Cheval de troie Zapchast

Bonjour,
Depuis peu ,chaque fois que je boot mon pc , Nod32 me detecte un trojan (Zapchast) dans un fichier c:\a.bat qu'il met en quarantaine.Malgré plusieurs scan complet qui ne donne p)as de résultat , à chaque boot ça revient . Pourriez-vous me donner un coup de main ?

Merci

Leffe
Configuration: Windows Vista
Internet Explorer 7.0

20 réponses

  1. voici le log hijackthis :

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:17:25, on 25/04/2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Program Files\ESET\ESET Smart Security\egui.exe
    C:\Program Files\Creative\DVDAudio\CTDVDDET.exe
    C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe
    C:\Program Files\Logitech\QuickCam\Quickcam.exe
    C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
    C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
    C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe
    C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
    C:\Windows\System32\CTHELPER.EXE
    C:\Windows\System32\Ctxfihlp.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Windows\SYSTEM32\CTXFISPI.EXE
    C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe
    C:\Program Files\Creative\Entertainment Center\EAXLoadr.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Program Files\Creative\ShareDLL\CADI\NotiMan.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Windows\system32\nod6441.exe
    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.goggle.be/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\DVDAudio\CTDVDDET.EXE"
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
    O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
    O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
    O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
    O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
    O4 - HKLM\..\Run: [Module Loader] C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe -StartUpRun
    O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"
    O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
    O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
    O4 - HKLM\..\Run: [ctfmon] nod6441.exe
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKLM\..\RunServices: [ctfmon] nod6441.exe
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [Creative MediaSource Go] "C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe" /SCB
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15101/CTSUEng.cab
    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15107/CTPID.cab
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
    O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
    O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
    O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
    O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
    O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
    O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
    0
    1. Contributeur sécurité
      Bonjour ;

      le ver Zapchast se propage par le biais de canal IRC (de type Mirc) .

      1) Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

      2) Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre le sur ton Bureau à partir de ce lien :

      https://www.malwarebytes.com/

      3) A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.

      4) Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.

      5) Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.

      6) MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse. Comme MBAM se met automatiquement à jour en fin d'installation, clique sur OK pour fermer la boîte de dialogue. La fenêtre principale de MBAM s'affiche :

      7) Dans l'onglet analyse, vérifie que "Exécuter un examen complet" est coché et clique sur le bouton Rechercher pour démarrer l'analyse.

      8) MBAM analyse ton ordinateur. L'analyse peut prendre un certain temps. Il suffit de vérifier de temps en temps son avancement.

      9) A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.

      10) Si des malwares ont été détectés, leur liste s'affiche.
      En cliquant sur Suppression (?) , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

      11) MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Ferme le Bloc-notes. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)

      12) Ferme MBAM en cliquant sur Quitter.

      13) Poste le rapport dans ta réponse

      0
      1. Voici le log de malwarebytes ( 3 menaces détectées dont 2 effacées directement et une autre au reboot).
        Je n'ai plus eu d'alerte de nod 32 au reboot d'ailleurs

        Malwarebytes' Anti-Malware 1.36
        Version de la base de données: 2039
        Windows 6.0.6001 Service Pack 1

        25/04/2009 16:54:35
        mbam-log-2009-04-25 (16-54-35).txt

        Type de recherche: Examen complet (C:\|D:\|E:\|)
        Eléments examinés: 291165
        Temps écoulé: 49 minute(s), 21 second(s)

        Processus mémoire infecté(s): 0
        Module(s) mémoire infecté(s): 0
        Clé(s) du Registre infectée(s): 0
        Valeur(s) du Registre infectée(s): 2
        Elément(s) de données du Registre infecté(s): 0
        Dossier(s) infecté(s): 0
        Fichier(s) infecté(s): 1

        Processus mémoire infecté(s):
        (Aucun élément nuisible détecté)

        Module(s) mémoire infecté(s):
        (Aucun élément nuisible détecté)

        Clé(s) du Registre infectée(s):
        (Aucun élément nuisible détecté)

        Valeur(s) du Registre infectée(s):
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ctfmon (Trojan.Zapchast) -> Quarantined and deleted successfully.
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\ctfmon (Trojan.Zapchast) -> Quarantined and deleted successfully.

        Elément(s) de données du Registre infecté(s):
        (Aucun élément nuisible détecté)

        Dossier(s) infecté(s):
        (Aucun élément nuisible détecté)

        Fichier(s) infecté(s):
        C:\Windows\System32\nod6441.exe (Backdoor.Bot) -> Delete on reboot.
        0
        1. Contributeur sécurité
          salut leffe
          salut jérôme
          Marrant ça! t'habite près de Dinant?
          j'ai habité Bouvignes... :))

          0
          1. salut ,

            moi je suis de Nivelles

            Alexis
            0
        2. Contributeur sécurité
          Coucou chimay ;)

          Leffe :

          On va vérifier que tu n'est rien d'autre :

          Télécharge ici :

          http://images.malwareremoval.com/random/RSIT.exe

          random's system information tool (RSIT) par random/random et sauvegarde-le sur le Bureau.

          Double-clique sur RSIT.exe afin de lancer RSIT.

          Lis le contenu de l'écran Disclaimer puis clique sur Continue (si tu acceptes les conditions).

          Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

          Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

          Poste le contenu de log.txt (<<qui sera affiché)
          ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

          NB : Les rapports sont sauvegardés dans le dossier C:\rsit

          Aide en images si besoin
          0
          1. Voici les logs demandés :

            log.txt :

            Logfile of random's system information tool 1.06 (written by random/random)
            Run by Alexis at 2009-04-26 05:08:28
            Microsoft® Windows Vista™ Édition Intégrale Service Pack 1
            System drive C: has 664 GB (93%) free of 715 GB
            Total RAM: 2046 MB (55% free)

            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 5:08:35, on 26/04/2009
            Platform: Windows Vista SP1 (WinNT 6.00.1905)
            MSIE: Internet Explorer v8.00 (8.00.6001.18702)
            Boot mode: Normal

            Running processes:
            C:\Windows\system32\Dwm.exe
            C:\Windows\Explorer.EXE
            C:\Windows\system32\taskeng.exe
            C:\Program Files\Windows Defender\MSASCui.exe
            C:\Program Files\ESET\ESET Smart Security\egui.exe
            C:\Program Files\Creative\DVDAudio\CTDVDDET.exe
            C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
            C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe
            C:\Program Files\Logitech\QuickCam\Quickcam.exe
            C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
            C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
            C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe
            C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
            C:\Windows\System32\CTHELPER.EXE
            C:\Windows\System32\Ctxfihlp.exe
            C:\Program Files\Windows Sidebar\sidebar.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe
            C:\Windows\ehome\ehtray.exe
            C:\Program Files\Windows Media Player\wmpnscfg.exe
            C:\Windows\SYSTEM32\CTXFISPI.EXE
            C:\Program Files\Logitech\SetPoint\SetPoint.exe
            C:\Program Files\Creative\Entertainment Center\EAXLoadr.exe
            C:\Windows\ehome\ehmsas.exe
            C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
            C:\Program Files\Creative\ShareDLL\CADI\NotiMan.exe
            C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
            C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
            C:\Program Files\Windows Live\Contacts\wlcomm.exe
            C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
            C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
            C:\Windows\System32\mobsync.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Program Files\UltraLeecher\Ultraleecher.exe
            C:\Program Files\UltraLeecher\Ultraleecher.exe
            C:\Program Files\QuickPar\QuickPar.exe
            d:\Documents\Desktop\RSIT.exe
            C:\Program Files\Trend Micro\HijackThis\Alexis.exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.goggle.be/
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
            R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
            O1 - Hosts: ::1 localhost
            O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
            O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
            O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
            O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
            O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\DVDAudio\CTDVDDET.EXE"
            O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
            O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
            O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
            O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
            O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
            O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
            O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
            O4 - HKLM\..\Run: [Module Loader] C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe -StartUpRun
            O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"
            O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
            O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
            O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
            O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
            O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
            O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
            O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
            O4 - HKCU\..\Run: [Creative MediaSource Go] "C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe" /SCB
            O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
            O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
            O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
            O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
            O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
            O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
            O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
            O13 - Gopher Prefix:
            O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
            O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15101/CTSUEng.cab
            O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
            O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
            O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15107/CTPID.cab
            O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
            O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
            O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
            O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
            O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
            O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
            O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
            O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
            O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
            O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
            O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
            O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
            O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
            O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
            0
            1. Contributeur sécurité
              Il manque un morceau du rapport RSIT .
              0
              1. j'essaie de mettre la suite mais ça à pas l'air de marcher ....
                0
                1. Contributeur sécurité
                  J'essaie de mettre la suite mais ça à pas l'air de marcher ....


                  Poste le en deux fois si il le faut .
                  0
                  1. la suite ....

                    2009-04-03 04:07:05 ----A---- C:\Windows\system32\rgb9rast.dll
                    2009-04-03 04:07:05 ----A---- C:\Windows\system32\resutils.dll
                    2009-04-03 04:07:05 ----A---- C:\Windows\system32\reset.exe
                    2009-04-03 04:07:05 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scksp.dll
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\schtasks.exe
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\schedsvc.dll
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scesrv.dll
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scecli.dll
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\SCardSvr.dll
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scansetting.dll
                    2009-04-03 04:07:04 ----A---- C:\Windows\system32\sbunattend.exe
                    2009-04-03 04:07:03 ----A---- C:\Windows\system32\sdengin2.dll
                    2009-04-03 04:07:03 ----A---- C:\Windows\system32\sdclt.exe
                    2009-04-03 04:07:03 ----A---- C:\Windows\system32\sdchange.exe
                    2009-04-03 04:07:03 ----A---- C:\Windows\system32\scrptadm.dll
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\sbeio.dll
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\sbe.dll
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\rasdiag.dll
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\raschap.dll
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\RacEngn.dll
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\RacAgent.exe
                    2009-04-03 04:07:01 ----A---- C:\Windows\system32\qwinsta.exe
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasdlg.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasctrs.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rascfg.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasauto.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasapi32.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\query.exe
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qedit.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qdvd.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qdv.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\QCLIPROV.DLL
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qcap.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qasf.dll
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qappsrv.exe
                    2009-04-03 04:07:00 ----A---- C:\Windows\system32\QAGENTRT.DLL
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\rdrleakdiag.exe
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\rdpwsx.dll
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\qwave.dll
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\QUTIL.DLL
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\quser.exe
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\Query.dll
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\QSVRMGMT.DLL
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\QSHVHOST.DLL
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\qprocess.exe
                    2009-04-03 04:06:59 ----A---- C:\Windows\system32\qmgr.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\remotepg.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\RelMon.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rekeywiz.exe
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\regsvc.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\regini.exe
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\RegCtrl.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\regapi.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\reg.exe
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rdpendp.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rdpencom.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\RDPENCDD.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rasphone.exe
                    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rasmontr.dll
                    2009-04-03 04:06:58 ----A---- C:\Windows\regedit.exe
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rastls.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasppp.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasplap.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\RASMM.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasmans.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasman.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasgcw.dll
                    2009-04-03 04:06:57 ----A---- C:\Windows\system32\raserver.exe
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rdpdd.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rdpclip.exe
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rdpcfgex.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rastapi.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rasqec.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3dim700.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3dim.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d9.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d8.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10core.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10_1core.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10_1.dll
                    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10.dll
                    2009-04-03 04:06:55 ----A---- C:\Windows\system32\devenum.dll
                    2009-04-03 04:06:55 ----A---- C:\Windows\system32\Defrag.exe
                    2009-04-03 04:06:55 ----A---- C:\Windows\system32\ddraw.dll
                    2009-04-03 04:06:55 ----A---- C:\Windows\system32\dbnetlib.dll
                    2009-04-03 04:06:55 ----A---- C:\Windows\system32\dbgeng.dll
                    2009-04-03 04:06:55 ----A---- C:\Windows\system32\d3dxof.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\dbghelp.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\csrstub.exe
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\csrss.exe
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\csrsrv.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cscui.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cscsvc.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cscapi.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptui.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptsvc.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptnet.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptdll.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\crypt32.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\credui.dll
                    2009-04-03 04:06:54 ----A---- C:\Windows\system32\credssp.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dispex.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dispdiag.exe
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dispci.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\diskraid.exe
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\diskpart.exe
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dinput8.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dimsroam.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dimsjob.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\diantz.exe
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\cscobj.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\CscMig.dll
                    2009-04-03 04:06:53 ----A---- C:\Windows\system32\cscdll.dll
                    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfsr.exe
                    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfrgui.exe
                    2009-04-03 04:06:52 ----A---- C:\Windows\system32\DfrgNtfs.exe
                    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfrgfat.exe
                    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfdts.dll
                    2009-04-03 04:06:52 ----A---- C:\Windows\system32\devmgr.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\diagperf.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dhcpsapi.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\DHCPQEC.DLL
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dhcpcsvc6.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dhcpcsvc.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\DfsShlEx.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dfrgifc.exe
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\DFDWiz.exe
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\cmdial32.dll
                    2009-04-03 04:06:51 ----A---- C:\Windows\system32\cmcfg32.dll
                    2009-04-03 04:06:50 ----A---- C:\Windows\system32\cmmon32.exe
                    2009-04-03 04:06:50 ----A---- C:\Windows\system32\cmlua.dll
                    2009-04-03 04:06:50 ----A---- C:\Windows\system32\cmd.exe
                    2009-04-03 04:06:50 ----A---- C:\Windows\system32\clusapi.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\convert.exe
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comuid.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comsnap.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comres.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comrepl.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\ComputerDefaults.exe
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\compstui.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\CompatUI.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmipnpinstall.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmifw.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmicryptinstall.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmdl32.exe
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\clfsw32.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\clbcatq.dll
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cipher.exe
                    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cic.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\consent.exe
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\conime.exe
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\comsvcs.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\comdlg32.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\colorui.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\COLORCNV.DLL
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\colbact.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cofiredm.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmutil.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmstplua.dll
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmstp.exe
                    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmpbk32.dll
                    2009-04-03 04:06:47 ----A---- C:\Windows\system32\els.dll
                    2009-04-03 04:06:47 ----A---- C:\Windows\system32\comctl32.dll
                    2009-04-03 04:06:45 ----A---- C:\Windows\system32\esentutl.exe
                    2009-04-03 04:06:45 ----A---- C:\Windows\system32\esentprf.dll
                    2009-04-03 04:06:45 ----A---- C:\Windows\system32\esent.dll
                    2009-04-03 04:06:44 ----A---- C:\Windows\system32\EncDump.dll
                    2009-04-03 04:06:44 ----A---- C:\Windows\system32\efsadu.dll
                    2009-04-03 04:06:44 ----A---- C:\Windows\system32\eapsvc.dll
                    2009-04-03 04:06:44 ----A---- C:\Windows\system32\EAPQEC.DLL
                    2009-04-03 04:06:44 ----A---- C:\Windows\system32\eappprxy.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\filemgmt.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\feclient.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdWSD.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdWCN.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdSSDP.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdPHost.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdeploy.dll
                    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fde.dll
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\fontsub.dll
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\fontext.dll
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\fmifs.dll
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\FirewallControlPanel.exe
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\FirewallAPI.dll
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\findstr.exe
                    2009-04-03 04:06:27 ----A---- C:\Windows\system32\findnetprinters.dll
                    2009-04-03 04:06:26 ----A---- C:\Windows\system32\f3ahvoas.dll
                    2009-04-03 04:06:26 ----A---- C:\Windows\system32\evr.dll
                    2009-04-03 04:06:26 ----A---- C:\Windows\system32\eventcls.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\extrac32.exe
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\ExplorerFrame.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\expand.exe
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\drmv2clt.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\drmmgrtn.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\driverquery.exe
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dpx.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dps.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dpnet.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dpapimig.exe
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3ui.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3svc.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3msm.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3gpui.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3gpclnt.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3dlg.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3cfg.dll
                    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3api.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dxgi.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dxdiagn.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dxdiag.exe
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\DWWIN.EXE
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\DpiScaling.exe
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnsrslvr.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnshc.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnscacheugc.exe
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnsapi.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmvdsitf.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmutil.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmusic.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmsynth.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmscript.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmocx.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmloader.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmime.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmdskres2.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmdskmgr.dll
                    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmdlgs.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eapphost.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eappgnui.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eappcfg.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eapp3hst.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dxva2.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dwmredir.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dwmapi.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dwm.exe
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dsound.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dskquoui.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dskquota.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dsdmo.dll
                    2009-04-03 04:06:23 ----A---- C:\Windows\system32\drvstore.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\duser.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsuiext.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dssenh.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dssec.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsquery.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsprop.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsauth.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\drvinst.exe
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\authfwcfg.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\AudioEng.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\audiodg.exe
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\audiodev.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\atmfd.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\atl.dll
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\AtBroker.exe
                    2009-04-03 04:06:22 ----A---- C:\Windows\system32\at.exe
                    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AuthFWSnapin.dll
                    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AuthFWGP.dll
                    2009-04-03 04:06:21 ----A---- C:\Windows\system32\auditpol.exe
                    2009-04-03 04:06:21 ----A---- C:\Windows\system32\audiosrv.dll
                    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AudioSes.dll
                    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AUDIOKSE.dll
                    2009-04-03 04:06:19 ----A---- C:\Windows\system32\bcdedit.exe
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bitsadmin.exe
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\BFE.DLL
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bcrypt.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bcdsrv.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bcdprov.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\batt.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\basesrv.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\basecsp.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autoplay.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autofmt.exe
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autoconv.exe
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autochk.exe
                    2009-04-03 04:06:18 ----A---- C:\Windows\system32\authui.dll
                    2009-04-03 04:06:18 ----A---- C:\Windows\bfsvc.exe
                    0
                    1. la suite n°2 ...

                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\AzSqlExt.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\azroleui.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\azroles.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\avrt.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\avifil32.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\authz.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\ACW.exe
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\actxprxy.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\activeds.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\ActiveContentWizard.dll
                      2009-04-03 04:06:17 ----A---- C:\Windows\system32\ActionQueue.dll
                      2009-04-03 04:06:16 ----A---- C:\Windows\system32\aclui.dll
                      2009-04-03 04:06:16 ----A---- C:\Windows\system32\accessibilitycpl.dll
                      2009-04-03 04:06:16 ----A---- C:\Windows\system32\aaclient.dll
                      2009-04-03 04:06:15 ----A---- C:\Windows\system32\apss.dll
                      2009-04-03 04:06:15 ----A---- C:\Windows\system32\appmgr.dll
                      2009-04-03 04:06:15 ----A---- C:\Windows\system32\appmgmts.dll
                      2009-04-03 04:06:15 ----A---- C:\Windows\system32\apircl.dll
                      2009-04-03 04:06:15 ----A---- C:\Windows\system32\apds.dll
                      2009-04-03 04:06:15 ----A---- C:\Windows\system32\amstream.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\appinfo.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\apphelp.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\alg.exe
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\advapi32.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\adtschema.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsnt.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsmsext.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsldpc.dll
                      2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsldp.dll
                      2009-04-03 04:06:13 ----A---- C:\Windows\system32\catsrvut.dll
                      2009-04-03 04:06:13 ----A---- C:\Windows\system32\catsrv.dll
                      2009-04-03 04:06:13 ----A---- C:\Windows\system32\cacls.exe
                      2009-04-03 04:06:13 ----A---- C:\Windows\system32\cabview.dll
                      2009-04-03 04:06:13 ----A---- C:\Windows\system32\cabinet.dll
                      2009-04-03 04:06:13 ----A---- C:\Windows\system32\btpanui.dll
                      2009-04-03 04:06:12 ----A---- C:\Windows\system32\capisp.dll
                      2009-04-03 04:06:12 ----A---- C:\Windows\system32\brcplsiw.dll
                      2009-04-03 04:06:12 ----A---- C:\Windows\system32\brcplsdw.dll
                      2009-04-03 04:06:12 ----A---- C:\Windows\system32\brcpl.dll
                      2009-04-03 04:06:12 ----A---- C:\Windows\system32\BOOTVID.DLL
                      2009-04-03 04:06:12 ----A---- C:\Windows\system32\bootstr.dll
                      2009-04-03 04:06:11 ----A---- C:\Windows\system32\certmgr.dll
                      2009-04-03 04:06:11 ----A---- C:\Windows\system32\bthci.dll
                      2009-04-03 04:06:11 ----A---- C:\Windows\system32\browseui.dll
                      2009-04-03 04:06:11 ----A---- C:\Windows\system32\browser.dll
                      2009-04-03 04:06:11 ----A---- C:\Windows\system32\bridgeunattend.exe
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\chglogon.exe
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\certutil.exe
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\certreq.exe
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\certprop.dll
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\CertEnrollUI.dll
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\CertEnrollCtrl.exe
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\CertEnroll.dll
                      2009-04-03 04:06:09 ----A---- C:\Windows\system32\certcli.dll
                      2009-04-03 04:06:08 ----A---- C:\Windows\system32\chgusr.exe
                      2009-04-03 04:06:08 ----A---- C:\Windows\system32\chgport.exe
                      2009-04-03 04:06:08 ----A---- C:\Windows\system32\change.exe
                      2009-04-03 04:06:08 ----A---- C:\Windows\system32\cfgbkend.dll
                      2009-04-03 04:06:08 ----A---- C:\Windows\system32\cewmdm.dll
                      2009-04-03 04:06:07 ----A---- C:\Windows\system32\cfgmgr32.dll
                      2009-04-03 04:06:07 ----A---- C:\Windows\system32\cdosys.dll
                      2009-04-03 04:06:06 ----A---- C:\Windows\system32\bootcfg.exe
                      2009-04-03 04:06:06 ----A---- C:\Windows\system32\BlbEvents.dll
                      2009-04-03 04:06:06 ----A---- C:\Windows\system32\blb_ps.dll
                      2009-04-03 04:06:06 ----A---- C:\Windows\system32\blackbox.dll
                      2009-04-03 04:06:06 ----A---- C:\Windows\system32\bitsigd.dll
                      2009-04-03 04:06:05 ----A---- C:\Windows\system32\IMJP10K.DLL
                      2009-04-03 04:06:04 ----A---- C:\Windows\system32\imagesp1.dll
                      2009-04-03 04:06:03 ----A---- C:\Windows\system32\imapi2fs.dll
                      2009-04-03 04:06:03 ----A---- C:\Windows\system32\imapi2.dll
                      2009-04-03 04:06:03 ----A---- C:\Windows\system32\imapi.dll
                      2009-04-03 04:06:03 ----A---- C:\Windows\system32\imagehlp.dll
                      2009-04-03 04:06:03 ----A---- C:\Windows\system32\IKEEXT.DLL
                      2009-04-03 04:06:02 ----A---- C:\Windows\system32\input.dll
                      2009-04-03 04:06:02 ----A---- C:\Windows\system32\InkEd.dll
                      2009-04-03 04:06:02 ----A---- C:\Windows\system32\inetppui.dll
                      2009-04-03 04:06:02 ----A---- C:\Windows\system32\inetpp.dll
                      2009-04-03 04:06:02 ----A---- C:\Windows\system32\inetmib1.dll
                      2009-04-03 04:06:01 ----A---- C:\Windows\system32\InfDefaultInstall.exe
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\imm32.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\icaapi.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\iassvcs.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\iassdo.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\iassam.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\iashlpr.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\iasacct.dll
                      2009-04-03 04:05:54 ----A---- C:\Windows\system32\ias.dll
                      2009-04-03 04:05:53 ----A---- C:\Windows\system32\iasrad.dll
                      2009-04-03 04:05:53 ----A---- C:\Windows\system32\iaspolcy.dll
                      2009-04-03 04:05:53 ----A---- C:\Windows\system32\iasnap.dll
                      2009-04-03 04:05:53 ----A---- C:\Windows\system32\IasMigPlugin.dll
                      2009-04-03 04:05:53 ----A---- C:\Windows\system32\httpapi.dll
                      2009-04-03 04:05:52 ----A---- C:\Windows\system32\ifsutil.dll
                      2009-04-03 04:05:52 ----A---- C:\Windows\system32\ifmon.dll
                      2009-04-03 04:05:51 ----A---- C:\Windows\system32\idndl.dll
                      2009-04-03 04:05:51 ----A---- C:\Windows\system32\icsunattend.exe
                      2009-04-03 04:05:51 ----A---- C:\Windows\system32\icsfiltr.dll
                      2009-04-03 04:05:51 ----A---- C:\Windows\system32\icm32.dll
                      2009-04-03 04:05:51 ----A---- C:\Windows\system32\icfupgd.dll
                      2009-04-03 04:05:51 ----A---- C:\Windows\system32\icacls.exe
                      2009-04-03 04:05:49 ----A---- C:\Windows\system32\HotStartUserAgent.dll
                      2009-04-03 04:05:49 ----A---- C:\Windows\system32\hnetmon.dll
                      2009-04-03 04:05:49 ----A---- C:\Windows\system32\hnetcfg.dll
                      2009-04-03 04:05:49 ----A---- C:\Windows\system32\hlink.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSUNATD.exe
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSTIFF.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSMON.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSEXT32.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOVER.exe
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOMPOSE.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOMEX.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOM.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSAPI.dll
                      2009-04-03 04:05:48 ----A---- C:\Windows\system32\FWPUCLNT.DLL
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSXP32.dll
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSUTILITY.dll
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXST30.dll
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSSVC.exe
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSST.dll
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSROUTE.dll
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSRESM.dll
                      2009-04-03 04:05:47 ----A---- C:\Windows\system32\fsmgmt.msc
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\hcrstco.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\hbaapi.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\GuidedHelp.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fwcfg.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fveui.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fveRecover.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fvenotify.exe
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fvecpl.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fveapi.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fundisc.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\ftp.exe
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fsutil.exe
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\framedynos.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\framedyn.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\framebuf.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\system32\fphc.dll
                      2009-04-03 04:05:46 ----A---- C:\Windows\fveupdate.exe
                      2009-04-03 04:05:45 ----A---- C:\Windows\system32\HelpPaneProxy.dll
                      2009-04-03 04:05:45 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs
                      2009-04-03 04:05:45 ----A---- C:\Windows\HelpPane.exe
                      2009-04-03 04:05:44 ----A---- C:\Windows\system32\gpscript.exe
                      2009-04-03 04:05:44 ----A---- C:\Windows\system32\gpscript.dll
                      2009-04-03 04:05:44 ----A---- C:\Windows\system32\getmac.exe
                      2009-04-03 04:05:44 ----A---- C:\Windows\system32\gatherWiredInfo.vbs
                      2009-04-03 04:05:44 ----A---- C:\Windows\system32\gacinstall.dll
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\graftabl.com
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpupdate.exe
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpsvc.dll
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpresult.exe
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpprnext.dll
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpedit.msc
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpedit.dll
                      2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpapi.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiadss.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiadefui.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiaaut.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiaacmgr.exe
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\whealogr.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\WFS.exe
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wfapigp.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wevtutil.exe
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wevtsvc.dll
                      2009-04-03 04:05:37 ----A---- C:\Windows\system32\wevtfwd.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\winusb.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\wintrust.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\winsta.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\winsrv.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\WINSRPC.DLL
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiashext.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiaservc.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiascanprofiles.dll
                      2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiarpc.dll
                      2009-04-03 04:05:34 ----A---- C:\Windows\system32\WinSCard.dll
                      2009-04-03 04:05:34 ----A---- C:\Windows\system32\WinSATAPI.dll
                      2009-04-03 04:05:34 ----A---- C:\Windows\system32\WinSAT.exe
                      2009-04-03 04:05:34 ----A---- C:\Windows\system32\winrsmgr.dll
                      2009-04-03 04:05:33 ----A---- C:\Windows\system32\WLanConn.dll
                      2009-04-03 04:05:33 ----A---- C:\Windows\system32\wlancfg.dll
                      2009-04-03 04:05:33 ----A---- C:\Windows\system32\wlanapi.dll
                      2009-04-03 04:05:33 ----A---- C:\Windows\system32\wkssvc.dll
                      2009-04-03 04:05:33 ----A---- C:\Windows\system32\wisptis.exe
                      2009-04-03 04:05:33 ----A---- C:\Windows\system32\wininit.exe
                      2009-04-03 04:05:32 ----A---- C:\Windows\system32\WinFax.dll
                      2009-04-03 04:05:32 ----A---- C:\Windows\system32\winethc.dll
                      2009-04-03 04:05:32 ----A---- C:\Windows\system32\WindowsUltimateExtrasCPL.dll
                      2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrshost.exe
                      2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrscmd.dll
                      2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrs.exe
                      2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrm.vbs
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\winnsi.dll
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\winmm.dll
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\winlogon.exe
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\wbemcomn.dll
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\wbadmin.exe
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\wavemsp.dll
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\WavDest.dll
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\waitfor.exe
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\w32tm.exe
                      2009-04-03 04:05:30 ----A---- C:\Windows\system32\w32time.dll
                      2009-04-03 04:05:29 ----A---- C:\Windows\system32\vsstrace.dll
                      2009-04-03 04:05:29 ----A---- C:\Windows\system32\vssadmin.exe
                      2009-04-03 04:05:29 ----A---- C:\Windows\system32\vss_ps.dll
                      2009-04-03 04:05:28 ----A---- C:\Windows\system32\VSSVC.exe
                      2009-04-03 04:05:28 ----A---- C:\Windows\system32\vssapi.dll
                      2009-04-03 04:05:27 ----A---- C:\Windows\system32\WebClnt.dll
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\wevtapi.dll
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\wermgr.exe
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\WerFaultSecure.exe
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\WerFault.exe
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\werdiagcontroller.dll
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\wecutil.exe
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\wecsvc.dll
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\wecapi.dll
                      2009-04-03 04:05:26 ----A---- C:\Windows\system32\wdscore.dll
                      2009-04-03 04:05:25 ----A---- C:\Windows\system32\wercplsupport.dll
                      2009-04-03 04:05:25 ----A---- C:\Windows\system32\wercon.exe
                      2009-04-03 04:05:25 ----A---- C:\Windows\system32\wer.dll
                      2009-04-03 04:05:25 ----A---- C:\Windows\system32\wbengine.exe
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wscsvc.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wscproxystub.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wscntfy.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wdigest.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wdi.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wdc.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wcnwiz.dll
                      2009-04-03 04:05:24 ----A---- C:\Windows\system32\wcncsvc.dll
                      2009-04-03 04:05:23 ----A---- C:\Windows\system32\WSDMon.dll
                      2009-04-03 04:05:23 ----A---- C:\Windows\system32\WSDApi.dll
                      2009-04-03 04:05:23 ----A---- C:\Windows\system32\wscmisetup.dll
                      2009-04-03 04:05:23 ----A---- C:\Windows\system32\wscisvif.dll
                      2009-04-03 04:05:23 ----A---- C:\Windows\system32\wscapi.dll
                      2009-04-03 04:05:22 ----A---- C:\Windows\system32\wship6.dll
                      2009-04-03 04:05:22 ----A---- C:\Windows\system32\wshcon.dll
                      2009-04-03 04:05:22 ----A---- C:\Windows\system32\wsecedit.dll
                      2009-04-03 04:05:22 ----A---- C:\Windows\system32\wpdbusenum.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\xcopy.exe
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\ws2_32.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpnpinst.exe
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpdwcn.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\WPDSp.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\WPDShServiceObj.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpdshext.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpd_ci.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpcsvc.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpclsp.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpccpl.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpcao.dll
                      2009-04-03 04:05:21 ----A---- C:\Windows\system32\Wpc.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\XPSSHHDR.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\xmlprovi.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\xmllite.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\xactsrv.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\wzcdlg.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\wvc.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\wusa.exe
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\WUDFx.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\WUDFSvc.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\WUDFPlatform.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\wsnmp32.dll
                      2009-04-03 04:05:18 ----A---- C:\Windows\system32\WsmWmiPl.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\xpssvcs.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WUDFHost.exe
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\wtsapi32.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\wsqmcons.exe
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\wsock32.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmSvc.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmRes.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmProv.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmCl.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmAuto.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
                      2009-04-03 04:05:17 ----A---- C:\Windows\system32\WSHTCPIP.DLL
                      2009-04-03 04:05:16 ----A---- C:\Windows\system32\xwizards.dll
                      2009-04-03 04:05:16 ----A---- C:\Windows\system32\wmidx.dll
                      2009-04-03 04:05:16 ----A---- C:\Windows\system32\wmicmiplugin.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\Wldap32.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanui.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlansvc.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlansec.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanpref.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanmsm.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\WlanMmHC.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanhlp.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlangpui.dll
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanext.exe
                      2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlandlg.dll
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\wmdrmsdk.dll
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\wmdrmnet.dll
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\wmdrmdev.dll
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\WMASF.DLL
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\WMADMOE.DLL
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\WMADMOD.DLL
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\wlgpclnt.dll
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\WlanMM.dll
                      2009-04-03 04:05:14 ----A---- C:\Windows\system32\WLanHC.dll
                      2009-04-03 04:05:13 ----A---- C:\Windows\system32\WMSPDMOE.DLL
                      2009-04-03 04:05:13 ----A---- C:\Windows\system32\WMSPDMOD.DLL
                      2009-04-03 04:05:13 ----A---- C:\Windows\system32\wmpsrcwp.dll
                      2009-04-03 04:05:13 ----A---- C:\Windows\system32\wmpshell.dll
                      2009-04-03 04:05:13 ----A---- C:\Windows\system32\wmpmde.dll
                      2009-04-03 04:05:13 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
                      2009-04-03 04:05:11 ----A---- C:\Windows\system32\wow32.dll
                      2009-04-03 04:05:11 ----A---- C:\Windows\system32\WMVXENCD.DLL
                      2009-04-03 04:05:11 ----A---- C:\Windows\system32\WMVSENCD.DLL
                      2009-04-03 04:05:11 ----A---- C:\Windows\system32\WMVSDECD.DLL
                      2009-04-03 04:05:10 ----A---- C:\Windows\system32\WMVENCOD.DLL
                      2009-04-03 04:05:10 ----A---- C:\Windows\system32\wmvdspa.dll
                      2009-04-03 04:05:10 ----A---- C:\Windows\system32\WMVDECOD.DLL
                      2009-04-03 04:05:10 ----A---- C:\Windows\system32\wmpdxm.dll
                      2009-04-03 04:05:10 ----A---- C:\Windows\system32\wmiprop.dll
                      2009-04-03 04:05:09 ----A---- C:\Windows\system32\WMPhoto.dll
                      2009-04-03 04:05:09 ----A---- C:\Windows\system32\WMPEncEn.dll
                      2009-04-03 04:05:07 ----A---- C:\Windows\system32\wmpcm.dll
                      2009-04-03 04:05:05 ----A---- C:\Windows\system32\systeminfo.exe
                      2009-04-03 04:05:05 ----A---- C:\Windows\system32\systemcpl.dll
                      2009-04-03 04:05:04 ----A---- C:\Windows\system32\Tabbtn.dll
                      2009-04-03 04:05:04 ----A---- C:\Windows\system32\t2embed.dll
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\tcpmon.dll
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\tcpipcfg.dll
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\tbssvc.dll
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\tbs.dll
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\taskschd.dll
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\taskmgr.exe
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\tasklist.exe
                      2009-04-03 04:05:01 ----A---- C:\Windows\system32\taskkill.exe
                      2009-04-03 04:05:00 ----A---- C:\Windows\system32\tdh.dll
                      2009-04-03 04:05:00 ----A---- C:\Windows\system32\tcpmon.ini
                      2009-04-03 04:05:00 ----A---- C:\Windows\system32\tabcal.exe
                      2009-04-03 04:04:59 ----A---- C:\Windows\system32\taskeng.exe
                      2009-04-03 04:04:59 ----A---- C:\Windows\system32\taskcomp.dll
                      2009-04-03 04:04:59 ----A---- C:\Windows\system32\tapisrv.dll
                      2009-04-03 04:04:59 ----A---- C:\Windows\system32\TapiMigPlugin.dll
                      2009-04-03 04:04:59 ----A---- C:\Windows\system32\TabbtnEx.dll
                      2009-04-03 04:04:58 ----A---- C:\Windows\system32\takeown.exe
                      2009-04-03 04:04:58 ----A---- C:\Windows\system32\srrstr.dll
                      2009-04-03 04:04:58 ----A---- C:\Windows\system32\sqmapi.dll
                      2009-04-03 04:04:58 ----A---- C:\Windows\system32\sqlcese30.dll
                      2009-04-03 04:04:57 ----A---- C:\Windows\system32\sqlsrv32.dll
                      2009-04-03 04:04:57 ----A---- C:\Windows\system32\sqlceqp30.dll
                      2009-04-03 04:04:56 ----A---- C:\Windows\system32\sstpsvc.dll
                      2009-04-03 04:04:56 ----A---- C:\Windows\system32\SSShim.dll
                      2009-04-03 04:04:56 ----A---- C:\Windows\system32\ssdpsrv.dll
                      2009-04-03 04:04:56 ----A---- C:\Windows\system32\srwmi.dll
                      2009-04-03 04:04:54 ----A---- C:\Windows\system32\srvsvc.dll
                      2009-04-03 04:04:52 ----A---- C:\Windows\system32\spwizeng.dll
                      2009-04-03 04:04:52 ----A---- C:\Windows\system32\spoolsv.exe
                      2009-04-03 04:04:52 ----A---- C:\Windows\system32\spoolss.dll
                      2009-04-03 04:04:52 ----A---- C:\Windows\system32\spbcd.dll
                      2009-04-03 04:04:52 ----A---- C:\Windows\system32\SoundRecorder.exe
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\syncui.dll
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\synceng.dll
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\SyncCenter.dll
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\sxstrace.exe
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\spwizres.dll
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\spwizimg.dll
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\sppnp.dll
                      2009-04-03 04:04:51 ----A---- C:\Windows\system32\spopk.dll
                      2009-04-03 04:04:50 ----A---- C:\Windows\system32\SysFxUI.dll
                      2009-04-03 04:04:50 ----A---- C:\Windows\system32\sxsstore.dll
                      2009-04-03 04:04:50 ----A---- C:\Windows\system32\sxs.dll
                      2009-04-03 04:04:50 ----A---- C:\Windows\system32\swprv.dll
                      2009-04-03 04:04:49 ----A---- C:\Windows\system32\syssetup.dll
                      2009-04-03 04:04:49 ----A---- C:\Windows\system32\sysmain.dll
                      2009-04-03 04:04:49 ----A---- C:\Windows\system32\syskey.exe
                      2009-04-03 04:04:49 ----A---- C:\Windows\system32\Storprop.dll
                      2009-04-03 04:04:49 ----A---- C:\Windows\system32\stobject.dll
                      2009-04-03 04:04:49 ----A---- C:\Windows\system32\sti_ci.dll
                      2009-04-03 04:04:48 ----A---- C:\Windows\system32\svchost.exe
                      2009-04-03 04:04:48 ----A---- C:\Windows\system32\sud.dll
                      2009-04-03 04:04:47 ----A---- C:\Windows\system32\userinit.exe
                      2009-04-03 04:04:47 ----A---- C:\Windows\system32\userenv.dll
                      2009-04-03 04:04:47 ----A---- C:\Windows\system32\usercpl.dll
                      2009-04-03 04:04:47 ----A---- C:\Windows\system32\user32.dll
                      2009-04-03 04:04:47 ----A---- C:\Windows\system32\usbperf.dll
                      2009-04-03 04:04:47 ----A---- C:\Windows\system32\usbmon.dll
                      2009-04-03 04:04:46 ----A---- C:\Windows\system32\usp10.dll
                      2009-04-03 04:04:46 ----A---- C:\Windows\system32\usbui.dll
                      2009-04-03 04:04:46 ----A---- C:\Windows\system32\upnphost.dll
                      2009-04-03 04:04:46 ----A---- C:\Windows\system32\upnpcont.exe
                      2009-04-03 04:04:46 ----A---- C:\Windows\system32\upnp.dll
                      2009-04-03 04:04:45 ----A---- C:\Windows\system32\zipfldr.dll
                      2009-04-03 04:04:45 ----A---- C:\Windows\system32\xwtpw32.dll
                      2009-04-03 04:04:45 ----A---- C:\Windows\system32\vga256.dll
                      2009-04-03 04:04:45 ----A---- C:\Windows\system32\untfs.dll
                      2009-04-03 04:04:44 ----A---- C:\Windows\system32\vga.dll
                      2009-04-03 04:04:38 ----A---- C:\Windows\system32\vga64k.dll
                      2009-04-03 04:04:30 ----A---- C:\Windows\system32\VIDRESZR.DLL
                      2009-04-03 04:04:30 ----A---- C:\Windows\system32\vdmdbg.dll
                      2009-04-03 04:04:30 ----A---- C:\Windows\system32\VAN.dll
                      2009-04-03 04:04:30 ----A---- C:\Windows\system32\uudf.dll
                      2009-04-03 04:04:30 ----A---- C:\Windows\system32\Utilman.exe
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\vfwwdm32.dll
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\version.dll
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\verifier.exe
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\verifier.dll
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\vdsutil.dll
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\uxtheme.dll
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\uxsms.dll
                      2009-04-03 04:04:29 ----A---- C:\Windows\system32\utildll.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdsldr.exe
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdsdyn.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdsbas.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\vds_ps.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\vds.exe
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdmredir.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\tscfgwmi.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\trkwks.dll
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\tracerpt.exe
                      2009-04-03 04:04:28 ----A---- C:\Windows\system32\TMM.dll
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\TSTheme.exe
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\TSpkg.dll
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\tskill.exe
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\tsdiscon.exe
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\tscupgrd.exe
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\tscon.exe
                      2009-04-03 04:04:27 ----A---- C:\Windows\system32\TpmInit.exe
                      2009-04-03 04:04:26 ----A---- C:\Windows\system32\tsgqec.dll
                      2009-04-03 04:04:26 ----A---- C:\Windows\system32\tsddd.dll
                      2009-04-03 04:04:26 ----A---- C:\Windows\system32\themecpl.dll
                      2009-04-03 04:04:26 ----A---- C:\Windows\system32\termsrv.dll
                      2009-04-03 04:04:26 ----A---- C:\Windows\system32\termmgr.dll
                      2009-04-03 04:04:25 ----A---- C:\Windows\system32\umb.dll
                      2009-04-03 04:04:25 ----A---- C:\Windows\system32\ulib.dll
                      2009-04-03 04:04:25 ----A---- C:\Windows\system32\TimeDateMUICallback.dll
                      2009-04-03 04:04:25 ----A---- C:\Windows\system32\thumbcache.dll
                      2009-04-03 04:04:25 ----A---- C:\Windows\system32\themeui.dll
                      2009-04-03 04:04:23 ----A---- C:\Windows\system32\unlodctr.exe
                      2009-04-03 04:04:23 ----A---- C:\Windows\system32\UIHub.dll
                      2009-04-03 04:04:22 ----A---- C:\Windows\system32\unregmp2.exe
                      2009-04-03 04:04:22 ----A---- C:\Windows\system32\unbcl.dll
                      2009-04-03 04:04:22 ----A---- C:\Windows\system32\unattendedjoin.exe
                      2009-04-03 04:04:22 ----A---- C:\Windows\system32\unattend.dll
                      2009-04-03 04:04:22 ----A---- C:\Windows\system32\umrdp.dll
                      2009-04-03 04:04:22 ----A---- C:\Windows\system32\umpnpmgr.dll
                      2009-04-03 04:04:21 ----A---- C:\Windows\system32\ucsvc.exe
                      2009-04-03 04:04:21 ----A---- C:\Windows\system32\txfw32.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\UIAutomationCore.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\UI0Detect.exe
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\ufat.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\uexfat.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\uDWM.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\txflog.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\twext.dll
                      2009-04-03 04:04:20 ----A---- C:\Windows\system32\TsWpfWrp.exe
                      2009-04-03 04:02:44 ----A---- C:\Windows\system32\cbsra.exe
                      2009-04-03 03:51:41 ----D---- C:\Users\Alexis\AppData\Roaming\ATI
                      2009-04-03 03:49:48 ----D---- C:\Program Files\ATI Technologies
                      2009-04-03 03:49:46 ----D---- C:\Program Files\ATI
                      2009-04-03 03:40:58 ----A---- C:\Windows\system32\gpprefcl.dll
                      2009-04-03 03:40:35 ----D---- C:\Windows\system32\WindowsPowerShell
                      2009-04-03 03:10:06 ----D---- C:\Windows\Minidump
                      2009-04-03 02:47:07 ----A---- C:\Windows\system32\winipsec.dll
                      2009-04-03 02:47:07 ----A---- C:\Windows\system32\polstore.dll
                      2009-04-03 02:47:07 ----A---- C:\Windows\system32\IPSECSVC.DLL
                      2009-04-03 02:47:07 ----A---- C:\Windows\system32\FwRemoteSvr.dll
                      2009-04-03 02:46:25 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
                      2009-04-03 02:46:25 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
                      2009-04-03 02:46:25 ----A---- C:\Windows\system32\PortableDeviceApi.dll
                      2009-04-03 02:43:25 ----A---- C:\Windows\system32\gdi32.dll
                      2009-04-03 02:43:10 ----A---- C:\Windows\system32\DreamScene.dll
                      2009-04-03 02:42:27 ----A---- C:\Windows\system32\es.dll
                      2009-04-03 02:42:16 ----A---- C:\Windows\system32\D3DX9_39.dll
                      2009-04-03 02:40:43 ----A---- C:\Windows\system32\kbd106n.dll
                      2009-04-03 02:40:41 ----A---- C:\Windows\system32\winresume.exe
                      2009-04-03 02:40:41 ----A---- C:\Windows\system32\winload.exe
                      2009-04-03 02:40:41 ----A---- C:\Windows\system32\srdelayed.exe
                      2009-04-03 02:40:41 ----A---- C:\Windows\system32\srcore.dll
                      2009-04-03 02:40:41 ----A---- C:\Windows\system32\srclient.dll
                      2009-04-03 02:40:41 ----A---- C:\Windows\system32\rstrui.exe
                      2009-04-03 02:40:40 ----A---- C:\Windows\system32\setbcdlocale.dll
                      2009-04-03 02:40:40 ----A---- C:\Windows\system32\kd1394.dll
                      2009-04-03 02:40:40 ----A---- C:\Windows\system32\ci.dll
                      2009-04-03 02:39:55 ----D---- C:\Program Files\BitLocker
                      2009-04-03 02:39:21 ----A---- C:\Windows\system32\SecureKeyBackupCPL.dll
                      2009-04-03 02:37:02 ----A---- C:\Windows\Ascd_tmp.ini
                      2009-04-03 02:29:13 ----D---- C:\ProgramData\Adobe
                      2009-04-03 02:29:11 ----D---- C:\Program Files\Common Files\Adobe
                      2009-04-03 02:29:11 ----D---- C:\Program Files\Adobe
                      2009-04-03 02:27:48 ----D---- C:\ProgramData\NOS
                      0
                      1. la suite n°3 :

                        2009-04-03 02:11:13 ----A---- C:\Windows\system32\Apphlpdm.dll
                        2009-04-03 02:11:11 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
                        2009-04-03 02:11:11 ----A---- C:\Windows\system32\gameux.dll
                        2009-04-03 02:10:52 ----A---- C:\Windows\system32\wmpeffects.dll
                        2009-04-03 02:10:37 ----A---- C:\Windows\system32\msxml3r.dll
                        2009-04-03 02:10:37 ----A---- C:\Windows\system32\msxml3.dll
                        2009-04-03 02:09:00 ----A---- C:\Windows\system32\netapi32.dll
                        2009-04-03 02:08:40 ----A---- C:\Windows\system32\tzres.dll
                        2009-04-03 02:07:50 ----A---- C:\Windows\system32\psisdecd.dll
                        2009-04-03 02:07:50 ----A---- C:\Windows\system32\EncDec.dll
                        2009-04-03 02:07:22 ----A---- C:\Windows\system32\wmploc.DLL
                        2009-04-03 02:07:22 ----A---- C:\Windows\system32\wmp.dll
                        2009-04-03 02:07:22 ----A---- C:\Windows\system32\spwmp.dll
                        2009-04-03 02:07:21 ----A---- C:\Windows\system32\dxmasf.dll
                        2009-04-03 02:06:43 ----A---- C:\Windows\system32\shell32.dll
                        2009-04-03 02:04:46 ----D---- C:\Program Files\ASUS
                        2009-04-03 02:04:07 ----D---- C:\Users\Alexis\AppData\Roaming\InstallShield
                        2009-04-03 02:00:24 ----HD---- C:\Program Files\InstallShield Installation Information
                        2009-04-03 01:55:54 ----D---- C:\Users\Alexis\AppData\Roaming\Macromedia
                        2009-04-03 01:55:54 ----D---- C:\Users\Alexis\AppData\Roaming\Adobe
                        2009-04-03 01:55:53 ----D---- C:\Windows\system32\Macromed
                        2009-04-03 01:42:04 ----D---- C:\Windows\Panther
                        2009-04-03 01:36:54 ----A---- C:\Windows\explorer.exe
                        2009-04-03 01:35:21 ----A---- C:\Windows\system32\hccoin.dll
                        2009-04-03 01:33:48 ----A---- C:\Windows\system32\NlsLexicons0046.dll
                        2009-04-03 01:33:48 ----A---- C:\Windows\system32\NlsLexicons0045.dll
                        2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0049.dll
                        2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0047.dll
                        2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0039.dll
                        2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0022.dll
                        2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0021.dll
                        2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0020.dll
                        2009-04-03 01:33:46 ----A---- C:\Windows\system32\NlsLexicons0026.dll
                        2009-04-03 01:33:46 ----A---- C:\Windows\system32\NlsLexicons0024.dll
                        2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0027.dll
                        2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0013.dll
                        2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0011.dll
                        2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0010.dll
                        2009-04-03 01:33:44 ----A---- C:\Windows\system32\NlsLexicons0018.dll
                        2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0019.dll
                        2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0003.dll
                        2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0002.dll
                        2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0001.dll
                        2009-04-03 01:33:42 ----A---- C:\Windows\system32\NlsLexicons0009.dll
                        2009-04-03 01:33:42 ----A---- C:\Windows\system32\NlsLexicons0007.dll
                        2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004e.dll
                        2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004c.dll
                        2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004b.dll
                        2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004a.dll
                        2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons003e.dll
                        2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons002a.dll
                        2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons001d.dll
                        2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons001b.dll
                        2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons001a.dll
                        2009-04-03 01:33:39 ----A---- C:\Windows\system32\NlsLexicons000d.dll
                        2009-04-03 01:33:39 ----A---- C:\Windows\system32\NlsLexicons000c.dll
                        2009-04-03 01:33:39 ----A---- C:\Windows\system32\NlsLexicons000a.dll
                        2009-04-03 01:33:38 ----A---- C:\Windows\system32\NlsLexicons0416.dll
                        2009-04-03 01:33:38 ----A---- C:\Windows\system32\NlsLexicons0414.dll
                        2009-04-03 01:33:38 ----A---- C:\Windows\system32\NlsLexicons000f.dll
                        2009-04-03 01:33:37 ----A---- C:\Windows\system32\NlsModels0011.dll
                        2009-04-03 01:33:37 ----A---- C:\Windows\system32\NlsLexicons081a.dll
                        2009-04-03 01:33:37 ----A---- C:\Windows\system32\NlsLexicons0816.dll
                        2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0049.dll
                        2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0047.dll
                        2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0046.dll
                        2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0045.dll
                        2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0039.dll
                        2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0026.dll
                        2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0024.dll
                        2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0022.dll
                        2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0021.dll
                        2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0020.dll
                        2009-04-03 01:33:34 ----A---- C:\Windows\system32\NlsData0027.dll
                        2009-04-03 01:33:34 ----A---- C:\Windows\system32\NlsData0011.dll
                        2009-04-03 01:33:34 ----A---- C:\Windows\system32\NlsData0010.dll
                        2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0019.dll
                        2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0018.dll
                        2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0013.dll
                        2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0000.dll
                        2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0009.dll
                        2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0007.dll
                        2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0003.dll
                        2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0002.dll
                        2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0001.dll
                        2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004e.dll
                        2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004c.dll
                        2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004b.dll
                        2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004a.dll
                        2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData003e.dll
                        2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData002a.dll
                        2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData001d.dll
                        2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData001b.dll
                        2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData001a.dll
                        2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000f.dll
                        2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000d.dll
                        2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000c.dll
                        2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000a.dll
                        2009-04-03 01:33:28 ----A---- C:\Windows\system32\NlsData0416.dll
                        2009-04-03 01:33:28 ----A---- C:\Windows\system32\NlsData0414.dll
                        2009-04-03 01:33:27 ----A---- C:\Windows\system32\NlsData081a.dll
                        2009-04-03 01:33:27 ----A---- C:\Windows\system32\NlsData0816.dll
                        2009-04-03 01:33:27 ----A---- C:\Windows\system32\NaturalLanguage6.dll
                        2009-04-03 01:33:26 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll
                        2009-04-03 01:33:26 ----A---- C:\Windows\system32\NlsData0c1a.dll
                        2009-04-03 01:29:18 ----A---- C:\Windows\system32\WindowsCodecs.dll
                        2009-04-03 01:29:18 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
                        2009-04-03 01:29:17 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
                        2009-04-03 01:27:46 ----A---- C:\Windows\system32\win32spl.dll
                        2009-04-03 01:27:46 ----A---- C:\Windows\system32\printcom.dll
                        2009-04-03 01:27:30 ----A---- C:\Windows\system32\wshrm.dll
                        2009-04-03 01:25:38 ----A---- C:\Windows\system32\schannel.dll
                        2009-04-03 01:10:20 ----A---- C:\Windows\system32\icardagt.exe
                        2009-04-03 01:10:19 ----A---- C:\Windows\system32\infocardapi.dll
                        2009-04-03 01:10:19 ----A---- C:\Windows\system32\icardres.dll
                        2009-04-03 01:10:13 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
                        2009-04-03 01:10:12 ----A---- C:\Windows\system32\PresentationHost.exe
                        2009-04-03 01:10:11 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
                        2009-04-03 01:10:11 ----A---- C:\Windows\system32\PresentationHostProxy.dll
                        2009-04-03 00:58:00 ----A---- C:\Windows\system32\netfxperf.dll
                        2009-04-03 00:58:00 ----A---- C:\Windows\system32\dfshim.dll
                        2009-04-03 00:57:58 ----A---- C:\Windows\system32\mscories.dll
                        2009-04-03 00:57:58 ----A---- C:\Windows\system32\mscorier.dll
                        2009-04-03 00:57:58 ----A---- C:\Windows\system32\mscoree.dll
                        2009-04-03 00:48:48 ----A---- C:\Windows\system32\rrinstaller.exe
                        2009-04-03 00:48:48 ----A---- C:\Windows\system32\mfps.dll
                        2009-04-03 00:48:48 ----A---- C:\Windows\system32\mfpmp.exe
                        2009-04-03 00:48:48 ----A---- C:\Windows\system32\mferror.dll
                        2009-04-03 00:48:48 ----A---- C:\Windows\system32\mf.dll
                        2009-04-03 00:48:47 ----A---- C:\Windows\system32\WMVCORE.DLL
                        2009-04-03 00:48:47 ----A---- C:\Windows\system32\WMNetMgr.dll
                        2009-04-03 00:48:47 ----A---- C:\Windows\system32\logagent.exe
                        2009-04-03 00:48:13 ----A---- C:\Windows\system32\INETRES.dll
                        2009-04-03 00:48:13 ----A---- C:\Windows\system32\inetcomm.dll
                        2009-04-03 00:48:00 ----A---- C:\Windows\system32\connect.dll
                        2009-04-03 00:47:40 ----A---- C:\Windows\system32\quartz.dll
                        2009-04-03 00:47:34 ----D---- C:\Windows\system32\catroot2
                        2009-04-03 00:47:19 ----D---- C:\Windows\Debug
                        2009-04-03 00:47:18 ----D---- C:\Windows\CSC
                        2009-04-03 00:45:21 ----A---- C:\Windows\system32\msxml6r.dll
                        2009-04-03 00:45:21 ----A---- C:\Windows\system32\msxml6.dll
                        2009-04-03 00:43:43 ----D---- C:\Windows\Prefetch
                        2009-04-03 00:14:32 ----D---- C:\Program Files\Intel
                        2009-04-03 00:14:32 ----A---- C:\Windows\system32\CSVer.dll
                        2009-04-03 00:10:51 ----D---- C:\Users\Alexis\AppData\Roaming\ESET
                        2009-04-03 00:08:07 ----D---- C:\ProgramData\ESET
                        2009-04-03 00:08:07 ----D---- C:\Program Files\ESET
                        2009-04-03 00:05:33 ----SHD---- C:\Windows\Installer
                        2009-04-03 00:00:21 ----A---- C:\Windows\system32\wups2.dll
                        2009-04-03 00:00:21 ----A---- C:\Windows\system32\wucltux.dll
                        2009-04-03 00:00:21 ----A---- C:\Windows\system32\wuaueng.dll
                        2009-04-03 00:00:21 ----A---- C:\Windows\system32\wuauclt.exe
                        2009-04-03 00:00:18 ----D---- C:\Users\Alexis\AppData\Roaming\Identities
                        2009-04-02 23:59:52 ----SD---- C:\Users\Alexis\AppData\Roaming\Microsoft
                        2009-04-02 23:59:52 ----D---- C:\Users\Alexis\AppData\Roaming\Media Center Programs
                        2009-04-02 23:59:22 ----A---- C:\Windows\system32\wups.dll
                        2009-04-02 23:59:22 ----A---- C:\Windows\system32\wudriver.dll
                        2009-04-02 23:59:21 ----A---- C:\Windows\system32\wuapi.dll
                        2009-04-02 23:58:33 ----A---- C:\Windows\system32\wuwebv.dll
                        2009-04-02 23:58:33 ----A---- C:\Windows\system32\wuapp.exe
                        2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Modèles
                        2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Menu Démarrer
                        2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Favoris
                        2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Bureau
                        2009-04-02 23:57:30 ----SHD---- C:\Program Files\Fichiers communs
                        2009-04-02 23:49:29 ----D---- C:\Windows\SoftwareDistribution

                        ======List of files/folders modified in the last 1 months======

                        2009-04-26 05:08:29 ----D---- C:\Windows\Temp
                        2009-04-25 20:40:04 ----D---- C:\Windows\System32
                        2009-04-25 20:29:31 ----D---- C:\Windows\inf
                        2009-04-25 20:29:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
                        2009-04-25 20:24:52 ----D---- C:\Windows\system32\WDI
                        2009-04-25 16:57:16 ----D---- C:\Windows\system32\drivers
                        2009-04-25 14:17:13 ----D---- C:\Windows
                        2009-04-25 11:26:19 ----HD---- C:\ProgramData
                        2009-04-25 11:26:18 ----RD---- C:\Program Files
                        2009-04-24 10:29:38 ----SD---- C:\Windows\Downloaded Program Files
                        2009-04-23 13:11:12 ----D---- C:\Program Files\Common Files
                        2009-04-23 13:05:00 ----SHD---- C:\System Volume Information
                        2009-04-16 15:53:07 ----D---- C:\Windows\system32\catroot
                        2009-04-16 15:43:53 ----RSD---- C:\Windows\assembly
                        2009-04-15 14:52:29 ----D---- C:\Windows\winsxs
                        2009-04-15 14:40:24 ----D---- C:\Program Files\Windows Mail
                        2009-04-15 14:40:23 ----D---- C:\Windows\system32\wbem
                        2009-04-15 14:40:21 ----D---- C:\Windows\system32\manifeststore
                        2009-04-15 14:40:20 ----D---- C:\Windows\AppPatch
                        2009-04-13 16:51:18 ----D---- C:\Windows\Microsoft.NET
                        2009-04-10 17:03:52 ----D---- C:\Windows\LiveKernelReports
                        2009-04-09 11:01:14 ----D---- C:\Windows\system32\LogFiles
                        2009-04-08 17:38:37 ----D---- C:\Windows\system32\NDF
                        2009-04-08 01:14:56 ----D---- C:\Windows\system32\Tasks
                        2009-04-08 01:11:16 ----D---- C:\Program Files\Common Files\microsoft shared
                        2009-04-08 00:20:32 ----D---- C:\Program Files\MSBuild
                        2009-04-08 00:20:06 ----D---- C:\Windows\ShellNew
                        2009-04-08 00:19:39 ----RSD---- C:\Windows\Fonts
                        2009-04-08 00:19:24 ----SD---- C:\ProgramData\Microsoft
                        2009-04-07 22:26:53 ----D---- C:\Windows\rescache
                        2009-04-06 16:57:24 ----A---- C:\Windows\system32\mrt.exe
                        2009-04-04 17:51:10 ----D---- C:\Windows\system32\FxsTmp
                        2009-04-03 14:34:40 ----D---- C:\Windows\system
                        2009-04-03 14:30:38 ----D---- C:\dowload
                        2009-04-03 14:20:05 ----RD---- C:\Users
                        2009-04-03 14:08:00 ----D---- C:\Windows\system32\fr-FR
                        2009-04-03 14:08:00 ----D---- C:\Program Files\Internet Explorer
                        2009-04-03 14:07:58 ----D---- C:\Windows\system32\migration
                        2009-04-03 14:07:58 ----D---- C:\Windows\system32\en-US
                        2009-04-03 14:07:58 ----D---- C:\Windows\PolicyDefinitions
                        2009-04-03 13:11:11 ----RSD---- C:\Windows\Media
                        2009-04-03 12:17:31 ----D---- C:\Windows\twain_32
                        2009-04-03 05:36:45 ----D---- C:\Windows\Logs
                        2009-04-03 04:52:41 ----SHD---- C:\Boot
                        2009-04-03 04:52:37 ----ASH---- C:\Program Files\desktop.ini
                        2009-04-03 04:44:22 ----D---- C:\Program Files\Windows Sidebar
                        2009-04-03 04:44:22 ----D---- C:\Program Files\Windows Calendar
                        2009-04-03 04:44:22 ----D---- C:\Program Files\Movie Maker
                        2009-04-03 04:44:20 ----D---- C:\Program Files\Windows Media Player
                        2009-04-03 04:44:19 ----D---- C:\Program Files\Windows Collaboration
                        2009-04-03 04:44:17 ----D---- C:\Program Files\Windows Photo Gallery
                        2009-04-03 04:44:17 ----D---- C:\Program Files\Windows Journal
                        2009-04-03 04:44:11 ----D---- C:\Program Files\Windows Defender
                        2009-04-03 04:44:11 ----D---- C:\Program Files\Common Files\System
                        2009-04-03 04:44:10 ----D---- C:\Windows\servicing
                        2009-04-03 04:44:10 ----D---- C:\Windows\ehome
                        2009-04-03 04:44:09 ----D---- C:\Windows\MSAgent
                        2009-04-03 04:44:08 ----D---- C:\Windows\L2Schemas
                        2009-04-03 04:44:08 ----D---- C:\Windows\IME
                        2009-04-03 04:44:08 ----D---- C:\Windows\DigitalLocker
                        2009-04-03 04:44:06 ----D---- C:\Windows\system32\ko-KR
                        2009-04-03 04:44:06 ----D---- C:\Windows\system32\da-DK
                        2009-04-03 04:44:06 ----D---- C:\Windows\system32\com
                        2009-04-03 04:44:06 ----D---- C:\Windows\system32\040C
                        2009-04-03 04:44:05 ----D---- C:\Windows\system32\sysprep
                        2009-04-03 04:44:05 ----D---- C:\Windows\system32\oobe
                        2009-04-03 04:44:05 ----D---- C:\Windows\system32\it-IT
                        2009-04-03 04:44:05 ----D---- C:\Windows\system32\fr
                        2009-04-03 04:44:05 ----D---- C:\Windows\system32\el-GR
                        2009-04-03 04:44:05 ----D---- C:\Windows\system32\de-DE
                        2009-04-03 04:44:03 ----D---- C:\Windows\system32\AdvancedInstallers
                        2009-04-03 04:44:02 ----D---- C:\Windows\system32\ru-RU
                        2009-04-03 04:44:02 ----D---- C:\Windows\system32\ias
                        2009-04-03 04:43:57 ----D---- C:\Windows\system32\sv-SE
                        2009-04-03 04:43:57 ----D---- C:\Windows\system32\he-IL
                        2009-04-03 04:43:56 ----D---- C:\Windows\system32\SLUI
                        2009-04-03 04:43:56 ----D---- C:\Windows\system32\setup
                        2009-04-03 04:43:56 ----D---- C:\Windows\system32\pt-PT
                        2009-04-03 04:43:56 ----D---- C:\Windows\system32\hu-HU
                        2009-04-03 04:43:56 ----D---- C:\Windows\system32\fi-FI
                        2009-04-03 04:43:56 ----D---- C:\Windows\system32\cs-CZ
                        2009-04-03 04:43:55 ----D---- C:\Windows\system32\zh-TW
                        2009-04-03 04:43:55 ----D---- C:\Windows\system32\zh-CN
                        2009-04-03 04:43:55 ----D---- C:\Windows\system32\ro-RO
                        2009-04-03 04:43:55 ----D---- C:\Windows\system32\pl-PL
                        2009-04-03 04:43:55 ----D---- C:\Windows\system32\ja-JP
                        2009-04-03 04:43:55 ----D---- C:\Windows\system32\es-ES
                        2009-04-03 04:43:52 ----D---- C:\Windows\system32\tr-TR
                        2009-04-03 04:43:50 ----D---- C:\Windows\system32\nl-NL
                        2009-04-03 04:43:50 ----D---- C:\Windows\system32\nb-NO
                        2009-04-03 04:43:50 ----D---- C:\Windows\system32\ar-SA
                        2009-04-03 04:43:49 ----D---- C:\Windows\system32\migwiz
                        2009-04-03 04:43:47 ----D---- C:\Windows\system32\pt-BR
                        2009-04-03 04:42:29 ----D---- C:\Windows\Boot
                        2009-04-03 04:42:25 ----D---- C:\Windows\system32\Boot
                        2009-04-03 04:32:41 ----A---- C:\Windows\system32\ifxcardm.dll
                        2009-04-03 04:32:29 ----A---- C:\Windows\system32\axaltocm.dll
                        2009-04-03 02:56:19 ----D---- C:\Windows\system32\ras
                        2009-04-03 02:56:19 ----D---- C:\Windows\system32\icsxml
                        2009-04-03 02:56:06 ----D---- C:\Windows\Web
                        2009-04-03 02:56:06 ----D---- C:\Program Files\Microsoft Games
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\uk-UA
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\th-TH
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\sr-Latn-CS
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\sl-SI
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\sk-SK
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\lv-LV
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\lt-LT
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\hr-HR
                        2009-04-03 02:38:55 ----D---- C:\Windows\system32\et-EE
                        2009-04-03 02:38:54 ----D---- C:\Windows\system32\bg-BG
                        2009-04-03 02:00:46 ----D---- C:\Windows\Tasks
                        2009-04-03 01:41:51 ----RAS---- C:\BOOTSECT.BAK
                        2009-04-03 01:12:12 ----D---- C:\Windows\system32\XPSViewer
                        2009-04-03 00:03:45 ----D---- C:\Windows\system32\CodeIntegrity
                        2009-04-03 00:00:49 ----SHD---- C:\$Recycle.Bin
                        2009-04-02 23:57:30 ----D---- C:\Program Files\Windows NT
                        2009-04-02 23:57:02 ----D---- C:\Windows\system32\restore

                        ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                        R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
                        R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
                        R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
                        R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
                        R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-02-06 130952]
                        R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-03-16 4361216]
                        R3 CamDrL;Logitech QuickCam Pro 3000(CamDrl); C:\Windows\system32\DRIVERS\Camdrl.sys [2007-02-03 1075360]
                        R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2008-10-08 171032]
                        R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2008-10-08 511000]
                        R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2008-10-08 526232]
                        R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
                        R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2008-10-08 72728]
                        R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2008-10-08 14360]
                        R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2008-10-08 158744]
                        R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2008-10-08 95768]
                        R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
                        R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2008-10-08 1177624]
                        R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-12-18 35472]
                        R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-12-18 37392]
                        R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2008-12-18 28816]
                        R3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-10-11 2142488]
                        R3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys [2007-10-11 25624]
                        R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-10-12 41752]
                        R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680]
                        R3 netr28u;RT2870 USB Wireless LAN Card Driver for Vista; C:\Windows\system32\DRIVERS\netr28u.sys [2007-08-15 552448]
                        R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2008-10-08 130072]
                        R3 UltraCrypt;UltraCrypt; \??\C:\Program Files\UltraLeecher\UltraCrypt.sys [2007-03-24 45312]
                        R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-18 73088]
                        R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496]
                        S1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys []
                        S3 an3lt6tl;an3lt6tl; C:\Windows\system32\drivers\an3lt6tl.sys []
                        S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-03-05 98616]
                        S3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL []
                        S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2008-10-08 171032]
                        S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-03-05 552248]
                        S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2008-10-08 347080]
                        S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-03-05 174392]
                        S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-03-05 286520]
                        S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-03-05 134968]
                        S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-03-05 329528]
                        S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-03-05 101176]
                        S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL []
                        S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
                        S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL []
                        S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2008-10-08 72728]
                        S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-03-05 566584]
                        S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
                        S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
                        S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-10-19 2109976]
                        S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
                        S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
                        S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
                        S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
                        S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
                        S3 WD_FireWire_HID;WD FireWire Pseudo-HID driver; C:\Windows\system32\DRIVERS\wdfwhid.sys [2006-03-22 17408]
                        S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
                        S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

                        ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                        R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-03-16 180224]
                        R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-18 21504]
                        R2 CTAudSvcService;Creative Audio Service; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [2008-12-29 307200]
                        R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-02-06 727720]
                        R2 LVCOMSer;LVCOMSer; C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe [2007-10-19 186904]
                        R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2007-10-19 141848]
                        S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-10-19 141848]
                        S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-18 21504]
                        S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2009-04-03 79360]
                        S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2009-04-03 79360]
                        S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-02-06 20680]
                        S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-18 523776]
                        S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2009-02-19 121360]
                        S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
                        S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
                        S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2009-01-07 348752]
                        S3 sdCoreService;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2009-01-21 1095560]
                        S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-04-20 322032]
                        S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-18 21504]
                        S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-18 917504]

                        -----------------EOF-----------------
                        0
                        1. la suite n°4 et fin du log.txt

                          ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                          R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
                          R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
                          R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
                          R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
                          R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-02-06 130952]
                          R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-03-16 4361216]
                          R3 CamDrL;Logitech QuickCam Pro 3000(CamDrl); C:\Windows\system32\DRIVERS\Camdrl.sys [2007-02-03 1075360]
                          R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2008-10-08 171032]
                          R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2008-10-08 511000]
                          R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2008-10-08 526232]
                          R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
                          R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2008-10-08 72728]
                          R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2008-10-08 14360]
                          R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2008-10-08 158744]
                          R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2008-10-08 95768]
                          R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
                          R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2008-10-08 1177624]
                          R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-12-18 35472]
                          R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-12-18 37392]
                          R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2008-12-18 28816]
                          R3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-10-11 2142488]
                          R3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys [2007-10-11 25624]
                          R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-10-12 41752]
                          R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680]
                          R3 netr28u;RT2870 USB Wireless LAN Card Driver for Vista; C:\Windows\system32\DRIVERS\netr28u.sys [2007-08-15 552448]
                          R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2008-10-08 130072]
                          R3 UltraCrypt;UltraCrypt; \??\C:\Program Files\UltraLeecher\UltraCrypt.sys [2007-03-24 45312]
                          R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-18 73088]
                          R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496]
                          S1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys []
                          S3 an3lt6tl;an3lt6tl; C:\Windows\system32\drivers\an3lt6tl.sys []
                          S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-03-05 98616]
                          S3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL []
                          S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2008-10-08 171032]
                          S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-03-05 552248]
                          S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2008-10-08 347080]
                          S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-03-05 174392]
                          S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-03-05 286520]
                          S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-03-05 134968]
                          S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-03-05 329528]
                          S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-03-05 101176]
                          S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL []
                          S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
                          S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL []
                          S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2008-10-08 72728]
                          S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-03-05 566584]
                          S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
                          S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
                          S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-10-19 2109976]
                          S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
                          S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
                          S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
                          S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
                          S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
                          S3 WD_FireWire_HID;WD FireWire Pseudo-HID driver; C:\Windows\system32\DRIVERS\wdfwhid.sys [2006-03-22 17408]
                          S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
                          S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

                          ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                          R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-03-16 180224]
                          R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-18 21504]
                          R2 CTAudSvcService;Creative Audio Service; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [2008-12-29 307200]
                          R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-02-06 727720]
                          R2 LVCOMSer;LVCOMSer; C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe [2007-10-19 186904]
                          R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2007-10-19 141848]
                          S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-10-19 141848]
                          S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-18 21504]
                          S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2009-04-03 79360]
                          S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2009-04-03 79360]
                          S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-02-06 20680]
                          S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-18 523776]
                          S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2009-02-19 121360]
                          S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
                          S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
                          S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2009-01-07 348752]
                          S3 sdCoreService;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2009-01-21 1095560]
                          S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-04-20 322032]
                          S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-18 21504]
                          S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-18 917504]

                          -----------------EOF-----------------
                          0
                          1. le fichier info.txt maintenant :

                            info.txt logfile of random's system information tool 1.06 2009-04-26 05:08:40

                            ======Uninstall list======

                            -->"C:\Program Files\Creative Installation Information\CREATIVE_MEDIASOURCE_U\Setup.exe" /remove /l0x040c
                            -->"C:\Program Files\Creative Installation Information\CTCMSGO\Setup.exe" /remove /l0x040c
                            -->"C:\Program Files\Creative Installation Information\E-CENTER_NET_CONTENT_U\Setup.exe" /remove /l0x040c
                            -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_CDBURNER_U\Setup.exe" /remove /nolog/l0x040c
                            -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_MINIDISC_U\Setup.exe" /remove /l0x040c
                            -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_ONLINESTORE_U\Setup.exe" /remove /l0x040c
                            -->"C:\Program Files\Creative Installation Information\MEDIASOURCE_PLAYER_SKINPACK_U\Setup.exe" /remove /l0x040c
                            -->"C:\Program Files\Creative\Sound Blaster X-Fi\Program\SETUP.EXE" /S /U /W /L:FRN
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c /remove
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c
                            -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c /remove
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
                            2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                            Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
                            Adobe Reader 9.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
                            Air Strike 2-->"C:\Program Files\114 Reflexive Arcade Games\Air Strike 2\unins000.exe"
                            Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                            ASUS WiFi-AP @n-->C:\Program Files\InstallShield Installation Information\{6600970A-BAE7-412A-BFFC-91AD793B3A41}\setup.exe -runfromtemp -l0x0009 -removeonly
                            Canon MP Navigator EX 1.0-->"C:\Program Files\Canon\MP Navigator EX 1.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator EX 1.0\uninst.ini
                            Canon MP610 series-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series /L0x000c
                            Canon Utilities Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe uninst.ini
                            Canon Utilities My Printer-->C:\Program Files\Canon\MyPrinter\uninst.exe uninst.ini
                            Canon Utilities Solution Menu-->C:\Program Files\Canon\SolutionMenu\uninst.exe uninst.ini
                            Catalyst Control Center - Branding-->MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
                            CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                            CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
                            CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
                            Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
                            Coffret de pilotes Logitech QuickCam-->"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\11.50.1145\LgDrvInst.exe" -remove -instdir"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\" -enumdelay=2000 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -arpregkey"lvdrivers_11.50" /clone_wait /hide_progress
                            Counter-Strike: Source-->"C:\Program Files\Steam\steam.exe" steam://uninstall/240
                            Creative ALchemy-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c /remove
                            Creative Console Launcher-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c /remove
                            Creative Entertainment Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c /remove
                            Creative MediaSource 5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\setup.exe" -l0x40c /remove
                            Creative Software AutoUpdate-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c /remove
                            Creative WaveStudio 7-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c /remove
                            Crysis(R)-->MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
                            DVDFab (Platinum/Gold/HD Decrypter) (Option: Mobile) 5.2.3.2-->"C:\Program Files\DVDFab 5\unins000.exe"
                            Enregistrement utilisateur de Canon MP610 series-->C:\Program Files\Canon\IJEREG\MP610 series\UNINST.EXE
                            Enregistreur intelligent Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c /remove
                            ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
                            Free Mp3 Wma Converter V 1.81-->"C:\Program Files\Free Audio Pack\unins000.exe"
                            FreeUndelete-->C:\Program Files\FreeUndelete\GLFCB06.exe /handle:fru
                            Gestionnaire de banques SoundFont-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c /remove
                            HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
                            Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                            Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                            Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
                            Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
                            KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
                            K-Lite Mega Codec Pack 4.7.5-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
                            Lecteur de DVD Audio Creative MediaSource-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c /remove
                            Logitech QuickCam-->MsiExec.exe /X{945AC98B-3DC8-45BE-BAE0-22CEEE37A103}
                            Logitech SetPoint-->"C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe" -runfromtemp -l0x040c -removeonly
                            Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                            Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
                            Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                            Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                            Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
                            Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                            Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
                            Microsoft Office Language Pack 2007 Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
                            Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
                            Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
                            Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                            Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
                            Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
                            Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                            Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                            Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                            Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                            Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                            Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                            Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                            Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
                            Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                            Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                            Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                            Modèles de sons Windows-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound.inf,Uninstall
                            Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
                            MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                            MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                            OGA Notifier 1.7.0105.35.0-->MsiExec.exe /I{25E98ECB-5727-408E-B30A-2CAF86F5B310}
                            OpenAL-->"C:\Program Files\OpenAL\OALInst.exe" /U
                            Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                            Panneau de configuration audio Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c /remove
                            Propriétés de Creative Sound Blaster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c /remove
                            QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
                            ScanSoft OmniPage SE 4-->MsiExec.exe /X{DEE88727-779B-47A9-ACEF-F87CA5F92A65}
                            Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
                            Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
                            Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
                            Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                            Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                            Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
                            Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
                            Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
                            Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
                            Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
                            Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
                            Sound Blaster X-Fi-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}\SETUP.EXE" -l0x40c /remove
                            Spyware Doctor 6.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
                            Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
                            Tvix Thème Manager Beta 3.02-->"C:\Program Files\TvixTM\unins000.exe"
                            Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
                            UltraLeecher 1.7 Beta Build 2922-->"C:\Program Files\UltraLeecher\unins000.exe"
                            Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
                            Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
                            Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
                            Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
                            Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
                            Virtua Tennis 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B63540D-D942-4C38-B42E-A48AE0145970}\setup.exe" -l0x40c -removeonly
                            WD Firewire HID Driver-->MsiExec.exe /X{FD6C6B7F-5696-48C5-A601-2EE9E50C3D46}
                            Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                            Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
                            Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
                            WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe

                            ======Security center information======

                            AV: ESET Smart Security 4.0
                            FW: Pare-feu personnel d'ESET
                            AS: ESET Smart Security 4.0
                            AS: Windows Defender (disabled)

                            ======System event log======

                            Computer Name: PC-de-Alexis
                            Event Code: 7006
                            Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                            Accès refusé.
                            Record Number: 54015
                            Source Name: Service Control Manager
                            Time Written: 20090425182535.000000-000
                            Event Type: Erreur
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 7006
                            Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                            Accès refusé.
                            Record Number: 54017
                            Source Name: Service Control Manager
                            Time Written: 20090425182540.000000-000
                            Event Type: Erreur
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 7006
                            Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                            Accès refusé.
                            Record Number: 54020
                            Source Name: Service Control Manager
                            Time Written: 20090425182558.000000-000
                            Event Type: Erreur
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 7006
                            Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                            Accès refusé.
                            Record Number: 54022
                            Source Name: Service Control Manager
                            Time Written: 20090425182603.000000-000
                            Event Type: Erreur
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 7006
                            Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                            Accès refusé.
                            Record Number: 54025
                            Source Name: Service Control Manager
                            Time Written: 20090425182607.000000-000
                            Event Type: Erreur
                            User:

                            =====Application event log=====

                            Computer Name: PC-de-Alexis
                            Event Code: 1530
                            Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

                            DÉTAIL -
                            1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
                            Process 1008 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

                            Record Number: 3023
                            Source Name: Microsoft-Windows-User Profiles Service
                            Time Written: 20090425145620.000000-000
                            Event Type: Avertissement
                            User: AUTORITE NT\SYSTEM

                            Computer Name: PC-de-Alexis
                            Event Code: 1000
                            Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1298, heure de début de l’application 0x01c9c5b891652fef.
                            Record Number: 3044
                            Source Name: Application Error
                            Time Written: 20090425152430.000000-000
                            Event Type: Erreur
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 1000
                            Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1738, heure de début de l’application 0x01c9c5baae8c4ff2.
                            Record Number: 3067
                            Source Name: Application Error
                            Time Written: 20090425160027.000000-000
                            Event Type: Erreur
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 1530
                            Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

                            DÉTAIL -
                            1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000:
                            Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000

                            Record Number: 3074
                            Source Name: Microsoft-Windows-User Profiles Service
                            Time Written: 20090425180451.000000-000
                            Event Type: Avertissement
                            User: AUTORITE NT\SYSTEM

                            Computer Name: PC-de-Alexis
                            Event Code: 1530
                            Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

                            DÉTAIL -
                            1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
                            Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

                            Record Number: 3075
                            Source Name: Microsoft-Windows-User Profiles Service
                            Time Written: 20090425180452.000000-000
                            Event Type: Avertissement
                            User: AUTORITE NT\SYSTEM

                            =====Security event log=====

                            Computer Name: PC-de-Alexis
                            Event Code: 5038
                            Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                            Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                            Record Number: 8577
                            Source Name: Microsoft-Windows-Security-Auditing
                            Time Written: 20090426030834.359200-000
                            Event Type: Échec de l'audit
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 5038
                            Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                            Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                            Record Number: 8578
                            Source Name: Microsoft-Windows-Security-Auditing
                            Time Written: 20090426030834.390400-000
                            Event Type: Échec de l'audit
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 5038
                            Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                            Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                            Record Number: 8579
                            Source Name: Microsoft-Windows-Security-Auditing
                            Time Written: 20090426030834.421600-000
                            Event Type: Échec de l'audit
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 5038
                            Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                            Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                            Record Number: 8580
                            Source Name: Microsoft-Windows-Security-Auditing
                            Time Written: 20090426030834.437200-000
                            Event Type: Échec de l'audit
                            User:

                            Computer Name: PC-de-Alexis
                            Event Code: 5038
                            Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                            Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                            Record Number: 8581
                            Source Name: Microsoft-Windows-Security-Auditing
                            Time Written: 20090426030834.468400-000
                            Event Type: Échec de l'audit
                            User:

                            ======Environment variables======

                            "ComSpec"=%SystemRoot%\system32\cmd.exe
                            "FP_NO_HOST_CHECK"=NO
                            "OS"=Windows_NT
                            "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
                            "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
                            "PROCESSOR_ARCHITECTURE"=x86
                            "TEMP"=%SystemRoot%\TEMP
                            "TMP"=%SystemRoot%\TEMP
                            "USERNAME"=SYSTEM
                            "windir"=%SystemRoot%
                            "PROCESSOR_LEVEL"=6
                            "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 7, GenuineIntel
                            "PROCESSOR_REVISION"=1707
                            "NUMBER_OF_PROCESSORS"=4

                            -----------------EOF-----------------
                            0
                            1. le fichier info.txt maintenant (partie n°1) :

                              info.txt logfile of random's system information tool 1.06 2009-04-26 05:08:40

                              ======Uninstall list======

                              -->"C:\Program Files\Creative Installation Information\CREATIVE_MEDIASOURCE_U\Setup.exe" /remove /l0x040c
                              -->"C:\Program Files\Creative Installation Information\CTCMSGO\Setup.exe" /remove /l0x040c
                              -->"C:\Program Files\Creative Installation Information\E-CENTER_NET_CONTENT_U\Setup.exe" /remove /l0x040c
                              -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_CDBURNER_U\Setup.exe" /remove /nolog/l0x040c
                              -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_MINIDISC_U\Setup.exe" /remove /l0x040c
                              -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_ONLINESTORE_U\Setup.exe" /remove /l0x040c
                              -->"C:\Program Files\Creative Installation Information\MEDIASOURCE_PLAYER_SKINPACK_U\Setup.exe" /remove /l0x040c
                              -->"C:\Program Files\Creative\Sound Blaster X-Fi\Program\SETUP.EXE" /S /U /W /L:FRN
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c /remove
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c
                              -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c /remove
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
                              2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                              Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
                              Adobe Reader 9.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
                              Air Strike 2-->"C:\Program Files\114 Reflexive Arcade Games\Air Strike 2\unins000.exe"
                              Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                              ASUS WiFi-AP @n-->C:\Program Files\InstallShield Installation Information\{6600970A-BAE7-412A-BFFC-91AD793B3A41}\setup.exe -runfromtemp -l0x0009 -removeonly
                              Canon MP Navigator EX 1.0-->"C:\Program Files\Canon\MP Navigator EX 1.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator EX 1.0\uninst.ini
                              Canon MP610 series-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series /L0x000c
                              Canon Utilities Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe uninst.ini
                              Canon Utilities My Printer-->C:\Program Files\Canon\MyPrinter\uninst.exe uninst.ini
                              Canon Utilities Solution Menu-->C:\Program Files\Canon\SolutionMenu\uninst.exe uninst.ini
                              Catalyst Control Center - Branding-->MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
                              CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                              CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
                              CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
                              Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
                              Coffret de pilotes Logitech QuickCam-->"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\11.50.1145\LgDrvInst.exe" -remove -instdir"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\" -enumdelay=2000 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -arpregkey"lvdrivers_11.50" /clone_wait /hide_progress
                              Counter-Strike: Source-->"C:\Program Files\Steam\steam.exe" steam://uninstall/240
                              Creative ALchemy-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c /remove
                              Creative Console Launcher-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c /remove
                              Creative Entertainment Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c /remove
                              Creative MediaSource 5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\setup.exe" -l0x40c /remove
                              Creative Software AutoUpdate-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c /remove
                              Creative WaveStudio 7-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c /remove
                              Crysis(R)-->MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
                              DVDFab (Platinum/Gold/HD Decrypter) (Option: Mobile) 5.2.3.2-->"C:\Program Files\DVDFab 5\unins000.exe"
                              Enregistrement utilisateur de Canon MP610 series-->C:\Program Files\Canon\IJEREG\MP610 series\UNINST.EXE
                              Enregistreur intelligent Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c /remove
                              ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
                              Free Mp3 Wma Converter V 1.81-->"C:\Program Files\Free Audio Pack\unins000.exe"
                              FreeUndelete-->C:\Program Files\FreeUndelete\GLFCB06.exe /handle:fru
                              Gestionnaire de banques SoundFont-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c /remove
                              HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
                              Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                              Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                              Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
                              Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
                              KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
                              K-Lite Mega Codec Pack 4.7.5-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
                              Lecteur de DVD Audio Creative MediaSource-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c /remove
                              Logitech QuickCam-->MsiExec.exe /X{945AC98B-3DC8-45BE-BAE0-22CEEE37A103}
                              Logitech SetPoint-->"C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe" -runfromtemp -l0x040c -removeonly
                              Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                              Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
                              Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                              Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                              Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
                              Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                              Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
                              Microsoft Office Language Pack 2007 Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
                              Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
                              Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
                              Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                              Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
                              Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
                              Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                              Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                              Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                              Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                              Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                              Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                              Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                              Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
                              Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                              Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                              Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                              Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                              Modèles de sons Windows-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound.inf,Uninstall
                              Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
                              0
                              1. info.txt (partie n°2):

                                MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                                MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                                OGA Notifier 1.7.0105.35.0-->MsiExec.exe /I{25E98ECB-5727-408E-B30A-2CAF86F5B310}
                                OpenAL-->"C:\Program Files\OpenAL\OALInst.exe" /U
                                Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                                Panneau de configuration audio Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c /remove
                                Propriétés de Creative Sound Blaster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c /remove
                                QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
                                ScanSoft OmniPage SE 4-->MsiExec.exe /X{DEE88727-779B-47A9-ACEF-F87CA5F92A65}
                                Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
                                Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
                                Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
                                Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                                Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                                Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
                                Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
                                Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
                                Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
                                Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
                                Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
                                Sound Blaster X-Fi-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}\SETUP.EXE" -l0x40c /remove
                                Spyware Doctor 6.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
                                Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
                                Tvix Thème Manager Beta 3.02-->"C:\Program Files\TvixTM\unins000.exe"
                                Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
                                UltraLeecher 1.7 Beta Build 2922-->"C:\Program Files\UltraLeecher\unins000.exe"
                                Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
                                Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
                                Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
                                Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
                                Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
                                Virtua Tennis 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B63540D-D942-4C38-B42E-A48AE0145970}\setup.exe" -l0x40c -removeonly
                                WD Firewire HID Driver-->MsiExec.exe /X{FD6C6B7F-5696-48C5-A601-2EE9E50C3D46}
                                Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                                Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
                                Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
                                WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe

                                ======Security center information======

                                AV: ESET Smart Security 4.0
                                FW: Pare-feu personnel d'ESET
                                AS: ESET Smart Security 4.0
                                AS: Windows Defender (disabled)

                                ======System event log======

                                Computer Name: PC-de-Alexis
                                Event Code: 7006
                                Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                Accès refusé.
                                Record Number: 54015
                                Source Name: Service Control Manager
                                Time Written: 20090425182535.000000-000
                                Event Type: Erreur
                                User:

                                Computer Name: PC-de-Alexis
                                Event Code: 7006
                                Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                Accès refusé.
                                Record Number: 54017
                                Source Name: Service Control Manager
                                Time Written: 20090425182540.000000-000
                                Event Type: Erreur
                                User:

                                Computer Name: PC-de-Alexis
                                Event Code: 7006
                                Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                Accès refusé.
                                Record Number: 54020
                                Source Name: Service Control Manager
                                Time Written: 20090425182558.000000-000
                                Event Type: Erreur
                                User:

                                Computer Name: PC-de-Alexis
                                Event Code: 7006
                                Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                Accès refusé.
                                Record Number: 54022
                                Source Name: Service Control Manager
                                Time Written: 20090425182603.000000-000
                                Event Type: Erreur
                                User:

                                Computer Name: PC-de-Alexis
                                Event Code: 7006
                                Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                Accès refusé.
                                Record Number: 54025
                                Source Name: Service Control Manager
                                Time Written: 20090425182607.000000-000
                                Event Type: Erreur
                                User:
                                0
                                1. MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                                  MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                                  OGA Notifier 1.7.0105.35.0-->MsiExec.exe /I{25E98ECB-5727-408E-B30A-2CAF86F5B310}
                                  OpenAL-->"C:\Program Files\OpenAL\OALInst.exe" /U
                                  Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                                  Panneau de configuration audio Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c /remove
                                  Propriétés de Creative Sound Blaster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c /remove
                                  QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
                                  ScanSoft OmniPage SE 4-->MsiExec.exe /X{DEE88727-779B-47A9-ACEF-F87CA5F92A65}
                                  Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
                                  Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
                                  Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
                                  Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                                  Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                                  Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
                                  Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
                                  Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
                                  Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
                                  Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
                                  Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
                                  Sound Blaster X-Fi-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}\SETUP.EXE" -l0x40c /remove
                                  Spyware Doctor 6.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
                                  Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
                                  Tvix Thème Manager Beta 3.02-->"C:\Program Files\TvixTM\unins000.exe"
                                  Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
                                  UltraLeecher 1.7 Beta Build 2922-->"C:\Program Files\UltraLeecher\unins000.exe"
                                  Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
                                  Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
                                  Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
                                  Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
                                  Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
                                  Virtua Tennis 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B63540D-D942-4C38-B42E-A48AE0145970}\setup.exe" -l0x40c -removeonly
                                  WD Firewire HID Driver-->MsiExec.exe /X{FD6C6B7F-5696-48C5-A601-2EE9E50C3D46}
                                  Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                                  Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
                                  Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
                                  WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
                                  0
                                  1. ======Security center information======

                                    AV: ESET Smart Security 4.0
                                    FW: Pare-feu personnel d'ESET
                                    AS: ESET Smart Security 4.0
                                    AS: Windows Defender (disabled)

                                    ======System event log======

                                    Computer Name: PC-de-Alexis
                                    Event Code: 7006
                                    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                    Accès refusé.
                                    Record Number: 54015
                                    Source Name: Service Control Manager
                                    Time Written: 20090425182535.000000-000
                                    Event Type: Erreur
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 7006
                                    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                    Accès refusé.
                                    Record Number: 54017
                                    Source Name: Service Control Manager
                                    Time Written: 20090425182540.000000-000
                                    Event Type: Erreur
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 7006
                                    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                    Accès refusé.
                                    Record Number: 54020
                                    Source Name: Service Control Manager
                                    Time Written: 20090425182558.000000-000
                                    Event Type: Erreur
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 7006
                                    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                    Accès refusé.
                                    Record Number: 54022
                                    Source Name: Service Control Manager
                                    Time Written: 20090425182603.000000-000
                                    Event Type: Erreur
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 7006
                                    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
                                    Accès refusé.
                                    Record Number: 54025
                                    Source Name: Service Control Manager
                                    Time Written: 20090425182607.000000-000
                                    Event Type: Erreur
                                    User:

                                    =====Application event log=====

                                    Computer Name: PC-de-Alexis
                                    Event Code: 1530
                                    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

                                    DÉTAIL -
                                    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
                                    Process 1008 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

                                    Record Number: 3023
                                    Source Name: Microsoft-Windows-User Profiles Service
                                    Time Written: 20090425145620.000000-000
                                    Event Type: Avertissement
                                    User: AUTORITE NT\SYSTEM

                                    Computer Name: PC-de-Alexis
                                    Event Code: 1000
                                    Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1298, heure de début de l’application 0x01c9c5b891652fef.
                                    Record Number: 3044
                                    Source Name: Application Error
                                    Time Written: 20090425152430.000000-000
                                    Event Type: Erreur
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 1000
                                    Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1738, heure de début de l’application 0x01c9c5baae8c4ff2.
                                    Record Number: 3067
                                    Source Name: Application Error
                                    Time Written: 20090425160027.000000-000
                                    Event Type: Erreur
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 1530
                                    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

                                    DÉTAIL -
                                    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000:
                                    Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000

                                    Record Number: 3074
                                    Source Name: Microsoft-Windows-User Profiles Service
                                    Time Written: 20090425180451.000000-000
                                    Event Type: Avertissement
                                    User: AUTORITE NT\SYSTEM

                                    Computer Name: PC-de-Alexis
                                    Event Code: 1530
                                    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

                                    DÉTAIL -
                                    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
                                    Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

                                    Record Number: 3075
                                    Source Name: Microsoft-Windows-User Profiles Service
                                    Time Written: 20090425180452.000000-000
                                    Event Type: Avertissement
                                    User: AUTORITE NT\SYSTEM

                                    =====Security event log=====

                                    Computer Name: PC-de-Alexis
                                    Event Code: 5038
                                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                                    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                                    Record Number: 8577
                                    Source Name: Microsoft-Windows-Security-Auditing
                                    Time Written: 20090426030834.359200-000
                                    Event Type: Échec de l'audit
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 5038
                                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                                    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                                    Record Number: 8578
                                    Source Name: Microsoft-Windows-Security-Auditing
                                    Time Written: 20090426030834.390400-000
                                    Event Type: Échec de l'audit
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 5038
                                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                                    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                                    Record Number: 8579
                                    Source Name: Microsoft-Windows-Security-Auditing
                                    Time Written: 20090426030834.421600-000
                                    Event Type: Échec de l'audit
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 5038
                                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                                    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                                    Record Number: 8580
                                    Source Name: Microsoft-Windows-Security-Auditing
                                    Time Written: 20090426030834.437200-000
                                    Event Type: Échec de l'audit
                                    User:

                                    Computer Name: PC-de-Alexis
                                    Event Code: 5038
                                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                                    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
                                    Record Number: 8581
                                    Source Name: Microsoft-Windows-Security-Auditing
                                    Time Written: 20090426030834.468400-000
                                    Event Type: Échec de l'audit
                                    User:
                                    0
                                    1. Contributeur sécurité
                                      Fais un scan en ligne Kaspersky avec Internet Explorer.
                                      - Clique sur Démarrer Online-Scanner

                                      - Clique maintenant sur J'accepte.
                                      - Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
                                      - Patiente pendant l'installation des Mises à jour.
                                      - Choisis par la suite l'analyse du Poste de travail.
                                      - Sauvegarde puis colle le rapport généré en fin d'analyse.

                                      AIDE : Configurer le contrôle des ActiveX

                                      NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
                                      0
                                      1. Modérateur
                                        Salut JFk
                                        C'est quoi ces rapports à rallonge qui coince à la conciergerie ???
                                        0
                                    2. Contributeur sécurité
                                      C'est quoi ces rapports à rallonge qui coince à la conciergerie ??? 


                                      Salut baladur ;)

                                      Aucunes idées et de plus je n'ai meme pas informé la conciergerie :)
                                      0
                                      1. Modérateur
                                        non, mais c'est moi qui est vu ???
                                        0