|
Informations |
Messages |
|
Telloc
89 messages
DVD-RW
|
Le 25 Avril 2012 à 15h12
Bonjour,
Je viens sur ce forum afin de vous demander votre aide quant à la décontamination de mon ordinateur. En effet, je soupçonne ce dernier d'être victime. Ce qui me fait penser ça est tout d'abord l'apparition de l'écran bleu sans raison. Ensuite, ma boîte e mail qui s'est fait hacker déjà 2 fois et pour finir Avira antivirus qui me signal des fichiers malveillants que je mets en quarantaine à leur demande, mais qui réapparaisse au scan suivant.
Bien que j'espère avoir tort, les signes sont tout de même assez grand et s'il s'avérerait que je ne me suis pas trompé, j'aurai grandement besoin de votre aide avant d'effectuer une réinstallation complète de mon PC ce qui m'embêterai vraiment.
Merci d'avance pour le temps que vous utiliserez pour résoudre mon problème !
Telloc
P.S: je n'ai pas réussi à vous mettre en lien les 2 rapports, le lien vers cijoin.fr m'amenant vers une page blanche où je ne peux rien faire.
Code Logfile of random's system information tool 1.09 (written by random/random)
Run by Quentin at 2012-04-25 15:04:55
Microsoft Windows 7 Édition Familiale Premium Service Pack 1
System drive C: has 88 GB (58%) free of 153 GB
Total RAM: 3886 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:04:57, on 25.04.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Users\Quentin\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\VMware\VMware Player\hqtray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\iTunes\iTunes.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Users\Quentin\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Quentin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://encyclopedie.org
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/kcsoftwares/{4A406E6C-4130-4D3A-B23B-0599AE10F38C}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll
O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe"
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [VMware hqtray] "C:\Program Files (x86)\VMware\VMware Player\hqtray.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Quentin\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10w_Plugin.exe -update plugin
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-413691224-2487374903-3943931898-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-413691224-2487374903-3943931898-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: SRS Premium Sound.lnk = ?
O8 - Extra context menu item: &Envoyer à OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: Notes &liées OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\vmware\vmware player\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\vmware\vmware player\vsocklib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Planificateur (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Protection temps réel (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: AutoStore Status Monitor Port Broker (ASMPB) - Unknown owner - C:\Program Files (x86)\Kyocera\KYOcapture\ASMPB.exe (file missing)
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @%SystemRoot%\ehome\ehres.dll,-15501 (Mcx2Svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Net Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Pml Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-ufad.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe
--
End of file - 27593 bytes
======Scheduled tasks folder======
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-413691224-2487374903-3943931898-1003Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-413691224-2487374903-3943931898-1003UA.job
C:\Windows\tasks\SyncBack Doc NAS.job
C:\Windows\tasks\SyncBack Films NAS.job
C:\Windows\tasks\SyncBack Musique NAS.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default
prefs.js - "browser.startup.homepage" - "http://www.google.ch/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, engine@conduit.com:3.2.5.2, {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}:3.2.5.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=Module iTunes Detector
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.3.1]
"Description"=
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.3.1]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Oracle\JavaFX 2.0 Runtime\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
amazon-france.xml
bing.xml
cnrtl-tlfi-fr.xml
eBay-france.xml
google.xml
wikipedia-fr.xml
yahoo-france.xml
C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\extensions\
engine@conduit.com
{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-03-26 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll [2012-01-10 59272]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl9"=C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe [2009-07-06 87336]
"UpdatePSTShortCut"=C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe [2010-06-25 210216]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-08-04 2429]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-01-13 7109248]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-01-05 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"NUSB3MON"=C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2009-10-21 106496]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"VMware hqtray"=C:\Program Files (x86)\VMware\VMware Player\hqtray.exe [2010-09-21 64048]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-02-20 59240]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2011-12-01 258512]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2012-03-27 421736]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-03-27 37296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
"Facebook Update"=C:\Users\Quentin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-01-28 137536]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10w_Plugin.exe [2011-09-02 243360]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayL oad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewall policy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewall policy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"VIDC.VMnc"=vmnc.dll
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-04-17 18:18:30 ----RA---- C:\Windows\SysWOW64\drivers\WLNdis50.sys
2012-04-12 22:40:59 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2012-04-12 22:40:58 ----A---- C:\Windows\SysWOW64\url.dll
2012-04-12 22:40:58 ----A---- C:\Windows\SysWOW64\ieui.dll
2012-04-12 22:40:58 ----A---- C:\Windows\SysWOW64\iertutil.dll
2012-04-12 22:40:57 ----A---- C:\Windows\SysWOW64\urlmon.dll
2012-04-12 22:40:57 ----A---- C:\Windows\SysWOW64\jscript9.dll
2012-04-12 22:40:57 ----A---- C:\Windows\SysWOW64\jscript.dll
2012-04-12 22:40:56 ----A---- C:\Windows\SysWOW64\wininet.dll
2012-04-12 22:40:56 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2012-04-12 22:40:55 ----A---- C:\Windows\SysWOW64\mshtml.dll
2012-04-12 22:40:53 ----A---- C:\Windows\SysWOW64\ieframe.dll
2012-04-12 22:40:37 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2012-04-12 22:40:37 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2012-04-12 22:37:56 ----A---- C:\Windows\SysWOW64\wmi.dll
2012-04-12 22:37:56 ----A---- C:\Windows\SysWOW64\wintrust.dll
2012-04-12 22:37:56 ----A---- C:\Windows\SysWOW64\imagehlp.dll
2012-04-10 19:29:43 ----D---- C:\Program Files (x86)\Microsoft Works
2012-04-10 19:28:50 ----A---- C:\Windows\ODBC.INI
2012-04-10 19:27:07 ----D---- C:\Users\Quentin\AppData\Roaming\FastStone
2012-04-10 19:27:06 ----D---- C:\Program Files (x86)\FastStone Capture
2012-03-31 20:43:55 ----D---- C:\Users\Quentin\AppData\Roaming\.Kanton VS
2012-03-31 20:43:04 ----HD---- C:\Program Files (x86)\Zero G Registry
2012-03-31 20:43:04 ----D---- C:\Program Files (x86)\VSTax 2011
2012-03-30 17:21:45 ----D---- C:\Program Files (x86)\iTunes
2012-03-30 17:17:44 ----D---- C:\Program Files (x86)\Common Files\Java
2012-03-30 17:17:24 ----D---- C:\Program Files (x86)\Oracle
2012-03-30 17:16:58 ----A---- C:\Windows\SysWOW64\npdeployJava1.dll
2012-03-29 21:45:15 ----A---- C:\Windows\SysWOW64\javaws.exe
2012-03-29 21:45:15 ----A---- C:\Windows\SysWOW64\javaw.exe
2012-03-29 21:45:15 ----A---- C:\Windows\SysWOW64\java.exe
======List of files/folders modified in the last 1 month======
2012-04-25 15:04:57 ----D---- C:\Windows\Prefetch
2012-04-25 15:04:56 ----D---- C:\Program Files (x86)\trend micro
2012-04-25 15:04:55 ----D---- C:\Windows\Temp
2012-04-25 14:33:49 ----D---- C:\ProgramData\VMware
2012-04-25 14:33:48 ----A---- C:\Windows\SysWOW64\log.txt
2012-04-25 14:33:46 ----D---- C:\Windows
2012-04-23 21:17:16 ----SHD---- C:\System Volume Information
2012-04-23 19:10:19 ----D---- C:\Windows\Minidump
2012-04-23 19:05:27 ----HD---- C:\ProgramData
2012-04-23 19:01:30 ----D---- C:\Users\Quentin\AppData\Roaming\uTorrent
2012-04-19 18:16:41 ----SHD---- C:\Windows\Installer
2012-04-17 21:14:23 ----D---- C:\Windows\System32
2012-04-17 21:14:23 ----D---- C:\Windows\inf
2012-04-17 18:22:47 ----D---- C:\ProgramData\Microsoft Help
2012-04-17 18:22:45 ----RSD---- C:\Windows\assembly
2012-04-17 18:22:44 ----A---- C:\Windows\vbaddin.ini
2012-04-17 18:22:33 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2012-04-17 18:18:30 ----D---- C:\Windows\SysWOW64\drivers
2012-04-16 20:21:16 ----D---- C:\Windows\debug
2012-04-16 18:08:11 ----D---- C:\Windows\SysWOW64
2012-04-15 10:52:33 ----D---- C:\Windows\winsxs
2012-04-13 17:30:01 ----D---- C:\Windows\Microsoft.NET
2012-04-13 11:25:42 ----D---- C:\Windows\SysWOW64\migration
2012-04-13 11:25:42 ----D---- C:\Program Files (x86)\Internet Explorer
2012-04-10 19:29:43 ----RD---- C:\Program Files (x86)
2012-04-10 19:29:40 ----D---- C:\Program Files (x86)\Microsoft Office
2012-04-10 18:52:54 ----D---- C:\Users\Quentin\AppData\Roaming\Microchip
2012-03-30 17:21:45 ----RD---- C:\Program Files
2012-03-30 17:21:45 ----D---- C:\Program Files (x86)\Common Files\Apple
2012-03-30 17:17:44 ----D---- C:\Program Files (x86)\Common Files
2012-03-30 17:16:52 ----D---- C:\Program Files (x86)\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys []
R0 lullaby;lullaby; C:\Windows\system32\DRIVERS\lullaby.sys []
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys []
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys []
R2 hcmon;VMware hcmon; \??\C:\Windows\system32\drivers\hcmon.sys []
R2 TurboB;Turbo Boost UI Monitor driver; C:\Windows\system32\DRIVERS\TurboB.sys []
R2 vmci;VMware vmci; \??\C:\Windows\system32\drivers\vmci.sys []
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys []
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys []
R2 vmx86;VMware vmx86; \??\C:\Windows\system32\drivers\vmx86.sys []
R2 vstor2-ws60;Vstor2 WS60 Virtual Storage Driver; \??\C:\Program Files (x86)\VMware\VMware Player\vstor2-ws60.sys [2010-08-19 32816]
R2 WLNdis50;Wireless Lan NDIS Protocol I/O Control; C:\Windows\system32\DRIVERS\wlndis50.sys [2008-01-28 35840]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys []
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys []
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys []
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys []
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20); C:\Windows\system32\DRIVERS\L1C62x64.sys []
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys []
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys []
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys []
R3 vmkbd;VMware kbd; \??\C:\Windows\system32\drivers\VMkbd.sys []
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys []
S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS []
S3 dc3d;MS Hardware Device Detection Driver (USB); C:\Windows\system32\DRIVERS\dc3d.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys []
S3 KMWDFILTER;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys []
S3 MCHPUSB;MCHPUSB; C:\Windows\system32\DRIVERS\mchpusb64.sys []
S3 Netaapl;Apple Mobile Device Ethernet Service; C:\Windows\system32\DRIVERS\netaapl64.sys []
S3 Ser2at;ATEN USB to Serial port driver; C:\Windows\system32\DRIVERS\ser2at64.sys []
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys []
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys []
S3 StillCam;Pilote d’appareil photo numérique série; C:\Windows\system32\DRIVERS\serscan.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys []
S3 vmusb;VMware USB Client Driver; C:\Windows\System32\Drivers\vmusb.sys []
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
S3 WSDPrintDevice;Prise en charge de l’impression WSD via UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys []
S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe []
R2 AntiVirSchedulerService;Avira Planificateur; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2011-12-01 86224]
R2 AntiVirService;Avira Protection temps réel; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2011-12-01 110032]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-02-27 55144]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-10-01 262144]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe []
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2010-06-22 1616488]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2314240]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [2010-09-21 113200]
R2 VMnetDHCP;VMware DHCP Service; C:\Windows\system32\vmnetdhcp.exe [2010-09-21 334384]
R2 VMUSBArbService;VMware USB Arbitration Service; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe [2010-09-21 539184]
R2 VMware NAT Service;VMware NAT Service; C:\Windows\system32\vmnat.exe [2010-09-21 404016]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2012-03-27 934760]
R3 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2010-04-06 244904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 ASMPB;AutoStore Status Monitor Port Broker; C:\Program Files (x86)\Kyocera\KYOcapture\ASMPB.exe []
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2011-08-11 411432]
S3 TurboBoost;TurboBoost; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-08-06 118672]
S3 ufad-ws60;VMware Agent Service; C:\Program Files (x86)\VMware\VMware Player\vmware-ufad.exe [2010-08-19 191024]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
-----------------EOF-----------------
[code]info.txt logfile of random's system information tool 1.08 2010-10-07 20:49:37
======Uninstall list======
µTorrent-->"C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Flash Player 10 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.1 MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-A91000000001}
Alcor Micro USB Card Reader-->C:\Program Files (x86)\InstallShield Installation Information\{F4BF5F6B-F695-4762-AEB2-D095A4C34D89}\SETUP.EXE -runfromtemp -l0x0409
Apple Application Support-->MsiExec.exe /I{DAEAFD68-BB4A-4507-A241-C8804D2EA66D}
Apple Software Update-->MsiExec.exe /I{C41300B9-185D-475E-BFEC-39EF732F19B1}
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
ASUS AI Recovery-->MsiExec.exe /I{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}
ASUS AP Bank-->"C:\Program Files (x86)\ASUS\ASUS AP Bank\unins000.exe"
ASUS CopyProtect-->MsiExec.exe /I{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}
ASUS FancyStart-->MsiExec.exe /I{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}
ASUS LifeFrame3-->MsiExec.exe /I{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
ASUS Live Update-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}\Setup.exe" -l0x9
ASUS MultiFrame-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{9D48531D-2135-49FC-BC29-ACCDA5396A76}\setup.exe" -l0x9
ASUS SmartLogon-->MsiExec.exe /I{64452561-169F-4A36-A2FF-B5E118EC65F5}
ASUS Splendid Video Enhancement Technology-->MsiExec.exe /I{0969AF05-4FF6-4C00-9406-43599238DE0D}
ASUS Video Magic-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
ASUS Video Magic-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
ASUS Virtual Camera-->MsiExec.exe /I{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}
ASUS_N_Series_Screensaver-->C:\Windows\system32\ASUS_N_Series_Screensaver.scr /u
ATK Package-->MsiExec.exe /I{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
Avira AntiVir Personal - Free Antivirus-->C:\Program Files (x86)\Avira\AntiVir Desktop\setup.exe /REMOVE
BDE_ENT-->MsiExec.exe /I{E966F0CC-76B3-11D3-945B-00C04FB1760A}
Boingo Wi-Fi-->MsiExec.exe /X{B653A2EC-D816-4498-A4FD-651047AB9DC9}
CCleaner-->"C:\Program Files (x86)\CCleaner\uninst.exe"
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Configuration DivX-->C:\ProgramData\DivX\Setup\DivXSetup.exe /uninstall /bundleGroupId divx.com
ControlDeck-->MsiExec.exe /I{5B65EF64-1DFA-414A-8C94-7BB726158E21}
CyberLink LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
CyberLink LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
CyberLink MediaShow Espresso-->"C:\Program Files (x86)\InstallShield Installation Information\{E3739848-5329-48E3-8D28-5BBD6E8BE384}\Setup.exe" /z-uninstall
CyberLink MediaShow Espresso-->"C:\Program Files (x86)\InstallShield Installation Information\{E3739848-5329-48E3-8D28-5BBD6E8BE384}\Setup.exe" /z-uninstall
CyberLink PhotoNow-->"C:\Program Files (x86)\InstallShield Installation Information\{D36DD326-7280-11D8-97C8-000129760CBE}\Setup.exe" /z-uninstall
CyberLink PhotoNow-->"C:\Program Files (x86)\InstallShield Installation Information\{D36DD326-7280-11D8-97C8-000129760CBE}\Setup.exe" /z-uninstall
CyberLink Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
CyberLink Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
CyberLink PowerDirector-->"C:\Program Files (x86)\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
CyberLink PowerDirector-->"C:\Program Files (x86)\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
CyberLink PowerDVD 9-->"C:\Program Files (x86)\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\Setup.exe" /z-uninstall
CyberLink PowerDVD 9-->"C:\Program Files (x86)\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\Setup.exe" /z-uninstall
Definition update for Microsoft Office 2010 (KB982726)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{8A1600D2-B038-4F73-851E-946B0155810E}" "1036" "0"
Definition update for Microsoft Office 2010 (KB982726)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-0000-0000000FF1CE}" "{8A1600D2-B038-4F73-851E-946B0155810E}" "1036" "0"
Digital Works-->C:\Windows\IsUninst.exe -f"C:\Program Files (x86)\Digital Works\Uninst.isu"
Express Gate-->MsiExec.exe /X{B5A5627C-0173-4DB2-ADA8-740479370F67}
Galerie de photos Windows Live-->MsiExec.exe /X{43563ACB-371B-4C58-8979-B192B390424C}
IcoFX 1.6.4-->"C:\Program Files (x86)\IcoFX 1.6\unins000.exe"
Installation Windows Live-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{3CCB732A-E472-4CF9-B1EE-F18365341FE0}
Intel(R) Control Center-->C:\Program Files (x86)\Intel\Intel Control Center\uninstaller\SetupICC.exe -uninstall -force -confirm
Intel(R) Graphics Media Accelerator Driver-->C:\Program Files (x86)\Intel\Intel(R) Graphics Media Accelerator Driver\Uninstall\setup.exe -uninstall
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Junk Mail filter update-->MsiExec.exe /I{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A}
Microsoft Office Access MUI (French) 2010-->MsiExec.exe /X{90140000-0015-040C-0000-0000000FF1CE}
Microsoft Office Excel MUI (French) 2010-->MsiExec.exe /X{90140000-0016-040C-0000-0000000FF1CE}
Microsoft Office Famille et Étudiant 2010-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall SINGLEIMAGE /dll OSETUP.DLL
Microsoft Office OneNote MUI (French) 2010-->MsiExec.exe /X{90140000-00A1-040C-0000-0000000FF1CE}
Microsoft Office Outlook MUI (French) 2010-->MsiExec.exe /X{90140000-001A-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2010-->MsiExec.exe /X{90140000-0018-040C-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2010-->MsiExec.exe /X{90140000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2010-->MsiExec.exe /X{90140000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2010-->MsiExec.exe /X{90140000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2010-->MsiExec.exe /X{90140000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2010-->MsiExec.exe /X{90140000-002C-040C-0000-0000000FF1CE}
Microsoft Office Publisher MUI (French) 2010-->MsiExec.exe /X{90140000-0019-040C-0000-0000000FF1CE}
Microsoft Office Shared MUI (French) 2010-->MsiExec.exe /X{90140000-006E-040C-0000-0000000FF1CE}
Microsoft Office Single Image 2010-->MsiExec.exe /X{90140000-003D-0000-0000-0000000FF1CE}
Microsoft Office Visio 2010-->MsiExec.exe /X{90140000-0057-0000-0000-0000000FF1CE}
Microsoft Office Visio MUI (French) 2010-->MsiExec.exe /X{90140000-0054-040C-0000-0000000FF1CE}
Microsoft Office Word MUI (French) 2010-->MsiExec.exe /X{90140000-001B-040C-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{299CF645-48C7-4FA1-8BCD-5CE200CF180D}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visio Premium 2010-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall VISIO /dll OSETUP.DLL
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual J# 2.0 Redistributable Package-->C:\Windows\Microsoft.NET\Framework\v2.0.50727\Microsoft Visual J# 2.0 Redistributable Package\install.exe
Mise à jour pour Microsoft Outlook Social Connector (KB2289116)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-040C-0000-0000000FF1CE}" "{05F22669-0926-4C2B-B2F8-0E8FEFED7AD5}" "1036" "0"
Mozilla Firefox (3.6.10)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP3 Parser (KB973685)-->MsiExec.exe /I{859DFA95-E4A6-48CD-B88E-A3E483E89B44}
NEC Electronics USB 3.0 Host Controller Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{D7BF9739-8A68-4335-BBEE-37752AD9E86B}\setup.exe" -runfromtemp -l0x0409 -removeonly
NEC Electronics USB 3.0 Host Controller Driver-->MsiExec.exe /I{D7BF9739-8A68-4335-BBEE-37752AD9E86B}
NVIDIA Updatus-->"C:\Program Files (x86)\InstallShield Installation Information\{7357286A-CBE7-4F4A-BABC-EC4B3DD63862}\setup.exe" -runfromtemp -l0x0009
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
P-CAD 2006-->MsiExec.exe /I{86A71ABC-0613-4DD1-B1AD-8ED65C253DA5}
QuickTime-->MsiExec.exe /I{E7004147-2CCA-431C-AA05-2AB166B9785D}
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe" -removeonly
RocketDock 1.3.5-->"C:\Program Files (x86)\RocketDock\unins000.exe"
Skype™ 4.2-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
syncables desktop SE-->MsiExec.exe /X{BBED4F90-7AE5-40BF-AFB7-1B495692F4AB}
Update for Microsoft Office 2010 (KB2202188)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{86B7A074-265D-420C-9E1E-7A920EF0ECA7}" "1036" "0"
Update for Microsoft Office 2010 (KB2202188)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0057-0000-0000-0000000FF1CE}" "{86B7A074-265D-420C-9E1E-7A920EF0ECA7}" "1036" "0"
Update for Microsoft OneNote 2010 (KB2288640)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{521AB5E8-5FFF-45C8-B750-6967F8C0A2B9}" "1036" "0"
Update for Microsoft Outlook Social Connector (KB2289116)-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-003D-0000-0000-0000000FF1CE}" "{75F91382-920C-4AE1-B9E6-FFFCEDA797E8}" "1036" "0"
VC80CRTRedist - 8.0.50727.4053-->MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
VLC media player 1.1.4-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
Windows Live Call-->MsiExec.exe /I{01523985-2098-43AF-9C97-12B07BE02A9B}
Windows Live Communications Platform-->MsiExec.exe /I{F69E83CF-B440-43F8-89E6-6EA80712109B}
Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
Windows Live Sync-->MsiExec.exe /X{67D0313C-4F15-437D-9A2D-C1564088A26A}
Windows Live Toolbar-->MsiExec.exe /X{915809D6-1F93-45F2-9699-5F1DA64DC24B}
Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
WinFlash-->MsiExec.exe /X{8F21291E-0444-4B1D-B9F9-4370A73E346D}
Wireless Console 3-->MsiExec.exe /I{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}
======System event log======
Computer Name: Katawan
Event Code: 1014
Message: La résolution du nom ocsp.verisign.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
Record Number: 2400
Source Name: Microsoft-Windows-DNS-Client
Time Written: 20101002123806.930915-000
Event Type: Avertissement
User: AUTORITE NT\SERVICE RÉSEAU
Computer Name: Katawan
Event Code: 11
Message: Les bibliothèques de liens dynamiques sont chargées pour chaque application. L’administrateur système doit vérifier la liste des bibliothèques pour s’assurer qu’elles sont associées à des applications approuvées.
Record Number: 2301
Source Name: Microsoft-Windows-Wininit
Time Written: 20101002183026.825688-000
Event Type: Avertissement
User: AUTORITE NT\Système
Computer Name: Katawan
Event Code: 4001
Message: Le Service d’autoconfiguration WLAN s’est arrêté correctement.
Record Number: 2255
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20101002182918.971315-000
Event T
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 25 Avril 2012 à 19h55
hello,
fais ceci:
AdwCleaner - Recherche :
[*]Sur cette page AdwCleaner de Xplode , clique sur Télécharger et enregistre le fichier sur ton Bureau
[*]Double-clique sur l'icône AdwCleaner0.exe pour lancer l'installation

/!\ Sous Vista et Windows 7, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
[*]Sur le menu principal, clique sur Recherche et patiente le temps de l'analyse
[*]A la fin du scan, un rapport AdwCleaner[R].txt s'ouvre. Poste le contenu de ce rapport dans ta prochaine réponse
Le rapport se trouve sous C:\AdwCleaner[R].txt
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 25 Avril 2012 à 22h28
Salut,
merci pour ta grande réactivité ! Voilà le rapport demandé
Code # AdwCleaner v1.604 - Rapport créé le 25/04/2012 à 22:21:37
# Mis à jour le 23/04/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Quentin - QUENTIN
# Exécuté depuis : C:\Users\Quentin\Desktop\adwcleaner.exe
# Option [Recherche]
***** [Services] *****
***** [Fichiers / Dossiers] *****
Dossier Présent : C:\Users\Quentin\chat-land
Dossier Présent : C:\Users\Quentin\AppData\Local\~0
Dossier Présent : C:\Users\Quentin\AppData\Local\TempDir
Dossier Présent : C:\Users\Quentin\AppData\LocalLow\Toolbar4
Dossier Présent : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\Conduit
Dossier Présent : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\ConduitEngine
Dossier Présent : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\extensions\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}
Dossier Présent : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\extensions\engine@conduit.com
***** [Registre] *****
Clé Présente : HKCU\Software\Softonic
Clé Présente : HKLM\SOFTWARE\Conduit
[x64] Clé Présente : HKCU\Software\Softonic
***** [Registre - GUID] *****
Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}
Clé Présente : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}]
[x64] Clé Présente : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}
[x64] Clé Présente : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
[x64] Valeur Présente : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}]
***** [Navigateurs] *****
-\\ Internet Explorer v9.0.8112.16421
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.bigseekpro.com/kcsoftwares/{4A406E6C-4130-4D3A-B23B-0599AE10F38C}
-\\ Mozilla Firefox v11.0 (fr)
Nom du profil : default
Fichier : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\prefs.js
Présente : user_pref("CT2851639..clientLogIsEnabled", false);
Présente : user_pref("CT2851639..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Présente : user_pref("CT2851639..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Présente : user_pref("CT2851639.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Présente : user_pref("CT2851639.CTID", "CT2851639");
Présente : user_pref("CT2851639.CurrentServerDate", "19-12-2010");
Présente : user_pref("CT2851639.DialogsAlignMode", "LTR");
Présente : user_pref("CT2851639.DownloadReferralCookieData", "");
Présente : user_pref("CT2851639.EMailNotifierPollDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.FeedLastCount2548968607390276962", 183);
Présente : user_pref("CT2851639.FeedPollDate129351529712775081", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775087", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775093", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775099", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775105", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775111", "Sun Dec 19 2010 18:47:40 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775117", "Sun Dec 19 2010 18:47:40 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775123", "Sun Dec 19 2010 18:47:40 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775129", "Sun Dec 19 2010 18:47:40 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775135", "Sun Dec 19 2010 18:47:40 GMT+0100");
Présente : user_pref("CT2851639.FeedPollDate129351529712775141", "Sun Dec 19 2010 18:47:40 GMT+0100");
Présente : user_pref("CT2851639.FeedTTL129351529712775081", 10);
Présente : user_pref("CT2851639.FeedTTL129351529712775105", 15);
Présente : user_pref("CT2851639.FeedTTL129351529712775117", 5);
Présente : user_pref("CT2851639.FeedTTL129351529712775129", 5);
Présente : user_pref("CT2851639.FirstServerDate", "19-12-2010");
Présente : user_pref("CT2851639.FirstTime", true);
Présente : user_pref("CT2851639.FirstTimeFF3", true);
Présente : user_pref("CT2851639.FixPageNotFoundErrors", false);
Présente : user_pref("CT2851639.GroupingServerCheckInterval", 1440);
Présente : user_pref("CT2851639.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Présente : user_pref("CT2851639.HasUserGlobalKeys", true);
Présente : user_pref("CT2851639.Initialize", true);
Présente : user_pref("CT2851639.InitializeCommonPrefs", true);
Présente : user_pref("CT2851639.InstallationAndCookieDataSentCount", 1);
Présente : user_pref("CT2851639.InstallationType", "UnknownIntegration");
Présente : user_pref("CT2851639.InstalledDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.IsGrouping", false);
Présente : user_pref("CT2851639.IsMulticommunity", false);
Présente : user_pref("CT2851639.IsOpenThankYouPage", true);
Présente : user_pref("CT2851639.IsOpenUninstallPage", false);
Présente : user_pref("CT2851639.LanguagePackLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.LanguagePackReloadIntervalMM", 1440);
Présente : user_pref("CT2851639.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Présente : user_pref("CT2851639.LastLogin_3.2.5.2", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.LatestVersion", "3.2.5.2");
Présente : user_pref("CT2851639.Locale", "fr");
Présente : user_pref("CT2851639.MCDetectTooltipHeight", "83");
Présente : user_pref("CT2851639.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Présente : user_pref("CT2851639.MCDetectTooltipWidth", "295");
Présente : user_pref("CT2851639.SearchFromAddressBarIsInit", true);
Présente : user_pref("CT2851639.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT285[...]
Présente : user_pref("CT2851639.SearchInNewTabEnabled", true);
Présente : user_pref("CT2851639.SearchInNewTabIntervalMM", 1440);
Présente : user_pref("CT2851639.SearchInNewTabLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Présente : user_pref("CT2851639.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Présente : user_pref("CT2851639.ServiceMapLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.SettingsLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.SettingsLastUpdate", "1292489785");
Présente : user_pref("CT2851639.ThirdPartyComponentsInterval", 504);
Présente : user_pref("CT2851639.ThirdPartyComponentsLastCheck", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.ThirdPartyComponentsLastUpdate", "1255348267");
Présente : user_pref("CT2851639.TrusteLinkUrl", "hxxp://www.truste.org/pvr.php?page=validate&softwareProgramId=[...]
Présente : user_pref("CT2851639.UserID", "UN91088139486521860");
Présente : user_pref("CT2851639.WeatherNetwork", "");
Présente : user_pref("CT2851639.WeatherPollDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.WeatherUnit", "C");
Présente : user_pref("CT2851639.alertChannelId", "1243674");
Présente : user_pref("CT2851639.myStuffEnabled", true);
Présente : user_pref("CT2851639.myStuffPublihserMinWidth", 400);
Présente : user_pref("CT2851639.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Présente : user_pref("CT2851639.myStuffServiceIntervalMM", 1440);
Présente : user_pref("CT2851639.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Présente : user_pref("CT2851639.testingCtid", "");
Présente : user_pref("CT2851639.toolbarAppMetaDataLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.toolbarContextMenuLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CT2851639.usagesFlag", 2);
Présente : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1243674/1239347/CH", "\"0\"[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/CH", "\"0\"")[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2851639", [...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/toolbar/", "\"63427934310393[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "63[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2851639/CT2851639[...]
Présente : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=fr", "\"634[...]
Présente : user_pref("CommunityToolbar.EngineOwner", "CT2851639");
Présente : user_pref("CommunityToolbar.EngineOwnerGuid", "{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}");
Présente : user_pref("CommunityToolbar.EngineOwnerToolbarId", "utorrentbar_fr");
Présente : user_pref("CommunityToolbar.IsEngineShown", true);
Présente : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Présente : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2851639");
Présente : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}");
Présente : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "utorrentbar_fr");
Présente : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.pr[...]
Présente : user_pref("CommunityToolbar.ToolbarsList", "CT2851639,ConduitEngine");
Présente : user_pref("CommunityToolbar.ToolbarsList2", "CT2851639,ConduitEngine");
Présente : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Mon May 30 2011 21:53:05 GMT+02[...]
Présente : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Présente : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Mon Jun 27 2011 10:59:00 GMT+0200");
Présente : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Présente : user_pref("CommunityToolbar.alert.locale", "en");
Présente : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Présente : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Mon Jun 27 2011 10:58:52 GMT+0200");
Présente : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
Présente : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Présente : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Présente : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Présente : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Présente : user_pref("CommunityToolbar.alert.userId", "e885ce08-3df9-466b-a4d0-feaf61f92822");
Présente : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Présente : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Présente : user_pref("ConduitEngine.CTID", "ConduitEngine");
Présente : user_pref("ConduitEngine.FirstTime", true);
Présente : user_pref("ConduitEngine.FirstTimeFF3", true);
Présente : user_pref("ConduitEngine.FixPageNotFoundErrors", false);
Présente : user_pref("ConduitEngine.HasUserGlobalKeys", true);
Présente : user_pref("ConduitEngine.Initialize", true);
Présente : user_pref("ConduitEngine.InitializeCommonPrefs", true);
Présente : user_pref("ConduitEngine.InstallationType", "UnknownIntegration");
Présente : user_pref("ConduitEngine.InstalledDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("ConduitEngine.IsMulticommunity", false);
Présente : user_pref("ConduitEngine.IsOpenThankYouPage", false);
Présente : user_pref("ConduitEngine.IsOpenUninstallPage", false);
Présente : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("ConduitEngine.LastLogin_3.2.5.2", "Sun Dec 19 2010 18:50:24 GMT+0100");
Présente : user_pref("ConduitEngine.PublisherContainerWidth", 0);
Présente : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
Présente : user_pref("ConduitEngine.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=C[...]
Présente : user_pref("ConduitEngine.SettingsLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("ConduitEngine.UserID", "UN14456414291059771");
Présente : user_pref("ConduitEngine.engineLocale", "fr");
Présente : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Présente : user_pref("ConduitEngine.initDone", true);
*************************
AdwCleaner[R1].txt - [14208 octets] - [25/04/2012 22:21:38]
########## EOF - C:\AdwCleaner[R1].txt - [14337 octets] ##########
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 26 Avril 2012 à 12h53
AdwCleaner - Suppression :
[*]Ferme toutes les applications, y compris ton navigateur
[*]Relance AdwCleaner par un double-clique sur l'icône AdwCleaner0.exe pour lancer l'installation

/!\ Sous Vista et Windows 7, il faut lancer le fichier par clic-droit -> Exécuter en tant qu'administrateur
[*]Sur le menu principal, clique sur Suppression et patiente le temps de l'analyse
[*]A la fin du scan, un rapport AdwCleaner[R] s'ouvre. Poste le contenu de ce rapport dans ta prochaine réponse
Le rapport se trouve sous C:\AdwCleaner[R].txt
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 26 Avril 2012 à 17h25
Voilà, voilà:
Code # AdwCleaner v1.604 - Rapport créé le 26/04/2012 à 17:15:05
# Mis à jour le 23/04/2012 par Xplode
# Système d'exploitation : Windows 7 Home Premium Service Pack 1 (64 bits)
# Nom d'utilisateur : Quentin - QUENTIN
# Exécuté depuis : C:\Users\Quentin\Desktop\adwcleaner.exe
# Option [Suppression]
***** [Services] *****
***** [Fichiers / Dossiers] *****
Dossier Supprimé : C:\Users\Quentin\chat-land
Dossier Supprimé : C:\Users\Quentin\AppData\Local\~0
Dossier Supprimé : C:\Users\Quentin\AppData\Local\TempDir
Dossier Supprimé : C:\Users\Quentin\AppData\LocalLow\Toolbar4
Dossier Supprimé : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\Conduit
Dossier Supprimé : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\ConduitEngine
Dossier Supprimé : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\extensions\{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}
Dossier Supprimé : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\extensions\engine@conduit.com
***** [Registre] *****
Clé Supprimée : HKCU\Software\Softonic
Clé Supprimée : HKLM\SOFTWARE\Conduit
***** [Registre - GUID] *****
Clé Supprimée : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}
Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Valeur Supprimée : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{05EEB91A-AEF7-4F8A-978F-FB83E7B03F8E}]
***** [Navigateurs] *****
-\\ Internet Explorer v9.0.8112.16421
Remplacé : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.bigseekpro.com/kcsoftwares/{4A406E6C-4130-4D3A-B23B-0599AE10F38C} --> hxxp://www.google.fr
-\\ Mozilla Firefox v11.0 (fr)
Nom du profil : default
Fichier : C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\fge4wqtd.default\prefs.js
Supprimée : user_pref("CT2851639..clientLogIsEnabled", false);
Supprimée : user_pref("CT2851639..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...]
Supprimée : user_pref("CT2851639..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...]
Supprimée : user_pref("CT2851639.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Supprimée : user_pref("CT2851639.CTID", "CT2851639");
Supprimée : user_pref("CT2851639.CurrentServerDate", "19-12-2010");
Supprimée : user_pref("CT2851639.DialogsAlignMode", "LTR");
Supprimée : user_pref("CT2851639.DownloadReferralCookieData", "");
Supprimée : user_pref("CT2851639.EMailNotifierPollDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.FeedLastCount2548968607390276962", 183);
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775081", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775087", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775093", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775099", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775105", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775111", "Sun Dec 19 2010 18:47:40 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775117", "Sun Dec 19 2010 18:47:40 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775123", "Sun Dec 19 2010 18:47:40 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775129", "Sun Dec 19 2010 18:47:40 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775135", "Sun Dec 19 2010 18:47:40 GMT+0100");
Supprimée : user_pref("CT2851639.FeedPollDate129351529712775141", "Sun Dec 19 2010 18:47:40 GMT+0100");
Supprimée : user_pref("CT2851639.FeedTTL129351529712775081", 10);
Supprimée : user_pref("CT2851639.FeedTTL129351529712775105", 15);
Supprimée : user_pref("CT2851639.FeedTTL129351529712775117", 5);
Supprimée : user_pref("CT2851639.FeedTTL129351529712775129", 5);
Supprimée : user_pref("CT2851639.FirstServerDate", "19-12-2010");
Supprimée : user_pref("CT2851639.FirstTime", true);
Supprimée : user_pref("CT2851639.FirstTimeFF3", true);
Supprimée : user_pref("CT2851639.FixPageNotFoundErrors", false);
Supprimée : user_pref("CT2851639.GroupingServerCheckInterval", 1440);
Supprimée : user_pref("CT2851639.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Supprimée : user_pref("CT2851639.HasUserGlobalKeys", true);
Supprimée : user_pref("CT2851639.Initialize", true);
Supprimée : user_pref("CT2851639.InitializeCommonPrefs", true);
Supprimée : user_pref("CT2851639.InstallationAndCookieDataSentCount", 1);
Supprimée : user_pref("CT2851639.InstallationType", "UnknownIntegration");
Supprimée : user_pref("CT2851639.InstalledDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.IsGrouping", false);
Supprimée : user_pref("CT2851639.IsMulticommunity", false);
Supprimée : user_pref("CT2851639.IsOpenThankYouPage", true);
Supprimée : user_pref("CT2851639.IsOpenUninstallPage", false);
Supprimée : user_pref("CT2851639.LanguagePackLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.LanguagePackReloadIntervalMM", 1440);
Supprimée : user_pref("CT2851639.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Supprimée : user_pref("CT2851639.LastLogin_3.2.5.2", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.LatestVersion", "3.2.5.2");
Supprimée : user_pref("CT2851639.Locale", "fr");
Supprimée : user_pref("CT2851639.MCDetectTooltipHeight", "83");
Supprimée : user_pref("CT2851639.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Supprimée : user_pref("CT2851639.MCDetectTooltipWidth", "295");
Supprimée : user_pref("CT2851639.SearchFromAddressBarIsInit", true);
Supprimée : user_pref("CT2851639.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT285[...]
Supprimée : user_pref("CT2851639.SearchInNewTabEnabled", true);
Supprimée : user_pref("CT2851639.SearchInNewTabIntervalMM", 1440);
Supprimée : user_pref("CT2851639.SearchInNewTabLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...]
Supprimée : user_pref("CT2851639.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Supprimée : user_pref("CT2851639.ServiceMapLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.SettingsLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.SettingsLastUpdate", "1292489785");
Supprimée : user_pref("CT2851639.ThirdPartyComponentsInterval", 504);
Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastCheck", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.ThirdPartyComponentsLastUpdate", "1255348267");
Supprimée : user_pref("CT2851639.TrusteLinkUrl", "hxxp://www.truste.org/pvr.php?page=validate&softwareProgramId=[...]
Supprimée : user_pref("CT2851639.UserID", "UN91088139486521860");
Supprimée : user_pref("CT2851639.WeatherNetwork", "");
Supprimée : user_pref("CT2851639.WeatherPollDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.WeatherUnit", "C");
Supprimée : user_pref("CT2851639.alertChannelId", "1243674");
Supprimée : user_pref("CT2851639.myStuffEnabled", true);
Supprimée : user_pref("CT2851639.myStuffPublihserMinWidth", 400);
Supprimée : user_pref("CT2851639.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...]
Supprimée : user_pref("CT2851639.myStuffServiceIntervalMM", 1440);
Supprimée : user_pref("CT2851639.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Supprimée : user_pref("CT2851639.testingCtid", "");
Supprimée : user_pref("CT2851639.toolbarAppMetaDataLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.toolbarContextMenuLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CT2851639.usagesFlag", 2);
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1243674/1239347/CH", "\"0\"[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/CH", "\"0\"")[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2851639", [...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/toolbar/", "\"63427934310393[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "63[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://settings.toolbar.search.conduit.com/root/CT2851639/CT2851639[...]
Supprimée : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=fr", "\"634[...]
Supprimée : user_pref("CommunityToolbar.EngineOwner", "CT2851639");
Supprimée : user_pref("CommunityToolbar.EngineOwnerGuid", "{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}");
Supprimée : user_pref("CommunityToolbar.EngineOwnerToolbarId", "utorrentbar_fr");
Supprimée : user_pref("CommunityToolbar.IsEngineShown", true);
Supprimée : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
Supprimée : user_pref("CommunityToolbar.OriginalEngineOwner", "CT2851639");
Supprimée : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}");
Supprimée : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "utorrentbar_fr");
Supprimée : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.pr[...]
Supprimée : user_pref("CommunityToolbar.ToolbarsList", "CT2851639,ConduitEngine");
Supprimée : user_pref("CommunityToolbar.ToolbarsList2", "CT2851639,ConduitEngine");
Supprimée : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Mon May 30 2011 21:53:05 GMT+02[...]
Supprimée : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
Supprimée : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Mon Jun 27 2011 10:59:00 GMT+0200");
Supprimée : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Supprimée : user_pref("CommunityToolbar.alert.locale", "en");
Supprimée : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Supprimée : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Mon Jun 27 2011 10:58:52 GMT+0200");
Supprimée : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
Supprimée : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Supprimée : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Supprimée : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Supprimée : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Supprimée : user_pref("CommunityToolbar.alert.userId", "e885ce08-3df9-466b-a4d0-feaf61f92822");
Supprimée : user_pref("CommunityToolbar.facebook.settingsLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Supprimée : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Supprimée : user_pref("ConduitEngine.CTID", "ConduitEngine");
Supprimée : user_pref("ConduitEngine.FirstTime", true);
Supprimée : user_pref("ConduitEngine.FirstTimeFF3", true);
Supprimée : user_pref("ConduitEngine.FixPageNotFoundErrors", false);
Supprimée : user_pref("ConduitEngine.HasUserGlobalKeys", true);
Supprimée : user_pref("ConduitEngine.Initialize", true);
Supprimée : user_pref("ConduitEngine.InitializeCommonPrefs", true);
Supprimée : user_pref("ConduitEngine.InstallationType", "UnknownIntegration");
Supprimée : user_pref("ConduitEngine.InstalledDate", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("ConduitEngine.IsMulticommunity", false);
Supprimée : user_pref("ConduitEngine.IsOpenThankYouPage", false);
Supprimée : user_pref("ConduitEngine.IsOpenUninstallPage", false);
Supprimée : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("ConduitEngine.LastLogin_3.2.5.2", "Sun Dec 19 2010 18:50:24 GMT+0100");
Supprimée : user_pref("ConduitEngine.PublisherContainerWidth", 0);
Supprimée : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
Supprimée : user_pref("ConduitEngine.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=C[...]
Supprimée : user_pref("ConduitEngine.SettingsLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("ConduitEngine.UserID", "UN14456414291059771");
Supprimée : user_pref("ConduitEngine.engineLocale", "fr");
Supprimée : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Sun Dec 19 2010 18:47:39 GMT+0100");
Supprimée : user_pref("ConduitEngine.initDone", true);
*************************
AdwCleaner[S1].txt - [14016 octets] - [26/04/2012 17:15:05]
########## EOF - C:\AdwCleaner[S1].txt - [14145 octets] ##########
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 26 Avril 2012 à 19h24
re;
on continue,
Ensuite fais ceci:
Télécharge Malwarebytes' Anti-Malware (MBAM)
[*] Double clique sur le fichier téléchargé pour lancer le processus d'installation.
[*] Dans l'onglet "Mise à jour", clique sur le bouton "Recherche de mise à jour": si le pare-feu demande l'autorisation à MBAM de se connecter, accepte.
[*] Une fois la mise à jour terminée, rends-toi dans l'onglet "Recherche".
[*] Sélectionne "Exécuter un examen rapide"
[*] Clique sur "Rechercher"
[*] L'analyse démarre, le scan est relativement long, c'est normal.
[*] A la fin de l'analyse, un message s'affiche :
Citation L'examen s'est terminé normalement. Clique sur 'Afficher les résultats' pour afficher tous les objets trouvés.
Clique sur "Ok" pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
[*] Ferme tes navigateurs.
[*] Si des malwares ont été détectés, clique sur Afficher les résultats.
Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
[*] MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport et poste-le dans ta prochaine réponse.
ps:
--->aide visuelle sur Mbam ici
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 26 Avril 2012 à 21h49
Bonne nouvelle je suppose, il n'a rien trouvé. J'espère que je ne te dérange pas pour rien...
Code Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org
Version de la base de données: v2012.04.26.04
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Quentin :: QUENTIN [administrateur]
26.04.2012 21:40:53
mbam-log-2012-04-26 (21-40-53).txt
Type d'examen: Examen rapide
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 258835
Temps écoulé: 3 minute(s), 43 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Valeur(s) du Registre détectée(s): 0
(Aucun élément nuisible détecté)
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 0
(Aucun élément nuisible détecté)
Fichier(s) détecté(s): 0
(Aucun élément nuisible détecté)
(fin)
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 27 Avril 2012 à 10h04
SFT.exe
==========
[*]Télécharger SFT.exe
[list][*]Sous Windows Vista/7:
[*]Clic droit sur le fichier et choisir Exécuter en tant qu’administrateur.
[*]Sous Windows XP:
[*]Double cliquer sur le fichier.
[*] Patienter le temps du nettoyage...dépend du nombre de fichiers à nettoyer. ( automatique, patience donc )

[*]Un rapport va s'ouvrir à la fin.
[*] Le rapport se trouve sur le bureau (SFT.txt)
============================================================================================
ensuite fais ceci:
ESET Online Scanner
Désactive tes protections
Comment faire ça ? Cliquer ici
Télécharge ESET Online Scanner sur ton Bureau en cliquant sur ce logo:
[*] Double-clique sur le fichier esetsmartinstaller_enu.exe présent sur ton Bureau pour installer le scanner. Attention: si tu disposes de Windows VISTA/Seven7[b], clique droit sur [b]esetsmartinstaller_enu.exe puis sélectionne "exécuter en tant qu'administrateur"
[*] Accepte la licence en cochant la case "YES, i accept the terms of use", puis clique sur le bouton "Start"
[*] Une fois le scanner installé, configure-le en décochant la case "Remove found threats" et en cochant la case "Scan archives"

[*] Lance la recherche antivirale en cliquant sur le bouton "Start": l'outil se met à jour puis lance le scan: une barre de progression indique où en est la recherche
[*] Quand le scan est terminé, si des virus ont été détectés, clique sur la ligne "List of found threats":

[*] Une nouvelle fenêtre aparaît: clique sur "Export to text file" et enregistre le rapport sur ton Bureau en le nommant logESET.txt
[*] Clique sur le bouton "Back" pour retourner à l'interface précédente, puis coche la case "Uninstall application on close"

[*] Clique enfin sur le bouton "Finish" puis ferme la fenêtre du scanner
[*] Ouvre le fichier logESET sur ton Bureau et copie-colle son contenu dans ta prochaine réponse
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 27 Avril 2012 à 12h53
Salut,
pourrais tu réactualiser ton lien SFT.exe, celui ci m'amène à un site d'hébergement et j'ai beau chercher je ne trouve pas le lien pour le téléchargement...
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 27 Avril 2012 à 19h28
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 01 Mai 2012 à 17h38
Salut,
Désolé pour la réponse tardive, mais le scan a pris 5 heures et je n'ai pas eu le temps de le lancer ce week-end. Cela dit il n'a rien trouvé.
J'ai réactivé mon compte hotmail après le deuxième hackage et ils ont l'air de dire que mon ordinateur est infecté pour s'être fait hacké deux fois d'affiler.
Enfin, voilà le rapport SFT:
[code]Rapport de SFT (Pierre13) du Dimanche 29 Avril 2012 à 13:22:43
Mis à jour le 21/04/2012
Outil lancé en Mode normal et En tant qu'administrateur
Windows 7 Service Pack 1 (64 bits)
Outil lancé à partir de : C:\Users\Quentin\Desktop
1771 éléments supprimés => 112.31 Mo libérés.
C:\Windows\Temp\fwtsqmfile00.sqm
C:\Windows\Temp\fwtsqmfile01.sqm
C:\Windows\Temp\fwtsqmfile02.sqm
C:\Windows\Temp\vminst.log
C:\Windows\Temp\vmware-Système\vmware-usbarb-Système-2480.log
C:\Windows\Temp\vmware-Système\vmware-usbarb-Système-2552.log
C:\Windows\Temp\vmware-Système\vmware-usbarb-Système-2568.log
C:\Windows\Temp\vmware-Système\vmware-usbarb-Système-2656.log
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\0b029d424bd5528da72a39aad30c3b87.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\7401e4d44ad9184a98e118e73fe162a8.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\7acb2ac8013e9e4e9a1e4d69e9781287.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\9e3775ca8758db47ad4c719ada8b2e79.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\b384753ddf18b843b8c5847be4919b23.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\b466f0929c61254e8f3991f4e497bb50.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\c37862c97af211dc9a390016cb38828a.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\d88137f410a18f616724ff701241eefb.idx
C:\Users\Quentin\AppData\LocalLow\Adobe\Acrobat\9.0\Search\f1d83392b09bd64fab76f63ac049e5b5.idx
C:\Users\Quentin\AppData\LocalLow\Apple Computer\QuickTime\QuickTime.qtp
C:\Users\Quentin\AppData\LocalLow\boost_interprocess\DDM0serviceCmdLock
C:\Users\Quentin\AppData\LocalLow\boost_interprocess\DDM0serviceCmdSerializeLock
C:\Users\Quentin\AppData\LocalLow\boost_interprocess\DDM0serviceCmdShared
C:\Users\Quentin\AppData\LocalLow\boost_interprocess\DDM0serviceLock
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0797C381B2F87EB5A1D5573BD15BA4F4
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\130ADF60D1B7B3CF82CC6CA82D961601_852715C818FC7DE6D680EFABDA1FA224
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1B9435E949F2B3D267BABDE0C8BC19A6
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\303572DF538EDD8B1D606185F1D559B8
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\45781A86D7D79A4E3FE6F4DF8CDF171D_E0B7CDE0B6AB7ABECB214E5A7A028B64
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DB1DABDF57ED9997FE8DCC77E93C04F
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_46CCCFB940A93F39A734F69EFCDD76E9
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5BF987767EE121EB773E3E93D13C2F30_0B2AEF4FE043D0F11F387BBA16F05698
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5C45AD19E3530EC4218F560AFC04C3F7
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\62B5AF9BE9ADC1085C3C56EC07A82BF6
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\79841F8EF00FBA86D33CC5A47696F165
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_96E18C6F7F11D436D50EB658BB37DA57
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8DFDF057024880D7A081AFBF6D26B92F
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A92F33496848CFF4F115ED04BCDD933A_DDA92DE35EE3D6A058552385D706EE1D
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B360E08E231C1F83EC47B8D294494BCD_838E85C4A57AA8724BC823D178E52D10
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BD8A14C7C024625432CC03FE72E47EF0_409DEA81B7234F81C72B5F0F7668EA3F
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C554DCF706A5AAB8B360FAD227EAB9C7
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C571B417AAF1F617555A0486AB3F5361
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D0197CD123129A6D466C5F0FC1584EA2_415CF1E2239BBFB812667D030A1B2462
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D725F3459E2275E9EA5871B92AD896D0
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0940B0258BD54E5E69C9FD9ABD98139_8D0FF524084BFF21A47BE4059BD4E49D
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E2EF7F0FB7284B9ACFD4F65D02218479
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E6E835FBF68756BDC127B689887C65CF
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F4B372709D6C2AD766C34D274501DC76_516445E2D2E0044FF0510B085B354A0C
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F5DDD23C10ADFC584C14B5F413D80047_B6E937031D01EEBBBD0BCF0ED2C1A4FE
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F90F18257CBB4D84216AC1E1F3BB2C76
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\FB788E090BC1F3AA2FBC9E8FB2859601
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0797C381B2F87EB5A1D5573BD15BA4F4
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\130ADF60D1B7B3CF82CC6CA82D961601_852715C818FC7DE6D680EFABDA1FA224
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1B9435E949F2B3D267BABDE0C8BC19A6
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\303572DF538EDD8B1D606185F1D559B8
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\45781A86D7D79A4E3FE6F4DF8CDF171D_E0B7CDE0B6AB7ABECB214E5A7A028B64
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DB1DABDF57ED9997FE8DCC77E93C04F
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_46CCCFB940A93F39A734F69EFCDD76E9
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5BF987767EE121EB773E3E93D13C2F30_0B2AEF4FE043D0F11F387BBA16F05698
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5C45AD19E3530EC4218F560AFC04C3F7
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\62B5AF9BE9ADC1085C3C56EC07A82BF6
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\79841F8EF00FBA86D33CC5A47696F165
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_96E18C6F7F11D436D50EB658BB37DA57
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8DFDF057024880D7A081AFBF6D26B92F
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A92F33496848CFF4F115ED04BCDD933A_DDA92DE35EE3D6A058552385D706EE1D
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B360E08E231C1F83EC47B8D294494BCD_838E85C4A57AA8724BC823D178E52D10
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BD8A14C7C024625432CC03FE72E47EF0_409DEA81B7234F81C72B5F0F7668EA3F
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C554DCF706A5AAB8B360FAD227EAB9C7
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C571B417AAF1F617555A0486AB3F5361
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D0197CD123129A6D466C5F0FC1584EA2_415CF1E2239BBFB812667D030A1B2462
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D725F3459E2275E9EA5871B92AD896D0
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0940B0258BD54E5E69C9FD9ABD98139_8D0FF524084BFF21A47BE4059BD4E49D
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E2EF7F0FB7284B9ACFD4F65D02218479
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E6E835FBF68756BDC127B689887C65CF
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F4B372709D6C2AD766C34D274501DC76_516445E2D2E0044FF0510B085B354A0C
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F5DDD23C10ADFC584C14B5F413D80047_B6E937031D01EEBBBD0BCF0ED2C1A4FE
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F90F18257CBB4D84216AC1E1F3BB2C76
C:\Users\Quentin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\FB788E090BC1F3AA2FBC9E8FB2859601
C:\Users\Quentin\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\index.dat
C:\Users\Quentin\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_${searchCLSID}.ico
C:\Users\Quentin\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Users\Quentin\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{6A1806CD-94D4-4689-BA73-E35EA1EA9990}.ico
C:\Users\Quentin\AppData\LocalLow\Microsoft\Search Enhancement Pack\Search Box Extension\history.dat
C:\Users\Quentin\AppData\LocalLow\Microsoft\Search Enhancement Pack\Search Box Extension\searchhs.dat
C:\Users\Quentin\AppData\LocalLow\Microsoft\Silverlight\mssl.lck
C:\Users\Quentin\AppData\LocalLow\Sun\Java\AU\au.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\AU\au.msi
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\deployment.properties
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\lastAccessed
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1\747ddf01-34153da6
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1\747ddf01-34153da6.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1\747ddf01-6.0.lap
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\29392651-265a4bba
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\29392651-265a4bba.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\25\57a24c19-7fcf3a98
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\25\57a24c19-7fcf3a98.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\3\21df2903-33f3acf8.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36\560263e4-413ebaaa
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36\560263e4-413ebaaa.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\470cd02b-1334a1db
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\470cd02b-1334a1db.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\470cd02b-6.0.lap
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\splash\splash.xml
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\11\21e928cb-299a057e
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\11\21e928cb-299a057e.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\26\457dee9a-5aba0542
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\26\457dee9a-5aba0542.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\3\1cfa1583-5cede40a
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\3\1cfa1583-5cede40a.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2b812241
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2b812241.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-2bae880b.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-7cb6073e.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-57ce6791
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-57ce6791.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-57ce6791-n\jmc.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-57ce6791-n\msvcp71.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-57ce6791-n\msvcr71.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-488aa19d
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-488aa19d.idx
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-488aa19d-n\decora-d3d.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-488aa19d-n\decora-sse.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jdk1.7.0\jdk1.7.0.msi
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jdk1.7.0\sd170000.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jdk1.7.0\sj170000.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jdk1.7.0\ss170000.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jdk1.7.0\st170000.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jdk1.7.0\sz170000.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_20\Data1.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_20\jre1.6.0_20.msi
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_20\jre1036.MST
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_22\OpenOffice_banner.jpg
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_30\Data1.cab
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_30\gtapi.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_30\jre1.6.0_30.msi
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_30\jre1036.MST
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_30\lzma.dll
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.6.0_30\sp1036.MST
C:\Users\Quentin\AppData\LocalLow\Sun\Java\jre1.7.0_03\lzma.dll
C:\Users\Quentin\AppData\Local\GDIPFONTCACHEV1.DAT
C:\Users\Quentin\AppData\Local\IconCache.db
C:\Users\Quentin\AppData\Local\.Kanton VS\VSTax 2011\VSTax 2011.properties
C:\Users\Quentin\AppData\Local\2DBoy\WorldOfGoo\pers2.dat
C:\Users\Quentin\AppData\Local\Adobe\Acrobat\9.0\Cache\AcroFnt09.lst
C:\Users\Quentin\AppData\Local\Adobe\Acrobat\9.0\Updater\updater.log
C:\Users\Quentin\AppData\Local\Adobe\Color\ACECache10.lst
C:\Users\Quentin\AppData\Local\Adobe\Color\Profiles\wscRGB.icc
C:\Users\Quentin\AppData\Local\Adobe\Color\Profiles\wsRGB.icc
C:\Users\Quentin\AppData\Local\Adobe\TypeSupport\AdobeFnt11.lst
C:\Users\Quentin\AppData\Local\Adobe\Updater6\acrobatPI.log
C:\Users\Quentin\AppData\Local\Adobe\Updater6\AdobeUpdaterPrefs.dat
C:\Users\Quentin\AppData\Local\Adobe\Updater6\aum.log
C:\Users\Quentin\AppData\Local\Adobe\Updater6\aumLib.log
C:\Users\Quentin\AppData\Local\Adobe\Updater6\bobcache.dat
C:\Users\Quentin\AppData\Local\Adobe\Updater6\bobcache.sig
C:\Users\Quentin\AppData\Local\Adobe\Updater6\Data\AdobeUpdater.aum
C:\Users\Quentin\AppData\Local\Adobe\Updater6\Data\AdobeUpdater_meta.txt
C:\Users\Quentin\AppData\Local\Adobe\Updater6\Data\reader9rdr-MUI.aum
C:\Users\Quentin\AppData\Local\Adobe\Updater6\Data\reader9rdr-MUI.aup.xml
C:\Users\Quentin\AppData\Local\Adobe\Updater6\Data\reader9rdr-MUI_meta.txt
C:\Users\Quentin\AppData\Local\Apple Computer\iTunes\Cache.db
C:\Users\Quentin\AppData\Local\Apple Computer\iTunes\goog-phish-shavar.dat
C:\Users\Quentin\AppData\Local\Apple Computer\iTunes\goog-phish-shavar.db
C:\Users\Quentin\AppData\Local\Apple Computer\iTunes\iTunesPrefs.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\config.ini
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp1.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp10.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp11.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp12.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp13.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp14.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp15.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp16.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp17.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp18.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp19.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp2.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp20.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp3.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp4.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp5.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp6.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp7.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp8.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\AnimStamp\astamp9.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template0.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template0.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template1.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template1.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template2.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template2.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template3.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template3.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template4.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template4.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template5.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template5.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template6.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template6.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template7.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template7.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template8.jpg
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClub\template8.xml
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame1.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame10.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame11.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame12.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame13.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame14.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame15.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame2.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame3.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame4.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame5.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame6.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame7.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame8.lif
C:\Users\Quentin\AppData\Local\ASUS\LifeFrame\PhotoClubFrame\frame9.lif
C:\Users\Quentin\AppData\Local\DDMSettings\settings.ddi
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\latest.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\2C75FB61-0F23-4608-BA8F-1374CC798558.Diagnose.1.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\F4F3FAFD-861D-4B92-9890-20436D83F0ED.Diagnose.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\NetworkConfiguration.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012012513.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\AAB38125-3486-41F0-95D4-5A650FCB922A.Diagnose.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\NetworkConfiguration.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\NetworkDiagnostics.1.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012031821.001\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012040218.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012040218.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012040218.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012040218.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.001\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.001\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.001\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041512.001\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041616.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041616.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041616.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041616.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041617.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041617.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041617.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041617.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041716.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041716.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041716.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041716.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\38D5AA41-4BEE-401B-8AD2-FD369C557062.Diagnose.3.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\38D5AA41-4BEE-401B-8AD2-FD369C557062.Repair.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\38D5AA41-4BEE-401B-8AD2-FD369C557062.Verify.1.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\ACA47150-1B54-4827-AEB3-0E6AE0419B0A.Diagnose.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\ACA47150-1B54-4827-AEB3-0E6AE0419B0A.Repair.1.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\ACA47150-1B54-4827-AEB3-0E6AE0419B0A.Verify.2.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\NetworkConfiguration.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\NetworkDiagnostics.1.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\NetworkDiagnostics.2.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012041719.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042317.000\D79C4887-3361-40BF-B1CE-0DC316A47C5D.Diagnose.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042317.000\NetworkConfiguration.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042317.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042317.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042317.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042317.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\FE240402-6A3C-435F-8349-AF5869FD04A5.Diagnose.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\FE240402-6A3C-435F-8349-AF5869FD04A5.Repair.1.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\FE240402-6A3C-435F-8349-AF5869FD04A5.Verify.2.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\FE699AD0-8F3A-4BC1-BF70-9ACF2AFDF515.Diagnose.3.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\FE699AD0-8F3A-4BC1-BF70-9ACF2AFDF515.Repair.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\FE699AD0-8F3A-4BC1-BF70-9ACF2AFDF515.Verify.1.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\NetworkConfiguration.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\NetworkDiagnostics.1.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\NetworkDiagnostics.2.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042615.000\results.xsl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\425E56E9-AD10-4E85-BBEC-3A66D5B53394.Diagnose.0.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\425E56E9-AD10-4E85-BBEC-3A66D5B53394.Repair.1.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\425E56E9-AD10-4E85-BBEC-3A66D5B53394.Verify.2.etl
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\NetworkConfiguration.cab
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\NetworkDiagnostics.0.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\NetworkDiagnostics.1.debugreport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\ResultReport.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\results.xml
C:\Users\Quentin\AppData\Local\Diagnostics\460911090\2012042620.000\results.xsl
C:\Users\Quentin\AppData\Local\Downloaded Installations\{829516DE-A5FB-431E-849F-9C0B0E4EBF97}\System Requirements.msi
C:\Users\Quentin\AppData\Local\Downloaded Installations\{9DE1FBE6-C94F-48E2-958E-E41A365D7F99}\HP MFPDigital Sender (OXPd) Add-On.msi
C:\Users\Quentin\AppData\Local\Downloaded Installations\{D276C2AD-68D3-4EBE-9CD7-BE0FB1707084}\KYOcapture Express.msi
C:\Users\Quentin\AppData\Local\Downloaded Installations\{DAB7CC7A-F9CA-4079-9A7B-CB9E54CDC6C9}\Software Maintenance.msi
C:\Users\Quentin\AppData\Local\Downloaded Installations\{E5267BFE-C91F-408A-B2A1-44D44BE474E6}\KYOcapture.msi
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\FacebookCrashHandler.exe
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\FacebookUpdate.exe
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\FacebookUpdateHelper.msi
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ar.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_bg.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_bn.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ca.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_cs.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_da.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_de.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_el.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_en.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_en-GB.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_es.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_es-419.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_et.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_fa.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_fi.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_fil.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_fr.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_gu.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_hi.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_hr.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_hu.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_id.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_is.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_it.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_iw.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ja.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_kn.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ko.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_lt.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_lv.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ml.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_mr.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ms.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_nl.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_no.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_or.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_pl.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_pt-BR.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_pt-PT.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ro.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ru.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_sk.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_sl.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_sr.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_sv.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ta.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_te.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_th.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_tr.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_uk.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_ur.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_vi.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_zh-CN.dll
C:\Users\Quentin\AppData\Local\Facebook\Update\1.2.203.0\goopdateres_zh-TW.dll
C:\Users\Quentin\AppData\Local\Facebook\Video\Common\shared.lck
C:\Users\Quentin\AppData\Local\Facebook\Video\Common\shared.xml
C:\Users\Quentin\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
C:\Users\Quentin\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
C:\Users\Quentin\AppData\Local\Facebook\Video\Skype\third-party_attributions.txt
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\LibraryStateData.dat
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\preferences.xml
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\PreviousSearch.txt
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\pstc6300.xml
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\sticky_preferences.xml
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\StickySettingUtility.xml
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\VaultPreference.dat
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\Albums\-1\ImportAlbum.png
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\cache2\1.DAT
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\cache2\1.DB
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\cache2\CacheUpdateInfo.txt
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\cache2\DirectoryMap.dat
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\administrativeInfo.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\administrativeInfo.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\albumImagesTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\AlbumProjectTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\albumTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\albumTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\albumTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\CB_Server_Errors.txt
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\contactsTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\contactsTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\contactsTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\EXIFTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\EXIFTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\EXIFTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\groupFriendsTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\groupTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\groupTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\groupTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\imageTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\imageTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\imageTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\imageTable.fpk
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\imageTable.fpt
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\InboundAlbumTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordattributeTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordGroupTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordGroupTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordImagesTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\keywordTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\managedFolderTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\managedFolderTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\outboundAlbumContactsTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\OutboundAlbumTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\pathnameTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\pathnameTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\pathnameTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ProjectsTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\propertiesTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\propertiesTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\propertiesTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\recentActivitiesTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ROFImagesTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ROFTable.bak
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ROFTable.cdx
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\ROFTable.dbf
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\Default_Groups\dbupdated.dbstamp
C:\Users\Quentin\AppData\Local\HP\Digital Imaging\db2\Default_Groups\fr.touch
C:\Users\Quentin\AppData\Local\Microsoft Games\Hearts\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft Games\Hearts\HeartsSettings.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Hearts\HeartsSettings.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Hearts\windowprefs.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Hearts\windowprefs.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Mahjong Titans\MahjongTitans.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Mahjong Titans\MahjongTitansStats.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Mahjong Titans\windowprefs.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Minesweeper\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft Games\Minesweeper\MinesweeperSettings.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Minesweeper\MinesweeperSettings.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Minesweeper\windowprefs.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Minesweeper\windowprefs.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\ComfyCakesScoresAndSettings.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\ComfyCakesScoresAndSettings.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\PurblePlaceSettings.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\PurblePlaceSettings.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\windowprefs.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Purble Place\windowprefs.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Solitaire\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft Games\Solitaire\SolitaireSettings.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Solitaire\SolitaireSettings.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Solitaire\windowprefs.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Solitaire\windowprefs.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Games\Spider Solitaire\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft Games\Spider Solitaire\SpiderSolitaireSettings.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Spider Solitaire\windowprefs.xml
C:\Users\Quentin\AppData\Local\Microsoft Games\Spider Solitaire\windowprefs.xml.bak
C:\Users\Quentin\AppData\Local\Microsoft Help\MS.WINWORD.14.1036_4108_MKWD_F.HxW
C:\Users\Quentin\AppData\Local\Microsoft Help\MS.WINWORD.14.1036_4108_MKWD_K.HxW
C:\Users\Quentin\AppData\Local\Microsoft Help\MS.WINWORD.14.1036_4108_MTOC_WINWORD_COL.HxH
C:\Users\Quentin\AppData\Local\Microsoft Help\MS.WINWORD.14.1036_4108_MValidator.HxD
C:\Users\Quentin\AppData\Local\Microsoft Help\MS.WINWORD.14.1036_4108_MValidator.Lck
C:\Users\Quentin\AppData\Local\Microsoft\Assistance\Client\1.0\fr-FR\Help_MValidator.Lck
C:\Users\Quentin\AppData\Local\Microsoft\Credentials\67F96D299137D5FBE5209FEC9B68341C
C:\Users\Quentin\AppData\Local\Microsoft\Credentials\8C690EED0565EE5B213D0D065F7EF259
C:\Users\Quentin\AppData\Local\Microsoft\Credentials\DFBE70A7E5CC19A398EBF1B96859CE5D
C:\Users\Quentin\AppData\Local\Microsoft\eHome\ehthumbs_vista.db
C:\Users\Quentin\AppData\Local\Microsoft\eHome\Mcx\Icons\uuid_10000000-0000-0000-0200-0025AE013233.png
C:\Users\Quentin\AppData\Local\Microsoft\Event Viewer\RecentViews
C:\Users\Quentin\AppData\Local\Microsoft\Event Viewer\Settings.Xml
C:\Users\Quentin\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\index.dat
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\8E91UK90\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\8E91UK90\ieonline.microsoft[1]
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\9GSRT6EG\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\9GSRT6EG\fwlink[1]
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\JG1X3ZAE\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\JG1X3ZAE\fwlink[1]
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\L1OK53YC\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Feeds Cache\L1OK53YC\ieonlinews.microsoft[1]
C:\Users\Quentin\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\Sites suggérés d’Internet Explorer~.feed-ms
C:\Users\Quentin\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Galerie de composants Web Slice~.feed-ms
C:\Users\Quentin\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Sites suggérés~.feed-ms
C:\Users\Quentin\AppData\Local\Microsoft\Feeds\Flux Microsoft~\MSN Actualités~.feed-ms
C:\Users\Quentin\AppData\Local\Microsoft\Internet Explorer\brndlog.bak
C:\Users\Quentin\AppData\Local\Microsoft\Internet Explorer\brndlog.txt
C:\Users\Quentin\AppData\Local\Microsoft\Internet Explorer\frameiconcache.dat
C:\Users\Quentin\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
C:\Users\Quentin\AppData\Local\Microsoft\Internet Explorer\iconcache\q33u8oj\frameiconcache.dat
C:\Users\Quentin\AppData\Local\Microsoft\Internet Explorer\IECompatData\iecompatdata.xml
C:\Users\Quentin\AppData\Local\Microsoft\Office\Excel.officeUI
C:\Users\Quentin\AppData\Local\Microsoft\Office\Word.officeUI
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\msodatalast.dat
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSD-{1179EA95-7C93-48E4-BFD8-6D7E27A43CC2}.FSD
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSD-CNRY.FSD
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSF-CTBL.FSF
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSD-{06F93FFB-62F6-4D26-8F8B-A90AC8064E58}.FSD
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSD-CNRY.FSD
C:\Users\Quentin\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSF-{0E1EEE64-E8C6-4E2A-9759-63CF07FD8988}.FSF
C:\Users\Quentin\AppData\Local\Microsoft\Office\ONetConfig\14eb8b5b84589131e53897d0378f6eaf.sig
C:\Users\Quentin\AppData\Local\Microsoft\Office\ONetConfig\14eb8b5b84589131e53897d0378f6eaf.xml
C:\Users\Quentin\AppData\Local\Microsoft\Office\ONetConfig\1b2ec0007763d8767939dd7ed3d3664c.sig
C:\Users\Quentin\AppData\Local\Microsoft\Office\ONetConfig\1b2ec0007763d8767939dd7ed3d3664c.xml
C:\Users\Quentin\AppData\Local\Microsoft\Office\ONetConfig\f309961365cc5d0b931a7fd27344f665.sig
C:\Users\Quentin\AppData\Local\Microsoft\Office\ONetConfig\f309961365cc5d0b931a7fd27344f665.xml
C:\Users\Quentin\AppData\Local\Microsoft\PubWiz\ExtraFilm.ico
C:\Users\Quentin\AppData\Local\Microsoft\Vault\4BF4C442-9B8A-41A0-B380-DD4A704DDB28\Policy.vpol
C:\Users\Quentin\AppData\Local\Microsoft\Visio\content12.dat
C:\Users\Quentin\AppData\Local\Microsoft\Visio\content14.dat
C:\Users\Quentin\AppData\Local\Microsoft\Visio\thumbs.dat
C:\Users\Quentin\AppData\Local\Microsoft\Windows\UsrClass.dat{02f87182-ce53-11df-a90a-20cf302bbbb4}.TM.blf
C:\Users\Quentin\AppData\Local\Microsoft\Windows\UsrClass.dat{02f87182-ce53-11df-a90a-20cf302bbbb4}.TMContainer00000000000000000001.regtrans-ms
C:\Users\Quentin\AppData\Local\Microsoft\Windows\UsrClass.dat{02f87182-ce53-11df-a90a-20cf302bbbb4}.TMContainer00000000000000000002.regtrans-ms
C:\Users\Quentin\AppData\Local\Microsoft\Windows\WindowsUpdate.log
C:\Users\Quentin\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNS.DTD
C:\Users\Quentin\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNS.XML
C:\Users\Quentin\AppData\Local\Microsoft\Windows Photo Gallery\Original Images\{425D2350-0285-4396-ADF6-AB02E884BB39}-DSC_0048.JPG
C:\Users\Quentin\AppData\Local\Microsoft\Windows Photo Gallery\Original Images\{4AEE3816-7B46-4C7C-9907-9B90D13E5890}-DSC_0669 copie.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Settings.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\hpphoto.htm
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\settings.html
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\tab.css
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\tab.winclassic.css
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\cs\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\cs\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\da\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\da\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\de\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\de\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\el\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\el\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\en\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\en\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\es\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\es\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\fi\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\fi\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\fr\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\fr\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\hu\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\hu\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\2x3.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\2x3onA4.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\4x6.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\4x6on8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\4x6on8.5x11v2.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\5x7.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\5x7on8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\8x10on8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\A3.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\arrow_down.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\arrow_down_roll.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\arrow_up.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\arrow_up_roll.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\background.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\background_empty.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\background_empty_glow.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\background_glow.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\blue_overlay.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\crm.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\dismiss.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\error.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\glow_only.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\hagaki.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\hp_logo_hit.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\HPLogo.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\info.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\L-Size.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\LSIZEonA4.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\ms_icon.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\oval.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_2x3.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_2x3onA4.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_4x6.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_4x6on8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_4x6on8.5x11v2.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_5x7.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_5x7on8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_8x10on8.5x11.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_A3.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_hagaki.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_L-Size.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\p_LSIZEonA4.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\tab.active.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\tab.hover.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\tab.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\wait.gif
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\images\warning.png
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\it\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\it\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\ja\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\ja\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\gps.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\main.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\metrics.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\printsizes.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\properties_vg.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\settings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\tabpane.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\ui_main_vg.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\ui_settings_vg.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\js\utility.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\ko\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\ko\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\nl\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\nl\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\no\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\no\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\pl\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\pl\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\pt\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\pt\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\ru\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\ru\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\sv\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\sv\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\tr\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\tr\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\x64\HpqGps01.dll
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\x64\HpqGUtil.dll
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\x86\HpqGps01.dll
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\x86\HpqGUtil.dll
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-cn\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-cn\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-hk\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-hk\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-sg\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-sg\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-tw\gadget.xml
C:\Users\Quentin\AppData\Local\Microsoft\Windows Sidebar\Gadgets\HPPhoto.gadget\zh-tw\js\strings.js
C:\Users\Quentin\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Burn\Burn\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Burn\Burn1\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x00000000000000c9.db
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Explorer\ExplorerStartupLog.etl
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Explorer\ExplorerStartupLog_RunOnce.et l
C:\Users\Quentin\AppData\Local\Microsoft\Windows\GameExplorer\GameStatistics\{084434BC-021F-4086-815C-B4D716386B93}\{084434BC-021F-4086-815C-B4D716386B93}.gamestats
C:\Users\Quentin\AppData\Local\Microsoft\Windows\GameExplorer\GameStatistics\{768E2DCF-73B0-420A-AA99-4DB04FBC3637}\{768E2DCF-73B0-420A-AA99-4DB04FBC3637}.gamestats
C:\Users\Quentin\AppData\Local\Microsoft\Windows\GameExplorer\GameStatistics\{8669ECE8-D1C3-4345-8310-E60F6D44FDAF}\{8669ECE8-D1C3-4345-8310-E60F6D44FDAF}.gamestats
C:\Users\Quentin\AppData\Local\Microsoft\Windows\GameExplorer\GameStatistics\{89FE5CB3-11CB-489C-AC0D-0C0B6707E1F6}\{89FE5CB3-11CB-489C-AC0D-0C0B6707E1F6}.gamestats
C:\Users\Quentin\AppData\Local\Microsoft\Windows\GameExplorer\GameStatistics\{F284254F-0243-46A7-A328-DD99F72267E8}\{F284254F-0243-46A7-A328-DD99F72267E8}.gamestats
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012012042620120427\index.dat
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012012042720120428\index.dat
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\Low\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\Low\History.IE5\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\History\Low\History.IE5\index.dat
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0AJW0AQP\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7PHNCUEL\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MI995BKB\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S6D7FX9B\104[1]
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S6D7FX9B\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\SuggestedSites.dat
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\index.dat
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\5VA9AQKF\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\IX91E5CU\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\OUUB71SZ\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\RD95FKV5\desktop.ini
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Custom.theme
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\oem.theme
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\asd.theme
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\DesktopBackground\us-olwp1.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\DesktopBackground\us-olwp2.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\DesktopBackground\us-olwp3.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\DesktopBackground\us-olwp4.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\DesktopBackground\us-olwp5.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\asd\DesktopBackground\us-olwp6.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\Brésil.theme
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\DesktopBackground\br-ol wp1.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\DesktopBackground\br-ol wp2.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\DesktopBackground\br-ol wp3.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\DesktopBackground\br-ol wp4.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\DesktopBackground\br-ol wp5.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Brésil\DesktopBackground\br-ol wp6.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Canada\Canada.theme
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Canada\DesktopBackground\ca-olw p1.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Canada\DesktopBackground\ca-olw p2.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Canada\DesktopBackground\ca-olw p3.jpg
C:\Users\Quentin\AppData\Local\Microsoft\Windows\Themes\Canada\DesktopB
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 01 Mai 2012 à 18h40
re,
le scan Eset online est donc clean ? 
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 01 Mai 2012 à 18h48
Si j'ai bien fait juste (décocher remove et en cochant scan archive) Je n'ai eu aucun rapport de la part de ESET, mais oui il m'indiquait qu'aucun "threats" n'avait été trouvé...
Ah mince... je crois que j'ai oublié de lancer en tant qu'administrateur lorsque j'ai lancé le scan. Je sais pas si c'est grave
|
| |
|
|
|
|
Winx
23421 messages
No-Life
AidoHardware
AidoAntivirus
AidoWindows
|
Le 01 Mai 2012 à 19h00
re, pas grave....
bon à ce point, ça se passe comment ?
|
| |
Je n'ai pas la prétention de résoudre les problèmes, mais celle de vous aider à les résoudre ;-)
|
|
|
|
Telloc
89 messages
DVD-RW
|
Le 01 Mai 2012 à 19h09
Aucun problème qui m'avait fait douté de quelque chose. Pour l'instant ma boîte mail n'a pas de nouveau été piraté et aucune page bleu à l'horizon. J'ai également l'impression que mon ordinateur rame moins qu'avant.
Je vais peut être lancer un scan ce soir pour voir ce que mon antivirus (gratuit) me dit même si j'ai bien conscience que ça n'est sûrement pas très représentatif.
|
| |
|
|
|
|