Cheval de troie Zapchast

Leffe -  
baladur13 Messages postés 47319 Date d'inscription   Statut Modérateur Dernière intervention   -
Bonjour,
Depuis peu ,chaque fois que je boot mon pc , Nod32 me detecte un trojan (Zapchast) dans un fichier c:\a.bat qu'il met en quarantaine.Malgré plusieurs scan complet qui ne donne p)as de résultat , à chaque boot ça revient . Pourriez-vous me donner un coup de main ?

Merci

Leffe
Configuration: Windows Vista
Internet Explorer 7.0

20 réponses

  1. Leffe
     
    voici le log hijackthis :

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:17:25, on 25/04/2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Program Files\ESET\ESET Smart Security\egui.exe
    C:\Program Files\Creative\DVDAudio\CTDVDDET.exe
    C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe
    C:\Program Files\Logitech\QuickCam\Quickcam.exe
    C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
    C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
    C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe
    C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
    C:\Windows\System32\CTHELPER.EXE
    C:\Windows\System32\Ctxfihlp.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Windows\SYSTEM32\CTXFISPI.EXE
    C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe
    C:\Program Files\Creative\Entertainment Center\EAXLoadr.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Program Files\Creative\ShareDLL\CADI\NotiMan.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Windows\system32\nod6441.exe
    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.goggle.be/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\DVDAudio\CTDVDDET.EXE"
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
    O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
    O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
    O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
    O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
    O4 - HKLM\..\Run: [Module Loader] C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe -StartUpRun
    O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"
    O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
    O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
    O4 - HKLM\..\Run: [ctfmon] nod6441.exe
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKLM\..\RunServices: [ctfmon] nod6441.exe
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [Creative MediaSource Go] "C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe" /SCB
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15101/CTSUEng.cab
    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15107/CTPID.cab
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
    O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
    O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
    O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
    O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
    O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
    O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
    0
  2. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    Bonjour ;

    le ver Zapchast se propage par le biais de canal IRC (de type Mirc) .

    1) Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

    2) Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre le sur ton Bureau à partir de ce lien :

    https://www.malwarebytes.com/

    3) A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.

    4) Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.

    5) Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.

    6) MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse. Comme MBAM se met automatiquement à jour en fin d'installation, clique sur OK pour fermer la boîte de dialogue. La fenêtre principale de MBAM s'affiche :

    7) Dans l'onglet analyse, vérifie que "Exécuter un examen complet" est coché et clique sur le bouton Rechercher pour démarrer l'analyse.

    8) MBAM analyse ton ordinateur. L'analyse peut prendre un certain temps. Il suffit de vérifier de temps en temps son avancement.

    9) A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.

    10) Si des malwares ont été détectés, leur liste s'affiche.
    En cliquant sur Suppression (?) , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

    11) MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Ferme le Bloc-notes. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)

    12) Ferme MBAM en cliquant sur Quitter.

    13) Poste le rapport dans ta réponse

    0
  3. Leffe
     
    Voici le log de malwarebytes ( 3 menaces détectées dont 2 effacées directement et une autre au reboot).
    Je n'ai plus eu d'alerte de nod 32 au reboot d'ailleurs

    Malwarebytes' Anti-Malware 1.36
    Version de la base de données: 2039
    Windows 6.0.6001 Service Pack 1

    25/04/2009 16:54:35
    mbam-log-2009-04-25 (16-54-35).txt

    Type de recherche: Examen complet (C:\|D:\|E:\|)
    Eléments examinés: 291165
    Temps écoulé: 49 minute(s), 21 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 0
    Valeur(s) du Registre infectée(s): 2
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 1

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Valeur(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ctfmon (Trojan.Zapchast) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\ctfmon (Trojan.Zapchast) -> Quarantined and deleted successfully.

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\Windows\System32\nod6441.exe (Backdoor.Bot) -> Delete on reboot.
    0
  4. chimay8 Messages postés 7947 Statut Contributeur sécurité 60
     
    salut leffe
    salut jérôme
    Marrant ça! t'habite près de Dinant?
    j'ai habité Bouvignes... :))

    0
    1. Leffe
       
      salut ,

      moi je suis de Nivelles

      Alexis
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    Coucou chimay ;)

    Leffe :

    On va vérifier que tu n'est rien d'autre :

    Télécharge ici :

    http://images.malwareremoval.com/random/RSIT.exe

    random's system information tool (RSIT) par random/random et sauvegarde-le sur le Bureau.

    Double-clique sur RSIT.exe afin de lancer RSIT.

    Lis le contenu de l'écran Disclaimer puis clique sur Continue (si tu acceptes les conditions).

    Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

    Poste le contenu de log.txt (<<qui sera affiché)
    ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

    NB : Les rapports sont sauvegardés dans le dossier C:\rsit

    Aide en images si besoin
    0
  7. Leffe
     
    Voici les logs demandés :

    log.txt :

    Logfile of random's system information tool 1.06 (written by random/random)
    Run by Alexis at 2009-04-26 05:08:28
    Microsoft® Windows Vista™ Édition Intégrale Service Pack 1
    System drive C: has 664 GB (93%) free of 715 GB
    Total RAM: 2046 MB (55% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 5:08:35, on 26/04/2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\system32\taskeng.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\ESET\ESET Smart Security\egui.exe
    C:\Program Files\Creative\DVDAudio\CTDVDDET.exe
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Program Files\Common Files\Logishrd\LComMgr\Communications_Helper.exe
    C:\Program Files\Logitech\QuickCam\Quickcam.exe
    C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
    C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
    C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe
    C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
    C:\Windows\System32\CTHELPER.EXE
    C:\Windows\System32\Ctxfihlp.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Windows\SYSTEM32\CTXFISPI.EXE
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Creative\Entertainment Center\EAXLoadr.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
    C:\Program Files\Creative\ShareDLL\CADI\NotiMan.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\Windows\System32\mobsync.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\UltraLeecher\Ultraleecher.exe
    C:\Program Files\UltraLeecher\Ultraleecher.exe
    C:\Program Files\QuickPar\QuickPar.exe
    d:\Documents\Desktop\RSIT.exe
    C:\Program Files\Trend Micro\HijackThis\Alexis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.goggle.be/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\DVDAudio\CTDVDDET.EXE"
    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
    O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
    O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
    O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
    O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
    O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
    O4 - HKLM\..\Run: [Module Loader] C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe -StartUpRun
    O4 - HKLM\..\Run: [AudioDrvEmulator] "C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe" -1 AudioDrvEmulator "C:\Program Files\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll"
    O4 - HKLM\..\Run: [VolPanel] "C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
    O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
    O4 - HKLM\..\Run: [UpdReg] C:\Windows\UpdReg.EXE
    O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [Creative MediaSource Go] "C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe" /SCB
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} (Creative Software AutoUpdate) - http://ccfiles.creative.com/Web/softwareupdate/su/ocx/15101/CTSUEng.cab
    O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15107/CTPID.cab
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
    O23 - Service: Creative ALchemy AL6 Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe
    O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
    O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
    O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
    O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
    O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
    O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
    O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
    O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
    O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
    0
  8. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    Il manque un morceau du rapport RSIT .
    0
  9. Leffe
     
    j'essaie de mettre la suite mais ça à pas l'air de marcher ....
    0
  10. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    J'essaie de mettre la suite mais ça à pas l'air de marcher ....


    Poste le en deux fois si il le faut .
    0
  11. Leffe
     
    la suite ....

    2009-04-03 04:07:05 ----A---- C:\Windows\system32\rgb9rast.dll
    2009-04-03 04:07:05 ----A---- C:\Windows\system32\resutils.dll
    2009-04-03 04:07:05 ----A---- C:\Windows\system32\reset.exe
    2009-04-03 04:07:05 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scksp.dll
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\schtasks.exe
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\schedsvc.dll
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scesrv.dll
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scecli.dll
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\SCardSvr.dll
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\scansetting.dll
    2009-04-03 04:07:04 ----A---- C:\Windows\system32\sbunattend.exe
    2009-04-03 04:07:03 ----A---- C:\Windows\system32\sdengin2.dll
    2009-04-03 04:07:03 ----A---- C:\Windows\system32\sdclt.exe
    2009-04-03 04:07:03 ----A---- C:\Windows\system32\sdchange.exe
    2009-04-03 04:07:03 ----A---- C:\Windows\system32\scrptadm.dll
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\sbeio.dll
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\sbe.dll
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\rasdiag.dll
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\raschap.dll
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\RacEngn.dll
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\RacAgent.exe
    2009-04-03 04:07:01 ----A---- C:\Windows\system32\qwinsta.exe
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasdlg.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasctrs.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rascfg.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasauto.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\rasapi32.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\query.exe
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qedit.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qdvd.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qdv.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\QCLIPROV.DLL
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qcap.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qasf.dll
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\qappsrv.exe
    2009-04-03 04:07:00 ----A---- C:\Windows\system32\QAGENTRT.DLL
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\rdrleakdiag.exe
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\rdpwsx.dll
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\qwave.dll
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\QUTIL.DLL
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\quser.exe
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\Query.dll
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\QSVRMGMT.DLL
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\QSHVHOST.DLL
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\qprocess.exe
    2009-04-03 04:06:59 ----A---- C:\Windows\system32\qmgr.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\remotepg.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\RelMon.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rekeywiz.exe
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\regsvc.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\regini.exe
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\RegCtrl.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\regapi.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\reg.exe
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rdpendp.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rdpencom.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\RDPENCDD.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rasphone.exe
    2009-04-03 04:06:58 ----A---- C:\Windows\system32\rasmontr.dll
    2009-04-03 04:06:58 ----A---- C:\Windows\regedit.exe
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rastls.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasppp.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasplap.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\RASMM.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasmans.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasman.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\rasgcw.dll
    2009-04-03 04:06:57 ----A---- C:\Windows\system32\raserver.exe
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rdpdd.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rdpclip.exe
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rdpcfgex.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rastapi.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\rasqec.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3dim700.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3dim.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d9.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d8.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10core.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10_1core.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10_1.dll
    2009-04-03 04:06:56 ----A---- C:\Windows\system32\d3d10.dll
    2009-04-03 04:06:55 ----A---- C:\Windows\system32\devenum.dll
    2009-04-03 04:06:55 ----A---- C:\Windows\system32\Defrag.exe
    2009-04-03 04:06:55 ----A---- C:\Windows\system32\ddraw.dll
    2009-04-03 04:06:55 ----A---- C:\Windows\system32\dbnetlib.dll
    2009-04-03 04:06:55 ----A---- C:\Windows\system32\dbgeng.dll
    2009-04-03 04:06:55 ----A---- C:\Windows\system32\d3dxof.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\dbghelp.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\csrstub.exe
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\csrss.exe
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\csrsrv.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cscui.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cscsvc.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cscapi.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptui.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptsvc.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptnet.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\cryptdll.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\crypt32.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\credui.dll
    2009-04-03 04:06:54 ----A---- C:\Windows\system32\credssp.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dispex.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dispdiag.exe
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dispci.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\diskraid.exe
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\diskpart.exe
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dinput8.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dimsroam.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\dimsjob.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\diantz.exe
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\cscobj.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\CscMig.dll
    2009-04-03 04:06:53 ----A---- C:\Windows\system32\cscdll.dll
    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfsr.exe
    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfrgui.exe
    2009-04-03 04:06:52 ----A---- C:\Windows\system32\DfrgNtfs.exe
    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfrgfat.exe
    2009-04-03 04:06:52 ----A---- C:\Windows\system32\dfdts.dll
    2009-04-03 04:06:52 ----A---- C:\Windows\system32\devmgr.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\diagperf.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dhcpsapi.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\DHCPQEC.DLL
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dhcpcsvc6.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dhcpcsvc.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\DfsShlEx.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\dfrgifc.exe
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\DFDWiz.exe
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\cmdial32.dll
    2009-04-03 04:06:51 ----A---- C:\Windows\system32\cmcfg32.dll
    2009-04-03 04:06:50 ----A---- C:\Windows\system32\cmmon32.exe
    2009-04-03 04:06:50 ----A---- C:\Windows\system32\cmlua.dll
    2009-04-03 04:06:50 ----A---- C:\Windows\system32\cmd.exe
    2009-04-03 04:06:50 ----A---- C:\Windows\system32\clusapi.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\convert.exe
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comuid.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comsnap.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comres.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\comrepl.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\ComputerDefaults.exe
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\compstui.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\CompatUI.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmipnpinstall.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmifw.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmicryptinstall.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cmdl32.exe
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\clfsw32.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\clbcatq.dll
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cipher.exe
    2009-04-03 04:06:49 ----A---- C:\Windows\system32\cic.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\consent.exe
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\conime.exe
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\comsvcs.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\comdlg32.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\colorui.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\COLORCNV.DLL
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\colbact.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cofiredm.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmutil.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmstplua.dll
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmstp.exe
    2009-04-03 04:06:48 ----A---- C:\Windows\system32\cmpbk32.dll
    2009-04-03 04:06:47 ----A---- C:\Windows\system32\els.dll
    2009-04-03 04:06:47 ----A---- C:\Windows\system32\comctl32.dll
    2009-04-03 04:06:45 ----A---- C:\Windows\system32\esentutl.exe
    2009-04-03 04:06:45 ----A---- C:\Windows\system32\esentprf.dll
    2009-04-03 04:06:45 ----A---- C:\Windows\system32\esent.dll
    2009-04-03 04:06:44 ----A---- C:\Windows\system32\EncDump.dll
    2009-04-03 04:06:44 ----A---- C:\Windows\system32\efsadu.dll
    2009-04-03 04:06:44 ----A---- C:\Windows\system32\eapsvc.dll
    2009-04-03 04:06:44 ----A---- C:\Windows\system32\EAPQEC.DLL
    2009-04-03 04:06:44 ----A---- C:\Windows\system32\eappprxy.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\filemgmt.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\feclient.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdWSD.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdWCN.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdSSDP.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdPHost.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fdeploy.dll
    2009-04-03 04:06:28 ----A---- C:\Windows\system32\fde.dll
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\fontsub.dll
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\fontext.dll
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\fmifs.dll
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\FirewallControlPanel.exe
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\FirewallAPI.dll
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\findstr.exe
    2009-04-03 04:06:27 ----A---- C:\Windows\system32\findnetprinters.dll
    2009-04-03 04:06:26 ----A---- C:\Windows\system32\f3ahvoas.dll
    2009-04-03 04:06:26 ----A---- C:\Windows\system32\evr.dll
    2009-04-03 04:06:26 ----A---- C:\Windows\system32\eventcls.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\extrac32.exe
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\ExplorerFrame.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\expand.exe
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\drmv2clt.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\drmmgrtn.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\driverquery.exe
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dpx.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dps.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dpnet.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dpapimig.exe
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3ui.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3svc.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3msm.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3gpui.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3gpclnt.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3dlg.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3cfg.dll
    2009-04-03 04:06:25 ----A---- C:\Windows\system32\dot3api.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dxgi.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dxdiagn.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dxdiag.exe
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\DWWIN.EXE
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\DpiScaling.exe
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnsrslvr.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnshc.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnscacheugc.exe
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dnsapi.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmvdsitf.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmutil.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmusic.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmsynth.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmscript.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmocx.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmloader.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmime.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmdskres2.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmdskmgr.dll
    2009-04-03 04:06:24 ----A---- C:\Windows\system32\dmdlgs.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eapphost.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eappgnui.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eappcfg.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\eapp3hst.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dxva2.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dwmredir.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dwmapi.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dwm.exe
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dsound.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dskquoui.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dskquota.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\dsdmo.dll
    2009-04-03 04:06:23 ----A---- C:\Windows\system32\drvstore.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\duser.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsuiext.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dssenh.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dssec.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsquery.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsprop.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\dsauth.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\drvinst.exe
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\authfwcfg.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\AudioEng.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\audiodg.exe
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\audiodev.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\atmfd.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\atl.dll
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\AtBroker.exe
    2009-04-03 04:06:22 ----A---- C:\Windows\system32\at.exe
    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AuthFWSnapin.dll
    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AuthFWGP.dll
    2009-04-03 04:06:21 ----A---- C:\Windows\system32\auditpol.exe
    2009-04-03 04:06:21 ----A---- C:\Windows\system32\audiosrv.dll
    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AudioSes.dll
    2009-04-03 04:06:21 ----A---- C:\Windows\system32\AUDIOKSE.dll
    2009-04-03 04:06:19 ----A---- C:\Windows\system32\bcdedit.exe
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bitsadmin.exe
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\BFE.DLL
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bcrypt.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bcdsrv.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\bcdprov.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\batt.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\basesrv.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\basecsp.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autoplay.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autofmt.exe
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autoconv.exe
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\autochk.exe
    2009-04-03 04:06:18 ----A---- C:\Windows\system32\authui.dll
    2009-04-03 04:06:18 ----A---- C:\Windows\bfsvc.exe
    0
  12. Leffe
     
    la suite n°2 ...

    2009-04-03 04:06:17 ----A---- C:\Windows\system32\AzSqlExt.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\azroleui.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\azroles.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\avrt.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\avifil32.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\authz.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\ACW.exe
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\actxprxy.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\activeds.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\ActiveContentWizard.dll
    2009-04-03 04:06:17 ----A---- C:\Windows\system32\ActionQueue.dll
    2009-04-03 04:06:16 ----A---- C:\Windows\system32\aclui.dll
    2009-04-03 04:06:16 ----A---- C:\Windows\system32\accessibilitycpl.dll
    2009-04-03 04:06:16 ----A---- C:\Windows\system32\aaclient.dll
    2009-04-03 04:06:15 ----A---- C:\Windows\system32\apss.dll
    2009-04-03 04:06:15 ----A---- C:\Windows\system32\appmgr.dll
    2009-04-03 04:06:15 ----A---- C:\Windows\system32\appmgmts.dll
    2009-04-03 04:06:15 ----A---- C:\Windows\system32\apircl.dll
    2009-04-03 04:06:15 ----A---- C:\Windows\system32\apds.dll
    2009-04-03 04:06:15 ----A---- C:\Windows\system32\amstream.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\appinfo.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\apphelp.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\alg.exe
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\advapi32.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\adtschema.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsnt.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsmsext.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsldpc.dll
    2009-04-03 04:06:14 ----A---- C:\Windows\system32\adsldp.dll
    2009-04-03 04:06:13 ----A---- C:\Windows\system32\catsrvut.dll
    2009-04-03 04:06:13 ----A---- C:\Windows\system32\catsrv.dll
    2009-04-03 04:06:13 ----A---- C:\Windows\system32\cacls.exe
    2009-04-03 04:06:13 ----A---- C:\Windows\system32\cabview.dll
    2009-04-03 04:06:13 ----A---- C:\Windows\system32\cabinet.dll
    2009-04-03 04:06:13 ----A---- C:\Windows\system32\btpanui.dll
    2009-04-03 04:06:12 ----A---- C:\Windows\system32\capisp.dll
    2009-04-03 04:06:12 ----A---- C:\Windows\system32\brcplsiw.dll
    2009-04-03 04:06:12 ----A---- C:\Windows\system32\brcplsdw.dll
    2009-04-03 04:06:12 ----A---- C:\Windows\system32\brcpl.dll
    2009-04-03 04:06:12 ----A---- C:\Windows\system32\BOOTVID.DLL
    2009-04-03 04:06:12 ----A---- C:\Windows\system32\bootstr.dll
    2009-04-03 04:06:11 ----A---- C:\Windows\system32\certmgr.dll
    2009-04-03 04:06:11 ----A---- C:\Windows\system32\bthci.dll
    2009-04-03 04:06:11 ----A---- C:\Windows\system32\browseui.dll
    2009-04-03 04:06:11 ----A---- C:\Windows\system32\browser.dll
    2009-04-03 04:06:11 ----A---- C:\Windows\system32\bridgeunattend.exe
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\chglogon.exe
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\certutil.exe
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\certreq.exe
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\certprop.dll
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\CertEnrollUI.dll
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\CertEnrollCtrl.exe
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\CertEnroll.dll
    2009-04-03 04:06:09 ----A---- C:\Windows\system32\certcli.dll
    2009-04-03 04:06:08 ----A---- C:\Windows\system32\chgusr.exe
    2009-04-03 04:06:08 ----A---- C:\Windows\system32\chgport.exe
    2009-04-03 04:06:08 ----A---- C:\Windows\system32\change.exe
    2009-04-03 04:06:08 ----A---- C:\Windows\system32\cfgbkend.dll
    2009-04-03 04:06:08 ----A---- C:\Windows\system32\cewmdm.dll
    2009-04-03 04:06:07 ----A---- C:\Windows\system32\cfgmgr32.dll
    2009-04-03 04:06:07 ----A---- C:\Windows\system32\cdosys.dll
    2009-04-03 04:06:06 ----A---- C:\Windows\system32\bootcfg.exe
    2009-04-03 04:06:06 ----A---- C:\Windows\system32\BlbEvents.dll
    2009-04-03 04:06:06 ----A---- C:\Windows\system32\blb_ps.dll
    2009-04-03 04:06:06 ----A---- C:\Windows\system32\blackbox.dll
    2009-04-03 04:06:06 ----A---- C:\Windows\system32\bitsigd.dll
    2009-04-03 04:06:05 ----A---- C:\Windows\system32\IMJP10K.DLL
    2009-04-03 04:06:04 ----A---- C:\Windows\system32\imagesp1.dll
    2009-04-03 04:06:03 ----A---- C:\Windows\system32\imapi2fs.dll
    2009-04-03 04:06:03 ----A---- C:\Windows\system32\imapi2.dll
    2009-04-03 04:06:03 ----A---- C:\Windows\system32\imapi.dll
    2009-04-03 04:06:03 ----A---- C:\Windows\system32\imagehlp.dll
    2009-04-03 04:06:03 ----A---- C:\Windows\system32\IKEEXT.DLL
    2009-04-03 04:06:02 ----A---- C:\Windows\system32\input.dll
    2009-04-03 04:06:02 ----A---- C:\Windows\system32\InkEd.dll
    2009-04-03 04:06:02 ----A---- C:\Windows\system32\inetppui.dll
    2009-04-03 04:06:02 ----A---- C:\Windows\system32\inetpp.dll
    2009-04-03 04:06:02 ----A---- C:\Windows\system32\inetmib1.dll
    2009-04-03 04:06:01 ----A---- C:\Windows\system32\InfDefaultInstall.exe
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\imm32.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\icaapi.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\iassvcs.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\iassdo.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\iassam.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\iashlpr.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\iasacct.dll
    2009-04-03 04:05:54 ----A---- C:\Windows\system32\ias.dll
    2009-04-03 04:05:53 ----A---- C:\Windows\system32\iasrad.dll
    2009-04-03 04:05:53 ----A---- C:\Windows\system32\iaspolcy.dll
    2009-04-03 04:05:53 ----A---- C:\Windows\system32\iasnap.dll
    2009-04-03 04:05:53 ----A---- C:\Windows\system32\IasMigPlugin.dll
    2009-04-03 04:05:53 ----A---- C:\Windows\system32\httpapi.dll
    2009-04-03 04:05:52 ----A---- C:\Windows\system32\ifsutil.dll
    2009-04-03 04:05:52 ----A---- C:\Windows\system32\ifmon.dll
    2009-04-03 04:05:51 ----A---- C:\Windows\system32\idndl.dll
    2009-04-03 04:05:51 ----A---- C:\Windows\system32\icsunattend.exe
    2009-04-03 04:05:51 ----A---- C:\Windows\system32\icsfiltr.dll
    2009-04-03 04:05:51 ----A---- C:\Windows\system32\icm32.dll
    2009-04-03 04:05:51 ----A---- C:\Windows\system32\icfupgd.dll
    2009-04-03 04:05:51 ----A---- C:\Windows\system32\icacls.exe
    2009-04-03 04:05:49 ----A---- C:\Windows\system32\HotStartUserAgent.dll
    2009-04-03 04:05:49 ----A---- C:\Windows\system32\hnetmon.dll
    2009-04-03 04:05:49 ----A---- C:\Windows\system32\hnetcfg.dll
    2009-04-03 04:05:49 ----A---- C:\Windows\system32\hlink.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSUNATD.exe
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSTIFF.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSMON.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSEXT32.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOVER.exe
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOMPOSE.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOMEX.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSCOM.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FXSAPI.dll
    2009-04-03 04:05:48 ----A---- C:\Windows\system32\FWPUCLNT.DLL
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSXP32.dll
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSUTILITY.dll
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXST30.dll
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSSVC.exe
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSST.dll
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSROUTE.dll
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\FXSRESM.dll
    2009-04-03 04:05:47 ----A---- C:\Windows\system32\fsmgmt.msc
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\hcrstco.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\hbaapi.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\GuidedHelp.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fwcfg.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fveui.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fveRecover.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fvenotify.exe
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fvecpl.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fveapi.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fundisc.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\ftp.exe
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fsutil.exe
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\framedynos.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\framedyn.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\framebuf.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\system32\fphc.dll
    2009-04-03 04:05:46 ----A---- C:\Windows\fveupdate.exe
    2009-04-03 04:05:45 ----A---- C:\Windows\system32\HelpPaneProxy.dll
    2009-04-03 04:05:45 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs
    2009-04-03 04:05:45 ----A---- C:\Windows\HelpPane.exe
    2009-04-03 04:05:44 ----A---- C:\Windows\system32\gpscript.exe
    2009-04-03 04:05:44 ----A---- C:\Windows\system32\gpscript.dll
    2009-04-03 04:05:44 ----A---- C:\Windows\system32\getmac.exe
    2009-04-03 04:05:44 ----A---- C:\Windows\system32\gatherWiredInfo.vbs
    2009-04-03 04:05:44 ----A---- C:\Windows\system32\gacinstall.dll
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\graftabl.com
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpupdate.exe
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpsvc.dll
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpresult.exe
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpprnext.dll
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpedit.msc
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpedit.dll
    2009-04-03 04:05:43 ----A---- C:\Windows\system32\gpapi.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiadss.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiadefui.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiaaut.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wiaacmgr.exe
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\whealogr.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\WFS.exe
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wfapigp.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wevtutil.exe
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wevtsvc.dll
    2009-04-03 04:05:37 ----A---- C:\Windows\system32\wevtfwd.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\winusb.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\wintrust.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\winsta.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\winsrv.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\WINSRPC.DLL
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiashext.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiaservc.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiascanprofiles.dll
    2009-04-03 04:05:35 ----A---- C:\Windows\system32\wiarpc.dll
    2009-04-03 04:05:34 ----A---- C:\Windows\system32\WinSCard.dll
    2009-04-03 04:05:34 ----A---- C:\Windows\system32\WinSATAPI.dll
    2009-04-03 04:05:34 ----A---- C:\Windows\system32\WinSAT.exe
    2009-04-03 04:05:34 ----A---- C:\Windows\system32\winrsmgr.dll
    2009-04-03 04:05:33 ----A---- C:\Windows\system32\WLanConn.dll
    2009-04-03 04:05:33 ----A---- C:\Windows\system32\wlancfg.dll
    2009-04-03 04:05:33 ----A---- C:\Windows\system32\wlanapi.dll
    2009-04-03 04:05:33 ----A---- C:\Windows\system32\wkssvc.dll
    2009-04-03 04:05:33 ----A---- C:\Windows\system32\wisptis.exe
    2009-04-03 04:05:33 ----A---- C:\Windows\system32\wininit.exe
    2009-04-03 04:05:32 ----A---- C:\Windows\system32\WinFax.dll
    2009-04-03 04:05:32 ----A---- C:\Windows\system32\winethc.dll
    2009-04-03 04:05:32 ----A---- C:\Windows\system32\WindowsUltimateExtrasCPL.dll
    2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrshost.exe
    2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrscmd.dll
    2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrs.exe
    2009-04-03 04:05:31 ----A---- C:\Windows\system32\winrm.vbs
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\winnsi.dll
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\winmm.dll
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\winlogon.exe
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\wbemcomn.dll
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\wbadmin.exe
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\wavemsp.dll
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\WavDest.dll
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\waitfor.exe
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\w32tm.exe
    2009-04-03 04:05:30 ----A---- C:\Windows\system32\w32time.dll
    2009-04-03 04:05:29 ----A---- C:\Windows\system32\vsstrace.dll
    2009-04-03 04:05:29 ----A---- C:\Windows\system32\vssadmin.exe
    2009-04-03 04:05:29 ----A---- C:\Windows\system32\vss_ps.dll
    2009-04-03 04:05:28 ----A---- C:\Windows\system32\VSSVC.exe
    2009-04-03 04:05:28 ----A---- C:\Windows\system32\vssapi.dll
    2009-04-03 04:05:27 ----A---- C:\Windows\system32\WebClnt.dll
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\wevtapi.dll
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\wermgr.exe
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\WerFaultSecure.exe
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\WerFault.exe
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\werdiagcontroller.dll
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\wecutil.exe
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\wecsvc.dll
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\wecapi.dll
    2009-04-03 04:05:26 ----A---- C:\Windows\system32\wdscore.dll
    2009-04-03 04:05:25 ----A---- C:\Windows\system32\wercplsupport.dll
    2009-04-03 04:05:25 ----A---- C:\Windows\system32\wercon.exe
    2009-04-03 04:05:25 ----A---- C:\Windows\system32\wer.dll
    2009-04-03 04:05:25 ----A---- C:\Windows\system32\wbengine.exe
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wscsvc.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wscproxystub.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wscntfy.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wdigest.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wdi.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wdc.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wcnwiz.dll
    2009-04-03 04:05:24 ----A---- C:\Windows\system32\wcncsvc.dll
    2009-04-03 04:05:23 ----A---- C:\Windows\system32\WSDMon.dll
    2009-04-03 04:05:23 ----A---- C:\Windows\system32\WSDApi.dll
    2009-04-03 04:05:23 ----A---- C:\Windows\system32\wscmisetup.dll
    2009-04-03 04:05:23 ----A---- C:\Windows\system32\wscisvif.dll
    2009-04-03 04:05:23 ----A---- C:\Windows\system32\wscapi.dll
    2009-04-03 04:05:22 ----A---- C:\Windows\system32\wship6.dll
    2009-04-03 04:05:22 ----A---- C:\Windows\system32\wshcon.dll
    2009-04-03 04:05:22 ----A---- C:\Windows\system32\wsecedit.dll
    2009-04-03 04:05:22 ----A---- C:\Windows\system32\wpdbusenum.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\xcopy.exe
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\ws2_32.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpnpinst.exe
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpdwcn.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\WPDSp.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\WPDShServiceObj.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpdshext.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpd_ci.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpcsvc.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpclsp.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpccpl.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\wpcao.dll
    2009-04-03 04:05:21 ----A---- C:\Windows\system32\Wpc.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\XPSSHHDR.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\xmlprovi.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\xmllite.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\xactsrv.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\wzcdlg.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\wvc.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\wusa.exe
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\WUDFx.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\WUDFSvc.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\WUDFPlatform.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\wsnmp32.dll
    2009-04-03 04:05:18 ----A---- C:\Windows\system32\WsmWmiPl.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\xpssvcs.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WUDFHost.exe
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\wtsapi32.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\wsqmcons.exe
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\wsock32.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmSvc.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmRes.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmProv.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmCl.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WsmAuto.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
    2009-04-03 04:05:17 ----A---- C:\Windows\system32\WSHTCPIP.DLL
    2009-04-03 04:05:16 ----A---- C:\Windows\system32\xwizards.dll
    2009-04-03 04:05:16 ----A---- C:\Windows\system32\wmidx.dll
    2009-04-03 04:05:16 ----A---- C:\Windows\system32\wmicmiplugin.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\Wldap32.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanui.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlansvc.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlansec.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanpref.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanmsm.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\WlanMmHC.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanhlp.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlangpui.dll
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlanext.exe
    2009-04-03 04:05:15 ----A---- C:\Windows\system32\wlandlg.dll
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\wmdrmsdk.dll
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\wmdrmnet.dll
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\wmdrmdev.dll
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\WMASF.DLL
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\WMADMOE.DLL
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\WMADMOD.DLL
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\wlgpclnt.dll
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\WlanMM.dll
    2009-04-03 04:05:14 ----A---- C:\Windows\system32\WLanHC.dll
    2009-04-03 04:05:13 ----A---- C:\Windows\system32\WMSPDMOE.DLL
    2009-04-03 04:05:13 ----A---- C:\Windows\system32\WMSPDMOD.DLL
    2009-04-03 04:05:13 ----A---- C:\Windows\system32\wmpsrcwp.dll
    2009-04-03 04:05:13 ----A---- C:\Windows\system32\wmpshell.dll
    2009-04-03 04:05:13 ----A---- C:\Windows\system32\wmpmde.dll
    2009-04-03 04:05:13 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
    2009-04-03 04:05:11 ----A---- C:\Windows\system32\wow32.dll
    2009-04-03 04:05:11 ----A---- C:\Windows\system32\WMVXENCD.DLL
    2009-04-03 04:05:11 ----A---- C:\Windows\system32\WMVSENCD.DLL
    2009-04-03 04:05:11 ----A---- C:\Windows\system32\WMVSDECD.DLL
    2009-04-03 04:05:10 ----A---- C:\Windows\system32\WMVENCOD.DLL
    2009-04-03 04:05:10 ----A---- C:\Windows\system32\wmvdspa.dll
    2009-04-03 04:05:10 ----A---- C:\Windows\system32\WMVDECOD.DLL
    2009-04-03 04:05:10 ----A---- C:\Windows\system32\wmpdxm.dll
    2009-04-03 04:05:10 ----A---- C:\Windows\system32\wmiprop.dll
    2009-04-03 04:05:09 ----A---- C:\Windows\system32\WMPhoto.dll
    2009-04-03 04:05:09 ----A---- C:\Windows\system32\WMPEncEn.dll
    2009-04-03 04:05:07 ----A---- C:\Windows\system32\wmpcm.dll
    2009-04-03 04:05:05 ----A---- C:\Windows\system32\systeminfo.exe
    2009-04-03 04:05:05 ----A---- C:\Windows\system32\systemcpl.dll
    2009-04-03 04:05:04 ----A---- C:\Windows\system32\Tabbtn.dll
    2009-04-03 04:05:04 ----A---- C:\Windows\system32\t2embed.dll
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\tcpmon.dll
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\tcpipcfg.dll
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\tbssvc.dll
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\tbs.dll
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\taskschd.dll
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\taskmgr.exe
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\tasklist.exe
    2009-04-03 04:05:01 ----A---- C:\Windows\system32\taskkill.exe
    2009-04-03 04:05:00 ----A---- C:\Windows\system32\tdh.dll
    2009-04-03 04:05:00 ----A---- C:\Windows\system32\tcpmon.ini
    2009-04-03 04:05:00 ----A---- C:\Windows\system32\tabcal.exe
    2009-04-03 04:04:59 ----A---- C:\Windows\system32\taskeng.exe
    2009-04-03 04:04:59 ----A---- C:\Windows\system32\taskcomp.dll
    2009-04-03 04:04:59 ----A---- C:\Windows\system32\tapisrv.dll
    2009-04-03 04:04:59 ----A---- C:\Windows\system32\TapiMigPlugin.dll
    2009-04-03 04:04:59 ----A---- C:\Windows\system32\TabbtnEx.dll
    2009-04-03 04:04:58 ----A---- C:\Windows\system32\takeown.exe
    2009-04-03 04:04:58 ----A---- C:\Windows\system32\srrstr.dll
    2009-04-03 04:04:58 ----A---- C:\Windows\system32\sqmapi.dll
    2009-04-03 04:04:58 ----A---- C:\Windows\system32\sqlcese30.dll
    2009-04-03 04:04:57 ----A---- C:\Windows\system32\sqlsrv32.dll
    2009-04-03 04:04:57 ----A---- C:\Windows\system32\sqlceqp30.dll
    2009-04-03 04:04:56 ----A---- C:\Windows\system32\sstpsvc.dll
    2009-04-03 04:04:56 ----A---- C:\Windows\system32\SSShim.dll
    2009-04-03 04:04:56 ----A---- C:\Windows\system32\ssdpsrv.dll
    2009-04-03 04:04:56 ----A---- C:\Windows\system32\srwmi.dll
    2009-04-03 04:04:54 ----A---- C:\Windows\system32\srvsvc.dll
    2009-04-03 04:04:52 ----A---- C:\Windows\system32\spwizeng.dll
    2009-04-03 04:04:52 ----A---- C:\Windows\system32\spoolsv.exe
    2009-04-03 04:04:52 ----A---- C:\Windows\system32\spoolss.dll
    2009-04-03 04:04:52 ----A---- C:\Windows\system32\spbcd.dll
    2009-04-03 04:04:52 ----A---- C:\Windows\system32\SoundRecorder.exe
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\syncui.dll
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\synceng.dll
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\SyncCenter.dll
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\sxstrace.exe
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\spwizres.dll
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\spwizimg.dll
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\sppnp.dll
    2009-04-03 04:04:51 ----A---- C:\Windows\system32\spopk.dll
    2009-04-03 04:04:50 ----A---- C:\Windows\system32\SysFxUI.dll
    2009-04-03 04:04:50 ----A---- C:\Windows\system32\sxsstore.dll
    2009-04-03 04:04:50 ----A---- C:\Windows\system32\sxs.dll
    2009-04-03 04:04:50 ----A---- C:\Windows\system32\swprv.dll
    2009-04-03 04:04:49 ----A---- C:\Windows\system32\syssetup.dll
    2009-04-03 04:04:49 ----A---- C:\Windows\system32\sysmain.dll
    2009-04-03 04:04:49 ----A---- C:\Windows\system32\syskey.exe
    2009-04-03 04:04:49 ----A---- C:\Windows\system32\Storprop.dll
    2009-04-03 04:04:49 ----A---- C:\Windows\system32\stobject.dll
    2009-04-03 04:04:49 ----A---- C:\Windows\system32\sti_ci.dll
    2009-04-03 04:04:48 ----A---- C:\Windows\system32\svchost.exe
    2009-04-03 04:04:48 ----A---- C:\Windows\system32\sud.dll
    2009-04-03 04:04:47 ----A---- C:\Windows\system32\userinit.exe
    2009-04-03 04:04:47 ----A---- C:\Windows\system32\userenv.dll
    2009-04-03 04:04:47 ----A---- C:\Windows\system32\usercpl.dll
    2009-04-03 04:04:47 ----A---- C:\Windows\system32\user32.dll
    2009-04-03 04:04:47 ----A---- C:\Windows\system32\usbperf.dll
    2009-04-03 04:04:47 ----A---- C:\Windows\system32\usbmon.dll
    2009-04-03 04:04:46 ----A---- C:\Windows\system32\usp10.dll
    2009-04-03 04:04:46 ----A---- C:\Windows\system32\usbui.dll
    2009-04-03 04:04:46 ----A---- C:\Windows\system32\upnphost.dll
    2009-04-03 04:04:46 ----A---- C:\Windows\system32\upnpcont.exe
    2009-04-03 04:04:46 ----A---- C:\Windows\system32\upnp.dll
    2009-04-03 04:04:45 ----A---- C:\Windows\system32\zipfldr.dll
    2009-04-03 04:04:45 ----A---- C:\Windows\system32\xwtpw32.dll
    2009-04-03 04:04:45 ----A---- C:\Windows\system32\vga256.dll
    2009-04-03 04:04:45 ----A---- C:\Windows\system32\untfs.dll
    2009-04-03 04:04:44 ----A---- C:\Windows\system32\vga.dll
    2009-04-03 04:04:38 ----A---- C:\Windows\system32\vga64k.dll
    2009-04-03 04:04:30 ----A---- C:\Windows\system32\VIDRESZR.DLL
    2009-04-03 04:04:30 ----A---- C:\Windows\system32\vdmdbg.dll
    2009-04-03 04:04:30 ----A---- C:\Windows\system32\VAN.dll
    2009-04-03 04:04:30 ----A---- C:\Windows\system32\uudf.dll
    2009-04-03 04:04:30 ----A---- C:\Windows\system32\Utilman.exe
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\vfwwdm32.dll
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\version.dll
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\verifier.exe
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\verifier.dll
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\vdsutil.dll
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\uxtheme.dll
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\uxsms.dll
    2009-04-03 04:04:29 ----A---- C:\Windows\system32\utildll.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdsldr.exe
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdsdyn.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdsbas.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\vds_ps.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\vds.exe
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\vdmredir.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\tscfgwmi.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\trkwks.dll
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\tracerpt.exe
    2009-04-03 04:04:28 ----A---- C:\Windows\system32\TMM.dll
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\TSTheme.exe
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\TSpkg.dll
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\tskill.exe
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\tsdiscon.exe
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\tscupgrd.exe
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\tscon.exe
    2009-04-03 04:04:27 ----A---- C:\Windows\system32\TpmInit.exe
    2009-04-03 04:04:26 ----A---- C:\Windows\system32\tsgqec.dll
    2009-04-03 04:04:26 ----A---- C:\Windows\system32\tsddd.dll
    2009-04-03 04:04:26 ----A---- C:\Windows\system32\themecpl.dll
    2009-04-03 04:04:26 ----A---- C:\Windows\system32\termsrv.dll
    2009-04-03 04:04:26 ----A---- C:\Windows\system32\termmgr.dll
    2009-04-03 04:04:25 ----A---- C:\Windows\system32\umb.dll
    2009-04-03 04:04:25 ----A---- C:\Windows\system32\ulib.dll
    2009-04-03 04:04:25 ----A---- C:\Windows\system32\TimeDateMUICallback.dll
    2009-04-03 04:04:25 ----A---- C:\Windows\system32\thumbcache.dll
    2009-04-03 04:04:25 ----A---- C:\Windows\system32\themeui.dll
    2009-04-03 04:04:23 ----A---- C:\Windows\system32\unlodctr.exe
    2009-04-03 04:04:23 ----A---- C:\Windows\system32\UIHub.dll
    2009-04-03 04:04:22 ----A---- C:\Windows\system32\unregmp2.exe
    2009-04-03 04:04:22 ----A---- C:\Windows\system32\unbcl.dll
    2009-04-03 04:04:22 ----A---- C:\Windows\system32\unattendedjoin.exe
    2009-04-03 04:04:22 ----A---- C:\Windows\system32\unattend.dll
    2009-04-03 04:04:22 ----A---- C:\Windows\system32\umrdp.dll
    2009-04-03 04:04:22 ----A---- C:\Windows\system32\umpnpmgr.dll
    2009-04-03 04:04:21 ----A---- C:\Windows\system32\ucsvc.exe
    2009-04-03 04:04:21 ----A---- C:\Windows\system32\txfw32.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\UIAutomationCore.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\UI0Detect.exe
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\ufat.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\uexfat.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\uDWM.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\txflog.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\twext.dll
    2009-04-03 04:04:20 ----A---- C:\Windows\system32\TsWpfWrp.exe
    2009-04-03 04:02:44 ----A---- C:\Windows\system32\cbsra.exe
    2009-04-03 03:51:41 ----D---- C:\Users\Alexis\AppData\Roaming\ATI
    2009-04-03 03:49:48 ----D---- C:\Program Files\ATI Technologies
    2009-04-03 03:49:46 ----D---- C:\Program Files\ATI
    2009-04-03 03:40:58 ----A---- C:\Windows\system32\gpprefcl.dll
    2009-04-03 03:40:35 ----D---- C:\Windows\system32\WindowsPowerShell
    2009-04-03 03:10:06 ----D---- C:\Windows\Minidump
    2009-04-03 02:47:07 ----A---- C:\Windows\system32\winipsec.dll
    2009-04-03 02:47:07 ----A---- C:\Windows\system32\polstore.dll
    2009-04-03 02:47:07 ----A---- C:\Windows\system32\IPSECSVC.DLL
    2009-04-03 02:47:07 ----A---- C:\Windows\system32\FwRemoteSvr.dll
    2009-04-03 02:46:25 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
    2009-04-03 02:46:25 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
    2009-04-03 02:46:25 ----A---- C:\Windows\system32\PortableDeviceApi.dll
    2009-04-03 02:43:25 ----A---- C:\Windows\system32\gdi32.dll
    2009-04-03 02:43:10 ----A---- C:\Windows\system32\DreamScene.dll
    2009-04-03 02:42:27 ----A---- C:\Windows\system32\es.dll
    2009-04-03 02:42:16 ----A---- C:\Windows\system32\D3DX9_39.dll
    2009-04-03 02:40:43 ----A---- C:\Windows\system32\kbd106n.dll
    2009-04-03 02:40:41 ----A---- C:\Windows\system32\winresume.exe
    2009-04-03 02:40:41 ----A---- C:\Windows\system32\winload.exe
    2009-04-03 02:40:41 ----A---- C:\Windows\system32\srdelayed.exe
    2009-04-03 02:40:41 ----A---- C:\Windows\system32\srcore.dll
    2009-04-03 02:40:41 ----A---- C:\Windows\system32\srclient.dll
    2009-04-03 02:40:41 ----A---- C:\Windows\system32\rstrui.exe
    2009-04-03 02:40:40 ----A---- C:\Windows\system32\setbcdlocale.dll
    2009-04-03 02:40:40 ----A---- C:\Windows\system32\kd1394.dll
    2009-04-03 02:40:40 ----A---- C:\Windows\system32\ci.dll
    2009-04-03 02:39:55 ----D---- C:\Program Files\BitLocker
    2009-04-03 02:39:21 ----A---- C:\Windows\system32\SecureKeyBackupCPL.dll
    2009-04-03 02:37:02 ----A---- C:\Windows\Ascd_tmp.ini
    2009-04-03 02:29:13 ----D---- C:\ProgramData\Adobe
    2009-04-03 02:29:11 ----D---- C:\Program Files\Common Files\Adobe
    2009-04-03 02:29:11 ----D---- C:\Program Files\Adobe
    2009-04-03 02:27:48 ----D---- C:\ProgramData\NOS
    0
  13. Leffe
     
    la suite n°3 :

    2009-04-03 02:11:13 ----A---- C:\Windows\system32\Apphlpdm.dll
    2009-04-03 02:11:11 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
    2009-04-03 02:11:11 ----A---- C:\Windows\system32\gameux.dll
    2009-04-03 02:10:52 ----A---- C:\Windows\system32\wmpeffects.dll
    2009-04-03 02:10:37 ----A---- C:\Windows\system32\msxml3r.dll
    2009-04-03 02:10:37 ----A---- C:\Windows\system32\msxml3.dll
    2009-04-03 02:09:00 ----A---- C:\Windows\system32\netapi32.dll
    2009-04-03 02:08:40 ----A---- C:\Windows\system32\tzres.dll
    2009-04-03 02:07:50 ----A---- C:\Windows\system32\psisdecd.dll
    2009-04-03 02:07:50 ----A---- C:\Windows\system32\EncDec.dll
    2009-04-03 02:07:22 ----A---- C:\Windows\system32\wmploc.DLL
    2009-04-03 02:07:22 ----A---- C:\Windows\system32\wmp.dll
    2009-04-03 02:07:22 ----A---- C:\Windows\system32\spwmp.dll
    2009-04-03 02:07:21 ----A---- C:\Windows\system32\dxmasf.dll
    2009-04-03 02:06:43 ----A---- C:\Windows\system32\shell32.dll
    2009-04-03 02:04:46 ----D---- C:\Program Files\ASUS
    2009-04-03 02:04:07 ----D---- C:\Users\Alexis\AppData\Roaming\InstallShield
    2009-04-03 02:00:24 ----HD---- C:\Program Files\InstallShield Installation Information
    2009-04-03 01:55:54 ----D---- C:\Users\Alexis\AppData\Roaming\Macromedia
    2009-04-03 01:55:54 ----D---- C:\Users\Alexis\AppData\Roaming\Adobe
    2009-04-03 01:55:53 ----D---- C:\Windows\system32\Macromed
    2009-04-03 01:42:04 ----D---- C:\Windows\Panther
    2009-04-03 01:36:54 ----A---- C:\Windows\explorer.exe
    2009-04-03 01:35:21 ----A---- C:\Windows\system32\hccoin.dll
    2009-04-03 01:33:48 ----A---- C:\Windows\system32\NlsLexicons0046.dll
    2009-04-03 01:33:48 ----A---- C:\Windows\system32\NlsLexicons0045.dll
    2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0049.dll
    2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0047.dll
    2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0039.dll
    2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0022.dll
    2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0021.dll
    2009-04-03 01:33:47 ----A---- C:\Windows\system32\NlsLexicons0020.dll
    2009-04-03 01:33:46 ----A---- C:\Windows\system32\NlsLexicons0026.dll
    2009-04-03 01:33:46 ----A---- C:\Windows\system32\NlsLexicons0024.dll
    2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0027.dll
    2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0013.dll
    2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0011.dll
    2009-04-03 01:33:45 ----A---- C:\Windows\system32\NlsLexicons0010.dll
    2009-04-03 01:33:44 ----A---- C:\Windows\system32\NlsLexicons0018.dll
    2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0019.dll
    2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0003.dll
    2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0002.dll
    2009-04-03 01:33:43 ----A---- C:\Windows\system32\NlsLexicons0001.dll
    2009-04-03 01:33:42 ----A---- C:\Windows\system32\NlsLexicons0009.dll
    2009-04-03 01:33:42 ----A---- C:\Windows\system32\NlsLexicons0007.dll
    2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004e.dll
    2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004c.dll
    2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004b.dll
    2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons004a.dll
    2009-04-03 01:33:41 ----A---- C:\Windows\system32\NlsLexicons003e.dll
    2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons002a.dll
    2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons001d.dll
    2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons001b.dll
    2009-04-03 01:33:40 ----A---- C:\Windows\system32\NlsLexicons001a.dll
    2009-04-03 01:33:39 ----A---- C:\Windows\system32\NlsLexicons000d.dll
    2009-04-03 01:33:39 ----A---- C:\Windows\system32\NlsLexicons000c.dll
    2009-04-03 01:33:39 ----A---- C:\Windows\system32\NlsLexicons000a.dll
    2009-04-03 01:33:38 ----A---- C:\Windows\system32\NlsLexicons0416.dll
    2009-04-03 01:33:38 ----A---- C:\Windows\system32\NlsLexicons0414.dll
    2009-04-03 01:33:38 ----A---- C:\Windows\system32\NlsLexicons000f.dll
    2009-04-03 01:33:37 ----A---- C:\Windows\system32\NlsModels0011.dll
    2009-04-03 01:33:37 ----A---- C:\Windows\system32\NlsLexicons081a.dll
    2009-04-03 01:33:37 ----A---- C:\Windows\system32\NlsLexicons0816.dll
    2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0049.dll
    2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0047.dll
    2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0046.dll
    2009-04-03 01:33:36 ----A---- C:\Windows\system32\NlsData0045.dll
    2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0039.dll
    2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0026.dll
    2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0024.dll
    2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0022.dll
    2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0021.dll
    2009-04-03 01:33:35 ----A---- C:\Windows\system32\NlsData0020.dll
    2009-04-03 01:33:34 ----A---- C:\Windows\system32\NlsData0027.dll
    2009-04-03 01:33:34 ----A---- C:\Windows\system32\NlsData0011.dll
    2009-04-03 01:33:34 ----A---- C:\Windows\system32\NlsData0010.dll
    2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0019.dll
    2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0018.dll
    2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0013.dll
    2009-04-03 01:33:33 ----A---- C:\Windows\system32\NlsData0000.dll
    2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0009.dll
    2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0007.dll
    2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0003.dll
    2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0002.dll
    2009-04-03 01:33:32 ----A---- C:\Windows\system32\NlsData0001.dll
    2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004e.dll
    2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004c.dll
    2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004b.dll
    2009-04-03 01:33:31 ----A---- C:\Windows\system32\NlsData004a.dll
    2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData003e.dll
    2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData002a.dll
    2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData001d.dll
    2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData001b.dll
    2009-04-03 01:33:30 ----A---- C:\Windows\system32\NlsData001a.dll
    2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000f.dll
    2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000d.dll
    2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000c.dll
    2009-04-03 01:33:29 ----A---- C:\Windows\system32\NlsData000a.dll
    2009-04-03 01:33:28 ----A---- C:\Windows\system32\NlsData0416.dll
    2009-04-03 01:33:28 ----A---- C:\Windows\system32\NlsData0414.dll
    2009-04-03 01:33:27 ----A---- C:\Windows\system32\NlsData081a.dll
    2009-04-03 01:33:27 ----A---- C:\Windows\system32\NlsData0816.dll
    2009-04-03 01:33:27 ----A---- C:\Windows\system32\NaturalLanguage6.dll
    2009-04-03 01:33:26 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll
    2009-04-03 01:33:26 ----A---- C:\Windows\system32\NlsData0c1a.dll
    2009-04-03 01:29:18 ----A---- C:\Windows\system32\WindowsCodecs.dll
    2009-04-03 01:29:18 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
    2009-04-03 01:29:17 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
    2009-04-03 01:27:46 ----A---- C:\Windows\system32\win32spl.dll
    2009-04-03 01:27:46 ----A---- C:\Windows\system32\printcom.dll
    2009-04-03 01:27:30 ----A---- C:\Windows\system32\wshrm.dll
    2009-04-03 01:25:38 ----A---- C:\Windows\system32\schannel.dll
    2009-04-03 01:10:20 ----A---- C:\Windows\system32\icardagt.exe
    2009-04-03 01:10:19 ----A---- C:\Windows\system32\infocardapi.dll
    2009-04-03 01:10:19 ----A---- C:\Windows\system32\icardres.dll
    2009-04-03 01:10:13 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
    2009-04-03 01:10:12 ----A---- C:\Windows\system32\PresentationHost.exe
    2009-04-03 01:10:11 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
    2009-04-03 01:10:11 ----A---- C:\Windows\system32\PresentationHostProxy.dll
    2009-04-03 00:58:00 ----A---- C:\Windows\system32\netfxperf.dll
    2009-04-03 00:58:00 ----A---- C:\Windows\system32\dfshim.dll
    2009-04-03 00:57:58 ----A---- C:\Windows\system32\mscories.dll
    2009-04-03 00:57:58 ----A---- C:\Windows\system32\mscorier.dll
    2009-04-03 00:57:58 ----A---- C:\Windows\system32\mscoree.dll
    2009-04-03 00:48:48 ----A---- C:\Windows\system32\rrinstaller.exe
    2009-04-03 00:48:48 ----A---- C:\Windows\system32\mfps.dll
    2009-04-03 00:48:48 ----A---- C:\Windows\system32\mfpmp.exe
    2009-04-03 00:48:48 ----A---- C:\Windows\system32\mferror.dll
    2009-04-03 00:48:48 ----A---- C:\Windows\system32\mf.dll
    2009-04-03 00:48:47 ----A---- C:\Windows\system32\WMVCORE.DLL
    2009-04-03 00:48:47 ----A---- C:\Windows\system32\WMNetMgr.dll
    2009-04-03 00:48:47 ----A---- C:\Windows\system32\logagent.exe
    2009-04-03 00:48:13 ----A---- C:\Windows\system32\INETRES.dll
    2009-04-03 00:48:13 ----A---- C:\Windows\system32\inetcomm.dll
    2009-04-03 00:48:00 ----A---- C:\Windows\system32\connect.dll
    2009-04-03 00:47:40 ----A---- C:\Windows\system32\quartz.dll
    2009-04-03 00:47:34 ----D---- C:\Windows\system32\catroot2
    2009-04-03 00:47:19 ----D---- C:\Windows\Debug
    2009-04-03 00:47:18 ----D---- C:\Windows\CSC
    2009-04-03 00:45:21 ----A---- C:\Windows\system32\msxml6r.dll
    2009-04-03 00:45:21 ----A---- C:\Windows\system32\msxml6.dll
    2009-04-03 00:43:43 ----D---- C:\Windows\Prefetch
    2009-04-03 00:14:32 ----D---- C:\Program Files\Intel
    2009-04-03 00:14:32 ----A---- C:\Windows\system32\CSVer.dll
    2009-04-03 00:10:51 ----D---- C:\Users\Alexis\AppData\Roaming\ESET
    2009-04-03 00:08:07 ----D---- C:\ProgramData\ESET
    2009-04-03 00:08:07 ----D---- C:\Program Files\ESET
    2009-04-03 00:05:33 ----SHD---- C:\Windows\Installer
    2009-04-03 00:00:21 ----A---- C:\Windows\system32\wups2.dll
    2009-04-03 00:00:21 ----A---- C:\Windows\system32\wucltux.dll
    2009-04-03 00:00:21 ----A---- C:\Windows\system32\wuaueng.dll
    2009-04-03 00:00:21 ----A---- C:\Windows\system32\wuauclt.exe
    2009-04-03 00:00:18 ----D---- C:\Users\Alexis\AppData\Roaming\Identities
    2009-04-02 23:59:52 ----SD---- C:\Users\Alexis\AppData\Roaming\Microsoft
    2009-04-02 23:59:52 ----D---- C:\Users\Alexis\AppData\Roaming\Media Center Programs
    2009-04-02 23:59:22 ----A---- C:\Windows\system32\wups.dll
    2009-04-02 23:59:22 ----A---- C:\Windows\system32\wudriver.dll
    2009-04-02 23:59:21 ----A---- C:\Windows\system32\wuapi.dll
    2009-04-02 23:58:33 ----A---- C:\Windows\system32\wuwebv.dll
    2009-04-02 23:58:33 ----A---- C:\Windows\system32\wuapp.exe
    2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Modèles
    2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Menu Démarrer
    2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Favoris
    2009-04-02 23:57:30 ----SHD---- C:\ProgramData\Bureau
    2009-04-02 23:57:30 ----SHD---- C:\Program Files\Fichiers communs
    2009-04-02 23:49:29 ----D---- C:\Windows\SoftwareDistribution

    ======List of files/folders modified in the last 1 months======

    2009-04-26 05:08:29 ----D---- C:\Windows\Temp
    2009-04-25 20:40:04 ----D---- C:\Windows\System32
    2009-04-25 20:29:31 ----D---- C:\Windows\inf
    2009-04-25 20:29:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
    2009-04-25 20:24:52 ----D---- C:\Windows\system32\WDI
    2009-04-25 16:57:16 ----D---- C:\Windows\system32\drivers
    2009-04-25 14:17:13 ----D---- C:\Windows
    2009-04-25 11:26:19 ----HD---- C:\ProgramData
    2009-04-25 11:26:18 ----RD---- C:\Program Files
    2009-04-24 10:29:38 ----SD---- C:\Windows\Downloaded Program Files
    2009-04-23 13:11:12 ----D---- C:\Program Files\Common Files
    2009-04-23 13:05:00 ----SHD---- C:\System Volume Information
    2009-04-16 15:53:07 ----D---- C:\Windows\system32\catroot
    2009-04-16 15:43:53 ----RSD---- C:\Windows\assembly
    2009-04-15 14:52:29 ----D---- C:\Windows\winsxs
    2009-04-15 14:40:24 ----D---- C:\Program Files\Windows Mail
    2009-04-15 14:40:23 ----D---- C:\Windows\system32\wbem
    2009-04-15 14:40:21 ----D---- C:\Windows\system32\manifeststore
    2009-04-15 14:40:20 ----D---- C:\Windows\AppPatch
    2009-04-13 16:51:18 ----D---- C:\Windows\Microsoft.NET
    2009-04-10 17:03:52 ----D---- C:\Windows\LiveKernelReports
    2009-04-09 11:01:14 ----D---- C:\Windows\system32\LogFiles
    2009-04-08 17:38:37 ----D---- C:\Windows\system32\NDF
    2009-04-08 01:14:56 ----D---- C:\Windows\system32\Tasks
    2009-04-08 01:11:16 ----D---- C:\Program Files\Common Files\microsoft shared
    2009-04-08 00:20:32 ----D---- C:\Program Files\MSBuild
    2009-04-08 00:20:06 ----D---- C:\Windows\ShellNew
    2009-04-08 00:19:39 ----RSD---- C:\Windows\Fonts
    2009-04-08 00:19:24 ----SD---- C:\ProgramData\Microsoft
    2009-04-07 22:26:53 ----D---- C:\Windows\rescache
    2009-04-06 16:57:24 ----A---- C:\Windows\system32\mrt.exe
    2009-04-04 17:51:10 ----D---- C:\Windows\system32\FxsTmp
    2009-04-03 14:34:40 ----D---- C:\Windows\system
    2009-04-03 14:30:38 ----D---- C:\dowload
    2009-04-03 14:20:05 ----RD---- C:\Users
    2009-04-03 14:08:00 ----D---- C:\Windows\system32\fr-FR
    2009-04-03 14:08:00 ----D---- C:\Program Files\Internet Explorer
    2009-04-03 14:07:58 ----D---- C:\Windows\system32\migration
    2009-04-03 14:07:58 ----D---- C:\Windows\system32\en-US
    2009-04-03 14:07:58 ----D---- C:\Windows\PolicyDefinitions
    2009-04-03 13:11:11 ----RSD---- C:\Windows\Media
    2009-04-03 12:17:31 ----D---- C:\Windows\twain_32
    2009-04-03 05:36:45 ----D---- C:\Windows\Logs
    2009-04-03 04:52:41 ----SHD---- C:\Boot
    2009-04-03 04:52:37 ----ASH---- C:\Program Files\desktop.ini
    2009-04-03 04:44:22 ----D---- C:\Program Files\Windows Sidebar
    2009-04-03 04:44:22 ----D---- C:\Program Files\Windows Calendar
    2009-04-03 04:44:22 ----D---- C:\Program Files\Movie Maker
    2009-04-03 04:44:20 ----D---- C:\Program Files\Windows Media Player
    2009-04-03 04:44:19 ----D---- C:\Program Files\Windows Collaboration
    2009-04-03 04:44:17 ----D---- C:\Program Files\Windows Photo Gallery
    2009-04-03 04:44:17 ----D---- C:\Program Files\Windows Journal
    2009-04-03 04:44:11 ----D---- C:\Program Files\Windows Defender
    2009-04-03 04:44:11 ----D---- C:\Program Files\Common Files\System
    2009-04-03 04:44:10 ----D---- C:\Windows\servicing
    2009-04-03 04:44:10 ----D---- C:\Windows\ehome
    2009-04-03 04:44:09 ----D---- C:\Windows\MSAgent
    2009-04-03 04:44:08 ----D---- C:\Windows\L2Schemas
    2009-04-03 04:44:08 ----D---- C:\Windows\IME
    2009-04-03 04:44:08 ----D---- C:\Windows\DigitalLocker
    2009-04-03 04:44:06 ----D---- C:\Windows\system32\ko-KR
    2009-04-03 04:44:06 ----D---- C:\Windows\system32\da-DK
    2009-04-03 04:44:06 ----D---- C:\Windows\system32\com
    2009-04-03 04:44:06 ----D---- C:\Windows\system32\040C
    2009-04-03 04:44:05 ----D---- C:\Windows\system32\sysprep
    2009-04-03 04:44:05 ----D---- C:\Windows\system32\oobe
    2009-04-03 04:44:05 ----D---- C:\Windows\system32\it-IT
    2009-04-03 04:44:05 ----D---- C:\Windows\system32\fr
    2009-04-03 04:44:05 ----D---- C:\Windows\system32\el-GR
    2009-04-03 04:44:05 ----D---- C:\Windows\system32\de-DE
    2009-04-03 04:44:03 ----D---- C:\Windows\system32\AdvancedInstallers
    2009-04-03 04:44:02 ----D---- C:\Windows\system32\ru-RU
    2009-04-03 04:44:02 ----D---- C:\Windows\system32\ias
    2009-04-03 04:43:57 ----D---- C:\Windows\system32\sv-SE
    2009-04-03 04:43:57 ----D---- C:\Windows\system32\he-IL
    2009-04-03 04:43:56 ----D---- C:\Windows\system32\SLUI
    2009-04-03 04:43:56 ----D---- C:\Windows\system32\setup
    2009-04-03 04:43:56 ----D---- C:\Windows\system32\pt-PT
    2009-04-03 04:43:56 ----D---- C:\Windows\system32\hu-HU
    2009-04-03 04:43:56 ----D---- C:\Windows\system32\fi-FI
    2009-04-03 04:43:56 ----D---- C:\Windows\system32\cs-CZ
    2009-04-03 04:43:55 ----D---- C:\Windows\system32\zh-TW
    2009-04-03 04:43:55 ----D---- C:\Windows\system32\zh-CN
    2009-04-03 04:43:55 ----D---- C:\Windows\system32\ro-RO
    2009-04-03 04:43:55 ----D---- C:\Windows\system32\pl-PL
    2009-04-03 04:43:55 ----D---- C:\Windows\system32\ja-JP
    2009-04-03 04:43:55 ----D---- C:\Windows\system32\es-ES
    2009-04-03 04:43:52 ----D---- C:\Windows\system32\tr-TR
    2009-04-03 04:43:50 ----D---- C:\Windows\system32\nl-NL
    2009-04-03 04:43:50 ----D---- C:\Windows\system32\nb-NO
    2009-04-03 04:43:50 ----D---- C:\Windows\system32\ar-SA
    2009-04-03 04:43:49 ----D---- C:\Windows\system32\migwiz
    2009-04-03 04:43:47 ----D---- C:\Windows\system32\pt-BR
    2009-04-03 04:42:29 ----D---- C:\Windows\Boot
    2009-04-03 04:42:25 ----D---- C:\Windows\system32\Boot
    2009-04-03 04:32:41 ----A---- C:\Windows\system32\ifxcardm.dll
    2009-04-03 04:32:29 ----A---- C:\Windows\system32\axaltocm.dll
    2009-04-03 02:56:19 ----D---- C:\Windows\system32\ras
    2009-04-03 02:56:19 ----D---- C:\Windows\system32\icsxml
    2009-04-03 02:56:06 ----D---- C:\Windows\Web
    2009-04-03 02:56:06 ----D---- C:\Program Files\Microsoft Games
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\uk-UA
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\th-TH
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\sr-Latn-CS
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\sl-SI
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\sk-SK
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\lv-LV
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\lt-LT
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\hr-HR
    2009-04-03 02:38:55 ----D---- C:\Windows\system32\et-EE
    2009-04-03 02:38:54 ----D---- C:\Windows\system32\bg-BG
    2009-04-03 02:00:46 ----D---- C:\Windows\Tasks
    2009-04-03 01:41:51 ----RAS---- C:\BOOTSECT.BAK
    2009-04-03 01:12:12 ----D---- C:\Windows\system32\XPSViewer
    2009-04-03 00:03:45 ----D---- C:\Windows\system32\CodeIntegrity
    2009-04-03 00:00:49 ----SHD---- C:\$Recycle.Bin
    2009-04-02 23:57:30 ----D---- C:\Program Files\Windows NT
    2009-04-02 23:57:02 ----D---- C:\Windows\system32\restore

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
    R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
    R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
    R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
    R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-02-06 130952]
    R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-03-16 4361216]
    R3 CamDrL;Logitech QuickCam Pro 3000(CamDrl); C:\Windows\system32\DRIVERS\Camdrl.sys [2007-02-03 1075360]
    R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2008-10-08 171032]
    R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2008-10-08 511000]
    R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2008-10-08 526232]
    R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
    R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2008-10-08 72728]
    R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2008-10-08 14360]
    R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2008-10-08 158744]
    R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2008-10-08 95768]
    R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
    R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2008-10-08 1177624]
    R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-12-18 35472]
    R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-12-18 37392]
    R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2008-12-18 28816]
    R3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-10-11 2142488]
    R3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys [2007-10-11 25624]
    R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-10-12 41752]
    R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680]
    R3 netr28u;RT2870 USB Wireless LAN Card Driver for Vista; C:\Windows\system32\DRIVERS\netr28u.sys [2007-08-15 552448]
    R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2008-10-08 130072]
    R3 UltraCrypt;UltraCrypt; \??\C:\Program Files\UltraLeecher\UltraCrypt.sys [2007-03-24 45312]
    R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-18 73088]
    R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496]
    S1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys []
    S3 an3lt6tl;an3lt6tl; C:\Windows\system32\drivers\an3lt6tl.sys []
    S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-03-05 98616]
    S3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL []
    S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2008-10-08 171032]
    S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-03-05 552248]
    S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2008-10-08 347080]
    S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-03-05 174392]
    S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-03-05 286520]
    S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-03-05 134968]
    S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-03-05 329528]
    S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-03-05 101176]
    S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL []
    S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
    S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL []
    S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2008-10-08 72728]
    S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-03-05 566584]
    S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
    S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
    S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-10-19 2109976]
    S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
    S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
    S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
    S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
    S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
    S3 WD_FireWire_HID;WD FireWire Pseudo-HID driver; C:\Windows\system32\DRIVERS\wdfwhid.sys [2006-03-22 17408]
    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
    S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-03-16 180224]
    R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-18 21504]
    R2 CTAudSvcService;Creative Audio Service; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [2008-12-29 307200]
    R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-02-06 727720]
    R2 LVCOMSer;LVCOMSer; C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe [2007-10-19 186904]
    R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2007-10-19 141848]
    S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-10-19 141848]
    S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-18 21504]
    S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2009-04-03 79360]
    S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2009-04-03 79360]
    S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-02-06 20680]
    S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-18 523776]
    S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2009-02-19 121360]
    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
    S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2009-01-07 348752]
    S3 sdCoreService;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2009-01-21 1095560]
    S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-04-20 322032]
    S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-18 21504]
    S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-18 917504]

    -----------------EOF-----------------
    0
  14. Leffe
     
    la suite n°4 et fin du log.txt

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
    R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
    R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
    R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
    R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-02-06 130952]
    R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-03-16 4361216]
    R3 CamDrL;Logitech QuickCam Pro 3000(CamDrl); C:\Windows\system32\DRIVERS\Camdrl.sys [2007-02-03 1075360]
    R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2008-10-08 171032]
    R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2008-10-08 511000]
    R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2008-10-08 526232]
    R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
    R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2008-10-08 72728]
    R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2008-10-08 14360]
    R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2008-10-08 158744]
    R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2008-10-08 95768]
    R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
    R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2008-10-08 1177624]
    R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-12-18 35472]
    R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-12-18 37392]
    R3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\Windows\System32\Drivers\LUsbFilt.Sys [2008-12-18 28816]
    R3 LVMVDrv;Logitech Machine Vision Engine Loader; C:\Windows\system32\DRIVERS\LVMVDrv.sys [2007-10-11 2142488]
    R3 LVPr2Mon;Logitech LVPr2Mon Driver; C:\Windows\system32\DRIVERS\LVPr2Mon.sys [2007-10-11 25624]
    R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-10-12 41752]
    R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2006-10-18 7680]
    R3 netr28u;RT2870 USB Wireless LAN Card Driver for Vista; C:\Windows\system32\DRIVERS\netr28u.sys [2007-08-15 552448]
    R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2008-10-08 130072]
    R3 UltraCrypt;UltraCrypt; \??\C:\Program Files\UltraLeecher\UltraCrypt.sys [2007-03-24 45312]
    R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-18 73088]
    R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496]
    S1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys []
    S3 an3lt6tl;an3lt6tl; C:\Windows\system32\drivers\an3lt6tl.sys []
    S3 COMMONFX.DLL;COMMONFX.DLL; C:\Windows\system32\COMMONFX.DLL [2007-03-05 98616]
    S3 CT20XUT.DLL;CT20XUT.DLL; C:\Windows\system32\CT20XUT.DLL []
    S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2008-10-08 171032]
    S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\Windows\system32\CTAUDFX.DLL [2007-03-05 552248]
    S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2008-10-08 347080]
    S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\Windows\system32\CTEAPSFX.DLL [2007-03-05 174392]
    S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\Windows\system32\CTEDSPFX.DLL [2007-03-05 286520]
    S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\Windows\system32\CTEDSPIO.DLL [2007-03-05 134968]
    S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\Windows\system32\CTEDSPSY.DLL [2007-03-05 329528]
    S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\Windows\system32\CTERFXFX.DLL [2007-03-05 101176]
    S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\Windows\system32\CTEXFIFX.DLL []
    S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2008-10-08 1324056]
    S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\Windows\system32\CTHWIUT.DLL []
    S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2008-10-08 72728]
    S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\Windows\system32\CTSBLFX.DLL [2007-03-05 566584]
    S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
    S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
    S3 LVcKap;Logitech AEC Driver; C:\Windows\system32\DRIVERS\LVcKap.sys [2007-10-19 2109976]
    S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
    S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
    S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
    S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
    S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
    S3 WD_FireWire_HID;WD FireWire Pseudo-HID driver; C:\Windows\system32\DRIVERS\wdfwhid.sys [2006-03-22 17408]
    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
    S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-03-16 180224]
    R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-18 21504]
    R2 CTAudSvcService;Creative Audio Service; C:\Program Files\Creative\Shared Files\CTAudSvc.exe [2008-12-29 307200]
    R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-02-06 727720]
    R2 LVCOMSer;LVCOMSer; C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe [2007-10-19 186904]
    R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2007-10-19 141848]
    S2 LVSrvLauncher;LVSrvLauncher; C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe [2007-10-19 141848]
    S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-18 21504]
    S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2009-04-03 79360]
    S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2009-04-03 79360]
    S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-02-06 20680]
    S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-18 523776]
    S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2009-02-19 121360]
    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
    S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2009-01-07 348752]
    S3 sdCoreService;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2009-01-21 1095560]
    S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2009-04-20 322032]
    S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-18 21504]
    S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-18 917504]

    -----------------EOF-----------------
    0
  15. Leffe
     
    le fichier info.txt maintenant :

    info.txt logfile of random's system information tool 1.06 2009-04-26 05:08:40

    ======Uninstall list======

    -->"C:\Program Files\Creative Installation Information\CREATIVE_MEDIASOURCE_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\CTCMSGO\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_NET_CONTENT_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_CDBURNER_U\Setup.exe" /remove /nolog/l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_MINIDISC_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_ONLINESTORE_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\MEDIASOURCE_PLAYER_SKINPACK_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative\Sound Blaster X-Fi\Program\SETUP.EXE" /S /U /W /L:FRN
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c /remove
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Reader 9.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
    Air Strike 2-->"C:\Program Files\114 Reflexive Arcade Games\Air Strike 2\unins000.exe"
    Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
    ASUS WiFi-AP @n-->C:\Program Files\InstallShield Installation Information\{6600970A-BAE7-412A-BFFC-91AD793B3A41}\setup.exe -runfromtemp -l0x0009 -removeonly
    Canon MP Navigator EX 1.0-->"C:\Program Files\Canon\MP Navigator EX 1.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator EX 1.0\uninst.ini
    Canon MP610 series-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series /L0x000c
    Canon Utilities Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe uninst.ini
    Canon Utilities My Printer-->C:\Program Files\Canon\MyPrinter\uninst.exe uninst.ini
    Canon Utilities Solution Menu-->C:\Program Files\Canon\SolutionMenu\uninst.exe uninst.ini
    Catalyst Control Center - Branding-->MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
    CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
    CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
    Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
    Coffret de pilotes Logitech QuickCam-->"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\11.50.1145\LgDrvInst.exe" -remove -instdir"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\" -enumdelay=2000 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -arpregkey"lvdrivers_11.50" /clone_wait /hide_progress
    Counter-Strike: Source-->"C:\Program Files\Steam\steam.exe" steam://uninstall/240
    Creative ALchemy-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c /remove
    Creative Console Launcher-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c /remove
    Creative Entertainment Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c /remove
    Creative MediaSource 5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\setup.exe" -l0x40c /remove
    Creative Software AutoUpdate-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c /remove
    Creative WaveStudio 7-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c /remove
    Crysis(R)-->MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
    DVDFab (Platinum/Gold/HD Decrypter) (Option: Mobile) 5.2.3.2-->"C:\Program Files\DVDFab 5\unins000.exe"
    Enregistrement utilisateur de Canon MP610 series-->C:\Program Files\Canon\IJEREG\MP610 series\UNINST.EXE
    Enregistreur intelligent Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c /remove
    ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
    Free Mp3 Wma Converter V 1.81-->"C:\Program Files\Free Audio Pack\unins000.exe"
    FreeUndelete-->C:\Program Files\FreeUndelete\GLFCB06.exe /handle:fru
    Gestionnaire de banques SoundFont-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c /remove
    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
    Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
    Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
    KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
    K-Lite Mega Codec Pack 4.7.5-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
    Lecteur de DVD Audio Creative MediaSource-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c /remove
    Logitech QuickCam-->MsiExec.exe /X{945AC98B-3DC8-45BE-BAE0-22CEEE37A103}
    Logitech SetPoint-->"C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe" -runfromtemp -l0x040c -removeonly
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
    Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
    Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
    Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
    Microsoft Office Language Pack 2007 Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
    Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
    Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
    Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
    Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
    Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Modèles de sons Windows-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound.inf,Uninstall
    Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    OGA Notifier 1.7.0105.35.0-->MsiExec.exe /I{25E98ECB-5727-408E-B30A-2CAF86F5B310}
    OpenAL-->"C:\Program Files\OpenAL\OALInst.exe" /U
    Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
    Panneau de configuration audio Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c /remove
    Propriétés de Creative Sound Blaster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c /remove
    QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
    ScanSoft OmniPage SE 4-->MsiExec.exe /X{DEE88727-779B-47A9-ACEF-F87CA5F92A65}
    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
    Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
    Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
    Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
    Sound Blaster X-Fi-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}\SETUP.EXE" -l0x40c /remove
    Spyware Doctor 6.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
    Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
    Tvix Thème Manager Beta 3.02-->"C:\Program Files\TvixTM\unins000.exe"
    Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
    UltraLeecher 1.7 Beta Build 2922-->"C:\Program Files\UltraLeecher\unins000.exe"
    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
    Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
    Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
    Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
    Virtua Tennis 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B63540D-D942-4C38-B42E-A48AE0145970}\setup.exe" -l0x40c -removeonly
    WD Firewire HID Driver-->MsiExec.exe /X{FD6C6B7F-5696-48C5-A601-2EE9E50C3D46}
    Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
    Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
    Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
    WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe

    ======Security center information======

    AV: ESET Smart Security 4.0
    FW: Pare-feu personnel d'ESET
    AS: ESET Smart Security 4.0
    AS: Windows Defender (disabled)

    ======System event log======

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54015
    Source Name: Service Control Manager
    Time Written: 20090425182535.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54017
    Source Name: Service Control Manager
    Time Written: 20090425182540.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54020
    Source Name: Service Control Manager
    Time Written: 20090425182558.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54022
    Source Name: Service Control Manager
    Time Written: 20090425182603.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54025
    Source Name: Service Control Manager
    Time Written: 20090425182607.000000-000
    Event Type: Erreur
    User:

    =====Application event log=====

    Computer Name: PC-de-Alexis
    Event Code: 1530
    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

    DÉTAIL -
    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
    Process 1008 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

    Record Number: 3023
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20090425145620.000000-000
    Event Type: Avertissement
    User: AUTORITE NT\SYSTEM

    Computer Name: PC-de-Alexis
    Event Code: 1000
    Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1298, heure de début de l’application 0x01c9c5b891652fef.
    Record Number: 3044
    Source Name: Application Error
    Time Written: 20090425152430.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 1000
    Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1738, heure de début de l’application 0x01c9c5baae8c4ff2.
    Record Number: 3067
    Source Name: Application Error
    Time Written: 20090425160027.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 1530
    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

    DÉTAIL -
    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000:
    Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000

    Record Number: 3074
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20090425180451.000000-000
    Event Type: Avertissement
    User: AUTORITE NT\SYSTEM

    Computer Name: PC-de-Alexis
    Event Code: 1530
    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

    DÉTAIL -
    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
    Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

    Record Number: 3075
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20090425180452.000000-000
    Event Type: Avertissement
    User: AUTORITE NT\SYSTEM

    =====Security event log=====

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8577
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.359200-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8578
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.390400-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8579
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.421600-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8580
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.437200-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8581
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.468400-000
    Event Type: Échec de l'audit
    User:

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    "PROCESSOR_ARCHITECTURE"=x86
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP
    "USERNAME"=SYSTEM
    "windir"=%SystemRoot%
    "PROCESSOR_LEVEL"=6
    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 7, GenuineIntel
    "PROCESSOR_REVISION"=1707
    "NUMBER_OF_PROCESSORS"=4

    -----------------EOF-----------------
    0
  16. Leffe
     
    le fichier info.txt maintenant (partie n°1) :

    info.txt logfile of random's system information tool 1.06 2009-04-26 05:08:40

    ======Uninstall list======

    -->"C:\Program Files\Creative Installation Information\CREATIVE_MEDIASOURCE_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\CTCMSGO\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_NET_CONTENT_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_CDBURNER_U\Setup.exe" /remove /nolog/l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_MINIDISC_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_ONLINESTORE_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative Installation Information\MEDIASOURCE_PLAYER_SKINPACK_U\Setup.exe" /remove /l0x040c
    -->"C:\Program Files\Creative\Sound Blaster X-Fi\Program\SETUP.EXE" /S /U /W /L:FRN
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{06E3E953-0570-4DFF-A7B5-46114C390228}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1EF644C7-1A0D-4B94-9AF5-AD04702094A4}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C88C3C27-AECE-4137-A6CC-D7A6FFAD2F84}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CAAE8EC2-2340-4D6E-A74D-07814046A11B}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC3D3A93-C433-4329-AC3A-7EFC52A332C2}\setup.exe" -l0x9 /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FBFF2411-D066-4D24-BCE0-893086009E1B}\setup.exe" -l0x40c /remove
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCCDA302-32D9-4AE7-A094-4BE677554F26}\setup.exe" -l0x40c /remove
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Reader 9.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
    Air Strike 2-->"C:\Program Files\114 Reflexive Arcade Games\Air Strike 2\unins000.exe"
    Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
    ASUS WiFi-AP @n-->C:\Program Files\InstallShield Installation Information\{6600970A-BAE7-412A-BFFC-91AD793B3A41}\setup.exe -runfromtemp -l0x0009 -removeonly
    Canon MP Navigator EX 1.0-->"C:\Program Files\Canon\MP Navigator EX 1.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator EX 1.0\uninst.ini
    Canon MP610 series-->"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP610_series /L0x000c
    Canon Utilities Easy-PhotoPrint EX-->C:\Program Files\Canon\Easy-PhotoPrint EX\uninst.exe uninst.ini
    Canon Utilities My Printer-->C:\Program Files\Canon\MyPrinter\uninst.exe uninst.ini
    Canon Utilities Solution Menu-->C:\Program Files\Canon\SolutionMenu\uninst.exe uninst.ini
    Catalyst Control Center - Branding-->MsiExec.exe /I{D3B1C799-CB73-42DE-BA0F-2344793A095C}
    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
    CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
    CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
    Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
    Coffret de pilotes Logitech QuickCam-->"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\11.50.1145\LgDrvInst.exe" -remove -instdir"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\" -enumdelay=2000 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -arpregkey"lvdrivers_11.50" /clone_wait /hide_progress
    Counter-Strike: Source-->"C:\Program Files\Steam\steam.exe" steam://uninstall/240
    Creative ALchemy-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12321490-F573-4815-B6CC-7ABEF18C9AC4}\setup.exe" -l0x40c /remove
    Creative Console Launcher-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{888347B3-AEC5-4BB5-8BAB-781D72A57C73}\setup.exe" -l0x40c /remove
    Creative Entertainment Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CEC86016-B796-4348-B93B-36C5EDEB85E1}\setup.exe" -l0x40c /remove
    Creative MediaSource 5-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\setup.exe" -l0x40c /remove
    Creative Software AutoUpdate-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x40c /remove
    Creative WaveStudio 7-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x40c /remove
    Crysis(R)-->MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
    DVDFab (Platinum/Gold/HD Decrypter) (Option: Mobile) 5.2.3.2-->"C:\Program Files\DVDFab 5\unins000.exe"
    Enregistrement utilisateur de Canon MP610 series-->C:\Program Files\Canon\IJEREG\MP610 series\UNINST.EXE
    Enregistreur intelligent Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x40c /remove
    ESET Online Scanner v3-->C:\Program Files\ESET\ESET Online Scanner\OnlineScannerUninstaller.exe
    Free Mp3 Wma Converter V 1.81-->"C:\Program Files\Free Audio Pack\unins000.exe"
    FreeUndelete-->C:\Program Files\FreeUndelete\GLFCB06.exe /handle:fru
    Gestionnaire de banques SoundFont-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x40c /remove
    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
    Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
    Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
    KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
    K-Lite Mega Codec Pack 4.7.5-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
    Lecteur de DVD Audio Creative MediaSource-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{44267176-A318-447F-A62A-0A5FD608C34F}\setup.exe" -l0x40c /remove
    Logitech QuickCam-->MsiExec.exe /X{945AC98B-3DC8-45BE-BAE0-22CEEE37A103}
    Logitech SetPoint-->"C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe" -runfromtemp -l0x040c -removeonly
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
    Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
    Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
    Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
    Microsoft Office Language Pack 2007 Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
    Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
    Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
    Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
    Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
    Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Modèles de sons Windows-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound.inf,Uninstall
    Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
    0
  17. Leffe
     
    info.txt (partie n°2):

    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    OGA Notifier 1.7.0105.35.0-->MsiExec.exe /I{25E98ECB-5727-408E-B30A-2CAF86F5B310}
    OpenAL-->"C:\Program Files\OpenAL\OALInst.exe" /U
    Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
    Panneau de configuration audio Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c /remove
    Propriétés de Creative Sound Blaster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c /remove
    QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
    ScanSoft OmniPage SE 4-->MsiExec.exe /X{DEE88727-779B-47A9-ACEF-F87CA5F92A65}
    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
    Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
    Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
    Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
    Sound Blaster X-Fi-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}\SETUP.EXE" -l0x40c /remove
    Spyware Doctor 6.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
    Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
    Tvix Thème Manager Beta 3.02-->"C:\Program Files\TvixTM\unins000.exe"
    Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
    UltraLeecher 1.7 Beta Build 2922-->"C:\Program Files\UltraLeecher\unins000.exe"
    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
    Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
    Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
    Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
    Virtua Tennis 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B63540D-D942-4C38-B42E-A48AE0145970}\setup.exe" -l0x40c -removeonly
    WD Firewire HID Driver-->MsiExec.exe /X{FD6C6B7F-5696-48C5-A601-2EE9E50C3D46}
    Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
    Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
    Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
    WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe

    ======Security center information======

    AV: ESET Smart Security 4.0
    FW: Pare-feu personnel d'ESET
    AS: ESET Smart Security 4.0
    AS: Windows Defender (disabled)

    ======System event log======

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54015
    Source Name: Service Control Manager
    Time Written: 20090425182535.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54017
    Source Name: Service Control Manager
    Time Written: 20090425182540.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54020
    Source Name: Service Control Manager
    Time Written: 20090425182558.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54022
    Source Name: Service Control Manager
    Time Written: 20090425182603.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54025
    Source Name: Service Control Manager
    Time Written: 20090425182607.000000-000
    Event Type: Erreur
    User:
    0
  18. Leffe
     
    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    OGA Notifier 1.7.0105.35.0-->MsiExec.exe /I{25E98ECB-5727-408E-B30A-2CAF86F5B310}
    OpenAL-->"C:\Program Files\OpenAL\OALInst.exe" /U
    Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
    Panneau de configuration audio Creative-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17E96A7F-AFE3-4171-87B1-583E376319E8}\setup.exe" -l0x40c /remove
    Propriétés de Creative Sound Blaster-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AB55EC6-1158-41EF-B87D-90555A8F5C92}\setup.exe" -l0x40c /remove
    QuickPar 0.9-->C:\Program Files\QuickPar\uninst.exe
    ScanSoft OmniPage SE 4-->MsiExec.exe /X{DEE88727-779B-47A9-ACEF-F87CA5F92A65}
    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
    Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
    Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
    Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
    Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
    Sound Blaster X-Fi-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}\SETUP.EXE" -l0x40c /remove
    Spyware Doctor 6.0-->C:\Program Files\Spyware Doctor\unins000.exe /LOG
    Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
    Tvix Thème Manager Beta 3.02-->"C:\Program Files\TvixTM\unins000.exe"
    Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
    UltraLeecher 1.7 Beta Build 2922-->"C:\Program Files\UltraLeecher\unins000.exe"
    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
    Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
    Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
    Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
    Virtua Tennis 3-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B63540D-D942-4C38-B42E-A48AE0145970}\setup.exe" -l0x40c -removeonly
    WD Firewire HID Driver-->MsiExec.exe /X{FD6C6B7F-5696-48C5-A601-2EE9E50C3D46}
    Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
    Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
    Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
    WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
    0
  19. Leffe
     
    ======Security center information======

    AV: ESET Smart Security 4.0
    FW: Pare-feu personnel d'ESET
    AS: ESET Smart Security 4.0
    AS: Windows Defender (disabled)

    ======System event log======

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54015
    Source Name: Service Control Manager
    Time Written: 20090425182535.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54017
    Source Name: Service Control Manager
    Time Written: 20090425182540.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54020
    Source Name: Service Control Manager
    Time Written: 20090425182558.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54022
    Source Name: Service Control Manager
    Time Written: 20090425182603.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 7006
    Message: L'appel ScRegSetValueExW a échoué pour Type avec l'erreur :
    Accès refusé.
    Record Number: 54025
    Source Name: Service Control Manager
    Time Written: 20090425182607.000000-000
    Event Type: Erreur
    User:

    =====Application event log=====

    Computer Name: PC-de-Alexis
    Event Code: 1530
    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

    DÉTAIL -
    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
    Process 1008 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

    Record Number: 3023
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20090425145620.000000-000
    Event Type: Avertissement
    User: AUTORITE NT\SYSTEM

    Computer Name: PC-de-Alexis
    Event Code: 1000
    Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1298, heure de début de l’application 0x01c9c5b891652fef.
    Record Number: 3044
    Source Name: Application Error
    Time Written: 20090425152430.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 1000
    Message: Application défaillante Crysis.exe, version 1.1.1.6156, horodatage 0x65676e41, module défaillant d3d10core.dll, version 6.0.6001.18000, horodatage 0x4791a65a, code d’exception 0xc0000005, décalage d’erreur 0x00025bd1, ID du processus 0x1738, heure de début de l’application 0x01c9c5baae8c4ff2.
    Record Number: 3067
    Source Name: Application Error
    Time Written: 20090425160027.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-Alexis
    Event Code: 1530
    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

    DÉTAIL -
    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000:
    Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000

    Record Number: 3074
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20090425180451.000000-000
    Event Type: Avertissement
    User: AUTORITE NT\SYSTEM

    Computer Name: PC-de-Alexis
    Event Code: 1530
    Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

    DÉTAIL -
    1 user registry handles leaked from \Registry\User\S-1-5-21-1164670059-1813927929-1789332112-1000_Classes:
    Process 992 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-1164670059-1813927929-1789332112-1000_CLASSES

    Record Number: 3075
    Source Name: Microsoft-Windows-User Profiles Service
    Time Written: 20090425180452.000000-000
    Event Type: Avertissement
    User: AUTORITE NT\SYSTEM

    =====Security event log=====

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8577
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.359200-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8578
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.390400-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8579
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.421600-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8580
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.437200-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-Alexis
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys
    Record Number: 8581
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090426030834.468400-000
    Event Type: Échec de l'audit
    User:
    0
  20. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    Fais un scan en ligne Kaspersky avec Internet Explorer.
    - Clique sur Démarrer Online-Scanner

    - Clique maintenant sur J'accepte.
    - Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
    - Patiente pendant l'installation des Mises à jour.
    - Choisis par la suite l'analyse du Poste de travail.
    - Sauvegarde puis colle le rapport généré en fin d'analyse.

    AIDE : Configurer le contrôle des ActiveX

    NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
    0
    1. baladur13 Messages postés 47319 Date d'inscription   Statut Modérateur Dernière intervention   14 386
       
      Salut JFk
      C'est quoi ces rapports à rallonge qui coince à la conciergerie ???
      0
  21. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    C'est quoi ces rapports à rallonge qui coince à la conciergerie ??? 


    Salut baladur ;)

    Aucunes idées et de plus je n'ai meme pas informé la conciergerie :)
    0
    1. baladur13 Messages postés 47319 Date d'inscription   Statut Modérateur Dernière intervention   14 386
       
      non, mais c'est moi qui est vu ???
      0