Virus?
gori
-
cddu33 Messages postés 1349 Statut Membre -
cddu33 Messages postés 1349 Statut Membre -
Bonjour,
J'ai des comportement assez bizarre de mon pc (reboot intempestif, erreur d'install du SP2...)
J'ai donc pensé a une infection de malware, mais après plusieurs scans (spybot et autre) j'ai toujours les même problèmes :(
Je viens de faire analyser le PC (c'est un HP Pavilion) par RSIT. Si quelqu'un voulais bien me dire si je suis infecté ou non, voici le log affiché par RSIT:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Emmanuelle at 2009-11-21 12:13:31
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 103 GB (71%) free of 145 GB
Total RAM: 2046 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:13:45, on 21/11/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Windows\System32\ICO.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Windows\System32\Pelmiced.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Emmanuelle\Desktop\RSIT.exe
C:\Users\Emmanuelle\Desktop\Emmanuelle.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/login.php?next=https%3A%2F%2Fwww.facebook.com%2Fhome.php%3Fref%3Dhome
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} (Module de délivrance de certificat MINEFI) - https://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
O16 - DPF: {22492231-AEF0-49FC-9180-CE8969AB1273} (F-Secure Online Scanner Launcher) - http://download.sp.f-secure.com/ols/f-secure-rtm/resources/fslauncher.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 10738 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-03 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2007-03-11 159744]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-02-12 174872]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-04-23 176128]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2007-02-13 159744]
"HP Health Check Scheduler"=C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2007-03-12 50696]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
"WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128]
"Mouse Suite 98 Daemon"=C:\Windows\system32\ICO.EXE [2006-11-03 49152]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-07-13 292128]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-11-03 149280]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
""= []
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-09-15 81000]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-06-25 13543968]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-06-25 92704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-07 44128]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-19 1233920]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
BTTray.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Emmanuelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{001dea9a-e20c-11dd-b4e2-001a6bf7cfa8}]
shell\AutoRun\command - F:\Imageviewer.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2009-11-21 09:24:09 ----D---- C:\Users\Emmanuelle\AppData\Roaming\Roxio
2009-11-21 00:47:06 ----D---- C:\rsit
2009-11-21 00:47:06 ----D---- C:\Program Files\trend micro
2009-11-21 00:28:25 ----D---- C:\Users\Emmanuelle\AppData\Roaming\Uniblue
2009-11-20 22:26:25 ----D---- C:\Program Files\HD Tune Pro
2009-11-20 20:56:26 ----A---- C:\UsbFix.txt
2009-11-20 20:55:51 ----D---- C:\UsbFix
2009-11-20 20:38:05 ----D---- C:\Program Files\DIFX
2009-11-20 20:37:05 ----D---- C:\Program Files\Broadcom
2009-11-20 12:09:17 ----A---- C:\Windows\system32\ztvunrar36.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\ztvunace26.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\ztvcabinet.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\UNRAR3.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\unacev2.dll
2009-11-20 12:09:15 ----D---- C:\ProgramData\Simply Super Software
2009-11-20 11:05:40 ----D---- C:\Users\Emmanuelle\AppData\Roaming\Malwarebytes
2009-11-20 11:05:35 ----D---- C:\ProgramData\Malwarebytes
2009-11-20 10:27:04 ----HDC---- C:\ProgramData\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
2009-11-20 09:40:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-11-20 09:40:19 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-11-20 09:25:50 ----D---- C:\Program Files\CCleaner
2009-11-18 19:19:30 ----D---- C:\ProgramData\NVIDIA
2009-11-18 19:14:05 ----D---- C:\Program Files\Microsoft Silverlight
2009-11-15 19:05:46 ----D---- C:\Windows\system32\Adobe
2009-11-13 08:23:17 ----A---- C:\Windows\system32\connect.dll
2009-11-13 02:37:59 ----A---- C:\Windows\system32\msshooks.dll
2009-11-13 02:37:59 ----A---- C:\Windows\system32\msscb.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-11-13 02:37:56 ----A---- C:\Windows\system32\propsys.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\propdefs.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\msstrc.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\mssprxy.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\mssitlb.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\msshsq.dll
2009-11-13 02:37:55 ----A---- C:\Windows\system32\thawbrkr.dll
2009-11-13 02:37:55 ----A---- C:\Windows\system32\srchadmin.dll
2009-11-13 02:37:55 ----A---- C:\Windows\system32\korwbrkr.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\xmlfilter.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\wsepno.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\rtffilt.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\offfilt.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\nlhtml.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\msscntrs.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\mimefilt.dll
2009-11-13 02:37:53 ----A---- C:\Windows\system32\chsbrkr.dll
2009-11-13 02:37:52 ----A---- C:\Windows\system32\tquery.dll
2009-11-13 02:37:52 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-11-13 02:37:52 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-11-13 02:37:52 ----A---- C:\Windows\system32\chtbrkr.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssvp.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssrch.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssphtb.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssph.dll
2009-11-13 01:42:39 ----A---- C:\Windows\system32\EncDec.dll
2009-11-13 01:42:31 ----A---- C:\Windows\system32\psisdecd.dll
2009-11-13 01:42:17 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-13 01:42:10 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-13 01:42:09 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-13 01:42:09 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-11-13 01:42:07 ----A---- C:\Windows\system32\Faultrep.dll
2009-11-13 01:42:06 ----A---- C:\Windows\system32\wersvc.dll
2009-11-13 01:40:28 ----A---- C:\Windows\system32\Apphlpdm.dll
2009-11-13 01:40:23 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2009-11-13 01:39:41 ----A---- C:\Windows\system32\wmp.dll
2009-11-13 01:39:12 ----A---- C:\Windows\system32\unregmp2.exe
2009-11-13 01:38:49 ----A---- C:\Windows\system32\wmploc.DLL
2009-11-13 01:03:37 ----D---- C:\ProgramData\F-Secure
2009-11-13 00:58:54 ----A---- C:\Windows\system32\wups2.dll
2009-11-13 00:58:53 ----A---- C:\Windows\system32\wucltux.dll
2009-11-13 00:58:53 ----A---- C:\Windows\system32\wuaueng.dll
2009-11-13 00:58:53 ----A---- C:\Windows\system32\wuauclt.exe
2009-11-13 00:58:21 ----A---- C:\Windows\system32\wups.dll
2009-11-13 00:58:21 ----A---- C:\Windows\system32\wudriver.dll
2009-11-13 00:58:21 ----A---- C:\Windows\system32\wuapi.dll
2009-11-13 00:58:15 ----A---- C:\Windows\system32\wuwebv.dll
2009-11-13 00:58:15 ----A---- C:\Windows\system32\wuapp.exe
2009-11-12 22:41:23 ----A---- C:\Windows\system32\aswBoot.exe
2009-11-12 15:41:29 ----D---- C:\53aed45182c4f88af4c664fc
2009-11-12 15:10:17 ----D---- C:\2d23c09913f13fa3f7af3172b2fd
2009-11-12 14:09:49 ----D---- C:\Program Files\RefreshIE2
2009-11-12 14:09:43 ----N---- C:\Windows\Setup1.exe
2009-11-12 14:09:42 ----A---- C:\Windows\ST6UNST.EXE
2009-11-11 10:43:56 ----A---- C:\Windows\system32\WSDApi.dll
2009-11-04 06:23:54 ----A---- C:\Windows\system32\mshtml.dll
2009-11-03 12:58:57 ----A---- C:\Windows\system32\javaws.exe
2009-11-03 12:58:57 ----A---- C:\Windows\system32\javaw.exe
2009-11-03 12:58:57 ----A---- C:\Windows\system32\java.exe
2009-11-03 12:58:57 ----A---- C:\Windows\system32\deploytk.dll
2009-10-16 17:54:48 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-16 17:54:36 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-10-16 17:54:33 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-10-16 17:54:19 ----A---- C:\Windows\system32\ieframe.dll
2009-10-16 17:54:18 ----A---- C:\Windows\system32\iertutil.dll
2009-10-16 17:54:17 ----A---- C:\Windows\system32\wininet.dll
2009-10-16 17:54:17 ----A---- C:\Windows\system32\urlmon.dll
2009-10-16 17:54:16 ----A---- C:\Windows\system32\occache.dll
2009-10-16 17:54:16 ----A---- C:\Windows\system32\msfeeds.dll
2009-10-16 17:54:16 ----A---- C:\Windows\system32\iedkcs32.dll
2009-10-16 17:54:15 ----A---- C:\Windows\system32\ieui.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\msfeedssync.exe
2009-10-16 17:54:14 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\jsproxy.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\ieUnatt.exe
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iesysprep.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iesetup.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iernonce.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iepeers.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\ie4uinit.exe
2009-10-16 17:54:10 ----A---- C:\Windows\system32\msasn1.dll
2009-10-16 17:52:56 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-10-09 06:10:34 ----D---- C:\Users\Emmanuelle\AppData\Roaming\muvee Technologies
2009-10-09 06:10:33 ----D---- C:\ProgramData\muvee Technologies
2009-10-09 06:10:22 ----AD---- C:\ProgramData\TEMP
2009-10-02 18:46:40 ----N---- C:\Windows\system32\MpSigStub.exe
2009-09-08 18:12:31 ----A---- C:\Windows\system32\wlansvc.dll
2009-09-08 18:12:31 ----A---- C:\Windows\system32\wlansec.dll
2009-09-08 18:12:31 ----A---- C:\Windows\system32\wlanmsm.dll
2009-09-08 18:12:30 ----A---- C:\Windows\system32\L2SecHC.dll
2009-09-08 18:12:12 ----A---- C:\Windows\system32\jscript.dll
2009-09-08 18:11:51 ----A---- C:\Windows\system32\netiohlp.dll
2009-09-08 18:11:50 ----A---- C:\Windows\system32\TCPSVCS.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\ROUTE.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\NETSTAT.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\MRINFO.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\HOSTNAME.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\finger.exe
2009-09-08 18:11:50 ----A---- C:\Windows\system32\ARP.EXE
2009-09-08 18:11:49 ----A---- C:\Windows\system32\netevent.dll
2009-09-08 18:11:09 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-09-08 18:11:09 ----A---- C:\Windows\system32\mf.dll
2009-08-31 21:59:12 ----D---- C:\Users\Emmanuelle\AppData\Roaming\HpUpdate
2009-08-31 21:58:52 ----D---- C:\Windows\Hewlett-Packard
2009-08-27 10:07:10 ----D---- C:\72f7b9b8ea6db14ee54922
2009-08-27 08:52:48 ----D---- C:\Windows\CheckSur
2009-08-27 07:52:48 ----D---- C:\Windows\system32\EventProviders
2009-08-27 07:37:24 ----D---- C:\Program Files\Apple Software Update
2009-08-27 07:36:36 ----D---- C:\Program Files\iPod
2009-08-27 07:36:33 ----D---- C:\Program Files\iTunes
2009-08-26 16:56:36 ----D---- C:\ProgramData\Office Genuine Advantage
2009-08-26 16:40:32 ----A---- C:\Windows\system32\msls31.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\mshtmler.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\mshtmled.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\icardie.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\admparse.dll
2009-08-26 16:40:31 ----A---- C:\Windows\system32\ieakeng.dll
2009-08-26 16:40:31 ----A---- C:\Windows\system32\corpol.dll
2009-08-26 16:40:30 ----A---- C:\Windows\system32\imgutil.dll
2009-08-26 16:40:30 ----A---- C:\Windows\system32\dxtrans.dll
2009-08-26 16:40:30 ----A---- C:\Windows\system32\dxtmsft.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\webcheck.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\msrating.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\licmgr10.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\inseng.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\ieaksie.dll
2009-08-26 16:40:28 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-08-26 16:40:28 ----A---- C:\Windows\system32\wextract.exe
2009-08-26 16:40:28 ----A---- C:\Windows\system32\mstime.dll
2009-08-26 16:40:28 ----A---- C:\Windows\system32\ieakui.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\vbscript.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\pngfilt.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\ieapfltr.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\advpack.dll
2009-08-26 16:40:26 ----A---- C:\Windows\system32\url.dll
2009-08-26 16:40:24 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\SetDepNx.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\PDMSetup.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\mshta.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\iexpress.exe
2009-08-26 16:24:28 ----A---- C:\Windows\system32\kerberos.dll
2009-08-26 16:24:27 ----A---- C:\Windows\system32\wdigest.dll
2009-08-26 16:24:26 ----A---- C:\Windows\system32\schannel.dll
2009-08-26 16:24:26 ----A---- C:\Windows\system32\lsasrv.dll
2009-08-26 16:24:24 ----A---- C:\Windows\system32\secur32.dll
2009-08-26 16:24:24 ----A---- C:\Windows\system32\lsass.exe
2009-08-26 15:17:21 ----A---- C:\Windows\system32\tzres.dll
2009-08-25 07:48:22 ----A---- C:\Windows\system32\infocardapi.dll
2009-08-25 07:48:21 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-08-25 07:48:19 ----A---- C:\Windows\system32\icardres.dll
2009-08-25 07:48:19 ----A---- C:\Windows\system32\icardagt.exe
2009-08-25 07:48:18 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-08-25 07:48:14 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-08-25 07:48:07 ----A---- C:\Windows\system32\PresentationHost.exe
2009-08-25 07:37:28 ----A---- C:\Windows\system32\dfshim.dll
2009-08-25 07:37:23 ----A---- C:\Windows\system32\mscoree.dll
2009-08-25 07:37:21 ----A---- C:\Windows\system32\netfxperf.dll
2009-08-25 07:37:02 ----A---- C:\Windows\system32\mscorier.dll
2009-08-25 07:36:53 ----A---- C:\Windows\system32\mscories.dll
2009-08-24 20:00:00 ----A---- C:\Windows\system32\atl.dll
2009-08-24 19:59:56 ----A---- C:\Windows\system32\wkssvc.dll
2009-08-24 19:59:52 ----A---- C:\Windows\system32\mstscax.dll
2009-08-24 19:59:49 ----A---- C:\Windows\system32\avifil32.dll
2009-08-24 19:59:35 ----A---- C:\Windows\system32\wmpdxm.dll
2009-08-24 19:59:34 ----A---- C:\Windows\system32\spwmp.dll
2009-08-24 19:59:32 ----A---- C:\Windows\system32\dxmasf.dll
======List of files/folders modified in the last 3 months======
2009-11-21 12:13:39 ----D---- C:\Windows\Temp
2009-11-21 11:58:35 ----D---- C:\Windows\SMINST
2009-11-21 11:47:33 ----D---- C:\Windows\System32
2009-11-21 11:47:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-11-21 11:47:32 ----D---- C:\Windows\inf
2009-11-21 09:24:30 ----D---- C:\ProgramData\Sonic
2009-11-21 01:53:23 ----SHD---- C:\System Volume Information
2009-11-21 00:47:06 ----RD---- C:\Program Files
2009-11-21 00:38:30 ----D---- C:\Windows
2009-11-21 00:35:21 ----SHD---- C:\Windows\Installer
2009-11-21 00:20:50 ----D---- C:\Windows\system32\drivers
2009-11-21 00:18:28 ----D---- C:\Program Files\CONEXANT
2009-11-21 00:18:10 ----D---- C:\Windows\system32\catroot
2009-11-21 00:09:02 ----D---- C:\Windows\Logs
2009-11-20 23:27:58 ----D---- C:\Windows\system32\Tasks
2009-11-20 21:04:58 ----D---- C:\Windows\system32\catroot2
2009-11-20 20:42:28 ----D---- C:\Windows\Prefetch
2009-11-20 20:38:02 ----DC---- C:\Windows\system32\DRVSTORE
2009-11-20 17:54:34 ----D---- C:\Program Files\Intel
2009-11-20 12:34:34 ----D---- C:\Program Files\Common Files
2009-11-20 12:12:07 ----HD---- C:\ProgramData
2009-11-20 09:31:53 ----D---- C:\Windows\Minidump
2009-11-20 09:31:53 ----D---- C:\Windows\Debug
2009-11-18 20:04:29 ----D---- C:\Windows\rescache
2009-11-18 19:14:56 ----D---- C:\Windows\winsxs
2009-11-18 19:13:52 ----D---- C:\Program Files\Common Files\microsoft shared
2009-11-18 19:13:41 ----D---- C:\Program Files\Microsoft
2009-11-15 19:44:00 ----SD---- C:\Windows\Downloaded Program Files
2009-11-13 08:53:37 ----D---- C:\Windows\Microsoft.NET
2009-11-13 08:52:58 ----RSD---- C:\Windows\assembly
2009-11-13 08:25:29 ----D---- C:\ProgramData\Microsoft Help
2009-11-13 08:25:17 ----D---- C:\Windows\ehome
2009-11-13 08:24:26 ----D---- C:\Program Files\Windows Mail
2009-11-13 04:43:23 ----D---- C:\Windows\system32\fr-FR
2009-11-13 04:43:23 ----D---- C:\Windows\PolicyDefinitions
2009-11-13 04:43:19 ----D---- C:\Program Files\Internet Explorer
2009-11-13 04:43:18 ----D---- C:\Windows\AppPatch
2009-11-13 04:43:17 ----D---- C:\Program Files\Windows Media Player
2009-11-08 18:39:32 ----SD---- C:\ProgramData\Microsoft
2009-11-05 18:36:21 ----A---- C:\Windows\system32\mrt.exe
2009-11-03 17:03:56 ----D---- C:\Windows\system32\config
2009-11-03 17:03:52 ----D---- C:\Windows\Tasks
2009-11-03 17:03:51 ----D---- C:\Windows\system32\wbem
2009-11-03 17:03:51 ----D---- C:\Windows\system32\Msdtc
2009-11-03 17:03:51 ----D---- C:\Windows\registration
2009-11-03 16:59:57 ----D---- C:\Windows\system32\LogFiles
2009-11-03 12:58:04 ----D---- C:\Program Files\Java
2009-10-17 02:21:00 ----D---- C:\Windows\system32\migration
2009-10-17 02:07:26 ----D---- C:\Program Files\Microsoft Works
2009-08-31 21:59:37 ----D---- C:\Program Files\HP
2009-08-27 08:52:23 ----D---- C:\Windows\SoftwareDistribution
2009-08-27 07:36:35 ----D---- C:\Program Files\Common Files\Apple
2009-08-26 16:50:39 ----D---- C:\Windows\system32\en-US
2009-08-26 16:38:53 ----D---- C:\Windows\system32\zh-TW
2009-08-26 16:38:53 ----D---- C:\Windows\system32\zh-HK
2009-08-26 16:38:53 ----D---- C:\Windows\system32\tr-TR
2009-08-26 16:38:53 ----D---- C:\Windows\system32\sv-SE
2009-08-26 16:38:53 ----D---- C:\Windows\system32\pt-BR
2009-08-26 16:38:53 ----D---- C:\Windows\system32\nl-NL
2009-08-26 16:38:53 ----D---- C:\Windows\system32\nb-NO
2009-08-26 16:38:53 ----D---- C:\Windows\system32\ko-KR
2009-08-26 16:38:53 ----D---- C:\Windows\system32\it-IT
2009-08-26 16:38:53 ----D---- C:\Windows\system32\he-IL
2009-08-26 16:38:53 ----D---- C:\Windows\system32\fi-FI
2009-08-26 16:38:52 ----D---- C:\Windows\system32\es-ES
2009-08-26 16:38:52 ----D---- C:\Windows\system32\el-GR
2009-08-26 16:38:52 ----D---- C:\Windows\system32\de-DE
2009-08-26 16:38:52 ----D---- C:\Windows\system32\da-DK
2009-08-26 16:38:52 ----D---- C:\Windows\system32\ar-SA
2009-08-26 16:37:23 ----RSD---- C:\Windows\Fonts
2009-08-26 16:17:59 ----D---- C:\Program Files\Common Files\Symantec Shared
2009-08-25 17:53:23 ----D---- C:\Windows\system32\XPSViewer
2009-08-24 21:44:54 ----D---- C:\Windows\system32\WDI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-09-15 23152]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-09-15 52368]
R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-11-30 8192]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-09-15 53328]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-21 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2007-04-18 141312]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-08-28 146560]
R3 BthEnum;Service d'énumérateur Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-01-19 19456]
R3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
R3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2008-04-29 29184]
R3 btwaudio;Périphérique audio Bluetooth; C:\Windows\system32\drivers\btwaudio.sys [2007-01-02 78128]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-01-02 80688]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-01-02 16560]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-03-19 23400]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-06-25 7534720]
R3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-19 49664]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]
R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496]
S3 BCM43XV;Pilote de la carte réseau extensible Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BTHPORT;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2008-04-29 220160]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 E100B;Pilote de carte Intel (R) PRO; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt []
S3 fbxusb;Carte réseau virtuelle FreeBox USB; C:\Windows\system32\DRIVERS\fbxusb32.sys [2004-10-20 21344]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-04-30 160768]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\Windows\system32\DRIVERS\HPZius12.sys [2004-03-18 21744]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw4v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-03-01 2216448]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-09-15 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-09-15 138680]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-04-23 262243]
R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2007-04-23 106593]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-14 62984]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-02-12 355096]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-06-25 196608]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-03-30 1533808]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-09-15 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-09-15 352920]
R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-07-13 542496]
S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-01-09 110592]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-07-31 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe []
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-02-17 74656]
-----------------EOF-----------------
J'ai des comportement assez bizarre de mon pc (reboot intempestif, erreur d'install du SP2...)
J'ai donc pensé a une infection de malware, mais après plusieurs scans (spybot et autre) j'ai toujours les même problèmes :(
Je viens de faire analyser le PC (c'est un HP Pavilion) par RSIT. Si quelqu'un voulais bien me dire si je suis infecté ou non, voici le log affiché par RSIT:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Emmanuelle at 2009-11-21 12:13:31
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 103 GB (71%) free of 145 GB
Total RAM: 2046 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:13:45, on 21/11/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Windows\System32\ICO.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Windows\System32\Pelmiced.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Emmanuelle\Desktop\RSIT.exe
C:\Users\Emmanuelle\Desktop\Emmanuelle.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/login.php?next=https%3A%2F%2Fwww.facebook.com%2Fhome.php%3Fref%3Dhome
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} (Module de délivrance de certificat MINEFI) - https://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
O16 - DPF: {22492231-AEF0-49FC-9180-CE8969AB1273} (F-Secure Online Scanner Launcher) - http://download.sp.f-secure.com/ols/f-secure-rtm/resources/fslauncher.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 10738 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-11-03 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2007-03-11 159744]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-02-12 174872]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-04-23 176128]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2007-02-13 159744]
"HP Health Check Scheduler"=C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2007-03-12 50696]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
"WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128]
"Mouse Suite 98 Daemon"=C:\Windows\system32\ICO.EXE [2006-11-03 49152]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-07-13 292128]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-11-03 149280]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
""= []
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-09-15 81000]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-06-25 13543968]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-06-25 92704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-07 44128]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-19 1233920]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
BTTray.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Users\Emmanuelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{001dea9a-e20c-11dd-b4e2-001a6bf7cfa8}]
shell\AutoRun\command - F:\Imageviewer.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2009-11-21 09:24:09 ----D---- C:\Users\Emmanuelle\AppData\Roaming\Roxio
2009-11-21 00:47:06 ----D---- C:\rsit
2009-11-21 00:47:06 ----D---- C:\Program Files\trend micro
2009-11-21 00:28:25 ----D---- C:\Users\Emmanuelle\AppData\Roaming\Uniblue
2009-11-20 22:26:25 ----D---- C:\Program Files\HD Tune Pro
2009-11-20 20:56:26 ----A---- C:\UsbFix.txt
2009-11-20 20:55:51 ----D---- C:\UsbFix
2009-11-20 20:38:05 ----D---- C:\Program Files\DIFX
2009-11-20 20:37:05 ----D---- C:\Program Files\Broadcom
2009-11-20 12:09:17 ----A---- C:\Windows\system32\ztvunrar36.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\ztvunace26.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\ztvcabinet.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\UNRAR3.dll
2009-11-20 12:09:17 ----A---- C:\Windows\system32\unacev2.dll
2009-11-20 12:09:15 ----D---- C:\ProgramData\Simply Super Software
2009-11-20 11:05:40 ----D---- C:\Users\Emmanuelle\AppData\Roaming\Malwarebytes
2009-11-20 11:05:35 ----D---- C:\ProgramData\Malwarebytes
2009-11-20 10:27:04 ----HDC---- C:\ProgramData\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6}
2009-11-20 09:40:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-11-20 09:40:19 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-11-20 09:25:50 ----D---- C:\Program Files\CCleaner
2009-11-18 19:19:30 ----D---- C:\ProgramData\NVIDIA
2009-11-18 19:14:05 ----D---- C:\Program Files\Microsoft Silverlight
2009-11-15 19:05:46 ----D---- C:\Windows\system32\Adobe
2009-11-13 08:23:17 ----A---- C:\Windows\system32\connect.dll
2009-11-13 02:37:59 ----A---- C:\Windows\system32\msshooks.dll
2009-11-13 02:37:59 ----A---- C:\Windows\system32\msscb.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-11-13 02:37:56 ----A---- C:\Windows\system32\propsys.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\propdefs.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\msstrc.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\mssprxy.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\mssitlb.dll
2009-11-13 02:37:56 ----A---- C:\Windows\system32\msshsq.dll
2009-11-13 02:37:55 ----A---- C:\Windows\system32\thawbrkr.dll
2009-11-13 02:37:55 ----A---- C:\Windows\system32\srchadmin.dll
2009-11-13 02:37:55 ----A---- C:\Windows\system32\korwbrkr.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\xmlfilter.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\wsepno.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\rtffilt.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\offfilt.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\nlhtml.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\msscntrs.dll
2009-11-13 02:37:54 ----A---- C:\Windows\system32\mimefilt.dll
2009-11-13 02:37:53 ----A---- C:\Windows\system32\chsbrkr.dll
2009-11-13 02:37:52 ----A---- C:\Windows\system32\tquery.dll
2009-11-13 02:37:52 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-11-13 02:37:52 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-11-13 02:37:52 ----A---- C:\Windows\system32\chtbrkr.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssvp.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssrch.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssphtb.dll
2009-11-13 02:37:51 ----A---- C:\Windows\system32\mssph.dll
2009-11-13 01:42:39 ----A---- C:\Windows\system32\EncDec.dll
2009-11-13 01:42:31 ----A---- C:\Windows\system32\psisdecd.dll
2009-11-13 01:42:17 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-13 01:42:10 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-13 01:42:09 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-13 01:42:09 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-11-13 01:42:07 ----A---- C:\Windows\system32\Faultrep.dll
2009-11-13 01:42:06 ----A---- C:\Windows\system32\wersvc.dll
2009-11-13 01:40:28 ----A---- C:\Windows\system32\Apphlpdm.dll
2009-11-13 01:40:23 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2009-11-13 01:39:41 ----A---- C:\Windows\system32\wmp.dll
2009-11-13 01:39:12 ----A---- C:\Windows\system32\unregmp2.exe
2009-11-13 01:38:49 ----A---- C:\Windows\system32\wmploc.DLL
2009-11-13 01:03:37 ----D---- C:\ProgramData\F-Secure
2009-11-13 00:58:54 ----A---- C:\Windows\system32\wups2.dll
2009-11-13 00:58:53 ----A---- C:\Windows\system32\wucltux.dll
2009-11-13 00:58:53 ----A---- C:\Windows\system32\wuaueng.dll
2009-11-13 00:58:53 ----A---- C:\Windows\system32\wuauclt.exe
2009-11-13 00:58:21 ----A---- C:\Windows\system32\wups.dll
2009-11-13 00:58:21 ----A---- C:\Windows\system32\wudriver.dll
2009-11-13 00:58:21 ----A---- C:\Windows\system32\wuapi.dll
2009-11-13 00:58:15 ----A---- C:\Windows\system32\wuwebv.dll
2009-11-13 00:58:15 ----A---- C:\Windows\system32\wuapp.exe
2009-11-12 22:41:23 ----A---- C:\Windows\system32\aswBoot.exe
2009-11-12 15:41:29 ----D---- C:\53aed45182c4f88af4c664fc
2009-11-12 15:10:17 ----D---- C:\2d23c09913f13fa3f7af3172b2fd
2009-11-12 14:09:49 ----D---- C:\Program Files\RefreshIE2
2009-11-12 14:09:43 ----N---- C:\Windows\Setup1.exe
2009-11-12 14:09:42 ----A---- C:\Windows\ST6UNST.EXE
2009-11-11 10:43:56 ----A---- C:\Windows\system32\WSDApi.dll
2009-11-04 06:23:54 ----A---- C:\Windows\system32\mshtml.dll
2009-11-03 12:58:57 ----A---- C:\Windows\system32\javaws.exe
2009-11-03 12:58:57 ----A---- C:\Windows\system32\javaw.exe
2009-11-03 12:58:57 ----A---- C:\Windows\system32\java.exe
2009-11-03 12:58:57 ----A---- C:\Windows\system32\deploytk.dll
2009-10-16 17:54:48 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-16 17:54:36 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-10-16 17:54:33 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-10-16 17:54:19 ----A---- C:\Windows\system32\ieframe.dll
2009-10-16 17:54:18 ----A---- C:\Windows\system32\iertutil.dll
2009-10-16 17:54:17 ----A---- C:\Windows\system32\wininet.dll
2009-10-16 17:54:17 ----A---- C:\Windows\system32\urlmon.dll
2009-10-16 17:54:16 ----A---- C:\Windows\system32\occache.dll
2009-10-16 17:54:16 ----A---- C:\Windows\system32\msfeeds.dll
2009-10-16 17:54:16 ----A---- C:\Windows\system32\iedkcs32.dll
2009-10-16 17:54:15 ----A---- C:\Windows\system32\ieui.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\msfeedssync.exe
2009-10-16 17:54:14 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\jsproxy.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\ieUnatt.exe
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iesysprep.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iesetup.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iernonce.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\iepeers.dll
2009-10-16 17:54:14 ----A---- C:\Windows\system32\ie4uinit.exe
2009-10-16 17:54:10 ----A---- C:\Windows\system32\msasn1.dll
2009-10-16 17:52:56 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-10-09 06:10:34 ----D---- C:\Users\Emmanuelle\AppData\Roaming\muvee Technologies
2009-10-09 06:10:33 ----D---- C:\ProgramData\muvee Technologies
2009-10-09 06:10:22 ----AD---- C:\ProgramData\TEMP
2009-10-02 18:46:40 ----N---- C:\Windows\system32\MpSigStub.exe
2009-09-08 18:12:31 ----A---- C:\Windows\system32\wlansvc.dll
2009-09-08 18:12:31 ----A---- C:\Windows\system32\wlansec.dll
2009-09-08 18:12:31 ----A---- C:\Windows\system32\wlanmsm.dll
2009-09-08 18:12:30 ----A---- C:\Windows\system32\L2SecHC.dll
2009-09-08 18:12:12 ----A---- C:\Windows\system32\jscript.dll
2009-09-08 18:11:51 ----A---- C:\Windows\system32\netiohlp.dll
2009-09-08 18:11:50 ----A---- C:\Windows\system32\TCPSVCS.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\ROUTE.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\NETSTAT.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\MRINFO.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\HOSTNAME.EXE
2009-09-08 18:11:50 ----A---- C:\Windows\system32\finger.exe
2009-09-08 18:11:50 ----A---- C:\Windows\system32\ARP.EXE
2009-09-08 18:11:49 ----A---- C:\Windows\system32\netevent.dll
2009-09-08 18:11:09 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-09-08 18:11:09 ----A---- C:\Windows\system32\mf.dll
2009-08-31 21:59:12 ----D---- C:\Users\Emmanuelle\AppData\Roaming\HpUpdate
2009-08-31 21:58:52 ----D---- C:\Windows\Hewlett-Packard
2009-08-27 10:07:10 ----D---- C:\72f7b9b8ea6db14ee54922
2009-08-27 08:52:48 ----D---- C:\Windows\CheckSur
2009-08-27 07:52:48 ----D---- C:\Windows\system32\EventProviders
2009-08-27 07:37:24 ----D---- C:\Program Files\Apple Software Update
2009-08-27 07:36:36 ----D---- C:\Program Files\iPod
2009-08-27 07:36:33 ----D---- C:\Program Files\iTunes
2009-08-26 16:56:36 ----D---- C:\ProgramData\Office Genuine Advantage
2009-08-26 16:40:32 ----A---- C:\Windows\system32\msls31.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\mshtmler.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\mshtmled.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\icardie.dll
2009-08-26 16:40:32 ----A---- C:\Windows\system32\admparse.dll
2009-08-26 16:40:31 ----A---- C:\Windows\system32\ieakeng.dll
2009-08-26 16:40:31 ----A---- C:\Windows\system32\corpol.dll
2009-08-26 16:40:30 ----A---- C:\Windows\system32\imgutil.dll
2009-08-26 16:40:30 ----A---- C:\Windows\system32\dxtrans.dll
2009-08-26 16:40:30 ----A---- C:\Windows\system32\dxtmsft.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\webcheck.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\msrating.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\licmgr10.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\inseng.dll
2009-08-26 16:40:29 ----A---- C:\Windows\system32\ieaksie.dll
2009-08-26 16:40:28 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-08-26 16:40:28 ----A---- C:\Windows\system32\wextract.exe
2009-08-26 16:40:28 ----A---- C:\Windows\system32\mstime.dll
2009-08-26 16:40:28 ----A---- C:\Windows\system32\ieakui.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\vbscript.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\pngfilt.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\ieapfltr.dll
2009-08-26 16:40:27 ----A---- C:\Windows\system32\advpack.dll
2009-08-26 16:40:26 ----A---- C:\Windows\system32\url.dll
2009-08-26 16:40:24 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\SetDepNx.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\PDMSetup.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\mshta.exe
2009-08-26 16:40:24 ----A---- C:\Windows\system32\iexpress.exe
2009-08-26 16:24:28 ----A---- C:\Windows\system32\kerberos.dll
2009-08-26 16:24:27 ----A---- C:\Windows\system32\wdigest.dll
2009-08-26 16:24:26 ----A---- C:\Windows\system32\schannel.dll
2009-08-26 16:24:26 ----A---- C:\Windows\system32\lsasrv.dll
2009-08-26 16:24:24 ----A---- C:\Windows\system32\secur32.dll
2009-08-26 16:24:24 ----A---- C:\Windows\system32\lsass.exe
2009-08-26 15:17:21 ----A---- C:\Windows\system32\tzres.dll
2009-08-25 07:48:22 ----A---- C:\Windows\system32\infocardapi.dll
2009-08-25 07:48:21 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-08-25 07:48:19 ----A---- C:\Windows\system32\icardres.dll
2009-08-25 07:48:19 ----A---- C:\Windows\system32\icardagt.exe
2009-08-25 07:48:18 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-08-25 07:48:14 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-08-25 07:48:07 ----A---- C:\Windows\system32\PresentationHost.exe
2009-08-25 07:37:28 ----A---- C:\Windows\system32\dfshim.dll
2009-08-25 07:37:23 ----A---- C:\Windows\system32\mscoree.dll
2009-08-25 07:37:21 ----A---- C:\Windows\system32\netfxperf.dll
2009-08-25 07:37:02 ----A---- C:\Windows\system32\mscorier.dll
2009-08-25 07:36:53 ----A---- C:\Windows\system32\mscories.dll
2009-08-24 20:00:00 ----A---- C:\Windows\system32\atl.dll
2009-08-24 19:59:56 ----A---- C:\Windows\system32\wkssvc.dll
2009-08-24 19:59:52 ----A---- C:\Windows\system32\mstscax.dll
2009-08-24 19:59:49 ----A---- C:\Windows\system32\avifil32.dll
2009-08-24 19:59:35 ----A---- C:\Windows\system32\wmpdxm.dll
2009-08-24 19:59:34 ----A---- C:\Windows\system32\spwmp.dll
2009-08-24 19:59:32 ----A---- C:\Windows\system32\dxmasf.dll
======List of files/folders modified in the last 3 months======
2009-11-21 12:13:39 ----D---- C:\Windows\Temp
2009-11-21 11:58:35 ----D---- C:\Windows\SMINST
2009-11-21 11:47:33 ----D---- C:\Windows\System32
2009-11-21 11:47:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-11-21 11:47:32 ----D---- C:\Windows\inf
2009-11-21 09:24:30 ----D---- C:\ProgramData\Sonic
2009-11-21 01:53:23 ----SHD---- C:\System Volume Information
2009-11-21 00:47:06 ----RD---- C:\Program Files
2009-11-21 00:38:30 ----D---- C:\Windows
2009-11-21 00:35:21 ----SHD---- C:\Windows\Installer
2009-11-21 00:20:50 ----D---- C:\Windows\system32\drivers
2009-11-21 00:18:28 ----D---- C:\Program Files\CONEXANT
2009-11-21 00:18:10 ----D---- C:\Windows\system32\catroot
2009-11-21 00:09:02 ----D---- C:\Windows\Logs
2009-11-20 23:27:58 ----D---- C:\Windows\system32\Tasks
2009-11-20 21:04:58 ----D---- C:\Windows\system32\catroot2
2009-11-20 20:42:28 ----D---- C:\Windows\Prefetch
2009-11-20 20:38:02 ----DC---- C:\Windows\system32\DRVSTORE
2009-11-20 17:54:34 ----D---- C:\Program Files\Intel
2009-11-20 12:34:34 ----D---- C:\Program Files\Common Files
2009-11-20 12:12:07 ----HD---- C:\ProgramData
2009-11-20 09:31:53 ----D---- C:\Windows\Minidump
2009-11-20 09:31:53 ----D---- C:\Windows\Debug
2009-11-18 20:04:29 ----D---- C:\Windows\rescache
2009-11-18 19:14:56 ----D---- C:\Windows\winsxs
2009-11-18 19:13:52 ----D---- C:\Program Files\Common Files\microsoft shared
2009-11-18 19:13:41 ----D---- C:\Program Files\Microsoft
2009-11-15 19:44:00 ----SD---- C:\Windows\Downloaded Program Files
2009-11-13 08:53:37 ----D---- C:\Windows\Microsoft.NET
2009-11-13 08:52:58 ----RSD---- C:\Windows\assembly
2009-11-13 08:25:29 ----D---- C:\ProgramData\Microsoft Help
2009-11-13 08:25:17 ----D---- C:\Windows\ehome
2009-11-13 08:24:26 ----D---- C:\Program Files\Windows Mail
2009-11-13 04:43:23 ----D---- C:\Windows\system32\fr-FR
2009-11-13 04:43:23 ----D---- C:\Windows\PolicyDefinitions
2009-11-13 04:43:19 ----D---- C:\Program Files\Internet Explorer
2009-11-13 04:43:18 ----D---- C:\Windows\AppPatch
2009-11-13 04:43:17 ----D---- C:\Program Files\Windows Media Player
2009-11-08 18:39:32 ----SD---- C:\ProgramData\Microsoft
2009-11-05 18:36:21 ----A---- C:\Windows\system32\mrt.exe
2009-11-03 17:03:56 ----D---- C:\Windows\system32\config
2009-11-03 17:03:52 ----D---- C:\Windows\Tasks
2009-11-03 17:03:51 ----D---- C:\Windows\system32\wbem
2009-11-03 17:03:51 ----D---- C:\Windows\system32\Msdtc
2009-11-03 17:03:51 ----D---- C:\Windows\registration
2009-11-03 16:59:57 ----D---- C:\Windows\system32\LogFiles
2009-11-03 12:58:04 ----D---- C:\Program Files\Java
2009-10-17 02:21:00 ----D---- C:\Windows\system32\migration
2009-10-17 02:07:26 ----D---- C:\Program Files\Microsoft Works
2009-08-31 21:59:37 ----D---- C:\Program Files\HP
2009-08-27 08:52:23 ----D---- C:\Windows\SoftwareDistribution
2009-08-27 07:36:35 ----D---- C:\Program Files\Common Files\Apple
2009-08-26 16:50:39 ----D---- C:\Windows\system32\en-US
2009-08-26 16:38:53 ----D---- C:\Windows\system32\zh-TW
2009-08-26 16:38:53 ----D---- C:\Windows\system32\zh-HK
2009-08-26 16:38:53 ----D---- C:\Windows\system32\tr-TR
2009-08-26 16:38:53 ----D---- C:\Windows\system32\sv-SE
2009-08-26 16:38:53 ----D---- C:\Windows\system32\pt-BR
2009-08-26 16:38:53 ----D---- C:\Windows\system32\nl-NL
2009-08-26 16:38:53 ----D---- C:\Windows\system32\nb-NO
2009-08-26 16:38:53 ----D---- C:\Windows\system32\ko-KR
2009-08-26 16:38:53 ----D---- C:\Windows\system32\it-IT
2009-08-26 16:38:53 ----D---- C:\Windows\system32\he-IL
2009-08-26 16:38:53 ----D---- C:\Windows\system32\fi-FI
2009-08-26 16:38:52 ----D---- C:\Windows\system32\es-ES
2009-08-26 16:38:52 ----D---- C:\Windows\system32\el-GR
2009-08-26 16:38:52 ----D---- C:\Windows\system32\de-DE
2009-08-26 16:38:52 ----D---- C:\Windows\system32\da-DK
2009-08-26 16:38:52 ----D---- C:\Windows\system32\ar-SA
2009-08-26 16:37:23 ----RSD---- C:\Windows\Fonts
2009-08-26 16:17:59 ----D---- C:\Program Files\Common Files\Symantec Shared
2009-08-25 17:53:23 ----D---- C:\Windows\system32\XPSViewer
2009-08-24 21:44:54 ----D---- C:\Windows\system32\WDI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-09-15 23152]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-09-15 52368]
R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-11-30 8192]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-09-15 53328]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-21 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2007-04-18 141312]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-08-28 146560]
R3 BthEnum;Service d'énumérateur Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-01-19 19456]
R3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
R3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2008-04-29 29184]
R3 btwaudio;Périphérique audio Bluetooth; C:\Windows\system32\drivers\btwaudio.sys [2007-01-02 78128]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-01-02 80688]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-01-02 16560]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-03-19 23400]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-06-25 7534720]
R3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-19 49664]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]
R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496]
S3 BCM43XV;Pilote de la carte réseau extensible Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BTHPORT;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2008-04-29 220160]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 E100B;Pilote de carte Intel (R) PRO; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt []
S3 fbxusb;Carte réseau virtuelle FreeBox USB; C:\Windows\system32\DRIVERS\fbxusb32.sys [2004-10-20 21344]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-04-30 160768]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\Windows\system32\DRIVERS\HPZius12.sys [2004-03-18 21744]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw4v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-03-01 2216448]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-09-15 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-09-15 138680]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-04-23 262243]
R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2007-04-23 106593]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-14 62984]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-02-12 355096]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-06-25 196608]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-03-30 1533808]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-09-15 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-09-15 352920]
R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-07-13 542496]
S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-01-09 110592]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-07-31 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe []
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-02-17 74656]
-----------------EOF-----------------
Configuration: Windows Vista Internet Explorer 8.0
A voir également:
- Virus?
- Virus mcafee - Accueil - Piratage
- Comment détruire un virus informatique - Guide
- Powershell.exe virus - Guide
- Undisclosed-recipients virus - Guide
- Impossible de terminer l'opération car le fichier contient un virus - Forum Virus
3 réponses
Oui je connais, malheureusement:
- f-secure ne trouve rien en scan rapide et le PC reboot avant la fin d'un scan complet
- bitdefender m'affiche un message d'erreur "impossible de charger le scanner en ligne"
bref, ça pose soucis avec ce PC, d'où l'idée de passer par HiJackThis.....
Par contre pour analyser le log, la je bloque...:(
- f-secure ne trouve rien en scan rapide et le PC reboot avant la fin d'un scan complet
- bitdefender m'affiche un message d'erreur "impossible de charger le scanner en ligne"
bref, ça pose soucis avec ce PC, d'où l'idée de passer par HiJackThis.....
Par contre pour analyser le log, la je bloque...:(