And there is the report:
2011/03/06 13:29:21.0878 5528 TDSS rootkit removing tool 2.4.20.0 Mar 2 2011 10:44:30
2011/03/06 13:29:23.0119 5528 ================================================================================
2011/03/06 13:29:23.0119 5528 SystemInfo:
2011/03/06 13:29:23.0120 5528
2011/03/06 13:29:23.0121 5528 OS Version: 6.0.6002 ServicePack: 2.0
2011/03/06 13:29:23.0121 5528 Product type: Workstation
2011/03/06 13:29:23.0121 5528 ComputerName: ORDI-XXX
2011/03/06 13:29:23.0122 5528 UserName: XXX
2011/03/06 13:29:23.0122 5528 Windows directory: C:\Windows
2011/03/06 13:29:23.0122 5528 System windows directory: C:\Windows
2011/03/06 13:29:23.0122 5528 Processor architecture: Intel x86
2011/03/06 13:29:23.0122 5528 Number of processors: 2
2011/03/06 13:29:23.0122 5528 Page size: 0x1000
2011/03/06 13:29:23.0122 5528 Boot type: Normal boot
2011/03/06 13:29:23.0122 5528 ================================================================================
2011/03/06 13:29:23.0715 5528 Initialize success
2011/03/06 13:29:32.0905 4948 ================================================================================
2011/03/06 13:29:32.0905 4948 Scan started
2011/03/06 13:29:32.0905 4948 Mode: Manual;
2011/03/06 13:29:32.0905 4948 ================================================================================
2011/03/06 13:29:33.0179 4948 61883 (585e64bb6dfbc0a2f1f0b554ded012df) C:\Windows\system32\DRIVERS\61883.sys
2011/03/06 13:29:33.0271 4948 A5AGU (d829323fbf23348ae6f34a89241648b9) C:\Windows\system32\DRIVERS\AGUx86.sys
2011/03/06 13:29:33.0334 4948 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
2011/03/06 13:29:33.0390 4948 adp94xx (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
2011/03/06 13:29:33.0456 4948 adpahci (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
2011/03/06 13:29:33.0488 4948 adpu160m (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
2011/03/06 13:29:33.0522 4948 adpu320 (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
2011/03/06 13:29:33.0570 4948 AegisP (91f3df93f40a74d222cd166fe95db633) C:\Windows\system32\DRIVERS\AegisP.sys
2011/03/06 13:29:33.0639 4948 AFD (a201207363aa900abf1a388468688570) C:\Windows\system32\drivers\afd.sys
2011/03/06 13:29:33.0703 4948 agp440 (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
2011/03/06 13:29:33.0755 4948 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
2011/03/06 13:29:33.0827 4948 aliide (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
2011/03/06 13:29:33.0895 4948 amdagp (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
2011/03/06 13:29:33.0939 4948 amdide (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
2011/03/06 13:29:33.0970 4948 AmdK7 (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
2011/03/06 13:29:34.0002 4948 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
2011/03/06 13:29:34.0071 4948 arc (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
2011/03/06 13:29:34.0129 4948 arcsas (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
2011/03/06 13:29:34.0280 4948 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
2011/03/06 13:29:34.0328 4948 atapi (2d9c903dc76a66813d350a562de40ed9) C:\Windows\system32\drivers\atapi.sys
2011/03/06 13:29:34.0420 4948 Avc (f4b56425a00beb32f5fa6603ff7b0ea2) C:\Windows\system32\DRIVERS\avc.sys
2011/03/06 13:29:34.0499 4948 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
2011/03/06 13:29:34.0553 4948 blbdrive (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
2011/03/06 13:29:34.0661 4948 bowser (74b442b2be1260b7588c136177ceac66) C:\Windows\system32\DRIVERS\bowser.sys
2011/03/06 13:29:34.0763 4948 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
2011/03/06 13:29:34.0803 4948 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
2011/03/06 13:29:34.0903 4948 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
2011/03/06 13:29:34.0944 4948 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
2011/03/06 13:29:34.0966 4948 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
2011/03/06 13:29:35.0017 4948 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
2011/03/06 13:29:35.0087 4948 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
2011/03/06 13:29:35.0188 4948 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
2011/03/06 13:29:35.0275 4948 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
2011/03/06 13:29:35.0338 4948 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
2011/03/06 13:29:35.0383 4948 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
2011/03/06 13:29:35.0484 4948 cmdide (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
2011/03/06 13:29:35.0547 4948 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\drivers\compbatt.sys
2011/03/06 13:29:35.0605 4948 CO_Mon (73f5d6835bfa66019c03e316d99649da) C:\Windows\system32\drivers\CO_Mon.sys
2011/03/06 13:29:35.0724 4948 cpuz133 (2f8653034a35526df88ea0c62b035a42) C:\Windows\system32\drivers\cpuz133_x32.sys
2011/03/06 13:29:35.0771 4948 crcdisk (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
2011/03/06 13:29:35.0826 4948 Crusoe (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
2011/03/06 13:29:35.0983 4948 DfsC (218d8ae46c88e82014f5d73d0236d9b2) C:\Windows\system32\Drivers\dfsc.sys
2011/03/06 13:29:36.0118 4948 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
2011/03/06 13:29:36.0206 4948 Dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys
2011/03/06 13:29:36.0271 4948 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys
2011/03/06 13:29:36.0330 4948 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys
2011/03/06 13:29:36.0476 4948 driverhardwarev2 (a694d8db6d360a3bbb0bd1517f1c1aee) C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
2011/03/06 13:29:36.0584 4948 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
2011/03/06 13:29:36.0644 4948 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
2011/03/06 13:29:36.0712 4948 E1G60 (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
2011/03/06 13:29:36.0862 4948 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
2011/03/06 13:29:36.0972 4948 eeCtrl (31c959319ef45b548d2111e338412270) C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
2011/03/06 13:29:37.0124 4948 elxstor (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
2011/03/06 13:29:37.0168 4948 ErrDev (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
2011/03/06 13:29:37.0315 4948 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
2011/03/06 13:29:37.0382 4948 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
2011/03/06 13:29:37.0485 4948 fdc (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
2011/03/06 13:29:37.0542 4948 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
2011/03/06 13:29:37.0586 4948 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
2011/03/06 13:29:37.0654 4948 flpydisk (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
2011/03/06 13:29:37.0707 4948 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
2011/03/06 13:29:37.0794 4948 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
2011/03/06 13:29:37.0879 4948 gagp30kx (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
2011/03/06 13:29:37.0982 4948 GearAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\drivers\GEARAspiWDM.sys
2011/03/06 13:29:38.0078 4948 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys
2011/03/06 13:29:38.0161 4948 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
2011/03/06 13:29:38.0209 4948 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
2011/03/06 13:29:38.0259 4948 HidIr (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
2011/03/06 13:29:38.0319 4948 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys
2011/03/06 13:29:38.0435 4948 HpCISSs (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
2011/03/06 13:29:38.0539 4948 HSF_DP (88749fbf8beb18c90e7d6626c8c1910b) C:\Windows\system32\DRIVERS\HSX_DP.sys
2011/03/06 13:29:38.0589 4948 HSXHWBS2 (fe440536bd98af772130dc3a6fe1915f) C:\Windows\system32\DRIVERS\HSXHWBS2.sys
2011/03/06 13:29:38.0640 4948 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
2011/03/06 13:29:38.0693 4948 i2omp (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
2011/03/06 13:29:38.0741 4948 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
2011/03/06 13:29:38.0817 4948 iaStor (2358c53f30cb9dcd1d3843c4e2f299b2) C:\Windows\system32\drivers\iastor.sys
2011/03/06 13:29:38.0862 4948 iaStorV (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
2011/03/06 13:29:38.0997 4948 IDSvix86 (68a2b91278fa986c35ee84049cb2a39c) C:\PROGRA~2\Symantec\DEFINI~1\SymcData\ipsdefs\20070823.002\IDSvix86.sys
2011/03/06 13:29:39.0100 4948 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
2011/03/06 13:29:39.0218 4948 IntcAzAudAddService (edc37b918e583a5a813c53d4f5588255) C:\Windows\system32\drivers\RTKVHDA.sys
2011/03/06 13:29:39.0310 4948 intelide (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
2011/03/06 13:29:39.0361 4948 intelppm (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
2011/03/06 13:29:39.0450 4948 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
2011/03/06 13:29:39.0573 4948 IPMIDRV (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
2011/03/06 13:29:39.0621 4948 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
2011/03/06 13:29:39.0685 4948 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
2011/03/06 13:29:39.0740 4948 isapnp (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
2011/03/06 13:29:39.0787 4948 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
2011/03/06 13:29:39.0918 4948 ISODrive (4871d582ac62422594b46f79a8243029) C:\Program Files\UltraISO\drivers\ISODrive.sys
2011/03/06 13:29:40.0017 4948 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
2011/03/06 13:29:40.0077 4948 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
2011/03/06 13:29:40.0146 4948 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
2011/03/06 13:29:40.0238 4948 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys
2011/03/06 13:29:40.0315 4948 KSecDD (86165728af9bf72d6442a894fdfb4f8b) C:\Windows\system32\Drivers\ksecdd.sys
2011/03/06 13:29:40.0424 4948 libusb0 (d1598203b19b4922531a8bd6811547f7) C:\Windows\system32\DRIVERS\libusb0.sys
2011/03/06 13:29:40.0494 4948 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
2011/03/06 13:29:40.0555 4948 LSI_FC (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
2011/03/06 13:29:40.0598 4948 LSI_SAS (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
2011/03/06 13:29:40.0658 4948 LSI_SCSI (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
2011/03/06 13:29:40.0676 4948 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
2011/03/06 13:29:40.0760 4948 MBAMSwissArmy (d68e165c3123aba3b1282eddb4213bd8) C:\Windows\system32\drivers\mbamswissarmy.sys
2011/03/06 13:29:40.0817 4948 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\Windows\system32\DRIVERS\mdmxsdk.sys
2011/03/06 13:29:40.0886 4948 megasas (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
2011/03/06 13:29:40.0957 4948 MegaSR (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
2011/03/06 13:29:41.0093 4948 MLPTDR_Q (b39bf953a3a304a2d12751692ec355a0) C:\Windows\system32\MLPTDR_Q.sys
2011/03/06 13:29:41.0138 4948 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
2011/03/06 13:29:41.0165 4948 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
2011/03/06 13:29:41.0224 4948 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
2011/03/06 13:29:41.0285 4948 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
2011/03/06 13:29:41.0336 4948 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
2011/03/06 13:29:41.0401 4948 mpio (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
2011/03/06 13:29:41.0428 4948 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
2011/03/06 13:29:41.0541 4948 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
2011/03/06 13:29:41.0581 4948 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
2011/03/06 13:29:41.0611 4948 mrxsmb (454341e652bdf5e01b0f2140232b073e) C:\Windows\system32\DRIVERS\mrxsmb.sys
2011/03/06 13:29:41.0644 4948 mrxsmb10 (2a4901aff069944fa945ed5bbf4dcde3) C:\Windows\system32\DRIVERS\mrxsmb10.sys
2011/03/06 13:29:41.0691 4948 mrxsmb20 (28b3f1ab44bdd4432c041581412f17d9) C:\Windows\system32\DRIVERS\mrxsmb20.sys
2011/03/06 13:29:41.0722 4948 msahci (28023e86f17001f7cd9b15a5bc9ae07d) C:\Windows\system32\drivers\msahci.sys
2011/03/06 13:29:41.0772 4948 msdsm (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
2011/03/06 13:29:41.0846 4948 MSDV (343291a4dfd7c923c3f71f550830ec1c) C:\Windows\system32\DRIVERS\msdv.sys
2011/03/06 13:29:41.0893 4948 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
2011/03/06 13:29:41.0939 4948 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
2011/03/06 13:29:42.0032 4948 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
2011/03/06 13:29:42.0086 4948 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
2011/03/06 13:29:42.0197 4948 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
2011/03/06 13:29:42.0245 4948 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
2011/03/06 13:29:42.0284 4948 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
2011/03/06 13:29:42.0323 4948 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
2011/03/06 13:29:42.0369 4948 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
2011/03/06 13:29:42.0529 4948 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
2011/03/06 13:29:42.0630 4948 NAVENG (a6f5ab84104412cd9742e7ee942ea08d) C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20071010.023\NAVENG.SYS
2011/03/06 13:29:42.0685 4948 NAVEX15 (c8069bf95363a58441cb33e4b989dd4f) C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20071010.023\NAVEX15.SYS
2011/03/06 13:29:42.0798 4948 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
2011/03/06 13:29:42.0859 4948 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
2011/03/06 13:29:42.0902 4948 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
2011/03/06 13:29:42.0932 4948 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
2011/03/06 13:29:42.0964 4948 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
2011/03/06 13:29:43.0033 4948 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
2011/03/06 13:29:43.0082 4948 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
2011/03/06 13:29:43.0172 4948 netr73 (91d44aa2a61006136da32118a179bf12) C:\Windows\system32\DRIVERS\netr73.sys
2011/03/06 13:29:43.0219 4948 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
2011/03/06 13:29:43.0352 4948 NPF (d21fee8db254ba762656878168ac1db6) C:\Windows\system32\drivers\npf.sys
2011/03/06 13:29:43.0397 4948 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
2011/03/06 13:29:43.0443 4948 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
2011/03/06 13:29:43.0500 4948 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
2011/03/06 13:29:43.0569 4948 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
2011/03/06 13:29:43.0611 4948 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
2011/03/06 13:29:43.0910 4948 nvlddmkm (0013f8cf1322487fb247eae56ef0ed90) C:\Windows\system32\DRIVERS\nvlddmkm.sys
2011/03/06 13:29:44.0261 4948 nvraid (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
2011/03/06 13:29:44.0354 4948 nvstor (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
2011/03/06 13:29:44.0426 4948 nv_agp (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
2011/03/06 13:29:44.0542 4948 ohci1394 (6f310e890d46e246e0e261a63d9b36b4) C:\Windows\system32\DRIVERS\ohci1394.sys
2011/03/06 13:29:44.0673 4948 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
2011/03/06 13:29:44.0714 4948 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
2011/03/06 13:29:44.0782 4948 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
2011/03/06 13:29:44.0846 4948 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
2011/03/06 13:29:44.0905 4948 pciide (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
2011/03/06 13:29:44.0937 4948 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
2011/03/06 13:29:44.0987 4948 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
2011/03/06 13:29:45.0176 4948 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
2011/03/06 13:29:45.0220 4948 Processor (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
2011/03/06 13:29:45.0307 4948 Ps2 (390c204ced3785609ab24e9c52054a84) C:\Windows\system32\DRIVERS\PS2.sys
2011/03/06 13:29:45.0360 4948 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
2011/03/06 13:29:45.0482 4948 ql2300 (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
2011/03/06 13:29:45.0555 4948 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
2011/03/06 13:29:45.0601 4948 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
2011/03/06 13:29:45.0662 4948 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
2011/03/06 13:29:45.0701 4948 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
2011/03/06 13:29:45.0757 4948 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
2011/03/06 13:29:45.0808 4948 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
2011/03/06 13:29:45.0850 4948 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
2011/03/06 13:29:45.0937 4948 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
2011/03/06 13:29:45.0996 4948 rdpdr (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
2011/03/06 13:29:46.0026 4948 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
2011/03/06 13:29:46.0103 4948 RDPWD (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
2011/03/06 13:29:46.0226 4948 RivaTuner32 (c0c8909be3ecc9df8089112bf9be954e) C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys
2011/03/06 13:29:46.0338 4948 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
2011/03/06 13:29:46.0407 4948 RT73 (b2e08acc0d1b753023646237f62c75c5) C:\Windows\system32\DRIVERS\rt73.sys
2011/03/06 13:29:46.0455 4948 RTL8169 (c347a3cde57077056e7e73d3498f7d7d) C:\Windows\system32\DRIVERS\Rtlh86.sys
2011/03/06 13:29:46.0507 4948 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
2011/03/06 13:29:46.0599 4948 SCDEmu (11d4171bd7f6776a85553ca1f83f7303) C:\Windows\system32\drivers\SCDEmu.sys
2011/03/06 13:29:46.0755 4948 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
2011/03/06 13:29:46.0842 4948 Ser2pl (6cd8dc61304bf5ca16fe48dc3039cc05) C:\Windows\system32\DRIVERS\ser2pl.sys
2011/03/06 13:29:46.0888 4948 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\DRIVERS\serenum.sys
2011/03/06 13:29:46.0927 4948 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
2011/03/06 13:29:46.0973 4948 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\DRIVERS\sermouse.sys
2011/03/06 13:29:47.0064 4948 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
2011/03/06 13:29:47.0113 4948 sffp_mmc (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
2011/03/06 13:29:47.0149 4948 sffp_sd (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
2011/03/06 13:29:47.0195 4948 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys
2011/03/06 13:29:47.0272 4948 sisagp (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
2011/03/06 13:29:47.0305 4948 SiSRaid2 (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
2011/03/06 13:29:47.0343 4948 SiSRaid4 (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
2011/03/06 13:29:47.0429 4948 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
2011/03/06 13:29:47.0561 4948 SPBBCDrv (1e892a18e839e7a4df0459f246f92627) C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys
2011/03/06 13:29:47.0646 4948 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
2011/03/06 13:29:47.0760 4948 sptd (71e276f6d189413266ea22171806597b) C:\Windows\system32\Drivers\sptd.sys
2011/03/06 13:29:47.0760 4948 Suspicious file (NoAccess): C:\Windows\system32\Drivers\sptd.sys. md5: 71e276f6d189413266ea22171806597b
2011/03/06 13:29:47.0767 4948 sptd - detected Locked file (1)
2011/03/06 13:29:47.0809 4948 SRTSP (f908190f7fba8acf1fb021f8a81dad13) C:\Windows\system32\Drivers\SRTSP.SYS
2011/03/06 13:29:47.0951 4948 SRTSPL (c90be8b6ac2cbcb459b824dbb1d235b7) C:\Windows\system32\Drivers\SRTSPL.SYS
2011/03/06 13:29:48.0039 4948 SRTSPX (ec2e76d6470103ad303667f6ed3886bd) C:\Windows\system32\Drivers\SRTSPX.SYS
2011/03/06 13:29:48.0111 4948 srv (ff3cbc13db84d81f56931bc922cc37c4) C:\Windows\system32\DRIVERS\srv.sys
2011/03/06 13:29:48.0194 4948 srv2 (d15959d9f69f0d39a0153e9c244f20dd) C:\Windows\system32\DRIVERS\srv2.sys
2011/03/06 13:29:48.0270 4948 srvnet (faa0d553a49e85008c6bb3781987c574) C:\Windows\system32\DRIVERS\srvnet.sys
2011/03/06 13:29:48.0360 4948 SSPORT (ef3458337d7341a05169cefc73709264) C:\Windows\system32\Drivers\SSPORT.sys
2011/03/06 13:29:48.0480 4948 SUPERWEBCAM (88a75bff38e6da6975950c8576442842) C:\Windows\system32\DRIVERS\superwebcam.sys
2011/03/06 13:29:48.0532 4948 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
2011/03/06 13:29:48.0637 4948 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
2011/03/06 13:29:48.0673 4948 SymEvent (043ea08fa1dd7cafa41abfccbbd1d996) C:\Windows\system32\Drivers\SYMEVENT.SYS
2011/03/06 13:29:48.0808 4948 SymIM (36c15c5f64e6da17ba42db833c813af9) C:\Windows\system32\DRIVERS\SymIM.sys
2011/03/06 13:29:48.0825 4948 SymIMMP (36c15c5f64e6da17ba42db833c813af9) C:\Windows\system32\DRIVERS\SymIM.sys
2011/03/06 13:29:48.0892 4948 SYMREDRV (5be4647e971783ff1f83a1a4317c721b) C:\Windows\System32\Drivers\SYMREDRV.SYS
2011/03/06 13:29:48.0960 4948 SYMTDI (e0237c3748cdd19acf6606eeda74f715) C:\Windows\System32\Drivers\SYMTDI.SYS
2011/03/06 13:29:49.0007 4948 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
2011/03/06 13:29:49.0074 4948 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
2011/03/06 13:29:49.0226 4948 Tcpip (a474879afa4a596b3a531f3e69730dbf) C:\Windows\system32\drivers\tcpip.sys
2011/03/06 13:29:49.0276 4948 Tcpip6 (a474879afa4a596b3a531f3e69730dbf) C:\Windows\system32\DRIVERS\tcpip.sys
2011/03/06 13:29:49.0350 4948 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
2011/03/06 13:29:49.0391 4948 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
2011/03/06 13:29:49.0424 4948 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
2011/03/06 13:29:49.0476 4948 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
2011/03/06 13:29:49.0603 4948 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
2011/03/06 13:29:49.0824 4948 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
2011/03/06 13:29:49.0899 4948 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
2011/03/06 13:29:49.0948 4948 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
2011/03/06 13:29:50.0076 4948 uagp35 (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
2011/03/06 13:29:50.0178 4948 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
2011/03/06 13:29:50.0248 4948 uliagpkx (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
2011/03/06 13:29:50.0359 4948 uliahci (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
2011/03/06 13:29:50.0429 4948 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
2011/03/06 13:29:50.0508 4948 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
2011/03/06 13:29:50.0560 4948 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
2011/03/06 13:29:50.0658 4948 USBAAPL (4b8a9c16b6d9258ed99c512aecb8c555) C:\Windows\system32\Drivers\usbaapl.sys
2011/03/06 13:29:50.0722 4948 usbaudio (32db9517628ff0d070682aab61e688f0) C:\Windows\system32\drivers\usbaudio.sys
2011/03/06 13:29:50.0805 4948 usbbus (d9f3bb7c292f194f3b053ce295754eb8) C:\Windows\system32\DRIVERS\lgusbbus.sys
2011/03/06 13:29:50.0882 4948 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
2011/03/06 13:29:50.0932 4948 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
2011/03/06 13:29:51.0006 4948 UsbDiag (c4f77da649f99fad116ea585376fc164) C:\Windows\system32\DRIVERS\lgusbdiag.sys
2011/03/06 13:29:51.0063 4948 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
2011/03/06 13:29:51.0099 4948 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
2011/03/06 13:29:51.0186 4948 USBModem (c0613ce45e617bc671de8ebb1b30d175) C:\Windows\system32\DRIVERS\lgusbmodem.sys
2011/03/06 13:29:51.0258 4948 usbohci (38dbc7dd6cc5a72011f187425384388b) C:\Windows\system32\drivers\usbohci.sys
2011/03/06 13:29:51.0348 4948 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
2011/03/06 13:29:51.0434 4948 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
2011/03/06 13:29:51.0496 4948 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
2011/03/06 13:29:51.0545 4948 usbuhci (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
2011/03/06 13:29:51.0609 4948 VBoxDrv (9b7d30e837c80ec406676c0fe784107f) C:\Windows\system32\DRIVERS\VBoxDrv.sys
2011/03/06 13:29:51.0716 4948 VBoxNetAdp (e34cb1e4756b465cc832354162dfcef0) C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
2011/03/06 13:29:51.0787 4948 VBoxNetFlt (c7519f03685f5d0291b233310bcf34b1) C:\Windows\system32\DRIVERS\VBoxNetFlt.sys
2011/03/06 13:29:51.0891 4948 VBoxUSBMon (a2229877303764021c088e6400b3e063) C:\Windows\system32\DRIVERS\VBoxUSBMon.sys
2011/03/06 13:29:51.0964 4948 vga (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
2011/03/06 13:29:52.0043 4948 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
2011/03/06 13:29:52.0169 4948 viaagp (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
2011/03/06 13:29:52.0238 4948 ViaC7 (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
2011/03/06 13:29:52.0300 4948 viaide (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
2011/03/06 13:29:52.0386 4948 vncdrv (4ec979b157d1aa075330362acb5424e5) C:\Windows\system32\DRIVERS\vncdrv.sys
2011/03/06 13:29:52.0451 4948 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
2011/03/06 13:29:52.0504 4948 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
2011/03/06 13:29:52.0542 4948 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
2011/03/06 13:29:52.0594 4948 vsmraid (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
2011/03/06 13:29:52.0644 4948 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
2011/03/06 13:29:52.0672 4948 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/06 13:29:52.0697 4948 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
2011/03/06 13:29:52.0760 4948 Wd (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
2011/03/06 13:29:52.0806 4948 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
2011/03/06 13:29:52.0919 4948 winachsf (72cc6a8ca7891031d6380db5025c773c) C:\Windows\system32\DRIVERS\HSX_CNXT.sys
2011/03/06 13:29:53.0110 4948 WmBEnum (84a90f13eebf4380345ef9474d30f10e) C:\Windows\system32\drivers\WmBEnum.sys
2011/03/06 13:29:53.0141 4948 WmFilter (eb0034ac02a44dc784a3174d2b81e764) C:\Windows\system32\drivers\WmFilter.sys
2011/03/06 13:29:53.0180 4948 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\drivers\wmiacpi.sys
2011/03/06 13:29:53.0245 4948 WmVirHid (72c4f5a748c74d8d4016ccfa7367210f) C:\Windows\system32\drivers\WmVirHid.sys
2011/03/06 13:29:53.0306 4948 WmXlCore (eacdcced934a185e61ce0684f71c2dec) C:\Windows\system32\drivers\WmXlCore.sys
2011/03/06 13:29:53.0376 4948 WpdUsb (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
2011/03/06 13:29:53.0442 4948 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
2011/03/06 13:29:53.0503 4948 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
2011/03/06 13:29:53.0564 4948 XAudio (dab33cfa9dd24251aaa389ff36b64d4b) C:\Windows\system32\DRIVERS\xaudio.sys
2011/03/06 13:29:53.0955 4948 ================================================================================
2011/03/06 13:29:53.0955 4948 Scan finished
2011/03/06 13:29:53.0955 4948 ================================================================================
2011/03/06 13:29:53.0970 3420 Detected object count: 1
2011/03/06 13:31:39.0965 3420 Locked file(sptd) - User select action: Skip [/code]
I have also made OTL scan and there is the report:
OTL.txt
[code=auto:0]OTL logfile created on: 2011-03-06 13:34:59 - Run 1
OTL by OldTimer - Version 3.2.22.2 Folder = C:\Users\Lehmar\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6002.18005)
Locale: 00000C0C | Country: XXX | Language: FRC | Date Format: yyyy-MM-dd
3,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 32,00% Memory free
6,00 Gb Paging File | 4,00 Gb Available in Paging File | 58,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 288,73 Gb Total Space | 23,23 Gb Free Space | 8,05% Space Free | Partition Type: NTFS
Drive D: | 9,36 Gb Total Space | 3,02 Gb Free Space | 32,23% Space Free | Partition Type: NTFS
Drive E: | 285,53 Gb Total Space | 33,81 Gb Free Space | 11,84% Space Free | Partition Type: NTFS
Drive N: | 6,48 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: ORDI-DE-XXX | User Name: Lehmar | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011-03-06 13:34:16 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\Lehmar\Desktop\OTL.exe
PRC - [2011-03-03 00:26:47 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011-01-27 10:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2010-12-30 12:33:20 | 000,326,144 | ---- | M] (Okozo) -- C:\Program Files\Okozo\Okozo Desktop\OkozoDesktop.exe
PRC - [2010-12-17 13:09:54 | 033,404,232 | ---- | M] (Sports Interactive) -- C:\Program Files\Sports Interactive\Football Manager 2011\fm.exe
PRC - [2010-12-06 08:31:52 | 001,910,152 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
PRC - [2010-12-06 08:31:48 | 001,238,408 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2010-10-22 16:47:26 | 000,524,288 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
PRC - [2010-06-02 19:50:58 | 001,144,104 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2010-02-25 16:11:04 | 000,856,064 | ---- | M] () -- C:\Users\Lehmar\AppData\Local\TVersity\Media Server\MediaServer.exe
PRC - [2009-11-12 18:46:23 | 003,171,760 | ---- | M] (Tonec Inc.) -- E:\Internet Download Manager\IDMan.exe
PRC - [2009-10-15 04:51:51 | 000,263,600 | ---- | M] (Tonec Inc.) -- E:\Internet Download Manager\IEMonitor.exe
PRC - [2009-09-25 13:16:06 | 000,093,960 | ---- | M] (Sling Media Inc.) -- C:\Program Files\Sling Media\SlingAgent\SlingAgentService.exe
PRC - [2009-04-10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2009-04-10 23:27:30 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\conime.exe
PRC - [2008-02-23 05:40:49 | 001,245,064 | ---- | M] () -- C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
PRC - [2008-01-20 21:23:32 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
PRC - [2008-01-15 06:26:18 | 004,874,240 | ---- | M] (Realtek Semiconductor) -- C:\WINDOWS\RtHDVCpl.exe
PRC - [2007-09-02 12:58:52 | 000,495,616 | ---- | M] () -- E:\Rocket Dock\RocketDock\RocketDock.exe
PRC - [2007-08-24 10:07:00 | 000,149,864 | ---- | M] (Symantec Corporation) -- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
PRC - [2007-07-12 10:36:12 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2007-07-12 10:36:10 | 000,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2007-04-18 10:01:34 | 000,065,536 | ---- | M] (Hewlett-Packard Company) -- C:\hp\support\hpsysdrv.exe
PRC - [2007-02-15 06:59:00 | 000,118,784 | ---- | M] (OsdMaestro) -- C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
========== Modules (SafeList) ==========
MOD - [2011-03-06 13:34:16 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\Lehmar\Desktop\OTL.exe
MOD - [2010-08-31 10:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll
MOD - [2009-03-26 10:35:39 | 000,034,224 | ---- | M] (Tonec Inc.) -- E:\Internet Download Manager\idmmkb.dll
MOD - [2007-09-02 12:57:36 | 000,069,632 | ---- | M] () -- E:\Rocket Dock\RocketDock\RocketDock.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- -- (G Data Tuner Service)
SRV - [2011-01-27 10:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2011-01-12 15:51:46 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011-01-09 20:28:42 | 003,129,432 | ---- | M] () [Auto | Running] -- C:/Program Files/Common Files/Akamai/netsession_win_dbc0250.dll -- (Akamai)
SRV - [2010-12-20 15:55:14 | 000,251,760 | ---- | M] (CybelSoft) [On_Demand | Stopped] -- C:\Program Files\ma-config.com\maconfservice.exe -- (maconfservice)
SRV - [2010-12-06 08:31:48 | 001,238,408 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2010-03-25 09:25:22 | 030,969,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2010-02-25 16:11:04 | 000,856,064 | ---- | M] () [Auto | Running] -- C:\Users\Lehmar\AppData\Local\TVersity\Media Server\MediaServer.exe -- (TVersityMediaServer)
SRV - [2010-02-19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009-12-06 20:18:26 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009-09-25 13:16:06 | 000,093,960 | ---- | M] (Sling Media Inc.) [Auto | Running] -- C:\Program Files\Sling Media\SlingAgent\SlingAgentService.exe -- (SlingAgentService)
SRV - [2008-02-23 05:40:49 | 001,245,064 | ---- | M] () [On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -- (Symantec Core LC)
SRV - [2008-01-20 21:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007-08-24 10:07:00 | 000,149,864 | ---- | M] (Symantec Corporation) [Auto | Running] -- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (LiveUpdate Notice)
SRV - [2007-08-24 10:07:00 | 000,149,864 | ---- | M] (Symantec Corporation) [Auto | Running] -- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (CLTNetCnService)
SRV - [2007-08-24 10:07:00 | 000,149,864 | ---- | M] (Symantec Corporation) [Auto | Running] -- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (ccSetMgr)
SRV - [2007-08-24 10:07:00 | 000,149,864 | ---- | M] (Symantec Corporation) [Auto | Running] -- c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (ccEvtMgr)
SRV - [2007-08-23 01:35:00 | 003,192,184 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- c:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE -- (LiveUpdate)
SRV - [2007-08-23 01:35:00 | 000,243,064 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- c:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler)
SRV - [2007-08-21 12:21:00 | 000,055,640 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe -- (comHost)
SRV - [2007-07-12 10:36:12 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel®
SRV - [2005-08-02 16:18:49 | 000,086,016 | ---- | M] (CACE Technologies) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2003-04-18 18:06:26 | 000,008,192 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\srvany.exe -- (KMService)
========== Driver Services (SafeList) ==========
DRV - [2010-12-20 18:09:00 | 000,038,224 | ---- | M] (Malwarebytes Corporation) [Kernel | Disabled | Running] -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2010-10-08 15:57:54 | 000,143,184 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\VBoxDrv.sys -- (VBoxDrv)
DRV - [2010-10-08 15:57:54 | 000,111,568 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\VBoxNetFlt.sys -- (VBoxNetFlt)
DRV - [2010-10-08 15:57:54 | 000,100,560 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
DRV - [2010-10-08 15:57:54 | 000,041,936 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon)
DRV - [2010-08-30 11:19:54 | 000,014,336 | ---- | M] (CybelSoft) [Kernel | On_Demand | Stopped] -- C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys -- (driverhardwarev2)
DRV - [2010-03-10 16:25:58 | 000,020,968 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\cpuz133_x32.sys -- (cpuz133)
DRV - [2009-09-11 11:48:04 | 000,066,056 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\WmXlCore.sys -- (WmXlCore)
DRV - [2009-09-11 11:47:54 | 000,014,984 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\WmVirHid.sys -- (WmVirHid)
DRV - [2009-09-11 11:47:32 | 000,035,592 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\WmFilter.sys -- (WmFilter)
DRV - [2009-09-11 11:47:22 | 000,022,792 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\WmBEnum.sys -- (WmBEnum)
DRV - [2009-08-22 13:25:00 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys -- (RivaTuner32)
DRV - [2009-03-18 16:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-01-15 07:19:00 | 007,740,320 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2008-12-30 20:04:30 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2008-08-07 02:09:32 | 000,905,728 | ---- | M] (D-Link Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\AGUx86.sys -- (A5AGU)
DRV - [2008-06-12 01:28:49 | 000,056,108 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2008-05-08 04:05:18 | 000,266,752 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSXHWBS2.sys -- (HSXHWBS2)
DRV - [2008-05-08 04:03:18 | 000,980,992 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\HSX_DP.sys -- (HSF_DP)
DRV - [2008-02-26 14:07:54 | 000,073,728 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive)
DRV - [2008-02-23 05:42:12 | 000,123,952 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2007-11-09 03:14:01 | 000,005,120 | ---- | M] (Samsung Electronics) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\SSPORT.SYS -- (SSPORT)
DRV - [2007-10-18 06:36:54 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2007-10-09 19:00:00 | 000,865,904 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Definitions\VirusDefs\20071010.023\NAVEX15.SYS -- (NAVEX15)
DRV - [2007-10-09 19:00:00 | 000,395,312 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2007-10-09 19:00:00 | 000,081,232 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Symantec\Definitions\VirusDefs\20071010.023\NAVENG.SYS -- (NAVENG)
DRV - [2007-10-03 11:18:12 | 000,099,840 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2007-08-17 02:23:00 | 000,446,512 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys -- (SPBBCDrv)
DRV - [2007-08-15 02:27:00 | 000,180,272 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\ProgramData\Symantec\Definitions\SymcData\ipsdefs\20070823.002\IDSvix86.sys -- (IDSvix86)
DRV - [2007-08-13 01:50:00 | 000,188,464 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\SYMTDI.SYS -- (SYMTDI)
DRV - [2007-08-13 01:50:00 | 000,022,320 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\SYMREDRV.SYS -- (SYMREDRV)
DRV - [2007-08-09 05:27:00 | 000,031,280 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\SymIM.sys -- (SymIMMP)
DRV - [2007-08-09 05:27:00 | 000,031,280 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\SymIM.sys -- (SymIM)
DRV - [2007-08-08 04:39:00 | 000,036,056 | ---- | M] (Symantec Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\CO_Mon.sys -- (CO_Mon)
DRV - [2007-07-30 11:43:00 | 000,317,616 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\srtspl.sys -- (SRTSPL)
DRV - [2007-07-30 11:43:00 | 000,278,576 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\System32\drivers\srtsp.sys -- (SRTSP)
DRV - [2007-07-30 11:43:00 | 000,043,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\srtspx.sys -- (SRTSPX)
DRV - [2007-05-11 16:40:42 | 000,329,728 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\netr73.sys -- (netr73)
DRV - [2007-04-09 09:56:22 | 000,021,248 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2007-04-09 09:55:08 | 000,022,912 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2007-04-09 09:53:24 | 000,012,672 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2006-06-27 07:56:50 | 000,031,872 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\superwebcam.sys -- (SUPERWEBCAM)
DRV - [2006-05-12 09:44:50 | 000,343,168 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\rt73.sys -- (RT73)
DRV - [2006-04-22 21:34:34 | 000,029,184 | ---- | M] (http://libusb-win32.sourceforge.net) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\libusb0.sys -- (libusb0)
DRV - [2005-12-12 11:27:00 | 000,019,072 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\PS2.sys -- (Ps2)
DRV - [2005-11-04 10:06:52 | 000,048,640 | ---- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\ser2pl.sys -- (Ser2pl)
DRV - [2005-08-02 16:10:13 | 000,032,512 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\npf.sys -- (NPF)
DRV - [2004-06-26 12:22:00 | 000,004,736 | ---- | M] (RDV Soft) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\vncdrv.sys -- (vncdrv)
DRV - [2003-07-23 02:44:18 | 000,018,848 | ---- | M] (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.) [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\MLPTDR_Q.SYS -- (MLPTDR_Q)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_ca&c=81&bd=Pavilion&pf=desktop
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=fr_ca&c=81&bd=Pavilion&pf=desktop
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.cherche.us
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = cherche.us
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.cherche.us/Result.php?client=pub-0420647136319153&cof=GIMP%3A009900%3BT%3A000000%3BALC%3A551a8b%3BGFNT%3AB7B7B7%3BLC%3A2200cc%3BBGC%3AFFFFFF%3BVLC%3A551a8b%3BGALT%3A008B45%3BFORID%3A11%3BDIV%3A%23FFFFF0%3B&ie=ISO-8859-1&q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.freemov2avi.com/search/
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local
IE - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 82.66.124.146:8081
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Ask"
FF - prefs.js..browser.search.order.1: "Ask"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=302398"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://fr.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:fr:official"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3
FF - prefs.js..extensions.enabledItems: {987311C6-B504-4aa2-90BF-60CC49808D42}:2.2
FF - prefs.js..extensions.enabledItems: en-CA@dictionaries.addons.mozilla.org:1.1.5
FF - prefs.js..extensions.enabledItems: {3e9a3920-1b27-11da-8cd6-0800200c9a66}:3.4.1
FF - prefs.js..extensions.enabledItems: {2763565c-cc55-fb76-3817-a3f5e73bfb7b}:1.3
FF - prefs.js..extensions.enabledItems: eafo3fflauncher@ea.com:1.1
FF - prefs.js..extensions.enabledItems: {1280606b-2510-4fe0-97ef-9b5a22eafe41}:1.0.9
FF - prefs.js..extensions.enabledItems: {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.13
FF - prefs.js..extensions.enabledItems: foxdie_ext_ocelot@foxdie.us:3.1.9.1
FF - prefs.js..extensions.enabledItems: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}:1.2.1
FF - prefs.js..extensions.enabledItems: {9AA46F4F-4DC7-4c06-97AF-5035170633FE}:20.1.0.2
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100211.5
FF - prefs.js..extensions.enabledItems: mozilla_cc@internetdownloadmanager.com:6.7
FF - prefs.js..extensions.enabledItems: swagatamca@gmail.com:6.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: justintvpublisher@justin.tv:3.1.5.5
FF - prefs.js..extensions.enabledItems: pdfforge@mybrowserbar.com:4.1
FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:3.6.2
FF - prefs.js..extensions.enabledItems: firefox@tvunetworks.com:2
FF - prefs.js..extensions.enabledItems: 4
FF - prefs.js..extensions.enabledItems: 9
FF - prefs.js..extensions.enabledItems: 1
FF - prefs.js..extensions.enabledItems: vlcplugin@radicalsoft.com:1.0.2
FF - prefs.js..extensions.enabledItems: vshare@toolbar:1.0.0
FF - prefs.js..extensions.enabledItems: webaddon3d_assoftware-ch@extensions.assoftware.ch:1.4.0.2
FF - prefs.js..extensions.enabledItems: wtxpcom@mybrowserbar.com:4.1
FF - prefs.js..extensions.enabledItems: foxdie_theme_blue_ocelot@foxdie.us:3.1.9.1
FF - prefs.js..extensions.enabledItems: foxdie_theme_graphite_ocelot@foxdie.us:3.1.9.1
FF - prefs.js..extensions.enabledItems: {00352F14-3F76-4e4d-ACFF-9972D7E4B3B9}:0.7.1
FF - prefs.js..keyword.URL: "http://www.google.com/search?btnI=I'm%20feeling%20lucky&q= "
FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord [2008-06-28 11:47:30 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\FFToolbar@bitdefender.com: C:\Program Files\BitDefender\BitDefender 2010\bdaphffext\ [2010-03-26 15:32:59 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.17\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-03-03 00:26:52 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.17\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-03-03 00:26:52 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
[2008-08-26 09:39:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Extensions
[2011-03-05 15:17:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions
[2009-10-07 18:36:08 | 000,000,000 | ---D | M] (MacOSX Theme) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{00352F14-3F76-4e4d-ACFF-9972D7E4B3B9}
[2009-08-13 10:14:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe41}
[2009-08-23 14:16:02 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2009-12-19 15:07:05 | 000,000,000 | ---D | M] (Nuke Anything Enhanced) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{1ced4832-f06e-413f-aa14-9eb63ad40ace}
[2009-12-19 15:05:35 | 000,000,000 | ---D | M] (CPA Blocker) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{2763565c-cc55-fb76-3817-a3f5e73bfb7b}
[2010-03-13 22:45:09 | 000,000,000 | ---D | M] (SwitchProxy Tool) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{27A2FD41-CB23-4518-AB5C-C25BAFFDE531}
[2010-04-03 21:40:18 | 000,000,000 | ---D | M] (Flashblock) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
[2011-01-29 17:45:06 | 000,000,000 | ---D | M] (Charles Autoconfiguration) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{3e9a3920-1b27-11da-8cd6-0800200c9a66}
[2010-01-02 19:16:14 | 000,000,000 | ---D | M] (ReloadEvery) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{888d99e7-e8b5-46a3-851e-1ec45da1e644}
[2010-06-03 18:14:26 | 000,000,000 | ---D | M] (BugMeNot) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}
[2010-01-08 16:20:32 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010-02-14 18:57:35 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2010-01-02 19:16:14 | 000,000,000 | ---D | M] (FoxTab) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}
[2010-06-09 14:48:47 | 000,000,000 | ---D | M] (FIFA Online Web Launcher) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\eafo3fflauncher@ea.com
[2010-01-02 19:16:09 | 000,000,000 | ---D | M] (Canadian English Dictionary) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\en-CA@dictionaries.addons.mozilla.org
[2010-01-02 19:16:14 | 000,000,000 | ---D | M] (TVU Web Player) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\firefox@tvunetworks.com
[2009-10-07 19:16:50 | 000,000,000 | ---D | M] ("Foxdie for Firefox") -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\foxdie_ext_ocelot@foxdie.us
[2009-10-07 19:15:42 | 000,000,000 | ---D | M] ("Foxdie (Blue)") -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\foxdie_theme_blue_ocelot@foxdie.us
[2009-10-07 19:15:42 | 000,000,000 | ---D | M] ("Foxdie (Graphite)") -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\foxdie_theme_graphite_ocelot@foxdie.us
[2010-04-10 23:05:45 | 000,000,000 | ---D | M] (Illimitux) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\illimitux@illimitux.net
[2009-04-08 13:42:47 | 000,000,000 | ---D | M] (Justin.tv Publisher) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\justintvpublisher@justin.tv
[2009-12-13 13:19:16 | 000,000,000 | ---D | M] (Internet Downlaod Manager CC) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\swagatamca@gmail.com
[2010-07-18 00:10:57 | 000,000,000 | ---D | M] (VLC Media Player - Web Plugin) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\vlcplugin@radicalsoft.com
[2010-10-02 10:46:29 | 000,000,000 | ---D | M] (vShare Plugin) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\vshare@toolbar
[2009-03-27 14:28:55 | 000,000,000 | ---D | M] (webaddon3D) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\webaddon3d_assoftware-ch@extensions.assoftware.ch
[2009-03-27 14:28:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\webaddon3d_assoftware-ch@extensions.assoftware.ch\chrome
[2009-03-27 14:28:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\webaddon3d_assoftware-ch@extensions.assoftware.ch\components
[2009-03-27 14:28:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\webaddon3d_assoftware-ch@extensions.assoftware.ch\defaults
[2009-03-27 14:28:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\webaddon3d_assoftware-ch@extensions.assoftware.ch\META-INF
[2009-03-27 14:28:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lehmar\AppData\Roaming\mozilla\Firefox\Profiles\ham239vo.default\extensions\webaddon3d_assoftware-ch@extensions.assoftware.ch\platform
[2010-01-10 23:37:02 | 000,001,584 | ---- | M] () -- C:\Users\Lehmar\AppData\Roaming\Mozilla\Firefox\Profiles\ham239vo.default\searchplugins\cherche.xml
[2011-03-05 15:17:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2009-08-21 21:33:18 | 000,000,000 | ---D | M] (G Data Filtre Internet) -- C:\Program Files\Mozilla Firefox\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170633FE}
[2010-11-06 10:56:00 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010-11-18 16:58:20 | 000,000,000 | ---D | M] (Widgi Toolbar Platform) -- C:\PROGRAM FILES\COMMON FILES\SPIGOT\WTXPCOM
[2010-11-18 16:58:20 | 000,000,000 | ---D | M] (pdfforge Toolbar) -- C:\PROGRAM FILES\PDFFORGE TOOLBAR\FF
[2010-02-18 17:47:16 | 000,000,000 | ---D | M] (IDM CC) -- C:\USERS\LEHMAR\APPDATA\ROAMING\IDM\IDMMZCC3
[2009-09-02 14:40:19 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2007-08-24 08:52:00 | 000,300,400 | ---- | M] (Symantec Corporation) -- C:\Program Files\Mozilla Firefox\components\coFFPlgn.dll
[2010-09-15 03:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2008-10-09 02:58:40 | 000,044,288 | ---- | M] (MeadCo Corp.) -- C:\Program Files\Mozilla Firefox\plugins\npmeadax.dll
[2006-07-31 15:07:16 | 000,098,304 | ---- | M] (Zylom) -- C:\Program Files\Mozilla Firefox\plugins\npzylomgamesplayer.dll
[2010-10-03 16:45:09 | 000,001,516 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml
[2010-10-03 16:45:09 | 000,001,822 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
[2010-10-03 16:45:09 | 000,000,757 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-france.xml
[2010-10-03 16:45:09 | 000,001,426 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-fr.xml
[2010-10-03 16:45:09 | 000,000,652 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-france.xml
O1 HOSTS File: ([2010-05-07 18:51:12 | 000,000,444 | ---- | M]) - C:\WINDOWS\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 genuine.microsoft.com
O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com
O1 - Hosts: 127.0.0.1 sa.windows.com
O1 - Hosts: 127.0.0.1 se.windows.com
O1 - Hosts: 127.0.0.1 ie.search.msn.com
O1 - Hosts: 127.0.0.1 wustat.windows.com
O1 - Hosts: 127.0.0.1 wutrack.windows.com
O1 - Hosts: 127.0.0.1 catalog.microsoft.com
O1 - Hosts: 127.0.0.1 sls.microsoft.com
O1 - Hosts: 127.0.0.1 spynet2.microsoft.com
O1 - Hosts: 127.0.0.1 spynettest.microsoft.com
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - E:\Internet Download Manager\IDMIECC.dll (Tonec Inc.)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (FGCatchUrl) - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll (www.flashget.com)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Common Files\Symantec Shared\IDS\IPSBHO.dll (Symantec Corporation)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (FlashGet GetFlash Class) - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll (www.flashget.com)
O3 - HKLM\..\Toolbar: (no name) - {32678B97-2C98-4D22-A8F6-55C35572E946} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Show Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O3 - HKLM\..\Toolbar: (Yahoo! Barre d'outils) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (Yahoo! Inc.)
O3 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\..\Toolbar\WebBrowser: (no name) - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - No CLSID value found.
O3 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\..\Toolbar\WebBrowser: (VMN Toolbar) - {A057A204-BACC-4D26-8287-79A187E26987} - C:\Program Files\vmntoolbar\vmntoolbar.dll (Visicom Media Inc. )
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [B2C_AGENT] C:\ProgramData\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe (LG Electronics)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [KBD] C:\hp\KBD\KbdStub.exe ()
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\Windows\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OsdMaestro] C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe (OsdMaestro)
O4 - HKLM..\Run: [PWRISOVM.EXE] E:\power iso\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe ()
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Logitech Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [cdloader] C:\Users\Lehmar\AppData\Roaming\mjusbsp\cdloader2.exe (magicJack L.P.)
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [EA Core] File not found
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [FacebookDiscovery] C:\Program Files\FacebookDiscovery\FacebookDiscovery.exe (FacebookDiscovery Limited)
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [IDMan] E:\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [Okozo] C:\Program Files\Okozo\Okozo Desktop\OkozoDesktop.exe (Okozo)
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [RocketDock] E:\Rocket Dock\RocketDock\RocketDock.exe ()
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [Steam] C:\Program Files\Steam\Steam.exe (Valve Corporation)
O4 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - Startup: C:\Users\Lehmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Users\Lehmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ENJOY Plus!.lnk = C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\JC_ALL.HTM ()
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\JC_LINK.HTM ()
O8 - Extra context menu item: &Envoyer à OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: E&xporter vers Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Télécharger avec IDM - E:\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Télécharger avec Mipony - C:\Program Files\MiPony\Browser\IEContext.htm ()
O8 - Extra context menu item: Télécharger le contenu de video FLV avec IDM - E:\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Télécharger tous les liens avec IDM - E:\Internet Download Manager\IEGetAll.htm ()
O9 - Extra Button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.)
O9 - Extra Button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\flashget.exe (FlashGet.com)
O9 - Extra 'Tools' menuitem : FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\flashget.exe (FlashGet.com)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\..Trusted Domains: jeancoutu.com ([iphoto] https in Sites de confiance)
O15 - HKU\S-1-5-21-358670924-3533921992-3378355241-1000\..Trusted Domains: localhost ([]http in Sites de confiance)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab (Minesweeper Flags Class)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Resources\Themes\vistaosx\leo.jpg
O24 - Desktop BackupWallPaper: C:\WINDOWS\Resources\Themes\vistaosx\leo.jpg
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-02-08 12:33:09 | 000,000,000 | ---D | M] - E:\Auto_Omega -- [ NTFS ]
O32 - AutoRun File - [2011-01-04 04:10:02 | 000,052,736 | R--- | M] (Eden Games) - N:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2011-01-04 04:10:02 | 000,000,042 | R--- | M] () - N:\AutoRun.inf -- [ CDFS ]
O33 - MountPoints2\{6c2c84f5-c178-11dd-94c2-000ee8fb21cf}\Shell - "" = AutoRun
O33 - MountPoints2\{6c2c84f5-c178-11dd-94c2-000ee8fb21cf}\Shell\AutoRun\command - "" = M:\LaunchU3.exe -a
O33 - MountPoints2\{7a8ab07b-05de-11df-b949-001fc62b4dbe}\Shell - "" = AutoRun
O33 - MountPoints2\{7a8ab07b-05de-11df-b949-001fc62b4dbe}\Shell\AutoRun\command - "" = M:\LaunchU3.exe
O33 - MountPoints2\{7d9f0c70-0b5e-11de-9e13-000ee8fb21cf}\Shell\AutoRun\command - "" = m0vnonh.bat
O33 - MountPoints2\{7d9f0c70-0b5e-11de-9e13-000ee8fb21cf}\Shell\open\Command - "" = m0vnonh.bat
O33 - MountPoints2\{9d236894-c536-11dd-90ff-000ee8fb21cf}\Shell\AutoRun\command - "" = M:\autorun.exe
O33 - MountPoints2\{9d236894-c536-11dd-90ff-000ee8fb21cf}\Shell\phone\command - "" = M:\autorun.exe
O33 - MountPoints2\{e802b996-d6d7-11dd-be84-000ee8fb21cf}\Shell - "" = AutoRun
O33 - MountPoints2\{e802b996-d6d7-11dd-be84-000ee8fb21cf}\Shell\AutoRun\command - "" = K:\autorun.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\setup.exe
O33 - MountPoints2\M\Shell - "" = AutoRun
O33 - MountPoints2\M\Shell\AutoRun\command - "" = M:\autorun.exe
O33 - MountPoints2\N\Shell - "" = AutoRun
O33 - MountPoints2\N\Shell\AutoRun\command - "" = N:\AutoRun.exe -- [2011-01-04 04:10:02 | 000,052,736 | R--- | M] (Eden Games)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011-03-06 13:34:14 | 000,581,120 | ---- | C] (OldTimer Tools) -- C:\Users\Lehmar\Desktop\OTL.exe
[2011-03-06 13:12:02 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Desktop\tdsskiller
[2011-03-01 22:27:52 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\AppData\Roaming\TeamViewer
[2011-03-01 21:16:47 | 000,000,000 | ---D | C] -- C:\Program Files\TeamViewer
[2011-02-28 22:10:32 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Desktop\[TUTORIAL_SG_6]
[2011-02-28 18:00:36 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Desktop\ajout compil décembre 2010
[2011-02-24 23:15:42 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Desktop\photo jersey
[2011-02-24 06:42:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\WindowsPowerShell
[2011-02-24 06:39:54 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winrsmgr.dll
[2011-02-24 06:39:43 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsmprovhost.exe
[2011-02-24 06:39:42 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winrs.exe
[2011-02-24 06:39:42 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winrshost.exe
[2011-02-24 06:39:40 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wsmplpxy.dll
[2011-02-24 06:39:40 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winrssrv.dll
[2011-02-24 06:39:38 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wevtfwd.dll
[2011-02-24 06:39:38 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wecutil.exe
[2011-02-24 06:39:38 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wecapi.dll
[2011-02-24 06:39:38 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WsmRes.dll
[2011-02-24 06:39:38 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pwrshplugin.dll
[2011-02-24 06:39:28 | 000,252,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSManMigrationPlugin.dll
[2011-02-24 06:39:28 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WSManHTTPConfig.exe
[2011-02-24 06:39:28 | 000,241,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winrscmd.dll
[2011-02-24 06:39:28 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WsmWmiPl.dll
[2011-02-24 06:39:28 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WsmAuto.dll
[2011-02-22 20:35:36 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Desktop\VA-Speciale_Dedicace_Au_Rap_Francais_Vol.4_(Mixed_By_DJ_Battle)-FR-2011-H5N1
[2011-02-21 18:11:57 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ElcomSoft
[2011-02-21 18:11:56 | 000,000,000 | ---D | C] -- C:\Program Files\ElcomSoft
[2011-02-14 23:09:52 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Desktop\VA-Mister_You_Presente_M.D.R_(Mec_De_Rue)-FR-2010-SO
[2011-02-13 18:37:20 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Documents\Native Instruments
[2011-02-10 18:33:18 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\TruePianos Settings
[2011-02-10 18:31:52 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\Documents\Cakewalk
[2011-02-10 18:31:52 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\AppData\Roaming\Cakewalk
[2011-02-10 18:29:03 | 000,000,000 | ---D | C] -- C:\Cakewalk Projects
[2011-02-10 18:20:50 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments
[2011-02-10 18:20:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
[2011-02-10 18:20:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Native Instruments
[2011-02-10 18:19:40 | 000,000,000 | ---D | C] -- C:\Program Files\Native Instruments
[2011-02-10 18:19:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Identities
[2011-02-10 18:18:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cakewalk
[2011-02-10 18:13:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Cakewalk
[2011-02-10 18:13:29 | 000,000,000 | ---D | C] -- C:\Program Files\Cakewalk
[2011-02-08 19:00:25 | 002,039,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2011-02-08 19:00:21 | 003,602,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2011-02-08 19:00:20 | 003,550,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2011-02-08 19:00:13 | 001,172,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2011-02-08 19:00:13 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2011-02-08 19:00:13 | 000,979,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MFH264Dec.dll
[2011-02-08 19:00:12 | 001,554,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xpsservices.dll
[2011-02-08 19:00:12 | 000,876,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2011-02-08 19:00:12 | 000,683,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2011-02-08 19:00:12 | 000,357,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MFHEAACdec.dll
[2011-02-08 19:00:12 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfmp4src.dll
[2011-02-08 19:00:12 | 000,288,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2011-02-08 19:00:12 | 000,261,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfreadwrite.dll
[2011-02-08 19:00:12 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsRasterService.dll
[2011-02-08 19:00:11 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OpcServices.dll
[2011-02-08 19:00:11 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2011-02-08 19:00:10 | 002,873,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2011-02-08 19:00:10 | 001,029,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2011-02-08 19:00:10 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelinesvc.exe
[2011-02-08 19:00:10 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2011-02-08 19:00:10 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2011-02-08 19:00:10 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2011-02-08 19:00:10 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2011-02-08 19:00:09 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfplat.dll
[2011-02-08 19:00:08 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll
[2011-02-08 19:00:08 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdd.dll
[2011-02-08 19:00:07 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelineprxy.dll
[2011-02-08 18:59:47 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2011-02-08 18:59:47 | 000,471,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2011-02-08 18:59:47 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2011-02-08 18:59:47 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2011-02-08 18:59:46 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2011-02-08 18:59:46 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieencode.dll
[2011-02-08 18:59:44 | 000,292,352 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2011-02-08 18:59:43 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2011-02-06 18:19:32 | 000,000,000 | ---D | C] -- C:\Users\Lehmar\AppData\Roaming\.minecraft
[9 C:\Users\Lehmar\Desktop\*.tmp files -> C:\Users\Lehmar\Desktop\*.tmp -> ]
[6 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Lehmar\*.tmp files -> C:\Users\Lehmar\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011-03-06 13:38:01 | 000,001,080 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-358670924-3533921992-3378355241-1000UA.job
[2011-03-06 13:34:16 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\Lehmar\Desktop\OTL.exe
[2011-03-06 13:24:01 | 000,001,054 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011-03-06 13:24:01 | 000,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011-03-06 13:23:07 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011-03-06 13:23:07 | 000,003,744 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011-03-06 13:11:32 | 001,261,440 | ---- | M] () -- C:\Users\Lehmar\Desktop\tdsskiller.zip
[2011-03-06 11:28:18 | 000,001,000 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2011-03-06 11:23:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-03-05 17:11:06 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-358670924-3533921992-3378355241-1000Core.job
[2011-03-05 11:55:52 | 000,002,413 | ---- | M] () -- C:\Windows\System32\lgAxconfig.ini
[2011-03-03 19:34:53 | 000,000,898 | ---- | M] () -- C:\Users\Lehmar\Application Data\Microsoft\Internet Explorer\Quick Launch\FacebookDiscovery.lnk
[2011-03-03 13:17:00 | 000,171,860 | ---- | M] () -- C:\Users\Lehmar\Desktop\abdel hahahja.jpg
[2011-03-03 01:23:25 | 000,002,191 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011-03-01 23:04:55 | 000,725,536 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2011-03-01 23:04:55 | 000,637,106 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011-03-01 23:04:55 | 000,147,284 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2011-03-01 23:04:55 | 000,120,610 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011-03-01 21:16:51 | 000,000,917 | ---- | M] () -- C:\Users\Public\Desktop\TeamViewer 6.lnk
[2011-03-01 12:38:12 | 000,160,312 | ---- | M] () -- C:\Windows\hpoins14.dat
[2011-03-01 00:12:55 | 006,391,649 | ---- | M] () -- C:\Users\Lehmar\Desktop\arsenal 3.flv
[2011-03-01 00:06:02 | 009,177,544 | ---- | M] () -- C:\Users\Lehmar\Desktop\milan.flv
[2011-02-28 23:36:04 | 013,278,253 | ---- | M] () -- C:\Users\Lehmar\Desktop\arsenal 2.flv
[2011-02-28 23:31:27 | 006,741,629 | ---- | M] () -- C:\Users\Lehmar\Desktop\arsenal.flv
[2011-02-28 21:12:20 | 000,703,470 | ---- | M] () -- C:\Users\Lehmar\Desktop\preuve cegep.jpg
[2011-02-28 20:45:48 | 077,590,117 | ---- | M] () -- C:\Users\Lehmar\Desktop\[TUTORIAL_SG_6].rar
[2011-02-28 20:22:25 | 023,459,440 | ---- | M] () -- C:\Users\Lehmar\Desktop\TuTo Photo Papier.rar
[2011-02-28 17:51:36 | 020,366,855 | ---- | M] () -- C:\Users\Lehmar\Desktop\Stylish_banners.rar
[2011-02-28 17:37:38 | 003,547,922 | ---- | M] () -- C:\Users\Lehmar\Desktop\DictioRime_V_2.50_up_loaded_by_soubenah.rar
[2011-02-28 17:34:02 | 002,695,804 | ---- | M] () -- C:\Users\Lehmar\Desktop\2022 Tutoriels Photoshop.rar
[2011-02-28 16:48:32 | 007,744,320 | ---- | M] () -- C:\Users\Lehmar\Desktop\ALEXANDRA STAN SAXO BEAT.mp3
[2011-02-22 17:41:07 | 004,980,704 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011-02-21 21:11:09 | 000,000,132 | ---- | M] () -- C:\Users\Lehmar\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011-02-16 07:20:45 | 000,002,633 | ---- | M] () -- C:\Users\Lehmar\Desktop\Microsoft Word 2010.lnk
[2011-02-15 22:20:17 | 058,702,453 | ---- | M] () -- C:\Users\Lehmar\Desktop\ATIH.2010.Fr.part2.rar
[2011-02-15 22:15:20 | 060,000,000 | ---- | M] () -- C:\Users\Lehmar\Desktop\ATIH.2010.Fr.part1.rar
[2011-02-14 18:43:04 | 005,333,119 | ---- | M] () -- C:\Users\Lehmar\Desktop\Mister You Feat Isleym & Tunisiano - Ca Sort Du Zoogataga [2011].mp3
[2011-02-11 20:56:51 | 000,000,056 | -H-- | M] () -- C:\Windows\System32\ezsidmv.dat
[2011-02-11 20:56:31 | 000,002,329 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2011-02-11 16:33:39 | 000,000,846 | ---- | M] () -- C:\Users\Public\Desktop\Test Drive Unlimited 2.lnk
[2011-02-10 18:19:25 | 000,118,784 | ---- | M] () -- C:\Windows\dsdxirmv.exe
[2011-02-10 18:18:42 | 000,001,921 | ---- | M] () -- C:\Users\Public\Desktop\SONAR 8 Producer Edition.lnk
[2011-02-06 10:22:22 | 499,437,579 | ---- | M] () -- C:\Users\Lehmar\Desktop\copie.wmv
[2011-02-05 16:07:35 | 008,106,872 | ---- | M] () -- C:\Users\Lehmar\Desktop\EDD_-_20_Ans_Soirfoot.COM.avi.sfk
[9 C:\Users\Lehmar\Desktop\*.tmp files -> C:\Users\Lehmar\Desktop\*.tmp -> ]
[6 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Lehmar\*.tmp files -> C:\Users\Lehmar\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011-03-06 13:10:58 | 001,261,440 | ---- | C] () -- C:\Users\Lehmar\Desktop\tdsskiller.zip
[2011-03-03 19:34:53 | 000,000,898 | ---- | C] () -- C:\Users\Lehmar\Application Data\Microsoft\Internet Explorer\Quick Launch\FacebookDiscovery.lnk
[2011-03-03 13:17:00 | 000,171,860 | ---- | C] () -- C:\Users\Lehmar\Desktop\abdel hahahja.jpg
[2011-03-01 21:16:51 | 000,000,929 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 6.lnk
[2011-03-01 21:16:51 | 000,000,917 | ---- | C] () -- C:\Users\Public\Desktop\TeamViewer 6.lnk
[2011-03-01 00:12:55 | 006,391,649 | ---- | C] () -- C:\Users\Lehmar\Desktop\arsenal 3.flv
[2011-03-01 00:06:02 | 009,177,544 | ---- | C] () -- C:\Users\Lehmar\Desktop\milan.flv
[2011-02-28 23:36:04 | 013,278,253 | ---- | C] () -- C:\Users\Lehmar\Desktop\arsenal 2.flv
[2011-02-28 23:31:27 | 006,741,629 | ---- | C] () -- C:\Users\Lehmar\Desktop\arsenal.flv
[2011-02-28 21:12:15 | 000,703,470 | ---- | C] () -- C:\Users\Lehmar\Desktop\preuve cegep.jpg
[2011-02-28 20:24:14 | 077,590,117 | ---- | C] () -- C:\Users\Lehmar\Desktop\[TUTORIAL_SG_6].rar
[2011-02-28 20:21:24 | 023,459,440 | ---- | C] () -- C:\Users\Lehmar\Desktop\TuTo Photo Papier.rar
[2011-02-28 17:50:54 | 020,366,855 | ---- | C] () -- C:\Users\Lehmar\Desktop\Stylish_banners.rar
[2011-02-28 17:37:29 | 003,547,922 | ---- | C] () -- C:\Users\Lehmar\Desktop\DictioRime_V_2.50_up_loaded_by_soubenah.rar
[2011-02-28 17:33:57 | 002,695,804 | ---- | C] () -- C:\Users\Lehmar\Desktop\2022 Tutoriels Photoshop.rar
[2011-02-28 16:48:11 | 007,744,320 | ---- | C] () -- C:\Users\Lehmar\Desktop\ALEXANDRA STAN SAXO BEAT.mp3
[2011-02-24 06:39:32 | 000,201,184 | ---- | C] () -- C:\Windows\System32\winrm.vbs
[2011-02-24 06:39:32 | 000,002,426 | ---- | C] () -- C:\Windows\System32\WsmTxt.xsl
[2011-02-24 06:39:31 | 000,004,675 | ---- | C] () -- C:\Windows\System32\wsmanconfig_schema.xml
[2011-02-15 22:17:15 | 058,702,453 | ---- | C] () -- C:\Users\Lehmar\Desktop\ATIH.2010.Fr.part2.rar
[2011-02-15 22:13:22 | 060,000,000 | ---- | C] () -- C:\Users\Lehmar\Desktop\ATIH.2010.Fr.part1.rar
[2011-02-14 18:42:40 | 005,333,119 | ---- | C] () -- C:\Users\Lehmar\Desktop\Mister You Feat Isleym & Tunisiano - Ca Sort Du Zoogataga [2011].mp3
[2011-02-11 20:56:51 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2011-02-11 16:33:39 | 000,000,846 | ---- | C] () -- C:\Users\Public\Desktop\Test Drive Unlimited 2.lnk
[2011-02-10 18:19:25 | 000,118,784 | ---- | C] () -- C:\Windows\dsdxirmv.exe
[2011-02-10 18:18:42 | 000,001,921 | ---- | C] () -- C:\Users\Public\Desktop\SONAR 8 Producer Edition.lnk
[2011-02-06 01:12:04 | 499,437,579 | ---- | C] () -- C:\Users\Lehmar\Desktop\copie.wmv
[2011-02-05 15:59:23 | 008,106,872 | ---- | C] () -- C:\Users\Lehmar\Desktop\EDD_-_20_Ans_Soirfoot.COM.avi.sfk
[2011-01-22 23:33:51 | 001,970,176 | ---- | C] () -- C:\Windows\System32\d3dx9.dll
[2011-01-18 20:19:23 | 000,000,010 | -HS- | C] () -- C:\Users\Lehmar\AppData\Roaming\date
[2011-01-18 20:19:23 | 000,000,002 | -HS- | C] () -- C:\Users\Lehmar\AppData\Roaming\evf6
[2010-12-24 17:36:50 | 000,001,456 | ---- | C] () -- C:\Users\Lehmar\AppData\Local\Adobe Enregistrer pour le Web 12.0 Prefs
[2010-12-08 21:50:07 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2010-12-08 21:49:06 | 000,003,584 | ---- | C] () -- C:\Windows\System32\zx.dll
[2010-12-08 21:48:55 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2010-11-17 22:36:19 | 000,053,248 | ---- | C] () -- C:\Windows\System32\CommonDL.dll
[2010-11-17 22:36:19 | 000,002,413 | ---- | C] () -- C:\Windows\System32\lgAxconfig.ini
[2010-10-14 01:36:44 | 000,179,263 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2010-10-12 14:11:47 | 000,008,192 | ---- | C] () -- C:\Windows\System32\srvany.exe
[2010-10-07 19:16:36 | 000,000,132 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2010-07-23 21:49:56 | 000,000,016 | ---- | C] () -- C:\Windows\System32\msvcsv60.dll
[2010-07-23 21:49:56 | 000,000,016 | ---- | C] () -- C:\Windows\msocreg32.dat
[2010-06-09 14:51:29 | 000,139,152 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\PnkBstrK.sys
[2010-06-09 14:51:29 | 000,138,968 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2010-06-09 14:51:17 | 000,214,592 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2010-06-09 14:51:16 | 000,794,408 | ---- | C] () -- C:\Windows\System32\pbsvc.exe
[2010-06-09 14:51:16 | 000,075,064 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2010-05-08 23:12:19 | 000,053,248 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\chrtmp
[2010-04-30 22:04:42 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2010-04-21 23:58:48 | 008,676,883 | ---- | C] () -- C:\Windows\System32\NCMedia2.dll
[2010-04-21 23:58:48 | 000,758,018 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2010-04-21 23:58:48 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2010-03-21 20:19:07 | 000,034,990 | ---- | C] () -- C:\ProgramData\nvModes.001
[2010-03-21 20:19:06 | 000,034,990 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2010-03-21 13:51:45 | 000,000,016 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\jasltw.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pcwords2.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pcwords.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_webproxy.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_video.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_tabloids.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_socialnetworks.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_searchengines.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_regionaltlds.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_pornography.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlineshop.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlinepay.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_onlinedating.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_news.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_im.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_illegal.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_hate.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_games.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_gambling.dat
[2010-02-23 21:12:14 | 000,000,000 | ---- | C] () -- C:\Windows\System32\pc_drugs.dat
[2010-01-24 18:39:08 | 000,479,232 | ---- | C] () -- C:\Windows\ssndii.exe
[2009-12-31 15:37:21 | 000,000,615 | R--- | C] () -- C:\Windows\System32\RaCoInst.dat
[2009-12-07 22:46:47 | 000,000,600 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\winscp.rnd
[2009-10-16 22:09:58 | 000,635,796 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2009-08-28 11:52:28 | 000,022,723 | ---- | C] () -- C:\Windows\System32\ssp1ml3.dll
[2009-07-29 10:06:39 | 000,151,552 | ---- | C] () -- C:\Windows\System32\nvRegDev.dll
[2009-05-20 15:02:31 | 000,058,792 | ---- | C] () -- C:\Windows\System32\wbload.dll
[2009-03-18 21:21:47 | 000,000,094 | ---- | C] () -- C:\Users\Lehmar\AppData\Local\fusioncache.dat
[2009-02-02 17:25:40 | 000,009,728 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2009-01-25 10:52:49 | 000,027,648 | ---- | C] () -- C:\Windows\System32\AVSredirect.dll
[2009-01-10 16:58:13 | 000,003,171 | ---- | C] () -- C:\Windows\System32\SpoonUninstall-dBpoweramp Windows Media Audio 10 Codec.dat
[2009-01-04 19:23:32 | 000,000,023 | ---- | C] () -- C:\Windows\ED20WEB.INI
[2008-12-30 19:13:02 | 000,053,248 | ---- | C] () -- C:\Windows\System32\ArmAccess.dll
[2008-12-13 21:58:16 | 000,399,736 | ---- | C] () -- C:\Windows\System32\SpoonUninstall.exe
[2008-12-13 21:58:16 | 000,035,132 | ---- | C] () -- C:\Windows\System32\SpoonUninstall-dBpowerAMP Music Converter.dat
[2008-11-06 17:58:29 | 000,000,065 | ---- | C] () -- C:\Windows\FISHUI.INI
[2008-11-02 21:49:35 | 000,000,968 | ---- | C] () -- C:\Windows\AZPR3.INI
[2008-10-26 12:02:35 | 000,197,120 | ---- | C] () -- C:\Windows\patchw32.dll
[2008-10-07 08:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008-10-07 08:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008-10-07 08:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2008-09-30 14:44:10 | 000,941,784 | ---- | C] () -- C:\Windows\System32\drivers\CAMTHWDM.sys
[2008-09-21 07:43:52 | 000,000,966 | ---- | C] () -- C:\Windows\wininit.ini
[2008-08-14 18:05:50 | 000,000,000 | ---- | C] () -- C:\Windows\SETUP32.INI
[2008-07-29 19:19:40 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008-06-25 15:55:01 | 000,001,101 | ---- | C] () -- C:\Windows\ODBCINST.INI
[2008-06-25 15:55:01 | 000,000,611 | ---- | C] () -- C:\Windows\ODBC.INI
[2008-06-25 15:55:01 | 000,000,022 | ---- | C] () -- C:\Windows\exchng.ini
[2008-06-22 11:49:19 | 000,000,400 | ---- | C] () -- C:\Windows\g_kenkpm423.ini
[2008-06-22 11:49:19 | 000,000,400 | ---- | C] () -- C:\Windows\System32\drivers\beqordi993.dat
[2008-06-17 18:54:26 | 000,017,089 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\UserTile.png
[2008-06-10 14:09:54 | 000,180,224 | ---- | C] () -- C:\Windows\System32\DVRConfig.dll
[2008-06-01 18:53:31 | 000,160,312 | ---- | C] () -- C:\Windows\hpoins14.dat
[2008-05-29 17:42:03 | 000,012,418 | ---- | C] () -- C:\Users\Lehmar\AppData\Roaming\wklnhst.dat
[2008-05-26 07:40:19 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2008-05-25 18:10:44 | 000,168,960 | ---- | C] () -- C:\Users\Lehmar\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008-05-25 15:49:06 | 000,315,392 | ---- | C] () -- C:\Windows\System32\AegisI5.exe
[2008-05-25 15:49:06 | 000,303,234 | ---- | C] () -- C:\Windows\System32\Install7x.dll
[2008-05-25 15:49:06 | 000,002,048 | ---- | C] () -- C:\Windows\System32\drivers\rt73.bin
[2008-05-25 14:42:30 | 000,000,680 | ---- | C] () -- C:\Users\Lehmar\AppData\Local\d3d9caps.dat
[2008-02-23 14:04:42 | 000,725,536 | ---- | C] () -- C:\Windows\System32\perfh00C.dat
[2008-02-23 14:04:42 | 000,340,236 | ---- | C] () -- C:\Windows\System32\perfi00C.dat
[2008-02-23 14:04:42 | 000,147,284 | ---- | C] () -- C:\Windows\System32\perfc00C.dat
[2008-02-23 14:04:42 | 000,037,390 | ---- | C] () -- C:\Windows\System32\perfd00C.dat
[2008-02-23 05:32:56 | 000,000,060 | ---- | C] () -- C:\Windows\System32\HP_Demo.ini
[2008-02-23 05:25:21 | 000,111,379 | ---- | C] () -- C:\Windows\hpqins13.dat
[2008-02-23 05:21:02 | 000,061,440 | ---- | C] () -- C:\Windows\System32\OsdRemove.exe
[2008-02-23 05:18:17 | 000,327,680 | ---- | C] () -- C:\Windows\System32\pythoncom25.dll
[2008-02-23 05:18:17 | 000,102,400 | ---- | C] () -- C:\Windows\System32\pywintypes25.dll
[2008-01-20 21:24:21 | 000,002,048 | ---- | C] () -- C:\Windows\System32\syscvchk.dll
[2007-09-19 20:14:41 | 000,002,000 | ---- | C] () -- C:\Windows\hpomdl14.dat
[2007-08-03 15:53:42 | 000,063,488 | ---- | C] () -- C:\Windows\System32\Eztw32.dll
[2007-06-27 16:13:51 | 000,516,096 | ---- | C] () -- C:\Windows\System32\RegisterDialog.dll
[2007-01-26 00:04:12 | 000,138,752 | ---- | C] () -- C:\Windows\System32\mase32.dll
[2007-01-26 00:04:12 | 000,027,648 | ---- | C] () -- C:\Windows\System32\ma32.dll
[2006-11-02 07:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006-11-02 07:47:37 | 004,980,704 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006-11-02 07:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006-11-02 05:33:01 | 000,637,106 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006-11-02 05:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006-11-02 05:33:01 | 000,120,610 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006-11-02 05:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006-11-02 05:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006-11-02 03:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006-11-02 03:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006-11-02 02:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006-11-02 02:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006-03-03 23:13:36 | 000,120,320 | ---- | C] () -- C:\Windows\System32\ZlibOCX2.dll
[2006-03-03 23:13:36 | 000,120,320 | ---- | C] () -- C:\Windows\System32\ZlibOCX2(vrai vista).dll
[2005-08-02 16:24:01 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
[2003-11-25 19:56:50 | 000,015,383 | ---- | C] () -- C:\Windows\MSTMON_Q.INI
[2003-07-14 22:53:56 | 000,011,521 | ---- | C] () -- C:\Windows\MSUMLT_Q.INI
[2003-03-24 05:03:00 | 000,279,552 | ---- | C] () -- C:\Windows\System32\FGWVB32.DLL
[2002-11-06 17:42:06 | 000,090,112 | ---- | C] () -- C:\Windows\System32\SDL_gfx.dll
[2002-10-13 12:25:14 | 000,167,936 | ---- | C] () -- C:\Windows\System32\MesaGlut.dll
[2002-10-13 12:23:36 | 000,363,008 | ---- | C] () -- C:\Windows\System32\MesaGLU.dll
[2002-10-13 12:21:50 | 000,040,960 | ---- | C] () -- C:\Windows\System32\osmesa.dll
[2002-10-13 12:21:44 | 001,417,216 | ---- | C] () -- C:\Windows\System32\MesaGL.dll
[2002-10-07 04:49:26 | 000,225,280 | ---- | C] () -- C:\Windows\System32\SDL.dll
[2002-05-20 07:12:50 | 000,258,048 | ---- | C] () -- C:\Windows\System32\SDL_mixer.dll
[2002-04-13 12:01:10 | 000,180,224 | ---- | C] () -- C:\Windows\System32\SDL_ttf.dll
[2002-04-13 12:01:02 | 000,024,576 | ---- | C] () -- C:\Windows\System32\SDL_net.dll
[2002-04-13 12:00:48 | 000,036,864 | ---- | C] () -- C:\Windows\System32\SDL_image.dll
[2002-02-07 12:43:38 | 000,319,488 | ---- | C] () -- C:\Windows\System32\sdl_sound.dll
[2001-12-03 20:59:00 | 000,045,056 | ---- | C] () -- C:\Windows\System32\in_flac.dll
[2001-08-13 01:00:54 | 000,028,672 | ---- | C] () -- C:\Windows\System32\vorbisfile.dll
[2001-08-13 01:00:36 | 000,094,208 | ---- | C] () -- C:\Windows\System32\vorbis.dll
[2001-08-13 00:59:58 | 000,024,576 | ---- | C] () -- C:\Windows\System32\ogg.dll
[2001-04-05 14:24:14 | 000,169,443 | ---- | C] () -- C:\Windows\System32\jpeg.dll
[2001-04-05 14:24:14 | 000,094,720 | ---- | C] () -- C:\Windows\System32\libpng1.dll
[2001-04-05 14:24:14 | 000,053,760 | ---- | C] () -- C:\Windows\System32\zlib.dll
[2001-04-04 20:33:50 | 000,209,920 | ---- | C] () -- C:\Windows\System32\smpeg.dll
[1998-03-25 20:12:00 | 000,053,248 | ---- | C] () -- C:\Windows\System32\vbzlib.dll
[1996-12-16 23:00:00 | 000,048,640 | ---- | C] () -- C:\Windows\System32\WRKGADM.EXE
[1996-12-16 23:00:00 | 000,022,016 | ---- | C] () -- C:\Windows\System32\ODBCSTF.DLL
[1996-12-16 23:00:00 | 000,022,016 | ---- | C] () -- C:\Windows\System32\DOCOBJ.DLL
[1996-12-16 23:00:00 | 000,012,288 | ---- | C] () -- C:\Windows\System32\VAFR232.DLL
[1996-12-16 23:00:00 | 000,012,288 | ---- | C] () -- C:\Windows\System32\HLINKPRX.DLL
========== Alternate Data Streams ==========
@Alternate Data Stream - 498 bytes -> C:\ProgramData\TEMP:05EE1EEF
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:FB1B13D8
@Alternate Data Stream - 12 bytes -> C:\Windows\System32:{DA6227CB-326B-4B4D-9A81-04B61F1538DD}
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:24051EFF
@Alternate Data Stream - 105 bytes -> C:\ProgramData\TEMP:68F4226F
< End of report >
PS: sorry for my english syntax if I make mistakes, english is my fourth languages lol and thanks in advance for helping me, the work your doing is great!
Edited by Noviciate, 06 March 2011 - 03:34 PM.