PC bloqqué
resbel
Messages postés
4
Statut
Membre
-
Utilisateur anonyme -
Utilisateur anonyme -
Bonjour,
En mode sans échec après malware et avira bloqués écran bleu avec :
Kernel-data-inpage-error
suivi d'une série de recommandations d'éliminer tout nouveau logiciel ......
ci-dessous les textes demandés :
Logfile of random's system information tool 1.06 (written by random/random)
Run by HP_Administrateur at 2009-06-02 14:22:55
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 150 GB (65%) free of 232 GB
Total RAM: 1022 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:22:56, on 2/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
C:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\WINDOWS\RTHDCPL.EXE
C:\USBStorage\USBDetector.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\IdiomaX\Translation Assistant 4.0\TrasWord.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre1.5.0_19\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\HP_Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\HP_Administrateur\Bureau\HP_Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/nl-be?cobrand=hp.msn.com&ocid=HPDHP&pc=HPDTDF&checklang=1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://fr.search.yahoo.com/?fr=cb-hp06
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.proximus.be/pickx
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.linksys.com/be/registration
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [DMAScheduler] "c:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [USBDetector] C:\USBStorage\USBDetector.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user')
O4 - Global Startup: Assistant de traduction IdiomaX.lnk = C:\Program Files\IdiomaX\Translation Assistant 4.0\TrasWord.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Avira Pare-feu (AntiVirFirewallService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Intel(R) Quick Resume technology (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\logishrd\Bluetooth\LBTServ.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
--
End of file - 14213 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-05-25 312928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2009-05-25 5931848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll [2009-05-04 452088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar2.dll [2008-04-21 2582136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll [2009-06-02 325048]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll [2008-12-30 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2009-05-25 5931848]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar2.dll [2008-04-21 2582136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray"=C:\WINDOWS\ehome\ehtray.exe [2005-08-05 64512]
"ftutil2"=ftutil2.dll,SetWriteCacheMode []
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-02-11 186904]
"DMAScheduler"=c:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe [2006-04-13 90112]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2005-07-22 237568]
"PCDrProfiler"= []
"HPBootOp"=C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe [2006-02-15 249856]
"Kernel and Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2008-12-19 76304]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-08-20 150016]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-02-25 61440]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-04-30 17881088]
"USBDetector"=C:\USBStorage\USBDetector.exe [2003-04-01 53248]
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-05-25 198160]
"ISUSPM Startup"=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-07-27 221184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Software Informer"=C:\Program Files\Software Informer\softinfo.exe [2009-05-07 1839173]
"fsm"= []
"RoboForm"=C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2009-05-25 160592]
"Free Download Manager"=C:\Program Files\Free Download Manager\fdm.exe [2009-01-31 3399727]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Logitech Desktop Messenger.lnk]
C:\PROGRA~1\Logitech\DESKTO~1\8876480\Program\LOGITE~1.EXE [2009-02-23 67128]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Assistant de traduction IdiomaX.lnk - C:\Program Files\IdiomaX\Translation Assistant 4.0\TrasWord.exe
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-02-25 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\fichiers communs\logishrd\bluetooth\LBTWlgn.dll [2009-02-19 72208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2008-05-26 304128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WdfLoadGroup]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AOL 9.0\waol.exe"="C:\Program Files\AOL 9.0\waol.exe:*:Enabled:AOL France"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
======List of files/folders created in the last 1 months======
2009-06-02 14:16:29 ----D---- C:\rsit
2009-06-01 17:04:39 ----D---- C:\Avira rescue system update
2009-06-01 10:57:26 ----A---- C:\WINDOWS\ntbtlog.txt
2009-06-01 09:07:12 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Malwarebytes
2009-06-01 09:07:07 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-06-01 09:07:07 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\WS2Fix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\VCCLSID.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\VACFix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\swxcacls.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\swsc.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\swreg.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\SrchSTS.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\o4Patch.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\IEDFix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\IEDFix.C.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\dumphive.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\Agent.OMZ.Fix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\404Fix.exe
2009-06-01 09:03:48 ----A---- C:\WINDOWS\system32\Process.exe
2009-05-31 10:31:32 ----D---- C:\WINDOWS\system32\Kaspersky Lab
2009-05-30 19:05:49 ----D---- C:\Program Files\xp-AntiSpy
2009-05-30 10:58:53 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\OfficeUpdate12
2009-05-30 10:54:46 ----A---- C:\WINDOWS\system32\mdimon.dll
2009-05-27 20:36:03 ----D---- C:\Medion
2009-05-26 19:39:52 ----A---- C:\UFantasy.ini
2009-05-26 19:34:04 ----D---- C:\Program Files\Unibrain
2009-05-26 19:33:20 ----D---- C:\Program Files\Intel Desktop Board
2009-05-26 19:29:01 ----D---- C:\HP LJ P4010 Series Printer
2009-05-26 19:24:15 ----D---- C:\USBStorage
2009-05-25 16:48:00 ----D---- C:\IntelPRO
2009-05-25 16:36:14 ----D---- C:\Program Files\ATI
2009-05-25 16:16:28 ----D---- C:\Program Files\Fichiers communs\xing shared
2009-05-25 15:43:51 ----D---- C:\Program Files\PC Drivers HeadQuarters
2009-05-25 15:43:51 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2009-05-25 15:41:47 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-05-25 15:29:29 ----D---- C:\Python25
2009-05-25 15:25:47 ----A---- C:\WINDOWS\system32\javaws.exe
2009-05-25 15:25:47 ----A---- C:\WINDOWS\system32\javaw.exe
2009-05-25 15:25:47 ----A---- C:\WINDOWS\system32\java.exe
2009-05-25 14:51:26 ----N---- C:\WINDOWS\system32\pxafs.dll
2009-05-25 14:51:00 ----D---- C:\Program Files\Fichiers communs\DivX Shared
2009-05-25 14:33:19 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Software Informer
2009-05-17 13:47:18 ----A---- C:\WINDOWS\system32\hpz3l4pi.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZisn12.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZipt12.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZipr12.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZipm12.exe
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZinw12.exe
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZidr12.dll
2009-05-17 12:25:31 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Image Zone Express
2009-05-16 11:14:20 ----A---- C:\WINDOWS\zipinst.exe
2009-05-14 23:35:05 ----D---- C:\WINDOWS\system32\appmgmt
2009-05-14 23:12:50 ----HD---- C:\WINDOWS\system32\GroupPolicy
2009-05-14 12:34:56 ----A---- C:\WINDOWS\~DF7724.tmp
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Wint351.exe
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\VBAR332.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Vb5db.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\MSREPL35.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\MSJTER35.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\MSJINT35.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dzip32.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dunzip32.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dtcutil.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dtctrace.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dtccm.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Axdist.exe
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\MSXBSE35.DLL
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Msstkprp.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\MSRD2X35.DLL
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\MSJET35.DLL
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Dzactx.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Duzactx.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Adme.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\actrpt.dll
2009-05-12 17:23:00 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Avira
2009-05-12 01:06:28 ----D---- C:\WINDOWS\system32\LogFiles
2009-05-12 01:06:15 ----D---- C:\Program Files\Avira
2009-05-12 00:51:59 ----A---- C:\WINDOWS\system32\LuResult.txt
2009-05-12 00:38:57 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\iolo
2009-05-11 23:36:17 ----A---- C:\WINDOWS\system32\BtCoreIf.dll
2009-05-11 23:36:13 ----A---- C:\WINDOWS\system32\KemXML.dll
2009-05-11 23:36:13 ----A---- C:\WINDOWS\system32\KemWnd.dll
2009-05-11 23:36:13 ----A---- C:\WINDOWS\system32\kemutb.dll
2009-05-11 23:36:12 ----A---- C:\WINDOWS\system32\KemUtil.dll
2009-05-11 23:34:07 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2009-05-11 23:31:29 ----D---- C:\Program Files\Atheros
2009-05-11 23:30:36 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-05-11 23:29:57 ----A---- C:\WINDOWS\system32\difxapi.dll
2009-05-11 23:27:30 ----A---- C:\WINDOWS\system32\CSVer.dll
2009-05-11 18:08:48 ----A---- C:\WINDOWS\system32\XceedZip.dll
2009-05-11 17:53:45 ----D---- C:\WINDOWS\ie8updates
2009-05-11 17:53:11 ----HDC---- C:\WINDOWS\ie8
2009-05-11 17:49:44 ----A---- C:\WINDOWS\system32\MRT.exe
2009-05-11 17:49:35 ----HDC---- C:\WINDOWS\$NtUninstallKB963027$
2009-05-11 17:49:29 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-05-11 17:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-05-11 17:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-05-11 17:49:08 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-05-11 17:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2009-05-11 17:48:55 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-05-11 17:48:36 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$
2009-05-11 17:28:38 ----D---- C:\WINDOWS\Prefetch
2009-05-11 17:25:52 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2009-05-11 17:21:44 ----D---- C:\WINDOWS\system32\fr-fr
2009-05-11 17:21:44 ----D---- C:\WINDOWS\system32\fr
2009-05-11 17:21:43 ----D---- C:\WINDOWS\system32\bits
2009-05-11 17:02:10 ----A---- C:\WINDOWS\system32\xmllite.dll
2009-05-11 17:02:08 ----N---- C:\WINDOWS\system32\wmphoto.dll
2009-05-11 17:02:06 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-05-11 17:02:05 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2009-05-11 17:02:05 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2009-05-11 17:01:58 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-05-11 17:01:58 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-05-11 17:01:58 ----N---- C:\WINDOWS\system32\tsgqec.dll
2009-05-11 17:01:52 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2009-05-11 17:01:51 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2009-05-11 17:01:47 ----N---- C:\WINDOWS\system32\slserv.exe
2009-05-11 17:01:47 ----N---- C:\WINDOWS\system32\slrundll.exe
2009-05-11 17:01:47 ----N---- C:\WINDOWS\system32\slgen.dll
2009-05-11 17:01:46 ----N---- C:\WINDOWS\system32\slextspk.dll
2009-05-11 17:01:46 ----N---- C:\WINDOWS\system32\slcoinst.dll
2009-05-11 17:01:44 ----N---- C:\WINDOWS\system32\setupn.exe
2009-05-11 17:01:42 ----N---- C:\WINDOWS\system32\s3gnb.dll
2009-05-11 17:01:40 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2009-05-11 17:01:39 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-05-11 17:01:38 ----N---- C:\WINDOWS\system32\qutil.dll
2009-05-11 17:01:38 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-05-11 17:01:37 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-05-11 17:01:37 ----N---- C:\WINDOWS\system32\qagent.dll
2009-05-11 17:01:36 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2009-05-11 17:01:33 ----N---- C:\WINDOWS\system32\onex.dll
2009-05-11 17:01:30 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\napstat.exe
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2009-05-11 17:01:23 ----N---- C:\WINDOWS\system32\msxml6r.dll
2009-05-11 17:01:23 ----A---- C:\WINDOWS\system32\msxml6.dll
2009-05-11 17:01:21 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-05-11 17:01:21 ----N---- C:\WINDOWS\system32\mssha.dll
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-05-11 17:01:07 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2009-05-11 17:01:03 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-05-11 17:01:03 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-05-11 17:00:59 ----N---- C:\WINDOWS\system32\smtpapi.dll
2009-05-11 17:00:59 ----N---- C:\WINDOWS\system32\rwnh.dll
2009-05-11 17:00:57 ----N---- C:\WINDOWS\system32\comsdupd.exe
2009-05-11 17:00:53 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2009-05-11 17:00:48 ----A---- C:\WINDOWS\004136_.tmp
2009-05-11 17:00:47 ----N---- C:\WINDOWS\system32\faxpatch.exe
2009-05-11 17:00:46 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-05-11 17:00:46 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-05-11 17:00:41 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-05-11 17:00:41 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-05-11 17:00:40 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-05-11 17:00:38 ----N---- C:\WINDOWS\system32\credssp.dll
2009-05-11 17:00:32 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-05-11 17:00:32 ----N---- C:\WINDOWS\system32\azroles.dll
2009-05-11 17:00:31 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2009-05-11 17:00:30 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2009-05-11 17:00:30 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2009-05-11 17:00:24 ----N---- C:\WINDOWS\system32\aaclient.dll
2009-05-11 16:59:42 ----D---- C:\WINDOWS\system32\PreInstall
2009-05-11 16:39:18 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-05-11 14:26:06 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-05-11 08:38:17 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\ErrorFix
2009-05-11 08:37:29 ----A---- C:\WINDOWS\oodcnt.INI
2009-05-11 08:36:10 ----SHD---- C:\cmdcons
2009-05-11 08:28:49 ----ASH---- C:\Documents and Settings\HP_Administrateur\Application Data\desktop.ini
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Macromedia
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Identities
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\DeepBurner
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Canneverbe_Limited
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\ATI
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Adobe
2009-05-11 08:26:54 ----SD---- C:\Documents and Settings\HP_Administrateur\Application Data\Microsoft
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\WinRAR
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Windows Search
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Thunderbird
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Real
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Mozilla
2009-05-11 08:11:08 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-05-10 08:37:15 ----SHD---- C:\found.001
2009-05-10 08:27:20 ----D---- C:\_OTMoveIt
2009-05-09 22:12:40 ----SHD---- C:\WINDOWS\CSC
2009-05-09 14:17:28 ----D---- C:\Program Files\OO Software
2009-05-09 09:27:28 ----D---- C:\Program Files\Astonsoft
2009-05-08 15:59:20 ----D---- C:\Program Files\iolo
2009-05-08 15:55:15 ----D---- C:\Documents and Settings\All Users\Application Data\iolo
======List of files/folders modified in the last 1 months======
2009-06-02 14:18:10 ----D---- C:\Program Files\Mozilla Firefox
2009-06-02 14:13:08 ----D---- C:\Program Files\Mozilla Thunderbird
2009-06-02 14:12:26 ----D---- C:\WINDOWS\Registration
2009-06-02 14:12:25 ----D---- C:\WINDOWS\Temp
2009-06-02 14:12:04 ----D---- C:\WINDOWS\system32\CatRoot2
2009-06-02 14:11:39 ----AD---- C:\WINDOWS
2009-06-02 07:41:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-06-02 07:38:54 ----D---- C:\Program Files\Google
2009-06-02 01:21:00 ----D---- C:\Program Files\netpass
2009-06-01 11:27:03 ----D---- C:\Downloads
2009-06-01 09:19:25 ----D---- C:\WINDOWS\Debug
2009-06-01 09:19:24 ----D---- C:\WINDOWS\Minidump
2009-06-01 09:07:09 ----D---- C:\WINDOWS\system32\drivers
2009-06-01 09:07:07 ----RD---- C:\Program Files
2009-06-01 09:03:49 ----D---- C:\WINDOWS\system32
2009-06-01 09:03:47 ----D---- C:\Program Files\Free Download Manager
2009-05-31 19:31:21 ----D---- C:\WINDOWS\system32\Restore
2009-05-31 10:31:33 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-05-31 10:31:31 ----HD---- C:\WINDOWS\inf
2009-05-30 11:31:19 ----SHD---- C:\WINDOWS\Installer
2009-05-30 11:31:15 ----HD---- C:\Config.Msi
2009-05-30 11:31:15 ----D---- C:\Program Files\MSECache
2009-05-30 11:21:17 ----RSD---- C:\WINDOWS\Fonts
2009-05-30 10:54:56 ----A---- C:\WINDOWS\ODBC.INI
2009-05-30 10:53:34 ----D---- C:\WINDOWS\SHELLNEW
2009-05-30 10:47:50 ----D---- C:\WINDOWS\system
2009-05-30 10:47:50 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-05-28 18:44:36 ----D---- C:\WINDOWS\system32\CatRoot
2009-05-28 18:35:05 ----D---- C:\WINDOWS\WinSxS
2009-05-28 18:33:10 ----HDC---- C:\WINDOWS\$NtUninstallKB959772_WM11$
2009-05-28 18:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2009-05-28 18:32:42 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2009-05-28 18:32:23 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2009-05-28 18:31:59 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2009-05-28 17:41:51 ----D---- C:\WINDOWS\Help
2009-05-27 20:34:55 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-05-26 19:33:28 ----D---- C:\WINDOWS\Downloaded Installations
2009-05-26 19:23:16 ----D---- C:\WINDOWS\system32\RTCOM
2009-05-25 16:35:47 ----D---- C:\Program Files\ATI Technologies
2009-05-25 16:17:25 ----A---- C:\WINDOWS\cdplayer.ini
2009-05-25 16:16:28 ----D---- C:\Program Files\Fichiers communs
2009-05-25 16:16:22 ----D---- C:\Program Files\Fichiers communs\Real
2009-05-25 16:16:19 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2009-05-25 16:16:11 ----A---- C:\WINDOWS\system32\pndx5032.dll
2009-05-25 16:16:11 ----A---- C:\WINDOWS\system32\pndx5016.dll
2009-05-25 16:16:08 ----A---- C:\WINDOWS\system32\pncrt.dll
2009-05-25 15:43:58 ----HD---- C:\Program Files\InstallShield Installation Information
2009-05-25 15:41:36 ----A---- C:\WINDOWS\win.ini
2009-05-25 15:41:28 ----D---- C:\Program Files\Windows Media Player
2009-05-25 15:41:24 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-05-25 15:40:47 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-05-25 15:25:47 ----D---- C:\Program Files\Java
2009-05-25 14:51:33 ----D---- C:\Program Files\DivX
2009-05-25 14:33:17 ----D---- C:\Program Files\Software Informer
2009-05-23 17:00:18 ----D---- C:\WINDOWS\system32\FxsTmp
2009-05-17 15:55:57 ----D---- C:\Documents and Settings\All Users\Application Data\SymplisIT
2009-05-17 13:37:33 ----D---- C:\Program Files\HP
2009-05-17 12:02:08 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-05-17 12:02:04 ----D---- C:\Program Files\Registry Mechanic
2009-05-16 09:19:21 ----D---- C:\WINDOWS\network diagnostic
2009-05-16 08:57:01 ----RASH---- C:\boot.ini
2009-05-16 08:57:01 ----A---- C:\WINDOWS\system.ini
2009-05-14 23:43:02 ----D---- C:\Program Files\GemMasterFrench
2009-05-14 23:12:58 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Windows Desktop Search
2009-05-14 23:12:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-05-14 23:12:50 ----D---- C:\WINDOWS\system32\wbem
2009-05-14 23:12:45 ----HDC---- C:\WINDOWS\$NtUninstallKB940157$
2009-05-14 12:42:20 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2009-05-12 16:52:18 ----D---- C:\Program Files\Hewlett-Packard
2009-05-12 00:57:35 ----D---- C:\Program Files\Fichiers communs\Symantec Shared
2009-05-12 00:57:34 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2009-05-12 00:52:12 ----D---- C:\Program Files\CCleaner
2009-05-12 00:51:40 ----SD---- C:\WINDOWS\Tasks
2009-05-12 00:02:55 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2009-05-11 23:31:34 ----D---- C:\Documents and Settings\All Users\Application Data\Atheros
2009-05-11 23:28:57 ----D---- C:\Program Files\Intel
2009-05-11 17:55:38 ----D---- C:\WINDOWS\Media
2009-05-11 17:55:38 ----D---- C:\WINDOWS\AppPatch
2009-05-11 17:55:38 ----D---- C:\Program Files\Internet Explorer
2009-05-11 17:53:44 ----HD---- C:\WINDOWS\$hf_mig$
2009-05-11 17:48:48 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-05-11 17:48:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2009-05-11 17:48:32 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-05-11 17:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB960715$
2009-05-11 17:48:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-05-11 17:48:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-05-11 17:48:10 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-05-11 17:48:04 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
2009-05-11 17:47:57 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-05-11 17:47:52 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2009-05-11 17:47:47 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2009-05-11 17:47:41 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-05-11 17:47:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2009-05-11 17:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-05-11 17:47:23 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-05-11 17:47:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-05-11 17:47:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-05-11 17:47:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-05-11 17:47:01 ----D---- C:\Program Files\Messenger
2009-05-11 17:47:00 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-05-11 17:46:54 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-05-11 17:46:47 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2009-05-11 17:46:33 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-05-11 17:46:26 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2009-05-11 17:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-05-11 17:46:11 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2009-05-11 17:45:57 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-05-11 17:45:49 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2009-05-11 17:44:37 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-05-11 17:27:49 ----D---- C:\WINDOWS\system32\Setup
2009-05-11 17:26:41 ----D---- C:\WINDOWS\security
2009-05-11 17:21:58 ----D---- C:\WINDOWS\system32\inetsrv
2009-05-11 17:21:57 ----D---- C:\WINDOWS\ime
2009-05-11 17:21:44 ----D---- C:\WINDOWS\system32\usmt
2009-05-11 17:21:43 ----D---- C:\WINDOWS\PeerNet
2009-05-11 17:21:43 ----D---- C:\Program Files\Movie Maker
2009-05-11 17:21:34 ----D---- C:\WINDOWS\system32\npp
2009-05-11 17:21:33 ----D---- C:\WINDOWS\msagent
2009-05-11 17:21:32 ----D---- C:\WINDOWS\srchasst
2009-05-11 17:21:30 ----D---- C:\Program Files\NetMeeting
2009-05-11 17:21:29 ----D---- C:\WINDOWS\system32\Com
2009-05-11 17:21:27 ----D---- C:\Program Files\Windows NT
2009-05-11 17:21:27 ----D---- C:\Program Files\Outlook Express
2009-05-11 17:21:26 ----D---- C:\Program Files\Fichiers communs\System
2009-05-11 17:21:19 ----D---- C:\WINDOWS\system32\oobe
2009-05-11 17:18:49 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-05-11 17:16:25 ----AD---- C:\WINDOWS\ehome
2009-05-11 16:59:42 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2009-05-11 16:53:46 ----D---- C:\I386
2009-05-11 16:51:51 ----RSD---- C:\WINDOWS\assembly
2009-05-11 16:51:51 ----RD---- C:\WINDOWS\Web
2009-05-11 16:51:51 ----RD---- C:\WINDOWS\Offline Web Pages
2009-05-11 14:26:12 ----D---- C:\WINDOWS\SoftwareDistribution
2009-05-11 13:47:58 ----HD---- C:\hp
2009-05-11 08:41:50 ----SHD---- C:\RECYCLER
2009-05-11 08:36:10 ----A---- C:\WINDOWS\UPGRADE.TXT
2009-05-11 08:36:03 ----D---- C:\WINDOWS\setup.pss
2009-05-11 08:33:46 ----AD---- C:\WINDOWS\system32\pcintro
2009-05-11 08:26:45 ----D---- C:\Documents and Settings
2009-05-11 08:22:43 ----RASH---- C:\BOOT.BAK
2009-05-11 01:09:43 ----D---- C:\tftpboot
2009-05-09 16:35:43 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2009-05-09 13:46:49 ----D---- C:\Program Files\DEFRAG
2009-05-08 15:48:52 ----D---- C:\Program Files\doc
2009-05-03 14:30:32 ----D---- C:\Driver Download
2009-05-03 12:11:00 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-05-03 09:00:34 ----D---- C:\Program Files\JkDefrag
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avfwot;avfwot; C:\WINDOWS\system32\DRIVERS\avfwot.sys [2009-03-24 97480]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ELhid;EL hid Service; \??\C:\WINDOWS\System32\Drivers\Elhid.sys []
R1 ELkbd;EL KB Service; \??\C:\WINDOWS\System32\Drivers\Elkbd.sys []
R1 ELmon;EL Monitor Service; \??\C:\WINDOWS\System32\Drivers\Elmon.sys []
R1 ELmou;EL Mouse Service; \??\C:\WINDOWS\System32\Drivers\Elmou.sys []
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-02-13 28376]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-03-24 55640]
R2 LBeepKE;LBeepKE; C:\WINDOWS\System32\Drivers\LBeepKE.sys [2008-12-19 10384]
R2 ubsbm;Unibrain 1394 SBM Driver; C:\WINDOWS\system32\DRIVERS\ubsbm.sys [2005-07-27 14080]
R2 ubumapi;Unibrain 1394 FireAPI Driver; C:\WINDOWS\system32\DRIVERS\ubumapi.sys [2005-07-27 36352]
R3 3xHybrid;3xHybrid service; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [2006-04-12 2829696]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2009-02-25 1344224]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-02-26 3565568]
R3 avfwim;AvFw Packet Filter Miniport; C:\WINDOWS\system32\DRIVERS\avfwim.sys [2009-02-24 69632]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2007-12-11 242320]
R3 ELacpi;ELacpi; C:\WINDOWS\system32\DRIVERS\ELacpi.sys [2006-05-09 9728]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2005-10-21 49920]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2005-10-21 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-05-04 5075968]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-12-19 35472]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-12-19 37392]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 ubohci;Unibrain 1394 OHCI Driver; C:\WINDOWS\system32\DRIVERS\ubohci.sys [2005-07-27 77056]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 MHNDRV;Pilote MHN; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MPE;Filtre BDA MPE; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-13 15232]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 Ps2;PS2; C:\WINDOWS\system32\DRIVERS\PS2.sys [2005-12-13 19072]
S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 WN5301;LIteon Wireless PCI Network Adapter Service; C:\WINDOWS\system32\DRIVERS\wn5301.sys [2005-10-05 468768]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirFirewallService;Avira Pare-feu; C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe [2009-03-24 388865]
R2 AntiVirMailService;Avira AntiVir MailGuard; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [2009-04-17 194817]
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-04-01 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-03-02 185089]
R2 AntiVirWebService;Avira AntiVir WebGuard; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2009-02-12 432897]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-02-25 602112]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2005-12-15 237568]
R2 ehSched;Service de planification Media Center; C:\WINDOWS\eHome\ehSched.exe [2005-08-05 103424]
R2 ELService;Intel(R) Quick Resume technology; C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe [2006-06-01 180224]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2009-02-11 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe [2006-06-21 49152]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-05 99328]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2009-02-25 593920]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
S3 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2009-03-03 33176]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-06-02 138168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Fichiers communs\logishrd\Bluetooth\LBTServ.exe [2009-02-19 121360]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\wmpnetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
-----------------EOF-----------------
salutations
En mode sans échec après malware et avira bloqués écran bleu avec :
Kernel-data-inpage-error
suivi d'une série de recommandations d'éliminer tout nouveau logiciel ......
ci-dessous les textes demandés :
Logfile of random's system information tool 1.06 (written by random/random)
Run by HP_Administrateur at 2009-06-02 14:22:55
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 150 GB (65%) free of 232 GB
Total RAM: 1022 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:22:56, on 2/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
C:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\WINDOWS\RTHDCPL.EXE
C:\USBStorage\USBDetector.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\IdiomaX\Translation Assistant 4.0\TrasWord.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
c:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre1.5.0_19\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\HP_Administrateur\Bureau\RSIT.exe
C:\Documents and Settings\HP_Administrateur\Bureau\HP_Administrateur.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/nl-be?cobrand=hp.msn.com&ocid=HPDHP&pc=HPDTDF&checklang=1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://fr.search.yahoo.com/?fr=cb-hp06
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.proximus.be/pickx
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.linksys.com/be/registration
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [DMAScheduler] "c:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [USBDetector] C:\USBStorage\USBDetector.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user')
O4 - Global Startup: Assistant de traduction IdiomaX.lnk = C:\Program Files\IdiomaX\Translation Assistant 4.0\TrasWord.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Avira Pare-feu (AntiVirFirewallService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
O23 - Service: Avira AntiVir MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira AntiVir WebGuard (AntiVirWebService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Intel(R) Quick Resume technology (ELService) - Intel Corporation - C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\logishrd\Bluetooth\LBTServ.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
--
End of file - 14213 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-05-25 312928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2009-05-25 5931848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.5.0_19\bin\ssv.dll [2009-05-04 452088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar2.dll [2008-04-21 2582136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll [2009-06-02 325048]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll [2008-12-30 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2009-05-25 5931848]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar2.dll [2008-04-21 2582136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray"=C:\WINDOWS\ehome\ehtray.exe [2005-08-05 64512]
"ftutil2"=ftutil2.dll,SetWriteCacheMode []
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-02-11 186904]
"DMAScheduler"=c:\Program Files\HP DigitalMedia Archive\DMAScheduler.exe [2006-04-13 90112]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2005-07-22 237568]
"PCDrProfiler"= []
"HPBootOp"=C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe [2006-02-15 249856]
"Kernel and Hardware Abstraction Layer"=C:\WINDOWS\KHALMNPR.EXE [2008-12-19 76304]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-08-20 150016]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-02-25 61440]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-04-30 17881088]
"USBDetector"=C:\USBStorage\USBDetector.exe [2003-04-01 53248]
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-05-25 198160]
"ISUSPM Startup"=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-07-27 221184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Software Informer"=C:\Program Files\Software Informer\softinfo.exe [2009-05-07 1839173]
"fsm"= []
"RoboForm"=C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2009-05-25 160592]
"Free Download Manager"=C:\Program Files\Free Download Manager\fdm.exe [2009-01-31 3399727]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Logitech Desktop Messenger.lnk]
C:\PROGRA~1\Logitech\DESKTO~1\8876480\Program\LOGITE~1.EXE [2009-02-23 67128]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Assistant de traduction IdiomaX.lnk - C:\Program Files\IdiomaX\Translation Assistant 4.0\TrasWord.exe
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-02-25 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\fichiers communs\logishrd\bluetooth\LBTWlgn.dll [2009-02-19 72208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2008-05-26 304128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WdfLoadGroup]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AOL 9.0\waol.exe"="C:\Program Files\AOL 9.0\waol.exe:*:Enabled:AOL France"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
======List of files/folders created in the last 1 months======
2009-06-02 14:16:29 ----D---- C:\rsit
2009-06-01 17:04:39 ----D---- C:\Avira rescue system update
2009-06-01 10:57:26 ----A---- C:\WINDOWS\ntbtlog.txt
2009-06-01 09:07:12 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Malwarebytes
2009-06-01 09:07:07 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-06-01 09:07:07 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\WS2Fix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\VCCLSID.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\VACFix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\swxcacls.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\swsc.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\swreg.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\SrchSTS.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\o4Patch.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\IEDFix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\IEDFix.C.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\dumphive.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\Agent.OMZ.Fix.exe
2009-06-01 09:03:49 ----A---- C:\WINDOWS\system32\404Fix.exe
2009-06-01 09:03:48 ----A---- C:\WINDOWS\system32\Process.exe
2009-05-31 10:31:32 ----D---- C:\WINDOWS\system32\Kaspersky Lab
2009-05-30 19:05:49 ----D---- C:\Program Files\xp-AntiSpy
2009-05-30 10:58:53 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\OfficeUpdate12
2009-05-30 10:54:46 ----A---- C:\WINDOWS\system32\mdimon.dll
2009-05-27 20:36:03 ----D---- C:\Medion
2009-05-26 19:39:52 ----A---- C:\UFantasy.ini
2009-05-26 19:34:04 ----D---- C:\Program Files\Unibrain
2009-05-26 19:33:20 ----D---- C:\Program Files\Intel Desktop Board
2009-05-26 19:29:01 ----D---- C:\HP LJ P4010 Series Printer
2009-05-26 19:24:15 ----D---- C:\USBStorage
2009-05-25 16:48:00 ----D---- C:\IntelPRO
2009-05-25 16:36:14 ----D---- C:\Program Files\ATI
2009-05-25 16:16:28 ----D---- C:\Program Files\Fichiers communs\xing shared
2009-05-25 15:43:51 ----D---- C:\Program Files\PC Drivers HeadQuarters
2009-05-25 15:43:51 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2009-05-25 15:41:47 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-05-25 15:29:29 ----D---- C:\Python25
2009-05-25 15:25:47 ----A---- C:\WINDOWS\system32\javaws.exe
2009-05-25 15:25:47 ----A---- C:\WINDOWS\system32\javaw.exe
2009-05-25 15:25:47 ----A---- C:\WINDOWS\system32\java.exe
2009-05-25 14:51:26 ----N---- C:\WINDOWS\system32\pxafs.dll
2009-05-25 14:51:00 ----D---- C:\Program Files\Fichiers communs\DivX Shared
2009-05-25 14:33:19 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Software Informer
2009-05-17 13:47:18 ----A---- C:\WINDOWS\system32\hpz3l4pi.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZisn12.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZipt12.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZipr12.dll
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZipm12.exe
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZinw12.exe
2009-05-17 13:37:33 ----A---- C:\WINDOWS\system32\HPZidr12.dll
2009-05-17 12:25:31 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Image Zone Express
2009-05-16 11:14:20 ----A---- C:\WINDOWS\zipinst.exe
2009-05-14 23:35:05 ----D---- C:\WINDOWS\system32\appmgmt
2009-05-14 23:12:50 ----HD---- C:\WINDOWS\system32\GroupPolicy
2009-05-14 12:34:56 ----A---- C:\WINDOWS\~DF7724.tmp
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Wint351.exe
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\VBAR332.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Vb5db.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\MSREPL35.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\MSJTER35.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\MSJINT35.DLL
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dzip32.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dunzip32.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dtcutil.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dtctrace.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Dtccm.dll
2009-05-14 12:20:18 ----A---- C:\WINDOWS\system32\Axdist.exe
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\MSXBSE35.DLL
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Msstkprp.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\MSRD2X35.DLL
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\MSJET35.DLL
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Dzactx.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Duzactx.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\Adme.dll
2009-05-14 12:20:17 ----A---- C:\WINDOWS\system32\actrpt.dll
2009-05-12 17:23:00 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Avira
2009-05-12 01:06:28 ----D---- C:\WINDOWS\system32\LogFiles
2009-05-12 01:06:15 ----D---- C:\Program Files\Avira
2009-05-12 00:51:59 ----A---- C:\WINDOWS\system32\LuResult.txt
2009-05-12 00:38:57 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\iolo
2009-05-11 23:36:17 ----A---- C:\WINDOWS\system32\BtCoreIf.dll
2009-05-11 23:36:13 ----A---- C:\WINDOWS\system32\KemXML.dll
2009-05-11 23:36:13 ----A---- C:\WINDOWS\system32\KemWnd.dll
2009-05-11 23:36:13 ----A---- C:\WINDOWS\system32\kemutb.dll
2009-05-11 23:36:12 ----A---- C:\WINDOWS\system32\KemUtil.dll
2009-05-11 23:34:07 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2009-05-11 23:31:29 ----D---- C:\Program Files\Atheros
2009-05-11 23:30:36 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-05-11 23:29:57 ----A---- C:\WINDOWS\system32\difxapi.dll
2009-05-11 23:27:30 ----A---- C:\WINDOWS\system32\CSVer.dll
2009-05-11 18:08:48 ----A---- C:\WINDOWS\system32\XceedZip.dll
2009-05-11 17:53:45 ----D---- C:\WINDOWS\ie8updates
2009-05-11 17:53:11 ----HDC---- C:\WINDOWS\ie8
2009-05-11 17:49:44 ----A---- C:\WINDOWS\system32\MRT.exe
2009-05-11 17:49:35 ----HDC---- C:\WINDOWS\$NtUninstallKB963027$
2009-05-11 17:49:29 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-05-11 17:49:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-05-11 17:49:19 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-05-11 17:49:08 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-05-11 17:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
2009-05-11 17:48:55 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-05-11 17:48:36 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$
2009-05-11 17:28:38 ----D---- C:\WINDOWS\Prefetch
2009-05-11 17:25:52 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2009-05-11 17:21:44 ----D---- C:\WINDOWS\system32\fr-fr
2009-05-11 17:21:44 ----D---- C:\WINDOWS\system32\fr
2009-05-11 17:21:43 ----D---- C:\WINDOWS\system32\bits
2009-05-11 17:02:10 ----A---- C:\WINDOWS\system32\xmllite.dll
2009-05-11 17:02:08 ----N---- C:\WINDOWS\system32\wmphoto.dll
2009-05-11 17:02:06 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-05-11 17:02:05 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2009-05-11 17:02:05 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2009-05-11 17:01:58 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-05-11 17:01:58 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-05-11 17:01:58 ----N---- C:\WINDOWS\system32\tsgqec.dll
2009-05-11 17:01:52 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2009-05-11 17:01:51 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2009-05-11 17:01:47 ----N---- C:\WINDOWS\system32\slserv.exe
2009-05-11 17:01:47 ----N---- C:\WINDOWS\system32\slrundll.exe
2009-05-11 17:01:47 ----N---- C:\WINDOWS\system32\slgen.dll
2009-05-11 17:01:46 ----N---- C:\WINDOWS\system32\slextspk.dll
2009-05-11 17:01:46 ----N---- C:\WINDOWS\system32\slcoinst.dll
2009-05-11 17:01:44 ----N---- C:\WINDOWS\system32\setupn.exe
2009-05-11 17:01:42 ----N---- C:\WINDOWS\system32\s3gnb.dll
2009-05-11 17:01:40 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2009-05-11 17:01:39 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-05-11 17:01:38 ----N---- C:\WINDOWS\system32\qutil.dll
2009-05-11 17:01:38 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-05-11 17:01:37 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-05-11 17:01:37 ----N---- C:\WINDOWS\system32\qagent.dll
2009-05-11 17:01:36 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2009-05-11 17:01:33 ----N---- C:\WINDOWS\system32\onex.dll
2009-05-11 17:01:30 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\napstat.exe
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-05-11 17:01:24 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2009-05-11 17:01:23 ----N---- C:\WINDOWS\system32\msxml6r.dll
2009-05-11 17:01:23 ----A---- C:\WINDOWS\system32\msxml6.dll
2009-05-11 17:01:21 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-05-11 17:01:21 ----N---- C:\WINDOWS\system32\mssha.dll
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-05-11 17:01:09 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-05-11 17:01:07 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2009-05-11 17:01:03 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-05-11 17:01:03 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-05-11 17:01:02 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-05-11 17:00:59 ----N---- C:\WINDOWS\system32\smtpapi.dll
2009-05-11 17:00:59 ----N---- C:\WINDOWS\system32\rwnh.dll
2009-05-11 17:00:57 ----N---- C:\WINDOWS\system32\comsdupd.exe
2009-05-11 17:00:53 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2009-05-11 17:00:48 ----A---- C:\WINDOWS\004136_.tmp
2009-05-11 17:00:47 ----N---- C:\WINDOWS\system32\faxpatch.exe
2009-05-11 17:00:46 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-05-11 17:00:46 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-05-11 17:00:45 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-05-11 17:00:42 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-05-11 17:00:41 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-05-11 17:00:41 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-05-11 17:00:40 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-05-11 17:00:38 ----N---- C:\WINDOWS\system32\credssp.dll
2009-05-11 17:00:32 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-05-11 17:00:32 ----N---- C:\WINDOWS\system32\azroles.dll
2009-05-11 17:00:31 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2009-05-11 17:00:30 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2009-05-11 17:00:30 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2009-05-11 17:00:24 ----N---- C:\WINDOWS\system32\aaclient.dll
2009-05-11 16:59:42 ----D---- C:\WINDOWS\system32\PreInstall
2009-05-11 16:39:18 ----RSHD---- C:\WINDOWS\system32\dllcache
2009-05-11 14:26:06 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-05-11 08:38:17 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\ErrorFix
2009-05-11 08:37:29 ----A---- C:\WINDOWS\oodcnt.INI
2009-05-11 08:36:10 ----SHD---- C:\cmdcons
2009-05-11 08:28:49 ----ASH---- C:\Documents and Settings\HP_Administrateur\Application Data\desktop.ini
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Macromedia
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Identities
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\DeepBurner
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Canneverbe_Limited
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\ATI
2009-05-11 08:26:55 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Adobe
2009-05-11 08:26:54 ----SD---- C:\Documents and Settings\HP_Administrateur\Application Data\Microsoft
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\WinRAR
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Windows Search
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Thunderbird
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Real
2009-05-11 08:26:54 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Mozilla
2009-05-11 08:11:08 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-05-10 08:37:15 ----SHD---- C:\found.001
2009-05-10 08:27:20 ----D---- C:\_OTMoveIt
2009-05-09 22:12:40 ----SHD---- C:\WINDOWS\CSC
2009-05-09 14:17:28 ----D---- C:\Program Files\OO Software
2009-05-09 09:27:28 ----D---- C:\Program Files\Astonsoft
2009-05-08 15:59:20 ----D---- C:\Program Files\iolo
2009-05-08 15:55:15 ----D---- C:\Documents and Settings\All Users\Application Data\iolo
======List of files/folders modified in the last 1 months======
2009-06-02 14:18:10 ----D---- C:\Program Files\Mozilla Firefox
2009-06-02 14:13:08 ----D---- C:\Program Files\Mozilla Thunderbird
2009-06-02 14:12:26 ----D---- C:\WINDOWS\Registration
2009-06-02 14:12:25 ----D---- C:\WINDOWS\Temp
2009-06-02 14:12:04 ----D---- C:\WINDOWS\system32\CatRoot2
2009-06-02 14:11:39 ----AD---- C:\WINDOWS
2009-06-02 07:41:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-06-02 07:38:54 ----D---- C:\Program Files\Google
2009-06-02 01:21:00 ----D---- C:\Program Files\netpass
2009-06-01 11:27:03 ----D---- C:\Downloads
2009-06-01 09:19:25 ----D---- C:\WINDOWS\Debug
2009-06-01 09:19:24 ----D---- C:\WINDOWS\Minidump
2009-06-01 09:07:09 ----D---- C:\WINDOWS\system32\drivers
2009-06-01 09:07:07 ----RD---- C:\Program Files
2009-06-01 09:03:49 ----D---- C:\WINDOWS\system32
2009-06-01 09:03:47 ----D---- C:\Program Files\Free Download Manager
2009-05-31 19:31:21 ----D---- C:\WINDOWS\system32\Restore
2009-05-31 10:31:33 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-05-31 10:31:31 ----HD---- C:\WINDOWS\inf
2009-05-30 11:31:19 ----SHD---- C:\WINDOWS\Installer
2009-05-30 11:31:15 ----HD---- C:\Config.Msi
2009-05-30 11:31:15 ----D---- C:\Program Files\MSECache
2009-05-30 11:21:17 ----RSD---- C:\WINDOWS\Fonts
2009-05-30 10:54:56 ----A---- C:\WINDOWS\ODBC.INI
2009-05-30 10:53:34 ----D---- C:\WINDOWS\SHELLNEW
2009-05-30 10:47:50 ----D---- C:\WINDOWS\system
2009-05-30 10:47:50 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-05-28 18:44:36 ----D---- C:\WINDOWS\system32\CatRoot
2009-05-28 18:35:05 ----D---- C:\WINDOWS\WinSxS
2009-05-28 18:33:10 ----HDC---- C:\WINDOWS\$NtUninstallKB959772_WM11$
2009-05-28 18:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2009-05-28 18:32:42 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2009-05-28 18:32:23 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2009-05-28 18:31:59 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2009-05-28 17:41:51 ----D---- C:\WINDOWS\Help
2009-05-27 20:34:55 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-05-26 19:33:28 ----D---- C:\WINDOWS\Downloaded Installations
2009-05-26 19:23:16 ----D---- C:\WINDOWS\system32\RTCOM
2009-05-25 16:35:47 ----D---- C:\Program Files\ATI Technologies
2009-05-25 16:17:25 ----A---- C:\WINDOWS\cdplayer.ini
2009-05-25 16:16:28 ----D---- C:\Program Files\Fichiers communs
2009-05-25 16:16:22 ----D---- C:\Program Files\Fichiers communs\Real
2009-05-25 16:16:19 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2009-05-25 16:16:11 ----A---- C:\WINDOWS\system32\pndx5032.dll
2009-05-25 16:16:11 ----A---- C:\WINDOWS\system32\pndx5016.dll
2009-05-25 16:16:08 ----A---- C:\WINDOWS\system32\pncrt.dll
2009-05-25 15:43:58 ----HD---- C:\Program Files\InstallShield Installation Information
2009-05-25 15:41:36 ----A---- C:\WINDOWS\win.ini
2009-05-25 15:41:28 ----D---- C:\Program Files\Windows Media Player
2009-05-25 15:41:24 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-05-25 15:40:47 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-05-25 15:25:47 ----D---- C:\Program Files\Java
2009-05-25 14:51:33 ----D---- C:\Program Files\DivX
2009-05-25 14:33:17 ----D---- C:\Program Files\Software Informer
2009-05-23 17:00:18 ----D---- C:\WINDOWS\system32\FxsTmp
2009-05-17 15:55:57 ----D---- C:\Documents and Settings\All Users\Application Data\SymplisIT
2009-05-17 13:37:33 ----D---- C:\Program Files\HP
2009-05-17 12:02:08 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-05-17 12:02:04 ----D---- C:\Program Files\Registry Mechanic
2009-05-16 09:19:21 ----D---- C:\WINDOWS\network diagnostic
2009-05-16 08:57:01 ----RASH---- C:\boot.ini
2009-05-16 08:57:01 ----A---- C:\WINDOWS\system.ini
2009-05-14 23:43:02 ----D---- C:\Program Files\GemMasterFrench
2009-05-14 23:12:58 ----D---- C:\Documents and Settings\HP_Administrateur\Application Data\Windows Desktop Search
2009-05-14 23:12:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-05-14 23:12:50 ----D---- C:\WINDOWS\system32\wbem
2009-05-14 23:12:45 ----HDC---- C:\WINDOWS\$NtUninstallKB940157$
2009-05-14 12:42:20 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2009-05-12 16:52:18 ----D---- C:\Program Files\Hewlett-Packard
2009-05-12 00:57:35 ----D---- C:\Program Files\Fichiers communs\Symantec Shared
2009-05-12 00:57:34 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2009-05-12 00:52:12 ----D---- C:\Program Files\CCleaner
2009-05-12 00:51:40 ----SD---- C:\WINDOWS\Tasks
2009-05-12 00:02:55 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2009-05-11 23:31:34 ----D---- C:\Documents and Settings\All Users\Application Data\Atheros
2009-05-11 23:28:57 ----D---- C:\Program Files\Intel
2009-05-11 17:55:38 ----D---- C:\WINDOWS\Media
2009-05-11 17:55:38 ----D---- C:\WINDOWS\AppPatch
2009-05-11 17:55:38 ----D---- C:\Program Files\Internet Explorer
2009-05-11 17:53:44 ----HD---- C:\WINDOWS\$hf_mig$
2009-05-11 17:48:48 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-05-11 17:48:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
2009-05-11 17:48:32 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-05-11 17:48:27 ----HDC---- C:\WINDOWS\$NtUninstallKB960715$
2009-05-11 17:48:22 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-05-11 17:48:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-05-11 17:48:10 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-05-11 17:48:04 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
2009-05-11 17:47:57 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-05-11 17:47:52 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2009-05-11 17:47:47 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2009-05-11 17:47:41 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-05-11 17:47:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2009-05-11 17:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-05-11 17:47:23 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-05-11 17:47:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-05-11 17:47:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-05-11 17:47:05 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-05-11 17:47:01 ----D---- C:\Program Files\Messenger
2009-05-11 17:47:00 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-05-11 17:46:54 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-05-11 17:46:47 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2009-05-11 17:46:33 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-05-11 17:46:26 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2009-05-11 17:46:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-05-11 17:46:11 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2009-05-11 17:45:57 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-05-11 17:45:49 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2009-05-11 17:44:37 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-05-11 17:27:49 ----D---- C:\WINDOWS\system32\Setup
2009-05-11 17:26:41 ----D---- C:\WINDOWS\security
2009-05-11 17:21:58 ----D---- C:\WINDOWS\system32\inetsrv
2009-05-11 17:21:57 ----D---- C:\WINDOWS\ime
2009-05-11 17:21:44 ----D---- C:\WINDOWS\system32\usmt
2009-05-11 17:21:43 ----D---- C:\WINDOWS\PeerNet
2009-05-11 17:21:43 ----D---- C:\Program Files\Movie Maker
2009-05-11 17:21:34 ----D---- C:\WINDOWS\system32\npp
2009-05-11 17:21:33 ----D---- C:\WINDOWS\msagent
2009-05-11 17:21:32 ----D---- C:\WINDOWS\srchasst
2009-05-11 17:21:30 ----D---- C:\Program Files\NetMeeting
2009-05-11 17:21:29 ----D---- C:\WINDOWS\system32\Com
2009-05-11 17:21:27 ----D---- C:\Program Files\Windows NT
2009-05-11 17:21:27 ----D---- C:\Program Files\Outlook Express
2009-05-11 17:21:26 ----D---- C:\Program Files\Fichiers communs\System
2009-05-11 17:21:19 ----D---- C:\WINDOWS\system32\oobe
2009-05-11 17:18:49 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-05-11 17:16:25 ----AD---- C:\WINDOWS\ehome
2009-05-11 16:59:42 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2009-05-11 16:53:46 ----D---- C:\I386
2009-05-11 16:51:51 ----RSD---- C:\WINDOWS\assembly
2009-05-11 16:51:51 ----RD---- C:\WINDOWS\Web
2009-05-11 16:51:51 ----RD---- C:\WINDOWS\Offline Web Pages
2009-05-11 14:26:12 ----D---- C:\WINDOWS\SoftwareDistribution
2009-05-11 13:47:58 ----HD---- C:\hp
2009-05-11 08:41:50 ----SHD---- C:\RECYCLER
2009-05-11 08:36:10 ----A---- C:\WINDOWS\UPGRADE.TXT
2009-05-11 08:36:03 ----D---- C:\WINDOWS\setup.pss
2009-05-11 08:33:46 ----AD---- C:\WINDOWS\system32\pcintro
2009-05-11 08:26:45 ----D---- C:\Documents and Settings
2009-05-11 08:22:43 ----RASH---- C:\BOOT.BAK
2009-05-11 01:09:43 ----D---- C:\tftpboot
2009-05-09 16:35:43 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2009-05-09 13:46:49 ----D---- C:\Program Files\DEFRAG
2009-05-08 15:48:52 ----D---- C:\Program Files\doc
2009-05-03 14:30:32 ----D---- C:\Driver Download
2009-05-03 12:11:00 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-05-03 09:00:34 ----D---- C:\Program Files\JkDefrag
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avfwot;avfwot; C:\WINDOWS\system32\DRIVERS\avfwot.sys [2009-03-24 97480]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ELhid;EL hid Service; \??\C:\WINDOWS\System32\Drivers\Elhid.sys []
R1 ELkbd;EL KB Service; \??\C:\WINDOWS\System32\Drivers\Elkbd.sys []
R1 ELmon;EL Monitor Service; \??\C:\WINDOWS\System32\Drivers\Elmon.sys []
R1 ELmou;EL Mouse Service; \??\C:\WINDOWS\System32\Drivers\Elmou.sys []
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-02-13 28376]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-03-24 55640]
R2 LBeepKE;LBeepKE; C:\WINDOWS\System32\Drivers\LBeepKE.sys [2008-12-19 10384]
R2 ubsbm;Unibrain 1394 SBM Driver; C:\WINDOWS\system32\DRIVERS\ubsbm.sys [2005-07-27 14080]
R2 ubumapi;Unibrain 1394 FireAPI Driver; C:\WINDOWS\system32\DRIVERS\ubumapi.sys [2005-07-27 36352]
R3 3xHybrid;3xHybrid service; C:\WINDOWS\system32\DRIVERS\3xHybrid.sys [2006-04-12 2829696]
R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2009-02-25 1344224]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-02-26 3565568]
R3 avfwim;AvFw Packet Filter Miniport; C:\WINDOWS\system32\DRIVERS\avfwim.sys [2009-02-24 69632]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2007-12-11 242320]
R3 ELacpi;ELacpi; C:\WINDOWS\system32\DRIVERS\ELacpi.sys [2006-05-09 9728]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2005-10-21 49920]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2005-10-21 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-05-04 5075968]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-12-19 35472]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-12-19 37392]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 ubohci;Unibrain 1394 OHCI Driver; C:\WINDOWS\system32\DRIVERS\ubohci.sys [2005-07-27 77056]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 MHNDRV;Pilote MHN; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MPE;Filtre BDA MPE; C:\WINDOWS\system32\DRIVERS\MPE.sys [2008-04-13 15232]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 Ps2;PS2; C:\WINDOWS\system32\DRIVERS\PS2.sys [2005-12-13 19072]
S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 WN5301;LIteon Wireless PCI Network Adapter Service; C:\WINDOWS\system32\DRIVERS\wn5301.sys [2005-10-05 468768]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirFirewallService;Avira Pare-feu; C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe [2009-03-24 388865]
R2 AntiVirMailService;Avira AntiVir MailGuard; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [2009-04-17 194817]
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-04-01 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-03-02 185089]
R2 AntiVirWebService;Avira AntiVir WebGuard; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [2009-02-12 432897]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-02-25 602112]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2005-12-15 237568]
R2 ehSched;Service de planification Media Center; C:\WINDOWS\eHome\ehSched.exe [2005-08-05 103424]
R2 ELService;Intel(R) Quick Resume technology; C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe [2006-06-01 180224]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2009-02-11 354840]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe [2006-06-21 49152]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-05 99328]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2009-02-25 593920]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
S3 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2009-03-03 33176]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-06-02 138168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Fichiers communs\logishrd\Bluetooth\LBTServ.exe [2009-02-19 121360]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\wmpnetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
-----------------EOF-----------------
salutations
Configuration: Windows XP Firefox 3.0.10
A voir également:
- PC bloqqué
- Downloader for pc - Télécharger - Téléchargement & Transfert
- Reinitialiser pc - Guide
- Forcer demarrage pc - Guide
- Temperature pc - Guide
- Pc lent - Guide
2 réponses
salut :
---> Désactive ton antivirus le temps de la manipulation car OTM est détecté comme une infection à tort.
---> Télécharge OTM (OldTimer) sur ton Bureau :
---> Double-clique sur OTM.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
explorer.exe
:services
:files
C:\Python25
C:\WINDOWS\~DF7724.tmp
C:\WINDOWS\system32\LuResult.txt
C:\WINDOWS\004136_.tmp
C:\found.*
:reg
[HKEY_CURRENT_USER\Software\Microsoft\Internet Connection Wizard]
"ShellNext"=""
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ftutil2"=-
"PCDrProfiler"=-
"HP Software Update"=-
"Adobe Reader Speed Launcher"=-
"RTHDCPL"=-
"TkBellExe"=-
"ISUSPM Startup"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=-
"fsm"=-
"RoboForm"=-
:commands
[purity]
[emptytemp]
[start explorer]
[reboot]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTM
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTM\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
ensuite :
Télécharge Ad-remover ( de C_XX ) sur ton bureau :
! Déconnecte toi et ferme toutes applications en cours !
Double clique sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut .
Double-clique sur le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .
Au menu principal choisis l'option Scan et tape sur [entrée] .
Laisse travailler l'outil et ne touche à rien ...
--> Poste le rapport qui apparait à la fin , sur le forum ...
( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )
Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
Aides en images (Installation)
Aides en images (Recherche)
---> Désactive ton antivirus le temps de la manipulation car OTM est détecté comme une infection à tort.
---> Télécharge OTM (OldTimer) sur ton Bureau :
---> Double-clique sur OTM.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
explorer.exe
:services
:files
C:\Python25
C:\WINDOWS\~DF7724.tmp
C:\WINDOWS\system32\LuResult.txt
C:\WINDOWS\004136_.tmp
C:\found.*
:reg
[HKEY_CURRENT_USER\Software\Microsoft\Internet Connection Wizard]
"ShellNext"=""
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ftutil2"=-
"PCDrProfiler"=-
"HP Software Update"=-
"Adobe Reader Speed Launcher"=-
"RTHDCPL"=-
"TkBellExe"=-
"ISUSPM Startup"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=-
"fsm"=-
"RoboForm"=-
:commands
[purity]
[emptytemp]
[start explorer]
[reboot]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTM
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTM\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
ensuite :
Télécharge Ad-remover ( de C_XX ) sur ton bureau :
! Déconnecte toi et ferme toutes applications en cours !
Double clique sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut .
Double-clique sur le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .
Au menu principal choisis l'option Scan et tape sur [entrée] .
Laisse travailler l'outil et ne touche à rien ...
--> Poste le rapport qui apparait à la fin , sur le forum ...
( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )
Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
Aides en images (Installation)
Aides en images (Recherche)