Virus désinstallation !!!!! HELP
Résolu/Fermé
A voir également:
- Virus désinstallation !!!!! HELP
- Svchost.exe virus - Guide
- Logiciel de desinstallation - Télécharger - Nettoyage
- Youtu.be virus - Guide
- Faux message virus iphone - Forum iPhone
- Altruistic virus ✓ - Forum Antivirus
8 réponses
Utilisateur anonyme
16 mai 2009 à 17:11
16 mai 2009 à 17:11
Bonjour
Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.
-> http://images.malwareremoval.com/random/RSIT.exe
! Déconnecte toi et ferme toutes tes applications en cours !
Double-clique sur " RSIT.exe " pour le lancer .
-> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .
* Devant l'option "List files/folders created ..." , tu choisis : 2 months
* clique ensuite sur " Continue " pour lancer l'analyse ...
-> laisse faire le scan et ne touche pas au PC ...
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).
Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...
Important : poste un rapport, puis l'autre dans la réponse suivante
Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum
( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )
Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.
-> http://images.malwareremoval.com/random/RSIT.exe
! Déconnecte toi et ferme toutes tes applications en cours !
Double-clique sur " RSIT.exe " pour le lancer .
-> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .
* Devant l'option "List files/folders created ..." , tu choisis : 2 months
* clique ensuite sur " Continue " pour lancer l'analyse ...
-> laisse faire le scan et ne touche pas au PC ...
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).
Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...
Important : poste un rapport, puis l'autre dans la réponse suivante
Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum
( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )
morteus
Messages postés
8
Date d'inscription
samedi 16 mai 2009
Statut
Membre
Dernière intervention
16 mai 2009
6
16 mai 2009 à 17:12
16 mai 2009 à 17:12
bonjours..ok...virus ou spam?
pour savoir il te faut savoir la premiere page ouverte au reboot...
ensuite note tout ce qui te parrais critique...enfin reviens ici...
si c un virus ce que je doute..nous seront là..a tout!
pour savoir il te faut savoir la premiere page ouverte au reboot...
ensuite note tout ce qui te parrais critique...enfin reviens ici...
si c un virus ce que je doute..nous seront là..a tout!
Utilisateur anonyme
16 mai 2009 à 17:17
16 mai 2009 à 17:17
Logfile of random's system information tool 1.06 (written by random/random)
Run by Armand at 2009-05-16 17:15:53
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 51 GB (69%) free of 74 GB
Total RAM: 1279 MB (69% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{3600A237-DCD9-4122-B944-FADEEF3A5265}.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{AA3B66C3-F047-4ABC-91A4-F1E2A6CA1083}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000123B4-9B42-4900-B3F7-F4B073EFC214}]
Octh Class - C:\Program Files\Orbitdownloader\orbitcth.dll [2009-05-04 171208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C333CF63-767F-4831-94AC-E683D962C63C}]
CoTGT_BHO Class - C:\Program Files\TGTSoft\StyleXP\TGT_BHO.dll [2005-07-06 65536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-09 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
Locked
{C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Grab Pro - C:\Program Files\Orbitdownloader\GrabPro.dll [2009-05-04 670840]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2004-11-02 32768]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-05 208952]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-05 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"eRecoveryService"=C:\Acer\Empowering Technology\eRecovery\Monitor.exe [2005-11-16 397312]
"ClamWin"=C:\Program Files\ClamWin\bin\ClamTray.exe [2009-04-14 86016]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-09 148888]
"Kernel and Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2007-04-11 234974]
"Logitech Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2007-04-11 234974]
"Windows UDP Control Center"=fxsteller.exe []
"launchapp"=Alaunch []
"LVCOMSX"=C:\WINDOWS\system32\LVCOMSX.EXE [2005-07-19 221184]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe -atboottime []
"AdobeCS4ServiceManager"=C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe -launchedbylogin []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 15360]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-04-16 24264488]
"STYLEXP"=C:\Program Files\TGTSoft\StyleXP\StyleXP.exe [2005-07-21 1359872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
ALCMTR.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\High Definition Audio Property Page Shortcut]
C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\MSN Messenger\MsnMsgr.Exe /background []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ntiMUI]
c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2005-09-22 15031766]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Vidalia]
C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Orbit.lnk - C:\Program Files\Orbitdownloader\orbitdm.exe
C:\Documents and Settings\Armand\Menu Démarrer\Programmes\Démarrage
is-L092M.lnk - C:\Documents and Settings\Armand\Mes documents\Virus Removal Tool\is-L092M\startup.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-04-15 46080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-06 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-05 240128]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=36
"NoDriveAutoRun"=FFFFFFFF
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"K:\Installation\LimeWire\LimeWire.exe"="K:\Installation\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"D:\Anne-Victoire\Cookies\cs\steamapps\armanol\counter-strike\hl.exe"="D:\Anne-Victoire\Cookies\cs\steamapps\armanol\counter-strike\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Anne-Victoire\Cookies\cs\steamapps\armanol\condition zero\hl.exe"="D:\Anne-Victoire\Cookies\cs\steamapps\armanol\condition zero\hl.exe:*:Enabled:Half-Life Launcher"
"C:\WINDOWS\explorer.exe"="C:\WINDOWS\explorer.exe:*:Enabled:Explorateur Windows"
"C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe"="C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe:*:Enabled:Kodak Software Updater"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"D:\Armand\Autres\LimeWire\LimeWire.exe"="D:\Armand\Autres\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe"="C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe:*:Enabled:Age of Mythology - The Titans Expansion"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\CounterPath\X-Lite\x-lite.exe"="C:\Program Files\CounterPath\X-Lite\x-lite.exe:*:Enabled:X-Lite"
"C:\Program Files\Orbitdownloader\orbitdm.exe"="C:\Program Files\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit"
"C:\Program Files\Orbitdownloader\orbitnet.exe"="C:\Program Files\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit"
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe"="C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4"
"C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe"="C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe:*:Enabled:Adobe Dreamweaver CS4"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
======File associations======
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 2 months======
2009-05-16 17:15:54 ----D---- C:\Program Files\trend micro
2009-05-16 17:15:53 ----D---- C:\rsit
2009-05-16 14:10:56 ----A---- C:\WINDOWS\system32\kernel1.exe
2009-05-16 14:10:56 ----A---- C:\WINDOWS\system32\KERNEL.TMP
2009-05-16 14:05:25 ----D---- C:\Program Files\TGTSoft
2009-05-15 20:48:24 ----D---- C:\Documents and Settings\All Users\Application Data\FLEXnet
2009-05-15 20:43:14 ----D---- C:\Program Files\Fichiers communs\Adobe AIR
2009-05-15 20:42:29 ----D---- C:\Program Files\Fichiers communs\Macrovision Shared
2009-05-10 17:34:54 ----D---- C:\Program Files\Serials 2005
2009-05-10 16:52:48 ----D---- C:\Program Files\Blender Foundation
2009-05-09 19:08:09 ----D---- C:\WINDOWS\Club PoM
2009-05-09 19:07:34 ----N---- C:\WINDOWS\Setup1.exe
2009-05-09 19:07:34 ----A---- C:\WINDOWS\ST6UNST.EXE
2009-05-09 18:52:57 ----A---- C:\WINDOWS\system32\MSRD2X32.DLL
2009-05-09 18:52:57 ----A---- C:\WINDOWS\system32\msjt3032.dll
2009-05-09 18:52:57 ----A---- C:\WINDOWS\system32\msjet35.dll
2009-05-09 18:52:56 ----D---- C:\Program Files\Common Files
2009-05-09 18:52:56 ----A---- C:\WINDOWS\system32\vbar332.dll
2009-05-09 18:52:56 ----A---- C:\WINDOWS\system32\msjter35.dll
2009-05-09 18:52:56 ----A---- C:\WINDOWS\system32\msjint35.dll
2009-05-09 18:51:41 ----N---- C:\WINDOWS\system32\Zlib.dll
2009-05-09 18:51:41 ----A---- C:\WINDOWS\Virus.ini
2009-05-09 18:51:41 ----A---- C:\WINDOWS\SeaBattle.ini
2009-05-09 18:51:41 ----A---- C:\WINDOWS\Mountering.ini
2009-05-09 18:51:41 ----A---- C:\WINDOWS\Bidding.ini
2009-05-09 18:51:34 ----D---- C:\Program Files\Fichiers communs\GraphBoard 2.00
2009-05-09 18:51:10 ----D---- C:\WINDOWS\speech
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\shellses.dll
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\setresuk.dll
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\rhmmplay.dll
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\ibmwave.exe
2009-05-09 18:50:54 ----D---- C:\ViaVoice
2009-05-09 18:50:51 ----A---- C:\WINDOWS\IsUninst.exe
2009-05-09 18:49:32 ----D---- C:\Program Files\Reflex English
2009-05-09 18:46:51 ----A---- C:\WINDOWS\system32\ddao35.dll
2009-05-09 18:46:37 ----A---- C:\WINDOWS\system32\LMRTREND.dll
2009-05-09 18:46:36 ----A---- C:\WINDOWS\system32\dxtmsft3.dll
2009-05-09 18:46:31 ----A---- C:\WINDOWS\system32\unam4ie.exe
2009-05-09 18:46:29 ----A---- C:\WINDOWS\system32\vidx16.dll
2009-05-09 18:46:29 ----A---- C:\WINDOWS\system32\qcut.dll
2009-05-09 18:46:28 ----A---- C:\WINDOWS\system32\w95inf32.dll
2009-05-09 18:46:28 ----A---- C:\WINDOWS\system32\w95inf16.dll
2009-05-09 18:44:43 ----A---- C:\WINDOWS\IsUn040c.exe
2009-05-08 19:02:04 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-05-08 18:32:18 ----D---- C:\WINDOWS\Minidump
2009-05-08 16:57:59 ----D---- C:\Program Files\Atout Clic 6e
2009-05-08 16:06:26 ----A---- C:\WINDOWS\MegaManager.INI
2009-05-08 16:03:37 ----D---- C:\Documents and Settings\Armand\Application Data\Download Manager
2009-05-08 15:27:01 ----D---- C:\Documents and Settings\Armand\Application Data\Nvu
2009-05-03 18:12:38 ----D---- C:\Program Files\Atout Clic CP
2009-05-03 17:04:39 ----D---- C:\Documents and Settings\Armand\Application Data\teamspeak2
2009-05-02 17:55:57 ----D---- C:\Documents and Settings\Armand\Application Data\skypePM
2009-05-02 17:55:48 ----D---- C:\Program Files\Fichiers communs\Skype
2009-05-02 17:55:46 ----RD---- C:\Program Files\Skype
2009-05-02 17:55:33 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-05-02 17:25:39 ----D---- C:\Program Files\iPod
2009-05-02 17:25:37 ----D---- C:\Program Files\iTunes
2009-05-02 17:25:37 ----D---- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-05-02 17:24:05 ----D---- C:\Program Files\QuickTime
2009-05-02 17:22:36 ----A---- C:\WINDOWS\system32\WING32.DLL
2009-05-02 17:19:54 ----D---- C:\COKTEL
2009-05-01 21:28:42 ----D---- C:\Program Files\Mozilla Firefox 3.5 Beta 4
2009-05-01 21:07:13 ----A---- C:\WINDOWS\system32\TubeFinder.exe
2009-05-01 21:07:12 ----A---- C:\WINDOWS\system32\VB6FR.DLL
2009-05-01 21:07:11 ----D---- C:\Program Files\Free FLV Converter
2009-05-01 21:07:11 ----A---- C:\WINDOWS\system32\PCCLPFR.DLL
2009-05-01 21:07:11 ----A---- C:\WINDOWS\system32\MSCMCFR.DLL
2009-05-01 20:39:33 ----D---- C:\Documents and Settings\Armand\Application Data\Google
2009-05-01 14:44:31 ----D---- C:\Documents and Settings\Armand\Application Data\Canneverbe_Limited
2009-05-01 14:44:23 ----D---- C:\Program Files\CDBurnerXP
2009-05-01 14:43:35 ----D---- C:\downloads
2009-05-01 14:43:35 ----D---- C:\Documents and Settings\Armand\Application Data\GrabPro
2009-05-01 14:43:33 ----D---- C:\Program Files\Orbitdownloader
2009-05-01 14:43:33 ----D---- C:\Documents and Settings\Armand\Application Data\Orbit
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\LVUI2RC.dll
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\LVUI2.dll
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\lvcoinst.ini
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\lvcoinst.dll
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\lvcodec2.dll
2009-05-01 11:13:40 ----D---- C:\Program Files\Fichiers communs\FotoWire
2009-05-01 11:12:55 ----RA---- C:\WINDOWS\system32\InstMed.exe
2009-05-01 11:12:14 ----D---- C:\Program Files\Fichiers communs\Logitech
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71KOR.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71JPN.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71ITA.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71ESP.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71ENU.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71DEU.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71CHT.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71CHS.DLL
2009-05-01 11:11:53 ----D---- C:\Program Files\Logitech
2009-05-01 11:09:29 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2009-05-01 11:01:36 ----D---- C:\Program Files\Fichiers communs\Intel
2009-05-01 11:01:34 ----D---- C:\Program Files\CounterPath
2009-04-30 22:09:54 ----HDC---- C:\WINDOWS\ie8
2009-04-30 22:00:10 ----D---- C:\Documents and Settings\Armand\Application Data\Vidalia
2009-04-30 21:52:28 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$
2009-04-26 19:30:51 ----D---- C:\WINDOWS\WBEM
2009-04-26 19:30:28 ----D---- C:\WINDOWS\system32\fr-FR
2009-04-22 16:55:30 ----D---- C:\Program Files\Mindscape
2009-04-22 11:23:03 ----D---- C:\WINDOWS\Watson
2009-04-22 11:23:03 ----D---- C:\Program Files\Microsoft Games
2009-04-19 17:04:53 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2009-04-18 16:21:40 ----A---- C:\WINDOWS\system32\VB6STKIT.DLL
2009-04-18 15:54:47 ----D---- C:\Documents and Settings\Armand\Application Data\tor
2009-04-17 20:56:57 ----D---- C:\Documents and Settings\Armand\Application Data\Skype
2009-04-17 18:03:51 ----D---- C:\Documents and Settings\Armand\Application Data\gtk-2.0
2009-04-17 17:41:11 ----D---- C:\WINDOWS\system32\NtmsData
2009-04-17 14:34:45 ----D---- C:\Program Files\MagicDVDRipper
2009-04-17 14:34:20 ----A---- C:\WINDOWS\AoADVDRipper.INI
2009-04-17 14:26:41 ----D---- C:\Documents and Settings\Armand\Application Data\vlc
2009-04-17 11:55:45 ----D---- C:\Program Files\GIMP-2.0
2009-04-17 11:02:48 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2009-04-17 11:02:40 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-04-17 11:02:36 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2009-04-17 11:02:24 ----D---- C:\Program Files\Windows Media Connect 2
2009-04-17 11:02:18 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-04-17 11:01:41 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-04-17 11:01:19 ----D---- C:\e45ea9d8976c13138ad9e2ee17
2009-04-17 11:01:09 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-04-15 14:12:39 ----D---- C:\Documents and Settings\Armand\Application Data\Dynamique
2009-04-15 14:12:37 ----D---- C:\Documents and Settings\Armand\Application Data\Sites
2009-04-15 14:12:37 ----D---- C:\Documents and Settings\Armand\Application Data\Classes de site
2009-04-15 14:12:33 ----D---- C:\Documents and Settings\Armand\Application Data\EmailNotifier
2009-04-15 14:12:33 ----D---- C:\Documents and Settings\All Users\Application Data\EmailNotifier
2009-04-15 13:53:43 ----A---- C:\WINDOWS\system32\xrxg1l3.dll
2009-04-15 13:53:43 ----A---- C:\WINDOWS\system32\xrxg1ci.exe
2009-04-15 13:53:43 ----A---- C:\WINDOWS\system32\xrxg1ci.dll
2009-04-12 16:20:18 ----A---- C:\WINDOWS\fpxpress.ini
2009-04-12 16:20:17 ----HD---- C:\WINDOWS\msdownld.tmp
2009-04-12 16:20:17 ----D---- C:\Program Files\Microsoft FrontPage Express
2009-04-12 16:20:14 ----D---- C:\temp
2009-04-12 15:17:02 ----D---- C:\wamp
2009-04-11 11:46:00 ----D---- C:\Documents and Settings\Armand\Application Data\FileZilla
2009-04-11 11:45:46 ----D---- C:\Program Files\FileZilla FTP Client
2009-04-10 10:58:47 ----D---- C:\Program Files\Custom-Strike
2009-04-10 10:58:47 ----A---- C:\WINDOWS\system32\VB5DB.DLL
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\vxblock.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxwave.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxsfs.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxmas.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxdrv.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxafs.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\px.dll
2009-04-09 19:59:17 ----D---- C:\Documents and Settings\Armand\Application Data\Malwarebytes
2009-04-09 19:59:12 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-04-08 18:20:13 ----D---- C:\Documents and Settings\Armand\Application Data\Dev-Cpp
2009-04-08 18:19:54 ----D---- C:\Dev-Cpp
2009-04-08 18:11:37 ----D---- C:\Documents and Settings\Armand\Application Data\codeblocks
2009-04-08 14:27:15 ----D---- C:\WINDOWS\system32\appmgmt
2009-04-08 11:01:30 ----D---- C:\Program Files\Notepad++
2009-04-08 11:01:30 ----D---- C:\Documents and Settings\Armand\Application Data\Notepad++
2009-04-07 15:52:42 ----D---- C:\Documents and Settings\Armand\Application Data\DivX
2009-04-07 15:44:07 ----D---- C:\Program Files\DivX
2009-04-06 19:18:03 ----A---- C:\WINDOWS\system32\unM5287.exe
2009-04-06 19:18:03 ----A---- C:\WINDOWS\system32\rm5287.exe
2009-04-06 19:16:27 ----D---- C:\WINDOWS\system32\ALIEHCI
2009-04-06 19:08:14 ----D---- C:\Program Files\Marvell
2009-04-06 19:08:10 ----AH---- C:\WINDOWS\nsz248.tmp
2009-04-06 18:58:07 ----D---- C:\Program Files\ma-config.com
2009-04-06 18:58:07 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
2009-04-06 13:45:10 ----D---- C:\Program Files\ESTsoft
2009-04-06 13:45:10 ----D---- C:\Documents and Settings\Armand\Application Data\ESTsoft
2009-04-06 11:35:09 ----D---- C:\Program Files\VideoLAN
2009-04-06 11:21:20 ----A---- C:\WINDOWS\system32\WNASPI32.DLL
2009-04-06 11:21:18 ----D---- C:\Program Files\Xilisoft
2009-04-06 11:05:37 ----A---- C:\WINDOWS\system32\ovfsthweahqnivrjwdbcxthilbsonsfcakpvqh.dll
2009-04-06 11:05:37 ----A---- C:\WINDOWS\system32\ovfsthnovondsndpreosbjybqhkkflvikpflfn.dll
2009-04-06 11:05:37 ----A---- C:\WINDOWS\system32\ovfsthfqmeycfrqgmkuppyodqxmbavyqsxkrbx.dll
2009-04-06 10:44:45 ----A---- C:\WINDOWS\system32\winsetup64.exe
2009-04-06 10:14:39 ----A---- C:\WINDOWS\system32\ovfsthupqluyvlrxfabmpjgvmlkaiyonpvospo.dll
2009-04-06 10:14:39 ----A---- C:\WINDOWS\system32\ovfsthsrhpkhhoosxrwqkyxdypnntymrcpftqa.dll
2009-04-06 10:14:39 ----A---- C:\WINDOWS\system32\ovfsthqcnnqaonumbgjbbimacvpanwmtdovcun.dll
2009-04-06 10:09:07 ----D---- C:\WINDOWS\system32\BWKDLogs
2009-04-06 10:08:40 ----D---- C:\WINDOWS\system32\color
2009-04-06 10:07:29 ----D---- C:\Documents and Settings\All Users\Application Data\Kodak
2009-04-06 10:07:23 ----D---- C:\Program Files\Kodak
2009-04-04 21:45:49 ----D---- C:\Documents and Settings\All Users\Application Data\BitDefender
2009-04-04 21:45:15 ----D---- C:\Program Files\Fichiers communs\Softwin
2009-04-03 20:46:37 ----D---- C:\Documents and Settings\Armand\Application Data\Leadertech
2009-04-03 20:43:50 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2009-04-03 20:43:24 ----A---- C:\WINDOWS\KHALMNPR.Exe
2009-04-03 20:43:22 ----A---- C:\WINDOWS\system32\WdfCoInstaller01005.dll
2009-04-03 20:42:06 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
2009-03-28 23:07:30 ----A---- C:\WINDOWS\system32\remsdnsv.exe
2009-03-28 20:36:23 ----D---- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
2009-03-28 18:36:06 ----D---- C:\Program Files\TeraCopy
2009-03-27 23:17:11 ----A---- C:\WINDOWS\system32\javaws.exe
2009-03-27 23:17:11 ----A---- C:\WINDOWS\system32\javaw.exe
2009-03-27 23:17:11 ----A---- C:\WINDOWS\system32\java.exe
2009-03-27 23:10:20 ----D---- C:\Program Files\Google
2009-03-21 17:59:14 ----D---- C:\Program Files\RegCleaner
2009-03-21 16:51:34 ----D---- C:\Documents and Settings\Armand\Application Data\iTALC
2009-03-21 16:50:55 ----D---- C:\Documents and Settings\Armand\Application Data\TeraCopy
======List of files/folders modified in the last 2 months======
2009-05-16 17:15:54 ----D---- C:\Program Files
2009-05-16 17:15:34 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-16 17:04:58 ----D---- C:\Program Files\Mozilla Firefox 3.1 Beta 1
2009-05-16 17:03:11 ----D---- C:\WINDOWS\Prefetch
2009-05-16 17:00:32 ----A---- C:\WINDOWS\system32\eRLog.ini
2009-05-16 17:00:24 ----AD---- C:\WINDOWS\system32
2009-05-16 16:59:42 ----D---- C:\WINDOWS\temp
2009-05-16 16:59:02 ----D---- C:\Program Files\Messenger
2009-05-16 16:58:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-05-16 16:55:15 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-05-16 16:33:34 ----AD---- C:\WINDOWS
2009-05-16 16:31:45 ----HD---- C:\WINDOWS\$NtUninstallKB887472$
2009-05-16 16:24:17 ----D---- C:\Program Files\Windows NT
2009-05-16 16:24:16 ----D---- C:\Program Files\Windows Media Player
2009-05-16 16:11:33 ----D---- C:\Program Files\Mozilla Thunderbird
2009-05-16 15:56:02 ----D---- C:\Program Files\Internet Explorer
2009-05-16 15:53:43 ----D---- C:\Program Files\Free Video Converter
2009-05-16 15:42:17 ----D---- C:\Program Files\ClamWin
2009-05-16 15:41:06 ----D---- C:\Program Files\Atout Clic CM2
2009-05-16 15:40:51 ----D---- C:\Program Files\Apple Software Update
2009-05-16 15:32:10 ----AD---- C:\i386
2009-05-16 15:06:57 ----AD---- C:\dotnetfx
2009-05-16 14:08:55 ----RASH---- C:\boot.ini
2009-05-16 14:05:39 ----D---- C:\WINDOWS\Resources
2009-05-16 09:56:43 ----D---- C:\Documents and Settings\Armand\Application Data\Adobe
2009-05-15 21:34:26 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-05-15 20:47:32 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-05-15 20:47:03 ----SHD---- C:\WINDOWS\Installer
2009-05-15 20:47:01 ----SHD---- C:\Config.Msi
2009-05-15 20:45:24 ----D---- C:\Program Files\Adobe
2009-05-15 20:43:14 ----D---- C:\Program Files\Fichiers communs
2009-05-15 20:42:45 ----D---- C:\WINDOWS\WinSxS
2009-05-15 20:32:02 ----HD---- C:\WINDOWS\inf
2009-05-10 17:44:52 ----A---- C:\WINDOWS\win.ini
2009-05-10 17:44:52 ----A---- C:\WINDOWS\system.ini
2009-05-10 17:44:50 ----D---- C:\WINDOWS\pss
2009-05-10 17:42:47 ----D---- C:\WINDOWS\system32\Lang
2009-05-10 17:40:54 ----SD---- C:\Documents and Settings\Armand\Application Data\Microsoft
2009-05-09 18:51:35 ----RSD---- C:\WINDOWS\Fonts
2009-05-09 18:46:31 ----D---- C:\WINDOWS\Help
2009-05-08 19:11:08 ----D---- C:\WINDOWS\Config
2009-05-08 16:08:29 ----AD---- C:\WINDOWS\system32\drivers
2009-05-08 16:06:31 ----HD---- C:\Program Files\InstallShield Installation Information
2009-05-08 14:56:34 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-05-07 19:04:30 ----SD---- C:\WINDOWS\Tasks
2009-05-04 18:38:14 ----SHD---- C:\RECYCLER
2009-05-03 12:15:36 ----AD---- C:\WINDOWS\system
2009-05-02 17:25:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-05-02 17:25:38 ----D---- C:\Program Files\Fichiers communs\Apple
2009-05-01 20:13:18 ----D---- C:\WINDOWS\Debug
2009-05-01 15:53:12 ----D---- C:\Documents and Settings\Armand\Application Data\Free Download Manager
2009-05-01 11:13:21 ----D---- C:\WINDOWS\system32\CatRoot
2009-05-01 11:12:59 ----D---- C:\WINDOWS\twain_32
2009-04-30 22:15:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-04-30 22:15:21 ----D---- C:\WINDOWS\addins
2009-04-30 22:10:16 ----D---- C:\WINDOWS\Media
2009-04-30 21:52:26 ----HD---- C:\WINDOWS\$hf_mig$
2009-04-18 21:24:24 ----D---- C:\Documents and Settings\Armand\Application Data\dvdcss
2009-04-17 14:02:41 ----D---- C:\WINDOWS\AppPatch
2009-04-17 11:01:16 ----D---- C:\WINDOWS\system32\LogFiles
2009-04-15 13:52:46 ----D---- C:\Program Files\xerox
2009-04-10 15:47:50 ----D---- C:\Documents and Settings\Armand\Application Data\LimeWire
2009-04-06 14:21:28 ----D---- C:\Program Files\SuperCopier2
2009-04-04 21:43:49 ----D---- C:\Program Files\Fichiers communs\Symantec Shared
2009-04-03 20:44:17 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-03-27 23:17:10 ----D---- C:\Program Files\Java
2009-03-21 17:01:30 ----D---- C:\Documents and Settings\Armand\Application Data\Apple Computer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aspi32;aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-05 40320]
R1 is-L092Mdrv;is-L092Mdrv; C:\WINDOWS\system32\DRIVERS\08290340.sys [2008-07-08 148496]
R1 StyleXPHelper;StyleXPHelper; \??\C:\Program Files\TGTSoft\StyleXP\StyleXPHelper.exe []
R1 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2004-12-17 13952]
R2 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\drivers\BVRPMPR5.SYS []
R2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
R2 int15.sys;int15.sys; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-04-15 1130496]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-03-19 23400]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2005-09-23 3966976]
R3 L8042Kbd;Logitech SetPoint Keyboard Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2007-04-11 20496]
R3 L8042mou;SetPoint PS/2 Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\L8042mou.Sys [2007-04-11 63248]
R3 LMouKE;SetPoint Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouKE.Sys [2007-04-11 79376]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-31 22016]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2005-12-03 6144]
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\WINDOWS\system32\DRIVERS\LV561AV.SYS [2005-01-31 211712]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-05 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-05 57600]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-05 17024]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-04 25856]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-05 26496]
S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-05 14848]
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-05 60800]
S3 bdfdll;bdfdll; \??\C:\Program Files\Softwin\BitDefender10\bdfdll.sys []
S3 BDFsDrv;BDFsDrv; \??\C:\Program Files\Softwin\BitDefender10\bdfsdrv.sys []
S3 BDRsDrv;BDRsDrv; \??\C:\Program Files\Softwin\BitDefender10\bdrsdrv.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2004-08-05 9600]
S3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2007-04-11 34832]
S3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2007-04-11 36112]
S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\WINDOWS\System32\Drivers\LUsbFilt.Sys [2007-04-11 28688]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-05 61824]
S3 Profos;Profos; \??\C:\Program Files\Softwin\BitDefender10\profos.sys []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-05 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-05 15360]
S3 Trufos;Trufos; \??\C:\Program Files\Softwin\BitDefender10\trufos.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2008-11-07 32000]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-05 31616]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2009-04-27 79888]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2005-03-30 230400]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-03-06 132424]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-04-15 364544]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-09 152984]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 StyleXPService;StyleXPService; C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe [2005-07-06 344064]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-05 14336]
S2 gupdate1c9ca88ab4bbbc0;Service Google Update (gupdate1c9ca88ab4bbbc0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-05-01 133104]
S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 207830]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 244186]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe []
S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe []
S3 RemShutDownSvc;RemoteShutDown Service; C:\WINDOWS\System32\remsdnsv.exe [2009-03-28 12800]
S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe []
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe []
-----------------EOF-----------------
Run by Armand at 2009-05-16 17:15:53
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 51 GB (69%) free of 74 GB
Total RAM: 1279 MB (69% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{3600A237-DCD9-4122-B944-FADEEF3A5265}.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{AA3B66C3-F047-4ABC-91A4-F1E2A6CA1083}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000123B4-9B42-4900-B3F7-F4B073EFC214}]
Octh Class - C:\Program Files\Orbitdownloader\orbitcth.dll [2009-05-04 171208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C333CF63-767F-4831-94AC-E683D962C63C}]
CoTGT_BHO Class - C:\Program Files\TGTSoft\StyleXP\TGT_BHO.dll [2005-07-06 65536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-09 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
Locked
{C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Grab Pro - C:\Program Files\Orbitdownloader\GrabPro.dll [2009-05-04 670840]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2004-11-02 32768]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-05 208952]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-05 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"eRecoveryService"=C:\Acer\Empowering Technology\eRecovery\Monitor.exe [2005-11-16 397312]
"ClamWin"=C:\Program Files\ClamWin\bin\ClamTray.exe [2009-04-14 86016]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-09 148888]
"Kernel and Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2007-04-11 234974]
"Logitech Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2007-04-11 234974]
"Windows UDP Control Center"=fxsteller.exe []
"launchapp"=Alaunch []
"LVCOMSX"=C:\WINDOWS\system32\LVCOMSX.EXE [2005-07-19 221184]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe -atboottime []
"AdobeCS4ServiceManager"=C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe -launchedbylogin []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 15360]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-04-16 24264488]
"STYLEXP"=C:\Program Files\TGTSoft\StyleXP\StyleXP.exe [2005-07-21 1359872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
ALCMTR.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\High Definition Audio Property Page Shortcut]
C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\MSN Messenger\MsnMsgr.Exe /background []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ntiMUI]
c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2005-09-22 15031766]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Vidalia]
C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Orbit.lnk - C:\Program Files\Orbitdownloader\orbitdm.exe
C:\Documents and Settings\Armand\Menu Démarrer\Programmes\Démarrage
is-L092M.lnk - C:\Documents and Settings\Armand\Mes documents\Virus Removal Tool\is-L092M\startup.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-04-15 46080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-06 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-05 240128]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=36
"NoDriveAutoRun"=FFFFFFFF
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"K:\Installation\LimeWire\LimeWire.exe"="K:\Installation\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"D:\Anne-Victoire\Cookies\cs\steamapps\armanol\counter-strike\hl.exe"="D:\Anne-Victoire\Cookies\cs\steamapps\armanol\counter-strike\hl.exe:*:Enabled:Half-Life Launcher"
"D:\Anne-Victoire\Cookies\cs\steamapps\armanol\condition zero\hl.exe"="D:\Anne-Victoire\Cookies\cs\steamapps\armanol\condition zero\hl.exe:*:Enabled:Half-Life Launcher"
"C:\WINDOWS\explorer.exe"="C:\WINDOWS\explorer.exe:*:Enabled:Explorateur Windows"
"C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe"="C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe:*:Enabled:Kodak Software Updater"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"D:\Armand\Autres\LimeWire\LimeWire.exe"="D:\Armand\Autres\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe"="C:\Program Files\Microsoft Games\Age of Mythology\aomx.exe:*:Enabled:Age of Mythology - The Titans Expansion"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\CounterPath\X-Lite\x-lite.exe"="C:\Program Files\CounterPath\X-Lite\x-lite.exe:*:Enabled:X-Lite"
"C:\Program Files\Orbitdownloader\orbitdm.exe"="C:\Program Files\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit"
"C:\Program Files\Orbitdownloader\orbitnet.exe"="C:\Program Files\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit"
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe"="C:\Program Files\Fichiers communs\Adobe\CS4ServiceManager\CS4ServiceManager.exe:*:Enabled:Adobe CSI CS4"
"C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe"="C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe:*:Enabled:Adobe Dreamweaver CS4"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
======File associations======
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 2 months======
2009-05-16 17:15:54 ----D---- C:\Program Files\trend micro
2009-05-16 17:15:53 ----D---- C:\rsit
2009-05-16 14:10:56 ----A---- C:\WINDOWS\system32\kernel1.exe
2009-05-16 14:10:56 ----A---- C:\WINDOWS\system32\KERNEL.TMP
2009-05-16 14:05:25 ----D---- C:\Program Files\TGTSoft
2009-05-15 20:48:24 ----D---- C:\Documents and Settings\All Users\Application Data\FLEXnet
2009-05-15 20:43:14 ----D---- C:\Program Files\Fichiers communs\Adobe AIR
2009-05-15 20:42:29 ----D---- C:\Program Files\Fichiers communs\Macrovision Shared
2009-05-10 17:34:54 ----D---- C:\Program Files\Serials 2005
2009-05-10 16:52:48 ----D---- C:\Program Files\Blender Foundation
2009-05-09 19:08:09 ----D---- C:\WINDOWS\Club PoM
2009-05-09 19:07:34 ----N---- C:\WINDOWS\Setup1.exe
2009-05-09 19:07:34 ----A---- C:\WINDOWS\ST6UNST.EXE
2009-05-09 18:52:57 ----A---- C:\WINDOWS\system32\MSRD2X32.DLL
2009-05-09 18:52:57 ----A---- C:\WINDOWS\system32\msjt3032.dll
2009-05-09 18:52:57 ----A---- C:\WINDOWS\system32\msjet35.dll
2009-05-09 18:52:56 ----D---- C:\Program Files\Common Files
2009-05-09 18:52:56 ----A---- C:\WINDOWS\system32\vbar332.dll
2009-05-09 18:52:56 ----A---- C:\WINDOWS\system32\msjter35.dll
2009-05-09 18:52:56 ----A---- C:\WINDOWS\system32\msjint35.dll
2009-05-09 18:51:41 ----N---- C:\WINDOWS\system32\Zlib.dll
2009-05-09 18:51:41 ----A---- C:\WINDOWS\Virus.ini
2009-05-09 18:51:41 ----A---- C:\WINDOWS\SeaBattle.ini
2009-05-09 18:51:41 ----A---- C:\WINDOWS\Mountering.ini
2009-05-09 18:51:41 ----A---- C:\WINDOWS\Bidding.ini
2009-05-09 18:51:34 ----D---- C:\Program Files\Fichiers communs\GraphBoard 2.00
2009-05-09 18:51:10 ----D---- C:\WINDOWS\speech
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\shellses.dll
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\setresuk.dll
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\rhmmplay.dll
2009-05-09 18:51:00 ----A---- C:\WINDOWS\system32\ibmwave.exe
2009-05-09 18:50:54 ----D---- C:\ViaVoice
2009-05-09 18:50:51 ----A---- C:\WINDOWS\IsUninst.exe
2009-05-09 18:49:32 ----D---- C:\Program Files\Reflex English
2009-05-09 18:46:51 ----A---- C:\WINDOWS\system32\ddao35.dll
2009-05-09 18:46:37 ----A---- C:\WINDOWS\system32\LMRTREND.dll
2009-05-09 18:46:36 ----A---- C:\WINDOWS\system32\dxtmsft3.dll
2009-05-09 18:46:31 ----A---- C:\WINDOWS\system32\unam4ie.exe
2009-05-09 18:46:29 ----A---- C:\WINDOWS\system32\vidx16.dll
2009-05-09 18:46:29 ----A---- C:\WINDOWS\system32\qcut.dll
2009-05-09 18:46:28 ----A---- C:\WINDOWS\system32\w95inf32.dll
2009-05-09 18:46:28 ----A---- C:\WINDOWS\system32\w95inf16.dll
2009-05-09 18:44:43 ----A---- C:\WINDOWS\IsUn040c.exe
2009-05-08 19:02:04 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-05-08 18:32:18 ----D---- C:\WINDOWS\Minidump
2009-05-08 16:57:59 ----D---- C:\Program Files\Atout Clic 6e
2009-05-08 16:06:26 ----A---- C:\WINDOWS\MegaManager.INI
2009-05-08 16:03:37 ----D---- C:\Documents and Settings\Armand\Application Data\Download Manager
2009-05-08 15:27:01 ----D---- C:\Documents and Settings\Armand\Application Data\Nvu
2009-05-03 18:12:38 ----D---- C:\Program Files\Atout Clic CP
2009-05-03 17:04:39 ----D---- C:\Documents and Settings\Armand\Application Data\teamspeak2
2009-05-02 17:55:57 ----D---- C:\Documents and Settings\Armand\Application Data\skypePM
2009-05-02 17:55:48 ----D---- C:\Program Files\Fichiers communs\Skype
2009-05-02 17:55:46 ----RD---- C:\Program Files\Skype
2009-05-02 17:55:33 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-05-02 17:25:39 ----D---- C:\Program Files\iPod
2009-05-02 17:25:37 ----D---- C:\Program Files\iTunes
2009-05-02 17:25:37 ----D---- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-05-02 17:24:05 ----D---- C:\Program Files\QuickTime
2009-05-02 17:22:36 ----A---- C:\WINDOWS\system32\WING32.DLL
2009-05-02 17:19:54 ----D---- C:\COKTEL
2009-05-01 21:28:42 ----D---- C:\Program Files\Mozilla Firefox 3.5 Beta 4
2009-05-01 21:07:13 ----A---- C:\WINDOWS\system32\TubeFinder.exe
2009-05-01 21:07:12 ----A---- C:\WINDOWS\system32\VB6FR.DLL
2009-05-01 21:07:11 ----D---- C:\Program Files\Free FLV Converter
2009-05-01 21:07:11 ----A---- C:\WINDOWS\system32\PCCLPFR.DLL
2009-05-01 21:07:11 ----A---- C:\WINDOWS\system32\MSCMCFR.DLL
2009-05-01 20:39:33 ----D---- C:\Documents and Settings\Armand\Application Data\Google
2009-05-01 14:44:31 ----D---- C:\Documents and Settings\Armand\Application Data\Canneverbe_Limited
2009-05-01 14:44:23 ----D---- C:\Program Files\CDBurnerXP
2009-05-01 14:43:35 ----D---- C:\downloads
2009-05-01 14:43:35 ----D---- C:\Documents and Settings\Armand\Application Data\GrabPro
2009-05-01 14:43:33 ----D---- C:\Program Files\Orbitdownloader
2009-05-01 14:43:33 ----D---- C:\Documents and Settings\Armand\Application Data\Orbit
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\LVUI2RC.dll
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\LVUI2.dll
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\lvcoinst.ini
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\lvcoinst.dll
2009-05-01 11:15:46 ----RA---- C:\WINDOWS\system32\lvcodec2.dll
2009-05-01 11:13:40 ----D---- C:\Program Files\Fichiers communs\FotoWire
2009-05-01 11:12:55 ----RA---- C:\WINDOWS\system32\InstMed.exe
2009-05-01 11:12:14 ----D---- C:\Program Files\Fichiers communs\Logitech
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71KOR.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71JPN.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71ITA.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71ESP.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71ENU.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71DEU.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71CHT.DLL
2009-05-01 11:12:01 ----A---- C:\WINDOWS\system32\MFC71CHS.DLL
2009-05-01 11:11:53 ----D---- C:\Program Files\Logitech
2009-05-01 11:09:29 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2009-05-01 11:01:36 ----D---- C:\Program Files\Fichiers communs\Intel
2009-05-01 11:01:34 ----D---- C:\Program Files\CounterPath
2009-04-30 22:09:54 ----HDC---- C:\WINDOWS\ie8
2009-04-30 22:00:10 ----D---- C:\Documents and Settings\Armand\Application Data\Vidalia
2009-04-30 21:52:28 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$
2009-04-26 19:30:51 ----D---- C:\WINDOWS\WBEM
2009-04-26 19:30:28 ----D---- C:\WINDOWS\system32\fr-FR
2009-04-22 16:55:30 ----D---- C:\Program Files\Mindscape
2009-04-22 11:23:03 ----D---- C:\WINDOWS\Watson
2009-04-22 11:23:03 ----D---- C:\Program Files\Microsoft Games
2009-04-19 17:04:53 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2009-04-18 16:21:40 ----A---- C:\WINDOWS\system32\VB6STKIT.DLL
2009-04-18 15:54:47 ----D---- C:\Documents and Settings\Armand\Application Data\tor
2009-04-17 20:56:57 ----D---- C:\Documents and Settings\Armand\Application Data\Skype
2009-04-17 18:03:51 ----D---- C:\Documents and Settings\Armand\Application Data\gtk-2.0
2009-04-17 17:41:11 ----D---- C:\WINDOWS\system32\NtmsData
2009-04-17 14:34:45 ----D---- C:\Program Files\MagicDVDRipper
2009-04-17 14:34:20 ----A---- C:\WINDOWS\AoADVDRipper.INI
2009-04-17 14:26:41 ----D---- C:\Documents and Settings\Armand\Application Data\vlc
2009-04-17 11:55:45 ----D---- C:\Program Files\GIMP-2.0
2009-04-17 11:02:48 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2009-04-17 11:02:40 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-04-17 11:02:36 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2009-04-17 11:02:24 ----D---- C:\Program Files\Windows Media Connect 2
2009-04-17 11:02:18 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-04-17 11:01:41 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-04-17 11:01:19 ----D---- C:\e45ea9d8976c13138ad9e2ee17
2009-04-17 11:01:09 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-04-15 14:12:39 ----D---- C:\Documents and Settings\Armand\Application Data\Dynamique
2009-04-15 14:12:37 ----D---- C:\Documents and Settings\Armand\Application Data\Sites
2009-04-15 14:12:37 ----D---- C:\Documents and Settings\Armand\Application Data\Classes de site
2009-04-15 14:12:33 ----D---- C:\Documents and Settings\Armand\Application Data\EmailNotifier
2009-04-15 14:12:33 ----D---- C:\Documents and Settings\All Users\Application Data\EmailNotifier
2009-04-15 13:53:43 ----A---- C:\WINDOWS\system32\xrxg1l3.dll
2009-04-15 13:53:43 ----A---- C:\WINDOWS\system32\xrxg1ci.exe
2009-04-15 13:53:43 ----A---- C:\WINDOWS\system32\xrxg1ci.dll
2009-04-12 16:20:18 ----A---- C:\WINDOWS\fpxpress.ini
2009-04-12 16:20:17 ----HD---- C:\WINDOWS\msdownld.tmp
2009-04-12 16:20:17 ----D---- C:\Program Files\Microsoft FrontPage Express
2009-04-12 16:20:14 ----D---- C:\temp
2009-04-12 15:17:02 ----D---- C:\wamp
2009-04-11 11:46:00 ----D---- C:\Documents and Settings\Armand\Application Data\FileZilla
2009-04-11 11:45:46 ----D---- C:\Program Files\FileZilla FTP Client
2009-04-10 10:58:47 ----D---- C:\Program Files\Custom-Strike
2009-04-10 10:58:47 ----A---- C:\WINDOWS\system32\VB5DB.DLL
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\vxblock.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxwave.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxsfs.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxmas.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxdrv.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\pxafs.dll
2009-04-09 20:00:06 ----N---- C:\WINDOWS\system32\px.dll
2009-04-09 19:59:17 ----D---- C:\Documents and Settings\Armand\Application Data\Malwarebytes
2009-04-09 19:59:12 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-04-08 18:20:13 ----D---- C:\Documents and Settings\Armand\Application Data\Dev-Cpp
2009-04-08 18:19:54 ----D---- C:\Dev-Cpp
2009-04-08 18:11:37 ----D---- C:\Documents and Settings\Armand\Application Data\codeblocks
2009-04-08 14:27:15 ----D---- C:\WINDOWS\system32\appmgmt
2009-04-08 11:01:30 ----D---- C:\Program Files\Notepad++
2009-04-08 11:01:30 ----D---- C:\Documents and Settings\Armand\Application Data\Notepad++
2009-04-07 15:52:42 ----D---- C:\Documents and Settings\Armand\Application Data\DivX
2009-04-07 15:44:07 ----D---- C:\Program Files\DivX
2009-04-06 19:18:03 ----A---- C:\WINDOWS\system32\unM5287.exe
2009-04-06 19:18:03 ----A---- C:\WINDOWS\system32\rm5287.exe
2009-04-06 19:16:27 ----D---- C:\WINDOWS\system32\ALIEHCI
2009-04-06 19:08:14 ----D---- C:\Program Files\Marvell
2009-04-06 19:08:10 ----AH---- C:\WINDOWS\nsz248.tmp
2009-04-06 18:58:07 ----D---- C:\Program Files\ma-config.com
2009-04-06 18:58:07 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
2009-04-06 13:45:10 ----D---- C:\Program Files\ESTsoft
2009-04-06 13:45:10 ----D---- C:\Documents and Settings\Armand\Application Data\ESTsoft
2009-04-06 11:35:09 ----D---- C:\Program Files\VideoLAN
2009-04-06 11:21:20 ----A---- C:\WINDOWS\system32\WNASPI32.DLL
2009-04-06 11:21:18 ----D---- C:\Program Files\Xilisoft
2009-04-06 11:05:37 ----A---- C:\WINDOWS\system32\ovfsthweahqnivrjwdbcxthilbsonsfcakpvqh.dll
2009-04-06 11:05:37 ----A---- C:\WINDOWS\system32\ovfsthnovondsndpreosbjybqhkkflvikpflfn.dll
2009-04-06 11:05:37 ----A---- C:\WINDOWS\system32\ovfsthfqmeycfrqgmkuppyodqxmbavyqsxkrbx.dll
2009-04-06 10:44:45 ----A---- C:\WINDOWS\system32\winsetup64.exe
2009-04-06 10:14:39 ----A---- C:\WINDOWS\system32\ovfsthupqluyvlrxfabmpjgvmlkaiyonpvospo.dll
2009-04-06 10:14:39 ----A---- C:\WINDOWS\system32\ovfsthsrhpkhhoosxrwqkyxdypnntymrcpftqa.dll
2009-04-06 10:14:39 ----A---- C:\WINDOWS\system32\ovfsthqcnnqaonumbgjbbimacvpanwmtdovcun.dll
2009-04-06 10:09:07 ----D---- C:\WINDOWS\system32\BWKDLogs
2009-04-06 10:08:40 ----D---- C:\WINDOWS\system32\color
2009-04-06 10:07:29 ----D---- C:\Documents and Settings\All Users\Application Data\Kodak
2009-04-06 10:07:23 ----D---- C:\Program Files\Kodak
2009-04-04 21:45:49 ----D---- C:\Documents and Settings\All Users\Application Data\BitDefender
2009-04-04 21:45:15 ----D---- C:\Program Files\Fichiers communs\Softwin
2009-04-03 20:46:37 ----D---- C:\Documents and Settings\Armand\Application Data\Leadertech
2009-04-03 20:43:50 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2009-04-03 20:43:24 ----A---- C:\WINDOWS\KHALMNPR.Exe
2009-04-03 20:43:22 ----A---- C:\WINDOWS\system32\WdfCoInstaller01005.dll
2009-04-03 20:42:06 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
2009-03-28 23:07:30 ----A---- C:\WINDOWS\system32\remsdnsv.exe
2009-03-28 20:36:23 ----D---- C:\Documents and Settings\All Users\Application Data\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
2009-03-28 18:36:06 ----D---- C:\Program Files\TeraCopy
2009-03-27 23:17:11 ----A---- C:\WINDOWS\system32\javaws.exe
2009-03-27 23:17:11 ----A---- C:\WINDOWS\system32\javaw.exe
2009-03-27 23:17:11 ----A---- C:\WINDOWS\system32\java.exe
2009-03-27 23:10:20 ----D---- C:\Program Files\Google
2009-03-21 17:59:14 ----D---- C:\Program Files\RegCleaner
2009-03-21 16:51:34 ----D---- C:\Documents and Settings\Armand\Application Data\iTALC
2009-03-21 16:50:55 ----D---- C:\Documents and Settings\Armand\Application Data\TeraCopy
======List of files/folders modified in the last 2 months======
2009-05-16 17:15:54 ----D---- C:\Program Files
2009-05-16 17:15:34 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-16 17:04:58 ----D---- C:\Program Files\Mozilla Firefox 3.1 Beta 1
2009-05-16 17:03:11 ----D---- C:\WINDOWS\Prefetch
2009-05-16 17:00:32 ----A---- C:\WINDOWS\system32\eRLog.ini
2009-05-16 17:00:24 ----AD---- C:\WINDOWS\system32
2009-05-16 16:59:42 ----D---- C:\WINDOWS\temp
2009-05-16 16:59:02 ----D---- C:\Program Files\Messenger
2009-05-16 16:58:20 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-05-16 16:55:15 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-05-16 16:33:34 ----AD---- C:\WINDOWS
2009-05-16 16:31:45 ----HD---- C:\WINDOWS\$NtUninstallKB887472$
2009-05-16 16:24:17 ----D---- C:\Program Files\Windows NT
2009-05-16 16:24:16 ----D---- C:\Program Files\Windows Media Player
2009-05-16 16:11:33 ----D---- C:\Program Files\Mozilla Thunderbird
2009-05-16 15:56:02 ----D---- C:\Program Files\Internet Explorer
2009-05-16 15:53:43 ----D---- C:\Program Files\Free Video Converter
2009-05-16 15:42:17 ----D---- C:\Program Files\ClamWin
2009-05-16 15:41:06 ----D---- C:\Program Files\Atout Clic CM2
2009-05-16 15:40:51 ----D---- C:\Program Files\Apple Software Update
2009-05-16 15:32:10 ----AD---- C:\i386
2009-05-16 15:06:57 ----AD---- C:\dotnetfx
2009-05-16 14:08:55 ----RASH---- C:\boot.ini
2009-05-16 14:05:39 ----D---- C:\WINDOWS\Resources
2009-05-16 09:56:43 ----D---- C:\Documents and Settings\Armand\Application Data\Adobe
2009-05-15 21:34:26 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-05-15 20:47:32 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-05-15 20:47:03 ----SHD---- C:\WINDOWS\Installer
2009-05-15 20:47:01 ----SHD---- C:\Config.Msi
2009-05-15 20:45:24 ----D---- C:\Program Files\Adobe
2009-05-15 20:43:14 ----D---- C:\Program Files\Fichiers communs
2009-05-15 20:42:45 ----D---- C:\WINDOWS\WinSxS
2009-05-15 20:32:02 ----HD---- C:\WINDOWS\inf
2009-05-10 17:44:52 ----A---- C:\WINDOWS\win.ini
2009-05-10 17:44:52 ----A---- C:\WINDOWS\system.ini
2009-05-10 17:44:50 ----D---- C:\WINDOWS\pss
2009-05-10 17:42:47 ----D---- C:\WINDOWS\system32\Lang
2009-05-10 17:40:54 ----SD---- C:\Documents and Settings\Armand\Application Data\Microsoft
2009-05-09 18:51:35 ----RSD---- C:\WINDOWS\Fonts
2009-05-09 18:46:31 ----D---- C:\WINDOWS\Help
2009-05-08 19:11:08 ----D---- C:\WINDOWS\Config
2009-05-08 16:08:29 ----AD---- C:\WINDOWS\system32\drivers
2009-05-08 16:06:31 ----HD---- C:\Program Files\InstallShield Installation Information
2009-05-08 14:56:34 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-05-07 19:04:30 ----SD---- C:\WINDOWS\Tasks
2009-05-04 18:38:14 ----SHD---- C:\RECYCLER
2009-05-03 12:15:36 ----AD---- C:\WINDOWS\system
2009-05-02 17:25:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-05-02 17:25:38 ----D---- C:\Program Files\Fichiers communs\Apple
2009-05-01 20:13:18 ----D---- C:\WINDOWS\Debug
2009-05-01 15:53:12 ----D---- C:\Documents and Settings\Armand\Application Data\Free Download Manager
2009-05-01 11:13:21 ----D---- C:\WINDOWS\system32\CatRoot
2009-05-01 11:12:59 ----D---- C:\WINDOWS\twain_32
2009-04-30 22:15:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-04-30 22:15:21 ----D---- C:\WINDOWS\addins
2009-04-30 22:10:16 ----D---- C:\WINDOWS\Media
2009-04-30 21:52:26 ----HD---- C:\WINDOWS\$hf_mig$
2009-04-18 21:24:24 ----D---- C:\Documents and Settings\Armand\Application Data\dvdcss
2009-04-17 14:02:41 ----D---- C:\WINDOWS\AppPatch
2009-04-17 11:01:16 ----D---- C:\WINDOWS\system32\LogFiles
2009-04-15 13:52:46 ----D---- C:\Program Files\xerox
2009-04-10 15:47:50 ----D---- C:\Documents and Settings\Armand\Application Data\LimeWire
2009-04-06 14:21:28 ----D---- C:\Program Files\SuperCopier2
2009-04-04 21:43:49 ----D---- C:\Program Files\Fichiers communs\Symantec Shared
2009-04-03 20:44:17 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-03-27 23:17:10 ----D---- C:\Program Files\Java
2009-03-21 17:01:30 ----D---- C:\Documents and Settings\Armand\Application Data\Apple Computer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aspi32;aspi32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-05 40320]
R1 is-L092Mdrv;is-L092Mdrv; C:\WINDOWS\system32\DRIVERS\08290340.sys [2008-07-08 148496]
R1 StyleXPHelper;StyleXPHelper; \??\C:\Program Files\TGTSoft\StyleXP\StyleXPHelper.exe []
R1 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2004-12-17 13952]
R2 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\drivers\BVRPMPR5.SYS []
R2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
R2 int15.sys;int15.sys; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-04-15 1130496]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-03-19 23400]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2005-09-23 3966976]
R3 L8042Kbd;Logitech SetPoint Keyboard Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2007-04-11 20496]
R3 L8042mou;SetPoint PS/2 Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\L8042mou.Sys [2007-04-11 63248]
R3 LMouKE;SetPoint Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouKE.Sys [2007-04-11 79376]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-31 22016]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2005-12-03 6144]
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\WINDOWS\system32\DRIVERS\LV561AV.SYS [2005-01-31 211712]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-05 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-05 57600]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-05 17024]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-04 25856]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-05 26496]
S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-05 14848]
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-05 60800]
S3 bdfdll;bdfdll; \??\C:\Program Files\Softwin\BitDefender10\bdfdll.sys []
S3 BDFsDrv;BDFsDrv; \??\C:\Program Files\Softwin\BitDefender10\bdfsdrv.sys []
S3 BDRsDrv;BDRsDrv; \??\C:\Program Files\Softwin\BitDefender10\bdrsdrv.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2004-08-05 9600]
S3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2007-04-11 34832]
S3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2007-04-11 36112]
S3 LUsbFilt;Logitech SetPoint KMDF USB Filter; C:\WINDOWS\System32\Drivers\LUsbFilt.Sys [2007-04-11 28688]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-05 61824]
S3 Profos;Profos; \??\C:\Program Files\Softwin\BitDefender10\profos.sys []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-05 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-05 15360]
S3 Trufos;Trufos; \??\C:\Program Files\Softwin\BitDefender10\trufos.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2008-11-07 32000]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-05 31616]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp.sys [2009-04-27 79888]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2005-03-30 230400]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-03-06 132424]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-04-15 364544]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-09 152984]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-06-15 71096]
R2 StyleXPService;StyleXPService; C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe [2005-07-06 344064]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-05 14336]
S2 gupdate1c9ca88ab4bbbc0;Service Google Update (gupdate1c9ca88ab4bbbc0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-05-01 133104]
S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe []
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 207830]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 244186]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe []
S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe []
S3 RemShutDownSvc;RemoteShutDown Service; C:\WINDOWS\System32\remsdnsv.exe [2009-03-28 12800]
S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe []
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe []
-----------------EOF-----------------
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Utilisateur anonyme
16 mai 2009 à 17:36
16 mai 2009 à 17:36
Re
• Désactive ton antivirus. (Lop S&D détecté par certains antivirus )
• Télécharge Lop S&D (créé par eric 71) sur ton Bureau : https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
• Double-clique dessus pour lancer l'installation
• Double-clique sur le raccourci Lop S&D présent sur ton Bureau
• Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche)
• Patiente jusqu'à la fin du scan
• Poste le rapport généré
• Réactive ton antivirus
Tutoriel pour t’aider : http://www.malekal.com//tutorial_Lop_SD.php
• Désactive ton antivirus. (Lop S&D détecté par certains antivirus )
• Télécharge Lop S&D (créé par eric 71) sur ton Bureau : https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
• Double-clique dessus pour lancer l'installation
• Double-clique sur le raccourci Lop S&D présent sur ton Bureau
• Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche)
• Patiente jusqu'à la fin du scan
• Poste le rapport généré
• Réactive ton antivirus
Tutoriel pour t’aider : http://www.malekal.com//tutorial_Lop_SD.php
Utilisateur anonyme
17 mai 2009 à 14:55
17 mai 2009 à 14:55
non c bon kapersky la viré
Merci quand meme de votre aide
Merci quand meme de votre aide
Re
Si tu le dis
Post résolu?
Donc fais le necessaire;comme ceci:
http://www.commentcamarche.net/faq/sujet 11365 marquer un fil de discussion comme etant resolu
Si tu le dis
Post résolu?
Donc fais le necessaire;comme ceci:
http://www.commentcamarche.net/faq/sujet 11365 marquer un fil de discussion comme etant resolu