Virus sur mon pc
Dernière réponse : dans Sécurité
Bonjour, un membre de la communauté NitroServ.fr ma proposé de laissé un message ici, donc voici mon probleme :
Voila, récemment (ce soir
) j'me suis fais hacké : un c***nrd sur xfire je pensais que c'était un pote (tout parraisait crédible) , m'a envoyé un fichier, qui parraisait clean après mes 2 ANTIVIRUS ( 1 antivirus automatique : Antivir et BitDefender v10 qui lui fonctionne quand on le demande), donc apres avoir lancé le fichier, il me marque un genre de erreur windows comme quoi sa marche pas (framework quelque chose), bon j'lui dis que sa marche pas.. il me répond pas pendant 2/3 minutes puis hop la j'vois une fenetre noire devant le pc (en plein milieux) et qui affiche "Remot Client Only" (le titre) et on vois écrit en rouge "HACKER: SAlut sa roule ma poule?"... Pris de panique et n'ayant jamais vu sa j'ai direct débrancher le cable ethernet, j'ai apelé des potes (irl) demandés de changé le mot de passe MSN, STEAM, XFIRE etc.. (bon la c'est ok), bon je retourne sur mon PC fais une analyse, avec ANTIVIRUS (analyse complete) et la virus : un keylogger et j'réussis (en utilisant google sur mon pc portable + gestionnaire de tache quand le "Remot Chat only" se lance et j'vois quil y a "Popup_.exe" un truc comme ça de lancé... (Ah oui j'ai oublié, quand j'ai activé le Parfeu avec TOUT de refusé : tout les ports fermés en gros, j'ai pas eu de messages)
Enfin bref, pour le moment l'antivirus n'affiche plus de virus, rien.. (grace aux 2 Antivirus APRES AVOIR eté infecté !!!)
Donc j'ai tout d'abord quelques questions :
1) Comment puis je savoir si il y a encore un virus caché ?
2) Est ce que je dois changés tout mes mot de passe (je parle ceux sur le net, c'est a dire, a t'il "aspirer" mes cookies d'une facon a ce qu'il ai obtenu mes mot de passe?
3) Il me faut un meilleur ANTIVIRUS, lequel prendre?
Voila merci de votre aide.
EDIT : Je me connecte sur mon pc, sur le compte ADMINISTRATEUR.
[/quote]
Et voici le rapport avec hijackthis
Citation :
[quote=Sn1p394]Salut :bonjour:Voila, récemment (ce soir
) j'me suis fais hacké : un c***nrd sur xfire je pensais que c'était un pote (tout parraisait crédible) , m'a envoyé un fichier, qui parraisait clean après mes 2 ANTIVIRUS ( 1 antivirus automatique : Antivir et BitDefender v10 qui lui fonctionne quand on le demande), donc apres avoir lancé le fichier, il me marque un genre de erreur windows comme quoi sa marche pas (framework quelque chose), bon j'lui dis que sa marche pas.. il me répond pas pendant 2/3 minutes puis hop la j'vois une fenetre noire devant le pc (en plein milieux) et qui affiche "Remot Client Only" (le titre) et on vois écrit en rouge "HACKER: SAlut sa roule ma poule?"... Pris de panique et n'ayant jamais vu sa j'ai direct débrancher le cable ethernet, j'ai apelé des potes (irl) demandés de changé le mot de passe MSN, STEAM, XFIRE etc.. (bon la c'est ok), bon je retourne sur mon PC fais une analyse, avec ANTIVIRUS (analyse complete) et la virus : un keylogger et j'réussis (en utilisant google sur mon pc portable + gestionnaire de tache quand le "Remot Chat only" se lance et j'vois quil y a "Popup_.exe" un truc comme ça de lancé... (Ah oui j'ai oublié, quand j'ai activé le Parfeu avec TOUT de refusé : tout les ports fermés en gros, j'ai pas eu de messages)Enfin bref, pour le moment l'antivirus n'affiche plus de virus, rien.. (grace aux 2 Antivirus APRES AVOIR eté infecté !!!)
Donc j'ai tout d'abord quelques questions :
1) Comment puis je savoir si il y a encore un virus caché ?
2) Est ce que je dois changés tout mes mot de passe (je parle ceux sur le net, c'est a dire, a t'il "aspirer" mes cookies d'une facon a ce qu'il ai obtenu mes mot de passe?
3) Il me faut un meilleur ANTIVIRUS, lequel prendre?
Voila merci de votre aide.
EDIT : Je me connecte sur mon pc, sur le compte ADMINISTRATEUR.
[/quote]
Et voici le rapport avec hijackthis
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:24:20, on 08/02/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe C:\ASUS.SYS\config\DVMExportService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\SearchIndexer.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\ASUS\TurboV\TurboV.exe C:\Program Files\ASUS\Turbo Key\TurboKey.exe C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Softwin\BitDefender10\bdagent.exe C:\ADVANC~1\wh_exec.exe C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe C:\Program Files\Acer Display\eDisplay Management\DTHtml.exe C:\Program Files\Microsoft IntelliType Pro\itype.exe C:\Program Files\Portrait Displays\Pivot Software\floater.exe C:\WINDOWS\system32\RunDll32.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Fichiers communs\Portrait Displays\Shared\HookManager.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\DNA\btdna.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Mumble\dbus-daemon.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender10\vsserv.exe C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe C:\Program Files\Softwin\BitDefender10\bdmcon.exe C:\WINDOWS\system32\PnkBstrB.exe C:\WINDOWS\explorer.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mumble\mumble11x.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe c:\Program Files\Windows Live\Contacts\wlcomm.exe c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe C:\WINDOWS\system32\msiexec.exe C:\WINDOWS\system32\ctfmon.exe C:\Documents and Settings\Administrateur\Bureau\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <a href="http://www.google.fr/ie" target="_blank">http://www.google.fr/ie</a> R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://www.google.fr" target="_blank">http://www.google.fr</a> R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://www.google.fr/" target="_blank">http://www.google.fr/</a> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a> R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a> R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <a href="http://www.google.fr/ie" target="_blank">http://www.google.fr/ie</a> R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = <a href="http://www.google.fr/keyword/%s" target="_blank">http://www.google.fr/keyword/%s</a> R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - c:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: Loader Class - {F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD} - C:\WINDOWS\BricoPacks\LeopardXP\FindeXer.dll (file missing) O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\Program Files\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1 O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe O4 - HKLM\..\Run: [TurboV] "C:\Program Files\ASUS\TurboV\TurboV.exe" O4 - HKLM\..\Run: [Six Engine] "C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe" -b O4 - HKLM\..\Run: [Turbo Key] "C:\Program Files\ASUS\Turbo Key\TurboKey.exe" O4 - HKLM\..\Run: [ASUS Update Checker] C:\Program Files\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe O4 - HKLM\..\Run: [QFan Help] "C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe" O4 - HKLM\..\Run: [Cpu Level Up help] "C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe" O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe" O4 - HKLM\..\Run: [DT ACR] C:\Program Files\Fichiers communs\Portrait Displays\Shared\DT_startup.exe -ACR O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM\..\Run: [itype] "c:\Program Files\Microsoft IntelliType Pro\itype.exe" O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot O4 - HKLM\..\Run: [Cm106Sound] RunDll32 cm106.cpl,CMICtrlWnd O4 - HKLM\..\Run: [SysMon] C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\All Users\Application Data\SysMon\ASK.dll" rdl O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [HKLM] C:\WINDOWS\system32\system32NT\svchost.exe O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe" O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe O4 - HKCU\..\Run: [HKCU] C:\WINDOWS\system32\system32NT\svchost.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKLM\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\system32NT\svchost.exe O4 - HKCU\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\system32NT\svchost.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - c:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - c:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - <a href="http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab" target="_blank">http://www.nvidia.com/content/DriverDownload/srl/3.0.0....</a> O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - <a href="http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?4073454813687" target="_blank">http://update.microsoft.com/windowsupdate/v6/V5Controls...</a> O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - <a href="http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1261654248671" target="_blank">http://www.update.microsoft.com/microsoftupdate/v6/V5Co...</a> O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - <a href="http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab" target="_blank">http://www.nvidia.com/content/DriverDownload/nforce/Nvi...</a> O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - <a href="http://www.ma-config.com/plugins/MaConfig_4_0_1_3.cab" target="_blank">http://www.ma-config.com/plugins/MaConfig_4_0_1_3.cab</a> O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - <a href="http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab" target="_blank">http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab</a> O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LC Remote Agent (LcAgent) - Unknown owner - C:\WINDOWS\Temp\lcagent.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe O23 - Service: Norton Internet Security - Unknown owner - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe -- End of file - 14333 bytes
Autres pages sur : virus
Lassé par la pub ? Créez un compte
Bonjour,
Ton PC est infecté.
Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.
Double-clique sur RSIT.exe afin de lancer le programme.
(Sous Vista, il faut cliquer droit sur RSIT.exe et choisir Exécuter en tant qu'administrateur)
Clique sur Continue à l'écran Disclaimer.
Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).
Note : les rapports sont sauvegardés dans le dossier C:\Rsit.
Ton PC est infecté.
(Sous Vista, il faut cliquer droit sur RSIT.exe et choisir Exécuter en tant qu'administrateur)
Note : les rapports sont sauvegardés dans le dossier C:\Rsit.
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2010-02-08 22:35:37
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 405 GB (85%) free of 477 GB
Total RAM: 3063 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:35:38, on 08/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe
C:\ASUS.SYS\config\DVMExportService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ASUS\TurboV\TurboV.exe
C:\Program Files\ASUS\Turbo Key\TurboKey.exe
C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Softwin\BitDefender10\bdagent.exe
C:\ADVANC~1\wh_exec.exe
C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe
C:\Program Files\Acer Display\eDisplay Management\DTHtml.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Portrait Displays\Pivot Software\floater.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Fichiers communs\Portrait Displays\Shared\HookManager.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mumble\dbus-daemon.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender10\vsserv.exe
C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe
C:\Program Files\Softwin\BitDefender10\bdmcon.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mumble\mumble11x.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
c:\Program Files\Windows Live\Contacts\wlcomm.exe
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Administrateur\Bureau\HiJackThis.exe
C:\Program Files\iTunes\iTunes.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - c:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Loader Class - {F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD} - C:\WINDOWS\BricoPacks\LeopardXP\FindeXer.dll (file missing)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [TurboV] "C:\Program Files\ASUS\TurboV\TurboV.exe"
O4 - HKLM\..\Run: [Six Engine] "C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe" -b
O4 - HKLM\..\Run: [Turbo Key] "C:\Program Files\ASUS\Turbo Key\TurboKey.exe"
O4 - HKLM\..\Run: [ASUS Update Checker] C:\Program Files\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe
O4 - HKLM\..\Run: [QFan Help] "C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe"
O4 - HKLM\..\Run: [DT ACR] C:\Program Files\Fichiers communs\Portrait Displays\Shared\DT_startup.exe -ACR
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [itype] "c:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [Cm106Sound] RunDll32 cm106.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SysMon] C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\All Users\Application Data\SysMon\ASK.dll" rdl
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HKLM] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [HKCU] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKLM\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKCU\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - c:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - c:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0....
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Co...
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDownload/nforce/Nvi...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://www.ma-config.com/plugins/MaConfig_4_0_1_3.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LC Remote Agent (LcAgent) - Unknown owner - C:\WINDOWS\Temp\lcagent.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: Norton Internet Security - Unknown owner - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
--
End of file - 14506 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Microsoft_Hardware_Launch_IType_exe.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
XfireXO Toolbar - C:\Program Files\XfireXO\tbXfir.dll [2009-11-09 2331672]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - c:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - c:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-12-24 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}]
Loader Class - C:\WINDOWS\BricoPacks\LeopardXP\FindeXer.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - c:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{5e5ab302-7f65-44cd-8211-c1d4caaccea3} - XfireXO Toolbar - C:\Program Files\XfireXO\tbXfir.dll [2009-11-09 2331672]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-12-24 149280]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe [2009-07-15 33636352]
"JMB36X IDE Setup"=C:\WINDOWS\RaidTool\xInsIDE.exe [2007-03-20 36864]
"TurboV"=C:\Program Files\ASUS\TurboV\TurboV.exe [2009-05-25 5391872]
"Six Engine"=C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe [2009-07-17 6038016]
"Turbo Key"=C:\Program Files\ASUS\Turbo Key\TurboKey.exe [2009-05-25 1768960]
"ASUS Update Checker"=C:\Program Files\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe [2008-12-11 114688]
"QFan Help"=C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088]
"Cpu Level Up help"=C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"ISUSPM Startup"=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-07-27 221184]
"ISUSScheduler"=C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe [2004-07-27 81920]
"BDAgent"=C:\Program Files\Softwin\BitDefender10\bdagent.exe [2007-03-26 69632]
"WheelMouse"=C:\ADVANC~1\wh_exec.exe [2008-02-21 98304]
"PivotSoftware"=C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe [2007-02-09 694008]
"DT ACR"=C:\Program Files\Fichiers communs\Portrait Displays\Shared\DT_startup.exe [2008-06-06 81920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"Logitech Utility"=C:\WINDOWS\Logi_MwX.Exe [2003-12-11 20992]
"itype"=c:\Program Files\Microsoft IntelliType Pro\itype.exe [2009-05-28 1501064]
"36X Raid Configurer"=C:\WINDOWS\system32\xRaidSetup.exe [2007-11-19 1970176]
"Cm106Sound"=RunDll32 cm106.cpl,CMICtrlWnd []
"SysMon"=C:\Documents and Settings\All Users\Application Data\SysMon\ASK.dll [2009-11-19 999936]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"nwiz"=nwiz.exe /installquiet []
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-01-11 13666408]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-01-11 110696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608]
"HKLM"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=c:\program files\steam\steam.exe [2009-12-24 1217808]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2010-01-11 323392]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe [2010-02-08 2937528]
"HKCU"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoSMHelp"=1
"MemCheckBoxInRunDlg"=1
"NoSMBalloonTip"=1
"NoDesktopCleanupWizard"=1
"NoWelcomeScreen"=1
"NoAutoUpdate"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*
isabled:Bonjour"
"C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\apache2\bin\Apache.exe"="C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\apache2\bin\Apache.exe:*
isabled:Apache HTTP Server"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*
isabled:@xpsp2res.dll,-22019"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*
isabled:Steam"
"C:\Program Files\Steam\steamapps\common\america's army 3\Binaries\AA3Game.exe"="C:\Program Files\Steam\steamapps\common\america's army 3\Binaries\AA3Game.exe:*:Enabled:America's Army 3"
"C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe"="C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe:*:Enabled:Call of Duty: Modern Warfare 2"
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe"="C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer"
"C:\Program Files\Call of Duty 1.5\CoDMP.exe"="C:\Program Files\Call of Duty 1.5\CoDMP.exe:*:Enabled:CoDMP"
"C:\Program Files\Call of duty 1.4\CoDMP.exe"="C:\Program Files\Call of duty 1.4\CoDMP.exe:*:Enabled:CoDMP"
"C:\WINDOWS\Network Diagnostic\xpnetdiag.exe"="C:\WINDOWS\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled
NA"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\Counter-Strike 1.6 V40\hl.exe"="C:\Program Files\Counter-Strike 1.6 V40\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\steamapps\sn1pzor94\half-life 2 deathmatch\hl2.exe"="C:\Program Files\Steam\steamapps\sn1pzor94\half-life 2 deathmatch\hl2.exe:*:Enabled:hl2"
"C:\Program Files\HLSW\hlsw.exe"="C:\Program Files\HLSW\hlsw.exe:*:Enabled:HLSW Application"
"C:\Program Files\UrbanTerror\ioq3-urt.exe"="C:\Program Files\UrbanTerror\ioq3-urt.exe:*:Enabled:ioq3-urt based on ioq3 1.36+"
"C:\Program Files\UrbanTerror\ioUrbanTerror.exe"="C:\Program Files\UrbanTerror\ioUrbanTerror.exe:*:Enabled:ioUrbanTerror"
"C:\Program Files\UrbanTerror\ioUrTded.exe"="C:\Program Files\UrbanTerror\ioUrTded.exe:*:Enabled:ioUrTded"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Left 4 Dead\left4dead.exe"="C:\Program Files\Left 4 Dead\left4dead.exe:*:Enabled:left4dead"
"C:\Documents and Settings\Administrateur\Bureau\Left 4 Dead\left4dead.exe"="C:\Documents and Settings\Administrateur\Bureau\Left 4 Dead\left4dead.exe:*:Enabled:left4dead"
"C:\Program Files\Left.4.Dead.2-NoGRP\left4dead2.exe"="C:\Program Files\Left.4.Dead.2-NoGRP\left4dead2.exe:*:Enabled:left4dead2"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Documents and Settings\Administrateur\Bureau\GTA-SanAndreas\server\MTA Server.exe"="C:\Documents and Settings\Administrateur\Bureau\GTA-SanAndreas\server\MTA Server.exe:*:Enabled:MTA Server"
"C:\Program Files\Mumble\murmur.exe"="C:\Program Files\Mumble\murmur.exe:*:Enabled:Murmur - Low-latency VoIP server"
"C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\mysql\bin\mysqld.exe"="C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\mysql\bin\mysqld.exe:*:Enabled:mysqld"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled
ando Media Booster"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled
nkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled
nkBstrB"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Spotify\spotify.exe"="C:\Program Files\Spotify\spotify.exe:*:Enabled:Spotify"
"C:\Program Files\TmNationsForever\TmForever.exe"="C:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"C:\Program Files\Warcraft III\Warcraft III.exe"="C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Xfire\Xfire.exe"="C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
======List of files/folders created in the last 1 months======
2099-01-30 12:26:45 ----A---- C:\WINDOWS\system32\h323log.txt
2099-01-30 12:23:09 ----A---- C:\WINDOWS\system32\hidserv.dll
2099-01-30 12:21:56 ----A---- C:\WINDOWS\system32\usbui.dll
2099-01-30 12:21:03 ----A---- C:\WINDOWS\imsins.BAK
2099-01-30 12:21:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2099-01-30 12:21:00 ----SHD---- C:\WINDOWS\Installer
2099-01-30 12:21:00 ----D---- C:\Program Files\Fichiers communs\ODBC
2099-01-30 12:21:00 ----A---- C:\WINDOWS\ODBCINST.INI
2099-01-30 12:20:57 ----RD---- C:\Program Files
2099-01-30 12:20:57 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2099-01-30 12:20:57 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2099-01-30 12:20:57 ----D---- C:\Program Files\Fichiers communs
2099-01-30 12:20:54 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2099-01-30 12:20:54 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2099-01-30 12:20:54 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdur.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdru.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdest.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdro.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\spxcoins.dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\irclass.dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\dgsetup.dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2099-01-30 12:20:43 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2099-01-30 12:20:43 ----A---- C:\WINDOWS\TASKMAN.EXE
2099-01-30 12:20:42 ----A---- C:\WINDOWS\system32\batt.dll
2099-01-30 12:20:42 ----A---- C:\WINDOWS\notepad.exe
2099-01-30 12:20:41 ----A---- C:\WINDOWS\system32\storprop.dll
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2D.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2C.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2B.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2A.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET29.tmp
2099-01-30 12:20:35 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2099-01-30 12:20:32 ----RA---- C:\WINDOWS\SET8.tmp
2099-01-30 12:20:30 ----RA---- C:\WINDOWS\SET4.tmp
2099-01-30 12:20:29 ----RA---- C:\WINDOWS\SET3.tmp
2099-01-30 12:20:25 ----D---- C:\WINDOWS\system32\CatRoot2
2099-01-30 12:20:25 ----D---- C:\WINDOWS\system32\CatRoot
2099-01-30 12:20:20 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2099-01-30 12:20:03 ----A---- C:\WINDOWS\setuplog.txt
2099-01-30 12:20:01 ----SHD---- C:\System Volume Information
2099-01-30 12:20:01 ----D---- C:\Documents and Settings
2099-01-30 12:19:00 ----ASH---- C:\boot.ini
2099-01-30 12:14:13 ----RSHDC---- C:\WINDOWS\system32\dllcache
2099-01-30 12:14:13 ----RSD---- C:\WINDOWS\Fonts
2099-01-30 12:14:13 ----RD---- C:\WINDOWS\Web
2099-01-30 12:14:13 ----HD---- C:\WINDOWS\inf
2099-01-30 12:14:13 ----D---- C:\WINDOWS\WinSxS
2099-01-30 12:14:13 ----D---- C:\WINDOWS\twain_32
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Temp
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\wins
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\wbem
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\usmt
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\spool
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\ShellExt
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\Setup
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\ras
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\oobe
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\npp
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\mui
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\inetsrv
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\IME
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\icsxml
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\ias
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\export
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\drivers
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\dhcp
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\config
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\3com_dmi
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\3076
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\2052
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1054
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1042
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1041
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1037
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1036
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1033
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1031
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1028
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1025
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system
2099-01-30 12:14:13 ----D---- C:\WINDOWS\security
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Resources
2099-01-30 12:14:13 ----D---- C:\WINDOWS\repair
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Provisioning
2099-01-30 12:14:13 ----D---- C:\WINDOWS\PeerNet
2099-01-30 12:14:13 ----D---- C:\WINDOWS\pchealth
2099-01-30 12:14:13 ----D---- C:\WINDOWS\OEM
2099-01-30 12:14:13 ----D---- C:\WINDOWS\mui
2099-01-30 12:14:13 ----D---- C:\WINDOWS\msapps
2099-01-30 12:14:13 ----D---- C:\WINDOWS\msagent
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Media
2099-01-30 12:14:13 ----D---- C:\WINDOWS\java
2099-01-30 12:14:13 ----D---- C:\WINDOWS\ime
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Help
2099-01-30 12:14:13 ----D---- C:\WINDOWS\ehome
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Driver Cache
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Debug
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Cursors
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Connection Wizard
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Config
2099-01-30 12:14:13 ----D---- C:\WINDOWS\AppPatch
2099-01-30 12:14:13 ----D---- C:\WINDOWS\addins
2099-01-30 12:14:13 ----D---- C:\WINDOWS
2099-01-30 12:14:07 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wups2.dll
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2099-01-30 11:57:57 ----D---- C:\Documents and Settings\All Users\Application Data\ASUS OC Profiles
2099-01-30 11:56:04 ----HD---- C:\temp
2099-01-30 11:56:04 ----HD---- C:\dvmexp
2099-01-30 11:54:32 ----HD---- C:\ASUS.SYS
2099-01-30 11:54:17 ----D---- C:\Program Files\Downloaded Installations
2099-01-30 11:52:54 ----RA---- C:\WINDOWS\system32\AsIO.dll
2099-01-30 11:52:50 ----D---- C:\Program Files\ASUS
2099-01-30 11:51:20 ----A---- C:\WINDOWS\system32\RtNicProp32.dll
2099-01-30 11:51:12 ----D---- C:\Program Files\Realtek
2099-01-30 11:50:55 ----D---- C:\RaidTool
2099-01-30 11:50:53 ----D---- C:\WINDOWS\RaidTool
2099-01-30 11:50:25 ----D---- C:\WINDOWS\SoftwareDistribution
2099-01-30 11:50:20 ----SD---- C:\WINDOWS\system32\Microsoft
2099-01-30 11:50:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2099-01-30 11:49:17 ----D---- C:\WINDOWS\AsusInstAll
2099-01-30 11:49:12 ----HD---- C:\Program Files\InstallShield Installation Information
2099-01-30 11:48:44 ----N---- C:\WINDOWS\system32\ksuser.dll
2099-01-30 11:48:35 ----N---- C:\WINDOWS\system32\difxapi.dll
2099-01-30 11:48:34 ----D---- C:\Program Files\VIA
2099-01-30 11:48:27 ----D---- C:\Program Files\Fichiers communs\InstallShield
2099-01-30 11:47:36 ----D---- C:\WINDOWS\system32\ReinstallBackups
2099-01-30 11:47:34 ----DC---- C:\WINDOWS\system32\DRVSTORE
2099-01-30 11:47:32 ----RA---- C:\WINDOWS\system32\CSVer.dll
2099-01-30 11:47:32 ----D---- C:\Program Files\Intel
2099-01-30 11:46:49 ----D---- C:\Intel
2099-01-30 11:46:15 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2099-01-30 11:45:59 ----D---- C:\Documents and Settings\All Users\Application Data\NortonInstaller
2099-01-30 11:45:44 ----A---- C:\WINDOWS\Ascd_log.ini
2099-01-30 11:45:22 ----A---- C:\WINDOWS\Language_trs.ini
2099-01-30 11:45:19 ----A---- C:\WINDOWS\Ascd_tmp.ini
2099-01-30 11:44:11 ----D---- C:\Program Files\Fichiers communs\Adobe AIR
2099-01-30 11:44:07 ----D---- C:\Documents and Settings\Administrateur\Application Data\Macromedia
2099-01-30 11:43:57 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2099-01-30 11:43:53 ----D---- C:\Program Files\Fichiers communs\Adobe
2099-01-30 11:43:53 ----D---- C:\Program Files\Adobe
2099-01-30 11:42:39 ----D---- C:\Program Files\EVGA Precision
2099-01-30 11:42:10 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2099-01-30 11:41:53 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2099-01-30 11:41:53 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2099-01-30 11:41:53 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2099-01-30 11:41:45 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2099-01-30 11:41:45 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2099-01-30 11:41:45 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2099-01-30 11:41:11 ----D---- C:\WINDOWS\Logs
2099-01-30 11:36:21 ----A---- C:\WINDOWS\system32\wmpns.dll
2099-01-30 11:36:20 ----D---- C:\Documents and Settings\Administrateur\Application Data\Identities
2099-01-30 11:36:14 ----HD---- C:\Program Files\Uninstall Information
2099-01-30 11:36:05 ----SD---- C:\Documents and Settings\Administrateur\Application Data\Microsoft
2099-01-30 11:36:05 ----ASH---- C:\Documents and Settings\Administrateur\Application Data\desktop.ini
2099-01-30 11:33:26 ----D---- C:\WINDOWS\system32\xircom
2099-01-30 11:33:26 ----D---- C:\Program Files\xerox
2099-01-30 11:33:26 ----D---- C:\Program Files\microsoft frontpage
2099-01-30 11:33:12 ----A---- C:\WINDOWS\system32\oeminfo.ini
2099-01-30 11:32:51 ----D---- C:\Program Files\Java
2099-01-30 11:32:51 ----D---- C:\Program Files\Fichiers communs\Java
2099-01-30 11:32:18 ----RSD---- C:\WINDOWS\assembly
2099-01-30 11:32:18 ----D---- C:\WINDOWS\Microsoft.NET
2099-01-30 11:32:17 ----D---- C:\WINDOWS\system32\URTTemp
2099-01-30 11:31:48 ----D---- C:\WINDOWS\fsc
2099-01-30 11:31:38 ----D---- C:\AddOn
2099-01-30 11:31:17 ----HD---- C:\WINDOWS\$hf_mig$
2099-01-30 11:31:13 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2099-01-30 11:31:01 ----A---- C:\WINDOWS\OEWABLog.txt
2099-01-30 11:30:58 ----A---- C:\WINDOWS\system32\mapi32.dll
2099-01-30 11:30:30 ----RD---- C:\WINDOWS\Offline Web Pages
2099-01-30 11:30:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2099-01-30 11:30:29 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2099-01-30 11:30:27 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2099-01-30 11:30:24 ----HD---- C:\Program Files\WindowsUpdate
2099-01-30 11:30:21 ----D---- C:\Program Files\Services en ligne
2099-01-30 11:30:09 ----D---- C:\WINDOWS\system32\DirectX
2099-01-30 11:29:52 ----A---- C:\WINDOWS\system32\atrace.dll
2099-01-30 11:29:50 ----A---- C:\WINDOWS\system32\desktop.ini
2099-01-30 11:29:50 ----A---- C:\WINDOWS\desktop.ini
2099-01-30 11:29:44 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2099-01-30 11:29:43 ----D---- C:\Program Files\Fichiers communs\Services
2099-01-30 11:29:43 ----A---- C:\WINDOWS\system32\Acctres.dll
2099-01-30 11:29:41 ----SD---- C:\WINDOWS\Tasks
2099-01-30 11:29:41 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2099-01-30 11:29:40 ----D---- C:\Program Files\Fichiers communs\MSSoap
2099-01-30 11:29:36 ----D---- C:\WINDOWS\system32\Macromed
2099-01-30 11:29:36 ----D---- C:\WINDOWS\srchasst
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuweb.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wups.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wucltui.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuauserv.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuaueng.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuauclt.exe
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\wuapi.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\qmgr.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2099-01-30 11:29:29 ----D---- C:\Program Files\Movie Maker
2099-01-30 11:29:26 ----A---- C:\WINDOWS\system32\safrslv.dll
2099-01-30 11:29:26 ----A---- C:\WINDOWS\system32\safrdm.dll
2099-01-30 11:29:26 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2099-01-30 11:29:25 ----A---- C:\WINDOWS\system32\racpldlg.dll
2099-01-30 11:29:22 ----D---- C:\WINDOWS\system32\Restore
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\srsvc.dll
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\srrstr.dll
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\srclient.dll
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\fltmc.exe
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\fltlib.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\msconf.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\mnmdd.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\ils.dll
2099-01-30 11:29:18 ----D---- C:\Program Files\NetMeeting
2099-01-30 11:29:18 ----A---- C:\WINDOWS\system32\msoert2.dll
2099-01-30 11:29:18 ----A---- C:\WINDOWS\system32\msoeacct.dll
2099-01-30 11:29:17 ----A---- C:\WINDOWS\system32\inetres.dll
2099-01-30 11:29:17 ----A---- C:\WINDOWS\system32\inetcomm.dll
2099-01-30 11:29:16 ----D---- C:\Program Files\Outlook Express
2099-01-30 11:29:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\mstinit.exe
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\mstask.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\isign32.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\inetcfg.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\icwphbk.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\Icwdial.dll
2099-01-30 11:29:10 ----D---- C:\Program Files\Fichiers communs\System
2099-01-30 11:29:09 ----D---- C:\Program Files\Internet Explorer
2099-01-30 11:28:49 ----D---- C:\Program Files\ComPlus Applications
2099-01-30 11:28:47 ----A---- C:\WINDOWS\vbaddin.ini
2099-01-30 11:28:47 ----A---- C:\WINDOWS\vb.ini
2099-01-30 11:28:44 ----D---- C:\WINDOWS\Registration
2099-01-30 11:28:39 ----D---- C:\Program Files\Windows Media Player
2099-01-30 11:28:39 ----D---- C:\Program Files\Online Services
2099-01-30 11:28:35 ----D---- C:\Program Files\Messenger
2099-01-30 11:28:32 ----D---- C:\Program Files\MSN Gaming Zone
2099-01-30 11:28:31 ----A---- C:\WINDOWS\system32\Write.exe
2099-01-30 11:28:24 ----A---- C:\WINDOWS\system32\sndvol32.exe
2099-01-30 11:28:24 ----A---- C:\WINDOWS\system32\hticons.dll
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\winchat.exe
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\avwav.dll
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\avtapi.dll
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\avmeter.dll
2099-01-30 11:28:17 ----A---- C:\WINDOWS\system32\getuname.dll
2099-01-30 11:28:17 ----A---- C:\WINDOWS\system32\charmap.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\winmine.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\sol.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\mshearts.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\freecell.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\calc.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tslabels.ini
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tskill.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tscon.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\shadow.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\rwinsta.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\reset.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\regini.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\qwinsta.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\qappsrv.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\msg.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\logoff.exe
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\mtxex.dll
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\mtxdm.dll
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\cdmodem.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\stclient.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\comsnap.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\comrepl.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\comaddin.dll
2099-01-30 11:28:09 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2099-01-30 11:28:00 ----D---- C:\Program Files\MSN
2099-01-30 11:27:59 ----A---- C:\WINDOWS\system32\sndrec32.exe
2099-01-30 11:27:59 ----A---- C:\WINDOWS\system32\mplay32.exe
2099-01-30 11:27:59 ----A---- C:\WINDOWS\system32\accwiz.exe
2099-01-30 11:27:58 ----D---- C:\Program Files\Windows NT
2099-01-30 11:27:58 ----A---- C:\WINDOWS\system32\mspaint.exe
2099-01-30 11:27:58 ----A---- C:\WINDOWS\system32\hypertrm.dll
2099-01-30 11:27:58 ----A---- C:\WINDOWS\system32\clipbrd.exe
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\spider.exe
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\mstscax.dll
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\mstsc.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\sessmgr.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\remotepg.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdshost.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdpclip.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdchost.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\qprocess.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\icaapi.dll
2099-01-30 11:27:55 ----D---- C:\WINDOWS\system32\MsDtc
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\mtxoci.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\msdtctm.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2099-01-30 11:27:54 ----D---- C:\WINDOWS\system32\Com
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\xolehlp.dll
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\msdtclog.dll
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\msdtc.exe
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\colbact.dll
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\catsrvps.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\comsvcs.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\clbcatex.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\catsrvut.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\catsrv.dll
2099-01-30 11:27:52 ----A---- C:\WINDOWS\system32\comuid.dll
2099-01-30 11:27:52 ----A---- C:\WINDOWS\system32\clbcatq.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\servdeps.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\mmfutil.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\licwmi.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-02-08 22:35:37 ----D---- C:\rsit
2010-02-08 22:16:51 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-08 22:16:50 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-08 22:16:50 ----D---- C:\WINDOWS\LastGood
2010-02-08 22:16:49 ----D---- C:\54f5436edd813eef41f5ed346c
2010-02-08 22:14:30 ----D---- C:\f0acfe1377eda25df6
2010-02-08 20:04:00 ----D---- C:\Documents and Settings\All Users\Application Data\PMB Files
2010-02-08 20:03:37 ----D---- C:\Program Files\Pando Networks
2010-02-08 19:52:23 ----D---- C:\Program Files\ijji
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\uc_luminary_launching.dll
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\uc_atlantica_launching.dll
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiSetup.exe
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiProcessRestarter.exe
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiPlugin2.dll
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiChannelingPlugin.dll
2010-02-07 12:03:06 ----D---- C:\Documents and Settings\Administrateur\Application Data\Broad Intelligence
2010-02-07 02:56:14 ----D---- C:\Program Files\MediaCoder
2010-02-05 16:09:49 ----D---- C:\Program Files\iPod
2010-02-05 16:09:46 ----D---- C:\Program Files\iTunes
2010-02-03 13:37:19 ----D---- C:\Documents and Settings\Administrateur\Application Data\Screaming Bee
2010-02-02 19:09:06 ----D---- C:\Documents and Settings\All Users\Application Data\FLEXnet
2010-02-02 18:58:17 ----D---- C:\Program Files\Fichiers communs\Macrovision Shared
2010-02-02 18:23:44 ----D---- C:\Documents and Settings\Administrateur\Application Data\Download Manager
2010-02-01 16:57:14 ----D---- C:\Program Files\7-Zip
2010-01-31 22:11:17 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2010-01-31 22:11:12 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2010-01-31 22:09:28 ----A---- C:\WINDOWS\MegaManager.INI
2010-01-30 01:01:27 ----D---- C:\Documents and Settings\All Users\Application Data\TmForever
2010-01-30 00:59:29 ----D---- C:\Program Files\TmNationsForever
2010-01-29 19:14:40 ----D---- C:\Program Files\Shockvoice Server
2010-01-29 19:14:10 ----D---- C:\Documents and Settings\Administrateur\Application Data\shockvoice
2010-01-29 19:13:56 ----D---- C:\Program Files\Shockvoice
2010-01-24 02:08:23 ----A---- C:\Documents and Settings\Administrateur\Application Data\AutoGK.ini
2010-01-24 02:03:55 ----D---- C:\Program Files\XviD
2010-01-24 02:03:46 ----D---- C:\Program Files\AviSynth 2.5
2010-01-24 02:03:38 ----D---- C:\Program Files\Gabest
2010-01-24 02:03:23 ----D---- C:\Program Files\AutoGK
2010-01-23 13:29:27 ----D---- C:\Program Files\YouTube Downloader
2010-01-23 02:22:51 ----D---- C:\Program Files\Blender Foundation
2010-01-22 19:12:55 ----D---- C:\Documents and Settings\Administrateur\Application Data\Adobe
2010-01-22 18:40:46 ----D---- C:\Documents and Settings\Administrateur\Application Data\gtk-2.0
2010-01-22 02:33:06 ----A---- C:\WINDOWS\system32\xfcodec.dll
2010-01-21 17:50:15 ----D---- C:\Program Files\Lavasoft
2010-01-21 17:50:15 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2010-01-21 17:41:29 ----D---- C:\Documents and Settings\All Users\Application Data\SysMon
2010-01-17 21:17:57 ----D---- C:\Program Files\VMNetSrv
2010-01-17 21:17:55 ----D---- C:\Documents and Settings\Administrateur\Application Data\Steganos VPN
2010-01-17 01:00:09 ----D---- C:\WINDOWS\system32\Futuremark
2010-01-17 01:00:08 ----D---- C:\Program Files\Fichiers communs\Futuremark Shared
2010-01-17 00:59:34 ----D---- C:\Program Files\Futuremark
2010-01-15 20:25:23 ----D---- C:\Program Files\Wolfenstein - Enemy Territory
2010-01-14 22:50:07 ----D---- C:\Program Files\CpuIdle
2010-01-14 19:30:34 ----D---- C:\Documents and Settings\Administrateur\Application Data\Quake3
2010-01-13 16:15:46 ----D---- C:\Program Files\OpenAL
2010-01-13 16:15:46 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2010-01-13 16:15:46 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2010-01-13 14:19:05 ----D---- C:\Program Files\Counter-Strike 1.6 V40
2010-01-13 13:37:35 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-12 01:46:28 ----D---- C:\Program Files\BigBrotherBot_1.2.1
2010-01-11 23:12:09 ----A---- C:\WINDOWS\CoD Config Editor.INI
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvmctray.dll
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvmccs.dll
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvcpl.dll
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvcolor.exe
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvwddi.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrszht.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrstr.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsth.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrssv.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrssl.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrssk.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsru.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrspt.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrspl.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsno.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsko.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsja.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsit.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrshu.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrshe.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrses.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrseng.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsel.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsde.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsda.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrscs.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsar.dll
2010-01-11 21:21:39 ----D---- C:\Documents and Settings\Administrateur\Application Data\Mumble
2010-01-11 21:21:30 ----D---- C:\Program Files\Mumble
2010-01-11 20:07:01 ----D---- C:\Program Files\Lavalys
2010-01-11 19:42:21 ----D---- C:\AV_LOGS
2010-01-11 19:38:17 ----D---- C:\Documents and Settings\Administrateur\Application Data\GetRightToGo
2010-01-11 14:43:45 ----D---- C:\Program Files\Pivot Stickfigure Animator
2010-01-11 00:47:55 ----D---- C:\Program Files\GIMP-2.0
2010-01-10 21:54:17 ----D---- C:\Program Files\Notepad++
2010-01-10 21:54:17 ----D---- C:\Documents and Settings\Administrateur\Application Data\Notepad++
2010-01-10 01:38:39 ----D---- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2010-01-10 00:24:53 ----D---- C:\Program Files\Messenger Plus! Live
======List of files/folders modified in the last 1 months======
2099-01-30 12:20:56 ----A---- C:\WINDOWS\system.ini
2010-02-08 22:25:48 ----D---- C:\Documents and Settings\Administrateur\Application Data\DNA
2010-02-08 22:16:36 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-08 22:16:36 ----D---- C:\WINDOWS\system32\fr-fr
2010-02-08 22:15:05 ----D---- C:\Documents and Settings\Administrateur\Application Data\teamspeak2
2010-02-08 22:01:58 ----D---- C:\Documents and Settings\Administrateur\Application Data\Xfire
2010-02-08 21:18:47 ----D---- C:\Program Files\Mozilla Firefox
2010-02-08 20:48:16 ----D---- C:\Program Files\Steam
2010-02-08 20:32:32 ----D---- C:\Program Files\Call of duty 1.4
2010-02-08 20:12:40 ----D---- C:\WINDOWS\Prefetch
2010-02-08 17:45:19 ----D---- C:\Program Files\DNA
2010-02-08 17:36:08 ----D---- C:\Program Files\Google
2010-02-07 17:59:03 ----D---- C:\Documents and Settings\Administrateur\Application Data\HLSW
2010-02-07 16:38:34 ----D---- C:\Documents and Settings\Administrateur\Application Data\Skype
2010-02-07 16:09:52 ----D---- C:\Documents and Settings\Administrateur\Application Data\skypePM
2010-02-07 03:10:48 ----D---- C:\Documents and Settings\Administrateur\Application Data\FileZilla
2010-02-06 19:25:17 ----D---- C:\WINDOWS\Minidump
2010-02-06 17:11:01 ----D---- C:\Program Files\UrbanTerror
2010-02-05 16:09:48 ----D---- C:\Program Files\Fichiers communs\Apple
2010-02-03 19:54:57 ----D---- C:\Program Files\Fichiers communs\Wise Installation Wizard
2010-02-03 19:54:33 ----D---- C:\Program Files\AGEIA Technologies
2010-02-03 19:54:13 ----D---- C:\Program Files\NVIDIA Corporation
2010-02-03 16:35:11 ----D---- C:\Program Files\Call of duty 1.5
2010-02-03 12:34:26 ----D---- C:\Program Files\Xfire
2010-01-31 23:51:57 ----D---- C:\Program Files\WinRAR
2010-01-31 22:16:19 ----D---- C:\Documents and Settings\Administrateur\Application Data\id Software
2010-01-31 22:12:40 ----D---- C:\Program Files\VuPassword
2010-01-31 22:10:18 ----D---- C:\Program Files\Process Hacker
2010-01-31 22:09:57 ----D---- C:\Program Files\ma-config.com
2010-01-31 22:09:57 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
2010-01-25 00:15:58 ----D---- C:\Documents and Settings\Administrateur\Application Data\Apple Computer
2010-01-24 12:30:17 ----D---- C:\Documents and Settings\Administrateur\Application Data\TS3Client
2010-01-24 01:42:36 ----D---- C:\Fraps
2010-01-23 01:30:22 ----D---- C:\WINDOWS\ie8updates
2010-01-21 17:40:03 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-01-21 00:13:03 ----D---- C:\Program Files\Microsoft Silverlight
2010-01-12 05:03:33 ----A---- C:\WINDOWS\system32\OpenCL.dll
2010-01-12 05:03:3
Run by Administrateur at 2010-02-08 22:35:37
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 405 GB (85%) free of 477 GB
Total RAM: 3063 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:35:38, on 08/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe
C:\ASUS.SYS\config\DVMExportService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ASUS\TurboV\TurboV.exe
C:\Program Files\ASUS\Turbo Key\TurboKey.exe
C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Softwin\BitDefender10\bdagent.exe
C:\ADVANC~1\wh_exec.exe
C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe
C:\Program Files\Acer Display\eDisplay Management\DTHtml.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Portrait Displays\Pivot Software\floater.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Fichiers communs\Portrait Displays\Shared\HookManager.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mumble\dbus-daemon.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender10\vsserv.exe
C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe
C:\Program Files\Softwin\BitDefender10\bdmcon.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mumble\mumble11x.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
c:\Program Files\Windows Live\Contacts\wlcomm.exe
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Administrateur\Bureau\HiJackThis.exe
C:\Program Files\iTunes\iTunes.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\Administrateur\Bureau\Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/keyword/%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - c:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Loader Class - {F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD} - C:\WINDOWS\BricoPacks\LeopardXP\FindeXer.dll (file missing)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - c:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: XfireXO Toolbar - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\tbXfir.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [TurboV] "C:\Program Files\ASUS\TurboV\TurboV.exe"
O4 - HKLM\..\Run: [Six Engine] "C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe" -b
O4 - HKLM\..\Run: [Turbo Key] "C:\Program Files\ASUS\Turbo Key\TurboKey.exe"
O4 - HKLM\..\Run: [ASUS Update Checker] C:\Program Files\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe
O4 - HKLM\..\Run: [QFan Help] "C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe"
O4 - HKLM\..\Run: [DT ACR] C:\Program Files\Fichiers communs\Portrait Displays\Shared\DT_startup.exe -ACR
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [itype] "c:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [Cm106Sound] RunDll32 cm106.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SysMon] C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\All Users\Application Data\SysMon\ASK.dll" rdl
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HKLM] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe
O4 - HKCU\..\Run: [HKCU] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKLM\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKCU\..\Policies\Explorer\Run: [Policies] C:\WINDOWS\system32\system32NT\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - c:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - c:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0....
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Co...
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDownload/nforce/Nvi...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://www.ma-config.com/plugins/MaConfig_4_0_1_3.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LC Remote Agent (LcAgent) - Unknown owner - C:\WINDOWS\Temp\lcagent.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: Norton Internet Security - Unknown owner - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files\Fichiers communs\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
--
End of file - 14506 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\Microsoft_Hardware_Launch_IType_exe.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}]
XfireXO Toolbar - C:\Program Files\XfireXO\tbXfir.dll [2009-11-09 2331672]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - c:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - c:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-12-24 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}]
Loader Class - C:\WINDOWS\BricoPacks\LeopardXP\FindeXer.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - c:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{5e5ab302-7f65-44cd-8211-c1d4caaccea3} - XfireXO Toolbar - C:\Program Files\XfireXO\tbXfir.dll [2009-11-09 2331672]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-12-24 149280]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe [2009-07-15 33636352]
"JMB36X IDE Setup"=C:\WINDOWS\RaidTool\xInsIDE.exe [2007-03-20 36864]
"TurboV"=C:\Program Files\ASUS\TurboV\TurboV.exe [2009-05-25 5391872]
"Six Engine"=C:\Program Files\ASUS\EPU-6 Engine\SixEngine.exe [2009-07-17 6038016]
"Turbo Key"=C:\Program Files\ASUS\Turbo Key\TurboKey.exe [2009-05-25 1768960]
"ASUS Update Checker"=C:\Program Files\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe [2008-12-11 114688]
"QFan Help"=C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088]
"Cpu Level Up help"=C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"ISUSPM Startup"=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-07-27 221184]
"ISUSScheduler"=C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe [2004-07-27 81920]
"BDAgent"=C:\Program Files\Softwin\BitDefender10\bdagent.exe [2007-03-26 69632]
"WheelMouse"=C:\ADVANC~1\wh_exec.exe [2008-02-21 98304]
"PivotSoftware"=C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe [2007-02-09 694008]
"DT ACR"=C:\Program Files\Fichiers communs\Portrait Displays\Shared\DT_startup.exe [2008-06-06 81920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"Logitech Utility"=C:\WINDOWS\Logi_MwX.Exe [2003-12-11 20992]
"itype"=c:\Program Files\Microsoft IntelliType Pro\itype.exe [2009-05-28 1501064]
"36X Raid Configurer"=C:\WINDOWS\system32\xRaidSetup.exe [2007-11-19 1970176]
"Cm106Sound"=RunDll32 cm106.cpl,CMICtrlWnd []
"SysMon"=C:\Documents and Settings\All Users\Application Data\SysMon\ASK.dll [2009-11-19 999936]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"nwiz"=nwiz.exe /installquiet []
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-01-11 13666408]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-01-11 110696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608]
"HKLM"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=c:\program files\steam\steam.exe [2009-12-24 1217808]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2010-01-11 323392]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe [2010-02-08 2937528]
"HKCU"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=C:\WINDOWS\system32\system32NT\svchost.exe [2006-04-13 317473]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoSMHelp"=1
"MemCheckBoxInRunDlg"=1
"NoSMBalloonTip"=1
"NoDesktopCleanupWizard"=1
"NoWelcomeScreen"=1
"NoAutoUpdate"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*
isabled:Bonjour""C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\apache2\bin\Apache.exe"="C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\apache2\bin\Apache.exe:*
isabled:Apache HTTP Server""C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*
isabled:@xpsp2res.dll,-22019""C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*
isabled:Steam""C:\Program Files\Steam\steamapps\common\america's army 3\Binaries\AA3Game.exe"="C:\Program Files\Steam\steamapps\common\america's army 3\Binaries\AA3Game.exe:*:Enabled:America's Army 3"
"C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe"="C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe:*:Enabled:Call of Duty: Modern Warfare 2"
"C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe"="C:\Program Files\Steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer"
"C:\Program Files\Call of Duty 1.5\CoDMP.exe"="C:\Program Files\Call of Duty 1.5\CoDMP.exe:*:Enabled:CoDMP"
"C:\Program Files\Call of duty 1.4\CoDMP.exe"="C:\Program Files\Call of duty 1.4\CoDMP.exe:*:Enabled:CoDMP"
"C:\WINDOWS\Network Diagnostic\xpnetdiag.exe"="C:\WINDOWS\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled
NA""C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\Counter-Strike 1.6 V40\hl.exe"="C:\Program Files\Counter-Strike 1.6 V40\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\steamapps\sn1pzor94\half-life 2 deathmatch\hl2.exe"="C:\Program Files\Steam\steamapps\sn1pzor94\half-life 2 deathmatch\hl2.exe:*:Enabled:hl2"
"C:\Program Files\HLSW\hlsw.exe"="C:\Program Files\HLSW\hlsw.exe:*:Enabled:HLSW Application"
"C:\Program Files\UrbanTerror\ioq3-urt.exe"="C:\Program Files\UrbanTerror\ioq3-urt.exe:*:Enabled:ioq3-urt based on ioq3 1.36+"
"C:\Program Files\UrbanTerror\ioUrbanTerror.exe"="C:\Program Files\UrbanTerror\ioUrbanTerror.exe:*:Enabled:ioUrbanTerror"
"C:\Program Files\UrbanTerror\ioUrTded.exe"="C:\Program Files\UrbanTerror\ioUrTded.exe:*:Enabled:ioUrTded"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Left 4 Dead\left4dead.exe"="C:\Program Files\Left 4 Dead\left4dead.exe:*:Enabled:left4dead"
"C:\Documents and Settings\Administrateur\Bureau\Left 4 Dead\left4dead.exe"="C:\Documents and Settings\Administrateur\Bureau\Left 4 Dead\left4dead.exe:*:Enabled:left4dead"
"C:\Program Files\Left.4.Dead.2-NoGRP\left4dead2.exe"="C:\Program Files\Left.4.Dead.2-NoGRP\left4dead2.exe:*:Enabled:left4dead2"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Documents and Settings\Administrateur\Bureau\GTA-SanAndreas\server\MTA Server.exe"="C:\Documents and Settings\Administrateur\Bureau\GTA-SanAndreas\server\MTA Server.exe:*:Enabled:MTA Server"
"C:\Program Files\Mumble\murmur.exe"="C:\Program Files\Mumble\murmur.exe:*:Enabled:Murmur - Low-latency VoIP server"
"C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\mysql\bin\mysqld.exe"="C:\Documents and Settings\private\Bureau\nk177-standalone\mnt\usr\local\mysql\bin\mysqld.exe:*:Enabled:mysqld"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled
ando Media Booster""C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled
nkBstrA""C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled
nkBstrB""C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Spotify\spotify.exe"="C:\Program Files\Spotify\spotify.exe:*:Enabled:Spotify"
"C:\Program Files\TmNationsForever\TmForever.exe"="C:\Program Files\TmNationsForever\TmForever.exe:*:Enabled:TmForever"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"C:\Program Files\Warcraft III\Warcraft III.exe"="C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Xfire\Xfire.exe"="C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
======List of files/folders created in the last 1 months======
2099-01-30 12:26:45 ----A---- C:\WINDOWS\system32\h323log.txt
2099-01-30 12:23:09 ----A---- C:\WINDOWS\system32\hidserv.dll
2099-01-30 12:21:56 ----A---- C:\WINDOWS\system32\usbui.dll
2099-01-30 12:21:03 ----A---- C:\WINDOWS\imsins.BAK
2099-01-30 12:21:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2099-01-30 12:21:00 ----SHD---- C:\WINDOWS\Installer
2099-01-30 12:21:00 ----D---- C:\Program Files\Fichiers communs\ODBC
2099-01-30 12:21:00 ----A---- C:\WINDOWS\ODBCINST.INI
2099-01-30 12:20:57 ----RD---- C:\Program Files
2099-01-30 12:20:57 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2099-01-30 12:20:57 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2099-01-30 12:20:57 ----D---- C:\Program Files\Fichiers communs
2099-01-30 12:20:54 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2099-01-30 12:20:54 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2099-01-30 12:20:54 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdur.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdru.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2099-01-30 12:20:52 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2099-01-30 12:20:50 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2099-01-30 12:20:49 ----RA---- C:\WINDOWS\system32\kbdest.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdro.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2099-01-30 12:20:47 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\spxcoins.dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\irclass.dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\dgsetup.dll
2099-01-30 12:20:45 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2099-01-30 12:20:43 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2099-01-30 12:20:43 ----A---- C:\WINDOWS\TASKMAN.EXE
2099-01-30 12:20:42 ----A---- C:\WINDOWS\system32\batt.dll
2099-01-30 12:20:42 ----A---- C:\WINDOWS\notepad.exe
2099-01-30 12:20:41 ----A---- C:\WINDOWS\system32\storprop.dll
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2D.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2C.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2B.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET2A.tmp
2099-01-30 12:20:35 ----RA---- C:\WINDOWS\SET29.tmp
2099-01-30 12:20:35 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2099-01-30 12:20:32 ----RA---- C:\WINDOWS\SET8.tmp
2099-01-30 12:20:30 ----RA---- C:\WINDOWS\SET4.tmp
2099-01-30 12:20:29 ----RA---- C:\WINDOWS\SET3.tmp
2099-01-30 12:20:25 ----D---- C:\WINDOWS\system32\CatRoot2
2099-01-30 12:20:25 ----D---- C:\WINDOWS\system32\CatRoot
2099-01-30 12:20:20 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2099-01-30 12:20:03 ----A---- C:\WINDOWS\setuplog.txt
2099-01-30 12:20:01 ----SHD---- C:\System Volume Information
2099-01-30 12:20:01 ----D---- C:\Documents and Settings
2099-01-30 12:19:00 ----ASH---- C:\boot.ini
2099-01-30 12:14:13 ----RSHDC---- C:\WINDOWS\system32\dllcache
2099-01-30 12:14:13 ----RSD---- C:\WINDOWS\Fonts
2099-01-30 12:14:13 ----RD---- C:\WINDOWS\Web
2099-01-30 12:14:13 ----HD---- C:\WINDOWS\inf
2099-01-30 12:14:13 ----D---- C:\WINDOWS\WinSxS
2099-01-30 12:14:13 ----D---- C:\WINDOWS\twain_32
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Temp
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\wins
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\wbem
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\usmt
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\spool
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\ShellExt
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\Setup
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\ras
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\oobe
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\npp
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\mui
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\inetsrv
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\IME
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\icsxml
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\ias
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\export
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\drivers
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\dhcp
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\config
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\3com_dmi
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\3076
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\2052
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1054
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1042
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1041
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1037
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1036
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1033
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1031
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1028
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32\1025
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system32
2099-01-30 12:14:13 ----D---- C:\WINDOWS\system
2099-01-30 12:14:13 ----D---- C:\WINDOWS\security
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Resources
2099-01-30 12:14:13 ----D---- C:\WINDOWS\repair
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Provisioning
2099-01-30 12:14:13 ----D---- C:\WINDOWS\PeerNet
2099-01-30 12:14:13 ----D---- C:\WINDOWS\pchealth
2099-01-30 12:14:13 ----D---- C:\WINDOWS\OEM
2099-01-30 12:14:13 ----D---- C:\WINDOWS\mui
2099-01-30 12:14:13 ----D---- C:\WINDOWS\msapps
2099-01-30 12:14:13 ----D---- C:\WINDOWS\msagent
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Media
2099-01-30 12:14:13 ----D---- C:\WINDOWS\java
2099-01-30 12:14:13 ----D---- C:\WINDOWS\ime
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Help
2099-01-30 12:14:13 ----D---- C:\WINDOWS\ehome
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Driver Cache
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Debug
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Cursors
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Connection Wizard
2099-01-30 12:14:13 ----D---- C:\WINDOWS\Config
2099-01-30 12:14:13 ----D---- C:\WINDOWS\AppPatch
2099-01-30 12:14:13 ----D---- C:\WINDOWS\addins
2099-01-30 12:14:13 ----D---- C:\WINDOWS
2099-01-30 12:14:07 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wups2.dll
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2099-01-30 12:14:07 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2099-01-30 11:57:57 ----D---- C:\Documents and Settings\All Users\Application Data\ASUS OC Profiles
2099-01-30 11:56:04 ----HD---- C:\temp
2099-01-30 11:56:04 ----HD---- C:\dvmexp
2099-01-30 11:54:32 ----HD---- C:\ASUS.SYS
2099-01-30 11:54:17 ----D---- C:\Program Files\Downloaded Installations
2099-01-30 11:52:54 ----RA---- C:\WINDOWS\system32\AsIO.dll
2099-01-30 11:52:50 ----D---- C:\Program Files\ASUS
2099-01-30 11:51:20 ----A---- C:\WINDOWS\system32\RtNicProp32.dll
2099-01-30 11:51:12 ----D---- C:\Program Files\Realtek
2099-01-30 11:50:55 ----D---- C:\RaidTool
2099-01-30 11:50:53 ----D---- C:\WINDOWS\RaidTool
2099-01-30 11:50:25 ----D---- C:\WINDOWS\SoftwareDistribution
2099-01-30 11:50:20 ----SD---- C:\WINDOWS\system32\Microsoft
2099-01-30 11:50:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2099-01-30 11:49:17 ----D---- C:\WINDOWS\AsusInstAll
2099-01-30 11:49:12 ----HD---- C:\Program Files\InstallShield Installation Information
2099-01-30 11:48:44 ----N---- C:\WINDOWS\system32\ksuser.dll
2099-01-30 11:48:35 ----N---- C:\WINDOWS\system32\difxapi.dll
2099-01-30 11:48:34 ----D---- C:\Program Files\VIA
2099-01-30 11:48:27 ----D---- C:\Program Files\Fichiers communs\InstallShield
2099-01-30 11:47:36 ----D---- C:\WINDOWS\system32\ReinstallBackups
2099-01-30 11:47:34 ----DC---- C:\WINDOWS\system32\DRVSTORE
2099-01-30 11:47:32 ----RA---- C:\WINDOWS\system32\CSVer.dll
2099-01-30 11:47:32 ----D---- C:\Program Files\Intel
2099-01-30 11:46:49 ----D---- C:\Intel
2099-01-30 11:46:15 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2099-01-30 11:45:59 ----D---- C:\Documents and Settings\All Users\Application Data\NortonInstaller
2099-01-30 11:45:44 ----A---- C:\WINDOWS\Ascd_log.ini
2099-01-30 11:45:22 ----A---- C:\WINDOWS\Language_trs.ini
2099-01-30 11:45:19 ----A---- C:\WINDOWS\Ascd_tmp.ini
2099-01-30 11:44:11 ----D---- C:\Program Files\Fichiers communs\Adobe AIR
2099-01-30 11:44:07 ----D---- C:\Documents and Settings\Administrateur\Application Data\Macromedia
2099-01-30 11:43:57 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2099-01-30 11:43:53 ----D---- C:\Program Files\Fichiers communs\Adobe
2099-01-30 11:43:53 ----D---- C:\Program Files\Adobe
2099-01-30 11:42:39 ----D---- C:\Program Files\EVGA Precision
2099-01-30 11:42:10 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2099-01-30 11:41:53 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2099-01-30 11:41:53 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2099-01-30 11:41:53 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2099-01-30 11:41:52 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2099-01-30 11:41:51 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2099-01-30 11:41:50 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2099-01-30 11:41:49 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2099-01-30 11:41:48 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2099-01-30 11:41:47 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2099-01-30 11:41:46 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2099-01-30 11:41:45 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2099-01-30 11:41:45 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2099-01-30 11:41:45 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2099-01-30 11:41:44 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2099-01-30 11:41:43 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2099-01-30 11:41:42 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2099-01-30 11:41:41 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2099-01-30 11:41:11 ----D---- C:\WINDOWS\Logs
2099-01-30 11:36:21 ----A---- C:\WINDOWS\system32\wmpns.dll
2099-01-30 11:36:20 ----D---- C:\Documents and Settings\Administrateur\Application Data\Identities
2099-01-30 11:36:14 ----HD---- C:\Program Files\Uninstall Information
2099-01-30 11:36:05 ----SD---- C:\Documents and Settings\Administrateur\Application Data\Microsoft
2099-01-30 11:36:05 ----ASH---- C:\Documents and Settings\Administrateur\Application Data\desktop.ini
2099-01-30 11:33:26 ----D---- C:\WINDOWS\system32\xircom
2099-01-30 11:33:26 ----D---- C:\Program Files\xerox
2099-01-30 11:33:26 ----D---- C:\Program Files\microsoft frontpage
2099-01-30 11:33:12 ----A---- C:\WINDOWS\system32\oeminfo.ini
2099-01-30 11:32:51 ----D---- C:\Program Files\Java
2099-01-30 11:32:51 ----D---- C:\Program Files\Fichiers communs\Java
2099-01-30 11:32:18 ----RSD---- C:\WINDOWS\assembly
2099-01-30 11:32:18 ----D---- C:\WINDOWS\Microsoft.NET
2099-01-30 11:32:17 ----D---- C:\WINDOWS\system32\URTTemp
2099-01-30 11:31:48 ----D---- C:\WINDOWS\fsc
2099-01-30 11:31:38 ----D---- C:\AddOn
2099-01-30 11:31:17 ----HD---- C:\WINDOWS\$hf_mig$
2099-01-30 11:31:13 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2099-01-30 11:31:01 ----A---- C:\WINDOWS\OEWABLog.txt
2099-01-30 11:30:58 ----A---- C:\WINDOWS\system32\mapi32.dll
2099-01-30 11:30:30 ----RD---- C:\WINDOWS\Offline Web Pages
2099-01-30 11:30:29 ----SD---- C:\WINDOWS\Downloaded Program Files
2099-01-30 11:30:29 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2099-01-30 11:30:27 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2099-01-30 11:30:24 ----HD---- C:\Program Files\WindowsUpdate
2099-01-30 11:30:21 ----D---- C:\Program Files\Services en ligne
2099-01-30 11:30:09 ----D---- C:\WINDOWS\system32\DirectX
2099-01-30 11:29:52 ----A---- C:\WINDOWS\system32\atrace.dll
2099-01-30 11:29:50 ----A---- C:\WINDOWS\system32\desktop.ini
2099-01-30 11:29:50 ----A---- C:\WINDOWS\desktop.ini
2099-01-30 11:29:44 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2099-01-30 11:29:43 ----D---- C:\Program Files\Fichiers communs\Services
2099-01-30 11:29:43 ----A---- C:\WINDOWS\system32\Acctres.dll
2099-01-30 11:29:41 ----SD---- C:\WINDOWS\Tasks
2099-01-30 11:29:41 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2099-01-30 11:29:40 ----D---- C:\Program Files\Fichiers communs\MSSoap
2099-01-30 11:29:36 ----D---- C:\WINDOWS\system32\Macromed
2099-01-30 11:29:36 ----D---- C:\WINDOWS\srchasst
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuweb.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wups.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wucltui.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuauserv.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuaueng.dll
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2099-01-30 11:29:33 ----A---- C:\WINDOWS\system32\wuauclt.exe
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\wuapi.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\qmgr.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2099-01-30 11:29:32 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2099-01-30 11:29:29 ----D---- C:\Program Files\Movie Maker
2099-01-30 11:29:26 ----A---- C:\WINDOWS\system32\safrslv.dll
2099-01-30 11:29:26 ----A---- C:\WINDOWS\system32\safrdm.dll
2099-01-30 11:29:26 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2099-01-30 11:29:25 ----A---- C:\WINDOWS\system32\racpldlg.dll
2099-01-30 11:29:22 ----D---- C:\WINDOWS\system32\Restore
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\srsvc.dll
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\srrstr.dll
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\srclient.dll
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\fltmc.exe
2099-01-30 11:29:22 ----A---- C:\WINDOWS\system32\fltlib.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\msconf.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\mnmdd.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2099-01-30 11:29:21 ----A---- C:\WINDOWS\system32\ils.dll
2099-01-30 11:29:18 ----D---- C:\Program Files\NetMeeting
2099-01-30 11:29:18 ----A---- C:\WINDOWS\system32\msoert2.dll
2099-01-30 11:29:18 ----A---- C:\WINDOWS\system32\msoeacct.dll
2099-01-30 11:29:17 ----A---- C:\WINDOWS\system32\inetres.dll
2099-01-30 11:29:17 ----A---- C:\WINDOWS\system32\inetcomm.dll
2099-01-30 11:29:16 ----D---- C:\Program Files\Outlook Express
2099-01-30 11:29:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\mstinit.exe
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\mstask.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\isign32.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\inetcfg.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\icwphbk.dll
2099-01-30 11:29:15 ----A---- C:\WINDOWS\system32\Icwdial.dll
2099-01-30 11:29:10 ----D---- C:\Program Files\Fichiers communs\System
2099-01-30 11:29:09 ----D---- C:\Program Files\Internet Explorer
2099-01-30 11:28:49 ----D---- C:\Program Files\ComPlus Applications
2099-01-30 11:28:47 ----A---- C:\WINDOWS\vbaddin.ini
2099-01-30 11:28:47 ----A---- C:\WINDOWS\vb.ini
2099-01-30 11:28:44 ----D---- C:\WINDOWS\Registration
2099-01-30 11:28:39 ----D---- C:\Program Files\Windows Media Player
2099-01-30 11:28:39 ----D---- C:\Program Files\Online Services
2099-01-30 11:28:35 ----D---- C:\Program Files\Messenger
2099-01-30 11:28:32 ----D---- C:\Program Files\MSN Gaming Zone
2099-01-30 11:28:31 ----A---- C:\WINDOWS\system32\Write.exe
2099-01-30 11:28:24 ----A---- C:\WINDOWS\system32\sndvol32.exe
2099-01-30 11:28:24 ----A---- C:\WINDOWS\system32\hticons.dll
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\winchat.exe
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\avwav.dll
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\avtapi.dll
2099-01-30 11:28:23 ----A---- C:\WINDOWS\system32\avmeter.dll
2099-01-30 11:28:17 ----A---- C:\WINDOWS\system32\getuname.dll
2099-01-30 11:28:17 ----A---- C:\WINDOWS\system32\charmap.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\winmine.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\sol.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\mshearts.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\freecell.exe
2099-01-30 11:28:16 ----A---- C:\WINDOWS\system32\calc.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tslabels.ini
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tskill.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\tscon.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\shadow.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\rwinsta.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\reset.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\regini.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\qwinsta.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\qappsrv.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\msg.exe
2099-01-30 11:28:15 ----A---- C:\WINDOWS\system32\logoff.exe
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\mtxex.dll
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\mtxdm.dll
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2099-01-30 11:28:14 ----A---- C:\WINDOWS\system32\cdmodem.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\stclient.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\comsnap.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\comrepl.dll
2099-01-30 11:28:13 ----A---- C:\WINDOWS\system32\comaddin.dll
2099-01-30 11:28:09 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2099-01-30 11:28:00 ----D---- C:\Program Files\MSN
2099-01-30 11:27:59 ----A---- C:\WINDOWS\system32\sndrec32.exe
2099-01-30 11:27:59 ----A---- C:\WINDOWS\system32\mplay32.exe
2099-01-30 11:27:59 ----A---- C:\WINDOWS\system32\accwiz.exe
2099-01-30 11:27:58 ----D---- C:\Program Files\Windows NT
2099-01-30 11:27:58 ----A---- C:\WINDOWS\system32\mspaint.exe
2099-01-30 11:27:58 ----A---- C:\WINDOWS\system32\hypertrm.dll
2099-01-30 11:27:58 ----A---- C:\WINDOWS\system32\clipbrd.exe
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\spider.exe
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\mstscax.dll
2099-01-30 11:27:57 ----A---- C:\WINDOWS\system32\mstsc.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\termsrv.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\sessmgr.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\remotepg.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdshost.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdpclip.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\rdchost.dll
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\qprocess.exe
2099-01-30 11:27:56 ----A---- C:\WINDOWS\system32\icaapi.dll
2099-01-30 11:27:55 ----D---- C:\WINDOWS\system32\MsDtc
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\mtxoci.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\msdtctm.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2099-01-30 11:27:55 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2099-01-30 11:27:54 ----D---- C:\WINDOWS\system32\Com
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\xolehlp.dll
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\msdtclog.dll
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\msdtc.exe
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\colbact.dll
2099-01-30 11:27:54 ----A---- C:\WINDOWS\system32\catsrvps.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\comsvcs.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\clbcatex.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\catsrvut.dll
2099-01-30 11:27:53 ----A---- C:\WINDOWS\system32\catsrv.dll
2099-01-30 11:27:52 ----A---- C:\WINDOWS\system32\comuid.dll
2099-01-30 11:27:52 ----A---- C:\WINDOWS\system32\clbcatq.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\servdeps.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\mmfutil.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\licwmi.dll
2099-01-30 11:27:47 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-02-08 22:35:37 ----D---- C:\rsit
2010-02-08 22:16:51 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-08 22:16:50 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-08 22:16:50 ----D---- C:\WINDOWS\LastGood
2010-02-08 22:16:49 ----D---- C:\54f5436edd813eef41f5ed346c
2010-02-08 22:14:30 ----D---- C:\f0acfe1377eda25df6
2010-02-08 20:04:00 ----D---- C:\Documents and Settings\All Users\Application Data\PMB Files
2010-02-08 20:03:37 ----D---- C:\Program Files\Pando Networks
2010-02-08 19:52:23 ----D---- C:\Program Files\ijji
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\uc_luminary_launching.dll
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\uc_atlantica_launching.dll
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiSetup.exe
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiProcessRestarter.exe
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiPlugin2.dll
2010-02-08 19:52:23 ----A---- C:\WINDOWS\system32\ijjiChannelingPlugin.dll
2010-02-07 12:03:06 ----D---- C:\Documents and Settings\Administrateur\Application Data\Broad Intelligence
2010-02-07 02:56:14 ----D---- C:\Program Files\MediaCoder
2010-02-05 16:09:49 ----D---- C:\Program Files\iPod
2010-02-05 16:09:46 ----D---- C:\Program Files\iTunes
2010-02-03 13:37:19 ----D---- C:\Documents and Settings\Administrateur\Application Data\Screaming Bee
2010-02-02 19:09:06 ----D---- C:\Documents and Settings\All Users\Application Data\FLEXnet
2010-02-02 18:58:17 ----D---- C:\Program Files\Fichiers communs\Macrovision Shared
2010-02-02 18:23:44 ----D---- C:\Documents and Settings\Administrateur\Application Data\Download Manager
2010-02-01 16:57:14 ----D---- C:\Program Files\7-Zip
2010-01-31 22:11:17 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2010-01-31 22:11:12 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2010-01-31 22:09:28 ----A---- C:\WINDOWS\MegaManager.INI
2010-01-30 01:01:27 ----D---- C:\Documents and Settings\All Users\Application Data\TmForever
2010-01-30 00:59:29 ----D---- C:\Program Files\TmNationsForever
2010-01-29 19:14:40 ----D---- C:\Program Files\Shockvoice Server
2010-01-29 19:14:10 ----D---- C:\Documents and Settings\Administrateur\Application Data\shockvoice
2010-01-29 19:13:56 ----D---- C:\Program Files\Shockvoice
2010-01-24 02:08:23 ----A---- C:\Documents and Settings\Administrateur\Application Data\AutoGK.ini
2010-01-24 02:03:55 ----D---- C:\Program Files\XviD
2010-01-24 02:03:46 ----D---- C:\Program Files\AviSynth 2.5
2010-01-24 02:03:38 ----D---- C:\Program Files\Gabest
2010-01-24 02:03:23 ----D---- C:\Program Files\AutoGK
2010-01-23 13:29:27 ----D---- C:\Program Files\YouTube Downloader
2010-01-23 02:22:51 ----D---- C:\Program Files\Blender Foundation
2010-01-22 19:12:55 ----D---- C:\Documents and Settings\Administrateur\Application Data\Adobe
2010-01-22 18:40:46 ----D---- C:\Documents and Settings\Administrateur\Application Data\gtk-2.0
2010-01-22 02:33:06 ----A---- C:\WINDOWS\system32\xfcodec.dll
2010-01-21 17:50:15 ----D---- C:\Program Files\Lavasoft
2010-01-21 17:50:15 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2010-01-21 17:41:29 ----D---- C:\Documents and Settings\All Users\Application Data\SysMon
2010-01-17 21:17:57 ----D---- C:\Program Files\VMNetSrv
2010-01-17 21:17:55 ----D---- C:\Documents and Settings\Administrateur\Application Data\Steganos VPN
2010-01-17 01:00:09 ----D---- C:\WINDOWS\system32\Futuremark
2010-01-17 01:00:08 ----D---- C:\Program Files\Fichiers communs\Futuremark Shared
2010-01-17 00:59:34 ----D---- C:\Program Files\Futuremark
2010-01-15 20:25:23 ----D---- C:\Program Files\Wolfenstein - Enemy Territory
2010-01-14 22:50:07 ----D---- C:\Program Files\CpuIdle
2010-01-14 19:30:34 ----D---- C:\Documents and Settings\Administrateur\Application Data\Quake3
2010-01-13 16:15:46 ----D---- C:\Program Files\OpenAL
2010-01-13 16:15:46 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2010-01-13 16:15:46 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2010-01-13 14:19:05 ----D---- C:\Program Files\Counter-Strike 1.6 V40
2010-01-13 13:37:35 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-12 01:46:28 ----D---- C:\Program Files\BigBrotherBot_1.2.1
2010-01-11 23:12:09 ----A---- C:\WINDOWS\CoD Config Editor.INI
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvmctray.dll
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvmccs.dll
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvcpl.dll
2010-01-11 22:17:44 ----A---- C:\WINDOWS\system32\nvcolor.exe
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvwddi.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrszht.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrstr.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsth.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrssv.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrssl.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrssk.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsru.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrspt.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrspl.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsno.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsko.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsja.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsit.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrshu.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrshe.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrses.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrseng.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsel.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsde.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsda.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrscs.dll
2010-01-11 22:17:40 ----A---- C:\WINDOWS\system32\nvrsar.dll
2010-01-11 21:21:39 ----D---- C:\Documents and Settings\Administrateur\Application Data\Mumble
2010-01-11 21:21:30 ----D---- C:\Program Files\Mumble
2010-01-11 20:07:01 ----D---- C:\Program Files\Lavalys
2010-01-11 19:42:21 ----D---- C:\AV_LOGS
2010-01-11 19:38:17 ----D---- C:\Documents and Settings\Administrateur\Application Data\GetRightToGo
2010-01-11 14:43:45 ----D---- C:\Program Files\Pivot Stickfigure Animator
2010-01-11 00:47:55 ----D---- C:\Program Files\GIMP-2.0
2010-01-10 21:54:17 ----D---- C:\Program Files\Notepad++
2010-01-10 21:54:17 ----D---- C:\Documents and Settings\Administrateur\Application Data\Notepad++
2010-01-10 01:38:39 ----D---- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2010-01-10 00:24:53 ----D---- C:\Program Files\Messenger Plus! Live
======List of files/folders modified in the last 1 months======
2099-01-30 12:20:56 ----A---- C:\WINDOWS\system.ini
2010-02-08 22:25:48 ----D---- C:\Documents and Settings\Administrateur\Application Data\DNA
2010-02-08 22:16:36 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-08 22:16:36 ----D---- C:\WINDOWS\system32\fr-fr
2010-02-08 22:15:05 ----D---- C:\Documents and Settings\Administrateur\Application Data\teamspeak2
2010-02-08 22:01:58 ----D---- C:\Documents and Settings\Administrateur\Application Data\Xfire
2010-02-08 21:18:47 ----D---- C:\Program Files\Mozilla Firefox
2010-02-08 20:48:16 ----D---- C:\Program Files\Steam
2010-02-08 20:32:32 ----D---- C:\Program Files\Call of duty 1.4
2010-02-08 20:12:40 ----D---- C:\WINDOWS\Prefetch
2010-02-08 17:45:19 ----D---- C:\Program Files\DNA
2010-02-08 17:36:08 ----D---- C:\Program Files\Google
2010-02-07 17:59:03 ----D---- C:\Documents and Settings\Administrateur\Application Data\HLSW
2010-02-07 16:38:34 ----D---- C:\Documents and Settings\Administrateur\Application Data\Skype
2010-02-07 16:09:52 ----D---- C:\Documents and Settings\Administrateur\Application Data\skypePM
2010-02-07 03:10:48 ----D---- C:\Documents and Settings\Administrateur\Application Data\FileZilla
2010-02-06 19:25:17 ----D---- C:\WINDOWS\Minidump
2010-02-06 17:11:01 ----D---- C:\Program Files\UrbanTerror
2010-02-05 16:09:48 ----D---- C:\Program Files\Fichiers communs\Apple
2010-02-03 19:54:57 ----D---- C:\Program Files\Fichiers communs\Wise Installation Wizard
2010-02-03 19:54:33 ----D---- C:\Program Files\AGEIA Technologies
2010-02-03 19:54:13 ----D---- C:\Program Files\NVIDIA Corporation
2010-02-03 16:35:11 ----D---- C:\Program Files\Call of duty 1.5
2010-02-03 12:34:26 ----D---- C:\Program Files\Xfire
2010-01-31 23:51:57 ----D---- C:\Program Files\WinRAR
2010-01-31 22:16:19 ----D---- C:\Documents and Settings\Administrateur\Application Data\id Software
2010-01-31 22:12:40 ----D---- C:\Program Files\VuPassword
2010-01-31 22:10:18 ----D---- C:\Program Files\Process Hacker
2010-01-31 22:09:57 ----D---- C:\Program Files\ma-config.com
2010-01-31 22:09:57 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
2010-01-25 00:15:58 ----D---- C:\Documents and Settings\Administrateur\Application Data\Apple Computer
2010-01-24 12:30:17 ----D---- C:\Documents and Settings\Administrateur\Application Data\TS3Client
2010-01-24 01:42:36 ----D---- C:\Fraps
2010-01-23 01:30:22 ----D---- C:\WINDOWS\ie8updates
2010-01-21 17:40:03 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-01-21 00:13:03 ----D---- C:\Program Files\Microsoft Silverlight
2010-01-12 05:03:33 ----A---- C:\WINDOWS\system32\OpenCL.dll
2010-01-12 05:03:3
:dir
C:\WINDOWS\system32\system32NT
C:\Documents and Settings\All Users\Application Data\SysMon
C:\WINDOWS\system32\system32NT
C:\Documents and Settings\All Users\Application Data\SysMon
Note : Le rapport peut aussi être trouvé sur ton Bureau sous le nom SystemLook.txt
SystemLook v1.0 by jpshortstuff (11.01.10)
Log created at 22:55 on 08/02/2010 by Administrateur (Administrator - Elevation successful)
========== dir ==========
C:\WINDOWS\system32\system32NT - Parameters: "(none)"
---Files---
svchost.exe -r-hs- 317473 bytes [20:36 13/04/2006] [20:36 13/04/2006]
---Folders---
None found.
C:\Documents and Settings\All Users\Application Data\SysMon - Parameters: "(none)"
---Files---
ASK.dll --a--- 999936 bytes [09:01 19/11/2009] [09:01 19/11/2009]
ASK_KILL.exe --a--- 905216 bytes [13:12 17/11/2009] [13:12 17/11/2009]
flt_loader.exe --a--- 14848 bytes [15:23 12/11/2009] [15:23 12/11/2009]
null_flt.sys --a--- 4736 bytes [15:35 12/11/2009] [15:35 12/11/2009]
SysMon.exe --a--- 1277952 bytes [14:31 17/11/2009] [14:31 17/11/2009]
SysMonHelp.chm --a--- 911975 bytes [11:09 17/11/2009] [11:09 17/11/2009]
SysMonScrCap.exe --a--- 264704 bytes [10:42 09/07/2009] [10:42 09/07/2009]
xcacls.exe --a--- 45056 bytes [08:50 08/05/2002] [08:50 08/05/2002]
---Folders---
Logs d----- [16:42 21/01/2010]
-=End Of File=-
Log created at 22:55 on 08/02/2010 by Administrateur (Administrator - Elevation successful)
========== dir ==========
C:\WINDOWS\system32\system32NT - Parameters: "(none)"
---Files---
svchost.exe -r-hs- 317473 bytes [20:36 13/04/2006] [20:36 13/04/2006]
---Folders---
None found.
C:\Documents and Settings\All Users\Application Data\SysMon - Parameters: "(none)"
---Files---
ASK.dll --a--- 999936 bytes [09:01 19/11/2009] [09:01 19/11/2009]
ASK_KILL.exe --a--- 905216 bytes [13:12 17/11/2009] [13:12 17/11/2009]
flt_loader.exe --a--- 14848 bytes [15:23 12/11/2009] [15:23 12/11/2009]
null_flt.sys --a--- 4736 bytes [15:35 12/11/2009] [15:35 12/11/2009]
SysMon.exe --a--- 1277952 bytes [14:31 17/11/2009] [14:31 17/11/2009]
SysMonHelp.chm --a--- 911975 bytes [11:09 17/11/2009] [11:09 17/11/2009]
SysMonScrCap.exe --a--- 264704 bytes [10:42 09/07/2009] [10:42 09/07/2009]
xcacls.exe --a--- 45056 bytes [08:50 08/05/2002] [08:50 08/05/2002]
---Folders---
Logs d----- [16:42 21/01/2010]
-=End Of File=-
:processes
explorer.exe
:services
LcAgent
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysMon"=-
"HKLM"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HKCU"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=-
:files
C:\Program Files\DAEMON Tools Toolbar
C:\WINDOWS\system32\system32NT
C:\Documents and Settings\All Users\Application Data\SysMon
:commands
[emptytemp]
[reboot]
explorer.exe
:services
LcAgent
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysMon"=-
"HKLM"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HKCU"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"Policies"=-
:files
C:\Program Files\DAEMON Tools Toolbar
C:\WINDOWS\system32\system32NT
C:\Documents and Settings\All Users\Application Data\SysMon
:commands
[emptytemp]
[reboot]
---> Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Le nom du rapport correspond au moment de sa création : date_heure.log
(J'ai changé de compte, car le sn1pe94 a planté pour l'envoie d'email)
donc voici ce que sa donne :
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
Service LcAgent stopped successfully!
Service LcAgent deleted successfully!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SysMon deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HKLM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\Policies deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\HKCU deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\Policies deleted successfully.
========== FILES ==========
C:\Program Files\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files\DAEMON Tools Toolbar folder moved successfully.
C:\WINDOWS\system32\system32NT folder moved successfully.
C:\Documents and Settings\All Users\Application Data\SysMon\Logs\Web folder moved successfully.
Folder move failed. C:\Documents and Settings\All Users\Application Data\SysMon\Logs scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\All Users\Application Data\SysMon scheduled to be moved on reboot.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 7935466 bytes
->Temporary Internet Files folder emptied: 269438526 bytes
->Java cache emptied: 27374394 bytes
->FireFox cache emptied: 87824814 bytes
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 1152207 bytes
User: private
->Temp folder emptied: 11621790 bytes
->Temporary Internet Files folder emptied: 71586424 bytes
->Java cache emptied: 13690439 bytes
->FireFox cache emptied: 76651470 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2195330 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2565477 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 16718696 bytes
Total Files Cleaned = 562,00 mb
OTM by OldTimer - Version 3.1.8.0 log created on 02082010_235346
Files moved on Reboot...
C:\Documents and Settings\All Users\Application Data\SysMon\Logs folder moved successfully.
C:\Documents and Settings\All Users\Application Data\SysMon folder moved successfully.
Registry entries deleted on Reboot...
donc voici ce que sa donne :
Citation :
All processes killed========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
Service LcAgent stopped successfully!
Service LcAgent deleted successfully!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SysMon deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HKLM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\Policies deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\HKCU deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\\Policies deleted successfully.
========== FILES ==========
C:\Program Files\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files\DAEMON Tools Toolbar folder moved successfully.
C:\WINDOWS\system32\system32NT folder moved successfully.
C:\Documents and Settings\All Users\Application Data\SysMon\Logs\Web folder moved successfully.
Folder move failed. C:\Documents and Settings\All Users\Application Data\SysMon\Logs scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\All Users\Application Data\SysMon scheduled to be moved on reboot.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 7935466 bytes
->Temporary Internet Files folder emptied: 269438526 bytes
->Java cache emptied: 27374394 bytes
->FireFox cache emptied: 87824814 bytes
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 1152207 bytes
User: private
->Temp folder emptied: 11621790 bytes
->Temporary Internet Files folder emptied: 71586424 bytes
->Java cache emptied: 13690439 bytes
->FireFox cache emptied: 76651470 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2195330 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2565477 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 16718696 bytes
Total Files Cleaned = 562,00 mb
OTM by OldTimer - Version 3.1.8.0 log created on 02082010_235346
Files moved on Reboot...
C:\Documents and Settings\All Users\Application Data\SysMon\Logs folder moved successfully.
C:\Documents and Settings\All Users\Application Data\SysMon folder moved successfully.
Registry entries deleted on Reboot...
Tu as deux antivirus, BitDefender et AntiVir, il faut en désinstaller un.
Télécharge Malwarebytes' Anti-Malware (MBAM) sur ton Bureau.
Double-clique sur le fichier téléchargé pour lancer le processus d'installation.
Dans l'onglet Mise à jour, clique sur le bouton Recherche de mise à jour : si le pare-feu demande l'autorisation à MBAM de se connecter à Internet, accepte.
Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
Sélectionne Exécuter un examen rapide.
Clique sur Rechercher. L'analyse démarre.
A la fin de l'analyse, un message s'affiche :
Clique sur OK pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
Ferme tes navigateurs.
Si des malwares ont été détectés, clique sur Afficher les résultats.
Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre infectés et en mettre une copie dans la quarantaine.
MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport dans ta prochaine réponse.
Citation :
L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.
Oui j'ai les 2, mais justement, AntiVir lui c'est l'antivirus qui se lance tout le temps des qu'il détecte un virus, alors que BitDefender lui reste inactif sauf si j'lui demande d'analyser un fichier, c''est pas bon? (grâce a "cette technique" j'ai pu échapper a quelques virus...)
Sinon voici le résultats :
EDIT : PC redémarré.
Sinon voici le résultats :
Malwarebytes' Anti-Malware 1.44 Version de la base de données: 3710 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 09/02/2010 00:26:04 mbam-log-2010-02-09 (00-26-04).txt Type de recherche: Examen rapide Eléments examinés: 122463 Temps écoulé: 2 minute(s), 40 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 1 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 3 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 1 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{arfg84o6-6uyr-5a41-1u03-5345b267at3i} (Generic.Bot.H) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\Documents and Settings\Administrateur\Application Data\logs.dat (Bifrose.Trace) -> Quarantined and deleted successfully.
EDIT : PC redémarré.
Je désinstalle BitDefender (en se moment, EDIT : désinstallé)
Donc ça c'est le fichier info (je précise : AVANT d'avoir désinstallé BitDefender)
Donc ça c'est le fichier info (je précise : AVANT d'avoir désinstallé BitDefender)
info.txt logfile of random's system information tool 1.06 2010-02-08 22:35:39 ======Uninstall list====== -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205} -->MsiExec /X{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6} -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf 7-Zip 4.65-->"C:\Program Files\7-Zip\Uninstall.exe" Acer eDisplay Management-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A586DC50-B18D-48FB-B7CC-A598200457C2}\setup.exe" -l0x40c -removeonly Adobe After Effects CS4 Presets-->MsiExec.exe /I{44E240EC-2224-4078-A88B-2CEE0D3016EF} Adobe After Effects CS4 Third Party Content-->C:\Program Files\Fichiers communs\Adobe\Installers\5aab5a491a3a52ae624fd639f6aaa95\Setup.exe --uninstall=1 Adobe After Effects CS4 Third Party Content-->MsiExec.exe /I{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E} Adobe After Effects CS4-->C:\Program Files\Fichiers communs\Adobe\Installers\3dcb365ab9e01871fb8c6f27b0ea079\Setup.exe --uninstall=1 Adobe After Effects CS4-->MsiExec.exe /I{45EC816C-0771-4C14-AE6D-72D1B578F4C8} Adobe AIR-->c:\Program Files\Fichiers communs\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723} Adobe Anchor Service CS4-->MsiExec.exe /I{1618734A-3957-4ADD-8199-F973763109A8} Adobe Bridge CS4-->MsiExec.exe /I{83877DB1-8B77-45BC-AB43-2BAC22E093E0} Adobe CMaps CS4-->MsiExec.exe /I{94D398EB-D2FD-4FD1-B8C4-592635E8A191} Adobe Color Video Profiles AE CS4-->MsiExec.exe /I{B15381DD-FF97-4FCD-A881-ED4DB0975500} Adobe Default Language CS4-->MsiExec.exe /I{C52E3EC1-048C-45E1-8D53-10B0C6509683} Adobe Device Central CS4-->MsiExec.exe /I{67F0E67A-8E93-4C2C-B29D-47C48262738A} Adobe Dynamiclink Support-->MsiExec.exe /I{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D} Adobe ExtendScript Toolkit CS4-->MsiExec.exe /I{F8EF2B3F-C345-4F20-8FE4-791A20333CD5} Adobe Extension Manager CS4-->MsiExec.exe /I{054EFA56-2AC1-48F4-A883-0AB89874B972} Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe Adobe Fonts All-->MsiExec.exe /I{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794} Adobe Media Encoder CS4 Additional Exporter-->MsiExec.exe /I{BE9CEAAA-F069-4331-BF2F-8D350F6504F4} Adobe Media Encoder CS4-->MsiExec.exe /I{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E} Adobe MotionPicture Color Files CS4-->MsiExec.exe /I{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15} Adobe Output Module-->MsiExec.exe /I{BB4E33EC-8181-4685-96F7-8554293DEC6A} Adobe PDF Library Files CS4-->MsiExec.exe /I{F93C84A6-0DC6-42AF-89FA-776F7C377353} Adobe Reader 9.2-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A92000000001} Adobe Setup-->MsiExec.exe /I{411F3ABA-2AB5-4799-AA19-6ADF0A8F7424} Adobe Setup-->MsiExec.exe /I{8EB8E60B-315D-44EB-A896-10D88602EE46} Adobe Type Support CS4-->MsiExec.exe /I{820D3F45-F6EE-4AAF-81EF-CE21FF21D230} Adobe Update Manager CS4-->MsiExec.exe /I{05308C4E-7285-4066-BAE3-6B50DA6ED755} Adobe XMP Panels CS4-->MsiExec.exe /I{3A4E8896-C2E7-4084-A4A4-B8FD1894E739} AdobeColorCommonSetRGB-->MsiExec.exe /I{16E6D2C1-7C90-4309-8EC4-D2212690AAA4} Advanced Wheel Mouse 6.0.0.002-->C:\ADVANC~1\uninst.exe AI Suite-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{310BC5E2-31AF-49BB-904D-E71EB93645DC}\setup.exe" -l0x40c America's Army 3-->"C:\program files\steam\steam.exe" steam://uninstall/13140 Apple Application Support-->MsiExec.exe /I{3FA365DF-2D68-45ED-8F83-8C8A33E65143} Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE} Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033} Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7} ASUSUpdate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{587178E7-B1DF-494E-9838-FA4DD36E873C}\setup.exe" -l0x40c Auto Gordian Knot 2.55-->C:\Program Files\AutoGK\uninst.exe AV Voice Changer Software 7.0-->C:\PROGRA~1\AVVCS7~1.0\UNWISE.EXE C:\PROGRA~1\AVVCS7~1.0\INSTALL.LOG Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE AviSynth 2.5-->"C:\Program Files\AviSynth 2.5\Uninstall.exe" BigBrotherBot 1.2.1-->"C:\Program Files\BigBrotherBot_1.2.1\unins000.exe" BitDefender Free Edition v10-->MsiExec.exe /I{CEFC581D-BEAE-4F75-989E-BD931970D8AD} Blender (remove only)-->"C:\Program Files\Blender Foundation\Blender\uninstall.exe" Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B} Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch-->C:\Program Files\InstallShield Installation Information\{931C37FC-594D-43A9-B10F-A2F2B1F03498}\setup.exe -runfromtemp -l0x0409 Call of Duty(R) 4 - Modern Warfare(TM)-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe -runfromtemp -l0x040c Call of Duty: Modern Warfare 2 - Multiplayer-->"C:\program files\steam\steam.exe" steam://uninstall/10190 Call of Duty: Modern Warfare 2-->"C:\program files\steam\steam.exe" steam://uninstall/10180 Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe" Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe" Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe" Correctif pour Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe" Counter-Strike 1.6 V40.1-->C:\Program Files\Counter-Strike 1.6 V40\Uninstal.exe CpuIdle (remove only)-->"C:\Program Files\CpuIdle\uninstall.exe" CursorXP-->C:\Program Files\CursorXP\CurXPUtil.exe -u DAEMON Tools Toolbar-->C:\Program Files\DAEMON Tools Toolbar\uninst.exe EPU-6 Engine-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{56B83336-FBC1-4C46-8613-90A9E3B440D6}\setup.exe" -l0x40c EVEREST Ultimate Edition v5.30-->"C:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe" EVGA Precision 1.8.1-->"C:\Program Files\EVGA Precision\uninstall.exe" Express Gate-->MsiExec.exe /X{99AD9D6D-A456-49EE-8360-F22EE7AA1272} FileZilla Client 3.3.1-->C:\Program Files\FileZilla FTP Client\uninstall.exe Fraps (remove only)-->"C:\Fraps\uninstall.exe" Futuremark SystemInfo-->"C:\Program Files\InstallShield Installation Information\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}\setup.exe" -runfromtemp -l0x0009 -removeonly Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1} Gaming Mouse-->"C:\Program Files\Gaming Mouse\uninstall.exe" GIMP 2.6.8-->"C:\Program Files\GIMP-2.0\setup\unins000.exe" Half-Life 2: Deathmatch-->"C:\program files\steam\steam.exe" steam://uninstall/320 Half-Life 2: Lost Coast-->"C:\program files\steam\steam.exe" steam://uninstall/340 HijackThis 2.0.2-->"C:\Documents and Settings\Administrateur\Bureau\HijackThis.exe" /uninstall HLSW v1.3.2.1-->"C:\Program Files\HLSW\unins000.exe" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT="" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT="" Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe" Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe" iColorFolder-->C:\Program Files\iColorFolder\uninstall.exe ijji REACTOR-->"C:\Program Files\InstallShield Installation Information\{901DC58A-5C1B-4315-BA40-5AD3D3A463B9}\setup.exe" -runfromtemp -l0x0009 -removeonly Installation Windows Live-->c:\Program Files\Windows Live\Installer\wlarp.exe Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31} iTunes-->MsiExec.exe /I{F439D7AF-03F3-4F8E-AEC4-571BFE977C61} J2SE Runtime Environment 5.0-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150000} Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216017FF} JMicron JMB36X Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x40c -removeonly Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5} Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall LightScribe System Software 1.12.29.2-->MsiExec.exe /X{CF8C077A-B467-4C43-8DB5-3A9B94FF9681} Logitech MouseWare 9.80 -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5809E7CF-4DCF-11D4-9875-00105ACE7734}\Setup.exe" -l0x40c -l040c UNINSTALL MediaCoder 0.7.2.4580-->C:\Program Files\MediaCoder\uninst.exe Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe" Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700} Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp" Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{3F7924B9-D148-3141-87B1-68F36043A940} Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{511DF669-2930-30C0-8EB6-552887E29EC8} Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7} Microsoft .NET Framework 3.5 Language Pack - fra-->MsiExec.exe /I{5B76AEA2-D4E5-3B55-B965-ACC36AE0EAFC} Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570} Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe" Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7} Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)-->MsiExec.exe /X{E09B48B5-E141-427A-AB0C-D3605127224A} Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5} Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB} Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe" Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C} Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475} Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 8 (KB978207)-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB961371-v2)-->"C:\WINDOWS\$NtUninstallKB961371-v2$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB971961)-->"C:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB976325)-->"C:\WINDOWS\$NtUninstallKB976325$\spuninst\spuninst.exe" Mise à jour pour Microsoft Windows (KB971513)-->"C:\WINDOWS\$NtUninstallKB971513$\spuninst\spuninst.exe" Mise à jour pour Windows Internet Explorer 8 (KB975364)-->"C:\WINDOWS\ie8updates\KB975364-IE8\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB961503)-->"C:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe" Module linguistique Microsoft .NET Framework 3.5 - fra-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack - fra\setup.exe Mozilla Firefox (3.5.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} Mumble and Murmur-->C:\Program Files\Mumble\Uninstall.exe Notepad++-->C:\Program Files\Notepad++\uninstall.exe NVIDIA Display Control Panel-->C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe DisplayControlPanel NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI NVIDIA nView Desktop Manager-->C:\Program Files\NVIDIA Corporation\nView\nViewSetup.exe -uninstall NVIDIA PhysX-->MsiExec.exe /X{E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6} OpenAL-->"C:\Program Files\OpenAL\OpenALwEAX.exe" /U Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238} Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe" Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe PC Probe II-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\setup.exe" -l0x40c Photoshop Camera Raw-->MsiExec.exe /I{CC75AB5C-2110-4A7F-AF52-708680D22FE8} Pivot Software-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}\setup.exe" -l0x40c -removeonly Pivot Stickfigure Animator-->MsiExec.exe /I{BEAD39CD-901D-4267-8B8B-EAA83CB4B70D} Pixel Bender Toolkit-->MsiExec.exe /I{43509E18-076E-40FE-AF38-CA5ED400A5A9} Quake III Arena-->"C:\Program Files\ioquake3\uninstall-ioquake3-q3a.exe" QuickTime-->MsiExec.exe /I{1451DE6B-ABE1-4F62-BE9A-B363A17588A2} REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -removeonly Roxio Data Module-->MsiExec.exe /I{075473F5-846A-448B-BCB3-104AA1760205} Roxio Express Labeler-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA} Roxio MyDVD Plus-->MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29} Roxio Update Manager-->MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E} SDK-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0DEA342C-15CB-4F52-97B6-06A9C4B9C06F}\setup.exe" -l0x9 Security Update for Windows Search 4 - KB963093-->"C:\WINDOWS\$NtUninstallKB963093$\spuninst\spuninst.exe" Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7} Shockvoice Client 0.9.2-->"C:\Program Files\Shockvoice\unins000.exe" Skype web features-->MsiExec.exe /I{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748} Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36} Sony Media Manager 2.2-->MsiExec.exe /X{38E1CA6C-2121-4B5C-A3A5-0B0003794EFF} Sony Vegas 7.0-->MsiExec.exe /X{8411FA28-D32D-4518-92F0-3FBD80A702BC} Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3} Suite Shared Configuration CS4-->MsiExec.exe /I{842B4B72-9E8F-4962-B3C1-1C422A5C4434} System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe System Requirements Lab-->MsiExec.exe /I{1E99F5D7-4262-4C7C-9135-F066E7485811} TeamSpeak 2 RC2-->"C:\Program Files\Teamspeak2_RC2\unins000.exe" TeamSpeak 3 Client-->"C:\Program Files\TeamSpeak 3 Client\uninstall.exe" TeamSpeak Client-->"C:\Program Files\TeamSpeak3\unins000.exe" TmNationsForever-->"C:\Program Files\TmNationsForever\unins000.exe" Turbo Key-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B83F7FA5-3191-4E39-A1F2-8A9038BD0B04}\setup.exe" -l0x40c TurboV-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A31951C5-DCD8-4DFE-A525-CFC701F54792}\setup.exe" -l0x40c Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT="" Urban Terror 4.1-->"C:\Program Files\UrbanTerror\unins000.exe" USB Multi-Channel Audio Device-->C:\WINDOWS\Cmi106Uninstall.exe C:\Program Files\USB Multi-Channel Audio Device#USB Multi-Channel Audio Device#USB Multi-Channel Audio Device# VIA Gestionnaire de périphériques de plate-forme-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169} Virtual Machine Network Services Driver-->MsiExec.exe /I{A1795AC0-9B6A-40D9-8E07-A82662268D9F} VLC media player 1.0.3-->C:\Program Files\VideoLAN\VLC\uninstall.exe VobSub v2.23 (Remove Only)-->"C:\Program Files\Gabest\VobSub\uninstall.exe" Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe" Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41} Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956} Windows Live Contrôle parental-->MsiExec.exe /X{D5D81435-B8DE-4CAF-867F-7998F2B92CFC} Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA} Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818} Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1} Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353} Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA} Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe" Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe" Windows PowerShell(TM) 1.0-->"C:\WINDOWS\$NtUninstallKB926140-v5$\spuninst\spuninst.exe" Windows Search 4.0-->"C:\WINDOWS\$NtUninstallKB940157$\spuninst\spuninst.exe" Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe" WinPcap 4.0.2-->C:\Program Files\WinPcap\uninstall.exe Wolfenstein - Enemy Territory-->C:\PROGRA~1\WOLFEN~1\Uninstall\Unwise.exe /u C:\PROGRA~1\WOLFEN~1\Uninstall\Install.log Xfire (remove only)-->"C:\Program Files\Xfire\uninst.exe" XfireXO Toolbar-->C:\PROGRA~1\XfireXO\UNWISE.EXE /U C:\PROGRA~1\XfireXO\INSTALL.LOG XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe" XviD MPEG4 Video Codec (remove only)-->"C:\Program Files\XviD\xvid-uninstall.exe" YouTube Downloader 2.5.3-->"C:\Program Files\YouTube Downloader\uninstall.exe" =====HijackThis Backups===== O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe [2010-01-17] ======Security center information====== AV: Bitdefender Antivirus AV: AntiVir Desktop ======System event log====== Computer Name: ALEX Event Code: 15007 Message: La réservation de l'espace de nom identifié par le préfixe d'URL http://*:2869/ a été correctement ajoutée. Record Number: 5 Source Name: HTTP Time Written: Event Type: Informations User: Computer Name: ALEX Event Code: 6011 Message: Le nom NetBIOS et le nom de l'hôte DNS de cet ordinateur ont été modifiés de MACHINENAME vers ALEX. Record Number: 4 Source Name: EventLog Time Written: Event Type: Informations User: Computer Name: MACHINENAME Event Code: 2 Message: Pendant la validation de \Device\Serial0 en tant que port série, une FIFO a été détectée. La FIFO sera utilisée. Record Number: 3 Source Name: Serial Time Written: Event Type: Informations User: Computer Name: MACHINENAME Event Code: 6005 Message: Le service d'Enregistrement d'événement a démarré. Record Number: 2 Source Name: EventLog Time Written: Event Type: Informations User: Computer Name: MACHINENAME Event Code: 6009 Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Multiprocessor Free. Record Number: 1 Source Name: EventLog Time Written: Event Type: Informations User: =====Application event log===== Computer Name: ALEX Event Code: 1000 Message: Les compteurs de performances pour le service MSDTC (MSDTC) ont été chargés. Les données d'enregistrement contiennent les nouvelles valeurs d'index assignées à ce service. Record Number: 5 Source Name: LoadPerf Time Written: Event Type: Informations User: Computer Name: ALEX Event Code: 1000 Message: Les compteurs de performances pour le service TermService (Services Terminal Server) ont été chargés. Les données d'enregistrement contiennent les nouvelles valeurs d'index assignées à ce service. Record Number: 4 Source Name: LoadPerf Time Written: Event Type: Informations User: Computer Name: ALEX Event Code: 1000 Message: Les compteurs de performances pour le service RemoteAccess (Routage et accès distant) ont été chargés. Les données d'enregistrement contiennent les nouvelles valeurs d'index assignées à ce service. Record Number: 3 Source Name: LoadPerf Time Written: Event Type: Informations User: Computer Name: ALEX Event Code: 1000 Message: Les compteurs de performances pour le service PSched (PSched) ont été chargés. Les données d'enregistrement contiennent les nouvelles valeurs d'index assignées à ce service. Record Number: 2 Source Name: LoadPerf Time Written: Event Type: Informations User: Computer Name: ALEX Event Code: 1000 Message: Les compteurs de performances pour le service RSVP (QoS RSVP) ont été chargés. Les données d'enregistrement contiennent les nouvelles valeurs d'index assignées à ce service. Record Number: 1 Source Name: LoadPerf Time Written: Event Type: Informations User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "Path"=C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\WINDOWS\system32\WindowsPowerShell\v1.0;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\QuickTime\QTSystem\ "windir"=%SystemRoot% "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "PROCESSOR_ARCHITECTURE"=x86 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 30 Stepping 5, GenuineIntel "PROCESSOR_REVISION"=1e05 "NUMBER_OF_PROCESSORS"=8 "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.PSC1 "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "SonicCentral"=C:\Program Files\Fichiers communs\Sonic Shared\Sonic Central\ "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip -----------------EOF-----------------
Vu les infections qu'il y avait, je te conseille de changer tous tes mots de passe.
Mets à jour Java.
Mets à jour Adobe Reader.
1/
Désinstalle HijackThis.
Supprime les traces de Norton avec ceci.
Télécharge ToolsCleaner2 sur ton Bureau.
Double-clique sur ToolsCleaner2.exe pour le lancer.
Clique sur Recherche et laisse le scan agir.
Clique sur Suppression pour finaliser.
Tu peux, si tu le souhaites, te servir des Options Facultatives.
Clique sur Quitter pour obtenir le rapport.
Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
2/
Télécharge et installe CCleaner Slim.
Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
Va dans Nettoyeur, choisis Analyser. Une fois terminé, lance le nettoyage.
3/
Il est nécessaire de désactiver puis réactiver la restauration système pour la purger.
==Prévention==
Pour supprimer les popups d'AntiVir : Lien
Conserve MBAM. Il te servira à scanner les fichiers douteux en complément de l'antivirus et scanne le disque dur régulièrement.
Vérifie que les mises à jour automatiques sont bien activées (Menu Démarrer, clique droit sur Poste de travail, Propriétés, onglet Mises à jour automatiques).
Par rapport au P2P : Lien
Voici un dossier complet (A lire avec Adobe Reader ou Foxit Reader) : Lien
==Problème résolu ?==
--> Si tu estimes que ton problème est résolu, ajoute [Résolu] au titre. Pour cela :
Clique, dans ton premier message, sur le bouton Editer
.
Ajoute la mention [Résolu] devant le titre.
Clique ensuite sur Valider votre message.
Sois plus vigilant(e) sur Internet
2/
3/
==Prévention==
Pour supprimer les popups d'AntiVir : Lien
Conserve MBAM. Il te servira à scanner les fichiers douteux en complément de l'antivirus et scanne le disque dur régulièrement.
Vérifie que les mises à jour automatiques sont bien activées (Menu Démarrer, clique droit sur Poste de travail, Propriétés, onglet Mises à jour automatiques).
Par rapport au P2P : Lien
Voici un dossier complet (A lire avec Adobe Reader ou Foxit Reader) : Lien
==Problème résolu ?==
--> Si tu estimes que ton problème est résolu, ajoute [Résolu] au titre. Pour cela :
.Sois plus vigilant(e) sur Internet
Lassé par la pub ? Créez un compte
- Contenus similaires :
- ForumVirus brontok A.10
- ForumVirus envoyant des mails
- SolutionsComment enlever un virus sur windows live messenger
- ForumVirus sur ma clef USB
- SolutionsVirus sur ma clef USB
- ForumEnvoi de mail autmatique, virus
- SolutionsY a til des virus sur iphone
- SolutionsProbleme détérioration écran sony VAIO suite infection virus et réinitialisation
- ForumVirus : Disque dur vide ? bureau noir, et menu démarrer vide
- Voir plus