
O42 - Logiciel: CCleaner (remove only) - (.Piriform.) [HKLM] -- CCleaner
O42 - Logiciel: Canon i250 - (.Pas de propriétaire.) [HKLM] -- CANONBJ_Deinstall_CNMCP50.DLL
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {D3B1C799-CB73-42DE-BA0F-2344793A095C}
O42 - Logiciel: EPSON Logiciel imprimante - (.Pas de propriétaire.) [HKLM] -- EPSON Printer and Utilities
O42 - Logiciel: EVEREST Home Edition v2.20 - (.Lavalys Inc.) [HKLM] -- EVEREST Home Edition_is1
O42 - Logiciel: F-Secure Anti-Virus Client Security - Analyse du courrier électronique - (.Pas de propriétaire.) [HKLM] -- F-Secure E-mail Scanning
O42 - Logiciel: F-Secure Anti-Virus Client Security - Analyse du trafic Web - (.Pas de propriétaire.) [HKLM] -- F-Secure Protocol Scanner
O42 - Logiciel: F-Secure Anti-Virus Client Security - Protection Internet - (.Pas de propriétaire.) [HKLM] -- F-Secure Internet Shield
O42 - Logiciel: F-Secure Anti-Virus Client Security - Protection antivirus et antispyware - (.Pas de propriétaire.) [HKLM] -- F-Secure Anti-Virus
O42 - Logiciel: FTDI USB Serial Converter Drivers - (.Pas de propriétaire.) [HKLM] -- FTDICOMM
O42 - Logiciel: Free - Kit de connexion - (.Free.) [HKLM] -- Free.fr
O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Gutterball - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110030700}
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB953595
O42 - Logiciel: Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB958484
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5
O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5
O42 - Logiciel: IncrediMail 2.0 - (.IncrediMail Ltd..) [HKLM] -- IncrediMail
O42 - Logiciel: Intel A/V Codecs V2.0 - (.Pas de propriétaire.) [HKLM] -- CodInstl
O42 - Logiciel: Java(TM) 6 Update 11 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216011FF}
O42 - Logiciel: Lecteur Windows Media 11 - (.Pas de propriétaire.) [HKLM] -- Windows Media Player
O42 - Logiciel: Luxor - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110375480}
O42 - Logiciel: Luxor - Amun Rising - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11109097}
O42 - Logiciel: MSVC80_x86 - (.Nokia.) [HKLM] -- {212748BB-0DA5-46DE-82A1-403736DC9F27}
O42 - Logiciel: MSXML 4.0 SP2 (KB927978) - (.Microsoft Corporation.) [HKLM] -- {37477865-A3F1-4772-AD43-AAFC6BCFF99F}
O42 - Logiciel: MSXML 4.0 SP2 (KB936181) - (.Microsoft Corporation.) [HKLM] -- {C04E32E0-0416-434D-AFB9-6969D703A9EF}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: MSXML 6.0 Parser (KB933579) - (.Microsoft Corporation.) [HKLM] -- {0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Microsoft.) [HKLM] -- {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Pas de propriétaire.) [HKLM] -- Microsoft .NET Framework 1.1 (1033)
O42 - Logiciel: Microsoft .NET Framework 1.1 French Language Pack - (.Microsoft.) [HKLM] -- {9A394342-4A68-4EBA-85A6-55B559F4E700}
O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB2416447) - (.Pas de propriétaire.) [HKLM] -- M2416447
O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB979906) - (.Pas de propriétaire.) [HKLM] -- M979906
O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {3F7924B9-D148-3141-87B1-68F36043A940}
O42 - Logiciel: Microsoft .NET Framework 2.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {511DF669-2930-30C0-8EB6-552887E29EC8}
O42 - Logiciel: Microsoft .NET Framework 3.0 Service Pack 2 - (.Microsoft Corporation.) [HKLM] -- {A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- Microsoft .NET Framework 3.5 SP1
O42 - Logiciel: Microsoft .NET Framework 3.5 SP1 - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
O42 - Logiciel: Microsoft Data Access Components KB870669 - (.Microsoft Corporation.) [HKLM] -- KB870669
O42 - Logiciel: Microsoft Office 97 Standard - (.Pas de propriétaire.) [HKLM] -- Office8.0
O42 - Logiciel: Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 - (.Microsoft Corporation.) [HKLM] -- {770657D0-A123-3C07-8E44-1C83EC895118}
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM] -- {7299052b-02a4-4627-81f2-1818da5d550d}
O42 - Logiciel: Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 - (.Microsoft Corporation.) [HKLM] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
O42 - Logiciel: Package de pilotes Windows - MobileTop (sshpmdm) Modem (02/23/2007 2.5.0.0) - (.MobileTop.) [HKLM] -- 6194C28A8F62DD817EA1B918E6E46E806A21B452
O42 - Logiciel: Package de pilotes Windows - MobileTop (sshpusb) USB (02/23/2007 2.5.0.0) - (.MobileTop.) [HKLM] -- 65B6FE5418CE28F4D72543FB2D964C3CEC83F161
O42 - Logiciel: QuickTime - (.Pas de propriétaire.) [HKLM] -- QuickTime
O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: Red Ace Squadron - (.Pas de propriétaire.) [HKLM] -- {DCE31C7A-6774-4E04-A23A-776C49403E7E}
O42 - Logiciel: Ricochet Round 5 Expansion - (.Reflexive Entertainment, Inc..) [HKLM] -- Ricochet_is1
O42 - Logiciel: SafeCast Shared Components - (.Macrovision.) [HKLM] -- CdaC13Ba
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
O42 - Logiciel: Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB2416473
O42 - Logiciel: System Requirements Lab - (.Pas de propriétaire.) [HKLM] -- SystemRequirementsLab
O42 - Logiciel: USB Card Reader - (.Pas de propriétaire.) [HKLM] -- {9FE748E0-BF63-11D5-BE47-0010B5AF45C6}
O42 - Logiciel: Update for Microsoft .NET Framework 3.5 SP1 (KB963707) - (.Microsoft Corporation.) [HKLM] -- {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707
O42 - Logiciel: Windows Genuine Advantage Notifications (KB905474) - (.Microsoft Corporation.) [HKLM] -- WgaNotify
O42 - Logiciel: Windows Genuine Advantage v1.3.0254.0 - (.Microsoft.) [HKLM] -- {63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8
O42 - Logiciel: Windows Media Format 11 runtime - (.Pas de propriétaire.) [HKLM] -- Windows Media Format Runtime
O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC
O42 - Logiciel: Yahoo! Internet Mail - (.Pas de propriétaire.) [HKLM] -- Yahoo! Mail
---\\ HKCU & HKLM Software Keys
[HKCU\Software\ACD Systems]
[HKCU\Software\ASProtect]
[HKCU\Software\AWGate]
[HKCU\Software\Adobe]
[HKCU\Software\Ahead]
[HKCU\Software\Avance]
[HKCU\Software\Classes.crx]
[HKCU\Software\Classes]
[HKCU\Software\Clients]
[HKCU\Software\CyberLink]
[HKCU\Software\Darim Vision]
[HKCU\Software\Desktop Architect]
[HKCU\Software\DivXNetworks]
[HKCU\Software\EPSON]
[HKCU\Software\Elecard]
[HKCU\Software\F-Secure]
[HKCU\Software\FileZilla]
[HKCU\Software\GNU]
[HKCU\Software\GameHouse]
[HKCU\Software\Google]
[HKCU\Software\Hilgraeve Inc]
[HKCU\Software\IncrediMail]
[HKCU\Software\Intel]
[HKCU\Software\JEDI-VCL]
[HKCU\Software\JavaSoft]
[HKCU\Software\Lavalys]
[HKCU\Software\Licenses]
[HKCU\Software\Macromedia]
[HKCU\Software\Malwarebytes' Anti-Malware]
[HKCU\Software\Mystik Media]
[HKCU\Software\ODBC]
[HKCU\Software\Oberon Media]
[HKCU\Software\Oberon]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\RealNetworks]
[HKCU\Software\SecuROM]
[HKCU\Software\Softland]
[HKCU\Software\TFM]
[HKCU\Software\Visio RAS Script]
[HKCU\Software\Yahoo]
[HKCU\Software\keyhole.com]
[HKLM\Software\5thCell]
[HKLM\Software\781]
[HKLM\Software\8ec]
[HKLM\Software\ACD Systems]
[HKLM\Software\ATI Technologies Inc.]
[HKLM\Software\ATI Technologies]
[HKLM\Software\ATI]
[HKLM\Software\Abacast]
[HKLM\Software\Adobe]
[HKLM\Software\Adolix]
[HKLM\Software\Ahead]
[HKLM\Software\AppDataLow]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Avance Logic, Inc.]
[HKLM\Software\BackWeb]
[HKLM\Software\BoontyGames]
[HKLM\Software\C07ft5Y]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Darim Vision]
[HKLM\Software\Data Fellows]
[HKLM\Software\Datafab]
[HKLM\Software\DivXNetworks]
[HKLM\Software\EPSON]
[HKLM\Software\Electronic Arts]
[HKLM\Software\F-Secure]
[HKLM\Software\FileZilla]
[HKLM\Software\GNU]
[HKLM\Software\Google]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\JavaSoft]
[HKLM\Software\KasperskyLab]
[HKLM\Software\Licenses]
[HKLM\Software\MIDI Plugins]
[HKLM\Software\Macromedia]
[HKLM\Software\Macrovision]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Nero]
[HKLM\Software\ODBC]
[HKLM\Software\Oberon Media]
[HKLM\Software\PRR]
[HKLM\Software\Policies]
[HKLM\Software\Program Groups]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek Semiconductor Corp.]
[HKLM\Software\Realtek]
[HKLM\Software\Reflexive Entertainment]
[HKLM\Software\ReflexiveArcade]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\Secure]
[HKLM\Software\TrendMicro]
[HKLM\Software\VIA Technologies, Inc.]
[HKLM\Software\Via4in1Driver]
[HKLM\Software\WINDOWS]
[HKLM\Software\WildTangent]
[HKLM\Software\Windows 3.1 Migration Status]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\Zone Labs]
---\\ Contenu des dossiers ProgramFiles/ProgramData (O43)
O43 - CFD:Common File Directory ----D- C:\Program Files\ACD Systems
O43 - CFD:Common File Directory ----D- C:\Program Files\Adaptec
O43 - CFD:Common File Directory ----D- C:\Program Files\Adobe
O43 - CFD:Common File Directory ----D- C:\Program Files\Ahead
O43 - CFD:Common File Directory ----D- C:\Program Files\ATI Technologies
O43 - CFD:Common File Directory ----D- C:\Program Files\AvRack
O43 - CFD:Common File Directory ----D- C:\Program Files\BoontyGames
O43 - CFD:Common File Directory ----D- C:\Program Files\CCleaner
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files
O43 - CFD:Common File Directory ----D- C:\Program Files\dialware
O43 - CFD:Common File Directory ----D- C:\Program Files\DIFX
O43 - CFD:Common File Directory ----D- C:\Program Files\directx
O43 - CFD:Common File Directory ----D- C:\Program Files\Diskeeper Corporation
O43 - CFD:Common File Directory ----D- C:\Program Files\EPSON
O43 - CFD:Common File Directory ----D- C:\Program Files\F-Secure
O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers communs
O43 - CFD:Common File Directory ----D- C:\Program Files\FileZilla
O43 - CFD:Common File Directory ----D- C:\Program Files\Free.fr
O43 - CFD:Common File Directory ----D- C:\Program Files\Google
O43 - CFD:Common File Directory ----D- C:\Program Files\IncrediMail
O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information
O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer
O43 - CFD:Common File Directory ----D- C:\Program Files\Jasc Software Inc
O43 - CFD:Common File Directory ----D- C:\Program Files\Java
O43 - CFD:Common File Directory ----D- C:\Program Files\Lavalys
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft CAPICOM 2.1.0.2
O43 - CFD:Common File Directory ----D- C:\Program Files\microsoft frontpage
O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office
O43 - CFD:Common File Directory ----D- C:\Program Files\ML4
O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker
O43 - CFD:Common File Directory ----D- C:\Program Files\MSBuild
O43 - CFD:Common File Directory ----D- C:\Program Files\MSECache
O43 - CFD:Common File Directory ----D- C:\Program Files\MSN Gaming Zone
O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 6.0
O43 - CFD:Common File Directory ----D- C:\Program Files\NetMeeting
O43 - CFD:Common File Directory ----D- C:\Program Files\NimoCodec Pack
O43 - CFD:Common File Directory ----D- C:\Program Files\Oberon Media
O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express
O43 - CFD:Common File Directory ----D- C:\Program Files\PhotoMail Maker
O43 - CFD:Common File Directory ----D- C:\Program Files\QuickTime
O43 - CFD:Common File Directory ----D- C:\Program Files\Real
O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek AC97
O43 - CFD:Common File Directory ----D- C:\Program Files\Reference Assemblies
O43 - CFD:Common File Directory ----D- C:\Program Files\ReflexiveArcade
O43 - CFD:Common File Directory ----D- C:\Program Files\RegCleaner
O43 - CFD:Common File Directory ----D- C:\Program Files\Ricochet
O43 - CFD:Common File Directory ----D- C:\Program Files\Ricochet Xtreme
O43 - CFD:Common File Directory ----D- C:\Program Files\Shockwave.com
O43 - CFD:Common File Directory ----D- C:\Program Files\spybot_search_and_destroy
O43 - CFD:Common File Directory ----D- C:\Program Files\SystemRequirementsLab
O43 - CFD:Common File Directory ----D- C:\Program Files\Trend Micro
O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information
O43 - CFD:Common File Directory ----D- C:\Program Files\VIA Technologies, Inc
O43 - CFD:Common File Directory ----D- C:\Program Files\Wanadoo
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Components
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Connect 2
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Messaging
O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT
O43 - CFD:Common File Directory --H-D- C:\Program Files\WindowsUpdate
O43 - CFD:Common File Directory ----D- C:\Program Files\WinRAR
O43 - CFD:Common File Directory ----D- C:\Program Files\WinZip
O43 - CFD:Common File Directory ----D- C:\Program Files\xerox
O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPDiag
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\INCA Shared
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD:Common File Directory ----D- C:\Program Files\Common Files\System
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.78EE1200F915817C00ECFD7F4CEF1200] - 08/11/2010 - 23:01:51 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\WindowsUpdate.log [1098726]
O44 - LFC:[MD5.43720267CF428320009BF4541F9C58DF] - 08/11/2010 - 23:01:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\wpa.dbl [12612]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 08/11/2010 - 23:00:32 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\0.log [0]
O44 - LFC:[MD5.78EE1200F915817C00ECFD7F4CEF1200] - 08/11/2010 - 23:00:28 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wiadebug.log [159]
O44 - LFC:[MD5.78EE1200F915817C00ECFD7F4CEF1200] - 08/11/2010 - 23:00:17 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wiaservc.log [50]
O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 08/11/2010 - 22:59:42 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\bootstat.dat [2048]
O44 - LFC:[MD5.C9DD76D0EF94637C77FF8CA5E0FB0684] - 08/11/2010 - 22:55:50 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system.ini [227]
O44 - LFC:[MD5.767236F271127254B7164F843725B158] - 08/11/2010 - 22:55:50 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\win.ini [965]
O44 - LFC:[MD5.B2E19F584B5D24459436A6823992A254] - 08/11/2010 - 22:55:50 -SHA- . (.Pas de propriétaire - Pas de description.) -- C:\boot.ini [226]
O44 - LFC:[MD5.78EE1200F915817C00ECFD7F4CEF1200] - 08/11/2010 - 22:52:23 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\SchedLgU.Txt [32504]
O44 - LFC:[MD5.D12AB4D03AF5EEB535F2EEDBD97BA581] - 08/11/2010 - 00:46:27 -SHA- . (.Pas de propriétaire - Pas de description.) -- C:\Thumbs.db [10240]
O44 - LFC:[MD5.71024350FB83A0E48146A99926B253C7] - 31/10/2010 - 22:01:49 --HA- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\FFASTLOG.TXT [22138]
O44 - LFC:[MD5.8CF7C3AE5F358E75EB273AF06E8F78CA] - 31/10/2010 - 21:20:20 ---A- . (.Sysinternals - www.sysinternals.com - Page File Defragmenter.) -- C:\WINDOWS\System32\pgdfgsvc.exe [25992]
O44 - LFC:[MD5.C85C38A538DB82421CFC4D65D74A9D82] - 31/10/2010 - 12:13:53 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\JEAN MARIE.pcb [8704]
O44 - LFC:[MD5.3EA9BBAB75E644E0C484B9BE575014CF] - 31/10/2010 - 09:31:30 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfc00C.dat [84872]
O44 - LFC:[MD5.3A1C8CD59F8430B3029DC0F7C79D78B9] - 31/10/2010 - 09:31:30 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfh009.dat [441470]
O44 - LFC:[MD5.F1ADEB2CF91BB0B5034DC1F6077D4C1D] - 31/10/2010 - 09:31:30 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfh00C.dat [510670]
O44 - LFC:[MD5.68637226AAA5F2B41B8A0A5636ED374F] - 31/10/2010 - 09:31:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\PerfStringBackup.INI [1123100]
O44 - LFC:[MD5.056C0253C7927434FD74282EE5FF046D] - 31/10/2010 - 09:31:29 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\perfc009.dat [71406]
O44 - LFC:[MD5.8C9CBB921B4C76DF62E7DFADBF06DE98] - 20/10/2010 - 20:17:48 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\JEAN MARIE8.xlb [7062]
O44 - LFC:[MD5.AF7E53CBD93054D0A387BF9EF1B5DD0B] - 16/10/2010 - 06:49:52 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\FNTCACHE.DAT [207304]
O44 - LFC:[MD5.D59DCBB08DA4D117961605E49BE7DB5D] - 15/10/2010 - 21:41:48 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\JavaRa.log [14340]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 15/10/2010 - 18:22:16 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\ativpsrm.bin [0]
O44 - LFC:[MD5.A89C2F93B4189A11840EE2CFB77A4150] - 15/10/2010 - 18:21:52 R--A- . (.ATI Technologies Inc. - .INF file installer.) -- C:\WINDOWS\System32\atiiiexx.dll [307200]
O44 - LFC:[MD5.8889A0135508E78D731C28FAC9A9CC52] - 15/10/2010 - 18:21:52 R--A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\atiogl.xml [15485]
O44 - LFC:[MD5.3D1C1707072E8240F3C485F120CE2D9E] - 15/10/2010 - 18:21:47 R--A- . (.Advanced Micro Devices, Inc. - Graphics DEM.) -- C:\WINDOWS\System32\ATIDEMGX.dll [442368]
O44 - LFC:[MD5.84086D3595E62266A72CE6B19E9BF569] - 15/10/2010 - 18:21:46 R--A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\atifglpf.xml [7167]
O44 - LFC:[MD5.C23E3A4C7004D634A5C2E02841B3E3D4] - 15/10/2010 - 18:21:39 R--A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ativva6x.dat [887724]
O44 - LFC:[MD5.31B434EDEC919137787CABF10E76266B] - 15/10/2010 - 18:21:38 R--A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ativva5x.dat [3107788]
O44 - LFC:[MD5.09CD39350CC5B4626C4DD3211152EF29] - 15/10/2010 - 18:21:37 R--A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\atiicdxx.dat [182995]
---\\ Opérations et fonctions au démarrage de Windows Explorer (O46)
O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll
---\\ Export de clé d'application autorisée (ECAA) (O47)
O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe
O47 - AAKE:Key Export SP - "C:\Program Files\OneClick\OneClick.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\OneClick\OneClick.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Kazaa Lite K++\KazaaLite.kpp" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Kazaa Lite K++\KazaaLite.kpp:*:Disabled:KazaaLite
O47 - AAKE:Key Export SP - "C:\Program Files\Shareaza\Shareaza.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Shareaza\Shareaza.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Messenger\msmsgs.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Messenger\msmsgs.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Yahoo!\Messenger\YPager.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Yahoo!\Messenger\YPager.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Internet Explorer\iexplore.exe" [Enabled] .(.Microsoft Corporation - Internet Explorer.) (.not file.) -- C:\Program Files\Internet Explorer\iexplore.exe
O47 - AAKE:Key Export SP - "C:\Program Files\WinFax eXPert Réseau\BvrpKrnl.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\WinFax eXPert Réseau\BvrpKrnl.exe
O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) (.not file.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\JEAN MARIE\Bureau\juju\LimeWire\LimeWire.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Documents and Settings\JEAN MARIE\Bureau\juju\LimeWire\LimeWire.exe
O47 - AAKE:Key Export SP - "C:\Program Files\WinFax eXPert Réseau\WinFax.exe" [Disabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\WinFax eXPert Réseau\WinFax.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Lemoncast\lemoncast.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Lemoncast\lemoncast.exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\JEAN MARIE\Local Settings\Temporary Internet Files\Content.IE5\MV2316FE\incredimail_install[1].exe" [Enabled] .(.Pas de propriétaire - .) (.not file.) -- C:\Documents and Settings\JEAN MARIE\Local Settings\Temporary Internet Files\Content.IE5\MV2316FE\incredimail_install[1].exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\JEAN MARIE\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install[1].exe" [Enabled] .(.Pas de propriétaire - .) (.not file.) -- C:\Documents and Settings\JEAN MARIE\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install[1].exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\JEAN MARIE\Bureau\incredimail_install.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Documents and Settings\JEAN MARIE\Bureau\incredimail_install.exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\JEAN MARIE\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install.exe" [Enabled] .(.Pas de propriétaire - .) (.not file.) -- C:\Documents and Settings\JEAN MARIE\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install.exe
O47 - AAKE:Key Export SP - "C:\Documents and Settings\JEAN MARIE\Local Settings\Temporary Internet Files\Content.IE5\BFILKEJ0\incredimail_install[1].exe" [Enabled] .(.Pas de propriétaire - .) (.not file.) -- C:\Documents and Settings\JEAN MARIE\Local Settings\Temporary Internet Files\Content.IE5\BFILKEJ0\incredimail_install[1].exe
O47 - AAKE:Key Export SP - "C:\Program Files\BoontyGames\Red Ace Squadron\acenet_server_release.exe" [Disabled] .(.Pas de propriétaire - server MFC Application.) (.not file.) -- C:\Program Files\BoontyGames\Red Ace Squadron\acenet_server_release.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Yahoo!\Messenger\YServer.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Yahoo!\Messenger\YServer.exe
O47 - AAKE:Key Export SP - "F:\Programmes et applications\Home player\HomePlayer\HomePlayer.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- F:\Programmes et applications\Home player\HomePlayer\HomePlayer.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Windows Live\Messenger\livecall.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Windows Live\Messenger\livecall.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Electronic Arts\EADM\Core.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Electronic Arts\EADM\Core.exe
O47 - AAKE:Key Export SP - "F:\Programmes et applications\EA Download manager\EADM\Core.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- F:\Programmes et applications\EA Download manager\EADM\Core.exe
O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\bin\IMApp.exe" [Enabled] .(.IncrediMail, Ltd. - IncrediMail Tray Application.) (.not file.) -- C:\Program Files\IncrediMail\bin\IMApp.exe
O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\bin\IncMail.exe" [Enabled] .(.IncrediMail, Ltd. - IncrediMail Application.) (.not file.) -- C:\Program Files\IncrediMail\bin\IncMail.exe
O47 - AAKE:Key Export SP - "C:\Program Files\IncrediMail\bin\ImpCnt.exe" [Enabled] .(.IncrediMail, Ltd. - IncrediMail Content Importer.) (.not file.) -- C:\Program Files\IncrediMail\bin\ImpCnt.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Skype\Phone\Skype.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Skype\Phone\Skype.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Steam\SteamApps\estoc92\counter-strike source\hl2.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Steam\SteamApps\estoc92\counter-strike source\hl2.exe
O47 - AAKE:Key Export SP - "F:\Jeux\SteamApps\estoc92\counter-strike source\hl2.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- F:\Jeux\SteamApps\estoc92\counter-strike source\hl2.exe
O47 - AAKE:Key Export SP - "C:\Program Files\Google\Google Earth\client\googleearth.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\Google\Google Earth\client\googleearth.exe
O47 - AAKE:Key Export SP - "C:\Program Files\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe&qu