Rapport HijackThis

kkarim75 -  
flo-91 Messages postés 5973 Statut Contributeur sécurité -
Bonjour,
voici rapport HijackThis de mon PC, j'aimerai avoir de laide pour savoir ce qu'il faut faire pour résoudre les problemes qu'il y a?
merci d'avance!!
voici le rapport :
Logfile of random's system information tool 1.06 (written by random/random)
Run by jari at 2009-12-07 18:21:30
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 74 GB (77%) free of 95 GB
Total RAM: 1014 MB (40% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:23:18, on 07/12/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\TODDSrv.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
C:\WINDOWS\system32\TPSMain.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\WINDOWS\system32\ZoomingHook.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\WINDOWS\system32\TCtrlIOHook.exe
C:\Program Files\TOSHIBA\Commandes TOSHIBA\TFncKy.exe
C:\Program Files\TOSHIBA\Tvs\TvsTray.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\ddwmon.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\EoRezo\EoEngine.exe
C:\Documents and Settings\jari\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Philips\VOIP080\VOIP080.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
C:\Program Files\Symantec\LiveUpdate\AUpdate.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Documents and Settings\jari\Mes documents\Téléchargements\RSIT(2).exe
C:\Program Files\trend micro\jari.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://y.lo.st
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://y.lo.st
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: EoBHO - {C7B76B90-3455-4AE6-A752-EAC4D19689E5} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe
O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe hwSetUP
O4 - HKLM\..\Run: [SVPWUTIL] C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe SVPwUTIL
O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [Zooming] ZoomingHook.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [TCtryIOHook] TCtrlIOHook.exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [Tvs] C:\Program Files\TOSHIBA\Tvs\TvsTray.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [DDWMon] C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [EoEngine] "C:\Program Files\EoRezo\EoEngine.exe"
O4 - HKLM\..\Run: [SoftwareHelper] C:\Documents and Settings\jari\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Startup: VOIP080.lnk = C:\Program Files\Philips\VOIP080\VOIP080.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Sélection intelligente HP - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\WINDOWS\system32\TODDSrv.exe

--
End of file - 13764 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complète du système - jari.job
C:\WINDOWS\tasks\ParetoLogic Registration.job
C:\WINDOWS\tasks\ParetoLogic Update Version2.job
C:\WINDOWS\tasks\Rappel d'enregistrement 3.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2007-11-06 322880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ECB9560-04F9-4bbc-943D-298DDF1699E1}]
CNisExtBho Class - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll [2005-10-22 94336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8F38D8D-E480-4D52-B7A2-731BB6995FDD}]
CNavExtBho Class - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2007-06-07 140912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-27 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-20 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7B76B90-3455-4AE6-A752-EAC4D19689E5}]
EoBHO Class - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll [2008-11-18 42792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-10-11 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007-11-06 542016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - Norton Internet Security 2006 - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll [2005-10-22 94336]
{C4069E3A-68F1-403E-B40E-20066696354B} - Norton AntiVirus - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2007-06-07 140912]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-27 263280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2006-02-07 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2006-02-07 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2006-02-07 118784]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-04-17 16143872]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-04 69632]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2004-03-24 196608]
"PadTouch"=C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe [2005-12-22 1077329]
"CeEKEY"=C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe [2006-04-12 638976]
""= []
"HWSetup"=C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe [2004-05-01 28672]
"SVPWUTIL"=C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe [2004-05-01 65536]
"TPNF"=C:\Program Files\TOSHIBA\TouchPad\TPTray.exe [2006-04-04 53248]
"TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2005-08-12 266240]
"Zooming"=C:\WINDOWS\system32\ZoomingHook.exe [2005-06-06 24576]
"SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2005-05-17 118784]
"TCtryIOHook"=C:\WINDOWS\system32\TCtrlIOHook.exe [2006-01-03 28672]
"TFncKy"=TFncKy.exe []
"Tvs"=C:\Program Files\TOSHIBA\Tvs\TvsTray.exe [2006-02-02 73728]
"NDSTray.exe"=NDSTray.exe []
"DDWMon"=C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe [2006-04-28 262144]
"ccApp"=C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe [2007-02-22 52840]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-05 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-11-28 602182]
"LtMoh"=C:\Program Files\ltmoh\Ltmoh.exe [2005-12-16 188416]
"AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2006-03-18 89541]
"CFSServ.exe"=CFSServ.exe -NoClient []
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"EoEngine"=C:\Program Files\EoRezo\EoEngine.exe [2009-02-23 472872]
"SoftwareHelper"=C:\Documents and Settings\jari\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe [2008-12-09 368224]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-10-14 49152]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-08-20 150016]
"Symantec PIF AlertEng"=C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2005-04-11 65536]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-11-20 39408]

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE

C:\Documents and Settings\jari\Menu Démarrer\Programmes\Démarrage
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe
VOIP080.lnk - C:\Program Files\Philips\VOIP080\VOIP080.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe:*:Enabled:hpqpse.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe:*:Enabled:hpqsudi.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe:*:Enabled:hpqpsapp.exe"

======List of files/folders created in the last 3 months======

2009-12-07 17:53:24 ----D---- C:\Program Files\trend micro
2009-12-07 17:53:11 ----D---- C:\rsit
2009-12-07 15:02:12 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-12-07 15:02:10 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2009-12-07 15:00:48 ----D---- C:\Program Files\Windows Media Connect 2
2009-12-07 15:00:06 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-12-07 14:55:36 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-12-07 14:52:28 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-12-07 08:46:53 ----A---- C:\WINDOWS\system32\javaws.exe
2009-12-07 08:46:53 ----A---- C:\WINDOWS\system32\javaw.exe
2009-12-07 08:46:52 ----A---- C:\WINDOWS\system32\java.exe
2009-12-06 19:52:29 ----D---- C:\Documents and Settings\jari\Application Data\LimeWire
2009-12-06 19:37:23 ----A---- C:\WINDOWS\system32\deploytk.dll
2009-12-06 19:35:30 ----D---- C:\Documents and Settings\jari\Application Data\Sun
2009-12-06 19:34:50 ----D---- C:\Program Files\LimeWire
2009-12-06 18:42:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-12-06 18:34:44 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan
2009-12-05 11:48:48 ----A---- C:\WINDOWS\WORDPAD.INI
2009-12-03 05:00:27 ----D---- C:\Documents and Settings\jari\Application Data\Mozilla
2009-12-03 05:00:09 ----D---- C:\Program Files\Mozilla Firefox
2009-12-01 15:40:45 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
2009-12-01 15:40:43 ----A---- C:\WINDOWS\system32\c_iscii.dll
2009-12-01 15:40:37 ----A---- C:\WINDOWS\system32\kbdusa.dll
2009-12-01 15:40:17 ----A---- C:\WINDOWS\system32\ftlx041e.dll
2009-11-25 12:55:33 ----D---- C:\Documents and Settings\All Users\Application Data\HP Product Assistant
2009-11-25 12:45:12 ----D---- C:\Documents and Settings\jari\Application Data\HpUpdate
2009-11-25 12:45:08 ----D---- C:\WINDOWS\Hewlett-Packard
2009-11-25 10:42:34 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-11-25 10:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-11-25 10:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2009-11-25 10:39:53 ----D---- C:\Program Files\Philips
2009-11-25 10:39:37 ----D---- C:\WINDOWS\Downloaded Installations
2009-11-24 13:09:51 ----D---- C:\WINDOWS\SxsCaPendDel
2009-11-24 12:39:08 ----D---- C:\Documents and Settings\jari\Application Data\HPAppData
2009-11-24 12:21:33 ----D---- C:\Documents and Settings\All Users\Application Data\WEBREG
2009-11-24 12:19:55 ----D---- C:\Documents and Settings\All Users\Application Data\Hewlett-Packard
2009-11-24 12:19:29 ----RA---- C:\WINDOWS\system32\hpzids01.dll
2009-11-24 12:19:27 ----A---- C:\WINDOWS\system32\hpzll5mu.dll
2009-11-24 11:49:15 ----D---- C:\Documents and Settings\All Users\Application Data\HPSSUPPLY
2009-11-24 11:48:26 ----D---- C:\Documents and Settings\jari\Application Data\HP
2009-11-24 11:36:31 ----D---- C:\Documents and Settings\All Users\Application Data\HP
2009-11-24 11:35:42 ----D---- C:\Program Files\Fichiers communs\HP
2009-11-24 11:33:30 ----D---- C:\Program Files\HP
2009-11-24 11:33:18 ----HD---- C:\Config.Msi
2009-11-23 12:56:43 ----D---- C:\Documents and Settings\jari\Application Data\skypePM
2009-11-23 12:52:34 ----D---- C:\Documents and Settings\jari\Application Data\Skype
2009-11-23 12:51:59 ----D---- C:\Program Files\Fichiers communs\Skype
2009-11-23 12:51:55 ----RD---- C:\Program Files\Skype
2009-11-23 12:51:39 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-11-23 12:48:33 ----D---- C:\Documents and Settings\jari\Application Data\EoRezo
2009-11-23 12:48:30 ----D---- C:\Program Files\EoRezo
2009-11-21 20:47:15 ----A---- C:\WINDOWS\ModemLog_Nokia N70 USB Modem.txt
2009-11-21 19:35:35 ----D---- C:\Documents and Settings\jari\Application Data\Datalayer
2009-11-21 19:29:35 ----D---- C:\Documents and Settings\jari\Application Data\Nokia
2009-11-21 19:13:10 ----D---- C:\Program Files\DIFX
2009-11-21 19:12:13 ----D---- C:\Documents and Settings\jari\Application Data\PC Suite
2009-11-21 19:12:11 ----D---- C:\Documents and Settings\All Users\Application Data\PC Suite
2009-11-21 19:12:08 ----D---- C:\Program Files\Fichiers communs\PCSuite
2009-11-21 19:12:01 ----A---- C:\WINDOWS\system32\nmwcdlog.dll
2009-11-21 19:12:01 ----A---- C:\WINDOWS\system32\nmwcdcocls.dll
2009-11-21 19:12:00 ----A---- C:\WINDOWS\system32\nmwcdcls.dll
2009-11-21 19:11:59 ----D---- C:\Program Files\Nokia
2009-11-21 19:11:26 ----D---- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
2009-11-21 16:11:56 ----D---- C:\Documents and Settings\jari\Application Data\DriverCure
2009-11-21 16:11:45 ----D---- C:\Documents and Settings\All Users\Application Data\ParetoLogic
2009-11-21 16:11:45 ----D---- C:\Documents and Settings\All Users\Application Data\DriverCure
2009-11-21 15:57:36 ----D---- C:\Documents and Settings\jari\Application Data\Samsung
2009-11-21 14:37:21 ----A---- C:\WINDOWS\system32\framedyn.dll
2009-11-21 14:35:25 ----D---- C:\WINDOWS\system32\Samsung_USB_Drivers
2009-11-21 14:34:29 ----D---- C:\Program Files\Samsung
2009-11-21 10:14:43 ----A---- C:\WINDOWS\ToDisc.INI
2009-11-21 09:52:08 ----A---- C:\WINDOWS\system32\ptpusb.dll
2009-11-21 09:52:07 ----A---- C:\WINDOWS\system32\ptpusd.dll
2009-11-20 20:24:21 ----D---- C:\Documents and Settings\jari\Application Data\Google
2009-11-20 20:07:08 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-11-20 20:06:33 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2009-11-20 20:04:54 ----D---- C:\Documents and Settings\jari\Application Data\AdobeUM
2009-11-20 15:23:30 ----D---- C:\Program Files\directx
2009-11-20 15:04:22 ----D---- C:\Program Files\Slitherine
2009-11-20 10:31:19 ----D---- C:\Documents and Settings\jari\Application Data\DivX
2009-11-20 08:30:44 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2009-11-20 08:30:25 ----HDC---- C:\WINDOWS\$NtUninstallKB976749$
2009-11-20 08:30:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2009-11-20 08:30:00 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxsfs.dll
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxdrv.dll
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2009-11-19 20:52:18 ----N---- C:\WINDOWS\system32\pxafs.dll
2009-11-19 20:52:17 ----N---- C:\WINDOWS\system32\vxblock.dll
2009-11-19 20:52:17 ----N---- C:\WINDOWS\system32\pxwave.dll
2009-11-19 20:52:17 ----N---- C:\WINDOWS\system32\pxmas.dll
2009-11-19 20:52:17 ----N---- C:\WINDOWS\system32\px.dll
2009-11-19 20:51:24 ----D---- C:\Program Files\Google
2009-11-19 20:51:23 ----D---- C:\Program Files\Fichiers communs\DivX Shared
2009-11-19 20:51:22 ----D---- C:\Program Files\DivX
2009-11-19 19:45:23 ----D---- C:\Program Files\Fichiers communs\Designer
2009-11-19 19:41:01 ----D---- C:\WINDOWS\ShellNew
2009-11-19 19:12:49 ----A---- C:\WINDOWS\ModemLog_Modem standard sur liaison Bluetooth.txt
2009-11-19 18:31:01 ----A---- C:\WINDOWS\system32\wshirda.dll
2009-11-19 18:31:01 ----A---- C:\WINDOWS\system32\irmon.dll
2009-11-19 18:31:00 ----A---- C:\WINDOWS\system32\irftp.exe
2009-11-19 15:14:26 ----D---- C:\WINDOWS\Prefetch
2009-11-19 15:12:41 ----D---- C:\WINDOWS\system32\LogFiles
2009-11-19 15:11:19 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-11-19 15:09:59 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-11-19 15:08:42 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-11-19 15:07:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974455$
2009-11-19 15:05:54 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-11-19 15:04:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2009-11-19 15:03:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2009-11-19 15:01:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2009-11-19 15:00:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2009-11-19 14:58:54 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2009-11-19 14:56:57 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-11-19 14:55:01 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2009-11-19 14:53:36 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-11-19 14:52:12 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2009-11-19 14:50:56 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2009-11-19 14:49:40 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-11-19 14:48:19 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2009-11-19 14:46:58 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-11-19 14:45:41 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2009-11-19 14:44:26 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-11-19 14:43:11 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2009-11-19 14:41:54 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-11-19 14:40:39 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-11-19 14:39:12 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-11-19 14:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-11-19 14:36:37 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-11-19 14:35:21 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-11-19 14:34:06 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2009-11-19 14:32:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-11-19 14:31:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-11-19 14:30:05 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-11-19 14:28:46 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-11-19 14:27:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-11-19 14:26:14 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-11-19 14:24:55 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-11-19 14:23:37 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-11-19 14:22:21 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-11-19 14:21:06 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-11-19 14:19:51 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-11-19 14:18:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-11-19 14:17:20 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-11-19 14:16:03 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-11-19 14:10:55 ----D---- C:\WINDOWS\system32\fr-fr
2009-11-19 14:10:53 ----D---- C:\WINDOWS\system32\fr
2009-11-19 14:10:53 ----D---- C:\WINDOWS\l2schemas
2009-11-19 14:10:52 ----D---- C:\WINDOWS\system32\bits
2009-11-19 14:05:48 ----D---- C:\WINDOWS\network diagnostic
2009-11-19 14:00:43 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-11-19 14:00:39 ----D---- C:\WINDOWS\EHome
2009-11-19 13:45:57 ----D---- C:\Program Files\Inno Setup 5
2009-11-19 13:28:25 ----D---- C:\Documents and Settings\jari\Application Data\Uniblue
2009-11-19 13:15:07 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_1$
2009-11-19 13:14:38 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_1$
2009-11-19 13:07:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2009-11-19 12:41:36 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2009-11-19 12:30:48 ----SHD---- C:\RECYCLER
2009-11-19 12:17:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2009-11-19 12:17:38 ----A---- C:\WINDOWS\system32\SET3DB.tmp
2009-11-19 12:17:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2009-11-19 12:17:21 ----A---- C:\WINDOWS\system32\SET3CD.tmp
2009-11-19 12:17:21 ----A---- C:\WINDOWS\system32\kernel32.dll
2009-11-19 12:17:20 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2009-11-19 12:17:05 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2009-11-19 12:16:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2009-11-19 12:16:36 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2009-11-19 12:16:23 ----A---- C:\WINDOWS\system32\SET3A4.tmp
2009-11-19 12:16:22 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2009-11-19 12:15:55 ----A---- C:\WINDOWS\system32\SET39F.tmp
2009-11-19 12:15:55 ----A---- C:\WINDOWS\system32\SET38B.tmp
2009-11-19 12:15:54 ----A---- C:\WINDOWS\system32\SET39D.tmp
2009-11-19 12:15:54 ----A---- C:\WINDOWS\system32\SET39C.tmp
2009-11-19 12:15:54 ----A---- C:\WINDOWS\system32\SET39B.tmp
2009-11-19 12:15:54 ----A---- C:\WINDOWS\system32\SET397.tmp
2009-11-19 12:15:54 ----A---- C:\WINDOWS\system32\SET396.tmp
2009-11-19 12:15:54 ----A---- C:\WINDOWS\system32\SET393.tmp
2009-11-19 12:15:53 ----A---- C:\WINDOWS\system32\SET39E.tmp
2009-11-19 12:15:52 ----HDC---- C:\WINDOWS\$NtUninstallKB974455_0$
2009-11-19 12:15:24 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-11-19 12:15:10 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-11-19 12:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2009-11-19 12:14:53 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2009-11-19 12:14:40 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2_0$
2009-11-19 12:14:03 ----A---- C:\WINDOWS\system32\SET338.tmp
2009-11-19 12:14:02 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2009-11-19 12:13:50 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2009-11-19 12:13:36 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2009-11-19 12:13:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2009-11-19 12:11:55 ----A---- C:\WINDOWS\system32\MRT.exe
2009-11-19 12:11:45 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2009-11-19 12:11:27 ----A---- C:\WINDOWS\system32\SET305.tmp
2009-11-19 12:11:27 ----A---- C:\WINDOWS\system32\SET303.tmp
2009-11-19 12:11:26 ----A---- C:\WINDOWS\system32\services.exe
2009-11-19 12:11:26 ----A---- C:\WINDOWS\system32\ntdll.dll
2009-11-19 12:11:26 ----A---- C:\WINDOWS\system32\lsasrv.dll
2009-11-19 12:11:26 ----A---- C:\WINDOWS\system32\advapi32.dll
2009-11-19 12:11:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2009-11-19 12:10:59 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2009-11-19 12:10:46 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2009-11-19 12:10:36 ----A---- C:\WINDOWS\system32\SET2C2.tmp
2009-11-19 12:10:35 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-11-19 12:10:27 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2009-11-19 12:10:16 ----A---- C:\WINDOWS\system32\SET2B9.tmp
2009-11-19 12:10:14 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-11-19 12:10:06 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2009-11-19 12:09:50 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2009-11-19 12:09:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2009-11-19 12:09:20 ----D---- C:\Documents and Settings\jari\Application Data\Template
2009-11-19 12:09:14 ----A---- C:\WINDOWS\system32\SET29F.tmp
2009-11-19 12:09:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2009-11-19 12:08:58 ----A---- C:\WINDOWS\system32\SET27F.tmp
2009-11-19 12:08:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2009-11-19 12:08:48 ----A---- C:\WINDOWS\system32\SET278.tmp
2009-11-19 12:08:47 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2009-11-19 12:08:38 ----A---- C:\WINDOWS\system32\SET271.tmp
2009-11-19 12:08:37 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-11-19 12:06:17 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2009-11-19 12:06:05 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2009-11-19 12:05:49 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2009-11-19 12:05:38 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2009-11-19 12:05:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2009-11-19 12:05:05 ----A---- C:\WINDOWS\system32\SET248.tmp
2009-11-19 12:05:04 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2009-11-19 12:04:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2009-11-19 12:04:16 ----A---- C:\WINDOWS\system32\SET222.tmp
2009-11-19 12:04:16 ----A---- C:\WINDOWS\system32\SET221.tmp
2009-11-19 12:04:16 ----A---- C:\WINDOWS\system32\SET220.tmp
2009-11-19 12:04:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2009-11-19 12:04:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2009-11-19 12:03:51 ----A---- C:\WINDOWS\system32\SET1FE.tmp
2009-11-19 12:03:51 ----A---- C:\WINDOWS\system32\SET1FD.tmp
2009-11-19 12:03:49 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2009-11-19 12:03:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2009-11-19 12:02:58 ----D---- C:\WINDOWS\ServicePackFiles
2009-11-19 12:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2009-11-19 12:02:29 ----A---- C:\WINDOWS\system32\SET1AC.tmp
2009-11-19 12:02:27 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2009-11-19 12:02:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2009-11-19 12:02:02 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-11-19 12:01:53 ----A---- C:\WINDOWS\system32\SET19E.tmp
2009-11-19 12:01:52 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2009-11-19 12:01:34 ----A---- C:\WINDOWS\system32\SET197.tmp
2009-11-19 12:01:33 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2009-11-19 12:01:24 ----A---- C:\WINDOWS\system32\SET190.tmp
2009-11-19 12:01:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2009-11-19 12:01:16 ----D---- C:\Program Files\MSXML 4.0
2009-11-19 12:00:59 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2009-11-19 12:00:47 ----A---- C:\WINDOWS\system32\SET17E.tmp
2009-11-19 12:00:45 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2009-11-19 12:00:32 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$
2009-11-19 12:00:22 ----A---- C:\WINDOWS\system32\SET165.tmp
2009-11-19 12:00:22 ----A---- C:\WINDOWS\system32\SET164.tmp
2009-11-19 12:00:22 ----A---- C:\WINDOWS\system32\SET163.tmp
2009-11-19 12:00:22 ----A---- C:\WINDOWS\system32\SET162.tmp
2009-11-19 12:00:22 ----A---- C:\WINDOWS\system32\SET161.tmp
2009-11-19 12:00:20 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2009-11-19 12:00:08 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2009-11-19 11:26:19 ----A---- C:\WINDOWS\system32\SET3A1.tmp
2009-11-19 11:25:51 ----A---- C:\WINDOWS\system32\SET2D8.tmp
2009-11-19 11:25:51 ----A---- C:\WINDOWS\system32\SET2D6.tmp
2009-11-19 11:16:48 ----A---- C:\WINDOWS\system32\SET1A7.tmp
2009-11-19 11:16:27 ----A---- C:\WINDOWS\system32\SET199.tmp
2009-11-19 11:16:24 ----A---- C:\WINDOWS\system32\SET192.tmp
2009-11-19 11:15:53 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-11-19 11:13:59 ----D---- C:\WINDOWS\system32\PreInstall
2009-11-19 11:13:57 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2009-11-19 11:07:34 ----D---- C:\Documents and Settings\jari\Application Data\Macromedia
2009-11-19 11:07:12 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-11-19 09:41:36 ----ASH---- C:\Documents and Settings\jari\Application Data\desktop.ini
2009-11-19 09:41:34 ----SD---- C:\Documents and Settings\jari\Application Data\Microsoft
2009-11-19 09:41:34 ----D---- C:\Documents and Settings\jari\Application Data\toshiba
2009-11-19 09:41:34 ----D---- C:\Documents and Settings\jari\Application Data\Symantec
2009-11-19 09:41:34 ----D---- C:\Documents and Settings\jari\Application Data\Intel
2009-11-19 09:41:34 ----D---- C:\Documents and Settings\jari\Application Data\Identities
2009-11-19 09:41:34 ----D---- C:\Documents and Settings\jari\Application Data\Adobe
2009-11-19 09:38:31 ----D---- C:\Program Files\ltmoh
2009-11-19 09:37:54 ----A---- C:\WINDOWS\system32\results.txt
2009-11-19 09:37:38 ----D---- C:\Documents and Settings\All Users\Application Data\Intel
2009-11-14 01:47:32 ----A---- C:\WINDOWS\system32\dpl100.dll
2009-11-14 01:47:28 ----A---- C:\WINDOWS\system32\divx_xx16.dll
2009-11-14 01:47:28 ----A---- C:\WINDOWS\system32\divx_xx11.dll
2009-11-14 01:47:28 ----A---- C:\WINDOWS\system32\divx_xx0c.dll
2009-11-14 01:47:28 ----A---- C:\WINDOWS\system32\divx_xx0a.dll
2009-11-14 01:47:28 ----A---- C:\WINDOWS\system32\divx_xx07.dll
2009-11-14 01:47:28 ----A---- C:\WINDOWS\system32\DivX.dll
2009-09-25 06:49:54 ----A---- C:\WINDOWS\system32\SET355.tmp
2009-09-25 06:49:54 ----A---- C:\WINDOWS\system32\SET354.tmp
2009-09-25 06:49:53 ----A---- C:\WINDOWS\system32\SET357.tmp
2009-09-25 06:49:53 ----A---- C:\WINDOWS\system32\SET356.tmp
2009-09-25 06:49:52 ----A---- C:\WINDOWS\system32\SET35C.tmp
2009-09-25 06:49:52 ----A---- C:\WINDOWS\system32\SET35B.tmp
2009-09-25 06:49:51 ----A---- C:\WINDOWS\system32\SET35F.tmp
2009-09-25 06:49:50 ----A---- C:\WINDOWS\system32\SET364.tmp
2009-09-18 11:04:59 ----N---- C:\WINDOWS\system32\SET366.tmp

======List of files/folders modified in the last 3 months======

2009-12-07 18:22:25 ----D---- C:\Program Files\Fichiers communs\Symantec Shared
2009-12-07 18:20:19 ----D---- C:\WINDOWS\Temp
2009-12-07 18:14:37 ----D---- C:\Program Files
2009-12-07 18:14:33 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-12-07 18:11:54 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-12-07 15:34:44 ----SHD---- C:\WINDOWS\Installer
2009-12-07 15:30:57 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-12-07 15:26:32 ----D---- C:\Program Files\Adobe
2009-12-07 15:25:05 ----D---- C:\WINDOWS\system32
2009-12-07 15:06:51 ----D---- C:\WINDOWS
2009-12-07 15:06:22 ----D---- C:\Program Files\Windows Media Player
2009-12-07 15:05:25 ----D---- C:\WINDOWS\system32\CatRoot2
2009-12-07 15:02:20 ----HD---- C:\WINDOWS\inf
2009-12-07 15:02:10 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-12-07 15:01:53 ----A---- C:\WINDOWS\imsins.BAK
2009-12-07 15:01:08 ----A---- C:\WINDOWS\win.ini
2009-12-07 15:00:22 ----D---- C:\WINDOWS\Help
2009-12-07 14:56:21 ----D---- C:\WINDOWS\system32\drivers
2009-12-07 14:49:56 ----D---- C:\WINDOWS\system32\CatRoot
2009-12-07 08:45:55 ----D---- C:\Program Files\Java
2009-12-06 19:07:52 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
2009-12-06 18:42:37 ----D---- C:\WINDOWS\WinSxS
2009-12-03 05:11:30 ----D---- C:\Documents and Settings
2009-12-03 04:05:14 ----SD---- C:\WINDOWS\Tasks
2009-12-03 04:05:14 ----A---- C:\WINDOWS\setuplog.txt
2009-12-02 16:26:17 ----D---- C:\Program Files\Norton Internet Security
2009-12-02 16:24:45 ----D---- C:\Program Files\Symantec
2009-12-02 16:24:43 ----A---- C:\WINDOWS\system32\S32EVNT1.DLL
2009-12-01 15:40:42 ----RSD---- C:\WINDOWS\Fonts
2009-11-27 09:30:22 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-25 14:04:28 ----D---- C:\Program Files\Fichiers communs
2009-11-25 14:03:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-11-25 12:17:07 ----D---- C:\WINDOWS\pchealth
2009-11-25 10:37:44 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-24 11:53:50 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-11-23 12:59:46 ----D---- C:\WINDOWS\security
2009-11-21 10:24:18 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-11-20 15:32:54 ----A---- C:\WINDOWS\ODBC.INI
2009-11-19 19:46:03 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-11-19 19:43:27 ----D---- C:\Program Files\Microsoft Office
2009-11-19 19:43:17 ----D---- C:\Program Files\Fichiers communs\System
2009-11-19 19:38:39 ----D---- C:\WINDOWS\system
2009-11-19 18:28:31 ----A---- C:\WINDOWS\OEWABLog.txt
2009-11-19 18:25:08 ----D---- C:\WINDOWS\system32\IME
2009-11-19 18:23:34 ----RD---- C:\WINDOWS\Offline Web Pages
2009-11-19 18:23:30 ----D---- C:\WINDOWS\msapps
2009-11-19 18:23:13 ----D---- C:\WINDOWS\java
2009-11-19 18:18:54 ----HDC---- C:\WINDOWS\$NtUninstallKB913446$
2009-11-19 18:18:53 ----HDC---- C:\WINDOWS\$NtUninstallKB912945$
2009-11-19 18:18:46 ----HDC---- C:\WINDOWS\$NtUninstallKB912919$
2009-11-19 18:18:46 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2009-11-19 18:18:43 ----HDC---- C:\WINDOWS\$NtUninstallKB911565$
2009-11-19 18:18:43 ----HDC---- C:\WINDOWS\$NtUninstallKB911564$
2009-11-19 18:18:42 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2009-11-19 18:18:42 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2009-11-19 18:18:41 ----HDC---- C:\WINDOWS\$NtUninstallKB905915$
2009-11-19 18:18:34 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2009-11-19 18:18:34 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2009-11-19 18:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB904706$
2009-11-19 18:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$
2009-11-19 18:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB901190$
2009-11-19 18:18:32 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2009-11-19 18:18:31 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2009-11-19 18:18:27 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2009-11-19 18:18:27 ----HDC---- C:\WINDOWS\$NtUninstallKB899589$
2009-11-19 18:18:27 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2009-11-19 18:18:27 ----HDC---- C:\WINDOWS\$NtUninstallKB898458$
2009-11-19 18:18:26 ----HDC---- C:\WINDOWS\$NtUninstallKB896688$
2009-11-19 18:18:22 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2009-11-19 18:18:21 ----HDC---- C:\WINDOWS\$NtUninstallKB896424$
2009-11-19 18:18:20 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2009-11-19 18:18:20 ----HDC---- C:\WINDOWS\$NtUninstallKB896422$
2009-11-19 18:18:20 ----HDC---- C:\WINDOWS\$NtUninstallKB896358$
2009-11-19 18:18:19 ----HDC---- C:\WINDOWS\$NtUninstallKB896256$
2009-11-19 18:18:15 ----HDC---- C:\WINDOWS\$NtUninstallKB896243$
2009-11-19 18:18:15 ----HDC---- C:\WINDOWS\$NtUninstallKB895200$
2009-11-19 18:18:12 ----HDC---- C:\WINDOWS\$NtUninstallKB894871$
2009-11-19 18:18:12 ----HDC---- C:\WINDOWS\$NtUninstallKB894391_0$
2009-11-19 18:18:10 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$
2009-11-19 18:18:09 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2009-11-19 18:18:08 ----HDC---- C:\WINDOWS\$NtUninstallKB893357$
2009-11-19 18:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB893066$
2009-11-19 18:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB893056$
2009-11-19 18:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB891781$
2009-11-19 18:18:06 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2009-11-19 18:18:03 ----HDC---- C:\WINDOWS\$NtUninstallKB890175$
2009-11-19 18:18:03 ----HDC---- C:\WINDOWS\$NtUninstallKB890046_0$
2009-11-19 18:18:03 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2009-11-19 18:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB889673$
2009-11-19 18:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB888622$
2009-11-19 18:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2009-11-19 18:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB888113$
2009-11-19 18:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2009-11-19 18:18:02 ----HDC---- C:\WINDOWS\$NtUninstallKB887472$
2009-11-19 18:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$
2009-11-19 18:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB885855$
2009-11-19 18:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB885836$
2009-11-19 18:18:01 ----HDC---- C:\WINDOWS\$NtUninstallKB885835$
2009-11-19 18:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB885250$
2009-11-19 18:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB873339$
2009-11-19 18:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB873333$
2009-11-19 18:17:59 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2009-11-19 18:17:19 ----D---- C:\VALUEADD
2009-11-19 18:11:20 ----D---- C:\SUPPORT
2009-11-19 18:11:20 ----D---- C:\Program Files\xerox
2009-11-19 18:10:51 ----D---- C:\Program Files\Services en ligne
2009-11-19 18:10:51 ----D---- C:\Program Files\Realtek
2009-11-19 18:10:37 ----D---- C:\Program Files\Online Services
2009-11-19 18:10:36 ----AD---- C:\Program Files\Offre Wanadoo
2009-11-19 18:09:51 ----D---- C:\Program Files\MSN Gaming Zone
2009-11-19 18:09:38 ----D---- C:\Program Files\MSN
2009-11-19 18:09:22 ----D---- C:\Program Files\microsoft frontpage
2009-11-19 18:07:15 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2009-11-19 18:07:15 ----D---- C:\Program Files\Fichiers communs\Services
2009-11-19 18:07:15 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-11-19 18:07:15 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-11-19 18:06:42 ----D---- C:\Program Files\Fichiers communs\Java
2009-11-19 18:06:40 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-11-19 18:06:39 ----D---- C:\Program Files\Atheros
2009-11-19 18:06:39 ----D---- C:\Program Files\Apoint2K
2009-11-19 18:04:28 ----RHD---- C:\MSOCache
2009-11-19 18:04:27 ----D---- C:\I386
2009-11-19 17:58:33 ----D---- C:\Documents and Settings\All Users\Application Data\SBSI
2009-11-19 15:13:34 ----D---- C:\WINDOWS\system32\Setup
2009-11-19 15:13:34 ----D---- C:\WINDOWS\AppPatch
2009-11-19 15:13:34 ----D---- C:\Program Files\Messenger
2009-11-19 15:13:33 ----D---- C:\WINDOWS\system32\wbem
2009-11-19 15:00:16 ----D---- C:\Program Files\Outlook Express
2009-11-19 14:11:14 ----D---- C:\WINDOWS\ime
2009-11-19 14:10:55 ----D---- C:\WINDOWS\system32\usmt
2009-11-19 14:10:54 ----D---- C:\Program Files\Internet Explorer
2009-11-19 14:10:52 ----D---- C:\WINDOWS\PeerNet
2009-11-19 14:10:52 ----D---- C:\Program Files\Movie Maker
2009-11-19 14:08:11 ----D---- C:\WINDOWS\system32\Restore
2009-11-19 14:08:11 ----D---- C:\WINDOWS\system32\npp
2009-11-19 14:08:09 ----D---- C:\WINDOWS\msagent
2009-11-19 14:08:08 ----D---- C:\WINDOWS\srchasst
2009-11-19 14:08:07 ----D---- C:\Program Files\NetMeeting
2009-11-19 14:08:06 ----D---- C:\WINDOWS\system32\Com
2009-11-19 14:08:02 ----D---- C:\Program Files\Windows NT
2009-11-19 14:07:44 ----D---- C:\WINDOWS\system32\oobe
2009-11-19 14:04:51 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-11-19 12:11:57 ----D---- C:\WINDOWS\Debug
2009-11-19 11:07:22 ----D---- C:\WINDOWS\SoftwareDistribution
2009-11-19 09:41:42 ----D---- C:\WINDOWS\oemdrv
2009-11-19 09:38:36 ----SHD---- C:\System Volume Information
2009-11-19 09:38:35 ----D---- C:\WINDOWS\system32\config
2009-11-19 09:38:31 ----D---- C:\WINDOWS\Driver Cache
2009-11-19 09:37:38 ----D---- C:\Program Files\Intel
2009-11-19 09:37:20 ----RASH---- C:\boot.ini
2009-11-19 09:33:14 ----D---- C:\WINDOWS\Registration
2009-11-19 09:30:05 ----A---- C:\WINDOWS\system.ini
2009-10-20 00:52:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2009-09-25 06:36:34 ----A---- C:\WINDOWS\system32\wininet.dll
2009-09-25 06:36:34 ----A---- C:\WINDOWS\system32\urlmon.dll
2009-09-25 06:36:34 ----A---- C:\WINDOWS\system32\shdocvw.dll
2009-09-25 06:36:32 ----A---- C:\WINDOWS\system32\ieencode.dll
2009-09-11 15:18:20 ----A---- C:\WINDOWS\system32\msv1_0.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys []
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 SAVRTPEL;SAVRTPEL; \??\C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRTPEL.SYS []
R1 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCDrv.sys []
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-21 5632]
R1 SYMTDI;SYMTDI; C:\WINDOWS\System32\Drivers\SYMTDI.SYS [2007-10-01 189320]
R1 TPwSav;Common Driver; C:\WINDOWS\System32\Drivers\TPwSav.sys [2006-01-05 11264]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.9.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-11-19 21275]
R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\netdevio.sys [2003-01-29 12032]
R2 s24trans;Transport RLAN; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-11-28 13568]
R2 symlcbrd;symlcbrd; \??\C:\WINDOWS\system32\drivers\symlcbrd.sys []
R2 tdudf;TOSHIBA UDF File System Driver; C:\WINDOWS\system32\DRIVERS\tdudf.sys [2006-04-18 98816]
R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-03-18 1155584]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2004-11-16 101874]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 EMSCR;EMSCR; C:\WINDOWS\system32\DRIVERS\EMS7SK.sys [2006-03-23 61056]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys []
R3 ESDCR;ESDCR; C:\WINDOWS\system32\DRIVERS\ESD7SK.sys [2006-03-23 37888]
R3 ESMCR;ESMCR; C:\WINDOWS\system32\DRIVERS\ESM7SK.sys [2006-03-23 74752]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-02-07 1399615]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-04-18 4262912]
R3 Iviaspi;IVI ASPI Shell; C:\WINDOWS\system32\drivers\iviaspi.sys [2003-09-10 21060]
R3 NAVENG;NAVENG; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20091206.005\NAVENG.Sys []
R3 NAVEX15;NAVEX15; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20091206.005\NavEx15.Sys []
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-04-25 83584]
R3 SAVRT;SAVRT; \??\C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVRT.SYS []
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 SYMDNS;SYMDNS; C:\WINDOWS\System32\Drivers\SYMDNS.SYS [2007-10-01 12680]
R3 SymEvent;SymEvent; \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS []
R3 SYMFW;SYMFW; C:\WINDOWS\System32\Drivers\SYMFW.SYS [2007-10-01 98184]
R3 SYMIDS;SYMIDS; C:\WINDOWS\System32\Drivers\SYMIDS.SYS [2007-10-01 31624]
R3 SYMIDSCO;SYMIDSCO; \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\idsdefs\20091120.002\symidsco.sys []
R3 SYMNDIS;SYMNDIS; C:\WINDOWS\System32\Drivers\SYMNDIS.SYS [2007-10-01 28040]
R3 SYMREDRV;SYMREDRV; C:\WINDOWS\System32\Drivers\SYMREDRV.SYS [2007-10-01 23944]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\WINDOWS\system32\DRIVERS\tdcmdpst.sys [2006-03-02 15360]
R3 Tvs;TOSHIBA Virtual Sound with SRS technologies; C:\WINDOWS\system32\DRIVERS\Tvs.sys [2006-04-25 43776]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w39n51;Intel(R) PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-05 1428096]
S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
S3 BTHMODEM;Pilote de communications modem Bluetooth; C:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-13 37888]
S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
S3 BTHPORT;Pilote de port Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272768]
S3 BTHUSB;Pilote USB radio Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 Nokia USB Generic;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2006-05-29 8704]
S3 Nokia USB Modem;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2006-05-29 13312]
S3 Nokia USB Phone Parent;Nokia
A voir également:

3 réponses

flo-91 Messages postés 5973 Statut Contributeur sécurité 1 120
 
Bonsoir, en effet, tu es bien infecté, fait ceci :

Pour les ordinateurs équipés de Windows Vista et Windows 7, la désactivation du Contrôle des comptes utilisateurs est obligatoire
sous peine de ne pas pouvoir faire fonctionner correctement l'outil.
Tuto : https://www.commentcamarche.net/faq/8343-vista-desactiver-l-uac

>Ad-Remover<

>Telecharge Ad-Remover et enregistre-le sur ton bureau :

https://www.commentcamarche.net/telecharger/securite/2547-ad-remover/

>Désactive ton antivirus le temps de la manip
>Déconnecte-toi d'Internet et ferme toutes applications en cours
>Double-clique sur le programme d'installation, installe-le dans son emplacement par défaut (C:\Program Files).
>Au menu principal, choisis l'option S ( scanner )
>Poste le rapport généré (C:\Ad-Report-CLEAN.log).
>N'oublie pas de réactiver ton anti-virus
0
kkarim75 Messages postés 1 Statut Membre
 
bonjour;
merci beaucoup pour votre aide;
j'ai suivi les procédures que vous m'avez indiqué sur votre message, et je vous transmet le rapport :

======= RAPPORT D'AD-REMOVER 1.1.4.6_E | UNIQUEMENT XP/VISTA/7 =======
.
Mit à jour par C_XX le 07.12.2009 à 21:14
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 10:09:23, 08/12/2009 | Mode Normal | Option: SCAN
Exécuté de: C:\Program Files\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: LAMRI-PC | Utilisateur actuel: jari
.
============== ÉLÉMENT(S) TROUVÉ(S) ==============
.

C:\DOCUME~1\jari\APPLIC~1\EoRezo
C:\Program Files\EoRezo
C:\WINDOWS\Prefetch\ITSTV.EXE-03DD63F6.pf
C:\WINDOWS\Prefetch\ITSTV.EXE-088DACDF.pf
C:\WINDOWS\Prefetch\SOFTWAREUPDATE.EXE-0292C6AF.pf
C:\WINDOWS\Prefetch\SOFTWAREUPDATEHP.EXE-1562317E.pf
.
HKCU\software\EoRezo
HKLM\software\classes\appid\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\software\classes\appid\EoRezoBHO.DLL
HKLM\Software\Classes\CLSID\{C7B76B90-3455-4AE6-A752-EAC4D19689E5}
HKLM\software\classes\EoRezoBHO.EoBHO
HKLM\software\classes\EoRezoBHO.EoBHO.1
HKLM\Software\Classes\Interface\{819DB72D-1C28-4387-9778-E2FF3DC86F74}
HKLM\Software\Classes\TypeLib\{B6ACB3F1-6A83-432C-B854-3E1056F87F4E}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7B76B90-3455-4AE6-A752-EAC4D19689E5}
HKLM\software\microsoft\windows\currentversion\uninstall\eoEngine_is1
HKLM\software\microsoft\windows\currentversion\uninstall\SoftwareUpdate_is1
HKU\s-1-5-21-862363201-3994831660-3677756860-1006\software\EoRezo
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.5.5 [fr] *
.
Nom du profil: 4gvfrc5h.default (jari)
.
.
.
.
* Internet Explorer Version 6.0.2900.5512 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Start Page: hxxp://y.lo.st
Search Page: hxxp://www.google.com
Enable Browser Extensions: yes
Search Bar: hxxp://www.google.com/ie
Use Search Asst: no
First Home Page: hxxp://y.lo.st
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.google.com/ie
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: %SystemRoot%\system32\blank.htm
Start Page: hxxp://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: hxxp://y.lo.st
.
===================================
.
2623 Octet(s) - C:\Ad-Report-SCAN[1].log
.
1 Fichier(s) - C:\DOCUME~1\jari\LOCALS~1\Temp
1 Fichier(s) - C:\WINDOWS\Temp
.
2 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP
0 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE
.
Fin à: 10:23:53 | 08/12/2009 - SCAN[1]
.
============== E.O.F ==============
.

vous pouvez me dire ce que je doit faire mtnt SVP
merci d'avance.
0
flo-91 Messages postés 5973 Statut Contributeur sécurité 1 120
 
Bien, la suite :

>Relance Ad-Remover :

Pour les ordinateurs équipés de Windows Vista et Windows 7, la désactivation du Contrôle des comptes utilisateurs est obligatoire
sous peine de ne pas pouvoir faire fonctionner correctement l'outil.
Tuto : https://www.commentcamarche.net/faq/8343-vista-desactiver-l-uac

>Ad-Remover<

>Désactive ton antivirus le temps de la manip
>Déconnecte-toi d'Internet et ferme toutes applications en cours
>Double-clique sur le programme d'installation, installe-le dans son emplacement par défaut (C:\Program Files).
>Au menu principal, choisis l'option L ( Nettoyage )
>Poste le rapport généré (C:\Ad-Report-CLEAN.log).
>N'oublie pas de réactiver ton anti-virus
0