OTL logfile created on: 13/04/2010 22:18:34 - Run 1
OTL by OldTimer - Version 3.2.1.1 Folder = C:\Users\Noé\Desktop
Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 51,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 75,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 43,95 Gb Total Space | 2,08 Gb Free Space | 4,72% Space Free | Partition Type: NTFS
Drive D: | 246,33 Gb Total Space | 213,92 Gb Free Space | 86,84% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ORDI-DE-NOÉ
Current User Name: Noé
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ========== PRC - C:\Users\Noé\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Users\Noé\AppData\Local\Temp\davclnt.exe (Microsoft Corporation)
PRC - C:\Users\Noé\appdata\local\google\chrome\application\chrome.exe (Google Inc.)
PRC - C:\Program Files\SpiderMessenger\SpiderMessenger.exe (Agence Exclusive)
PRC - D:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)
PRC - C:\Program Files\Application Updater\ApplicationUpdater.exe (Spigot, Inc.)
PRC - D:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
PRC - D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
PRC - C:\Program Files\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation)
PRC - C:\Program Files\OpenOffice.org 3\program\soffice.bin (OpenOffice.org)
PRC - C:\Program Files\OpenOffice.org 3\program\soffice.exe (OpenOffice.org)
PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\System Control Manager\MGSysCtrl.exe (Micro-Star International Co., Ltd.)
PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Users\Noé\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (EoRezo)
PRC - C:\Program Files\System Control Manager\MSIService.exe (Micro-Star Int'l Co., Ltd.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files\Internet Explorer\IEUser.exe (Microsoft Corporation)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - D:\Program Files\Stardock\ObjectDock\ObjectDock.exe (Stardock)
========== Modules (SafeList) ========== MOD - C:\Users\Noé\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ========== SRV - (avast! Web Scanner) -- File not found
SRV - (avast! Mail Scanner) -- File not found
SRV - (avast! Antivirus) -- File not found
SRV - (Application Updater) -- C:\Program Files\Application Updater\ApplicationUpdater.exe (Spigot, Inc.)
SRV - (aswUpdSv) -- D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (SBSDWSCService) -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.)
SRV - (Micro Star SCM) -- C:\Program Files\System Control Manager\MSIService.exe (Micro-Star Int'l Co., Ltd.)
SRV - (TOSHIBA Bluetooth Service) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
========== Driver Services (SafeList) ========== DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
DRV - (aswSP) -- C:\Windows\System32\drivers\aswSP.sys (ALWIL Software)
DRV - (aswFsBlk) -- C:\Windows\System32\drivers\aswFsBlk.sys (ALWIL Software)
DRV - (aswMonFlt) -- C:\Windows\System32\drivers\aswMonFlt.sys (ALWIL Software)
DRV - (aswTdi) -- C:\Windows\System32\drivers\aswTdi.sys (ALWIL Software)
DRV - (aswRdr) -- C:\Windows\System32\drivers\aswRdr.sys (ALWIL Software)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.)
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (athr) -- C:\Windows\System32\drivers\athr.sys (Atheros Communications, Inc.)
DRV - (atikmdag) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (RTSTOR) -- C:\Windows\System32\drivers\RTSTOR.sys (Realtek Semiconductor Corp.)
DRV - (avgio) -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)
DRV - (netr28) -- C:\Windows\System32\drivers\netr28.sys (Ralink Technology, Corp.)
DRV - (SiSGbeLH) -- C:\Windows\System32\drivers\SiSGB6.sys (Silicon Integrated Systems Corp.)
DRV - (Tosrfhid) -- C:\Windows\System32\drivers\Tosrfhid.sys (TOSHIBA Corporation.)
DRV - (Tosrfcom) -- C:\Windows\System32\drivers\tosrfcom.sys (TOSHIBA Corporation)
DRV - (TosRfSnd) -- C:\Windows\System32\drivers\TosRfSnd.sys (TOSHIBA Corporation)
DRV - (tosrfbd) -- C:\Windows\System32\drivers\tosrfbd.sys (TOSHIBA CORPORATION)
DRV - (Tosrfusb) -- C:\Windows\System32\drivers\tosrfusb.sys (TOSHIBA CORPORATION)
DRV - (tosporte) -- C:\Windows\System32\drivers\tosporte.sys (TOSHIBA Corporation)
DRV - (MegaSR) -- C:\Windows\system32\drivers\megasr.sys (LSI Corporation, Inc.)
DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.)
DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Corporation)
DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.)
DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems)
DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company)
DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.)
DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic)
DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation)
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.)
DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation)
DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic)
DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic)
DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.)
DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex)
DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.)
DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation)
DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation)
DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.)
DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.)
DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.)
DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.)
DRV - (tosrfbnp) -- C:\Windows\System32\drivers\tosrfbnp.sys (TOSHIBA Corporation)
DRV - (ReallusionVirtualAudio) -- C:\Windows\System32\drivers\RLVrtAuCbl.sys ()
DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation)
DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.)
DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation)
DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.)
DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.)
DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.)
DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic)
DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic)
DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation)
DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic)
DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.)
DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.)
DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.)
DRV - (smserial) -- C:\Windows\System32\drivers\smserial.sys (Motorola Inc.)
DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies)
DRV - (tosrfnds) -- C:\Windows\System32\drivers\tosrfnds.sys (TOSHIBA Corporation.)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.msi.comIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,XMLHTTP_UUID_Default = C5 A0 44 0F 35 49 D0 40 81 67 FA 99 24 78 9C 99 [binary data]
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,XMLHTTP_UUID_Default = C5 A0 44 0F 35 49 D0 40 81 67 FA 99 24 78 9C 99 [binary data]
IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.msi.comIE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.fr/IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\SOFTWARE\Microsoft\Internet Explorer\Main,XMLHTTP_UUID_Default = 18 94 E8 01 35 49 D0 40 81 67 FA 99 24 78 9C 99 [binary data]
IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll (Spigot, Inc.)
IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\software\mozilla\Firefox\Extensions\\SpiderMessengerHelper@spidermessenger.com: C:\Program Files\SpiderMessenger [2010/04/08 10:40:43 | 000,000,000 | ---D | M]
[2010/02/16 20:03:37 | 000,000,000 | ---D | M] -- C:\Users\Noé\AppData\Roaming\mozilla\Extensions
[2010/01/30 13:28:37 | 000,000,000 | ---D | M] -- C:\Users\Noé\AppData\Roaming\mozilla\Extensions\IMVUClientXUL@imvu.com
O1 HOSTS File: ([2006/09/18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Dealio Toolbar) - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (no name) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Babylon IE plugin) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll File not found
O2 - BHO: (SpiderMessenger_BHO Class) - {ADE49752-DBBC-43A3-9498-379A82F574BF} - C:\Program Files\SpiderMessenger\SpiderMessenger.BHO.dll (Soft2PC)
O2 - BHO: (Ask.com Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O2 - BHO: (SearchSettings Class) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll (Spigot, Inc.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Dealio Toolbar) - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Ask.com Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O3 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000\..\Toolbar\WebBrowser: (Ask.com Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [avast!] D:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [EoEngine] File not found
O4 - HKLM..\Run: [EoTraduction] File not found
O4 - HKLM..\Run: [ITSecMng] C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe (Micro-Star International Co., Ltd.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000..\Run: [davclnt.exe] C:\Users\Noé\AppData\Local\Temp\davclnt.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000..\Run: [Regedit32] C:\Windows\System32\regedit.exe File not found
O4 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000..\Run: [SpiderMessenger] C:\Program Files\SpiderMessenger\SpiderMessenger.exe (Agence Exclusive)
O4 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000..\Run: [SyncMan] C:\Users\Noé\SyncMan.exe File not found
O4 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000..\Run: [uishf9wuifwuh387fh3wufinhjfdwefe] C:\Users\NO7309~1\AppData\Local\Temp\r8ylrpnd2g.exe File not found
O4 - HKLM..\RunOnce: [SoftwareHelper] C:\Users\Noé\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe (EoRezo)
O4 - Startup: C:\Users\Noé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk = C:\Users\Noé\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe File not found
O4 - Startup: C:\Users\Noé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LimeWire On Startup.lnk = D:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)
O4 - Startup: C:\Users\Noé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O4 - Startup: C:\Users\Noé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.1.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O4 - Startup: C:\Users\Noé\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk = D:\Program Files\Stardock\ObjectDock\ObjectDock.exe (Stardock)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll File not found
O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501}
http://messenger.zone.msn.com/binary/ms ... b56986.cab (Checkers Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072}
http://messenger.zone.msn.com/binary/Me ... b56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_17)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\Windows\System32\dbghelp32.dll) - C:\Windows\System32\dbghelp32.dll File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000 Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKU\S-1-5-21-2058167939-3279776217-1115782580-1000 Winlogon: Shell - (C:\Users\Noé\csrss.exe) - C:\Users\Noé\csrss.exe ()
O24 - Desktop WallPaper: D:\Users\Noé\Pictures\Divers\French_Fries_by_soccerfan121.jpg
O24 - Desktop BackupWallPaper: D:\Users\Noé\Pictures\Divers\French_Fries_by_soccerfan121.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/09/18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{13061470-ff9c-11de-9898-0024216d0f24}\Shell\AutoRun\command - "" = F:\NISAM\\normalan.exe -- File not found
O33 - MountPoints2\{13061470-ff9c-11de-9898-0024216d0f24}\Shell\open\command - "" = F:\NISAM\\normalan.exe -- File not found
O33 - MountPoints2\{4d9ebf92-101f-11df-bb8f-0024218e51b8}\Shell - "" = AutoRun
O33 - MountPoints2\{4d9ebf92-101f-11df-bb8f-0024218e51b8}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -- File not found
O33 - MountPoints2\{6037582d-2c69-11df-9d4c-0024216d0f24}\Shell - "" = AutoRun
O33 - MountPoints2\{6037582d-2c69-11df-9d4c-0024216d0f24}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -- File not found
O33 - MountPoints2\{6a61191c-080f-11df-ac9b-0024216d0f24}\Shell\AutoRun\command - "" = F:\JOVANA\pojatar.exe -- File not found
O33 - MountPoints2\{6a61191c-080f-11df-ac9b-0024216d0f24}\Shell\open\command - "" = F:\JOVANA\pojatar.exe -- File not found
O33 - MountPoints2\{78085d0c-04f6-11df-8e74-0024218e51b8}\Shell - "" = AutoRun
O33 - MountPoints2\{78085d0c-04f6-11df-8e74-0024218e51b8}\Shell\AutoRun\command - "" = F:\SFR.exe -- File not found
O33 - MountPoints2\{c6b445c4-34b5-11df-8532-0024216d0f24}\Shell\AutoRun\command - "" = G:\LOOKEY\\michael.exe -- File not found
O33 - MountPoints2\{c6b445c4-34b5-11df-8532-0024216d0f24}\Shell\open\command - "" = G:\LOOKEY\\michael.exe -- File not found
O33 - MountPoints2\{de17691c-f160-11de-901a-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{de17691c-f160-11de-901a-806e6f6e6963}\Shell\AutoRun\command - "" = E:\Autorun.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ========== [2010/04/13 22:15:06 | 000,561,664 | ---- | C] (OldTimer Tools) -- C:\Users\Noé\Desktop\OTL.exe
[2010/04/13 01:44:29 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010/04/12 23:26:44 | 000,000,000 | ---D | C] -- C:\Users\Noé\AppData\Roaming\Malwarebytes
[2010/04/12 23:26:33 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/04/12 23:26:29 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/04/12 23:26:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010/04/12 22:45:04 | 000,000,000 | ---D | C] -- C:\WINSSLog
[2010/04/12 20:42:58 | 000,000,000 | -HSD | C] -- C:\ProgramData\CUKAQORULBA
[2010/04/12 20:42:58 | 000,000,000 | ---D | C] -- C:\Users\Noé\AppData\Roaming\CleanUp Antivirus
[2010/04/12 20:42:10 | 000,000,000 | ---D | C] -- C:\ProgramData\4c5e6e4
[2010/04/09 00:49:45 | 000,000,000 | ---D | C] -- C:\Users\Noé\Documents\Electronic Arts
[2010/04/08 10:40:44 | 000,000,000 | ---D | C] -- C:\Users\Noé\AppData\Local\SpiderMessenger
[2010/04/08 10:40:36 | 000,000,000 | ---D | C] -- C:\Program Files\SpiderMessenger
[2010/04/06 20:47:52 | 000,000,000 | ---D | C] -- C:\Users\Noé\Documents\Mes fichiers reçus
[2010/04/05 10:57:06 | 000,000,000 | ---D | C] -- C:\Windows\CheckSur
[2010/04/03 15:17:20 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2010/04/03 15:17:19 | 000,389,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010/04/03 15:17:18 | 000,458,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2010/04/03 15:17:18 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2010/04/03 15:17:18 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll
[2010/04/03 15:17:18 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2010/04/03 15:17:18 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2010/04/03 15:17:17 | 001,383,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2010/04/03 15:17:17 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010/04/03 15:17:17 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieencode.dll
[2010/04/03 15:17:17 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010/03/26 22:22:17 | 000,000,000 | ---D | C] -- C:\Users\Noé\AppData\Roaming\skypePM
[2010/03/26 22:04:40 | 000,000,000 | ---D | C] -- C:\Users\Noé\AppData\Roaming\Skype
[2010/03/26 22:04:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010/03/26 22:04:26 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010/03/26 22:04:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2010/03/19 20:35:39 | 000,000,000 | ---D | C] -- C:\Program Files\Search Settings
[2010/03/19 20:35:25 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater
[2010/03/19 20:35:24 | 000,000,000 | ---D | C] -- C:\Program Files\Dealio Toolbar
[2010/03/19 20:34:07 | 000,164,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\COMCT232.OCX
[2010/03/19 20:34:02 | 001,986,560 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudFile.dll
[2010/03/19 20:34:02 | 001,212,416 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudioInfos.dll
[2010/03/19 20:34:02 | 000,479,232 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudioVisu.dll
[2010/03/19 20:34:02 | 000,458,752 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudPlayer.dll
[2010/03/19 20:34:02 | 000,454,656 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudioRecord.dll
[2010/03/19 20:34:02 | 000,417,792 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudDisplay.dll
[2010/03/19 20:34:02 | 000,348,160 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\WMAFile.dll
[2010/03/19 20:34:01 | 002,084,864 | ---- | C] (NCT Company Ltd.) -- C:\Windows\System32\AudDesign.dll
[2010/03/19 20:34:01 | 000,662,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMCT2.OCX
[2010/03/19 20:34:01 | 000,224,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TABCTL32.OCX
[2010/03/19 20:34:01 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCMCFR.DLL
[2010/03/19 20:34:01 | 000,119,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6FR.DLL
[2010/03/19 20:34:01 | 000,115,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msinet.OCX
[2010/03/19 20:34:01 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6STKIT.DLL
[2010/03/19 20:34:01 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Mscc2fr.dll
[2010/03/19 20:34:01 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TABCTFR.DLL
[2010/03/19 20:34:01 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetfr.DLL
[2010/03/19 20:34:00 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CMDLGFR.DLL
[2010/03/19 20:34:00 | 000,000,000 | ---D | C] -- C:\Users\Noé\AppData\Roaming\FreeAudioPack
[2010/03/19 20:18:22 | 000,000,000 | ---D | C] -- C:\Program Files\SBaGen
[2010/03/19 20:14:30 | 000,000,000 | ---D | C] -- C:\Users\Noé\Desktop\SBaGen 1.4.4 examples
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ========== [2010/04/13 22:23:02 | 002,359,296 | -HS- | M] () -- C:\Users\Noé\NTUSER.DAT
[2010/04/13 22:22:09 | 000,860,672 | ---- | M] () -- C:\Windows\System32\drivers\ntuuhbu.sys
[2010/04/13 22:16:03 | 001,470,810 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010/04/13 22:16:03 | 000,669,566 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2010/04/13 22:16:03 | 000,585,042 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010/04/13 22:16:03 | 000,123,556 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2010/04/13 22:16:03 | 000,099,114 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010/04/13 22:15:36 | 000,561,664 | ---- | M] (OldTimer Tools) -- C:\Users\Noé\Desktop\OTL.exe
[2010/04/13 22:09:49 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/04/13 22:09:49 | 000,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/04/13 22:09:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/04/13 22:09:28 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/04/13 22:09:24 | 3220,496,384 | -HS- | M] () -- C:\hiberfil.sys
[2010/04/13 22:08:24 | 000,524,288 | -HS- | M] () -- C:\Users\Noé\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
[2010/04/13 22:08:24 | 000,065,536 | -HS- | M] () -- C:\Users\Noé\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
[2010/04/13 22:08:23 | 006,291,456 | -H-- | M] () -- C:\Users\Noé\AppData\Local\IconCache.db
[2010/04/13 21:43:00 | 000,001,068 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2058167939-3279776217-1115782580-1000UA.job
[2010/04/13 21:20:07 | 000,001,855 | ---- | M] () -- C:\Users\Noé\Desktop\Digital Protection Support.lnk
[2010/04/13 21:20:07 | 000,000,901 | ---- | M] () -- C:\Users\Noé\Desktop\Digital Protection.lnk
[2010/04/13 14:08:27 | 000,000,414 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{FDDBC5FB-3A5F-4EFB-8643-802B514BB6CC}.job
[2010/04/13 10:58:34 | 000,003,072 | -H-- | M] () -- C:\Users\Noé\Documents\photothumb.db
[2010/04/13 10:43:00 | 000,001,016 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2058167939-3279776217-1115782580-1000Core.job
[2010/04/13 10:03:45 | 187,485,736 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2010/04/13 01:37:40 | 000,000,650 | ---- | M] () -- C:\Users\Noé\Desktop\PhotoScape.lnk
[2010/04/12 23:26:35 | 000,000,620 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/04/12 23:25:40 | 000,000,868 | ---- | M] () -- C:\Users\Noé\Desktop\ruse-MB - Raccourci.lnk
[2010/04/11 21:57:08 | 000,000,680 | ---- | M] () -- C:\Users\Noé\AppData\Local\d3d9caps.dat
[2010/04/11 15:02:03 | 000,307,568 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010/04/11 13:34:08 | 001,695,036 | ---- | M] () -- C:\Users\Noé\Documents\kiff.gif
[2010/04/11 02:01:18 | 000,050,688 | ---- | M] () -- C:\Users\Noé\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/04/09 00:38:21 | 000,001,859 | ---- | M] () -- C:\Users\Public\Desktop\Les Simsâ„¢ 3.lnk
[2010/04/06 23:28:38 | 000,182,784 | RHS- | M] () -- C:\Users\Noé\csrss.exe
[2010/04/03 11:12:23 | 000,000,470 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for Noé.job
[2010/04/02 23:52:20 | 000,002,042 | ---- | M] () -- C:\Users\Noé\Desktop\Google Chrome.lnk
[2010/03/30 00:46:30 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010/03/30 00:45:52 | 000,020,824 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010/03/26 22:22:18 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010/03/26 22:04:28 | 000,001,878 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/03/19 20:34:07 | 000,000,832 | ---- | M] () -- C:\Users\Noé\Desktop\Easy Audio Cutter.lnk
[2010/03/19 20:34:07 | 000,000,820 | ---- | M] () -- C:\Users\Noé\Desktop\Free CD Ripper.lnk
[2010/03/19 20:34:07 | 000,000,818 | ---- | M] () -- C:\Users\Noé\Desktop\Free Mp3 Wma Converter.lnk
[2010/03/19 20:18:24 | 000,001,475 | ---- | M] () -- C:\Users\Noé\Desktop\SBaGen program.lnk
[2010/03/16 09:20:17 | 001,400,164 | ---- | M] () -- C:\Users\Noé\Desktop\MARDITPEORAL.odp
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/04/13 10:03:33 | 187,485,736 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2010/04/13 01:40:00 | 000,003,072 | -H-- | C] () -- C:\Users\Noé\Documents\photothumb.db
[2010/04/13 01:37:40 | 000,000,650 | ---- | C] () -- C:\Users\Noé\Desktop\PhotoScape.lnk
[2010/04/12 23:26:35 | 000,000,620 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010/04/12 23:25:40 | 000,000,868 | ---- | C] () -- C:\Users\Noé\Desktop\ruse-MB - Raccourci.lnk
[2010/04/12 20:41:30 | 000,001,855 | ---- | C] () -- C:\Users\Noé\Desktop\Digital Protection Support.lnk
[2010/04/12 20:41:30 | 000,000,901 | ---- | C] () -- C:\Users\Noé\Desktop\Digital Protection.lnk
[2010/04/11 13:34:07 | 001,695,036 | ---- | C] () -- C:\Users\Noé\Documents\kiff.gif
[2010/04/09 00:38:21 | 000,001,859 | ---- | C] () -- C:\Users\Public\Desktop\Les Simsâ„¢ 3.lnk
[2010/04/06 23:29:03 | 000,182,784 | RHS- | C] () -- C:\Users\Noé\csrss.exe
[2010/03/26 22:22:18 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/03/26 22:04:28 | 000,001,878 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/03/19 20:34:07 | 000,000,832 | ---- | C] () -- C:\Users\Noé\Desktop\Easy Audio Cutter.lnk
[2010/03/19 20:34:07 | 000,000,820 | ---- | C] () -- C:\Users\Noé\Desktop\Free CD Ripper.lnk
[2010/03/19 20:34:07 | 000,000,818 | ---- | C] () -- C:\Users\Noé\Desktop\Free Mp3 Wma Converter.lnk
[2010/03/19 20:34:02 | 000,116,296 | ---- | C] () -- C:\Windows\System32\NCTWMAProfiles.prx
[2010/03/19 20:34:00 | 000,484,352 | ---- | C] () -- C:\Windows\System32\lame_enc.dll
[2010/03/19 20:18:24 | 000,001,475 | ---- | C] () -- C:\Users\Noé\Desktop\SBaGen program.lnk
[2010/03/12 22:04:12 | 000,015,135 | ---- | C] () -- C:\Users\Noé\AppData\Roaming\UserTile.png
[2010/02/27 23:32:11 | 000,000,001 | ---- | C] () -- C:\Users\Noé\oashdihasidhasuidhiasdhiashdiuasdhasd
[2010/02/27 16:34:43 | 000,000,000 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\7a75c7b3784S.manifest
[2010/02/27 16:34:43 | 000,000,000 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\7a75c7b3784P.manifest
[2010/02/27 16:34:43 | 000,000,000 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\7a75c7b3784O.manifest
[2010/02/27 16:34:43 | 000,000,000 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\7a75c7b3784C.manifest
[2010/02/27 11:55:01 | 000,004,716 | ---- | C] () -- C:\ProgramData\fiosejgfse.dll
[2010/02/26 20:13:22 | 000,860,672 | ---- | C] () -- C:\Windows\System32\drivers\ntuuhbu.sys
[2010/02/26 20:11:01 | 000,000,008 | ---- | C] () -- C:\Users\Noé\AppData\Roaming\pdytbs.dat
[2010/02/26 20:10:57 | 000,000,004 | ---- | C] () -- C:\Users\Noé\AppData\Roaming\avdrn.dat
[2010/02/26 20:10:55 | 000,000,004 | ---- | C] () -- C:\Users\Noé\AppData\Roaming\wiaservg.log
[2010/02/16 02:21:46 | 000,178,176 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2010/02/16 01:31:30 | 000,000,040 | ---- | C] () -- C:\Users\Noé\AppData\Roaming\2af5c0b4
[2010/02/10 00:44:08 | 000,002,519 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\020000002a980a79784P.manifest
[2010/02/10 00:44:08 | 000,000,344 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\020000002a980a79784C.manifest
[2010/02/10 00:44:08 | 000,000,232 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\020000002a980a79784O.manifest
[2010/02/10 00:44:08 | 000,000,011 | -HS- | C] () -- C:\Users\Noé\AppData\Roaming\020000002a980a79784S.manifest
[2010/01/23 22:32:22 | 000,010,240 | ---- | C] () -- C:\Windows\System32\vidx16.dll
[2009/12/27 12:18:52 | 000,000,680 | ---- | C] () -- C:\Users\Noé\AppData\Local\d3d9caps.dat
[2009/12/25 02:03:27 | 000,050,688 | ---- | C] () -- C:\Users\Noé\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/25 01:38:50 | 000,031,616 | ---- | C] () -- C:\Windows\System32\drivers\RLVrtAuCbl.sys
[2009/12/25 01:35:02 | 000,000,020 | -HS- | C] () -- C:\Users\Noé\ntuser.ini
[2009/12/25 01:35:01 | 002,359,296 | -HS- | C] () -- C:\Users\Noé\NTUSER.DAT
[2009/12/25 01:35:01 | 000,524,288 | -HS- | C] () -- C:\Users\Noé\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms
[2009/12/25 01:35:01 | 000,524,288 | -HS- | C] () -- C:\Users\Noé\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
[2009/12/25 01:35:01 | 000,262,144 | -H-- | C] () -- C:\Users\Noé\ntuser.dat.LOG1
[2009/12/25 01:35:01 | 000,065,536 | -HS- | C] () -- C:\Users\Noé\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
[2009/12/25 01:35:01 | 000,000,000 | -H-- | C] () -- C:\Users\Noé\ntuser.dat.LOG2
[2009/03/12 17:25:18 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006/11/02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
========== Alternate Data Streams ========== @Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:A4AD016E
< End of report >