Internet tres lent

Bonjour,

Suite réinstallation windows xp, tout semble correctement fonctionner sauf internet qui est très lent.

J'ai refait les connections ADSL. mais le probleme persiste.
A chaque page Web -> message pas de réponse pendent quelques secondes et la page s'ouvre très lentement.

Mon systeme serait-il infecté ou probleme de parametrage??

Merci d'avance pour votre aide,

cordialement
Configuration: Windows XP
Mozilla

48 réponses

Résumé de la discussion

Suite à une réinstallation de Windows XP, la navigation Internet reste très lente et chaque page affiche un message pas de réponse pendant quelques secondes. Plusieurs échanges proposent d’identifier si d’autres ordinateurs sur la ligne présentent le même symptôme et recommandent des outils de sécurité, comme OTMoveIt et Navilog1, pour nettoyer d’éventuels programmes malveillants. D’autres discussions évoquent une analyse antivirus détaillée, avec Avira présentant des détections et des quarantaines, mais ces éléments ne conduisent pas à une conclusion uniforme et démontrent des approches hétérogènes allant jusqu’à la réinstallation. Des réponses indiquent l’absence de traces d’un antivirus Etrust sur le système, ce qui pourrait compliquer le diagnostic et expliquer des symptômes persistants sans une protection active.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    slt

    Télécharge ici :

    http://images.malwareremoval.com/random/RSIT.exe

    random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.

    Double-clique sur RSIT.exe afin de lancer RSIT.

    Clique Continue à l'écran Disclaimer.

    Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

    Poste le contenu de log.txt (<<qui sera affiché)
    ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

    NB : Les rapports sont sauvegardés dans le dossier C:\rsit
    0
    1. Bonsoir,

      Désolé pour cet envoi tardif.
      Voici les rapports
      Logfile of random's system information tool 1.06 (written by random/random)
      Run by christian at 2009-03-26 20:28:43
      Microsoft Windows XP Édition familiale Service Pack 3
      System drive C: has 6 GB (12%) free of 47 GB
      Total RAM: 1279 MB (32% free)

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 20:29:49, on 26/03/2009
      Platform: Windows XP SP3 (WinNT 5.01.2600)
      MSIE: Internet Explorer v8.00 (8.00.6001.18702)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
      C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
      C:\WINDOWS\system32\ZoneLabs\vsmon.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
      C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
      C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
      C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
      C:\Program Files\Network Associates\VirusScan\Mcshield.exe
      C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
      C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
      C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
      C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
      C:\WINDOWS\system32\tcpsvcs.exe
      C:\WINDOWS\System32\snmp.exe
      C:\WINDOWS\system32\SearchIndexer.exe
      C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
      C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
      C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
      C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
      C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
      C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
      C:\Program Files\Launch Manager\LaunchAp.exe
      C:\Program Files\Launch Manager\HotkeyApp.exe
      C:\Program Files\Launch Manager\OSD.exe
      C:\Program Files\Launch Manager\Wbutton.exe
      C:\Program Files\Home Cinema\PowerCinema\PCMService.exe
      C:\Program Files\Home Cinema\PowerDVD\PDVDServ.exe
      C:\WINDOWS\AGRSMMSG.exe
      C:\WINDOWS\system32\rundll32.exe
      C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
      C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
      C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
      C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe
      C:\WINDOWS\SOUNDMAN.EXE
      C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe
      C:\Program Files\Windows Desktop Search\WindowsSearch.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Documents and Settings\christian\Bureau\RSIT.exe
      C:\Program Files\trend micro\christian.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
      O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - (no file)
      O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
      O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
      O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
      O4 - HKLM\..\Run: [CtrlVol] C:\Program Files\Launch Manager\CtrlVol.exe
      O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
      O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
      O4 - HKLM\..\Run: [EOUApp] C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
      O4 - HKLM\..\Run: [LaunchAp] C:\Program Files\Launch Manager\LaunchAp.exe
      O4 - HKLM\..\Run: [HotkeyApp] C:\Program Files\Launch Manager\HotkeyApp.exe
      O4 - HKLM\..\Run: [LMgrOSD] C:\Program Files\Launch Manager\OSD.exe
      O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe"
      O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Home Cinema\PowerCinema\PCMService.exe"
      O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Home Cinema\PowerDVD\PDVDServ.exe"
      O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
      O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
      O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
      O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
      O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe"
      O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
      O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
      O4 - HKUS\S-1-5-18\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (User 'SYSTEM')
      O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
      O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
      O4 - Global Startup: BTTray.lnk = ?
      O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
      O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
      O8 - Extra context menu item: Crawler Search - tbr:iemenu
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
      O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
      O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O15 - Trusted Zone: http://*.mcafee.com
      O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
      O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
      O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
      O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
      O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
      O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
      O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
      O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
      O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
      O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
      O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
      O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
      O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: Service Framework McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
      O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
      O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
      O23 - Service: OwnershipProtocol - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
      O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
      O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
      O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
      O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
      0
  2. Suite logg.txt

    2009-03-22 09:23:59 ----A---- C:\WINDOWS\system32\p2p.dll
    2009-03-22 09:23:58 ----A---- C:\WINDOWS\system32\osk.exe
    2009-03-22 09:23:58 ----A---- C:\WINDOWS\system32\opengl32.dll
    2009-03-22 09:23:57 ----ASH---- C:\WINDOWS\system32\olepro32.dll
    2009-03-22 09:23:57 ----A---- C:\WINDOWS\system32\olethk32.dll
    2009-03-22 09:23:57 ----A---- C:\WINDOWS\system32\olesvr32.dll
    2009-03-22 09:23:57 ----A---- C:\WINDOWS\system32\olesvr.dll
    2009-03-22 09:23:57 ----A---- C:\WINDOWS\system32\oleprn.dll
    2009-03-22 09:23:57 ----A---- C:\WINDOWS\system32\oledlg.dll
    2009-03-22 09:23:56 ----ASH---- C:\WINDOWS\system32\oleaut32.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\olecnv32.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\olecli32.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\olecli.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\oleaccrc.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\oleacc.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole32.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole2nls.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole2disp.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole2.dll
    2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\offfilt.dll
    2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbctrac.dll
    2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcp32r.dll
    2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcjt32.dll
    2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcji32.dll
    2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcint.dll
    2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbccu32.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbccr32.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbccp32.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcconf.exe
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcconf.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcbcp.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcad32.exe
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbc32gt.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbc32.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbc16gt.dll
    2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\ocmanage.dll
    2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\occache.dll
    2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\objsel.dll
    2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\oakley.dll
    2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\nwprovau.dll
    2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntvdmd.dll
    2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntvdm.exe
    2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntshrui.dll
    2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntsdexts.dll
    2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntsd.exe
    2009-03-22 09:23:46 ----A---- C:\WINDOWS\system32\ntprint.dll
    2009-03-22 09:23:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmssvc.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsoprq.msc
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsmgr.msc
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsevt.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsdba.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsapi.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmarta.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlsapi.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlanui2.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlanui.dll
    2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlanman.dll
    2009-03-22 09:23:42 ----A---- C:\WINDOWS\system32\ntdsapi.dll
    2009-03-22 09:23:41 ----A---- C:\WINDOWS\system32\ntdll.dll
    2009-03-22 09:23:40 ----A---- C:\WINDOWS\system32\nslookup.exe
    2009-03-22 09:23:40 ----A---- C:\WINDOWS\system32\npptools.dll
    2009-03-22 09:23:40 ----A---- C:\WINDOWS\system32\notepad.exe
    2009-03-22 09:23:40 ----A---- C:\WINDOWS\notepad.exe
    2009-03-22 09:23:38 ----A---- C:\WINDOWS\system32\nlsfunc.exe
    2009-03-22 09:23:37 ----A---- C:\WINDOWS\system32\nlhtml.dll
    2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\newdev.dll
    2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\netui2.dll
    2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\netui1.dll
    2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\netui0.dll
    2009-03-22 09:23:35 ----A---- C:\WINDOWS\system32\netstat.exe
    2009-03-22 09:23:35 ----A---- C:\WINDOWS\system32\netshell.dll
    2009-03-22 09:23:35 ----A---- C:\WINDOWS\system32\netsh.exe
    2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netrap.dll
    2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netplwiz.dll
    2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netmsg.dll
    2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netman.dll
    2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\netlogon.dll
    2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\netid.dll
    2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\neth.dll
    2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\netevent.dll
    2009-03-22 09:23:32 ----A---- C:\WINDOWS\system32\netdde.exe
    2009-03-22 09:23:32 ----A---- C:\WINDOWS\system32\netcfgx.dll
    2009-03-22 09:23:31 ----A---- C:\WINDOWS\system32\netapi32.dll
    2009-03-22 09:23:30 ----A---- C:\WINDOWS\system32\netapi.dll
    2009-03-22 09:23:30 ----A---- C:\WINDOWS\system32\net1.exe
    2009-03-22 09:23:30 ----A---- C:\WINDOWS\system32\net.exe
    2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nddenb32.dll
    2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nddeapir.exe
    2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nddeapi.dll
    2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\ncxpnt.dll
    2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\ncobjapi.dll
    2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nbtstat.exe
    2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\narrhook.dll
    2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\narrator.exe
    2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\mydocs.dll
    2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\mycomput.dll
    2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\mtxclu.dll
    2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxmlr.dll
    2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml3r.dll
    2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml3.dll
    2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml2r.dll
    2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml.dll
    2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\msxml2.dll
    2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\mswstr10.dll
    2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\mswsock.dll
    2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\mswebdvd.dll
    2009-03-22 09:23:25 ----ASH---- C:\WINDOWS\system32\msvcrt.dll
    2009-03-22 09:23:25 ----ASH---- C:\WINDOWS\system32\msvcp60.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\mswdat10.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msw3prt.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvideo.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvidctl.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvidc32.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvfw32.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvcrt40.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvcp50.dll
    2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvcirt.dll
    2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\msvbvm60.dll
    2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\msvbvm50.dll
    2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\msv1_0.dll
    2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\mstlsapi.dll
    2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\mstime.dll
    2009-03-22 09:23:23 ----A---- C:\WINDOWS\system32\msswchx.exe
    2009-03-22 09:23:23 ----A---- C:\WINDOWS\system32\msswch.dll
    2009-03-22 09:23:23 ----A---- C:\WINDOWS\system32\mssip32.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\mssign32.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\mssap.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msrle32.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msrd3x40.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msrating.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msratelc.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msprivs.dll
    2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msports.dll
    2009-03-22 09:23:21 ----A---- C:\WINDOWS\system32\mspatcha.dll
    2009-03-22 09:23:21 ----A---- C:\WINDOWS\system32\msorcl32.dll
    2009-03-22 09:23:21 ----A---- C:\WINDOWS\system32\msorc32r.dll
    2009-03-22 09:23:20 ----A---- C:\WINDOWS\system32\msobjs.dll
    2009-03-22 09:23:20 ----A---- C:\WINDOWS\system32\msnsspc.dll
    2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msls31.dll
    2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjtes40.dll
    2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjter40.dll
    2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjint40.dll
    2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
    2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msjet40.dll
    2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msisip.dll
    2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msiregmv.exe
    2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msimsg.dll
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msimg32.dll
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msihnd.dll
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msiexec.exe
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msieftp.dll
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msidntld.dll
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msidle.dll
    2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msident.dll
    2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\msi.dll
    2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\mshtmler.dll
    2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
    2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\mshtml.dll
    2009-03-22 09:23:15 ----A---- C:\WINDOWS\system32\mshta.exe
    2009-03-22 09:23:15 ----A---- C:\WINDOWS\system32\msgsvc.dll
    2009-03-22 09:23:14 ----A---- C:\WINDOWS\system32\msgina.dll
    2009-03-22 09:23:14 ----A---- C:\WINDOWS\system32\msencode.dll
    2009-03-22 09:23:13 ----A---- C:\WINDOWS\system32\msdmo.dll
    2009-03-22 09:23:13 ----A---- C:\WINDOWS\msdfmap.ini
    2009-03-22 09:23:12 ----A---- C:\WINDOWS\system32\msdart.dll
    2009-03-22 09:23:12 ----A---- C:\WINDOWS\system32\msdadiag.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscpxl32.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscpx32r.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscms.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscdexnt.exe
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscat32.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\msaudite.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\msasn1.dll
    2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\msapsspc.dll
    2009-03-22 09:23:10 ----A---- C:\WINDOWS\system32\msafd.dll
    2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\msacm32.dll
    2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\msacm.dll
    2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\msaatext.dll
    2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\mrinfo.exe
    2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\mprui.dll
    2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprmsg.dll
    2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprdim.dll
    2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprddm.dll
    2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprapi.dll
    2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mpr.dll
    2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mpnotify.exe
    2009-03-22 09:23:06 ----A---- C:\WINDOWS\system32\mountvol.exe
    2009-03-22 09:23:06 ----A---- C:\WINDOWS\system32\moricons.dll
    2009-03-22 09:23:06 ----A---- C:\WINDOWS\system32\more.com
    2009-03-22 09:23:05 ----A---- C:\WINDOWS\system32\modex.dll
    2009-03-22 09:23:05 ----A---- C:\WINDOWS\system32\modemui.dll
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mode.com
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mobsync.exe
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mobsync.dll
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmutilse.dll
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmsystem.dll
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmdrv.dll
    2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmcshext.dll
    2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
    2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mmcbase.dll
    2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mmc.exe
    2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mll_qic.dll
    2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mll_mtf.dll
    2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mll_hp.dll
    2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\mlang.dll
    2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\mimefilt.dll
    2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\miglibnt.dll
    2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\midimap.dll
    2009-03-22 09:23:01 ----A---- C:\WINDOWS\system32\mgmtapi.dll
    2009-03-22 09:23:01 ----A---- C:\WINDOWS\system32\mfcsubs.dll
    2009-03-22 09:23:01 ----A---- C:\WINDOWS\system32\mfc42u.dll
    2009-03-22 09:23:00 ----ASH---- C:\WINDOWS\system32\mfc42.dll
    2009-03-22 09:23:00 ----A---- C:\WINDOWS\system32\mfc40u.dll
    2009-03-22 09:23:00 ----A---- C:\WINDOWS\system32\mfc40.dll
    2009-03-22 09:23:00 ----A---- C:\WINDOWS\system32\mf3216.dll
    2009-03-22 09:22:59 ----A---- C:\WINDOWS\system32\mem.exe
    2009-03-22 09:22:53 ----A---- C:\WINDOWS\system32\mdminst.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mdhcp.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciwave.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciseq.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciqtz32.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciole32.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciole16.dll
    2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mcicda.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mciavi32.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mchgrcoi.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mcdsrv32.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mcd32.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mcastmib.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mapistub.dll
    2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\makecab.exe
    2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\magnify.exe
    2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\mag_hook.dll
    2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\lzexpand.dll
    2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\lz32.dll
    2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\lusrmgr.msc
    2009-03-22 09:22:46 ----A---- C:\WINDOWS\system32\lsass.exe
    2009-03-22 09:22:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
    2009-03-22 09:22:46 ----A---- C:\WINDOWS\system32\keymgr.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lprmonui.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lprmon.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lprhelp.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpr.exe
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpq.exe
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpk.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpdsvc.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\logonui.exe
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\logman.exe
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\loghours.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lodctr.exe
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\locator.exe
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\localui.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\localspl.dll
    2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\localsec.dll
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\loadperf.dll
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\loadfix.com
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lmrt.dll
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lmmib2.dll
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lmhsvc.dll
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\linkinfo.dll
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lights.exe
    2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\licmgr10.dll
    2009-03-22 09:22:43 ----A---- C:\WINDOWS\system32\licdll.dll
    2009-03-22 09:22:42 ----A---- C:\WINDOWS\system32\langwrbk.dll
    2009-03-22 09:22:41 ----A---- C:\WINDOWS\system32\label.exe
    2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kernel32.dll
    2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kerberos.dll
    2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kdcom.dll
    2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kd1394.dll
    2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kbdusx.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdusr.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdusl.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdus.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdur.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdukx.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbduk.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsw.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsp.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
    2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsg.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdsf.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdpo.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdpl1.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdpl.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdno1.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdno.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdnec.dll
    2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdne.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmon.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmaori.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmac.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlv1.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlv.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlt1.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlt.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdla.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdkyr.dll
    2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdkaz.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdit142.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdit.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdir.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdic.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhu1.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhu.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhept.dll
    2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhela3.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhela2.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhe319.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhe220.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhe.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdgr1.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdgr.dll
    2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdgkl.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdgae.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfr.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfo.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfi1.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfi.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfc.dll
    2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdest.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdes.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbddv.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdda.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcz2.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcz1.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcz.dll
    2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcr.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdcan.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdca.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbu.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbr.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdblr.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbene.dll
    2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbe.dll
    2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kbdazel.dll
    2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kbdaze.dll
    2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kbdal.dll
    2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kb16.com
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jsproxy.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jscript.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jobexec.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgsh400.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgsd400.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgpl400.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgmd400.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgdw400.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgaw400.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jet500.dll
    2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\ixsso.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\iuengine.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\itss.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\itircl.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ir32_32.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ipxwan.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ipxsap.dll
    2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ipxrtmgr.dll
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxroute.exe
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxrip.dll
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxpromn.dll
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxmontr.dll
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipv6mon.dll
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipv6.exe
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
    2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\ipsec6.exe
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprtprio.dll
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprop.dll
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprip.dll
    2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\ippromon.dll
    2009-03-22 09:22:26 ----A---- C:\WINDOWS\system32\ipnathlp.dll
    2009-03-22 09:22:26 ----A---- C:\WINDOWS\system32\ipmontr.dll
    2009-03-22 09:22:26 ----A---- C:\WINDOWS\system32\iphlpapi.dll
    2009-03-22 09:22:25 ----A---- C:\WINDOWS\system32\ipconfig.exe
    2009-03-22 09:22:25 ----A---- C:\WINDOWS\system32\iologmsg.dll
    2009-03-22 09:22:25 ----A---- C:\WINDOWS\system32\inseng.dll
    2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\input.dll
    2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\initpki.dll
    2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\infosoft.dll
    2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\inetppui.dll
    2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\inetpp.dll
    2009-03-22 09:22:23 ----A---- C:\WINDOWS\system32\inetmib1.dll
    2009-03-22 09:22:23 ----A---- C:\WINDOWS\system32\inetcplc.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imm32.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imgutil.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imeshare.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imapi.exe
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imagehlp.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\igmpagnt.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\ifsutil.dll
    2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\ifmon.dll
    2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iexpress.exe
    2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iesetup.dll
    2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iernonce.dll
    2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iepeers.dll
    2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iedkcs32.dll
    2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\ieakui.dll
    2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\ieaksie.dll
    2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\ieakeng.dll
    2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\ie4uinit.exe
    2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\idq.dll
    2009-03-22 09:22:19 ----A---- C:\WINDOWS\system32\icmui.dll
    2009-03-22 09:22:19 ----A---- C:\WINDOWS\system32\icmp.dll
    2009-03-22 09:22:19 ----A---- C:\WINDOWS\system32\icm32.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iccvid.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iassvcs.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iassdo.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iassam.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iasrecst.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iasrad.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iaspolcy.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iasnap.dll
    2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iashlpr.dll
    2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\iasads.dll
    2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\iasacct.dll
    2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\htui.dll
    2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\httpapi.dll
    2009-03-22 09:22:15 ----A---- C:\WINDOWS\system32\hotplug.dll
    2009-03-22 09:22:15 ----A---- C:\WINDOWS\system32\hostname.exe
    2009-03-22 09:22:14 ----A---- C:\WINDOWS\system32\netsetup.exe
    2009-03-22 09:22:14 ----A---- C:\WINDOWS\system32\hnetwiz.dll
    2009-03-22 09:22:14 ----A---- C:\WINDOWS\system32\hnetmon.dll
    2009-03-22 09:22:13 ----A---- C:\WINDOWS\system32\hnetcfg.dll
    2009-03-22 09:22:13 ----A---- C:\WINDOWS\system32\hlink.dll
    2009-03-22 09:22:10 ----A---- C:\WINDOWS\system32\hhsetup.dll
    2009-03-22 09:22:10 ----A---- C:\WINDOWS\hh.exe
    2009-03-22 09:22:09 ----A---- C:\WINDOWS\system32\help.exe
    2009-03-22 09:22:08 ----A---- C:\WINDOWS\system32\h323msp.dll
    2009-03-22 09:22:08 ----A---- C:\WINDOWS\system32\grpconv.exe
    2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\graphics.com
    2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\graftabl.com
    2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
    2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\gpkcsp.dll
    2009-03-22 09:22:06 ----A---- C:\WINDOWS\system32\glu32.dll
    2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\glmf32.dll
    2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\gdi32.dll
    2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\gdi.exe
    2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\gcdef.dll
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fwcfg.dll
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\ftsrch.dll
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\ftp.exe
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fsutil.exe
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fsusd.dll
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fsmgmt.msc
    2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\framebuf.dll
    2009-03-22 09:22:01 ----A---- C:\WINDOWS\system32\format.com
    2009-03-22 09:22:01 ----A---- C:\WINDOWS\system32\forcedos.exe
    2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fontview.exe
    2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fontsub.dll
    2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fontext.dll
    2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fmifs.dll
    2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fldrclnr.dll
    2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fixmapi.exe
    2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\finger.exe
    2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\findstr.exe
    2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\find.exe
    2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\filemgmt.dll
    2009-03-22 09:21:58 ----A---- C:\WINDOWS\system32\feclient.dll
    2009-03-22 09:21:58 ----A---- C:\WINDOWS\system32\fc.exe
    2009-03-22 09:21:58 ----A---- C:\WINDOWS\system32\faultrep.dll
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\fastopen.exe
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\exts.dll
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\extrac32.exe
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\extmgr.dll
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\expsrv.dll
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\expand.exe
    2009-03-22 09:21:57 ----A---- C:\WINDOWS\explorer.exe
    2009-03-22 09:21:56 ----A---- C:\WINDOWS\system32\exe2bin.exe
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventvwr.msc
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventvwr.exe
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventlog.dll
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventcls.dll
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eula.txt
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eudcedit.exe
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\esentutl.exe
    2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\esentprf.ini
    2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\esentprf.dll
    2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\esent97.dll
    2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\esent.dll
    2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\es.dll
    2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\ersvc.dll
    2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\encdec.dll
    2009-03-22 09:21:53 ----A---- C:\WINDOWS\system32\encapi.dll
    2009-03-22 09:21:53 ----A---- C:\WINDOWS\system32\els.dll
    2009-03-22 09:21:53 ----A---- C:\WINDOWS\system32\edlin.exe
    2009-03-22 09:21:52 ----A---- C:\WINDOWS\system32\edb500.dll
    2009-03-22 09:21:52 ----A---- C:\WINDOWS\system32\dwwin.exe
    2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxtrans.dll
    2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxtmsft.dll
    2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxdiagn.dll
    2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxdiag.exe
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dx8vb.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dx7vb.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\duser.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dumprep.exe
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dswave.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dsuiext.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dssenh.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dssec.dll
    2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dsquery.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsprpres.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsprop.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsound3d.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsound.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dskquoui.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dskquota.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsdmo.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsauth.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\ds32gt.dll
    2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\ds16gt.dLL
    2009-03-22 09:21:48 ----A---- C:\WINDOWS\system32\drwtsn32.exe
    2009-03-22 09:21:48 ----A---- C:\WINDOWS\system32\drwatson.exe
    2009-03-22 09:21:19 ----A---- C:\WINDOWS\system32\dpwsockx.dll
    2009-03-22 09:21:19 ----A---- C:\WINDOWS\system32\dpwsock.dll
    2009-03-22 09:21:19 ----A---- C:\WINDOWS\system32\dpvvox.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpvsetup.exe
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpvoice.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpvacm.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpserial.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnwsock.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnsvr.exe
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnmodem.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnlobby.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnhpast.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnet.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnaddr.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpmodemx.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dplayx.dll
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dplaysvr.exe
    2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dplay.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dpcdll.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dosx.exe
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\doskey.exe
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\docprop2.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\docprop.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dnsapi.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmusic.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmsynth.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmstyle.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmserver.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmscript.dll
    2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmremote.exe
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmocx.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmloader.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmintf.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmime.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmdskres.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmdlgs.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmconfig.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmcompos.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmband.dll
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmadmin.exe
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dllhst3g.exe
    2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dllhost.exe
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\dispex.dll
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskperf.exe
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskpart.exe
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskmgmt.msc
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskcopy.dll
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskcopy.com
    2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskcomp.com
    2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\dinput8.dll
    2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\dinput.dll
    2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\dimap.dll
    2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\digest.dll
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\diantz.exe
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\diactfrm.dll
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dhcpmon.dll
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dgsetup.dll
    2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dgnet.dll
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfsshlex.dll
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgui.dll
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgres.dll
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgfat.exe
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrg.msc
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\devmgr.dll
    2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\defrag.exe
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\devmgmt.msc
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\devenum.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\deskperf.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\deskmon.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\deskadp.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\debug.exe
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddrawex.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddraw.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddeshare.exe
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddeml.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\dciman32.dll
    2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
    2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbnetlib.dll
    2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
    2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbghelp.dll
    2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbgeng.dll
    2009-03-22 09:21:09 ----A---- C:\WINDOWS\system32\davclnt.dll
    2009-03-22 09:21:09 ----A---- C:\WINDOWS\system32\datime.dll
    2009-03-22 09:21:09 ----A---- C:\WINDOWS\system32\dataclen.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\danim.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dxof.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3drm.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dpmesh.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dim700.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dim.dll
    2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3d9.dll
    2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\d3d8thk.dll
    2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\d3d8.dll
    2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\ctl3dv2.dll
    2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\csseqchk.dll
    2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\csrss.exe
    2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\csrsrv.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cscui.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cscript.exe
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cscdll.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptui.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptsvc.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptnet.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptext.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptdll.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptdlg.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\crypt32.dll
    2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\crtdll.dll
    2009-03-22 09:21:05 ----A---- C:\WINDOWS\system32\credui.dll
    2009-03-22 09:21:04 ----A---- C:\WINDOWS\system32\corpol.dll
    2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\convert.exe
    2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\control.exe
    2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\console.dll
    2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\conime.exe
    2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\confmsp.dll
    2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\comres.dll
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compstui.dll
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compobj.dll
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compmgmt.msc
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compatui.dll
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compact.exe
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\comp.exe
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\commdlg.dll
    2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\command.com
    2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\comdlg32.dll
    2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\comctl32.dll
    2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\comcat.dll
    2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\cnvfat.dll
    2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\cnetcfg.dll
    2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\cmutil.dll
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmstp.exe
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmsetacl.dll
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmpbk32.dll
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmmon32.exe
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmdl32.exe
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmdial32.dll
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmd.exe
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmcfg32.dll
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\clusapi.dll
    2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\clipsrv.exe
    2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\shellstyle.dll
    2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\cliconfg.exe
    2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\cliconfg.dll
    2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\cleanmgr.exe
    2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\clb.dll
    2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\ckcnv.exe
    2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\cisvc.exe
    2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\ciodm.dll
    2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\cidaemon.exe
    2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\cic.dll
    2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\ciadv.msc
    2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\ciadmin.dll
    2009-03-22 09:20:57 ----A---- C:\WINDOWS\system32\chkntfs.exe
    2009-03-22 09:20:57 ----A---- C:\WINDOWS\system32\chkdsk.exe
    2009-03-22 09:20:57 ----A---- C:\WINDOWS\system32\chcp.com
    2009-03-22 09:20:56 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
    2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\certmgr.msc
    2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\certmgr.dll
    2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\certcli.dll
    2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\cdosys.dll
    2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\cdm.dll
    2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\cdfview.dll
    2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\ccfgnt.dll
    2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\cards.dll
    2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\capesnpn.dll
    2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\camocx.dll
    2009-03-22 09:20:53 ----A---- C:\WINDOWS\system32\cacls.exe
    2009-03-22 09:20:53 ----A---- C:\WINDOWS\system32\cabview.dll
    2009-03-22 09:20:53 ----A---- C:\WINDOWS\system32\cabinet.dll
    2009-03-22 09:20:46 ----A---- C:\WINDOWS\system32\btpanui.dll
    2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browsewm.dll
    2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browseui.dll
    2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browser.dll
    2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browselc.dll
    2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bootvrfy.exe
    2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bootvid.dll
    2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bootok.exe
    2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bidispl.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\batt.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\batmeter.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\basesrv.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avifile.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avifil32.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avicap32.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avicap.dll
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\autolfn.exe
    2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\autofmt.exe
    2009-03-22 09:20:41 ----A---- C:\WINDOWS\system32\autodisc.dll
    2009-03-22 09:20:41 ----A---- C:\WINDOWS\system32\autoconv.exe
    2009-03-22 09:20:41 ----A---- C:\WINDOWS\system32\autochk.exe
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\authz.dll
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\auditusr.exe
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\audiosrv.dll
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\attrib.exe
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmpvcno.dll
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmlib.dll
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmfd.dll
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmadm.exe
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atl.dll
    2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atkctrs.dll
    2009-03-22 09:20:39 ----ASH---- C:\WINDOWS\system32\asycfilt.dll
    2009-03-22 09:20:39 ----A---- C:\WINDOWS\system32\at.exe
    2009-03-22 09:20:39 ----A---- C:\WINDOWS\system32\arp.exe
    2009-03-22 09:20:38 ----A---- C:\WINDOWS\system32\apphelp.dll
    2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\append.exe
    2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\apcups.dll
    2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\amstream.dll
    2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\alrsvc.dll
    2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\alg.exe
    2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\ahui.exe
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\advpack.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\advapi32.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsnt.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsmsext.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsldpc.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsldp.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adptif.dll
    2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\admparse.dll
    2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\actxprxy.dll
    2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\actmovie.exe
    2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\activeds.dll
    2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\aclui.dll
    2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\acledit.dll
    2009-03-22 09:20:32 ----A---- C:\WINDOWS\system32\aaaamon.dll
    2009-03-22 09:20:32 ----A---- C:\WINDOWS\system32\6to4svc.dll
    2009-03-21 19:48:39 ----A---- C:\WINDOWS\UPGRADE.TXT
    2009-03-21 19:48:33 ----D---- C:\WINDOWS\setup.pss
    2009-03-21 15:13:22 ----D---- C:\Program Files\Dofus
    2009-03-18 06:44:33 ----D---- C:\Documents and Settings\christian\Application Data\Windows Search
    2009-03-14 14:08:00 ----D---- C:\Program Files\Microsoft Silverlight
    2009-03-14 14:07:52 ----D---- C:\Program Files\Microsoft
    2009-03-14 14:07:38 ----D---- C:\Documents and Settings\christian\Application Data\Windows Desktop Search
    2009-03-14 14:07:08 ----D---- C:\Program Files\Windows Desktop Search
    2009-03-14 14:07:07 ----D---- C:\WINDOWS\system32\GroupPolicy
    2009-03-14 11:16:08 ----A---- C:\WINDOWS\system32\spmsg2.dll
    2009-03-14 11:16:06 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
    2009-03-14 11:08:29 ----D---- C:\WINDOWS\system32\XPSViewer
    2009-03-14 11:08:24 ----D---- C:\Program Files\MSBuild
    2009-03-14 11:08:22 ----D---- C:\WINDOWS\system32\en-US
    2009-03-14 11:08:15 ----D---- C:\Program Files\Reference Assemblies
    2009-03-14 11:07:29 ----A---- C:\WINDOWS\system32\xpssvcs.dll
    2009-03-14 11:07:29 ----A---- C:\WINDOWS\system32\xpsshhdr.dll
    2009-03-14 11:07:29 ----A---- C:\WINDOWS\system32\prntvpt.dll
    2009-03-14 11:07:28 ----D---- C:\50aa58c5c258ed44dc
    2009-03-14 11:07:13 ----D---- C:\WINDOWS\SxsCaPendDel
    2009-03-12 19:14:39 ----D---- C:\Documents and Settings\christian\Application Data\FastStone
    2009-03-12 19:14:32 ----D---- C:\Program Files\FastStone Image Viewer
    2009-03-08 14:17:46 ----N---- C:\WINDOWS\system32\msrating.dll.mui
    2009-03-08 14:17:30 ----N---- C:\WINDOWS\system32\mshta.exe.mui
    2009-03-08 14:16:06 ----N---- C:\WINDOWS\system32\ie4uinit.exe.mui
    2009-03-08 14:15:48 ----N---- C:\WINDOWS\system32\iedkcs32.dll.mui
    2009-03-08 07:52:03 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee
    2009-03-08 07:50:31 ----D---- C:\Documents and Settings\christian\Application Data\McAfee
    2009-03-03 20:43:29 ----D---- C:\Documents and Settings\All Users\Application Data\Network Associates
    2009-03-03 20:43:25 ----D---- C:\Program Files\Network Associates
    2009-03-03 20:43:25 ----D---- C:\Program Files\Fichiers communs\Network Associates
    2009-03-03 20:00:25 ----A---- C:\WINDOWS\yes_messenger.ini

    ======List of files/folders modified in the last 1 months======

    2009-03-26 20:29:49 ----D---- C:\Program Files\Trend Micro
    2009-03-26 20:28:23 ----D---- C:\WINDOWS\Internet Logs
    2009-03-26 20:26:46 ----D---- C:\WINDOWS\Temp
    2009-03-26 20:19:17 ----D---- C:\Program Files\Mozilla Firefox
    2009-03-26 20:15:33 ----D---- C:\WINDOWS
    2009-03-26 20:13:33 ----D---- C:\WINDOWS\system32\CatRoot2
    2009-03-26 20:06:21 ----A---- C:\WINDOWS\ModemLog_Creatix 2.0 AC'97 Modem.txt
    2009-03-26 07:41:34 ----A---- C:\WINDOWS\SchedLgU.Txt
    2009-03-26 07:37:17 ----D---- C:\WINDOWS\system32
    2009-03-26 07:33:16 ----D---- C:\WINDOWS\Help
    2009-03-26 07:00:33 ----RD---- C:\Program Files
    2009-03-26 06:50:07 ----SD---- C:\WINDOWS\Downloaded Program Files
    2009-03-26 06:50:05 ----HD---- C:\WINDOWS\inf
    2009-03-25 21:11:51 ----D---- C:\Medion
    2009-03-25 21:10:24 ----D---- C:\WINDOWS\system32\drivers
    2009-03-25 21:10:08 ----HD---- C:\Program Files\InstallShield Installation Information
    2009-03-25 21:09:52 ----D---- C:\WINDOWS\system32\CatRoot
    2009-03-25 21:09:50 ----SHD---- C:\WINDOWS\Installer
    2009-03-25 21:07:18 ----RSHDC---- C:\WINDOWS\system32\dllcache
    2009-03-25 21:07:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
    2009-03-25 21:03:26 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
    2009-03-25 20:50:41 ----D---- C:\Program Files\Launch Manager
    2009-03-25 08:23:38 ----D---- C:\Documents and Settings
    2009-03-25 07:16:45 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2009-03-25 07:08:36 ----D---- C:\Program Files\Fichiers communs
    2009-03-24 23:14:27 ----D---- C:\WINDOWS\system32\ZoneLabs
    2009-03-24 20:09:53 ----D---- C:\Program Files\Spybot - Search & Destroy
    2009-03-24 07:33:08 ----D---- C:\WINDOWS\Debug
    2009-03-22 19:15:07 ----D---- C:\WINDOWS\system32\fr-fr
    2009-03-22 19:15:05 ----D---- C:\WINDOWS\Media
    2009-03-22 19:15:05 ----D---- C:\Program Files\Internet Explorer
    2009-03-22 18:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
    2009-03-22 17:55:57 ----HD---- C:\WINDOWS\$hf_mig$
    2009-03-22 17:30:40 ----D---- C:\Program Files\Windows Media Player
    2009-03-22 16:10:27 ----D---- C:\WINDOWS\SoftwareDistribution
    2009-03-22 15:37:04 ----D---- C:\Program Files\Micro Application
    2009-03-22 15:35:37 ----A---- C:\WINDOWS\Navigma.INI
    2009-03-22 14:43:23 ----D---- C:\Documents and Settings\christian\Application Data\Help
    2009-03-22 12:52:57 ----A---- C:\WINDOWS\NeroDigital.ini
    2009-03-22 12:49:48 ----SHD---- C:\RECYCLER
    2009-03-22 12:35:57 ----D---- C:\Program Files\Messenger
    2009-03-22 12:00:12 ----D---- C:\WINDOWS\system32\Setup
    2009-03-22 12:00:11 ----D---- C:\WINDOWS\AppPatch
    2009-03-22 12:00:10 ----D---- C:\WINDOWS\system32\wbem
    2009-03-22 12:00:10 ----D---- C:\Program Files\Outlook Express
    2009-03-22 12:00:10 ----D---- C:\Program Files\Fichiers communs\System
    2009-03-22 12:00:08 ----RSD---- C:\WINDOWS\Fonts
    2009-03-22 11:56:05 ----D---- C:\WINDOWS\security
    2009-03-22 11:53:16 ----D---- C:\WINDOWS\ime
    2009-03-22 11:52:53 ----D---- C:\WINDOWS\PeerNet
    2009-03-22 11:52:53 ----D---- C:\Program Files\Movie Maker
    2009-03-22 11:47:33 ----D---- C:\WINDOWS\system32\Restore
    2009-03-22 11:47:33 ----D---- C:\WINDOWS\system32\npp
    2009-03-22 11:47:30 ----D---- C:\WINDOWS\msagent
    2009-03-22 11:47:26 ----D---- C:\WINDOWS\srchasst
    2009-03-22 11:47:25 ----D---- C:\Program Files\NetMeeting
    2009-03-22 11:47:22 ----D---- C:\WINDOWS\system32\Com
    2009-03-22 11:47:16 ----D---- C:\Program Files\Windows NT
    2009-03-22 11:46:29 ----D---- C:\WINDOWS\system32\oobe
    2009-03-22 11:46:27 ----D---- C:\WINDOWS\system32\usmt
    2009-03-22 11:46:25 ----D---- C:\WINDOWS\system
    2009-03-22 11:33:22 ----D---- C:\WINDOWS\EHome
    2009-03-22 10:55:26 ----D---- C:\WINDOWS\I386
    2009-03-22 10:34:45 ----D---- C:\WINDOWS\system32\1036
    2009-03-22 10:34:31 ----D---- C:\WINDOWS\twain_32
    2009-03-22 10:33:32 ----D---- C:\WINDOWS\system32\icsxml
    2009-03-22 10:32:50 ----D---- C:\WINDOWS\system32\1033
    2009-03-22 10:31:55 ----D---- C:\WINDOWS\WinSxS
    2009-03-22 10:31:55 ----D---- C:\WINDOWS\Driver Cache
    2009-03-22 10:12:34 ----D---- C:\WINDOWS\Registration
    2009-03-22 10:07:03 ----SHD---- C:\System Volume Information
    2009-03-22 10:05:52 ----D---- C:\WINDOWS\system32\config
    2009-03-22 10:03:37 ----D---- C:\WINDOWS\repair
    2009-03-22 09:58:34 ----A---- C:\WINDOWS\ODBCINST.INI
    2009-03-22 09:58:09 ----D---- C:\WINDOWS\system32\ias
    2009-03-22 09:57:39 ----RD---- C:\WINDOWS\Web
    2009-03-22 09:57:36 ----SD---- C:\WINDOWS\occache
    2009-03-22 09:57:28 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
    2009-03-22 09:57:12 ----A---- C:\WINDOWS\win.ini
    2009-03-22 09:53:02 ----SH---- C:\boot.ini
    2009-03-22 09:42:11 ----A---- C:\WINDOWS\system.ini
    2009-03-22 09:41:52 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
    2009-03-20 21:00:42 ----D---- C:\quarantine
    2009-03-14 14:11:43 ----SD---- C:\Documents and Settings\christian\Application Data\Microsoft
    2009-03-14 14:11:43 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
    2009-03-14 14:11:43 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
    2009-03-14 11:50:16 ----D---- C:\WINDOWS\Microsoft.NET
    2009-03-14 11:50:14 ----RSD---- C:\WINDOWS\assembly
    2009-03-14 11:07:55 ----D---- C:\WINDOWS\system32\spool
    2009-03-08 21:23:30 ----D---- C:\mes documents
    2009-03-08 14:18:02 ----A---- C:\WINDOWS\system32\ieframe.dll.mui
    2009-03-08 14:16:06 ----A---- C:\WINDOWS\system32\advpack.dll.mui
    2009-03-08 04:39:48 ----A---- C:\WINDOWS\system32\ieframe.dll
    2009-03-08 04:34:48 ----A---- C:\WINDOWS\system32\WinFXDocObj.exe
    2009-03-08 04:32:52 ----A---- C:\WINDOWS\system32\ieudinit.exe
    2009-03-08 04:32:26 ----A---- C:\WINDOWS\system32\msfeeds.dll
    2009-03-08 04:32:22 ----A---- C:\WINDOWS\system32\iertutil.dll
    2009-03-08 04:31:54 ----A---- C:\WINDOWS\system32\msfeedssync.exe
    2009-03-08 04:31:52 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
    2009-03-08 04:31:52 ----A---- C:\WINDOWS\system32\icardie.dll
    2009-03-08 04:22:46 ----A---- C:\WINDOWS\system32\ieui.dll
    2009-03-08 04:11:12 ----A---- C:\WINDOWS\system32\ieapfltr.dll
    2009-03-07 21:17:19 ----SD---- C:\WINDOWS\Tasks
    2009-03-03 21:05:19 ----D---- C:\Program Files\AskBarDis

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 Hotkey;Hotkey; C:\WINDOWS\system32\drivers\Hotkey.sys [2003-04-28 9867]
    R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
    R1 KLIF;KLIF; C:\WINDOWS\system32\DRIVERS\klif.sys [2007-07-19 127768]
    R1 NaiAvTdi1;NaiAvTdi1; C:\WINDOWS\system32\drivers\mvstdi5x.sys [2004-08-25 58016]
    R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-08-09 53920]
    R1 Tcpip6;Pilote du protocole IPv6 Microsoft; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2008-06-20 225856]
    R1 vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2008-07-09 394952]
    R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.1.6.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2005-10-09 17119]
    R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
    R2 BTSLBCSP;Bluetooth Port Client Driver; \??\C:\WINDOWS\system32\drivers\btslbcsp.sys []
    R2 irda;Protocole IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
    R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2004-10-15 11354]
    R3 AgereSoftModem;Creatix 2.0 AC'97 Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-07-22 1268234]
    R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-01-02 2300928]
    R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-12-21 909824]
    R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys [2004-05-26 44928]
    R3 BthEnum;Service d'énumérateur Bluetooth; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
    R3 BthPan;Périphérique Bluetooth (réseau personnel); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
    R3 BTHUSB;Pilote USB radio Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
    R3 BTKRNL;Enumérateur de bus Bluetooth; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2004-11-29 1337850]
    R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
    R3 EntDrv51;EntDrv51; \??\C:\WINDOWS\system32\drivers\EntDrv51.sys []
    R3 IWCA;Intel Wireless Connection Agent Miniport for Win XP; C:\WINDOWS\system32\DRIVERS\iwca.sys [2004-08-12 234496]
    R3 MxlW2k;MxlW2k; C:\WINDOWS\system32\drivers\MxlW2k.sys [2005-01-20 28352]
    R3 NaiAvFilter1;NaiAvFilter1; C:\WINDOWS\system32\drivers\naiavf5x.sys [2004-08-25 108256]
    R3 Rasirda;Miniport réseau étendu (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
    R3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
    R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
    R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2004-10-05 185824]
    R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-06-04 162176]
    R3 tunmp;Pilote de carte miniport Tun Microsoft; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288]
    R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
    R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
    R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
    R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
    R3 w29n51;Pilote de carte de connexion réseau Intel(R) PRO/Wireless 2200BG pour Windows XP; C:\WINDOWS\system32\DRIVERS\w29n51.sys [2004-10-29 3222784]
    R3 XUIF;X10 USB Wireless Transceiver; C:\WINDOWS\System32\Drivers\x10ufx2.sys [2005-05-19 17792]
    S1 mailKmd;mailKmd; C:\WINDOWS\system32\drivers\mailKmd.sys []
    S1 Wbutton;Wbutton; C:\WINDOWS\system32\drivers\Wbutton.sys []
    S3 3xHybrid;3xHybrid service; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [2004-10-06 945152]
    S3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
    S3 btaudio;Périphérique audio Bluetooth; C:\WINDOWS\system32\drivers\btaudio.sys [2004-11-29 399616]
    S3 BTDriver;Pilote de communications virtuelles Bluetooth; C:\WINDOWS\system32\DRIVERS\btport.sys [2004-11-29 30299]
    S3 B
    0
    1. suite et fin log.txt

      S3 BTDriver;Pilote de communications virtuelles Bluetooth; C:\WINDOWS\system32\DRIVERS\btport.sys [2004-11-29 30299]
      S3 BTHPORT;Pilote de port Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272768]
      S3 BTWDNDIS;Serveur d'accès au réseau local Bluetooth; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2004-11-29 148040]
      S3 btwmodem;Modem Bluetooth; C:\WINDOWS\system32\DRIVERS\btwmodem.sys [2004-11-29 30125]
      S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2004-11-29 55320]
      S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
      S3 flash;flash; \??\C:\WINDOWS\system32\drivers\flash.sys []
      S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
      S3 K320bus;Sony Ericsson K320 driver (WDM); C:\WINDOWS\system32\DRIVERS\K320bus.sys [2006-08-18 61504]
      S3 K320mdfl;Sony Ericsson K320 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\K320mdfl.sys [2006-08-18 9328]
      S3 K320mdm;Sony Ericsson K320 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\K320mdm.sys [2006-08-18 97056]
      S3 K320mgmt;Sony Ericsson K320 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\K320mgmt.sys [2006-08-18 88560]
      S3 K320obex;Sony Ericsson K320 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\K320obex.sys [2006-08-18 86368]
      S3 MaxtorFrontPanel1;Maxtor 1394 Storage Front Panel Driver; C:\WINDOWS\system32\DRIVERS\mxofwfp.sys [2003-03-13 19712]
      S3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-05 12288]
      S3 MPE;Filtre BDA MPE; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-13 15232]
      S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
      S3 MXOPSWD;Maxtor OneTouch Security Driver; C:\WINDOWS\system32\DRIVERS\mxopswd.sys [2005-04-06 15360]
      S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
      S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
      S3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
      S3 nm;Pilote du Moniteur réseau; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
      S3 NSCIRDA;Pilote de périphérique infrarouge NSC; C:\WINDOWS\system32\DRIVERS\nscirda.sys [2008-04-13 28672]
      S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys []
      S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
      S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
      S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
      S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
      S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
      S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-13 12800]
      S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
      S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys [2003-01-10 33588]
      S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
      S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
      S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

      ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

      R2 6to4;Service d'application d'assistance IPv6; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-12-21 425984]
      R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe [2004-11-29 254007]
      R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe [2005-03-09 184421]
      R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe [2005-03-09 110691]
      R2 CyberLink Media Library Service;CyberLink Media Library Service; C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe [2005-03-09 61440]
      R2 EvtEng;EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2004-10-15 86016]
      R2 Iprip;Écouteur RIP; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
      R2 Irmon;Moniteur infrarouge; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      R2 McAfeeFramework;Service Framework McAfee; C:\Program Files\Network Associates\Common Framework\FrameworkService.exe [2004-08-06 102463]
      R2 McShield;Network Associates McShield; C:\Program Files\Network Associates\VirusScan\Mcshield.exe [2004-08-25 221191]
      R2 McTaskManager;Network Associates Task Manager; C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe [2004-08-25 28672]
      R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2003-06-20 322120]
      R2 OwnershipProtocol;OwnershipProtocol; C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe [2004-10-15 98304]
      R2 RegSrvc;RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2004-10-15 139264]
      R2 S24EventMonitor;Spectrum24 Event Monitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2004-10-15 360521]
      R2 SimpTcp;Services TCP/IP simplifiés; C:\WINDOWS\system32\tcpsvcs.exe [2004-08-05 19456]
      R2 SNMP;Service SNMP; C:\WINDOWS\System32\snmp.exe [2008-04-14 33280]
      R2 vsmon;TrueVector Internet Monitor; C:\WINDOWS\system32\ZoneLabs\vsmon.exe [2008-07-09 75304]
      R2 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
      R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
      R3 x10nets;X10 Device Network Service; C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe [2001-11-12 20480]
      S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
      S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
      S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe [2007-01-23 77944]
      S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
      S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
      S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-08-15 29744]
      S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-10-31 168432]
      S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
      S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
      S3 LPDSVC;Serveur d'impression TCP/IP; C:\WINDOWS\system32\tcpsvcs.exe [2004-08-05 19456]
      S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
      S3 p2pgasvc;Authentification de groupe réseau homologue; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      S3 p2pimsvc;Gestionnaire d'identité réseau homologue; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      S3 p2psvc;Réseau homologue; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      S3 PNRPSvc;Protocole de résolution de noms d'homologues; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      S3 SNMPTRAP;Service d'interruption SNMP; C:\WINDOWS\System32\snmptrap.exe [2008-04-14 8704]
      S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
      S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

      -----------------EOF-----------------
      0
      1. info.txt logfile of random's system information tool 1.06 2009-03-26 20:29:56

        ======Uninstall list======

        -->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
        -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
        -->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
        -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
        Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
        Adobe Photoshop Elements 2.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Adobe\Photoshop Elements 2\Uninst.isu" -c"C:\Program Files\Adobe\Photoshop Elements 2\Uninst.dll"
        Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
        Architecte Studio Expert CAD 2005-->MsiExec.exe /I{2493C161-5429-4002-A447-72EA153CE9CA}
        Ask Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
        Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
        ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
        ATI Control Panel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
        ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
        AutoCAD 2007 - Français-->MsiExec.exe /I{5783F2D7-5001-040C-0002-0060B0CE6BBA}
        AutoCAD Express Tools Volumes 1-9-->MsiExec.exe /X{5783F2D7-0211-0409-0000-0060B0CE6BBA}
        Autodesk DWF Viewer-->C:\PROGRA~1\Autodesk\AUTODE~1\Setup.exe /remove /q0
        Broadcom 440x 10/100 Integrated Controller-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{52504CE6-E909-4113-B232-4AFEC6543A61} /l1036
        CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
        CDex extraction audio-->"C:\Program Files\CDex_170b2\uninstall.exe"
        Complément Microsoft Word pour Microsoft Works Suite-->MsiExec.exe /I{17E57E89-DDB3-4f76-9AF1-A8E01CC633E4}
        Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
        Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
        Creatix 2.0 AC'97 Modem-->agrsmdel
        Dofus 1.26.0-->C:\Program Files\Dofus\uninstall.exe
        Ecran de veille AOL Photos-->C:\Program Files\Fichiers communs\AOL\Screensaver\uninst_ygpss.exe
        Encyclopédie Microsoft Encarta 2005-->MsiExec.exe /I{05460044-64A6-4248-A026-9745C1E9E159}
        EVEREST Home Edition v2.20-->"C:\Program Files\Lavalys\EVEREST Home Edition\unins000.exe"
        Extension HighMAT pour l'Assistant Graver un CD de Microsoft Windows XP-->MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}
        FastStone Image Viewer 3.2-->C:\Program Files\FastStone Image Viewer\uninst.exe
        Free Mp3 Wma Converter V 1.7.3-->"C:\Program Files\Free Audio Pack\unins000.exe"
        Glary Utilities 2.6.1-->"C:\Program Files\Glary Utilities\unins000.exe"
        Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
        Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
        HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
        Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
        Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
        Hotfix for Windows XP (KB915865)-->"C:\WINDOWS\$NtUninstallKB915865$\spuninst\spuninst.exe"
        ImageMixer for Sony-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1B4AA674-F5CA-4BB5-831A-CD37B4021959}\setup.exe"
        Informations sur votre PC-->MsiExec.exe /I{36D6F663-DF15-45BD-B0C6-4B909308E3B6}
        Intel(R) PROSet/Wireless Software-->C:\WINDOWS\Installer\iProInst.exe
        J2SE Development Kit 5.0 Update 6-->MsiExec.exe /I{32A3A4F4-B792-11D6-A78A-00B0D0150060}
        Java 2 Runtime Environment, SE v1.4.2_05-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050}
        Java(TM) 6 Update 4-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160040}
        Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
        Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
        Launch Manager V1.2.9-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D0846526-66DD-4DC9-A02C-98F9A2806812}\SETUP.EXE" -l0x40c
        Learn2 Player (Uninstall Only)-->C:\Program Files\Learn2.com\StRunner\stuninst.exe
        Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
        livebox-->C:\Program Files\InstallShield Installation Information\{17342E3B-0818-4A6F-BFF8-99476605ADD6}\Setup.exe -runfromtemp -l0x040c -removeonly
        Manuel de l'appareil Windows Mobile®-->C:\Program Files\Windows Mobile Device Handbook\Windows Mobile Device Handbook\Bin\DHUninstall.exe
        McAfee VirusScan Enterprise-->MsiExec.exe /I{4DCA2739-9D16-4B55-808C-E72CD70A5BD3}
        mCore-->MsiExec.exe /I{6DE14BE4-6F04-4935-8ABD-A0A19FE2E55A}
        mDriver-->MsiExec.exe /I{28DA872A-0848-48CF-B749-19A198157A2A}
        mDrWiFi-->MsiExec.exe /I{F6090A17-0967-4A8A-B3C3-422A1B514D49}
        MediaShow 3.0-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D5A9B7C0-8751-11D8-9D75-000129760D75}\setup.exe" -uninstall
        mEoU.msi-->MsiExec.exe /I{B502B428-3386-40A9-98DB-079AAB72E64F}
        mHelp-->MsiExec.exe /I{8C6BB412-D3A8-4AAE-A01B-35B681789D68}
        Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
        Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
        Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
        Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
        Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{72AD53CC-CCC0-3757-8480-9EE176866A7C}
        Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
        Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{0BD83598-C2EF-3343-847B-7D2E84599128}
        Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
        Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
        Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
        Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
        Microsoft AutoRoute 2005-->MsiExec.exe /I{67E4EE98-59F4-4220-89A6-A20AF5BEC689}
        Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
        Microsoft Flight Simulator 2004 Un siècle d'aviation-->"C:\Program Files\Microsoft Games\Flight Simulator 9\UNINSTAL.EXE" /runtemp /addremove
        Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
        Microsoft Money-->C:\Program Files\Microsoft Money 2005\MNYCoreFiles\Setup\uninst.exe /s:120
        Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
        Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
        Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9}
        Microsoft Photo Premium 10-->"C:\Program Files\Fichiers communs\Microsoft Shared\Picture It!\RmvSuite.exe" ADDREMOVE=1 SKU=PREM
        Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
        Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
        Microsoft Works-->MsiExec.exe /I{A059DE09-1B49-4450-B340-7AE097EC3F04}
        Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB953155)-->"C:\WINDOWS\$NtUninstallKB953155$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB958215)-->"C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB960714)-->"C:\WINDOWS\$NtUninstallKB960714$\spuninst\spuninst.exe"
        Mise à jour pour Windows Internet Explorer 8 (KB968220)-->"C:\WINDOWS\ie8updates\KB968220-IE8\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
        mIWA-->MsiExec.exe /I{3E9D596A-61D4-4239-BD19-2DB984D2A16F}
        mIWCA-->MsiExec.exe /I{6FFFE74E-3FBD-4E2E-97F9-5E9A2A077626}
        mLogView-->MsiExec.exe /I{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}
        mMHouse-->MsiExec.exe /I{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}
        Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
        Mozilla Firefox (3.0.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
        MP3 Player Utilities-->MsiExec.exe /I{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}
        mPfMgr-->MsiExec.exe /I{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}
        mPfWiz-->MsiExec.exe /I{90B0D222-8C21-4B35-9262-53B042F18AF9}
        mProSafe-->MsiExec.exe /I{23FB368F-1399-4EAC-817C-4B83ECBE3D83}
        MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
        MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
        MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
        Musicmatch® Jukebox-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8EF1122E-E90C-4EE9-AB0C-7FDE2BA42C26}\setup.exe" -l0x40c -uninst
        mWlsSafe-->MsiExec.exe /I{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}
        mXML-->MsiExec.exe /I{9CC89556-3578-48DD-8408-04E66EBEF401}
        mZConfig-->MsiExec.exe /I{94658027-9F16-4509-BBD7-A59FE57C3023}
        Nero Suite-->C:\Program Files\Fichiers communs\Ahead\Uninstall\setup.exe /uninstall ExtraUninstallID=""
        PhotoNow! 1.0-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D36DD326-7280-11D8-97C8-000129760CBE}\setup.exe" -uninstall
        Picasa 2-->"C:\Program Files\Picasa2\Uninstall.exe"
        PowerCinema 4.0-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" -uninstall
        PowerDirector-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" -uninstall
        PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
        PowerProducer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" -uninstall
        Prince of Persia Les Sables du Temps-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8C453F13-6877-4D34-8816-009ABDE306DB}\setup.exe" -l0x40c
        QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
        Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
        Sélecteur d'installation de Microsoft Works 2005-->C:\Program Files\Microsoft Works Suite 2005\Setup\Launcher.exe /ARP F:\
        Smart Data Recovery 3.1-->"C:\Program Files\Smart Data Recovery\unins000.exe"
        Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
        Star Wars(tm) Knights of the Old Republic(tm) II: The Sith Lords(tm)-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{629F65FB-7F3C-4D66-A1C0-20722744B7B6}\SETUP.exe" -l0x40c -removeonly
        Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
        Texas Instruments PCIxx21/x515 drivers.-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{406A5ABF-CA65-4E11-95C7-52228FE48F58} /l1036
        Unlocker 1.8.7-->C:\Program Files\Unlocker\uninst.exe
        Utilitaire de sauvegarde Windows-->MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
        ViaMichelin Navigation-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88C9863E-5495-4D66-8B00-2644E95837C0}\setup.exe" -l0x40c
        videon-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{261D0486-9127-4071-BA1D-FE784310752E}\Setup.exe" -l0x40c
        Visionneuse Journal Windows Microsoft-->MsiExec.exe /X{43DCF766-6838-4F9A-8C91-D92DA586DFA7}
        WIDCOMM Bluetooth Software-->MsiExec.exe /X{3F4EC965-28EF-45C3-B063-04B25D4E9679}
        Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
        Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
        Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
        Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
        Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
        Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
        X10 Hardware(TM)-->C:\WINDOWS\UNWISE.EXE C:\PROGRA~1\X10HAR~1\Install.log
        XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
        Yahoo! Toolbar avec bloqueur de fenêtres pop-up-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
        ZoneAlarm-->C:\Program Files\Zone Labs\ZoneAlarm\zauninst.exe

        ======Hosts File======

        127.0.0.1 localhost
        127.0.0.1 www.007guard.com
        127.0.0.1 007guard.com
        127.0.0.1 008i.com
        127.0.0.1 www.008k.com
        127.0.0.1 008k.com
        127.0.0.1 www.00hq.com
        127.0.0.1 00hq.com
        127.0.0.1 010402.com
        127.0.0.1 www.032439.com

        ======Security center information======

        FW: ZoneAlarm Firewall

        ======System event log======

        Computer Name: WORK
        Event Code: 18
        Message: Prêt pour l'installation : les mises à jour suivantes ont été téléchargées et sont prêtes pour l'installation. L'installation de ces mises à jour est actuellement planifiée pour le mercredi 11 mars 2009 à 21:00 :
        - Mise à jour de sécurité pour Microsoft XML Core Services 4.0 Service Pack 2 (KB954430)
        - Mise à jour pour Windows XP (KB959772)
        - Mise à jour de sécurité pour Windows XP (KB958690)
        - Mise à jour de sécurité pour Windows XP (KB938464)
        - Mise à jour de sécurité pour Windows XP (KB960225)
        - Mise à jour pour le filtre de courrier indésirable de Microsoft Office Outlook 2003 (KB962870)

        Record Number: 24250
        Source Name: Windows Update Agent
        Time Written: 20090311054408.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 18
        Message: Prêt pour l'installation : les mises à jour suivantes ont été téléchargées et sont prêtes pour l'installation. L'installation de ces mises à jour est actuellement planifiée pour le mercredi 11 mars 2009 à 21:00 :
        - Mise à jour de sécurité pour Microsoft XML Core Services 4.0 Service Pack 2 (KB954430)
        - Mise à jour pour Windows XP (KB959772)
        - Mise à jour de sécurité pour Windows XP (KB958690)
        - Mise à jour de sécurité pour Windows XP (KB938464)
        - Mise à jour pour le filtre de courrier indésirable de Microsoft Office Outlook 2003 (KB962870)

        Record Number: 24249
        Source Name: Windows Update Agent
        Time Written: 20090311054401.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 18
        Message: Prêt pour l'installation : les mises à jour suivantes ont été téléchargées et sont prêtes pour l'installation. L'installation de ces mises à jour est actuellement planifiée pour le mercredi 11 mars 2009 à 21:00 :
        - Mise à jour de sécurité pour Microsoft XML Core Services 4.0 Service Pack 2 (KB954430)
        - Mise à jour pour Windows XP (KB959772)
        - Mise à jour de sécurité pour Windows XP (KB938464)
        - Mise à jour pour le filtre de courrier indésirable de Microsoft Office Outlook 2003 (KB962870)

        Record Number: 24248
        Source Name: Windows Update Agent
        Time Written: 20090311054401.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 18
        Message: Prêt pour l'installation : les mises à jour suivantes ont été téléchargées et sont prêtes pour l'installation. L'installation de ces mises à jour est actuellement planifiée pour le mercredi 11 mars 2009 à 21:00 :
        - Mise à jour de sécurité pour Microsoft XML Core Services 4.0 Service Pack 2 (KB954430)
        - Mise à jour pour Windows XP (KB959772)
        - Mise à jour de sécurité pour Windows XP (KB938464)

        Record Number: 24247
        Source Name: Windows Update Agent
        Time Written: 20090311054356.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 18
        Message: Prêt pour l'installation : les mises à jour suivantes ont été téléchargées et sont prêtes pour l'installation. L'installation de ces mises à jour est actuellement planifiée pour le mercredi 11 mars 2009 à 21:00 :
        - Mise à jour de sécurité pour Microsoft XML Core Services 4.0 Service Pack 2 (KB954430)
        - Mise à jour pour Windows XP (KB959772)

        Record Number: 24246
        Source Name: Windows Update Agent
        Time Written: 20090311054330.000000+060
        Event Type: Informations
        User:

        =====Application event log=====

        Computer Name: WORK
        Event Code: 0
        Message:
        Record Number: 10765
        Source Name: OwnershipProtocol
        Time Written: 20081219214147.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 0
        Message:
        Record Number: 10764
        Source Name: CLCapSvc
        Time Written: 20081219214145.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 0
        Message:
        Record Number: 10763
        Source Name: EvtEng
        Time Written: 20081219214131.000000+060
        Event Type: Informations
        User:

        Computer Name: WORK
        Event Code: 1517
        Message: Windows a sauvegardé le Registre utilisateur WORK\christian alors qu'une application ou un service utilisait toujours le Registre pendant la fermeture de la session. La mémoire utilisée par le Registre de l'utilisateur n'a pas été libérée. le Registre sera déchargé lorsqu'il ne sera plus utilisé.

        Cela est souvent causé par des services s'exécutant en tant que compte d'utilisateur, essayez de configurer les services pour s'exécuter dans le compte service réseau ou service local.

        Record Number: 10762
        Source Name: Userenv
        Time Written: 20081219214016.000000+060
        Event Type: Avertissement
        User: AUTORITE NT\SYSTEM

        Computer Name: WORK
        Event Code: 5000
        Message: VirusScan Enterprise Le service McShield a démarré - Recherche de 480337 virus en cours.

        Version de moteur : 5.3.00

        Version de .DAT : 5469

        Nom d'EXTRA.DAT : Aucun

        Nombre de signatures de virus dans EXTRA.DAT : Aucun

        Noms des virus détectés par EXTRA.DAT : Aucun

        Record Number: 10761
        Source Name: McLogEvent
        Time Written: 20081219194245.000000+060
        Event Type: Informations
        User: AUTORITE NT\SYSTEM

        ======Environment variables======

        "ComSpec"=%SystemRoot%\system32\cmd.exe
        "FP_NO_HOST_CHECK"=NO
        "NUMBER_OF_PROCESSORS"=1
        "OS"=Windows_NT
        "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\WBEM;C:\Program Files\ATI Technologies\ATI Control Panel
        "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
        "PROCESSOR_ARCHITECTURE"=x86
        "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 13 Stepping 6, GenuineIntel
        "PROCESSOR_LEVEL"=6
        "PROCESSOR_REVISION"=0d06
        "TEMP"=%SystemRoot%\TEMP
        "TMP"=%SystemRoot%\TEMP
        "windir"=%SystemRoot%
        "tvdumpflags"=8

        -----------------EOF-----------------
        0
        1. Contributeur sécurité
          tu as des traces de CA antivirus (etrust) vire cet antivirus

          puis

          désactive le TeaTimer de spybot via MODE puis MODE AVANCE puis OUTILS puis RESIDENT

          _______________

          Mettre a jour java:
          https://javara.fr.malavida.com/

          Télécharge JavaRa.zip de Paul 'Prm753' McLain et Fred de Vries.
          Décompresse le fichier sur ton bureau (clique droit > Extraire tout.)
          Double-clique sur le répertoire JavaRa obtenu.
          Puis double-clique sur le fichier JavaRa.exe (le .exe peut ne pas s'afficher)
          Clique sur Search For Updates.
          Sélectionne Update Using jucheck.exe puis clique sur Search.
          Autorise le processus à se connecter s'il te le demande, clique sur Install et suis les instructions d'installation. Cela prendra quelques minutes.
          Quand l'installation est terminée, revient à l'écran de JavaRa et clique sur Remove Older Versions.
          Clique sur Oui pour confirmer. L'outil va travailler, clique ensuite sur Ok, puis une deuxième fois sur Ok.
          Un rapport va s'ouvrir, copie-colle le dans ta prochaine réponse.
          Note : le rapport se trouve aussi à la racine de la partition système, en général C:\ sous le nom JavaRa.log
          (c:\JavaRa.log)
          Ferme l'application.

          si cela ne fonctionne pas

          https://www.java.com/fr/download/windows_manual.jsp?locale=fr&host=www.java.com:80

          tu peux désinstaller les vieilles versions.

          __________________________

          colle un rapport avec toolbar sd que tu as installé
          0
          1. Bonjour,

            Je ne trouve pas de trace de l'antivirus etrust. J'ai fait une recherche par l'explorer et il ne trouve rien.
            0
          2. @cri94Pour Java, j'ai un méssage que la version installée est la dernière.
            Ci joint le rapport
            JavaRa 1.13 Removal Log.

            Report follows after line.

            ------------------------------------

            The JavaRa removal process was started on Fri Mar 27 18:03:36 2009

            Found and removed: C:\Program Files\Java\j2re1.4.2_05

            Found and removed: C:\Program Files\Java\jre1.6.0_04

            Found and removed: C:\Program Files\Java\jre1.6.0_05

            Found and removed: C:\Windows\Installer\{7148F0A8-6813-11D6-A77B-00B0D0142050}

            Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.4

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBB}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBB}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBB}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC}

            Found and removed: SOFTWARE\Classes\Installer\Features\8A0F842331866D117AB7000B0D610004

            Found and removed: SOFTWARE\Classes\Installer\Features\8A0F842331866D117AB7000B0D610005

            Found and removed: SOFTWARE\Classes\Installer\Features\8A0F842331866D117AB7000B0D610006

            Found and removed: SOFTWARE\Classes\Installer\Products\8A0F842331866D117AB7000B0D610004

            Found and removed: SOFTWARE\Classes\Installer\Products\8A0F842331866D117AB7000B0D610005

            Found and removed: SOFTWARE\Classes\Installer\Products\8A0F842331866D117AB7000B0D610006

            Found and removed: SOFTWARE\Classes\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D610004

            Found and removed: SOFTWARE\Classes\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D610005

            Found and removed: SOFTWARE\Classes\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D610006

            Found and removed: SOFTWARE\Classes\JavaPlugin.160_04

            Found and removed: SOFTWARE\Classes\JavaPlugin.160_05

            Found and removed: SOFTWARE\Classes\JavaPlugin.160_06

            Found and removed: SOFTWARE\JavaSoft\Java Plug-in\1.6.0_04

            Found and removed: SOFTWARE\JavaSoft\Java Plug-in\1.6.0_05

            Found and removed: SOFTWARE\JavaSoft\Java Plug-in\1.6.0_06

            Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.6.0_04

            Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.6.0_05

            Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.6.0_06

            Found and removed: SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D610004

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D610005

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7A0F842331866D117AB7000B0D610006

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ACBB9B2318A96D117A58000B0D610004

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ACBB9B2318A96D117A58000B0D610005

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ACBB9B2318A96D117A58000B0D610006

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8A0F842331866D117AB7000B0D610004

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8A0F842331866D117AB7000B0D610005

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8A0F842331866D117AB7000B0D610006

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0160040}

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0160050}

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0160060}

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7148F0A8-6813-11D6-A77B-00B0D0142050}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}

            Found and removed: SOFTWARE\Classes\Installer\Products\8A0F841731866D117AB7000B0D410205

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8A0F841731866D117AB7000B0D410205

            Found and removed: SOFTWARE\Classes\JavaPlugin.142_05

            Found and removed: SOFTWARE\JavaSoft\Java Plug-in\1.4.2_05

            Found and removed: SOFTWARE\JavaSoft\Java Runtime Environment\1.4.2_05

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.4.2_05

            Found and removed: SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}

            Found and removed: Software\Classes\JavaPlugin.142_05

            Found and removed: Software\Classes\JavaPlugin.160_04

            Found and removed: Software\Classes\JavaPlugin.160_05

            Found and removed: Software\Classes\JavaPlugin.160_06

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_02

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_03

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_04

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.2

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.2.0_01

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.6.0_04

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.6.0_05

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.6.0_06

            Found and removed: Software\JavaSoft\Java2D\1.6.0_04

            Found and removed: Software\JavaSoft\Java2D\1.6.0_05

            Found and removed: Software\JavaSoft\Java2D\1.6.0_06

            Found and removed: Software\JavaSoft\Java Runtime Environment\1.6.0_05

            Found and removed: Software\JavaSoft\Java Runtime Environment\1.6.0_06

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB}

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.6.0_04\

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.6.0_05\

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.6.0_06\

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.6.0_04\bin\

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.6.0_05\bin\

            Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Java\jre1.6.0_06\bin\

            ------------------------------------

            Finished reporting.

            Rapport Toolbar
            -----------\\ ToolBar S&D 1.2.8 XP/Vista

            Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
            X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.70GHz )
            BIOS : PhoenixBIOS 4.0 Release 6.0
            USER : christian ( Administrator )
            BOOT : Normal boot
            Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated)
            C:\ (Local Disk) - NTFS - Total:46 Go (Free:5 Go)
            D:\ (Local Disk) - NTFS - Total:36 Go (Free:1 Go)
            E:\ (Local Disk) - FAT32 - Total:9 Go (Free:3 Go)
            F:\ (CD or DVD)

            "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
            Option : [1] ( 27/03/2009|18:12 )

            -----------\\ Recherche de Fichiers / Dossiers ...

            C:\Program Files\AskBarDis
            C:\Program Files\AskBarDis\bar
            C:\Program Files\AskBarDis\PopSwatter
            C:\Program Files\AskBarDis\unins000.dat
            C:\Program Files\AskBarDis\unins000.exe
            C:\Program Files\AskBarDis\bar\bin
            C:\Program Files\AskBarDis\bar\Cache
            C:\Program Files\AskBarDis\bar\History
            C:\Program Files\AskBarDis\bar\Settings
            C:\Program Files\AskBarDis\bar\bin\askBar.dll
            C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
            C:\Program Files\AskBarDis\bar\bin\psvince.dll
            C:\Program Files\AskBarDis\bar\Cache\00A0E97D
            C:\Program Files\AskBarDis\bar\Cache\00A0F331
            C:\Program Files\AskBarDis\bar\Cache\00A0F648.bin
            C:\Program Files\AskBarDis\bar\Cache\00A0F83D.bin
            C:\Program Files\AskBarDis\bar\Cache\00A0FA1D.bin
            C:\Program Files\AskBarDis\bar\Cache\00A0FB40.bin
            C:\Program Files\AskBarDis\bar\Cache\00A0FC58.bin
            C:\Program Files\AskBarDis\bar\Cache\files.ini
            C:\Program Files\AskBarDis\bar\History\search
            C:\Program Files\AskBarDis\bar\Settings\config.dat
            C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
            C:\Program Files\AskBarDis\bar\Settings\prevcfg.htm
            C:\Program Files\AskBarDis\PopSwatter\History
            C:\Program Files\AskBarDis\PopSwatter\History\allowed
            C:\Program Files\AskBarDis\PopSwatter\History\notallow
            C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
            C:\WINDOWS\iun6002.exe

            -----------\\ Extensions

            (christian) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
            (christian) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
            (christian) - {73a6fe31-595d-460b-a920-fcc0f8843232} => noscript
            (christian) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar

            -----------\\ [..\Internet Explorer\Main]

            [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
            "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
            "Start Page"="https://www.google.fr/?gws_rd=ssl"
            "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
            "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
            "Url"="http://www.microsoft.com/athome/community/rss.xml"
            "Url"="http://www.microsoft.com/atwork/community/rss.xml"

            [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
            "Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
            "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
            "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
            "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
            "Start Page"="https://www.msn.com/fr-fr/?ocid=iehp"

            --------------------\\ Recherche d'autres infections

            Aucune autre infection trouvée !

            1 - "C:\ToolBar SD\TB_1.txt" - 26/03/2009|20:27 - Option : [1]
            2 - "C:\ToolBar SD\TB_2.txt" - 27/03/2009|18:14 - Option : [1]

            -----------\\ Fin du rapport a 18:14:10,92

            Bon courage et encore merci pour ton aide
            0
        2. Contributeur sécurité
          e trust est ici en allant dans psote de travail puis

          C:\Program Files\CA\eTrust Antivirus

          ________________

          Relance Toolbar-S&D en double-cliquant sur le raccourci. Tape sur "2" puis valide en appuyant sur "Entrée".
          ! Ne ferme pas la fenêtre lors de la suppression !
          Un rapport sera généré, poste son contenu ici.

          NOTE : Si ton Bureau ne réapparait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
          Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..."
          Tape explorer puis valide.

          ________________

          scan avec malwarebyte , fais un scan rapide et colle le rapport obtenu et vire ce qui est trouvé:

          https://www.malekal.com/tutoriel-malwarebyte-anti-malware/­
          0
          1. Je ne comprend pas, je ne trouve pas
            C:\Program Files\CA\eTrust Antivirus

            -----------\\ ToolBar S&D 1.2.8 XP/Vista

            Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
            X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.70GHz )
            BIOS : PhoenixBIOS 4.0 Release 6.0
            USER : christian ( Administrator )
            BOOT : Normal boot
            Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated)
            C:\ (Local Disk) - NTFS - Total:46 Go (Free:5 Go)
            D:\ (Local Disk) - NTFS - Total:36 Go (Free:1 Go)
            E:\ (Local Disk) - FAT32 - Total:9 Go (Free:3 Go)
            F:\ (CD or DVD)

            "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
            Option : [2] ( 27/03/2009|21:51 )

            -----------\\ SUPPRESSION

            Supprime! - C:\Program Files\AskBarDis\bar
            Supprime! - C:\Program Files\AskBarDis\PopSwatter
            Supprime! - C:\Program Files\AskBarDis\unins000.dat
            Supprime! - C:\Program Files\AskBarDis\unins000.exe
            Supprime! - C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
            Supprime! - C:\WINDOWS\iun6002.exe
            Supprime! - C:\Program Files\AskBarDis

            -----------\\ Recherche de Fichiers / Dossiers ...

            -----------\\ Extensions

            (christian) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
            (christian) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
            (christian) - {73a6fe31-595d-460b-a920-fcc0f8843232} => noscript
            (christian) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar

            -----------\\ [..\Internet Explorer\Main]

            [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
            "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
            "Start Page"="https://www.google.fr/?gws_rd=ssl"
            "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
            "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
            "Url"="http://www.microsoft.com/athome/community/rss.xml"
            "Url"="http://www.microsoft.com/atwork/community/rss.xml"

            [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
            "Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
            "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
            "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
            "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
            "Start Page"="https://www.msn.com/fr-fr/"

            --------------------\\ Recherche d'autres infections

            Aucune autre infection trouvée !

            1 - "C:\ToolBar SD\TB_1.txt" - 26/03/2009|20:27 - Option : [1]
            2 - "C:\ToolBar SD\TB_2.txt" - 27/03/2009|18:14 - Option : [1]
            3 - "C:\ToolBar SD\TB_3.txt" - 27/03/2009|21:54 - Option : [2]

            -----------\\ Fin du rapport a 21:54:15,65
            0
        3. Contributeur sécurité
          scan avec malwarebyte , fais un scan rapide et colle le rapport obtenu et vire ce qui est trouvé:

          https://www.malekal.com/tutoriel-malwarebyte-anti-malware/­

          _________________

          explique ensuite tes problèmes et remets un rapport RSIT
          0
          1. Malwarebytes' Anti-Malware 1.35
            Version de la base de données: 1907
            Windows 5.1.2600 Service Pack 3

            27/03/2009 22:12:20
            mbam-log-2009-03-27 (22-12-20).txt

            Type de recherche: Examen rapide
            Eléments examinés: 98241
            Temps écoulé: 7 minute(s), 6 second(s)

            Processus mémoire infecté(s): 0
            Module(s) mémoire infecté(s): 0
            Clé(s) du Registre infectée(s): 11
            Valeur(s) du Registre infectée(s): 1
            Elément(s) de données du Registre infecté(s): 0
            Dossier(s) infecté(s): 0
            Fichier(s) infecté(s): 3

            Processus mémoire infecté(s):
            (Aucun élément nuisible détecté)

            Module(s) mémoire infecté(s):
            (Aucun élément nuisible détecté)

            Clé(s) du Registre infectée(s):
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{994b5fb4-0103-44a6-b6b3-c73572b362bc} (Adware.BHO) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{f608c2d0-846d-4f0e-e47a-88367c887707} (Trojan.BHO) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7f3ea905-de65-4d00-bc1f-ff3a77f8ca30} (Trojan.Vundo) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1a26f07f-0d60-4835-91cf-1e1766a0ec56} (Trojan.Agent) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
            HKEY_CLASSES_ROOT\TypeLib\{c24d7016-d00f-41ef-9781-984b6b5ff38f} (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
            HKEY_CLASSES_ROOT\Interface\{ec88fcd0-2ed5-4d65-9b4c-71d146b43a2e} (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
            HKEY_CLASSES_ROOT\CLSID\{e532cfb1-5edd-4663-8c22-bcd67b5e5bd4} (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -> Quarantined and deleted successfully.

            Valeur(s) du Registre infectée(s):
            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\WINDOWS\system32\ConTest.dll (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.

            Elément(s) de données du Registre infecté(s):
            (Aucun élément nuisible détecté)

            Dossier(s) infecté(s):
            (Aucun élément nuisible détecté)

            Fichier(s) infecté(s):
            C:\WINDOWS\system32\ConTest.dll (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
            C:\WINDOWS\BM87d37a9f.xml (Trojan.Vundo) -> Quarantined and deleted successfully.
            C:\WINDOWS\BM87d37a9f.txt (Trojan.Vundo) -> Quarantined and deleted successfully.
            0
        4. Au premier clic il ne se passe rien et au deuxieme clic après 10/15 secondes il commence à charger la page et le chargement est très long.

          Logfile of random's system information tool 1.06 (written by random/random)
          Run by christian at 2009-03-27 22:32:35
          Microsoft Windows XP Édition familiale Service Pack 3
          System drive C: has 6 GB (12%) free of 47 GB
          Total RAM: 1279 MB (31% free)

          Logfile of Trend Micro HijackThis v2.0.2
          Scan saved at 22:32:49, on 27/03/2009
          Platform: Windows XP SP3 (WinNT 5.01.2600)
          MSIE: Internet Explorer v8.00 (8.00.6001.18702)
          Boot mode: Normal

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
          C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
          C:\WINDOWS\system32\ZoneLabs\vsmon.exe
          C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
          C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
          C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
          C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
          C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
          C:\Program Files\Network Associates\VirusScan\Mcshield.exe
          C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
          C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
          C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
          C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
          C:\WINDOWS\system32\tcpsvcs.exe
          C:\WINDOWS\System32\snmp.exe
          C:\WINDOWS\system32\SearchIndexer.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
          C:\WINDOWS\Explorer.EXE
          C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
          C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
          C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
          C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
          C:\Program Files\Launch Manager\LaunchAp.exe
          C:\Program Files\Launch Manager\HotkeyApp.exe
          C:\Program Files\Launch Manager\OSD.exe
          C:\Program Files\Launch Manager\Wbutton.exe
          C:\Program Files\Home Cinema\PowerCinema\PCMService.exe
          C:\Program Files\Home Cinema\PowerDVD\PDVDServ.exe
          C:\WINDOWS\AGRSMMSG.exe
          C:\WINDOWS\system32\rundll32.exe
          C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
          C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
          C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
          C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe
          C:\WINDOWS\SOUNDMAN.EXE
          C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
          C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
          C:\WINDOWS\system32\ctfmon.exe
          C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe
          C:\Program Files\Windows Desktop Search\WindowsSearch.exe
          C:\Program Files\Mozilla Firefox\firefox.exe
          C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
          C:\WINDOWS\system32\NOTEPAD.EXE
          C:\Documents and Settings\christian\Bureau\ANTI VIRUS 2009\RSIT.exe
          C:\Program Files\trend micro\christian.exe

          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
          O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
          O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
          O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
          O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
          O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
          O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
          O4 - HKLM\..\Run: [CtrlVol] C:\Program Files\Launch Manager\CtrlVol.exe
          O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
          O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
          O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
          O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
          O4 - HKLM\..\Run: [EOUApp] C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
          O4 - HKLM\..\Run: [LaunchAp] C:\Program Files\Launch Manager\LaunchAp.exe
          O4 - HKLM\..\Run: [HotkeyApp] C:\Program Files\Launch Manager\HotkeyApp.exe
          O4 - HKLM\..\Run: [LMgrOSD] C:\Program Files\Launch Manager\OSD.exe
          O4 - HKLM\..\Run: [Wbutton] "C:\Program Files\Launch Manager\Wbutton.exe"
          O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Home Cinema\PowerCinema\PCMService.exe"
          O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Home Cinema\PowerDVD\PDVDServ.exe"
          O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
          O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
          O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
          O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
          O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Fichiers communs\Network Associates\TalkBack\TBMon.exe"
          O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
          O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
          O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
          O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
          O4 - HKUS\S-1-5-18\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (User 'SYSTEM')
          O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
          O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
          O4 - HKUS\.DEFAULT\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (User 'Default user')
          O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
          O4 - Global Startup: BTTray.lnk = ?
          O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
          O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
          O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
          O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
          O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
          O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
          O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
          O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
          O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
          O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O15 - Trusted Zone: http://*.mcafee.com
          O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
          O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
          O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
          O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
          O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
          O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
          O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
          O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
          O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
          O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
          O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
          O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
          O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
          O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: Service Framework McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
          O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
          O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
          O23 - Service: OwnershipProtocol - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
          O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
          O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
          O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
          O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
          0
          1. suite
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\olecnv32.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\olecli32.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\olecli.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\oleaccrc.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\oleacc.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole32.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole2nls.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole2disp.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\ole2.dll
            2009-03-22 09:23:56 ----A---- C:\WINDOWS\system32\offfilt.dll
            2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbctrac.dll
            2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcp32r.dll
            2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcjt32.dll
            2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcji32.dll
            2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbcint.dll
            2009-03-22 09:23:50 ----A---- C:\WINDOWS\system32\odbccu32.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbccr32.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbccp32.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcconf.exe
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcconf.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcbcp.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbcad32.exe
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbc32gt.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbc32.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\odbc16gt.dll
            2009-03-22 09:23:49 ----A---- C:\WINDOWS\system32\ocmanage.dll
            2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\occache.dll
            2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\objsel.dll
            2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\oakley.dll
            2009-03-22 09:23:48 ----A---- C:\WINDOWS\system32\nwprovau.dll
            2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntvdmd.dll
            2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntvdm.exe
            2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntshrui.dll
            2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntsdexts.dll
            2009-03-22 09:23:47 ----A---- C:\WINDOWS\system32\ntsd.exe
            2009-03-22 09:23:46 ----A---- C:\WINDOWS\system32\ntprint.dll
            2009-03-22 09:23:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmssvc.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsoprq.msc
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsmgr.msc
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsevt.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsdba.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmsapi.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntmarta.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlsapi.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlanui2.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlanui.dll
            2009-03-22 09:23:44 ----A---- C:\WINDOWS\system32\ntlanman.dll
            2009-03-22 09:23:42 ----A---- C:\WINDOWS\system32\ntdsapi.dll
            2009-03-22 09:23:41 ----A---- C:\WINDOWS\system32\ntdll.dll
            2009-03-22 09:23:40 ----A---- C:\WINDOWS\system32\nslookup.exe
            2009-03-22 09:23:40 ----A---- C:\WINDOWS\system32\npptools.dll
            2009-03-22 09:23:40 ----A---- C:\WINDOWS\system32\notepad.exe
            2009-03-22 09:23:40 ----A---- C:\WINDOWS\notepad.exe
            2009-03-22 09:23:38 ----A---- C:\WINDOWS\system32\nlsfunc.exe
            2009-03-22 09:23:37 ----A---- C:\WINDOWS\system32\nlhtml.dll
            2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\newdev.dll
            2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\netui2.dll
            2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\netui1.dll
            2009-03-22 09:23:36 ----A---- C:\WINDOWS\system32\netui0.dll
            2009-03-22 09:23:35 ----A---- C:\WINDOWS\system32\netstat.exe
            2009-03-22 09:23:35 ----A---- C:\WINDOWS\system32\netshell.dll
            2009-03-22 09:23:35 ----A---- C:\WINDOWS\system32\netsh.exe
            2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netrap.dll
            2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netplwiz.dll
            2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netmsg.dll
            2009-03-22 09:23:34 ----A---- C:\WINDOWS\system32\netman.dll
            2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\netlogon.dll
            2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\netid.dll
            2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\neth.dll
            2009-03-22 09:23:33 ----A---- C:\WINDOWS\system32\netevent.dll
            2009-03-22 09:23:32 ----A---- C:\WINDOWS\system32\netdde.exe
            2009-03-22 09:23:32 ----A---- C:\WINDOWS\system32\netcfgx.dll
            2009-03-22 09:23:31 ----A---- C:\WINDOWS\system32\netapi32.dll
            2009-03-22 09:23:30 ----A---- C:\WINDOWS\system32\netapi.dll
            2009-03-22 09:23:30 ----A---- C:\WINDOWS\system32\net1.exe
            2009-03-22 09:23:30 ----A---- C:\WINDOWS\system32\net.exe
            2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nddenb32.dll
            2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nddeapir.exe
            2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nddeapi.dll
            2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\ncxpnt.dll
            2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\ncobjapi.dll
            2009-03-22 09:23:29 ----A---- C:\WINDOWS\system32\nbtstat.exe
            2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\narrhook.dll
            2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\narrator.exe
            2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\mydocs.dll
            2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\mycomput.dll
            2009-03-22 09:23:28 ----A---- C:\WINDOWS\system32\mtxclu.dll
            2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxmlr.dll
            2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml3r.dll
            2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml3.dll
            2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml2r.dll
            2009-03-22 09:23:27 ----A---- C:\WINDOWS\system32\msxml.dll
            2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\msxml2.dll
            2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\mswstr10.dll
            2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\mswsock.dll
            2009-03-22 09:23:26 ----A---- C:\WINDOWS\system32\mswebdvd.dll
            2009-03-22 09:23:25 ----ASH---- C:\WINDOWS\system32\msvcrt.dll
            2009-03-22 09:23:25 ----ASH---- C:\WINDOWS\system32\msvcp60.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\mswdat10.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msw3prt.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvideo.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvidctl.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvidc32.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvfw32.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvcrt40.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvcp50.dll
            2009-03-22 09:23:25 ----A---- C:\WINDOWS\system32\msvcirt.dll
            2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\msvbvm60.dll
            2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\msvbvm50.dll
            2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\msv1_0.dll
            2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\mstlsapi.dll
            2009-03-22 09:23:24 ----A---- C:\WINDOWS\system32\mstime.dll
            2009-03-22 09:23:23 ----A---- C:\WINDOWS\system32\msswchx.exe
            2009-03-22 09:23:23 ----A---- C:\WINDOWS\system32\msswch.dll
            2009-03-22 09:23:23 ----A---- C:\WINDOWS\system32\mssip32.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\mssign32.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\mssap.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msrle32.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msrd3x40.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msrating.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msratelc.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msprivs.dll
            2009-03-22 09:23:22 ----A---- C:\WINDOWS\system32\msports.dll
            2009-03-22 09:23:21 ----A---- C:\WINDOWS\system32\mspatcha.dll
            2009-03-22 09:23:21 ----A---- C:\WINDOWS\system32\msorcl32.dll
            2009-03-22 09:23:21 ----A---- C:\WINDOWS\system32\msorc32r.dll
            2009-03-22 09:23:20 ----A---- C:\WINDOWS\system32\msobjs.dll
            2009-03-22 09:23:20 ----A---- C:\WINDOWS\system32\msnsspc.dll
            2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msls31.dll
            2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjtes40.dll
            2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjter40.dll
            2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjint40.dll
            2009-03-22 09:23:19 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
            2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msjet40.dll
            2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msisip.dll
            2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msiregmv.exe
            2009-03-22 09:23:18 ----A---- C:\WINDOWS\system32\msimsg.dll
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msimg32.dll
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msihnd.dll
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msiexec.exe
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msieftp.dll
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msidntld.dll
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msidle.dll
            2009-03-22 09:23:17 ----A---- C:\WINDOWS\system32\msident.dll
            2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\msi.dll
            2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\mshtmler.dll
            2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\mshtmled.dll
            2009-03-22 09:23:16 ----A---- C:\WINDOWS\system32\mshtml.dll
            2009-03-22 09:23:15 ----A---- C:\WINDOWS\system32\mshta.exe
            2009-03-22 09:23:15 ----A---- C:\WINDOWS\system32\msgsvc.dll
            2009-03-22 09:23:14 ----A---- C:\WINDOWS\system32\msgina.dll
            2009-03-22 09:23:14 ----A---- C:\WINDOWS\system32\msencode.dll
            2009-03-22 09:23:13 ----A---- C:\WINDOWS\system32\msdmo.dll
            2009-03-22 09:23:13 ----A---- C:\WINDOWS\msdfmap.ini
            2009-03-22 09:23:12 ----A---- C:\WINDOWS\system32\msdart.dll
            2009-03-22 09:23:12 ----A---- C:\WINDOWS\system32\msdadiag.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscpxl32.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscpx32r.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscms.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscdexnt.exe
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\mscat32.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\msaudite.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\msasn1.dll
            2009-03-22 09:23:11 ----A---- C:\WINDOWS\system32\msapsspc.dll
            2009-03-22 09:23:10 ----A---- C:\WINDOWS\system32\msafd.dll
            2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\msacm32.dll
            2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\msacm.dll
            2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\msaatext.dll
            2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\mrinfo.exe
            2009-03-22 09:23:09 ----A---- C:\WINDOWS\system32\mprui.dll
            2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprmsg.dll
            2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprdim.dll
            2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprddm.dll
            2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mprapi.dll
            2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mpr.dll
            2009-03-22 09:23:08 ----A---- C:\WINDOWS\system32\mpnotify.exe
            2009-03-22 09:23:06 ----A---- C:\WINDOWS\system32\mountvol.exe
            2009-03-22 09:23:06 ----A---- C:\WINDOWS\system32\moricons.dll
            2009-03-22 09:23:06 ----A---- C:\WINDOWS\system32\more.com
            2009-03-22 09:23:05 ----A---- C:\WINDOWS\system32\modex.dll
            2009-03-22 09:23:05 ----A---- C:\WINDOWS\system32\modemui.dll
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mode.com
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mobsync.exe
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mobsync.dll
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmutilse.dll
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmsystem.dll
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmdrv.dll
            2009-03-22 09:23:04 ----A---- C:\WINDOWS\system32\mmcshext.dll
            2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
            2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mmcbase.dll
            2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mmc.exe
            2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mll_qic.dll
            2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mll_mtf.dll
            2009-03-22 09:23:03 ----A---- C:\WINDOWS\system32\mll_hp.dll
            2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\mlang.dll
            2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\mimefilt.dll
            2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\miglibnt.dll
            2009-03-22 09:23:02 ----A---- C:\WINDOWS\system32\midimap.dll
            2009-03-22 09:23:01 ----A---- C:\WINDOWS\system32\mgmtapi.dll
            2009-03-22 09:23:01 ----A---- C:\WINDOWS\system32\mfcsubs.dll
            2009-03-22 09:23:01 ----A---- C:\WINDOWS\system32\mfc42u.dll
            2009-03-22 09:23:00 ----ASH---- C:\WINDOWS\system32\mfc42.dll
            2009-03-22 09:23:00 ----A---- C:\WINDOWS\system32\mfc40u.dll
            2009-03-22 09:23:00 ----A---- C:\WINDOWS\system32\mfc40.dll
            2009-03-22 09:23:00 ----A---- C:\WINDOWS\system32\mf3216.dll
            2009-03-22 09:22:59 ----A---- C:\WINDOWS\system32\mem.exe
            2009-03-22 09:22:53 ----A---- C:\WINDOWS\system32\mdminst.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mdhcp.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciwave.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciseq.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciqtz32.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciole32.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mciole16.dll
            2009-03-22 09:22:49 ----A---- C:\WINDOWS\system32\mcicda.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mciavi32.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mchgrcoi.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mcdsrv32.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mcd32.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mcastmib.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\mapistub.dll
            2009-03-22 09:22:48 ----A---- C:\WINDOWS\system32\makecab.exe
            2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\magnify.exe
            2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\mag_hook.dll
            2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\lzexpand.dll
            2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\lz32.dll
            2009-03-22 09:22:47 ----A---- C:\WINDOWS\system32\lusrmgr.msc
            2009-03-22 09:22:46 ----A---- C:\WINDOWS\system32\lsass.exe
            2009-03-22 09:22:46 ----A---- C:\WINDOWS\system32\lsasrv.dll
            2009-03-22 09:22:46 ----A---- C:\WINDOWS\system32\keymgr.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lprmonui.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lprmon.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lprhelp.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpr.exe
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpq.exe
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpk.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lpdsvc.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\logonui.exe
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\logman.exe
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\loghours.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\lodctr.exe
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\locator.exe
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\localui.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\localspl.dll
            2009-03-22 09:22:45 ----A---- C:\WINDOWS\system32\localsec.dll
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\loadperf.dll
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\loadfix.com
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lmrt.dll
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lmmib2.dll
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lmhsvc.dll
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\linkinfo.dll
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\lights.exe
            2009-03-22 09:22:44 ----A---- C:\WINDOWS\system32\licmgr10.dll
            2009-03-22 09:22:43 ----A---- C:\WINDOWS\system32\licdll.dll
            2009-03-22 09:22:42 ----A---- C:\WINDOWS\system32\langwrbk.dll
            2009-03-22 09:22:41 ----A---- C:\WINDOWS\system32\label.exe
            2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kernel32.dll
            2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kerberos.dll
            2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kdcom.dll
            2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kd1394.dll
            2009-03-22 09:22:40 ----A---- C:\WINDOWS\system32\kbdusx.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdusr.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdusl.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdus.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdur.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdukx.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbduk.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsw.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsp.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
            2009-03-22 09:22:39 ----A---- C:\WINDOWS\system32\kbdsg.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdsf.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdpo.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdpl1.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdpl.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdno1.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdno.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdnec.dll
            2009-03-22 09:22:38 ----A---- C:\WINDOWS\system32\kbdne.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmon.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmaori.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdmac.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlv1.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlv.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlt1.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdlt.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdla.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdkyr.dll
            2009-03-22 09:22:37 ----A---- C:\WINDOWS\system32\kbdkaz.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdit142.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdit.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdir.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdic.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhu1.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhu.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhept.dll
            2009-03-22 09:22:36 ----A---- C:\WINDOWS\system32\kbdhela3.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhela2.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhe319.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhe220.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdhe.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdgr1.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdgr.dll
            2009-03-22 09:22:35 ----A---- C:\WINDOWS\system32\kbdgkl.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdgae.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfr.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfo.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfi1.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfi.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdfc.dll
            2009-03-22 09:22:34 ----A---- C:\WINDOWS\system32\kbdest.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdes.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbddv.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdda.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcz2.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcz1.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcz.dll
            2009-03-22 09:22:33 ----A---- C:\WINDOWS\system32\kbdcr.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdcan.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdca.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbu.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbr.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdblr.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbene.dll
            2009-03-22 09:22:32 ----A---- C:\WINDOWS\system32\kbdbe.dll
            2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kbdazel.dll
            2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kbdaze.dll
            2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kbdal.dll
            2009-03-22 09:22:31 ----A---- C:\WINDOWS\system32\kb16.com
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jsproxy.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jscript.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jobexec.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgsh400.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgsd400.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgpl400.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgmd400.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgdw400.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jgaw400.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\jet500.dll
            2009-03-22 09:22:30 ----A---- C:\WINDOWS\system32\ixsso.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\iuengine.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\itss.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\itircl.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ir32_32.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ipxwan.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ipxsap.dll
            2009-03-22 09:22:29 ----A---- C:\WINDOWS\system32\ipxrtmgr.dll
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxroute.exe
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxrip.dll
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxpromn.dll
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipxmontr.dll
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipv6mon.dll
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipv6.exe
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
            2009-03-22 09:22:28 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\ipsec6.exe
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprtprio.dll
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprop.dll
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\iprip.dll
            2009-03-22 09:22:27 ----A---- C:\WINDOWS\system32\ippromon.dll
            2009-03-22 09:22:26 ----A---- C:\WINDOWS\system32\ipnathlp.dll
            2009-03-22 09:22:26 ----A---- C:\WINDOWS\system32\ipmontr.dll
            2009-03-22 09:22:26 ----A---- C:\WINDOWS\system32\iphlpapi.dll
            2009-03-22 09:22:25 ----A---- C:\WINDOWS\system32\ipconfig.exe
            2009-03-22 09:22:25 ----A---- C:\WINDOWS\system32\iologmsg.dll
            2009-03-22 09:22:25 ----A---- C:\WINDOWS\system32\inseng.dll
            2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\input.dll
            2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\initpki.dll
            2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\infosoft.dll
            2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\inetppui.dll
            2009-03-22 09:22:24 ----A---- C:\WINDOWS\system32\inetpp.dll
            2009-03-22 09:22:23 ----A---- C:\WINDOWS\system32\inetmib1.dll
            2009-03-22 09:22:23 ----A---- C:\WINDOWS\system32\inetcplc.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imm32.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imgutil.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imeshare.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imapi.exe
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\imagehlp.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\igmpagnt.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\ifsutil.dll
            2009-03-22 09:22:22 ----A---- C:\WINDOWS\system32\ifmon.dll
            2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iexpress.exe
            2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iesetup.dll
            2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iernonce.dll
            2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iepeers.dll
            2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\iedkcs32.dll
            2009-03-22 09:22:21 ----A---- C:\WINDOWS\system32\ieakui.dll
            2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\ieaksie.dll
            2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\ieakeng.dll
            2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\ie4uinit.exe
            2009-03-22 09:22:20 ----A---- C:\WINDOWS\system32\idq.dll
            2009-03-22 09:22:19 ----A---- C:\WINDOWS\system32\icmui.dll
            2009-03-22 09:22:19 ----A---- C:\WINDOWS\system32\icmp.dll
            2009-03-22 09:22:19 ----A---- C:\WINDOWS\system32\icm32.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iccvid.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iassvcs.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iassdo.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iassam.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iasrecst.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iasrad.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iaspolcy.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iasnap.dll
            2009-03-22 09:22:18 ----A---- C:\WINDOWS\system32\iashlpr.dll
            2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\iasads.dll
            2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\iasacct.dll
            2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\htui.dll
            2009-03-22 09:22:17 ----A---- C:\WINDOWS\system32\httpapi.dll
            2009-03-22 09:22:15 ----A---- C:\WINDOWS\system32\hotplug.dll
            2009-03-22 09:22:15 ----A---- C:\WINDOWS\system32\hostname.exe
            2009-03-22 09:22:14 ----A---- C:\WINDOWS\system32\netsetup.exe
            2009-03-22 09:22:14 ----A---- C:\WINDOWS\system32\hnetwiz.dll
            2009-03-22 09:22:14 ----A---- C:\WINDOWS\system32\hnetmon.dll
            2009-03-22 09:22:13 ----A---- C:\WINDOWS\system32\hnetcfg.dll
            2009-03-22 09:22:13 ----A---- C:\WINDOWS\system32\hlink.dll
            2009-03-22 09:22:10 ----A---- C:\WINDOWS\system32\hhsetup.dll
            2009-03-22 09:22:10 ----A---- C:\WINDOWS\hh.exe
            2009-03-22 09:22:09 ----A---- C:\WINDOWS\system32\help.exe
            2009-03-22 09:22:08 ----A---- C:\WINDOWS\system32\h323msp.dll
            2009-03-22 09:22:08 ----A---- C:\WINDOWS\system32\grpconv.exe
            2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\graphics.com
            2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\graftabl.com
            2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
            2009-03-22 09:22:07 ----A---- C:\WINDOWS\system32\gpkcsp.dll
            2009-03-22 09:22:06 ----A---- C:\WINDOWS\system32\glu32.dll
            2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\glmf32.dll
            2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\gdi32.dll
            2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\gdi.exe
            2009-03-22 09:22:05 ----A---- C:\WINDOWS\system32\gcdef.dll
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fwcfg.dll
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\ftsrch.dll
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\ftp.exe
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fsutil.exe
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fsusd.dll
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\fsmgmt.msc
            2009-03-22 09:22:02 ----A---- C:\WINDOWS\system32\framebuf.dll
            2009-03-22 09:22:01 ----A---- C:\WINDOWS\system32\format.com
            2009-03-22 09:22:01 ----A---- C:\WINDOWS\system32\forcedos.exe
            2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fontview.exe
            2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fontsub.dll
            2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fontext.dll
            2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fmifs.dll
            2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fldrclnr.dll
            2009-03-22 09:22:00 ----A---- C:\WINDOWS\system32\fixmapi.exe
            2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\finger.exe
            2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\findstr.exe
            2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\find.exe
            2009-03-22 09:21:59 ----A---- C:\WINDOWS\system32\filemgmt.dll
            2009-03-22 09:21:58 ----A---- C:\WINDOWS\system32\feclient.dll
            2009-03-22 09:21:58 ----A---- C:\WINDOWS\system32\fc.exe
            2009-03-22 09:21:58 ----A---- C:\WINDOWS\system32\faultrep.dll
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\fastopen.exe
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\exts.dll
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\extrac32.exe
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\extmgr.dll
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\expsrv.dll
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\system32\expand.exe
            2009-03-22 09:21:57 ----A---- C:\WINDOWS\explorer.exe
            2009-03-22 09:21:56 ----A---- C:\WINDOWS\system32\exe2bin.exe
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventvwr.msc
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventvwr.exe
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventlog.dll
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eventcls.dll
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eula.txt
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\eudcedit.exe
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\esentutl.exe
            2009-03-22 09:21:55 ----A---- C:\WINDOWS\system32\esentprf.ini
            2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\esentprf.dll
            2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\esent97.dll
            2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\esent.dll
            2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\es.dll
            2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\ersvc.dll
            2009-03-22 09:21:54 ----A---- C:\WINDOWS\system32\encdec.dll
            2009-03-22 09:21:53 ----A---- C:\WINDOWS\system32\encapi.dll
            2009-03-22 09:21:53 ----A---- C:\WINDOWS\system32\els.dll
            2009-03-22 09:21:53 ----A---- C:\WINDOWS\system32\edlin.exe
            2009-03-22 09:21:52 ----A---- C:\WINDOWS\system32\edb500.dll
            2009-03-22 09:21:52 ----A---- C:\WINDOWS\system32\dwwin.exe
            2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxtrans.dll
            2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxtmsft.dll
            2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxdiagn.dll
            2009-03-22 09:21:51 ----A---- C:\WINDOWS\system32\dxdiag.exe
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dx8vb.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dx7vb.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\duser.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dumprep.exe
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dswave.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dsuiext.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dssenh.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dssec.dll
            2009-03-22 09:21:50 ----A---- C:\WINDOWS\system32\dsquery.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsprpres.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsprop.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsound3d.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsound.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dskquoui.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dskquota.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsdmo.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\dsauth.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\ds32gt.dll
            2009-03-22 09:21:49 ----A---- C:\WINDOWS\system32\ds16gt.dLL
            2009-03-22 09:21:48 ----A---- C:\WINDOWS\system32\drwtsn32.exe
            2009-03-22 09:21:48 ----A---- C:\WINDOWS\system32\drwatson.exe
            2009-03-22 09:21:19 ----A---- C:\WINDOWS\system32\dpwsockx.dll
            2009-03-22 09:21:19 ----A---- C:\WINDOWS\system32\dpwsock.dll
            2009-03-22 09:21:19 ----A---- C:\WINDOWS\system32\dpvvox.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpvsetup.exe
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpvoice.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpvacm.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpserial.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnwsock.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnsvr.exe
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnmodem.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnlobby.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnhpast.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnet.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpnaddr.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dpmodemx.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dplayx.dll
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dplaysvr.exe
            2009-03-22 09:21:18 ----A---- C:\WINDOWS\system32\dplay.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dpcdll.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dosx.exe
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\doskey.exe
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\docprop2.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\docprop.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dnsapi.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmusic.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmsynth.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmstyle.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmserver.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmscript.dll
            2009-03-22 09:21:17 ----A---- C:\WINDOWS\system32\dmremote.exe
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmocx.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmloader.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmintf.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmime.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmdskres.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmdlgs.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmconfig.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmcompos.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmband.dll
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dmadmin.exe
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dllhst3g.exe
            2009-03-22 09:21:16 ----A---- C:\WINDOWS\system32\dllhost.exe
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\dispex.dll
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskperf.exe
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskpart.exe
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskmgmt.msc
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskcopy.dll
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskcopy.com
            2009-03-22 09:21:15 ----A---- C:\WINDOWS\system32\diskcomp.com
            2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\dinput8.dll
            2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\dinput.dll
            2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\dimap.dll
            2009-03-22 09:21:14 ----A---- C:\WINDOWS\system32\digest.dll
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\diantz.exe
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\diactfrm.dll
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dhcpmon.dll
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dgsetup.dll
            2009-03-22 09:21:13 ----A---- C:\WINDOWS\system32\dgnet.dll
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfsshlex.dll
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgui.dll
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgres.dll
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrgfat.exe
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\dfrg.msc
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\devmgr.dll
            2009-03-22 09:21:12 ----A---- C:\WINDOWS\system32\defrag.exe
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\devmgmt.msc
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\devenum.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\deskperf.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\deskmon.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\deskadp.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\debug.exe
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddrawex.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddraw.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddeshare.exe
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\ddeml.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\dciman32.dll
            2009-03-22 09:21:11 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
            2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbnetlib.dll
            2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
            2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbghelp.dll
            2009-03-22 09:21:10 ----A---- C:\WINDOWS\system32\dbgeng.dll
            2009-03-22 09:21:09 ----A---- C:\WINDOWS\system32\davclnt.dll
            2009-03-22 09:21:09 ----A---- C:\WINDOWS\system32\datime.dll
            2009-03-22 09:21:09 ----A---- C:\WINDOWS\system32\dataclen.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\danim.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dxof.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3drm.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dpmesh.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dim700.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3dim.dll
            2009-03-22 09:21:08 ----A---- C:\WINDOWS\system32\d3d9.dll
            2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\d3d8thk.dll
            2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\d3d8.dll
            2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\ctl3dv2.dll
            2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\csseqchk.dll
            2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\csrss.exe
            2009-03-22 09:21:07 ----A---- C:\WINDOWS\system32\csrsrv.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cscui.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cscript.exe
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cscdll.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptui.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptsvc.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptnet.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptext.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptdll.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\cryptdlg.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\crypt32.dll
            2009-03-22 09:21:06 ----A---- C:\WINDOWS\system32\crtdll.dll
            2009-03-22 09:21:05 ----A---- C:\WINDOWS\system32\credui.dll
            2009-03-22 09:21:04 ----A---- C:\WINDOWS\system32\corpol.dll
            2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\convert.exe
            2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\control.exe
            2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\console.dll
            2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\conime.exe
            2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\confmsp.dll
            2009-03-22 09:21:03 ----A---- C:\WINDOWS\system32\comres.dll
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compstui.dll
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compobj.dll
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compmgmt.msc
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compatui.dll
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\compact.exe
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\comp.exe
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\commdlg.dll
            2009-03-22 09:21:02 ----A---- C:\WINDOWS\system32\command.com
            2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\comdlg32.dll
            2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\comctl32.dll
            2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\comcat.dll
            2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\cnvfat.dll
            2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\cnetcfg.dll
            2009-03-22 09:21:01 ----A---- C:\WINDOWS\system32\cmutil.dll
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmstp.exe
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmsetacl.dll
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmpbk32.dll
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmmon32.exe
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmdl32.exe
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmdial32.dll
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmd.exe
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\cmcfg32.dll
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\clusapi.dll
            2009-03-22 09:21:00 ----A---- C:\WINDOWS\system32\clipsrv.exe
            2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\shellstyle.dll
            2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\cliconfg.exe
            2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\cliconfg.dll
            2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\cleanmgr.exe
            2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\clb.dll
            2009-03-22 09:20:59 ----A---- C:\WINDOWS\system32\ckcnv.exe
            2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\cisvc.exe
            2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\ciodm.dll
            2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\cidaemon.exe
            2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\cic.dll
            2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\ciadv.msc
            2009-03-22 09:20:58 ----A---- C:\WINDOWS\system32\ciadmin.dll
            2009-03-22 09:20:57 ----A---- C:\WINDOWS\system32\chkntfs.exe
            2009-03-22 09:20:57 ----A---- C:\WINDOWS\system32\chkdsk.exe
            2009-03-22 09:20:57 ----A---- C:\WINDOWS\system32\chcp.com
            2009-03-22 09:20:56 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
            2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\certmgr.msc
            2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\certmgr.dll
            2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\certcli.dll
            2009-03-22 09:20:55 ----A---- C:\WINDOWS\system32\cdosys.dll
            2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\cdm.dll
            2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\cdfview.dll
            2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\ccfgnt.dll
            2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\cards.dll
            2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\capesnpn.dll
            2009-03-22 09:20:54 ----A---- C:\WINDOWS\system32\camocx.dll
            2009-03-22 09:20:53 ----A---- C:\WINDOWS\system32\cacls.exe
            2009-03-22 09:20:53 ----A---- C:\WINDOWS\system32\cabview.dll
            2009-03-22 09:20:53 ----A---- C:\WINDOWS\system32\cabinet.dll
            2009-03-22 09:20:46 ----A---- C:\WINDOWS\system32\btpanui.dll
            2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browsewm.dll
            2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browseui.dll
            2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browser.dll
            2009-03-22 09:20:45 ----A---- C:\WINDOWS\system32\browselc.dll
            2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bootvrfy.exe
            2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bootvid.dll
            2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bootok.exe
            2009-03-22 09:20:44 ----A---- C:\WINDOWS\system32\bidispl.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\batt.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\batmeter.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\basesrv.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avifile.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avifil32.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avicap32.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\avicap.dll
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\autolfn.exe
            2009-03-22 09:20:42 ----A---- C:\WINDOWS\system32\autofmt.exe
            2009-03-22 09:20:41 ----A---- C:\WINDOWS\system32\autodisc.dll
            2009-03-22 09:20:41 ----A---- C:\WINDOWS\system32\autoconv.exe
            2009-03-22 09:20:41 ----A---- C:\WINDOWS\system32\autochk.exe
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\authz.dll
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\auditusr.exe
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\audiosrv.dll
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\attrib.exe
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmpvcno.dll
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmlib.dll
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmfd.dll
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atmadm.exe
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atl.dll
            2009-03-22 09:20:40 ----A---- C:\WINDOWS\system32\atkctrs.dll
            2009-03-22 09:20:39 ----ASH---- C:\WINDOWS\system32\asycfilt.dll
            2009-03-22 09:20:39 ----A---- C:\WINDOWS\system32\at.exe
            2009-03-22 09:20:39 ----A---- C:\WINDOWS\system32\arp.exe
            2009-03-22 09:20:38 ----A---- C:\WINDOWS\system32\apphelp.dll
            2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\append.exe
            2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\apcups.dll
            2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\amstream.dll
            2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\alrsvc.dll
            2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\alg.exe
            2009-03-22 09:20:37 ----A---- C:\WINDOWS\system32\ahui.exe
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\advpack.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\advapi32.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsnt.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsmsext.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsldpc.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adsldp.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\adptif.dll
            2009-03-22 09:20:34 ----A---- C:\WINDOWS\system32\admparse.dll
            2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\actxprxy.dll
            2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\actmovie.exe
            2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\activeds.dll
            2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\aclui.dll
            2009-03-22 09:20:33 ----A---- C:\WINDOWS\system32\acledit.dll
            2009-03-22 09:20:32 ----A---- C:\WINDOWS\system32\aaaamon.dll
            2009-03-22 09:20:32 ----A---- C:\WINDOWS\system32\6to4svc.dll
            2009-03-21 19:48:39 ----A---- C:\WINDOWS\UPGRADE.TXT
            2009-03-21 19:48:33 ----D---- C:\WINDOWS\setup.pss
            2009-03-21 15:13:22 ----D---- C:\Program Files\Dofus
            2009-03-18 06:44:33 ----D---- C:\Documents and Settings\christian\Application Data\Windows Search
            2009-03-14 14:08:00 ----D---- C:\Program Files\Microsoft Silverlight
            2009-03-14 14:07:52 ----D---- C:\Program Files\Microsoft
            2009-03-14 14:07:38 ----D---- C:\Documents and Settings\christian\Application Data\Windows Desktop Search
            2009-03-14 14:07:08 ----D---- C:\Program Files\Windows Desktop Search
            2009-03-14 14:07:07 ----D---- C:\WINDOWS\system32\GroupPolicy
            2009-03-14 11:16:08 ----A---- C:\WINDOWS\system32\spmsg2.dll
            2009-03-14 11:16:06 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
            2009-03-14 11:08:29 ----D---- C:\WINDOWS\system32\XPSViewer
            2009-03-14 11:08:24 ----D---- C:\Program Files\MSBuild
            2009-03-14 11:08:22 ----D---- C:\WINDOWS\system32\en-US
            2009-03-14 11:08:15 ----D---- C:\Program Files\Reference Assemblies
            2009-03-14 11:07:29 ----A---- C:\WINDOWS\system32\xpssvcs.dll
            2009-03-14 11:07:29 ----A---- C:\WINDOWS\system32\xpsshhdr.dll
            2009-03-14 11:07:29 ----A---- C:\WINDOWS\system32\prntvpt.dll
            2009-03-14 11:07:28 ----D---- C:\50aa58c5c258ed44dc
            2009-03-14 11:07:13 ----D---- C:\WINDOWS\SxsCaPendDel
            2009-03-12 19:14:39 ----D---- C:\Documents and Settings\christian\Application Data\FastStone
            2009-03-12 19:14:32 ----D---- C:\Program Files\FastStone Image Viewer
            2009-03-08 14:17:46 ----N---- C:\WINDOWS\system32\msrating.dll.mui
            2009-03-08 14:17:30 ----N---- C:\WINDOWS\system32\mshta.exe.mui
            2009-03-08 14:16:06 ----N---- C:\WINDOWS\system32\ie4uinit.exe.mui
            2009-03-08 14:15:48 ----N---- C:\WINDOWS\system32\iedkcs32.dll.mui
            2009-03-08 07:52:03 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee
            2009-03-08 07:50:31 ----D---- C:\Documents and Settings\christian\Application Data\McAfee
            2009-03-03 20:43:29 ----D---- C:\Documents and Settings\All Users\Application Data\Network Associates
            2009-03-03 20:43:25 ----D---- C:\Program Files\Network Associates
            2009-03-03 20:43:25 ----D---- C:\Program Files\Fichiers communs\Network Associates
            2009-03-03 20:00:25 ----A---- C:\WINDOWS\yes_messenger.ini

            ======List of files/folders modified in the last 1 months======

            2009-03-27 22:32:41 ----D---- C:\Program Files\Trend Micro
            2009-03-27 22:32:32 ----D---- C:\WINDOWS\Internet Logs
            2009-03-27 22:18:45 ----D---- C:\Program Files\Mozilla Firefox
            2009-03-27 22:16:11 ----D---- C:\WINDOWS\Temp
            2009-03-27 22:15:55 ----A---- C:\WINDOWS\ModemLog_Creatix 2.0 AC'97 Modem.txt
            2009-03-27 22:14:57 ----D---- C:\WINDOWS\system32\drivers
            2009-03-27 22:14:20 ----A---- C:\WINDOWS\SchedLgU.Txt
            2009-03-27 22:12:20 ----D---- C:\WINDOWS\system32
            2009-03-27 22:12:20 ----D---- C:\WINDOWS
            2009-03-27 22:00:14 ----RD---- C:\Program Files
            2009-03-27 18:03:55 ----SHD---- C:\WINDOWS\Installer
            2009-03-27 18:03:55 ----D---- C:\Program Files\Java
            2009-03-27 17:38:09 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
            2009-03-27 07:22:54 ----D---- C:\WINDOWS\system32\CatRoot2
            2009-03-27 06:53:15 ----HD---- C:\WINDOWS\inf
            2009-03-27 06:52:58 ----A---- C:\WINDOWS\system32\results.txt
            2009-03-27 06:51:28 ----D---- C:\WINDOWS\system32\CatRoot
            2009-03-27 06:49:59 ----D---- C:\Medion
            2009-03-27 06:38:39 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
            2009-03-26 07:33:16 ----D---- C:\WINDOWS\Help
            2009-03-26 06:50:07 ----SD---- C:\WINDOWS\Downloaded Program Files
            2009-03-25 21:10:08 ----HD---- C:\Program Files\InstallShield Installation Information
            2009-03-25 21:07:18 ----RSHDC---- C:\WINDOWS\system32\dllcache
            2009-03-25 21:07:12 ----D---- C:\WINDOWS\system32\ReinstallBackups
            2009-03-25 20:50:41 ----D---- C:\Program Files\Launch Manager
            2009-03-25 08:23:38 ----D---- C:\Documents and Settings
            2009-03-25 07:08:36 ----D---- C:\Program Files\Fichiers communs
            2009-03-24 23:14:27 ----D---- C:\WINDOWS\system32\ZoneLabs
            2009-03-24 20:09:53 ----D---- C:\Program Files\Spybot - Search & Destroy
            2009-03-24 07:33:08 ----D---- C:\WINDOWS\Debug
            2009-03-22 19:15:07 ----D---- C:\WINDOWS\system32\fr-fr
            2009-03-22 19:15:05 ----D---- C:\WINDOWS\Media
            2009-03-22 19:15:05 ----D---- C:\Program Files\Internet Explorer
            2009-03-22 18:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
            2009-03-22 17:55:57 ----HD---- C:\WINDOWS\$hf_mig$
            2009-03-22 17:30:40 ----D---- C:\Program Files\Windows Media Player
            2009-03-22 16:10:27 ----D---- C:\WINDOWS\SoftwareDistribution
            2009-03-22 15:37:04 ----D---- C:\Program Files\Micro Application
            2009-03-22 15:35:37 ----A---- C:\WINDOWS\Navigma.INI
            2009-03-22 14:43:23 ----D---- C:\Documents and Settings\christian\Application Data\Help
            2009-03-22 12:52:57 ----A---- C:\WINDOWS\NeroDigital.ini
            2009-03-22 12:49:48 ----SHD---- C:\RECYCLER
            2009-03-22 12:35:57 ----D---- C:\Program Files\Messenger
            2009-03-22 12:00:12 ----D---- C:\WINDOWS\system32\Setup
            2009-03-22 12:00:11 ----D---- C:\WINDOWS\AppPatch
            2009-03-22 12:00:10 ----D---- C:\WINDOWS\system32\wbem
            2009-03-22 12:00:10 ----D---- C:\Program Files\Outlook Express
            2009-03-22 12:00:10 ----D---- C:\Program Files\Fichiers communs\System
            2009-03-22 12:00:08 ----RSD---- C:\WINDOWS\Fonts
            2009-03-22 11:56:05 ----D---- C:\WINDOWS\security
            2009-03-22 11:53:16 ----D---- C:\WINDOWS\ime
            2009-03-22 11:52:53 ----D---- C:\WINDOWS\PeerNet
            2009-03-22 11:52:53 ----D---- C:\Program Files\Movie Maker
            2009-03-22 11:47:33 ----D---- C:\WINDOWS\system32\Restore
            2009-03-22 11:47:33 ----D---- C:\WINDOWS\system32\npp
            2009-03-22 11:47:30 ----D---- C:\WINDOWS\msagent
            2009-03-22 11:47:26 ----D---- C:\WINDOWS\srchasst
            2009-03-22 11:47:25 ----D---- C:\Program Files\NetMeeting
            2009-03-22 11:47:22 ----D---- C:\WINDOWS\system32\Com
            2009-03-22 11:47:16 ----D---- C:\Program Files\Windows NT
            2009-03-22 11:46:29 ----D---- C:\WINDOWS\system32\oobe
            2009-03-22 11:46:27 ----D---- C:\WINDOWS\system32\usmt
            2009-03-22 11:46:25 ----D---- C:\WINDOWS\system
            2009-03-22 11:33:22 ----D---- C:\WINDOWS\EHome
            2009-03-22 10:55:26 ----D---- C:\WINDOWS\I386
            2009-03-22 10:34:45 ----D---- C:\WINDOWS\system32\1036
            2009-03-22 10:34:31 ----D---- C:\WINDOWS\twain_32
            2009-03-22 10:33:32 ----D---- C:\WINDOWS\system32\icsxml
            2009-03-22 10:32:50 ----D---- C:\WINDOWS\system32\1033
            2009-03-22 10:31:55 ----D---- C:\WINDOWS\WinSxS
            2009-03-22 10:31:55 ----D---- C:\WINDOWS\Driver Cache
            2009-03-22 10:12:34 ----D---- C:\WINDOWS\Registration
            2009-03-22 10:07:03 ----SHD---- C:\System Volume Information
            2009-03-22 10:05:52 ----D---- C:\WINDOWS\system32\config
            2009-03-22 10:03:37 ----D---- C:\WINDOWS\repair
            2009-03-22 09:58:34 ----A---- C:\WINDOWS\ODBCINST.INI
            2009-03-22 09:58:09 ----D---- C:\WINDOWS\system32\ias
            2009-03-22 09:57:39 ----RD---- C:\WINDOWS\Web
            2009-03-22 09:57:36 ----SD---- C:\WINDOWS\occache
            2009-03-22 09:57:28 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
            2009-03-22 09:57:12 ----A---- C:\WINDOWS\win.ini
            2009-03-22 09:53:02 ----SH---- C:\boot.ini
            2009-03-22 09:42:11 ----A---- C:\WINDOWS\system.ini
            2009-03-22 09:41:52 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
            2009-03-20 21:00:42 ----D---- C:\quarantine
            2009-03-14 14:11:43 ----SD---- C:\Documents and Settings\christian\Application Data\Microsoft
            2009-03-14 14:11:43 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
            2009-03-14 14:11:43 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
            2009-03-14 11:50:16 ----D---- C:\WINDOWS\Microsoft.NET
            2009-03-14 11:50:14 ----RSD---- C:\WINDOWS\assembly
            2009-03-14 11:07:55 ----D---- C:\WINDOWS\system32\spool
            2009-03-08 21:23:30 ----D---- C:\mes documents
            2009-03-08 14:18:02 ----A---- C:\WINDOWS\system32\ieframe.dll.mui
            2009-03-08 14:16:06 ----A---- C:\WINDOWS\system32\advpack.dll.mui
            2009-03-08 04:39:48 ----A---- C:\WINDOWS\system32\ieframe.dll
            2009-03-08 04:34:48 ----A---- C:\WINDOWS\system32\WinFXDocObj.exe
            2009-03-08 04:32:52 ----A---- C:\WINDOWS\system32\ieudinit.exe
            2009-03-08 04:32:26 ----A---- C:\WINDOWS\system32\msfeeds.dll
            2009-03-08 04:32:22 ----A---- C:\WINDOWS\system32\iertutil.dll
            2009-03-08 04:31:54 ----A---- C:\WINDOWS\system32\msfeedssync.exe
            2009-03-08 04:31:52 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
            2009-03-08 04:31:52 ----A---- C:\WINDOWS\system32\icardie.dll
            2009-03-08 04:22:46 ----A---- C:\WINDOWS\system32\ieui.dll
            2009-03-08 04:11:12 ----A---- C:\WINDOWS\system32\ieapfltr.dll
            2009-03-07 21:17:19 ----SD---- C:\WINDOWS\Tasks

            ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

            R1 Hotkey;Hotkey; C:\WINDOWS\system32\drivers\Hotkey.sys [2003-04-28 9867]
            R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
            R1 KLIF;KLIF; C:\WINDOWS\system32\DRIVERS\klif.sys [2007-07-19 127768]
            R1 NaiAvTdi1;NaiAvTdi1; C:\WINDOWS\system32\drivers\mvstdi5x.sys [2004-08-25 58016]
            R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2004-08-09 53920]
            R1 Tcpip6;Pilote du protocole IPv6 Microsoft; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2008-06-20 225856]
            R1 vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2008-07-09 394952]
            R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.1.6.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-03-27 17119]
            R2 BTSERIAL;Bluetooth Serial Driver; \??\C:\WINDOWS\system32\drivers\btserial.sys []
            R2 BTSLBCSP;Bluetooth Port Client Driver; \??\C:\WINDOWS\system32\drivers\btslbcsp.sys []
            R2 irda;Protocole IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
            R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2004-10-15 11354]
            R3 AgereSoftModem;Creatix 2.0 AC'97 Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2004-07-22 1268234]
            R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-01-02 2300928]
            R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-12-21 909824]
            R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys [2004-05-26 44928]
            R3 BthEnum;Service d'énumérateur Bluetooth; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
            R3 BthPan;Périphérique Bluetooth (réseau personnel); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
            R3 BTHUSB;Pilote USB radio Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
            R3 BTKRNL;Enumérateur de bus Bluetooth; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2004-11-29 1337850]
            R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
            R3 EntDrv51;EntDrv51; \??\C:\WINDOWS\system32\drivers\EntDrv51.sys []
            R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
            R3 MxlW2k;MxlW2k; C:\WINDOWS\system32\drivers\MxlW2k.sys [2005-01-20 28352]
            R3 NaiAvFilter1;NaiAvFilter1; C:\WINDOWS\system32\drivers\naiavf5x.sys [2004-08-25 108256]
            R3 Rasirda;Miniport réseau étendu (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
            R3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
            R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
            R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2004-10-05 185824]
            R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-06-04 162176]
            R3 tunmp;Pilote de carte miniport Tun Microsoft; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2008-04-13 12288]
            R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
            R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
            R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
            R3 w29n51;Pilote de carte de connexion réseau Intel(R) PRO/Wireless 2200BG pour Windows XP; C:\WINDOWS\system32\DRIVERS\w29n51.sys [2004-10-29 3222784]
            R3 XUIF;X10 USB Wireless Transceiver; C:\WINDOWS\System32\Drivers\x10ufx2.sys [2005-05-19 17792]
            S1 mailKmd;mailKmd; C:\WINDOWS\system32\drivers\mailKmd.sys []
            S1 Wbutton;Wbutton; C:\WINDOWS\system32\drivers\Wbutton.sys []
            S3 3xHybrid;3xHybrid service; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [2004-10-06 945152]
            S3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
            S3 btaudio;Périphérique audio Bluetooth; C:\WINDOWS\system32\drivers\btaudio.sys [2004-11-29 399616]
            S3 BTDriver;Pilote de communications virtuelles Bluetooth; C:\WINDOWS\system32\DRIVERS\btport.sys [2004-11-29 30299]
            S3 BTHPORT;Pilote de port Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272768]
            S3 BTWDNDIS;Serveur d'accès au réseau local Bluetooth; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2004-11-29 148040]
            S3 btwmodem;Modem Bluetooth; C:\WINDOWS\system32\DRIVERS\btwmodem.sys [2004-11-29 30125]
            S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2004-11-29 55320]
            S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
            S3 flash;flash; \??\C:\WINDOWS\system32\drivers\flash.sys []
            S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
            S3 K320bus;Sony Ericsson K320 driver (WDM); C:\WINDOWS\system32\DRIVERS\K320bus
            0
            1. S3 K320bus;Sony Ericsson K320 driver (WDM); C:\WINDOWS\system32\DRIVERS\K320bus.sys [2006-08-18 61504]
              S3 K320mdfl;Sony Ericsson K320 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\K320mdfl.sys [2006-08-18 9328]
              S3 K320mdm;Sony Ericsson K320 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\K320mdm.sys [2006-08-18 97056]
              S3 K320mgmt;Sony Ericsson K320 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\K320mgmt.sys [2006-08-18 88560]
              S3 K320obex;Sony Ericsson K320 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\K320obex.sys [2006-08-18 86368]
              S3 MaxtorFrontPanel1;Maxtor 1394 Storage Front Panel Driver; C:\WINDOWS\system32\DRIVERS\mxofwfp.sys [2003-03-13 19712]
              S3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-05 12288]
              S3 MPE;Filtre BDA MPE; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-13 15232]
              S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
              S3 MXOPSWD;Maxtor OneTouch Security Driver; C:\WINDOWS\system32\DRIVERS\mxopswd.sys [2005-04-06 15360]
              S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
              S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
              S3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
              S3 nm;Pilote du Moniteur réseau; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-13 40320]
              S3 NSCIRDA;Pilote de périphérique infrarouge NSC; C:\WINDOWS\system32\DRIVERS\nscirda.sys [2008-04-13 28672]
              S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys []
              S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
              S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
              S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
              S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
              S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
              S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-13 12800]
              S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
              S3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
              S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys [2003-01-10 33588]
              S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
              S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
              S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

              ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

              R2 6to4;Service d'application d'assistance IPv6; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-12-21 425984]
              R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe [2004-11-29 254007]
              R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe [2005-03-09 184421]
              R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe [2005-03-09 110691]
              R2 CyberLink Media Library Service;CyberLink Media Library Service; C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe [2005-03-09 61440]
              R2 EvtEng;EvtEng; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2004-10-15 86016]
              R2 Iprip;Écouteur RIP; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
              R2 Irmon;Moniteur infrarouge; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              R2 McAfeeFramework;Service Framework McAfee; C:\Program Files\Network Associates\Common Framework\FrameworkService.exe [2004-08-06 102463]
              R2 McShield;Network Associates McShield; C:\Program Files\Network Associates\VirusScan\Mcshield.exe [2004-08-25 221191]
              R2 McTaskManager;Network Associates Task Manager; C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe [2004-08-25 28672]
              R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2003-06-20 322120]
              R2 OwnershipProtocol;OwnershipProtocol; C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe [2004-10-15 98304]
              R2 RegSrvc;RegSrvc; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2004-10-15 139264]
              R2 S24EventMonitor;Spectrum24 Event Monitor; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2004-10-15 360521]
              R2 SimpTcp;Services TCP/IP simplifiés; C:\WINDOWS\system32\tcpsvcs.exe [2004-08-05 19456]
              R2 SNMP;Service SNMP; C:\WINDOWS\System32\snmp.exe [2008-04-14 33280]
              R2 vsmon;TrueVector Internet Monitor; C:\WINDOWS\system32\ZoneLabs\vsmon.exe [2008-07-09 75304]
              R2 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
              R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
              R3 x10nets;X10 Device Network Service; C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe [2001-11-12 20480]
              S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
              S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
              S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe [2007-01-23 77944]
              S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
              S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
              S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-08-15 29744]
              S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-10-31 168432]
              S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
              S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
              S3 LPDSVC;Serveur d'impression TCP/IP; C:\WINDOWS\system32\tcpsvcs.exe [2004-08-05 19456]
              S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
              S3 p2pgasvc;Authentification de groupe réseau homologue; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              S3 p2pimsvc;Gestionnaire d'identité réseau homologue; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              S3 p2psvc;Réseau homologue; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              S3 PNRPSvc;Protocole de résolution de noms d'homologues; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              S3 SNMPTRAP;Service d'interruption SNMP; C:\WINDOWS\System32\snmptrap.exe [2008-04-14 8704]
              S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
              S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

              -----------------EOF-----------------
              0
              1. Contributeur sécurité
                élécharge combofix (par sUBs) ici :

                http://download.bleepingcomputer.com/sUBs/ComboFix.exe

                et enregistre le sur le bureau.

                déconnecte toi d'internet et ferme toutes tes applications.

                désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)

                double-clique sur combofix.exe et suis les instructions

                à la fin, il va produire un rapport C:\ComboFix.txt

                réactive ton parefeu, ton antivirus, la garde de ton antispyware

                copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

                Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

                Tu as un tutoriel complet ici :

                https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
                0
                1. ComboFix 09-03-27.02 - christian 2009-03-28 12:04:33.2 - NTFSx86
                  Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.1279.625 [GMT 1:00]
                  Lancé depuis: c:\documents and settings\christian\Bureau\ComboFix.exe
                  FW: ZoneAlarm Firewall *disabled*
                  * Un nouveau point de restauration a été créé
                  .

                  (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
                  .

                  c:\windows\patch.exe
                  c:\windows\system32\404Fix.exe
                  c:\windows\system32\dumphive.exe
                  c:\windows\system32\IEDFix.exe
                  c:\windows\system32\Process.exe
                  c:\windows\system32\SrchSTS.exe
                  c:\windows\system32\tmp.reg
                  c:\windows\system32\VACFix.exe
                  c:\windows\system32\VCCLSID.exe
                  c:\windows\system32\WS2Fix.exe
                  E:\Autorun.inf

                  .
                  ((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
                  .

                  -------\Legacy_IPRIP
                  -------\Service_Iprip
                  -------\Service_PCIDump

                  ((((((((((((((((((((((((((((( Fichiers créés du 2009-02-28 au 2009-03-28 ))))))))))))))))))))))))))))))))))))
                  .

                  2009-03-27 22:00 . 2009-03-27 22:00 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
                  2009-03-27 22:00 . 2009-03-27 22:00 <REP> d-------- c:\documents and settings\christian\Application Data\Malwarebytes
                  2009-03-27 22:00 . 2009-03-26 16:49 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
                  2009-03-27 22:00 . 2009-03-26 16:49 15,504 --a------ c:\windows\system32\drivers\mbam.sys
                  2009-03-27 06:51 . 2004-10-15 09:20 1,654,784 --a------ c:\windows\system32\W29MLRES.DLL
                  2009-03-27 06:51 . 2004-01-02 14:58 13 --a------ c:\windows\system32\drivers\verfile.tic
                  2009-03-26 20:28 . 2009-03-26 20:29 <REP> d-------- C:\rsit
                  2009-03-26 20:24 . 2009-03-27 21:54 <REP> d-------- C:\ToolBar SD
                  2009-03-25 21:09 . 2009-03-25 21:09 <REP> d-------- c:\windows\tiinst
                  2009-03-25 08:25 . 2009-03-25 08:25 <REP> d-------- c:\documents and settings\Invité\Application Data\Windows Desktop Search
                  2009-03-25 08:24 . 2009-03-25 08:24 <REP> d-------- c:\documents and settings\Invité\Application Data\Intel
                  2009-03-25 08:23 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Invité\Voisinage réseau
                  2009-03-25 08:23 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Invité\Voisinage réseau
                  2009-03-25 08:23 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Invité\Voisinage d'impression
                  2009-03-25 08:23 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Invité\Voisinage d'impression
                  2009-03-25 08:23 . 2009-03-22 09:55 <REP> d--h----- c:\documents and settings\Invité\Modèles
                  2009-03-25 08:23 . 2009-03-22 09:55 <REP> d--h----- c:\documents and settings\Invité\Modèles
                  2009-03-25 08:23 . 2009-03-25 08:25 <REP> dr------- c:\documents and settings\Invité\Mes documents
                  2009-03-25 08:23 . 2009-03-25 08:25 <REP> dr------- c:\documents and settings\Invité\Mes documents
                  2009-03-25 08:23 . 2009-03-22 09:41 <REP> dr------- c:\documents and settings\Invité\Menu Démarrer
                  2009-03-25 08:23 . 2009-03-22 09:41 <REP> dr------- c:\documents and settings\Invité\Menu Démarrer
                  2009-03-25 08:23 . 2009-03-25 08:25 <REP> dr------- c:\documents and settings\Invité\Favoris
                  2009-03-25 08:23 . 2009-03-25 08:25 <REP> dr------- c:\documents and settings\Invité\Favoris
                  2009-03-25 08:23 . 2009-03-22 09:55 <REP> d-------- c:\documents and settings\Invité\Bureau
                  2009-03-25 08:23 . 2009-03-22 09:55 <REP> d-------- c:\documents and settings\Invité\Bureau
                  2009-03-25 08:23 . 2009-03-25 08:23 <REP> d-------- c:\documents and settings\Invité
                  2009-03-24 17:39 . 2009-03-24 17:39 <REP> d--hs---- c:\documents and settings\Papa\IETldCache
                  2009-03-23 20:21 . 2009-03-23 20:21 <REP> d--hs---- c:\documents and settings\christian\IECompatCache
                  2009-03-22 19:08 . 2009-03-22 19:11 <REP> d--h-c--- c:\windows\ie8
                  2009-03-22 18:03 . 2009-03-22 18:03 <REP> d--hs---- c:\documents and settings\christian\PrivacIE
                  2009-03-22 17:59 . 2009-03-22 17:59 <REP> d--hs---- c:\documents and settings\LocalService\IETldCache
                  2009-03-22 17:59 . 2009-03-22 17:59 <REP> d--hs---- c:\documents and settings\christian\IETldCache
                  2009-03-22 17:56 . 2009-03-22 19:13 <REP> d-------- c:\windows\ie8updates
                  2009-03-22 17:50 . 2009-02-28 05:55 105,984 -----c--- c:\windows\system32\dllcache\iecompat.dll
                  2009-03-22 17:02 . 2009-03-22 17:02 <REP> d-------- C:\O2C
                  2009-03-22 14:54 . 2009-03-22 14:54 <REP> d-------- c:\documents and settings\Maxime\Application Data\Windows Desktop Search
                  2009-03-22 14:53 . 2009-03-22 14:54 <REP> dr------- c:\documents and settings\Maxime\Favoris
                  2009-03-22 14:53 . 2009-03-22 15:01 <REP> d-------- c:\documents and settings\Maxime\Bureau
                  2009-03-22 14:53 . 2009-03-22 14:53 <REP> d-------- c:\documents and settings\Maxime\Application Data\Intel
                  2009-03-22 14:52 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Maxime\Voisinage réseau
                  2009-03-22 14:52 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Maxime\Voisinage d'impression
                  2009-03-22 14:52 . 2009-03-22 09:55 <REP> d--h----- c:\documents and settings\Maxime\Modèles
                  2009-03-22 14:52 . 2009-03-22 14:54 <REP> dr------- c:\documents and settings\Maxime\Mes documents
                  2009-03-22 14:52 . 2009-03-22 09:41 <REP> dr------- c:\documents and settings\Maxime\Menu Démarrer
                  2009-03-22 14:52 . 2009-03-22 14:53 <REP> d-------- c:\documents and settings\Maxime
                  2009-03-22 12:47 . 2009-03-22 12:47 <REP> d-------- c:\documents and settings\All Users\Application Data\Yahoo! Companion
                  2009-03-22 12:26 . 2008-05-08 15:02 203,136 -----c--- c:\windows\system32\dllcache\rmcast.sys
                  2009-03-22 12:25 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Papa\Voisinage réseau
                  2009-03-22 12:25 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Papa\Voisinage d'impression
                  2009-03-22 12:25 . 2009-03-22 09:55 <REP> d--h----- c:\documents and settings\Papa\Modèles
                  2009-03-22 12:25 . 2009-03-24 17:39 <REP> dr------- c:\documents and settings\Papa\Mes documents
                  2009-03-22 12:25 . 2009-03-22 09:41 <REP> dr------- c:\documents and settings\Papa\Menu Démarrer
                  2009-03-22 12:25 . 2009-03-24 17:39 <REP> dr------- c:\documents and settings\Papa\Favoris
                  2009-03-22 12:25 . 2009-03-27 23:10 <REP> d-------- c:\documents and settings\Papa\Bureau
                  2009-03-22 12:25 . 2009-03-22 12:25 <REP> d-------- c:\documents and settings\Papa\Application Data\Windows Desktop Search
                  2009-03-22 12:25 . 2009-03-22 12:25 <REP> d-------- c:\documents and settings\Papa\Application Data\Intel
                  2009-03-22 12:25 . 2009-03-24 17:39 <REP> d-------- c:\documents and settings\Papa
                  2009-03-22 12:23 . 2008-06-14 18:33 272,768 -----c--- c:\windows\system32\dllcache\bthport.sys
                  2009-03-22 12:20 . 2008-10-16 02:01 1,499,648 -----c--- c:\windows\system32\dllcache\shdocvw.dll
                  2009-03-22 12:20 . 2009-03-08 04:34 1,206,784 --a--c--- c:\windows\system32\dllcache\urlmon.dll
                  2009-03-22 12:20 . 2009-03-08 04:34 914,944 --a--c--- c:\windows\system32\dllcache\wininet.dll
                  2009-03-22 12:18 . 2008-08-14 14:23 2,191,232 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe
                  2009-03-22 12:18 . 2008-08-14 14:23 2,147,328 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe
                  2009-03-22 12:18 . 2008-08-14 14:23 2,068,096 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe
                  2009-03-22 12:18 . 2008-08-14 14:23 2,025,984 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe
                  2009-03-22 12:16 . 2009-03-08 04:41 5,937,152 --a--c--- c:\windows\system32\dllcache\mshtml.dll
                  2009-03-22 12:13 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Marion\Voisinage réseau
                  2009-03-22 12:13 . 2009-03-22 09:41 <REP> d--h----- c:\documents and settings\Marion\Voisinage d'impression
                  2009-03-22 12:13 . 2009-03-22 09:55 <REP> d--h----- c:\documents and settings\Marion\Modèles
                  2009-03-22 12:13 . 2009-03-22 12:13 <REP> dr------- c:\documents and settings\Marion\Mes documents
                  2009-03-22 12:13 . 2009-03-22 09:41 <REP> dr------- c:\documents and settings\Marion\Menu Démarrer
                  2009-03-22 12:13 . 2009-03-22 12:13 <REP> dr------- c:\documents and settings\Marion\Favoris
                  2009-03-22 12:13 . 2009-03-22 09:55 <REP> d-------- c:\documents and settings\Marion\Bureau
                  2009-03-22 12:13 . 2009-03-22 12:13 <REP> d-------- c:\documents and settings\Marion\Application Data\Windows Desktop Search
                  2009-03-22 12:13 . 2009-03-22 12:13 <REP> d-------- c:\documents and settings\Marion\Application Data\Intel
                  2009-03-22 12:13 . 2009-03-22 12:13 <REP> d-------- c:\documents and settings\Marion
                  2009-03-22 12:13 . 2008-10-24 12:21 455,296 -----c--- c:\windows\system32\dllcache\mrxsmb.sys
                  2009-03-22 12:12 . 2008-12-11 11:57 333,952 -----c--- c:\windows\system32\dllcache\srv.sys
                  2009-03-22 12:12 . 2008-05-01 15:36 331,776 -----c--- c:\windows\system32\dllcache\msadce.dll
                  2009-03-22 12:10 . 2008-04-11 20:05 691,712 -----c--- c:\windows\system32\dllcache\inetcomm.dll
                  2009-03-22 12:07 . 2008-09-04 18:16 1,106,944 -----c--- c:\windows\system32\dllcache\msxml3.dll
                  2009-03-22 12:07 . 2008-10-15 17:35 337,408 -----c--- c:\windows\system32\dllcache\netapi32.dll
                  2009-03-22 12:05 . 2009-01-09 20:19 1,089,883 -----c--- c:\windows\system32\dllcache\ntprint.cat
                  2009-03-22 12:02 . 2009-03-22 12:02 <REP> d-------- c:\documents and settings\NetworkService\Menu Démarrer
                  2009-03-22 11:26 . 2008-04-14 03:33 1,306,624 -----c--- c:\windows\system32\dllcache\msxml6.dll
                  2009-03-22 11:25 . 2007-06-26 07:00 457,607 -----c--- c:\windows\system32\dllcache\mdlib.wmv
                  2009-03-22 11:25 . 2008-04-14 03:34 380,928 --a------ c:\windows\system32\irprops.cpl
                  2009-03-22 11:25 . 2008-04-14 03:31 294,912 -----c--- c:\windows\system32\dllcache\msaud32.acm
                  2009-03-22 11:25 . 2008-04-14 03:31 290,816 -----c--- c:\windows\system32\dllcache\l3codeca.acm
                  2009-03-22 11:25 . 2007-06-26 06:59 97,117 -----c--- c:\windows\system32\dllcache\mplayer2.hlp
                  2009-03-22 11:25 . 2004-08-05 13:00 36,640 -----c--- c:\windows\system32\dllcache\mplayer2.inf
                  2009-03-22 11:25 . 2006-12-28 20:01 19,569 --a------ c:\windows\[u]0/u03204_.tmp
                  2009-03-22 11:25 . 2007-06-26 07:00 5,971 -----c--- c:\windows\system32\dllcache\events.js
                  2009-03-22 11:25 . 2004-08-05 13:00 2,778 -----c--- c:\windows\system32\dllcache\mplogoh.gif
                  2009-03-22 11:25 . 2004-08-05 13:00 2,545 -----c--- c:\windows\system32\dllcache\mplogo.gif
                  2009-03-22 11:25 . 2007-06-26 06:59 1,885 -----c--- c:\windows\system32\dllcache\mplayer2.cnt
                  2009-03-22 11:24 . 2007-06-26 07:00 381,425 -----c--- c:\windows\system32\dllcache\copycd.wmv
                  2009-03-22 11:24 . 2008-04-14 03:34 294,912 -----c--- c:\windows\system32\dllcache\dlimport.exe
                  2009-03-22 11:24 . 2004-07-17 10:34 184,107 -----c--- c:\windows\system32\dllcache\compact.wmz
                  2009-03-22 11:24 . 2007-06-26 07:00 9,585 -----c--- c:\windows\system32\dllcache\controls.css
                  2009-03-22 11:24 . 2007-06-26 07:00 8,298 -----c--- c:\windows\system32\dllcache\contents.htm
                  2009-03-22 11:24 . 2007-06-26 07:00 6,878 -----c--- c:\windows\system32\dllcache\controls.js
                  2009-03-22 11:24 . 2004-08-05 13:00 999 -----c--- c:\windows\system32\dllcache\bktrh.gif
                  2009-03-22 11:24 . 2004-08-05 13:00 773 -----c--- c:\windows\system32\dllcache\cnth.gif
                  2009-03-22 11:24 . 2004-08-05 13:00 773 -----c--- c:\windows\system32\dllcache\cnt.gif
                  2009-03-22 11:24 . 2004-08-05 13:00 772 -----c--- c:\windows\system32\dllcache\cntd.gif
                  2009-03-22 11:24 . 2004-08-05 13:00 760 -----c--- c:\windows\system32\dllcache\cloapph.gif
                  2009-03-22 11:24 . 2004-08-05 13:00 717 -----c--- c:\windows\system32\dllcache\cloapp.gif
                  2009-03-22 10:32 . 2009-03-22 10:32 2,422 --a------ c:\windows\system32\wpa.bak
                  2009-03-22 10:02 . 2008-04-14 03:32 426,041 --a--c--- c:\windows\system32\dllcache\voicepad.dll
                  2009-03-22 10:02 . 2008-04-14 03:32 156,672 --a--c--- c:\windows\system32\dllcache\winzm.ime
                  2009-03-22 10:02 . 2008-04-14 03:32 156,672 --a--c--- c:\windows\system32\dllcache\winsp.ime
                  2009-03-22 10:02 . 2008-04-14 03:32 156,672 --a--c--- c:\windows\system32\dllcache\winpy.ime
                  2009-03-22 10:02 . 2008-04-14 03:32 86,073 --a--c--- c:\windows\system32\dllcache\voicesub.dll
                  2009-03-22 10:02 . 2008-04-14 03:33 79,360 --a--c--- c:\windows\system32\dllcache\winar30.ime
                  2009-03-22 10:02 . 2008-04-14 03:32 72,704 --a--c--- c:\windows\system32\dllcache\wingb.ime
                  2009-03-22 10:02 . 2008-04-14 03:33 65,536 --a--c--- c:\windows\system32\dllcache\winime.ime
                  2009-03-22 10:02 . 2004-08-05 13:00 48,256 --a--c--- c:\windows\system32\dllcache\w32.dll
                  2009-03-22 10:02 . 2004-08-05 13:00 41,600 --a--c--- c:\windows\system32\dllcache\weitekp9.dll
                  2009-03-22 10:02 . 2004-08-05 13:00 31,360 --a--c--- c:\windows\system32\dllcache\weitekp9.sys
                  2009-03-22 10:02 . 2004-08-05 13:00 28,288 --a--c--- c:\windows\system32\dllcache\xjis.nls
                  2009-03-22 10:00 . 2008-04-14 03:31 13,463,552 --a--c--- c:\windows\system32\dllcache\hwxjpn.dll
                  2009-03-22 09:59 . 2004-08-05 13:00 1,677,824 --a--c--- c:\windows\system32\dllcache\chsbrkr.dll
                  2009-03-22 09:57 . 2004-08-05 13:00 16,384 --a--c--- c:\windows\system32\dllcache\isignup.exe
                  2009-03-22 09:57 . 2009-03-22 09:57 749 -rah----- c:\windows\WindowsShell.Manifest

                  .
                  (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
                  .
                  2009-03-28 11:12 794,656 --sha-w c:\windows\system32\drivers\fidbox.dat
                  2009-03-28 11:08 11,312 --sha-w c:\windows\system32\drivers\fidbox.idx
                  2009-03-27 21:57 --------- d-----w c:\program files\Fichiers communs\Adobe
                  2009-03-27 21:32 --------- d-----w c:\program files\Trend Micro
                  2009-03-27 17:03 --------- d-----w c:\program files\Java
                  2009-03-27 16:38 --------- d-----w c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
                  2009-03-27 05:52 17,119 ----a-w c:\windows\system32\drivers\AegisP.sys
                  2009-03-25 20:10 --------- d--h--w c:\program files\InstallShield Installation Information
                  2009-03-25 19:50 --------- d-----w c:\program files\Launch Manager
                  2009-03-24 19:09 --------- d-----w c:\program files\Spybot - Search & Destroy
                  2009-03-22 14:37 --------- d-----w c:\program files\Micro Application
                  2009-03-19 20:25 33,786 ----a-w c:\documents and settings\christian\Application Data\wklnhst.dat
                  2009-02-02 05:43 --------- d-----w c:\documents and settings\christian\Application Data\GlarySoft
                  2009-01-31 07:19 --------- d-----w c:\program files\CDex_170b2
                  2009-01-30 18:09 --------- d-----w c:\program files\CCleaner
                  2008-03-30 15:18 96,176 ----a-w c:\documents and settings\christian\Application Data\GDIPFONTCACHEV1.DAT
                  2008-08-15 07:33 122,880 ----a-w c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
                  2008-04-14 02:33 65,024 --sha-w c:\windows\system32\asycfilt.dll
                  2005-01-20 20:55 8 --sha-r c:\windows\system32\BCFCF81A7E.sys
                  2007-03-24 21:08 56 --sha-r c:\windows\system32\EEB141F368.sys
                  2008-03-29 15:29 9,552 --sha-w c:\windows\system32\KGyGaAvL.sys
                  2008-04-14 02:33 1,028,096 --sha-w c:\windows\system32\mfc42.dll
                  2004-08-05 12:00 57,344 --sha-w c:\windows\system32\mfc42loc.dll
                  1995-09-20 15:16 35,088 --sha-w c:\windows\system32\msjint32.dll
                  1995-09-20 15:13 977,680 --sha-w c:\windows\system32\msjt3032.dll
                  1995-09-20 15:16 23,824 --sha-w c:\windows\system32\msjter32.dll
                  2008-04-14 02:33 413,696 --sha-w c:\windows\system32\msvcp60.dll
                  2008-04-14 02:33 343,040 --sha-w c:\windows\system32\msvcrt.dll
                  2004-08-05 12:00 253,952 --sha-w c:\windows\system32\msvcrt20.dll
                  2008-04-14 02:33 551,936 --sha-w c:\windows\system32\oleaut32.dll
                  2008-04-14 02:33 84,992 --sha-w c:\windows\system32\olepro32.dll
                  2008-04-14 02:33 30,749 --sha-w c:\windows\system32\vbajet32.dll
                  1995-09-24 10:02 243,472 --sha-w c:\windows\system32\vbar2232.dll
                  1998-05-18 02:06 368,912 --sha-w c:\windows\system32\vbar332.dll
                  .

                  ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
                  .
                  .
                  *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
                  REGEDIT4

                  [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                  "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
                  "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
                  "WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2006-11-03 204288]

                  [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                  "ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2004-12-21 344064]
                  "CtrlVol"="c:\program files\Launch Manager\CtrlVol.exe" [2003-09-16 20480]
                  "SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2004-10-05 98394]
                  "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2004-10-05 688218]
                  "NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
                  "IntelWireless"="c:\program files\Intel\Wireless\Bin\ifrmewrk.exe" [2004-10-15 385024]
                  "EOUApp"="c:\program files\Intel\Wireless\Bin\EOUWiz.exe" [2004-10-15 356352]
                  "LaunchAp"="c:\program files\Launch Manager\LaunchAp.exe" [2004-08-06 32768]
                  "HotkeyApp"="c:\program files\Launch Manager\HotkeyApp.exe" [2004-11-11 49152]
                  "LMgrOSD"="c:\program files\Launch Manager\OSD.exe" [2004-07-26 204800]
                  "Wbutton"="c:\program files\Launch Manager\Wbutton.exe" [2004-11-23 73728]
                  "PCMService"="c:\program files\Home Cinema\PowerCinema\PCMService.exe" [2005-03-09 118926]
                  "RemoteControl"="c:\program files\Home Cinema\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
                  "ShStatEXE"="c:\program files\Network Associates\VirusScan\SHSTAT.EXE" [2004-08-25 94208]
                  "McAfeeUpdaterUI"="c:\program files\Network Associates\Common Framework\UpdaterUI.exe" [2004-08-06 139320]
                  "Network Associates Error Reporting Service"="c:\program files\Fichiers communs\Network Associates\TalkBack\TBMon.exe" [2003-10-07 147514]
                  "ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-07-09 919016]
                  "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
                  "AGRSMMSG"="AGRSMMSG.exe" [2004-07-22 c:\windows\AGRSMMSG.exe]
                  "BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 c:\windows\system32\bthprops.cpl]
                  "SoundMan"="SOUNDMAN.EXE" [2004-01-02 c:\windows\soundman.exe]

                  [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                  "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
                  "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

                  [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
                  "tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-05 44544]

                  c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
                  BTTray.lnk - c:\program files\WIDCOMM\Logiciel Bluetooth\BTTray.exe [2004-11-29 569405]
                  Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe [2008-05-26 123904]

                  [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
                  "{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2008-05-26 304128]

                  [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\IntelWireless]
                  2004-10-15 10:27 110592 c:\program files\Intel\Wireless\Bin\LgNotify.dll

                  [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
                  BootExecute REG_MULTI_SZ autocheck autochk /p \??\H:\[u]0/uautocheck autochk *

                  [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
                  "btwdins"=2 (0x2)

                  [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
                  "ctfmon.exe"=c:\windows\system32\ctfmon.exe

                  [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
                  "MSConfig"=c:\windows\pchealth\helpctr\Binaries\MSCONFIG.EXE /auto
                  "QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime
                  "SoundMan"=SOUNDMAN.EXE
                  "SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_06\bin\jusched.exe"
                  "TkBellExe"="c:\program files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

                  [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
                  "BluetoothAuthenticationAgent"=rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
                  "TkBellExe"="c:\program files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

                  [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall]
                  "DisableMonitoring"=dword:00000001

                  [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
                  "EnableFirewall"= 0 (0x0)

                  [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
                  "%ProgramFiles%\\Microsoft Games\\Flight Simulator 9\\fs9.exe"=
                  "%WinDir%\\system32\\fxsclnt.exe"=
                  "c:\\WINDOWS\\system32\\sessmgr.exe"=
                  "c:\\Program Files\\Network Associates\\VirusScan\\shcfg32.exe"=
                  "c:\\Program Files\\Network Associates\\VirusScan\\ScnCfg32.Exe"=
                  "c:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe"=
                  "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
                  "%windir%\\system32\\sessmgr.exe"=
                  "c:\\Program Files\\Messenger\\msmsgs.exe"=

                  [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
                  "AllowInboundEchoRequest"= 1 (0x1)

                  R1 Hotkey;Hotkey;c:\windows\system32\drivers\HOTKEY.sys [2008-05-10 9867]
                  R1 NaiAvTdi1;NaiAvTdi1;c:\windows\system32\drivers\mvstdi5x.sys [2009-03-03 58016]
                  S1 mailKmd;mailKmd; [x]
                  S1 Wbutton;Wbutton;c:\windows\system32\drivers\Wbutton.sys --> c:\windows\system32\drivers\Wbutton.sys [?]
                  S3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [2005-01-12 945152]
                  S3 flash;flash;c:\windows\system32\drivers\flash.sys [2008-05-10 7040]
                  S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2008-08-15 29744]
                  S3 K320bus;Sony Ericsson K320 driver (WDM);c:\windows\system32\drivers\K320bus.sys [2007-11-17 61504]
                  S3 K320mdfl;Sony Ericsson K320 USB WMC Modem Filter;c:\windows\system32\drivers\K320mdfl.sys [2007-11-17 9328]
                  S3 K320mdm;Sony Ericsson K320 USB WMC Modem Driver;c:\windows\system32\drivers\K320mdm.sys [2007-11-17 97056]
                  S3 K320mgmt;Sony Ericsson K320 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\K320mgmt.sys [2007-11-17 88560]
                  S3 K320obex;Sony Ericsson K320 USB WMC OBEX Interface;c:\windows\system32\drivers\K320obex.sys [2007-11-17 86368]

                  [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
                  p2psvc REG_MULTI_SZ p2psvc p2pimsvc p2pgasvc PNRPSvc

                  [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
                  "c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
                  .
                  - - - - ORPHELINS SUPPRIMES - - - -

                  WebBrowser-{3041D03E-FD4B-44E0-B742-2D9B88305F98} - (no file)

                  .
                  ------- Examen supplémentaire -------
                  .
                  uStart Page = hxxp://www.google.fr/
                  mWindow Title =
                  IE: &Recherche AOL Toolbar - c:\program files\AOL Toolbar\toolbar.dll/SEARCH.HTML
                  IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
                  IE: Envoyer à &Bluetooth - c:\program files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
                  Trusted Zone: internet
                  Trusted Zone: mcafee.com
                  FF - ProfilePath - c:\documents and settings\christian\Application Data\Mozilla\Firefox\Profiles\2s9386tz.default\
                  FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
                  FF - prefs.js: browser.search.selectedEngine - Ask
                  FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr/
                  FF - prefs.js: keyword.URL - hxxp://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q=
                  FF - component: c:\program files\Mozilla Firefox\components\GoogleDesktopMozilla.dll
                  FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
                  FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
                  FF - plugin: c:\program files\Mozilla Firefox\plugins\npGoogleGadgetPluginFirefoxWin.dll
                  .

                  **************************************************************************

                  catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                  Rootkit scan 2009-03-28 12:10:57
                  Windows 5.1.2600 Service Pack 3 NTFS

                  Recherche de processus cachés ...

                  Recherche d'éléments en démarrage automatique cachés ...

                  Recherche de fichiers cachés ...

                  Scan terminé avec succès
                  Fichiers cachés: 0

                  **************************************************************************
                  .
                  --------------------- CLES DE REGISTRE BLOQUEES ---------------------

                  [HKEY_USERS\.Default\Software\Autodesk\Autodesk Digital Signatures]
                  @DACL=(02 0000)

                  [HKEY_USERS\.Default\Software\HotkeyPanel\1]
                  @DACL=(02 0000)
                  "Name"="c:\\Program Files\\Launch Manager\\hotkey.html"

                  [HKEY_USERS\.Default\Software\HotkeyPanel\11]
                  @DACL=(02 0000)
                  "Name"="\"c:\\Program Files\\Launch Manager\\fn.exe\""
                  "NameDesc"="Launch Manager"

                  [HKEY_USERS\.Default\Software\HotkeyPanel\12]
                  @DACL=(02 0000)
                  "Name"="\"c:\\Program Files\\Launch Manager\\fn.exe\""
                  "NameDesc"="Launch Manager"

                  [HKEY_USERS\.Default\Software\HotkeyPanel\31]
                  @DACL=(02 0000)
                  "Name"="\"c:\\Program Files\\Outlook Express\\msimn.exe\""
                  "NameDesc"="E-Mail"

                  [HKEY_USERS\.Default\Software\HotkeyPanel\36]
                  @DACL=(02 0000)
                  "Name"="\"c:\\Program Files\\Internet Explorer\\iexplore.exe\""
                  "NameDesc"="WWW"

                  [HKEY_USERS\.Default\Software\Local AppWizard-Generated Applications\LaunchAp]
                  @DACL=(02 0000)

                  [HKEY_USERS\.Default\Software\Local AppWizard-Generated Applications\Wbutton]
                  @DACL=(02 0000)

                  [HKEY_USERS\.Default\Software\Macromedia\FlashPlayer]
                  @DACL=(02 0000)

                  [HKEY_USERS\.Default\Software\Macromedia\Shockwave 10]
                  @DACL=(02 0000)

                  [HKEY_USERS\S-1-5-21-3958462218-115887364-3908271126-1010\Software\Ahead\Nero - Burning Rom\Settings\NeroIsoListView]
                  @DACL=(02 0000)
                  @SACL=
                  "FILENAME"="0,120,0,1"
                  "FILESIZE"="1,90,1,1"
                  "FILETYPE"="2,60,0,1"
                  "FILEDATE"="3,70,0,1"
                  "FILEORIGIN"="4,150,0,1"
                  "FILEATTRIBUTE"="5,60,0,0"
                  "FILEPRIORITY"="6,80,0,0"

                  [HKEY_USERS\S-1-5-21-3958462218-115887364-3908271126-1010\Software\Local AppWizard-Generated Applications\LaunchAp\Settings]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_USERS\S-1-5-21-3958462218-115887364-3908271126-1010\Software\Local AppWizard-Generated Applications\MMDiag\Settings]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_USERS\S-1-5-21-3958462218-115887364-3908271126-1010\Software\Local AppWizard-Generated Applications\Wbutton\Settings]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_USERS\S-1-5-21-3958462218-115887364-3908271126-1010\Software\Microsoft\Internet Explorer\Default MHTML Editor\shell]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_USERS\S-1-5-21-3958462218-115887364-3908271126-1010\Software\Microsoft\SystemCertificates\AddressBook*]
                  @Allowed: (Read) (RestrictedCode)
                  @Allowed: (Read) (RestrictedCode)

                  [HKEY_LOCAL_MACHINE\software\ATI Technologies Inc.\Pilotes ATI]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\Classes\Applications\PHOTOED.EXE\shell]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\Classes\Software\RealNetworks\RealJukebox\1.0\Preferences\DisplayName]
                  @DACL=(02 0000)
                  @SACL=
                  @="RealPlayer"

                  [HKEY_LOCAL_MACHINE\software\Classes\Software\RealNetworks\RealJukebox\1.0\Preferences\MainApp]
                  @DACL=(02 0000)
                  @SACL=
                  @="c:\\Program Files\\Real\\RealPlayer\\realjbox.exe"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Advanced INF Setup\IE40.BrowseUI\RegBackup]
                  @DACL=(02 0000)

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Advanced INF Setup\IEHomePageInfo\RegBackup]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\10.0]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\7.0]
                  @DACL=(02 0000)

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\Monitors]
                  @DACL=(02 0000)

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\Monitors\//./DISPLAY1\[u]0/u,0,1280,768]
                  @DACL=(02 0000)

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\services]
                  @DACL=(02 0000)
                  @SACL=
                  "NoServices"=dword:00000000

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\Settings]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\ShimInclusionList\FIREFOX.EXE]
                  @DACL=(02 0000)

                  [HKEY_LOCAL_MACHINE\software\Microsoft\MediaPlayer\UIPlugins\{292AE934-4F49-40bb-9E7E-6F6398ED9C31}]
                  @DACL=(02 0000)
                  @SACL=
                  "FriendlyName"="Plug-in Nero Fast CD-Burning"
                  "Description"="Graver votre CD"
                  "Capabilities"=dword:40000001

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*]
                  "C040110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Setup\ExceptionComponents\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}]
                  @DACL=(02 0000)
                  @SACL=
                  "FriendlyName"="Windows Media Files"
                  "ComponentGUID"="{3FDF25EE-E592-4495-8391-6E9C504DAC2B}"
                  "Version"=dword:000a0000
                  "Sub-Version"=dword:00000e3e
                  "ExceptionInfName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}\\WMSET10.inf"
                  "ExceptionCatalogName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{3FDF25EE-E592-4495-8391-6E9C504DAC2B}\\wmset10.cat"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Setup\ExceptionComponents\{60204BB3-7078-4F70-8F69-68297621941C}]
                  @DACL=(02 0000)
                  @SACL=
                  "FriendlyName"="Windows Media Files"
                  "ComponentGUID"="{60204BB3-7078-4F70-8F69-68297621941C}"
                  "Version"=dword:000a0000
                  "Sub-Version"=dword:00000e3e
                  "ExceptionInfName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{60204BB3-7078-4F70-8F69-68297621941C}\\MPSTUB10.inf"
                  "ExceptionCatalogName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{60204BB3-7078-4F70-8F69-68297621941C}\\mpstub10.cat"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Setup\ExceptionComponents\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}]
                  @DACL=(02 0000)
                  @SACL=
                  "FriendlyName"="Windows Media Files"
                  "ComponentGUID"="{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}"
                  "Version"=dword:000a0000
                  "Sub-Version"=dword:00000e3e
                  "ExceptionInfName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}\\MPCD10.inf"
                  "ExceptionCatalogName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{CFB4B314-0328-45E1-94AF-45A3F5F48E0B}\\mpcd10.cat"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Setup\ExceptionComponents\{DD90D410-1823-43EB-9A16-A2331BF08799}]
                  @DACL=(02 0000)
                  @SACL=
                  "FriendlyName"="Windows Media Files"
                  "ComponentGUID"="{DD90D410-1823-43EB-9A16-A2331BF08799}"
                  "Version"=dword:000a0000
                  "Sub-Version"=dword:00000e3e
                  "ExceptionInfName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{DD90D410-1823-43EB-9A16-A2331BF08799}\\WMP10.inf"
                  "ExceptionCatalogName"=expand:"c:\\WINDOWS\\RegisteredPackages\\{DD90D410-1823-43EB-9A16-A2331BF08799}\\wmp10.cat"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Setup\OptionalComponents\SwDir]
                  @DACL=(02 0000)
                  @SACL=
                  "Installed"="1"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Setup\OptionalComponents\SwFlash]
                  @DACL=(02 0000)
                  @SACL=
                  "Installed"="1"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows Media Device Manager\Plugins\SCP\SCPTRANS]
                  @DACL=(02 0000)
                  @SACL=
                  "ProgID"="MsScp.SCPTRANS.1"

                  [HKEY_LOCAL_MACHINE\software\Microsoft\Windows Media Device Manager\Plugins\SP\NeroBurnPlugin]
                  @DACL=(02 0000)
                  @SACL=
                  "ProgID"="MDNeroBurnPlugin.MDNeroBurnPlugin"

                  [HKEY_LOCAL_MACHINE\software\MozillaPlugins\@viewpoint.com/VMP\MimeTypes]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\MozillaPlugins\@viewpoint.com/VMP\Suffixes]
                  @DACL=(02 0000)
                  @SACL=
                  "mtx"=""
                  "mtz"=""
                  "mts"=""

                  [HKEY_LOCAL_MACHINE\software\Obsidian\Star Wars(tm) Knights of the Old Republic(tm) II: The Sith Lords(tm)]
                  @DACL=(02 0000)

                  [HKEY_LOCAL_MACHINE\software\Realtek Semiconductor Corp.\Realtek AC'97 Audio]
                  @DACL=(02 0000)
                  @SACL=

                  [HKEY_LOCAL_MACHINE\software\ViaMichelin\ViaMichelin Navigation]
                  @DACL=(02 0000)
                  .
                  --------------------- DLLs chargées dans les processus actifs ---------------------

                  - - - - - - - > 'winlogon.exe'(1144)
                  c:\windows\system32\Ati2evxx.dll
                  c:\program files\Intel\Wireless\Bin\LgNotify.dll

                  - - - - - - - > 'lsass.exe'(1200)
                  c:\windows\system32\EntApi.dll
                  .
                  ------------------------ Autres processus actifs ------------------------
                  .
                  c:\windows\system32\ati2evxx.exe
                  c:\program files\Intel\Wireless\Bin\EvtEng.exe
                  c:\program files\Intel\Wireless\Bin\S24EvMon.exe
                  c:\program files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe
                  c:\program files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
                  c:\program files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
                  c:\program files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
                  c:\program files\Network Associates\Common Framework\FrameworkService.exe
                  c:\program files\Network Associates\VirusScan\Mcshield.exe
                  c:\program files\Network Associates\VirusScan\VsTskMgr.exe
                  c:\progra~1\NETWOR~1\COMMON~1\naPrdMgr.exe
                  c:\program files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
                  c:\program files\Intel\Wireless\Bin\OProtSvc.exe
                  c:\program files\Intel\Wireless\Bin\RegSrvc.exe
                  c:\windows\system32\tcpsvcs.exe
                  c:\windows\system32\snmp.exe
                  c:\windows\system32\searchindexer.exe
                  c:\program files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
                  c:\program files\Intel\Wireless\Bin\ZCfgSvc.exe
                  c:\program files\Windows Media Player\wmpnetwk.exe
                  c:\progra~1\Intel\Wireless\Bin\1XConfig.exe
                  c:\windows\system32\ati2evxx.exe
                  c:\windows\system32\rundll32.exe
                  c:\progra~1\COMMON~1\X10\Common\X10nets.exe
                  c:\windows\system32\wscntfy.exe
                  c:\windows\system32\verclsid.exe
                  .
                  **************************************************************************
                  .
                  Heure de fin: 2009-03-28 12:16:04 - La machine a redémarré
                  ComboFix-quarantined-files.txt 2009-03-28 11:15:56

                  Avant-CF: 5 783 957 504 octets libres
                  Après-CF: 5,750,374,400 octets libres

                  WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
                  [boot loader]
                  timeout=2
                  default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
                  [operating systems]
                  c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
                  multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect

                  Current=4 Default=4 Failed=0 LastKnownGood=6 Sets=1,2,3,4,5,6
                  533 --- E O F --- 2009-03-23 06:13:57
                  0
              2. Contributeur sécurité
                encore des problèmes?
                0
                1. J'ai toujours les memes symptomes.
                  Je clique, il se passe environ 10 à 15 secondes, comme si je n'avais pas cliqué, avant qu'il commence à chercher la page.
                  0
              3. Et la pages sont toujours aussi longues à charger
                0
                1. Mon cas est il desespéré??
                  J'aimerai tant éviter un réinstal avec formatage.
                  0
              4. Contributeur sécurité
                utilise pour supprimer tes traces

                CCLEANER: (lance un nettoyage et répare 3 fois le registre) sans installer la barre yahoo
                (dans les options puis avancé :désactive la case: effacer les fichiers de plus de 48 heures)
                https://www.malekal.com/tutoriel-ccleaner/
                https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html
                -----------------------

                colle le rapport d'un scan en ligne
                avec un des suivants:

                bitdefender en ligne :
                http://www.bitdefender.fr/scan_fr/scan8/ie.html

                Panda en ligne :
                http://pandasoftware.fr

                Kaspersky en ligne
                https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
                0
                1. Bonjour,

                  BitDefender Online Scanner - Rapport virus en temps réel
                  Généré à: Sun, Mar 29, 2009 - 12:12:19
                  Info d'analyse
                  Fichiers scannés
                  163420
                  Infectés Fichiers
                  2
                  Virus Détectés
                  Adware.NaviPromo.Gen.4
                  1
                  Backdoor.Hupigon.HCU
                  1

                  Ce sommaire du processus d'analyse sera utilisé par les laboratoires Antivirus BitDefender pour créer des statistiques agréguées sur l'activité des virus dans le monde.
                  0
              5. Contributeur sécurité
                tu aurais le rapport complet donnant les fichiers infectés?
                0
                1. Est ce rapport que tu souhaites?

                  BitDefender Online Scanner

                  Rapport d'analyse généré à: Sun, Mar 29, 2009 - 12:07:03

                  Voie d'analyse: C:\;D:\;E:\;F:\;

                  Statistiques

                  Temps

                  00:53:11

                  Fichiers

                  154191

                  Directoires

                  9187

                  Secteurs de boot

                  0

                  Archives

                  3033

                  Paquets programmes

                  10489

                  Résultats

                  Virus identifiés

                  2

                  Fichiers infectés

                  2

                  Fichiers suspects

                  0

                  Avertissements

                  0

                  Désinfectés

                  0

                  Fichiers effacés

                  2

                  Info sur les moteurs

                  Définition virus

                  2815918

                  Version des moteurs

                  AVCORE v1.7 (build 8314.19) (i386) (Sep 29 2008 17:19:14)

                  Analyse des plugins

                  17

                  Archive des plugins

                  45

                  Unpack des plugins

                  7

                  E-mail plugins

                  6

                  Système plugins

                  4

                  Paramètres d'analyse

                  Première action

                  Désinfecté

                  Seconde Action

                  Supprimé

                  Heuristique

                  Oui

                  Acceptez les avertissements

                  Oui

                  Extensions analysées

                  exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;

                  Excludez les extensions

                  Analyse d'emails

                  Oui

                  Analyse des Archives

                  Oui

                  Analyser paquets programmes

                  Oui

                  Analyse des fichiers

                  Oui

                  Analyse de boot

                  Oui

                  Fichier analysé

                  Statut

                  C:\WINDOWS\system32\rygpszh.exe

                  Détecté avec: Adware.NaviPromo.Gen.4

                  C:\WINDOWS\system32\rygpszh.exe

                  Echec de la désinfection

                  C:\WINDOWS\system32\rygpszh.exe

                  Supprimé

                  D:\LOGICIELS\LOGICIEL_AUTOCAD2007\ACAD2007fra-1.bin=>Crack/Intro.exe

                  Infecté par: Backdoor.Hupigon.HCU

                  D:\LOGICIELS\LOGICIEL_AUTOCAD2007\ACAD2007fra-1.bin=>Crack/Intro.exe

                  Supprimé

                  D:\LOGICIELS\LOGICIEL_AUTOCAD2007\ACAD2007fra-1.bin

                  Echec de la mise à jour
                  0
              6. Contributeur sécurité
                télécharge OTMoveIt
                http://oldtimer.geekstogo.com/OTMoveIt3.exe (de Old_Timer) sur ton Bureau.

                double-clique sur OTMoveIt.exe pour le lancer.
                copie la liste qui se trouve en citation ci-dessous,
                et colle-la dans le cadre de gauche de OTMoveIt :Paste instruction for items to be moved.
                (attention bien mettre :files)

                :files
                C:\WINDOWS\system32\rygpszh.exe
                D:\LOGICIELS\LOGICIEL_AUTOCAD2007\ACAD2007fra-1.bin

                clique sur MoveIt! pour lancer la suppression.
                le résultat apparaitra dans le cadre "Results".
                clique sur Exit pour fermer.
                poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

                il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.
                __________________

                Fais un clic droit sur ce lien : (IL-MAFIOSO)
                http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
                Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
                Ensuite double clique sur navilog1.exe pour lancer l'installation.
                Une fois l'installation terminée, le fix s'exécutera automatiquement.
                (Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

                Laisse-toi guider. Au menu principal, choisis 1 et valides.
                (ne fais pas le choix 2,3 ou 4 sans notre avis/accord)

                Patiente jusqu'au message :
                *** Analyse Termine le ..... ***
                Appuie sur une touche comme demandé, le blocnote va s'ouvrir.
                Copie-colle l'intégralité dans une réponse. Referme le blocnote.
                Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
                0
                1. ========== FILES ==========
                  File/Folder C:\WINDOWS\system32\rygpszh.exe not found.
                  D:\LOGICIELS\LOGICIEL_AUTOCAD2007\ACAD2007fra-1.bin moved successfully.

                  OTMoveIt3 by OldTimer - Version 1.0.9.0 log created on 03292009_211300
                  0
                2. @cri94Lorsque j'installe Navilog1, Virus Scan detecte un virus??

                  C:\Program Files\Navilog1\is-6URKH.tmp

                  Que dois je faire
                  0
                3. Contributeur sécurité
                  @cri94désactive ton antivirus puis fais navilog puis le message 28
                  0
              7. Contributeur sécurité
                pardon fais aussi ceci:

                après navilog

                Télécharge OTMoveIt
                http://oldtimer.geekstogo.com/OTMoveIt3.exe (de Old_Timer) sur ton Bureau.

                double-clique sur OTMoveIt.exe pour le lancer.
                copie la liste qui se trouve en citation ci-dessous,
                et colle-la dans le cadre de gauche de OTMoveIt :Paste instruction for items to be moved.
                (attention bien mettre :files)

                :files
                C:\O2C

                clique sur MoveIt! pour lancer la suppression.
                le résultat apparaitra dans le cadre "Results".
                clique sur Exit pour fermer.
                poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

                il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.
                0
                1. Rapport Navilog1
                  Search Navipromo version 3.7.6 commencé le 29/03/2009 à 21:25:38,45

                  !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
                  !!! Postez ce rapport sur le forum pour le faire analyser !!!
                  !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

                  Outil exécuté depuis C:\Program Files\navilog1

                  Mise à jour le 14.03.2009 à 18h00 par IL-MAFIOSO

                  Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
                  X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) M processor 1.70GHz )
                  BIOS : PhoenixBIOS 4.0 Release 6.0
                  USER : christian ( Administrator )
                  BOOT : Normal boot

                  Firewall : ZoneAlarm Firewall 7.0.483.000 (Activated)

                  C:\ (Local Disk) - NTFS - Total:46 Go (Free:5 Go)
                  D:\ (Local Disk) - NTFS - Total:36 Go (Free:2 Go)
                  E:\ (Local Disk) - FAT32 - Total:9 Go (Free:3 Go)
                  F:\ (CD or DVD)
                  G:\ (USB) - FAT - Total:991 Mo (Free:0 Go)
                  H:\ (USB) - FAT - Total:227 Mo (Free:0 Go)

                  Recherche executé en mode normal

                  *** Recherche dossiers dans "C:\WINDOWS" ***

                  *** Recherche dossiers dans "C:\Program Files" ***

                  *** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***

                  *** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***

                  *** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***

                  *** Recherche dossiers dans "C:\Documents and Settings\christian\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Marion\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Maxime\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Papa\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\PROPRI~1\applic~1" ***

                  *** Recherche dossiers dans "C:\Documents and Settings\christian\locals~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Marion\locals~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Maxime\locals~1\applic~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Papa\locals~1\applic~1" ***

                  *** Recherche dossiers dans "C:\Documents and Settings\christian\menudm~1\progra~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\INVIT~1\menudm~1\progra~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Marion\menudm~1\progra~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Maxime\menudm~1\progra~1" ***

                  *** Recherche dossiers dans "C:\DOCUME~1\Papa\menudm~1\progra~1" ***

                  *** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
                  pour + d'infos : http://www.gmer.net

                  *** Recherche avec GenericNaviSearch ***
                  !!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
                  !!! A vérifier impérativement avant toute suppression manuelle !!!

                  * Recherche dans "C:\WINDOWS\system32" *

                  * Recherche dans "C:\Documents and Settings\christian\locals~1\applic~1" *

                  * Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *

                  * Recherche dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" *

                  * Recherche dans "C:\DOCUME~1\Marion\locals~1\applic~1" *

                  * Recherche dans "C:\DOCUME~1\Maxime\locals~1\applic~1" *

                  * Recherche dans "C:\DOCUME~1\Papa\locals~1\applic~1" *

                  *** Recherche fichiers ***

                  *** Recherche clés spécifiques dans le Registre ***
                  !! Les clés trouvées ne sont pas forcément infectées !!

                  *** Module de Recherche complémentaire ***
                  (Recherche fichiers spécifiques)

                  1)Recherche nouveaux fichiers Instant Access :

                  2)Recherche Heuristique :

                  * Dans "C:\WINDOWS\system32" :

                  * Dans "C:\Documents and Settings\christian\locals~1\applic~1" :

                  * Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" :

                  * Dans "C:\DOCUME~1\INVIT~1\locals~1\applic~1" :

                  * Dans "C:\DOCUME~1\Marion\locals~1\applic~1" :

                  * Dans "C:\DOCUME~1\Maxime\locals~1\applic~1" :

                  * Dans "C:\DOCUME~1\Papa\locals~1\applic~1" :

                  3)Recherche Certificats :

                  Certificat Egroup absent !
                  Certificat Electronic-Group trouvé !
                  Certificat Montorgueil absent !
                  Certificat OOO-Favorit trouvé !
                  Certificat Sunny-Day-Design-Ltd absent !

                  4)Recherche autres dossiers et fichiers connus :

                  *** Analyse terminée le 29/03/2009 à 21:32:43,85 ***
                  0
              8. ========== FILES ==========
                C:\O2C moved successfully.

                OTMoveIt3 by OldTimer - Version 1.0.9.0 log created on 03292009_213755
                0
                1. Contributeur sécurité
                  = Lance navilog1
                  = Cette fois-ci choisi l'option 2
                  = Navilog va faire le nettoyage.. patient jusqu'à ce qui soit marqué *** Nettoyage Termine le ..... ***
                  = Un rapport va être génrer sur ton C:\ qui sera en option 2
                  Note: le bureau disparaît

                  = colle le contenu du rapport de navilog (qui est en option2)

                  PS:Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
                  Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "exécuter"
                  Tape explorer et valide. Celà te fera apparaitre ton bureau.

                  ___________________

                  Télécharge RavAntivirus d'Evosla :
                  http://ww25.evosla.com/compteur.php?soft=rav_antivirus

                  # Si tu as une clé USB, disque dur externe, etc, branche-les sans les ouvrir avant de lancer ce FIX
                  # Fais un clic droit sur le fichier .ZIP > Extraire sur > le Bureau
                  # Doucle-clique sur >> RAV.exe << afin de lancer l'outil.
                  # Une fois RAV ANTIVIRUS lancé, laisse-le réagir , il scanne automatiquement tout les lecteurs (disques fixes et amovibles)
                  # Si infection > un log s'établira, sinon le soft affichera (très rapide) ==>Votre Ordinateur est sain .
                  # Retire tes disques amovibles et redémarrez votre ordinateur.
                  # Poste le rapport, si infection!

                  2/ Télécharge sur le bureau Flash Disinfector (de SUBS) à cette adresse : http://www.techsupportforum.com/sectools/sUBs/Flash_Disinfector.exe

                  Double-clique sur l’icône.
                  Les icônes vont disparaître. C’est normal.
                  Si un rapport est généré en cas d'infection, sauvegarde-le sur le bureau, et poste le ensuite
                  Redémarre ensuite le PC.

                  _________________

                  Télécharge ToolsCleaner sur ton bureau.
                  --> http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
                  # Clique sur Recherche et laisse le scan agir ...
                  # Clique sur Suppression pour finaliser.
                  # Tu peux, si tu le souhaites, te servir des Options facultatives.
                  # Clique sur Quitter pour obtenir le rapport.
                  # Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
                  _________________

                  encore des soucis?
                  0
                  1. Probleme!!!

                    Navilog ne s'est pas bien déroulé
                    à l'étape GenericNaviSearch après le reboot -> accès refusé

                    Navilog planté et j'ai du fermer

                    Que dois je faire
                    0
                2. Contributeur sécurité
                  désactive ton antivirus puis refais navilog
                  0
                  1. Meme probleme pour navilog malgre la désactivation Viruscan
                    0
                • 1
                • 2
                • 3