Problème de bande passante ? Ralentissement

Fermé
Missnuage Messages postés 17 Date d'inscription lundi 2 juin 2008 Statut Membre Dernière intervention 18 janvier 2009 - 17 janv. 2009 à 20:38
plopus Messages postés 5962 Date d'inscription jeudi 1 janvier 2009 Statut Contributeur sécurité Dernière intervention 11 mars 2012 - 18 janv. 2009 à 12:12
Bonjour,

Mon problème : mon ordi rame de plus en plus. Il a du mal à se connecter à certaines pages, il faut parfois s'y reprendre à deux ou trois fois. Particulièrement récurent sur Hotmail. Il a aussi de plus en plus de mal à lire la musique et les vidéos en ligne (Deezer, Youtube, etc.) J'ai l'impression qu'il y a quelque chose qui occupe de plus en plus la bande passante mais, voilà, je sais pas comment sollutonner le problème.

Merci beaucoup de m'éclairer. Mon HJT :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:33:02, on 17/01/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16764)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Microsoft Money\System\mnyexpr.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATICEE.EXE
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [?????????] ??????????????e
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [EPSON Stylus DX8400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE /FU "C:\Windows\TEMP\E_S546D.tmp" /EF "HKCU"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O13 - Gopher Prefix:
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
A voir également:

10 réponses

plopus Messages postés 5962 Date d'inscription jeudi 1 janvier 2009 Statut Contributeur sécurité Dernière intervention 11 mars 2012 293
17 janv. 2009 à 21:18
salut,

deja tu as 2antivirus desinstalle norton avec sa :
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20050414110429924

tu as 1 ligne spéciale donc

pour voir telecharge et installe malwarebyte, met le a jour et fais un scan
http://www.commentcamarche.net/telecharger/telecharger 34055379 malwarebytes anti malware
a la fin clic sur afficher resultat et si des infections sont trouvées coches les toutes clic sur supprime et poste le rapport

ensuite double clic sur le parapluie rouge (antivir) dans la barre des tache en bas a droite :
- a l'ecran d'accueil clic sur F8
- ensuite coche en haut a gauche "expert mode"
- ensuite selectionne dessous SCANNER
- ensuite dans le cadre de droite tu coche "tous les fichiers" et " Rech.rootkit au dem. de la recherche" puis met ok

puis fait une mise a jour et fait un scan de ton PC et poste le rapport si des infections sont trouvées supprime tout
0
Missnuage Messages postés 17 Date d'inscription lundi 2 juin 2008 Statut Membre Dernière intervention 18 janvier 2009
17 janv. 2009 à 23:43
Comment ça une ligne spéciale ? Tu veux dire quoi par là ?

Ca y est, j'ai desinstallé Norton. Je pensais l'avoir déjà fait...

J'ai lancé un scan complet avec malwarebyte :

Malwarebytes' Anti-Malware 1.33
Version de la base de données: 1654
Windows 6.0.6000

17/01/2009 23:40:35
mbam-log-2009-01-17 (23-40-35).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 151068
Temps écoulé: 1 hour(s), 53 minute(s), 19 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Je fais maintenant la suite de ce que tu m'a conseillé. Merci de ton aide.
0
Bonsoir Missnuage,

Si ton FAI est Neuf, je pense que le problème vient plutôt d'une maintenance en cours. Ton installation n'est pas en cause, j'ai exactement le mm prob, et je suis pas le seul...
Un peu de patiente (je sais c'est dur, ^^)

salut !
0
Utilisateur anonyme
18 janv. 2009 à 00:12
Bonsoir,

Son probleme n'est pas lié a son FAI, regarde une infection est presente ici :

O4 - HKCU\..\Run: [?????????] ??????????????e

Voici ce qui pose probleme !

Moi je proposerais combofix plopus puisque MBAM n'a rien trouvé.



0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Missnuage Messages postés 17 Date d'inscription lundi 2 juin 2008 Statut Membre Dernière intervention 18 janvier 2009
18 janv. 2009 à 00:57
Voilà pour AntiVir. Rien trouvé de convaincant mais... je n'ai pas pu mettre à jour... Pourquoi ? Je sais pas. je viens de me rendre compte qu'il ne faisais plus de mise à jour automatique depuis décembre... Voilà un autre problème.

En tout cas, voici le rapport :



Avira AntiVir Personal
Report file date: samedi 17 janvier 2009 23:48

Scanning for 1060765 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows Vista
Windows version: (plain) [6.0.6000]
Boot mode: Normally booted
Username: SYSTEM
Computer name: PC-DE-AURELIE

Version information:
BUILD.DAT : 8.1.00.296 16479 Bytes 29/04/2008 10:47:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 12/05/2008 19:21:49
AVSCAN.DLL : 8.1.1.0 53505 Bytes 12/05/2008 19:21:49
LUKE.DLL : 8.1.2.9 151809 Bytes 12/05/2008 19:21:50
LUKERES.DLL : 8.1.2.1 12033 Bytes 12/05/2008 19:21:50
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 12:12:04
ANTIVIR1.VDF : 7.1.0.56 411136 Bytes 09/11/2008 19:57:03
ANTIVIR2.VDF : 7.1.0.160 571392 Bytes 30/11/2008 19:26:23
ANTIVIR3.VDF : 7.1.0.161 2048 Bytes 30/11/2008 19:26:24
Engineversion : 8.2.0.36
AEVDF.DLL : 8.1.0.6 102772 Bytes 16/10/2008 17:51:41
AESCRIPT.DLL : 8.1.1.15 332156 Bytes 11/11/2008 19:58:38
AESCN.DLL : 8.1.1.5 123251 Bytes 07/11/2008 19:59:07
AERDL.DLL : 8.1.1.3 438645 Bytes 06/11/2008 17:54:39
AEPACK.DLL : 8.1.3.4 393591 Bytes 11/11/2008 19:58:37
AEOFFICE.DLL : 8.1.0.30 196986 Bytes 07/11/2008 19:59:06
AEHEUR.DLL : 8.1.0.71 1487222 Bytes 07/11/2008 19:59:05
AEHELP.DLL : 8.1.2.0 119159 Bytes 19/11/2008 13:27:17
AEGEN.DLL : 8.1.1.6 323955 Bytes 28/11/2008 19:26:11
AEEMU.DLL : 8.1.0.9 393588 Bytes 16/10/2008 17:51:35
AECORE.DLL : 8.1.5.2 172405 Bytes 28/11/2008 19:26:10
AEBB.DLL : 8.1.0.3 53618 Bytes 16/10/2008 17:51:33
AVWINLL.DLL : 1.0.0.7 14593 Bytes 12/05/2008 19:21:49
AVPREF.DLL : 8.0.0.1 25857 Bytes 12/05/2008 19:21:49
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 16:52:08
AVREG.DLL : 8.0.0.0 30977 Bytes 12/05/2008 19:21:49
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/05/2008 19:21:49
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 12/05/2008 19:21:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 12/05/2008 19:21:51
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 12/05/2008 19:21:50
NETNT.DLL : 8.0.0.1 7937 Bytes 12/05/2008 19:21:50
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 12/05/2008 19:21:45
RCTEXT.DLL : 8.0.32.0 86273 Bytes 12/05/2008 19:21:45

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: C:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: samedi 17 janvier 2009 23:48

Starting search for hidden objects.
'96993' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'sidebar.exe' - '1' Module(s) have been scanned
Scan process 'soffice.bin' - '1' Module(s) have been scanned
Scan process 'soffice.exe' - '1' Module(s) have been scanned
Scan process 'eRAgent.exe' - '1' Module(s) have been scanned
Scan process 'ePower_DMC.exe' - '1' Module(s) have been scanned
Scan process 'eNMTray.exe' - '1' Module(s) have been scanned
Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
Scan process 'E_FATICEE.EXE' - '1' Module(s) have been scanned
Scan process 'ehmsas.exe' - '1' Module(s) have been scanned
Scan process 'mnyexpr.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'ehtray.exe' - '1' Module(s) have been scanned
Scan process 'sidebar.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'eDSloader.exe' - '1' Module(s) have been scanned
Scan process 'LManager.exe' - '1' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'RtHDVCpl.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'dwm.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
Scan process 'ePowerSvc.exe' - '1' Module(s) have been scanned
Scan process 'capuserv.exe' - '1' Module(s) have been scanned
Scan process 'eRecoveryService.exe' - '1' Module(s) have been scanned
Scan process 'XAudio.exe' - '1' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'RichVideo.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'MobilityService.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'eNet Service.exe' - '1' Module(s) have been scanned
Scan process 'eLockServ.exe' - '1' Module(s) have been scanned
Scan process 'eDSService.exe' - '1' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'Ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
Scan process 'audiodg.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'Ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'lsm.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'wininit.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
79 processes with 79 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '13' files ).


Starting the file scan:

Begin scan in 'C:\' <ACER>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <DATA>


End of the scan: dimanche 18 janvier 2009 00:44
Used time: 56:30 min

The scan has been done completely.

20960 Scanning directories
351103 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
351103 Files not concerned
1930 Archives were scanned
2 Warnings
0 Notes
96993 Objects were scanned with rootkit scan
0 Hidden objects were found
0
Missnuage Messages postés 17 Date d'inscription lundi 2 juin 2008 Statut Membre Dernière intervention 18 janvier 2009
18 janv. 2009 à 01:02
Si c'est un problème de fournisseur d'accès, ça fait très longtemps que j'ai ce problème. Ca fait plus de deux semaines que je me traine ce problème avec des temps d'allumage, de chargement, de téléchargement et de lecture de plus en plus long. Avec de plus en plus de lag pour les lectures de musique et de vidéos.

Au passage, deux précisions : j'ai fait deux test de bandes passantes, les deux m'indiquent un débit autour de 4 Méga. Et j'ai signalé un autre souci sur ma machine. Je ne pense pas que les deux soient liés mais au cas où ça puiss fournir une piste :

http://www.commentcamarche.net/forum/affich 10553226 wifi parasite?#dernier

En tout cas, encore merci pour votre aide.
0
plopus Messages postés 5962 Date d'inscription jeudi 1 janvier 2009 Statut Contributeur sécurité Dernière intervention 11 mars 2012 293
18 janv. 2009 à 08:33
ok merci infernO pour le tuyau :)


donc missnuage ferme TOUT, deconnecte toi d'internet , desactive toutes tes defence antivirus antispyware...
et telecharge combofix

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

une fois lancé ne touche a rien meme pas à la souris de risque de figer le PC et poste le rapport à la fin stp


puis reposte un rapport hijackthis après combofix
0
Missnuage Messages postés 17 Date d'inscription lundi 2 juin 2008 Statut Membre Dernière intervention 18 janvier 2009
18 janv. 2009 à 11:37
Voici les rapports demandés :

ComboFix 09-01-17.03 - aurelie 2009-01-18 11:19:10.3 - NTFSx86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.2046.1192 [GMT 1:00]
Lancé depuis: c:\users\aurelie\Downloads\ComboFix.exe
AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Outdated)
* Un nouveau point de restauration a été créé
.

((((((((((((((((((((((((((((( Fichiers créés du 2008-12-18 au 2009-01-18 ))))))))))))))))))))))))))))))))))))
.

2009-01-17 21:46 . 2009-01-17 21:46 <REP> d-------- c:\users\aurelie\AppData\Roaming\Malwarebytes
2009-01-17 21:46 . 2009-01-14 16:11 38,496 --a------ c:\windows\System32\drivers\mbamswissarmy.sys
2009-01-17 21:46 . 2009-01-14 16:11 15,504 --a------ c:\windows\System32\drivers\mbam.sys
2009-01-17 21:45 . 2009-01-17 21:45 <REP> d-------- c:\users\All Users\Malwarebytes
2009-01-17 21:45 . 2009-01-17 21:45 <REP> d-------- c:\programdata\Malwarebytes
2009-01-17 21:45 . 2009-01-17 21:46 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2009-01-17 21:29 . 2009-01-17 21:29 <REP> d-------- c:\users\All Users\NortonInstaller
2009-01-17 21:29 . 2009-01-17 21:29 <REP> d-------- c:\programdata\NortonInstaller
2009-01-14 13:17 . 2008-12-16 04:14 290,304 --a------ c:\windows\System32\drivers\srv.sys
2009-01-10 18:20 . 2009-01-10 18:19 410,984 --a------ c:\windows\System32\deploytk.dll
2009-01-06 17:31 . 2009-01-06 17:31 <REP> d-------- c:\users\aurelie\AppData\Roaming\OpenOffice.org
2009-01-03 03:50 . 2009-01-03 03:50 <REP> d-------- c:\users\Babosa\AppData\Roaming\OpenOffice.org
2008-12-22 00:29 . 2008-12-22 00:29 <REP> d-------- c:\users\Babosa\AppData\Roaming\AdobeUM
2008-12-18 14:50 . 2008-12-18 14:50 <REP> d-------- c:\program files\OpenOffice.org 3
2008-12-18 14:50 . 2008-12-18 14:50 <REP> d-------- c:\program files\JRE
2008-12-18 14:36 . 2008-12-18 14:36 <REP> d-------- c:\users\Babosa\AppData\Roaming\OpenOffice.org2
2008-12-18 12:33 . 2008-12-12 02:53 1,383,424 --a------ c:\windows\System32\mshtml.tlb

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-18 10:18 1,048,576 --sha-w c:\users\Invité\ntuser.dat
2009-01-18 10:18 1,048,576 --sha-w c:\users\Invité\ntuser.dat
2009-01-18 10:05 --------- d-----w c:\users\aurelie\AppData\Roaming\skypePM
2009-01-18 10:05 --------- d-----w c:\users\aurelie\AppData\Roaming\Skype
2009-01-17 20:32 --------- d-----w c:\program files\Common Files\Symantec Shared
2009-01-14 22:30 --------- d-----w c:\program files\Windows Mail
2009-01-10 17:19 --------- d-----w c:\program files\Java
2009-01-03 00:32 --------- d-----w c:\program files\CCleaner
2008-12-18 13:49 --------- d-----w c:\program files\OpenOffice.org 2.4
2008-12-16 17:46 --------- d-----w c:\users\aurelie\AppData\Roaming\OpenOffice.org2
2008-12-16 08:31 --------- d-----w c:\users\Babosa\AppData\Roaming\Apple Computer
2008-12-15 20:11 --------- d-----w c:\users\aurelie\AppData\Roaming\LimeWire
2008-12-15 20:02 --------- d-----w c:\program files\LimeWire
2008-12-15 19:20 --------- d-----w c:\program files\Ares
2008-12-12 19:40 174 --sha-w c:\program files\desktop.ini
2008-12-10 21:38 --------- d-----w c:\users\Babosa\AppData\Roaming\Grisoft
2008-12-10 21:38 --------- d-----w c:\users\Babosa\AppData\Roaming\ATI
2008-11-01 03:33 537,600 ----a-w c:\windows\AppPatch\AcLayers.dll
2008-11-01 03:33 52,736 ----a-w c:\windows\AppPatch\iebrshim.dll
2008-11-01 03:33 449,536 ----a-w c:\windows\AppPatch\AcSpecfc.dll
2008-11-01 03:33 28,672 ----a-w c:\windows\System32\Apphlpdm.dll
2008-11-01 03:33 2,144,256 ----a-w c:\windows\AppPatch\AcGenral.dll
2008-11-01 03:33 173,056 ----a-w c:\windows\AppPatch\AcXtrnal.dll
2008-11-01 03:33 1,687,040 ----a-w c:\windows\System32\gameux.dll
2008-10-31 23:38 4,247,552 ----a-w c:\windows\System32\GameUXLegacyGDFs.dll
2008-10-31 23:23 2,560 ----a-w c:\windows\AppPatch\AcRes.dll
2008-10-29 06:20 2,923,520 ----a-w c:\windows\explorer.exe
2008-10-28 10:48 73,520 ----a-w c:\users\aurelie\AppData\Roaming\GDIPFONTCACHEV1.DAT
2008-10-22 03:43 95,232 ----a-w c:\windows\System32\PortableDeviceClassExtension.dll
2008-10-22 03:43 241,152 ----a-w c:\windows\System32\PortableDeviceApi.dll
2008-10-22 03:43 160,768 ----a-w c:\windows\System32\PortableDeviceTypes.dll
2008-10-21 23:31 2,048 ----a-w c:\windows\System32\tzres.dll
2008-10-21 05:16 297,472 ----a-w c:\windows\System32\gdi32.dll
2008-10-21 05:16 1,645,568 ----a-w c:\windows\System32\connect.dll
2008-07-02 16:05 56 ---ha-w c:\users\All Users\ezsidmv.dat
2008-07-02 16:05 56 ---ha-w c:\programdata\ezsidmv.dat
2008-03-21 10:27 32 ----a-w c:\users\All Users\ezsid.dat
2008-03-21 10:27 32 ----a-w c:\programdata\ezsid.dat
2008-09-08 11:51 16,384 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
2008-09-08 11:51 32,768 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
2008-09-08 11:51 16,384 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
.

((((((((((((((((((((((((((((( snapshot@2008-06-02_13.56.56,09 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-12-18 13:51:43 60,928 ----a-w c:\windows\assembly\GAC_32\cli_cppuhelper\1.0.14.0__ce2cb7e279207b9e\cli_cppuhelper.dll
- 2006-11-02 12:35:33 136,192 ----a-w c:\windows\assembly\GAC_32\mcupdate\6.0.6000.0__31bf3856ad364e35\mcupdate.exe
+ 2008-08-06 03:28:43 136,704 ----a-w c:\windows\assembly\GAC_32\mcupdate\6.0.6000.0__31bf3856ad364e35\mcupdate.exe
+ 2008-12-18 13:52:03 3,072 ----a-w c:\windows\assembly\GAC_32\policy.1.0.cli_cppuhelper\14.0.0.0__ce2cb7e279207b9e\policy.1.0.cli_cppuhelper.dll
+ 2008-12-18 13:50:55 11,264 ----a-w c:\windows\assembly\GAC_MSIL\cli_basetypes\1.0.11.0__ce2cb7e279207b9e\cli_basetypes.dll
+ 2008-12-18 13:51:44 823,296 ----a-w c:\windows\assembly\GAC_MSIL\cli_oootypes\1.0.0.0__ce2cb7e279207b9e\cli_oootypes.dll
+ 2008-12-18 13:50:55 7,680 ----a-w c:\windows\assembly\GAC_MSIL\cli_ure\1.0.14.0__ce2cb7e279207b9e\cli_ure.dll
+ 2008-12-18 13:50:55 114,688 ----a-w c:\windows\assembly\GAC_MSIL\cli_uretypes\1.0.0.0__ce2cb7e279207b9e\cli_uretypes.dll
- 2008-02-18 18:19:11 864,256 ----a-w c:\windows\assembly\GAC_MSIL\ehepg\6.0.6000.0__31bf3856ad364e35\ehepg.dll
+ 2008-08-06 03:28:23 864,256 ----a-w c:\windows\assembly\GAC_MSIL\ehepg\6.0.6000.0__31bf3856ad364e35\ehepg.dll
- 2008-02-18 18:18:52 135,168 ----a-w c:\windows\assembly\GAC_MSIL\ehexthost\6.0.6000.0__31bf3856ad364e35\ehexthost.exe
+ 2008-08-06 03:28:25 135,168 ----a-w c:\windows\assembly\GAC_MSIL\ehexthost\6.0.6000.0__31bf3856ad364e35\ehexthost.exe
- 2008-02-18 18:19:10 77,824 ----a-w c:\windows\assembly\GAC_MSIL\ehiExtens\6.0.6000.0__31bf3856ad364e35\ehiExtens.dll
+ 2008-08-06 03:28:27 77,824 ----a-w c:\windows\assembly\GAC_MSIL\ehiExtens\6.0.6000.0__31bf3856ad364e35\ehiExtens.dll
- 2008-02-18 18:18:48 4,370,432 ----a-w c:\windows\assembly\GAC_MSIL\ehshell\6.0.6000.0__31bf3856ad364e35\ehshell.dll
+ 2008-08-06 03:28:32 4,374,528 ----a-w c:\windows\assembly\GAC_MSIL\ehshell\6.0.6000.0__31bf3856ad364e35\ehshell.dll
- 2008-02-18 18:18:51 1,196,032 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.MediaCenter.Shell\6.0.6000.0__31bf3856ad364e35\Microsoft.MediaCenter.Shell.dll
+ 2008-08-06 03:28:49 1,196,032 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.MediaCenter.Shell\6.0.6000.0__31bf3856ad364e35\Microsoft.MediaCenter.Shell.dll
- 2008-02-18 18:18:51 2,342,912 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.MediaCenter.UI\6.0.6000.0__31bf3856ad364e35\Microsoft.MediaCenter.UI.dll
+ 2008-08-06 03:28:50 2,342,912 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.MediaCenter.UI\6.0.6000.0__31bf3856ad364e35\Microsoft.MediaCenter.UI.dll
- 2008-02-18 18:18:52 217,088 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.MediaCenter\6.0.6000.0__31bf3856ad364e35\Microsoft.MediaCenter.dll
+ 2008-08-06 03:28:48 217,088 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.MediaCenter\6.0.6000.0__31bf3856ad364e35\Microsoft.MediaCenter.dll
+ 2008-12-18 13:50:56 3,072 ----a-w c:\windows\assembly\GAC_MSIL\policy.1.0.cli_basetypes\11.0.0.0__ce2cb7e279207b9e\policy.1.0.cli_basetypes.dll
+ 2008-12-18 13:52:03 3,072 ----a-w c:\windows\assembly\GAC_MSIL\policy.1.0.cli_oootypes\1.0.0.0__ce2cb7e279207b9e\policy.1.0.cli_oootypes.dll
+ 2008-12-18 13:50:56 3,072 ----a-w c:\windows\assembly\GAC_MSIL\policy.1.0.cli_ure\14.0.0.0__ce2cb7e279207b9e\policy.1.0.cli_ure.dll
+ 2008-12-18 13:50:56 3,072 ----a-w c:\windows\assembly\GAC_MSIL\policy.1.0.cli_uretypes\1.0.0.0__ce2cb7e279207b9e\policy.1.0.cli_uretypes.dll
- 2008-02-18 18:19:02 21,504 ----a-w c:\windows\ehome\ehdebug.dll
+ 2008-08-06 03:27:39 21,504 ----a-w c:\windows\ehome\ehdebug.dll
- 2008-02-18 18:19:11 864,256 ----a-w c:\windows\ehome\ehepg.dll
+ 2008-08-06 03:28:23 864,256 ----a-w c:\windows\ehome\ehepg.dll
- 2008-02-18 18:18:52 135,168 ----a-w c:\windows\ehome\ehexthost.exe
+ 2008-08-06 03:28:25 135,168 ----a-w c:\windows\ehome\ehexthost.exe
- 2006-11-02 12:35:32 372,224 ----a-w c:\windows\ehome\ehglid.dll
+ 2008-08-06 03:27:39 372,224 ----a-w c:\windows\ehome\ehglid.dll
- 2008-02-18 18:19:10 77,824 ----a-w c:\windows\ehome\ehiExtens.dll
+ 2008-08-06 03:28:27 77,824 ----a-w c:\windows\ehome\ehiExtens.dll
- 2008-02-18 18:18:51 103,936 ----a-w c:\windows\ehome\ehPresenter.dll
+ 2008-08-06 03:27:39 105,472 ----a-w c:\windows\ehome\ehPresenter.dll
- 2008-02-18 18:19:09 252,416 ----a-w c:\windows\ehome\ehReplay.dll
+ 2008-08-06 03:27:39 252,416 ----a-w c:\windows\ehome\ehReplay.dll
- 2008-02-18 18:19:01 10,094,080 ----a-w c:\windows\ehome\ehres.dll
+ 2008-08-06 03:21:59 10,094,080 ----a-w c:\windows\ehome\ehres.dll
- 2008-02-18 18:18:48 4,370,432 ----a-w c:\windows\ehome\ehshell.dll
+ 2008-08-06 03:28:32 4,374,528 ----a-w c:\windows\ehome\ehshell.dll
- 2008-02-18 18:18:53 18,944 ----a-w c:\windows\ehome\ehtrace.dll
+ 2008-08-06 03:27:39 18,944 ----a-w c:\windows\ehome\ehtrace.dll
- 2008-02-18 18:18:52 517,120 ----a-w c:\windows\ehome\ehui.dll
+ 2008-08-06 03:27:39 517,632 ----a-w c:\windows\ehome\ehui.dll
- 2008-02-18 18:18:46 1,497,600 ----a-w c:\windows\ehome\ehuihlp.dll
+ 2008-08-06 03:27:39 1,497,600 ----a-w c:\windows\ehome\ehuihlp.dll
- 2008-02-18 18:19:09 6,656 ----a-w c:\windows\ehome\McrMgr.dll
+ 2008-08-06 03:27:40 6,656 ----a-w c:\windows\ehome\McrMgr.dll
- 2008-02-18 18:19:08 173,056 ----a-w c:\windows\ehome\McrMgr.exe
+ 2008-08-06 03:27:11 173,056 ----a-w c:\windows\ehome\McrMgr.exe
- 2006-11-02 12:35:33 136,192 ----a-w c:\windows\ehome\mcupdate.exe
+ 2008-08-06 03:28:43 136,704 ----a-w c:\windows\ehome\mcupdate.exe
- 2008-02-18 18:18:52 217,088 ----a-w c:\windows\ehome\Microsoft.MediaCenter.dll
+ 2008-08-06 03:28:48 217,088 ----a-w c:\windows\ehome\Microsoft.MediaCenter.dll
- 2008-02-18 18:18:51 1,196,032 ----a-w c:\windows\ehome\Microsoft.MediaCenter.Shell.dll
+ 2008-08-06 03:28:49 1,196,032 ----a-w c:\windows\ehome\Microsoft.MediaCenter.Shell.dll
- 2008-02-18 18:18:51 2,342,912 ----a-w c:\windows\ehome\Microsoft.MediaCenter.UI.dll
+ 2008-08-06 03:28:50 2,342,912 ----a-w c:\windows\ehome\Microsoft.MediaCenter.UI.dll
- 2005-10-20 18:02:28 163,328 ----a-w c:\windows\erdnt\Hiv-backup\ERDNT.EXE
+ 2005-10-20 19:02:28 163,328 ----a-w c:\windows\erdnt\Hiv-backup\ERDNT.EXE
- 2008-04-10 10:33:43 665,600 ----a-w c:\windows\inf\drvindex.dat
+ 2008-06-11 13:11:08 665,600 ----a-w c:\windows\inf\drvindex.dat
- 2008-05-21 15:43:33 51,200 ----a-w c:\windows\inf\infpub.dat
+ 2008-10-29 12:00:08 51,200 ----a-w c:\windows\inf\infpub.dat
- 2008-05-21 15:43:31 86,016 ----a-w c:\windows\inf\infstor.dat
+ 2008-10-29 11:27:37 86,016 ----a-w c:\windows\inf\infstor.dat
- 2008-05-21 15:43:33 86,016 ----a-w c:\windows\inf\infstrng.dat
+ 2008-10-29 12:00:08 86,016 ----a-w c:\windows\inf\infstrng.dat
+ 2008-10-01 17:02:07 102,400 ----a-r c:\windows\Installer\{41B9E2CF-0B3F-442A-B5B3-592A4A355634}\iTunesIco.exe
+ 2008-12-18 13:53:43 7,424,000 ----a-r c:\windows\Installer\{6860B340-530D-46B3-91F8-1AE1F70F7C33}\soffice.exe
+ 2008-10-01 16:47:26 27,136 ----a-r c:\windows\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
+ 2008-11-14 12:12:14 32,768 ----a-r c:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
+ 2008-10-01 17:00:55 86,016 ----a-r c:\windows\Installer\{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}\PrntWzrdIco.exe
- 2007-07-30 15:33:57 2,560 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\cagicon.exe
+ 2008-12-21 23:30:26 2,560 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\cagicon.exe
- 2007-07-30 15:33:57 34,304 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\misc.exe
+ 2008-12-21 23:30:26 34,304 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\misc.exe
- 2007-07-30 15:33:57 8,192 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\mspicons.exe
+ 2008-12-21 23:30:26 8,192 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\mspicons.exe
- 2007-07-30 15:33:57 3,584 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2008-12-21 23:30:26 3,584 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\opwicon.exe
- 2007-07-30 15:33:57 114,688 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\outicon.exe
+ 2008-12-21 23:30:26 114,688 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\outicon.exe
- 2007-07-30 15:33:57 16,384 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\PEicons.exe
+ 2008-12-21 23:30:26 16,384 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\PEicons.exe
- 2007-07-30 15:33:57 30,720 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\pptico.exe
+ 2008-12-21 23:30:26 30,720 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\pptico.exe
- 2007-07-30 15:33:57 22,528 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\unbndico.exe
+ 2008-12-21 23:30:27 22,528 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\unbndico.exe
- 2007-07-30 15:33:57 45,056 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\wordicon.exe
+ 2008-12-21 23:30:26 45,056 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\wordicon.exe
- 2007-07-30 15:33:57 90,112 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\xlicons.exe
+ 2008-12-21 23:30:26 90,112 ----a-r c:\windows\Installer\{913D040C-6000-11D3-8CFE-0050048383C9}\xlicons.exe
- 2000-08-31 06:00:00 28,160 ----a-w c:\windows\Nircmd.exe
+ 2000-08-31 07:00:00 29,696 ----a-w c:\windows\Nircmd.exe
- 2008-06-02 11:35:56 2,048 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-01-18 09:54:37 2,048 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2008-06-02 11:35:56 2,048 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2009-01-18 09:54:37 2,048 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2008-06-02 11:38:18 262,144 --sha-w c:\windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2009-01-18 09:56:38 262,144 --sha-w c:\windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2009-01-18 09:56:38 262,144 ---ha-w c:\windows\ServiceProfiles\LocalService\ntuser.dat.LOG1
+ 2008-12-06 19:45:11 16,384 --sha-w c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2008-12-06 19:45:11 32,768 --sha-w c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2007-11-14 18:37:11 1,016,865 -c--a-w c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareLicensing\tokens.dat
+ 2008-12-12 19:40:55 1,016,865 -c--a-w c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareLicensing\tokens.dat
+ 2008-12-06 19:45:11 16,384 --sha-w c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2008-06-02 11:38:13 262,144 --sha-w c:\windows\ServiceProfiles\NetworkService\NTUSER.DAT
+ 2009-01-18 10:21:59 262,144 --sha-w c:\windows\ServiceProfiles\NetworkService\NTUSER.DAT
- 2007-12-13 09:33:19 18,944 ----a-w c:\windows\servicing\GC32\tzupd.exe
+ 2008-10-22 03:43:38 18,944 ----a-w c:\windows\servicing\GC32\tzupd.exe
- 2007-07-30 17:19:54 71,352 ------w c:\windows\SoftwareDistribution\SelfUpdate\Handler\WuSetupV.exe
+ 2008-10-16 13:08:00 70,416 ------w c:\windows\SoftwareDistribution\SelfUpdate\Handler\WuSetupV.exe
- 2000-08-31 06:00:00 161,792 ----a-w c:\windows\swreg.exe
+ 2000-08-31 07:00:00 161,792 ----a-w c:\windows\swreg.exe
- 2008-04-10 09:53:35 124,928 ----a-w c:\windows\System32\advpack.dll
+ 2008-10-16 04:40:33 124,928 ----a-w c:\windows\System32\advpack.dll
- 2008-06-01 21:03:59 16,384 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-01-17 22:47:49 16,384 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2008-06-01 21:03:59 49,152 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-01-17 22:47:49 49,152 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2008-06-01 21:03:59 16,384 --sha-w c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-01-17 22:47:49 16,384 --sha-w c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2008-06-02 11:53:16 262,144 ----a-w c:\windows\System32\config\systemprofile\ntuser.dat
+ 2009-01-18 10:18:59 262,144 ----a-w c:\windows\System32\config\systemprofile\ntuser.dat
+ 2009-01-18 10:18:59 262,144 ---ha-w c:\windows\System32\config\systemprofile\ntuser.dat.LOG1
+ 2008-08-29 08:18:58 87,336 ----a-w c:\windows\System32\dns-sd.exe
+ 2008-08-29 07:53:50 61,440 ----a-w c:\windows\System32\dnssd.dll
- 2006-11-10 06:38:22 506,368 ----a-w c:\windows\System32\drivers\athr.sys
+ 2008-05-07 08:55:22 767,488 ----a-w c:\windows\System32\drivers\athr.sys
+ 2008-04-17 11:12:54 15,464 ----a-w c:\windows\System32\drivers\GEARAspiWDM.sys
- 2006-11-02 08:31:27 211,456 ----a-w c:\windows\System32\drivers\mrxsmb10.sys
+ 2008-08-26 01:11:59 211,456 ----a-w c:\windows\System32\drivers\mrxsmb10.sys
- 2006-11-02 08:57:12 113,664 ----a-w c:\windows\System32\drivers\rmcast.sys
+ 2008-05-10 01:21:06 113,664 ----a-w c:\windows\System32\drivers\rmcast.sys
+ 2008-08-20 17:27:08 74,280 ----a-w c:\windows\System32\drivers\SI3112.sys
+ 2008-08-20 17:27:36 19,240 ----a-w c:\windows\System32\drivers\SiWinAcc.sys
+ 2006-11-02 09:14:17 35,328 ----a-w c:\windows\System32\drivers\usbscan.sys
+ 2008-04-29 01:42:12 19,456 ----a-w c:\windows\System32\DriverStore\FileRepository\bth.inf_c206c850\bthenum.sys
+ 2008-04-29 01:42:12 220,160 ----a-w c:\windows\System32\DriverStore\FileRepository\bth.inf_c206c850\bthport.sys
+ 2008-04-29 01:42:08 29,184 ----a-w c:\windows\System32\DriverStore\FileRepository\bth.inf_c206c850\BTHUSB.SYS
+ 2008-04-29 03:50:12 181,760 ----a-w c:\windows\System32\DriverStore\FileRepository\bth.inf_c206c850\fsquirt.exe
+ 2006-11-13 01:00:00 23,552 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DAUDF1.DLL
+ 2004-09-10 20:12:28 49,152 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DCINST.DLL
+ 2006-11-13 04:00:00 458,752 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DCON04.DLL
+ 2007-04-10 05:00:00 71,680 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DDSP30.DLL
+ 2007-02-26 01:01:00 9,728 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DGE321.DLL
+ 2007-02-13 04:20:00 104,960 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DHA750.DLL
+ 2007-01-18 04:20:00 328,192 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DHMM69.DLL
+ 2007-01-22 07:01:00 740,864 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DI1CCE.DLL
+ 2007-03-23 04:20:00 48,640 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DIRCD4.DLL
+ 2007-04-05 04:00:00 561,664 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DJB724.DLL
+ 2007-01-22 05:00:00 119,296 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DMAI30.DLL
+ 2006-12-13 14:55:34 536,576 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DOKA02.DLL
+ 2006-10-31 04:00:00 196,608 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DPPE06.EXE
+ 2007-01-23 04:00:00 626,688 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DPUI04.DLL
+ 2007-03-30 04:20:00 1,480,704 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DSC0DE.DLL
+ 2007-03-15 06:00:00 1,187,840 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DU3CDE.DLL
+ 2007-02-02 18:57:42 202,912 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_DUPA20.EXE
+ 2007-01-22 01:02:00 138,752 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_H5UIA7.DLL
+ 2007-03-30 01:00:00 504,832 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_H8B0E5.DLL
+ 2007-03-09 05:01:00 173,056 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S40MT7.EXE
+ 2007-03-12 05:01:00 156,160 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S40RN7.EXE
+ 2007-01-11 04:02:00 113,664 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S40RP7.EXE
+ 2007-03-06 01:01:00 454,656 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S40SO7.DLL
+ 2007-04-12 06:00:00 677,888 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S890D7.DLL
+ 2007-02-26 06:00:00 397,824 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S8B0E5.DLL
+ 2007-04-12 06:00:00 182,272 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_S8I0D7.EXE
+ 2006-04-24 02:00:00 110,592 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_SAGSET.DLL
+ 2006-11-16 01:01:00 176,128 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_SIACS7.EXE
+ 2006-11-13 05:00:00 129,536 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\E_SKU327.DLL
+ 2006-11-30 05:12:00 172,032 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBAPI4.DLL
+ 2006-11-30 05:12:00 172,032 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBAPI5.DLL
+ 2007-02-21 06:01:00 32,768 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBAPI6.DLL
+ 2007-01-30 06:03:00 35,840 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPBIDI.DLL
+ 2007-01-30 06:03:00 35,840 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPBIDI6.DLL
+ 2000-06-07 01:01:00 34,304 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPCHP.DLL
+ 2005-09-02 05:07:00 192,512 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPLPT5.DLL
+ 2006-08-10 05:12:00 82,939 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPMON25.DLL
+ 2006-12-08 02:04:00 76,800 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPMONB.DLL
+ 2006-11-22 01:05:00 94,208 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EBPSHRE4.DLL
+ 2003-05-21 02:27:00 64,000 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\ECBTEG.DLL
+ 2006-04-19 02:00:00 62,976 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\ECBTEGB.DLL
+ 2006-09-21 03:04:00 18,432 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EPIPGI20.DLL
+ 2007-03-06 03:09:00 296,448 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EPSET32.DLL
+ 2007-02-26 06:18:00 723,128 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EPUPDATE.EXE
+ 2007-03-30 10:06:00 218,624 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EPUTY287.DLL
+ 2007-03-30 10:06:00 105,984 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\EPUTY287.EXE
+ 2006-12-20 01:14:00 131,072 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\COMMON\SAGENT4.EXE
+ 2007-03-13 07:03:00 201,728 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\E_DI0CCE.DLL
+ 2007-04-04 06:03:00 8,192 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\E_DIPTRE.DLL
+ 2007-02-14 02:00:02 7,168 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\E_DUPA2E.DLL
+ 2007-03-30 01:03:00 39,936 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\E_H8E0E5.DLL
+ 2007-04-16 06:03:00 74,752 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\E_S8E0D5.DLL
+ 2007-02-15 06:00:00 3,864 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\E_S8X0E7.DAT
+ 2005-04-06 00:01:00 6,400 ----a-w c:\windows\System32\DriverStore\FileRepository\e_df1cee_francais.inf_1cd023f8\FRANCAIS\EPUPDATE.DAT
+ 2007-04-09 22:00:00 86,016 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\ade.dll
+ 2007-03-29 22:00:00 73,728 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\epbmp.dll
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\epbmpres.dll
+ 2007-03-29 22:00:00 151,552 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\epjpg.dll
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\epjpgres.dll
+ 2007-03-29 22:00:00 98,304 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\epmtf.dll
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\epmtfres.dll
+ 2007-04-04 22:00:00 114,688 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eppdf.dll
+ 2007-03-07 22:00:00 49,152 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eppdfres.dll
+ 2007-03-29 22:00:00 86,016 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eppij.dll
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eppijres.dll
+ 2007-03-29 22:00:00 86,016 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eppit.dll
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eppitres.dll
+ 2007-03-29 22:00:00 102,400 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eptif.dll
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\eptifres.dll
+ 2007-03-07 22:00:00 3,518,464 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\escires.dll
+ 2007-03-07 22:00:00 118,784 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\escndv.exe
+ 2007-03-07 22:00:00 45,056 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\escndvrs.dll
+ 2007-04-17 22:00:00 67,072 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\escwiad.dll
+ 2006-11-01 22:00:00 90,112 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esddc.dll
+ 2007-03-29 22:00:00 188,416 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esdevcl.dll
+ 2007-03-07 22:00:00 131,072 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esdevif.dll
+ 2007-03-07 22:00:00 49,152 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esdscl.dll
+ 2006-12-11 22:00:00 425,984 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esdtr.dll
+ 2007-01-28 22:00:00 454,656 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esdtr2.dll
+ 2005-08-28 22:00:00 143,360 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esexf.dll
+ 2007-02-06 22:00:00 188,416 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esfit.dll
+ 2005-09-26 22:00:00 53,248 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esicm.dll
+ 2006-11-01 22:00:00 561,152 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esimfl.dll
+ 2007-03-07 22:00:00 229,376 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esimgctl.dll
+ 2006-07-31 22:00:00 1,658,880 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esimgdet.dll
+ 2007-03-29 22:00:00 348,287 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esmps.dll
+ 2007-03-07 22:00:00 86,016 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esmpsres.dll
+ 2005-08-28 22:00:00 98,304 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\espimtif.dll
+ 2007-03-07 22:00:00 139,264 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esres.dll
+ 2007-03-29 22:00:00 348,160 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esscncl.dll
+ 2007-03-07 22:00:00 40,960 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\estwm.exe
+ 2007-03-07 22:00:00 249,856 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\estwpmg.dll
+ 2007-03-29 22:00:00 1,028,096 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esui.dll
+ 2007-03-07 22:00:00 126,976 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\esutwb.dll
+ 2007-03-19 22:00:00 520,192 ----a-w c:\windows\System32\DriverStore\FileRepository\es80.inf_22e7e6ff\pdflib.dll
+ 2008-05-07 08:55:22 767,488 ----a-w c:\windows\System32\DriverStore\FileRepository\netathr.inf_d0d32e16\athr.sys
+ 2008-08-20 17:27:08 74,280 ----a-w c:\windows\System32\DriverStore\FileRepository\si3112.inf_65a47703\SI3112.sys
+ 2008-08-20 17:27:18 119,848 ----a-w c:\windows\System32\DriverStore\FileRepository\si3112.inf_65a47703\SilSupp.dll
+ 2008-08-20 17:27:26 15,400 ----a-w c:\windows\System32\DriverStore\FileRepository\si3112.inf_65a47703\SiRemFil.sys
+ 2008-08-20 17:27:36 19,240 ----a-w c:\windows\System32\DriverStore\FileRepository\si3112.inf_65a47703\SiWinAcc.sys
+ 2008-09-10 14:45:18 32,000 ----a-w c:\windows\System32\DriverStore\FileRepository\usbaapl.inf_524e3145\usbaapl.sys
+ 2006-11-13 04:00:00 458,752 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_dcon04.dll
+ 2007-04-10 05:00:00 71,680 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_ddsp30.dll
+ 2007-01-18 04:20:00 328,192 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_dhmm69.dll
+ 2007-04-05 04:00:00 561,664 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_djb724.dll
+ 2007-01-22 05:00:00 119,296 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_dmai30.dll
+ 2006-12-13 14:55:34 536,576 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_doka02.dll
+ 2006-10-31 04:00:00 196,608 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_dppe06.exe
+ 2007-01-23 04:00:00 626,688 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_dpui04.dll
+ 2007-02-02 18:57:42 202,912 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_dupa20.exe
+ 2007-01-22 01:02:00 138,752 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_h5uia7.dll
+ 2007-03-30 01:00:00 504,832 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_h8b0e5.dll
+ 2007-03-09 05:01:00 173,056 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_s40mt7.exe
+ 2007-03-12 05:01:00 156,160 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_s40rn7.exe
+ 2007-01-11 04:02:00 113,664 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_s40rp7.exe
+ 2007-03-06 01:01:00 454,656 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_s40so7.dll
+ 2007-02-26 06:00:00 397,824 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_s8b0e5.dll
+ 2007-04-12 06:00:00 182,272 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_s8i0d7.exe
+ 2006-11-13 05:00:00 129,536 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\e_sku327.dll
+ 2007-01-30 06:03:00 35,840 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\ebpbidi.dll
+ 2005-09-02 05:07:00 192,512 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\ebplpt5.dll
+ 2006-04-19 02:00:00 62,976 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\ecbtegb.dll
+ 2007-03-30 10:06:00 218,624 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\eputy287.dll
+ 2007-03-30 10:06:00 105,984 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\eputy287.exe
+ 2006-12-20 01:14:00 131,072 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\COMMON\sagent4.exe
+ 2007-03-30 01:03:00 39,936 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\FRANCAIS\e_h8e0e5.dll
+ 2007-04-16 06:03:00 74,752 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\FRANCAIS\e_s8e0d5.dll
+ 2007-02-15 06:00:00 3,864 ----a-w c:\windows\System32\DriverStore\Temp\{9a2d02a1-49c5-492e-aef3-7ce207ebd344}\Package\FRANCAIS\e_s8x0e7.dat
+ 2008-04-17 11:12:54 107,368 -c--a-w c:\windows\System32\DRVSTORE\GEARAspiWD_D213663B6381F01E45A131159A9DEFE018321CB3\x86\GEARAspi.dll
+ 2008-04-17 11:12:54 15,464 -c--a-w c:\windows\System32\DRVSTORE\GEARAspiWD_D213663B6381F01E45A131159A9DEFE018321CB3\x86\GEARAspiWDM.sys
- 2008-04-10 09:53:30 347,136 ----a-w c:\windows\System32\dxtmsft.dll
+ 2008-10-16 04:40:34 347,136 ----a-w c:\windows\System32\dxtmsft.dll
- 2008-04-10 09:53:30 214,528 ----a-w c:\windows\System32\dxtrans.dll
+ 2008-10-16 04:40:34 214,528 ----a-w c:\windows\System32\dxtrans.dll
+ 2004-09-10 20:12:28 49,152 ----a-w c:\windows\System32\E_DCINST.DLL
+ 2006-04-19 02:00:00 62,976 ----a-w c:\windows\System32\E_FD4BCEE.DLL
+ 2006-12-08 02:04:00 76,800 ----a-w c:\windows\System32\E_FLBCEE.DLL
- 2006-11-02 12:34:48 428,032 ----a-w c:\windows\System32\EncDec.dll
+ 2008-08-06 03:27:39 428,032 ----a-w c:\windows\System32\EncDec.dll
+ 2006-10-30 22:10:00 71,840 ----a-w c:\windows\System32\EPPicMgr.dll
+ 2004-03-03 04:10:00 26,154 ----a-w c:\windows\System32\EPPICPattern1.dat
+ 2004-03-03 04:10:00 27,417 ----a-w c:\windows\System32\EPPICPattern121.dat
+ 2004-03-03 04:10:00 31,053 ----a-w c:\windows\System32\EPPICPattern131.dat
+ 2004-03-03 04:10:00 20,148 ----a-w c:\windows\System32\EPPICPattern2.dat
+ 2004-03-03 04:10:00 24,903 ----a-w c:\windows\System32\EPPICPattern3.dat
+ 2004-03-03 04:10:00 11,811 ----a-w c:\windows\System32\EPPICPattern4.dat
+ 2004-03-03 04:10:00 21,390 ----a-w c:\windows\System32\EPPICPattern5.dat
+ 2004-03-03 04:10:00 4,943 ----a-w c:\windows\System32\EPPICPattern6.dat
+ 2005-05-31 22:20:00 111,932 ----a-w c:\windows\System32\EPPICPrinterDB.dat
+ 2006-10-30 22:10:00 120,992 ----a-w c:\windows\System32\EpPicPrt.dll
- 2006-11-02 09:46:04 259,584 ----a-w c:\windows\System32\es.dll
+ 2008-04-19 08:13:07 268,800 ----a-w c:\windows\System32\es.dll
+ 2007-04-17 22:00:00 67,072 ----a-w c:\windows\System32\escwiad.dll
- 2008-06-02 10:04:46 297,912 ----a-w c:\windows\System32\FNTCACHE.DAT
+ 2008-12-18 14:19:32 297,136 ----a-w c:\windows\System32\FNTCACHE.DAT
- 2006-11-02 09:46:05 28,672 ----a-w c:\windows\System32\FwRemoteSvr.dll
+ 2008-06-19 03:25:22 28,672 ----a-w c:\windows\System32\FwRemoteSvr.dll
+ 2008-04-17 11:12:54 107,368 ----a-w c:\windows\System32\GEARAspi.dll
- 2008-04-10 09:53:18 63,488 ----a-w c:\windows\System32\icardie.dll
+ 2008-10-16 04:40:34 63,488 ----a-w c:\windows\System32\icardie.dll
- 2008-04-10 09:53:13 70,656 ----a-w c:\windows\System32\ie4uinit.exe
+ 2008-10-16 04:40:06 70,656 ----a-w c:\windows\System32\ie4uinit.exe
- 2008-04-10 09:53:34 383,488 ----a-w c:\windows\System32\ieapfltr.dll
+ 2008-10-16 04:40:34 383,488 ----a-w c:\windows\System32\ieapfltr.dll
- 2008-04-10 09:53:27 6,066,176 ----a-w c:\windows\System32\ieframe.dll
+ 2008-10-16 04:40:34 6,066,176 ----a-w c:\windows\System32\ieframe.dll
- 2008-04-10 09:53:13 44,544 ----a-w c:\windows\System32\iernonce.dll
+ 2008-10-16 04:40:34 44,544 ----a-w c:\windows\System32\iernonce.dll
- 2006-11-02 09:46:05 266,752 ----a-w c:\windows\System32\iertutil.dll
+ 2008-10-16 04:40:34 267,776 ----a-w c:\windows\System32\iertutil.dll
- 2008-04-10 09:53:12 56,320 ----a-w c:\windows\System32\iesetup.dll
+ 2008-10-16 04:40:34 56,320 ----a-w c:\windows\System32\iesetup.dll
- 2008-04-10 09:53:28 180,736 ----a-w c:\windows\System32\ieui.dll
+ 2008-10-16 04:40:34 180,736 ----a-w c:\windows\System32\ieui.dll
- 2008-04-10 09:53:15 26,624 ----a-w c:\windows\System32\ieUnatt.exe
+ 2008-10-16 04:40:06 26,624 ----a-w c:\windows\System32\ieUnatt.exe
- 2007-10-10 20:22:48 737,792 ----a-w c:\windows\System32\inetcomm.dll
+ 2008-04-10 05:01:31 737,792 ----a-w c:\windows\System32\inetcomm.dll
- 2007-10-10 20:22:49 84,480 ----a-w c:\windows\System32\INETRES.dll
+ 2008-04-10 02:43:11 84,480 ----a-w c:\windows\System32\INETRES.dll
- 2006-11-02 09:46:05 361,984 ----a-w c:\windows\System32\IPSECSVC.DLL
+ 2008-06-19 03:25:22 361,984 ----a-w c:\windows\System32\IPSECSVC.DLL
- 2008-02-22 00:23:35 135,168 ----a-w c:\windows\System32\java.exe
+ 2009-01-10 17:19:58 144,792 ----a-w c:\windows\System32\java.exe
- 2008-02-22 00:23:39 135,168 ----a-w c:\windows\System32\javaw.exe
+ 2009-01-10 17:19:58 144,792 ----a-w c:\windows\System32\javaw.exe
- 2008-02-22 01:33:32 139,264 ----a-w c:\windows\System32\javaws.exe
+ 2009-01-10 17:19:58 148,888 ----a-w c:\windows\System32\javaws.exe
- 2008-04-10 09:53:31 27,648 ----a-w c:\windows\System32\jsproxy.dll
+ 2008-10-16 04:40:35 27,648 ----a-w c:\windows\System32\jsproxy.dll
- 2006-11-02 12:35:57 94,720 ----a-w c:\windows\System32\logagent.exe
+ 2008-06-23 01:52:15 94,720 ----a-w c:\windows\System32\logagent.exe
- 2007-06-11 20:34:34 2,115,816 ----a-w c:\windows\System32\Macromed\Flash\NPSWF32.dll
+ 2008-03-25 03:21:18 2,889,088 ----a-w c:\windows\System32\Macromed\Flash\NPSWF32.dll
- 2007-06-11 20:34:40 190,696 ----a-w c:\windows\System32\Macromed\Flash\NPSWF32_FlashUtil.exe
+ 2008-03-25 03:21:20 218,496 ----a-w c:\windows\System32\Macromed\Flash\NPSWF32_FlashUtil.exe
- 2007-11-26 22:28:43 45,218 ----a-w c:\windows\System32\Macromed\Flash\uninstall_plugin.exe
+ 2008-07-05 23:44:55 70,264 ----a-w c:\windows\System32\Macromed\Flash\uninstall_plugin.exe
- 2008-02-18 18:18:39 1,244,672 ----a-w c:\windows\System32\mcmde.dll
+ 2008-08-06 03:27:40 1,244,672 ----a-w c:\windows\System32\mcmde.dll
- 2006-11-02 12:35:51 2,855,424 ----a-w c:\windows\System32\mf.dll
+ 2008-06-23 01:52:48 2,855,424 ----a-w c:\windows\System32\mf.dll
- 2006-11-02 12:35:51 2,048 ----a-w c:\windows\System32\mferror.dll
+ 2008-06-22 22:34:28 2,048 ----a-w c:\windows\System32\mferror.dll
- 2006-11-02 12:35:51 24,576 ----a-w c:\windows\System32\mfpmp.exe
+ 2008-06-23 01:52:18 24,576 ----a-w c:\windows\System32\mfpmp.exe
- 2006-11-02 12:35:51 98,816 ----a-w c:\windows\System32\mfps.dll
+ 2008-06-23 01:52:48 98,816 ----a-w c:\windows\System32\mfps.dll
- 2008-04-10 09:53:31 64,512 ----a-w c:\windows\System32\migration\WininetPlugin.dll
+ 2008-10-16 04:40:37 64,512 ----a-w c:\windows\System32\migration\WininetPlugin.dll
- 2008-05-09 21:35:04 16,863,864 ----a-w c:\windows\System32\mrt.exe
+ 2009-01-10 01:35:28 20,853,704 ----a-w c:\windows\System32\mrt.exe
- 2008-04-10 09:53:22 3,591,680 ----a-w c:\windows\System32\mshtml.dll
+ 2008-12-12 05:45:18 3,593,216 ----a-w c:\windows\System32\mshtml.dll
- 2008-04-10 09:53:23 478,208 ----a-w c:\windows\System32\mshtmled.dll
+ 2008-10-16 04:40:35 477,696 ----a-w c:\windows\System32\mshtmled.dll
- 2006-11-02 09:46:10 215,552 ----a-w c:\windows\System32\msshsq.dll
+ 2006-12-20 06:03:44 229,888 ----a-w c:\windows\System32\msshsq.dll
- 2008-04-10 09:53:19 671,232 ----a-w c:\windows\System32\mstime.dll
+ 2008-10-16 04:40:36 671,232 ----a-w c:\windows\System32\mstime.dll
- 2007-09-09 11:45:19 1,191,936 ----a-w c:\windows\System32\msxml3.dll
+ 2008-09-05 04:48:28 1,194,496 ----a-w c:\windows\System32\msxml3.dll
- 2007-09-09 11:45:19 2,048 ----a-w c:\windows\System32\msxml3r.dll
+ 2008-09-05 04:45:14 2,048 ----a-w c:\windows\System32\msxml3r.dll
- 2007-08-24 16:08:24 1,275,392 ----a-w c:\windows\System32\msxml4.dll
+ 2008-09-30 15:43:34 1,286,152 ----a-w c:\windows\System32\msxml4.dll
- 2007-09-07 01:06:53 1,335,296 ----a-w c:\windows\System32\msxml6.dll
+ 2008-09-10 03:25:00 1,341,440 ----a-w c:\windows\System32\msxml6.dll
- 2007-09-07 01:06:53 2,048 ----a-w c:\windows\System32\msxml6r.dll
+ 2008-09-10 03:21:24 2,048 ----a-w c:\windows\System32\msxml6r.dll
- 2006-11-02 09:46:11 797,696 ----a-w c:\windows\System32\NaturalLanguage6.dll
+ 2008-06-26 03:22:33 797,696 ----a-w c:\windows\System32\NaturalLanguage6.dll
- 2006-11-02 09:46:11 425,472 ----a-w c:\windows\System32\netapi32.dll
+ 2008-10-16 04:40:36 425,472 ----a-w c:\windows\System32\netapi32.dll
+ 2008-08-10 16:35:47 2,456 ----a-w c:\windows\System32\networklist\icons\{25AEC526-3694-4DE4-B885-08D22CAE5A68}_24.bin
+ 2008-08-10 16:35:47 4,280 ----a-w c:\windows\System32\networklist\icons\{25AEC526-3694-4DE4-B885-08D22CAE5A68}_32.bin
+ 2008-08-10 16:35:47 9,560 ----a-w c:\windows\System32\networklist\icons\{25AEC526-3694-4DE4-B885-08D22CAE5A68}_48.bin
+ 2008-09-24 09:25:38 2,456 ----a-w c:\windows\System32\networklist\icons\{3D439CE8-F399-4055-A1AC-229C20E64437}_24.bin
+ 2008-09-24 09:25:38 4,280 ----a-w c:\windows\System32\networklist\icons\{3D439CE8-F399-4055-A1AC-229C20E64437}_32.bin
+ 2008-09-24 09:25:38 9,560 ----a-w c:\windows\System32\networklist\icons\{3D439CE8-F399-4055-A1AC-229C20E64437}_48.bin
+ 2008-09-07 11:32:42 2,456 ----a-w c:\windows\System32\networklist\icons\{59E857C7-A061-499C-9636-1F003C481799}_24.bin
+ 2008-09-07 11:32:42 4,280 ----a-w c:\windows\System32\networklist\icons\{59E857C7-A061-499C-9636-1F003C481799}_32.bin
+ 2008-09-07 11:32:42 9,560 ----a-w c:\windows\System32\networklist\icons\{59E857C7-A061-499C-9636-1F003C481799}_48.bin
+ 2008-09-08 11:19:34 2,456 ----a-w c:\windows\System32\networklist\icons\{6A5C1826-F168-4C83-8511-5D967C47B306}_24.bin
+ 2008-09-08 11:19:34 4,280 ----a-w c:\windows\System32\networklist\icons\{6A5C1826-F168-4C83-8511-5D967C47B306}_32.bin
+ 2008-09-08 11:19:34 9,560 ----a-w c:\windows\System32\networklist\icons\{6A5C1826-F168-4C83-8511-5D967C47B306}_48.bin
+ 2008-09-06 21:21:21 2,456 ----a-w c:\windows\System32\networklist\icons\{AE335A7F-3E3F-489F-80A5-E45624C66705}_24.bin
+ 2008-09-06 21:21:21 4,280 ----a-w c:\windows\System32\networklist\icons\{AE335A7F-3E3F-489F-80A5-E45624C66705}_32.bin
+ 2008-09-06 21:21:21 9,560 ----a-w c:\windows\System32\networklist\icons\{AE335A7F-3E3F-489F-80A5-E45624C66705}_48.bin
+ 2008-09-07 11:58:31 2,456 ----a-w c:\windows\System32\networklist\icons\{DA0DF8CA-78CD-42AE-8391-6BCBFF6BD657}_24.bin
+ 2008-09-07 11:58:31 4,280 ----a-w c:\windows\System32\networklist\icons\{DA0DF8CA-78CD-42AE-8391-6BCBFF6BD657}_32.bin
+ 2008-09-07 11:58:31 9,560 ----a-w c:\windows\System32\networklist\icons\{DA0DF8CA-78CD-42AE-8391-6BCBFF6BD657}_48.bin
+ 2008-09-08 21:07:10 2,456 ----a-w c:\windows\System32\networklist\icons\{FE8B71C7-3106-436D-8D52-5130C1E8C8D8}_24.bin
+ 2008-09-08 21:07:10 4,280 ----a-w c:\windows\System32\networklist\icons\{FE8B71C7-3106-436D-8D52-5130C1E8C8D8}_32.bin
+ 2008-09-08 21:07:10 9,560 ----a-w c:\windows\System32\networklist\icons\{FE8B71C7-3106-436D-8D52-5130C1E8C8D8}_48.bin
- 2006-11-02 09:46:11 1,523,200 ----a-w c:\windows\System32\NlsData0000.dll
+ 2008-06-26 03:22:33 1,523,200 ----a-w c:\windows\System32\NlsData0000.dll
- 2006-11-02 09:46:11 2,597,888 ----a-w c:\windows\System32\NlsData0001.dll
+ 2008-06-26 03:22:33 2,597,888 ----a-w c:\windows\System32\NlsData0001.dll
- 2006-11-02 09:46:11 1,963,520 ----a-w c:\windows\System32\NlsData0002.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData0002.dll
- 2006-11-02 09:46:11 1,963,520 ----a-w c:\windows\System32\NlsData0003.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData0003.dll
- 2006-11-02 09:46:11 2,241,024 ----a-w c:\windows\System32\NlsData0007.dll
+ 2008-06-26 03:22:33 2,241,024 ----a-w c:\windows\System32\NlsData0007.dll
- 2006-11-02 09:46:11 4,874,240 ----a-w c:\windows\System32\NlsData0009.dll
+ 2008-06-26 03:22:33 4,874,240 ----a-w c:\windows\System32\NlsData0009.dll
- 2006-11-02 09:46:11 9,845,248 ----a-w c:\windows\System32\NlsData000a.dll
+ 2008-06-26 03:22:33 9,845,248 ----a-w c:\windows\System32\NlsData000a.dll
- 2006-11-02 09:46:11 2,641,408 ----a-w c:\windows\System32\NlsData000c.dll
+ 2008-06-26 03:22:33 2,641,408 ----a-w c:\windows\System32\NlsData000c.dll
- 2006-11-02 09:46:11 2,340,864 ----a-w c:\windows\System32\NlsData000d.dll
+ 2008-06-26 03:22:33 2,340,864 ----a-w c:\windows\System32\NlsData000d.dll
- 2006-11-02 09:46:11 1,963,520 ----a-w c:\windows\System32\NlsData000f.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData000f.dll
- 2006-11-02 09:46:11 4,493,312 ----a-w c:\windows\System32\NlsData0010.dll
+ 2008-06-26 03:22:33 4,493,312 ----a-w c:\windows\System32\NlsData0010.dll
- 2006-11-02 09:46:11 2,655,232 ----a-w c:\windows\System32\NlsData0011.dll
+ 2008-06-26 03:22:33 2,655,232 ----a-w c:\windows\System32\NlsData0011.dll
- 2006-11-02 09:46:11 3,464,704 ----a-w c:\windows\System32\NlsData0013.dll
+ 2008-06-26 03:22:33 3,464,704 ----a-w c:\windows\System32\NlsData0013.dll
- 2006-11-02 09:46:11 1,963,520 ----a-w c:\windows\System32\NlsData0018.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData0018.dll
- 2006-11-02 09:46:11 4,495,360 ----a-w c:\windows\System32\NlsData0019.dll
+ 2008-06-26 03:22:33 4,495,360 ----a-w c:\windows\System32\NlsData0019.dll
- 2006-11-02 09:46:11 1,963,520 ----a-w c:\windows\System32\NlsData001a.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData001a.dll
- 2006-11-02 09:46:11 1,963,520 ----a-w c:\windows\System32\NlsData001b.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData001b.dll
- 2006-11-02 09:46:11 4,493,312 ----a-w c:\windows\System32\NlsData001d.dll
+ 2008-06-26 03:22:33 4,493,312 ----a-w c:\windows\System32\NlsData001d.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData0020.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData0020.dll
- 2006-11-02 09:46:12 1,799,168 ----a-w c:\windows\System32\NlsData0021.dll
+ 2008-06-26 03:22:33 1,799,168 ----a-w c:\windows\System32\NlsData0021.dll
- 2006-11-02 09:46:12 1,799,168 ----a-w c:\windows\System32\NlsData0022.dll
+ 2008-06-26 03:22:33 1,799,168 ----a-w c:\windows\System32\NlsData0022.dll
- 2006-11-02 09:46:12 1,963,520 ----a-w c:\windows\System32\NlsData0024.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData0024.dll
- 2006-11-02 09:46:12 1,963,520 ----a-w c:\windows\System32\NlsData0026.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData0026.dll
- 2006-11-02 09:46:12 1,965,056 ----a-w c:\windows\System32\NlsData0027.dll
+ 2008-06-26 03:22:33 1,965,056 ----a-w c:\windows\System32\NlsData0027.dll
- 2006-11-02 09:46:12 1,799,168 ----a-w c:\windows\System32\NlsData002a.dll
+ 2008-06-26 03:22:33 1,799,168 ----a-w c:\windows\System32\NlsData002a.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData0039.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData0039.dll
- 2006-11-02 09:46:12 1,799,168 ----a-w c:\windows\System32\NlsData003e.dll
+ 2008-06-26 03:22:33 1,799,168 ----a-w c:\windows\System32\NlsData003e.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData0045.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData0045.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData0046.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData0046.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData0047.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData0047.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData0049.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData0049.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData004a.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData004a.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData004b.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData004b.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData004c.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData004c.dll
- 2006-11-02 09:46:12 3,102,720 ----a-w c:\windows\System32\NlsData004e.dll
+ 2008-06-26 03:22:33 3,102,720 ----a-w c:\windows\System32\NlsData004e.dll
- 2006-11-02 09:46:12 4,493,312 ----a-w c:\windows\System32\NlsData0414.dll
+ 2008-06-26 03:22:33 4,493,312 ----a-w c:\windows\System32\NlsData0414.dll
- 2006-11-02 09:46:12 4,493,312 ----a-w c:\windows\System32\NlsData0416.dll
+ 2008-06-26 03:22:33 4,493,312 ----a-w c:\windows\System32\NlsData0416.dll
- 2006-11-02 09:46:12 4,493,312 ----a-w c:\windows\System32\NlsData0816.dll
+ 2008-06-26 03:22:33 4,493,312 ----a-w c:\windows\System32\NlsData0816.dll
- 2006-11-02 09:46:12 1,963,520 ----a-w c:\windows\System32\NlsData081a.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData081a.dll
- 2006-11-02 09:46:12 1,963,520 ----a-w c:\windows\System32\NlsData0c1a.dll
+ 2008-06-26 03:22:33 1,963,520 ----a-w c:\windows\System32\NlsData0c1a.dll
- 2006-11-02 08:21:55 11,722,752 ----a-w c:\windows\System32\NlsLexicons0001.dll
+ 2008-06-26 00:33:04 11,722,752 ----a-w c:\windows\System32\NlsLexicons0001.dll
- 2006-11-02 08:22:34 4,164,096 ----a-w c:\windows\System32\NlsLexicons0002.dll
+ 2008-06-26 00:34:20 4,164,096 ----a-w c:\windows\System32\NlsLexicons0002.dll
- 2006-11-02 08:22:13 1,452,544 ----a-w c:\windows\System32\NlsLexicons0003.dll
+ 2008-06-26 00:33:41 1,452,544 ----a-w c:\windows\System32\NlsLexicons0003.dll
- 2006-11-02 08:22:07 12,038,656 ----a-w c:\windows\System32\NlsLexicons0007.dll
+ 2008-06-26 00:33:35 12,240,896 ----a-w c:\windows\System32\NlsLexicons0007.dll
- 2006-11-02 08:22:05 2,628,608 ----a-w c:\windows\System32\NlsLexicons0009.dll
+ 2008-06-26 00:33:33 2,644,480 ----a-w c:\windows\System32\NlsLexicons0009.dll
- 2006-11-02 08:22:11 9,892,864 ----a-w c:\windows\System32\NlsLexicons000a.dll
+ 2008-06-26 00:33:39 9,892,864 ----a-w c:\windows\System32\NlsLexicons000a.dll
- 2006-11-02 08:22:06 6,237,696 ----a-w c:\windows\System32\NlsLexicons000c.dll
+ 2008-06-26 00:33:34 6,237,696 ----a-w c:\windows\System32\NlsLexicons000c.dll
- 2006-11-02 08:22:09 1,722,368 ----a-w c:\windows\System32\NlsLexicons000d.dll
+ 2008-06-26 00:33:36 1,722,368 ----a-w c:\windows\System32\NlsLexicons000d.dll
- 2006-11-02 08:22:17 5,654,528 ----a-w c:\windows\System32\NlsLexicons000f.dll
+ 2008-06-26 00:33:48 5,654,528 ----a-w c:\windows\System32\NlsLexicons000f.dll
- 2006-11-02 08:22:18 4,175,872 ----a-w c:\windows\System32\NlsLexicons0010.dll
+ 2008-06-26 00:33:49 4,175,872 ----a-w c:\windows\System32\NlsLexicons0010.dll
- 2006-11-02 08:22:10 2,466,816 ----a-w c:\windows\System32\NlsLexicons0011.dll
+ 2008-06-26 00:33:37 2,466,816 ----a-w c:\windows\System32\NlsLexicons0011.dll
- 2006-11-02 08:21:58 4,981,248 ----a-w c:\windows\System32\NlsLexicons0013.dll
+ 2008-06-26 00:33:12 4,981,248 ----a-w c:\windows\System32\NlsLexicons0013.dll
- 2006-11-02 08:22:25 3,331,072 ----a-w c:\windows\System32\NlsLexicons0018.dll
+ 2008-06-26 00:34:01 3,331,072 ----a-w c:\windows\System32\NlsLexicons0018.dll
- 2006-11-02 08:22:26 6,781,440 ----a-w c:\windows\System32\NlsLexicons0019.dll
+ 2008-06-26 00:34:03 6,781,440 ----a-w c:\windows\System32\NlsLexicons0019.dll
- 2006-11-02 08:22:14 6,014,976 ----a-w c:\windows\System32\NlsLexicons001a.dll
+ 2008-06-26 00:33:43 6,014,976 ----a-w c:\windows\System32\NlsLexicons001a.dll
- 2006-11-02 08:22:47 6,585,856 ----a-w c:\windows\System32\NlsLexicons001b.dll
+ 2008-06-26 00:34:37 6,585,856 ----a-w c:\windows\System32\NlsLexicons001b.dll
- 2006-11-02 08:22:31 6,346,240 ----a-w c:\windows\System32\NlsLexicons001d.dll
+ 2008-06-26 00:34:14 6,346,240 ----a-w c:\windows\System32\NlsLexicons001d.dll
- 2006-11-02 08:22:45 1,236,992 ----a-w c:\windows\System32\NlsLexicons0020.dll
+ 2008-06-26 00:34:34 1,236,992 ----a-w c:\windows\System32\NlsLexicons0020.dll
- 2006-11-02 08:22:12 2,136,064 ----a-w c:\windows\System32\NlsLexicons0021.dll
+ 2008-06-26 00:33:40 2,136,064 ----a-w c:\windows\System32\NlsLexicons0021.dll
- 2006-11-02 08:22:44 5,499,904 ----a-w c:\windows\System32\NlsLexicons0022.dll
+ 2008-06-26 00:34:33 5,499,904 ----a-w c:\windows\System32\NlsLexicons0022.dll
- 2006-11-02 08:22:49 7,964,672 ----a-w c:\windows\System32\NlsLexicons0024.dll
+ 2008-06-26 00:34:39 7,964,672 ----a-w c:\windows\System32\NlsLexicons0024.dll
- 2006-11-02 08:22:42 5,791,232 ----a-w c:\windows\System32\NlsLexicons0026.dll
+ 2008-06-26 00:34:30 5,791,232 ----a-w c:\windows\System32\NlsLexicons0026.dll
- 2006-11-02 08:22:19 6,224,896 ----a-w c:\windows\System32\NlsLexicons0027.dll
+ 2008-06-26 00:33:50 6,224,896 ----a-w c:\windows\System32\NlsLexicons0027.dll
- 2006-11-02 08:22:41 4,096 ----a-w c:\windows\System32\NlsLexicons002a.dll
+ 2008-06-26 00:34:26 4,096 ----a-w c:\windows\System32\NlsLexicons002a.dll
- 2006-11-02 08:22:16 1,782,272 ----a-w c:\windows\System32\NlsLexicons0039.dll
+ 2008-06-26 00:33:46 1,782,272 ----a-w c:\windows\System32\NlsLexicons0039.dll
- 2006-11-02 08:22:20 4,045,824 ----a-w c:\windows\System32\NlsLexicons003e.dll
+ 2008-06-26 00:33:52 4,045,824 ----a-w c:\windows\System32\NlsLexicons003e.dll
- 2006-11-02 08:22:33 1,793,536 ----a-w c:\windows\System32\NlsLexicons0045.dll
+ 2008-06-26 00:34:18 1,793,536 ----a-w c:\windows\System32\NlsLexicons0045.dll
- 2006-11-02 08:22:25 1,808,896 ----a-w c:\windows\System32\NlsLexicons0046.dll
+ 2008-06-26 00:33:58 1,808,896 ----a-w c:\windows\System32\NlsLexicons0046.dll
- 2006-11-02 08:22:15 1,411,072 ----a-w c:\windows\System32\NlsLexicons0047.dll
+ 2008-06-26 00:33:45 1,411,072 ----a-w c:\windows\System32\NlsLexicons0047.dll
- 2006-11-02 08:22:39 1,558,016 ----a-w c:\windows\System32\NlsLexicons0049.dll
+ 2008-06-26 00:34:24 1,558,016 ----a-w c:\windows\System32\NlsLexicons0049.dll
- 2006-11-02 08:22:39 3,419,136 ----a-w c:\windows\System32\NlsLexicons004a.dll
+ 2008-06-26 00:34:25 3,419,136 ----a-w c:\windows\System32\NlsLexicons004a.dll
- 2006-11-02 08:22:36 1,702,912 ----a-w c:\windows\System32\NlsLexicons004b.dll
+ 2008-06-26 00:34:22 1,702,912 ----a-w c:\windows\System32\NlsLexicons004b.dll
- 2006-11-02 08:22:46 4,093,440 ----a-w c:\windows\System32\NlsLexicons004c.dll
+ 2008-06-26 00:34:36 4,093,440 ----a-w c:\windows\System32\NlsLexicons004c.dll
- 2006-11-02 08:22:37 1,972,736 ----a-w c:\windows\System32\NlsLexicons004e.dll
+ 2008-06-26 00:34:23 1,972,736 ----a-w c:\windows\System32\NlsLexicons004e.dll
- 2006-11-02 08:22:21 4,616,192 ----a-w c:\windows\System32\NlsLexicons0414.dll
+ 2008-06-26 00:33:54 4,616,192 ----a-w c:\windows\System32\NlsLexicons0414.dll
- 2006-11-02 08:22:24 5,090,816 ----a-w c:\windows\System32\NlsLexicons0416.dll
+ 2008-06-26 00:33:57 5,090,816 ----a-w c:\windows\System32\NlsLexicons0416.dll
- 2006-11-02 08:22:22 5,031,936 ----a-w c:\windows\System32\NlsLexicons0816.dll
+ 2008-06-26 00:33:56 5,031,936 ----a-w c:\windows\System32\NlsLexicons0816.dll
- 2006-11-02 08:22:29 7,042,560 ----a-w c:\windows\System32\NlsLexicons081a.dll
+ 2008-06-26 00:34:11 7,042,560 ----a-w c:\windows\System32\NlsLexicons081a.dll
- 2006-11-02 08:22:27 6,917,120 ----a-w c:\windows\System32\NlsLexicons0c1a.dll
+ 2008-06-26 00:34:09 6,917,120 ----a-w c:\windows\System32\NlsLexicons0c1a.dll
- 2006-11-02 08:21:54 5,071,872 ----a-w c:\windows\System32\NlsModels0011.dll
+ 2008-06-26 00:33:01 5,071,872 ----a-w c:\windows\System32\NlsModels0011.dll
- 2008-02-15 10:04:22 3,504,696 ----a-w c:\windows\System32\ntkrnlpa.exe
+ 2008-09-18 04:35:05 3,505,208 ----a-w c:\windows\System32\ntkrnlpa.exe
- 2008-02-15 10:04:22 3,470,392 ----a-w c:\windows\System32\ntoskrnl.exe
+ 2008-09-18 04:35:07 3,470,904 ----a-w c:\windows\System32\ntoskrnl.exe
- 2008-05-18 13:00:14 103,924 ----a-w c:\windows\System32\perfc009.dat
+ 2009-01-18 10:00:14 103,924 ----a-w c:\windows\System32\perfc009.dat
- 2008-05-18 13:00:14 117,572 ----a-w c:\windows\System32\perfc00C.dat
+ 2009-01-18 10:00:14 117,572 ----a-w c:\windows\System32\perfc00C.dat
- 2008-05-18 13:00:14 610,142 ----a-w c:\windows\System32\perfh009.dat
+ 2009-01-18 10:00:14 610,142 ----a-w c:\windows\System32\perfh009.dat
- 2008-05-18 13:00:14 690,832 ----a-w c:\windows\System32\perfh00C.dat
+ 2009-01-18 10:00:14 690,832 ----a-w c:\windows\System32\perfh00C.dat
- 2006-11-02 09:46:12 412,160 ----a-w c:\windows\System32\PhotoMetadataHandler.dll
+ 2008-08-28 03:24:50 425,472 ----a-w c:\windows\System32\PhotoMetadataHandler.dll
+ 2006-10-19 22:10:00 108,704 ----a-w c:\windows\System32\PICEntry.dll
+ 2006-10-19 22:10:00 80,024 ----a-w c:\windows\System32\PICSDK.dll
+ 2006-10-19 22:10:00 501,912 ----a-w c:\windows\System32\PICSDK2.dll
- 2008-04-10 09:53:13 44,544 ----a-w c:\windows\System32\pngfilt.dll
+ 2008-10-16 04:40:37 44,544 ----a-w c:\windows\System32\pngfilt.dll
- 2006-11-02 09:46:12 272,896 ----a-w c:\windows\System32\polstore.dll
+ 2008-06-19 03:25:25 272,896 ----a-w c:\windows\System32\polstore.dll
- 2006-11-02 09:46:12 37,376 ----a-w c:\windows\System32\printcom.dll
+ 2008-08-12 03:29:17 37,376 ----a-w c:\windows\System32\printcom.dll
- 2006-11-02 12:34:47 292,352 ----a-w c:\windows\System32\psisdecd.dll
+ 2008-08-06 03:27:43 292,352 ----a-w c:\windows\System32\psisdecd.dll
- 2007-12-13 09:38:20 1,327,104 ----a-w c:\windows\System32\quartz.dll
+ 2008-04-26 08:02:05 1,327,104 ----a-w c:\windows\System32\quartz.dll
- 2006-11-02 12:35:51 52,736 ----a-w c:\windows\System32\rrinstaller.exe
+ 2008-06-23 01:52:29 52,736 ----a-w c:\windows\System32\rrinstaller.exe
- 2007-09-07 01:05:17 11,315,200 ----a-w c:\windows\System32\shell32.dll
+ 2008-11-06 12:57:06
0
Missnuage Messages postés 17 Date d'inscription lundi 2 juin 2008 Statut Membre Dernière intervention 18 janvier 2009
18 janv. 2009 à 11:44
Et le HJT :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:25:20, on 18/01/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16764)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\Microsoft Money\System\mnyexpr.exe
C:\Windows\System32\spool\drivers\w32x86\3\E_FATICEE.EXE
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE
C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\Explorer.exe
C:\Windows\system32\notepad.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [?????????] ??????????????e
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [EPSON Stylus DX8400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE /FU "C:\Windows\TEMP\E_S546D.tmp" /EF "HKCU"
O4 - HKCU\..\RunOnce: [] C:\Program Files\Internet Explorer\IEXPLORE.EXE https://support.norton.com/sp/fr/fr/home/current/solutions/kb20090121104844EN?a=00000082.00000046.000000b5&abproduct=SymNRT&abversion=2009.0.0.37&b=00000082.00000049.000000d4&build=Symantec&c=00000082.00000096.000001d8&ced=true&entsrc=CED_pubweb&error=0&module=2009&src=_mi
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O13 - Gopher Prefix:
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
0
plopus Messages postés 5962 Date d'inscription jeudi 1 janvier 2009 Statut Contributeur sécurité Dernière intervention 11 mars 2012 293
18 janv. 2009 à 12:12
re

GENPROC Ouvre ce lien d'aide < < http://www.alt-shift-return.org/Info/GenProc-HowTo.html >

, et le téléchargement est dedans < http://www.alt-shift-return.org/Info/Fichiers/GenProc.zip >. repond oui à la question à la fin et poste le rapport stp
0