Infecté de virus
josse-02
-
ep44 Messages postés 7415 Date d'inscription Statut Contributeur Dernière intervention -
ep44 Messages postés 7415 Date d'inscription Statut Contributeur Dernière intervention -
Bonjour,
Mon ordianteur est depuis peu infesté de virus détéctés par avast j'ai fais un scan hijackthis qui donne ça:
Logfile of random's system information tool 1.06 (written by random/random)
Run by KhaLed_SofT at 2009-12-19 17:55:35
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 30 GB (79%) free of 38 GB
Total RAM: 503 MB (24% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:56:02, on 19/12/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\USB Disk Security\USBGuard.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\REVAService.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\IEUM.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\KhaLed_SofT\Mes documents\Downloads\RSIT.exe
C:\Documents and Settings\KhaLed_SofT\Mes documents\Downloads\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\KhaLed_SofT.exe
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.wana.ma/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [winupdate86.exe] C:\WINDOWS\system32\winupdate86.exe
O4 - HKLM\..\Run: [USB Antivirus] C:\Program Files\USB Disk Security\USBGuard.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [REVAService] C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\REVAService.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [USB Threat Defender] C:\Program Files\ArzooSoft Solutions\USB Threat Defender\utdefender.exe /b
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe" /tray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/fr/scan8/oscan8.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{9E1D1189-5CA8-4620-A326-54317822CC77}: NameServer = 192.168.60.55 192.168.50.55
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7044 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\12-19-2009_150956.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2009-09-09 173488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-12-01 329312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll [2009-10-20 68112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll [2009-10-20 268816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe [2009-10-20 340456]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-05 208952]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-05 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-12-01 198160]
"winupdate86.exe"=C:\WINDOWS\system32\winupdate86.exe []
"USB Antivirus"=C:\Program Files\USB Disk Security\USBGuard.exe [2008-09-23 798720]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 15360]
"REVAService"=C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\REVAService.exe [2008-12-02 23040]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2009-09-09 3118512]
"SuperCopier2.exe"=C:\Program Files\SuperCopier2\SuperCopier2.exe [2006-07-07 1052672]
"USB Threat Defender"=C:\Program Files\ArzooSoft Solutions\USB Threat Defender\utdefender.exe /b []
"BitComet"=C:\Program Files\BitComet\BitComet.exe /tray []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2009-10-20 219664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=
"NoSetActiveDesktop"=
"NoActiveDesktopChanges"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\DOCUME~1\KHALED~1\LOCALS~1\Temp\Alcohol.exe"="C:\DOCUME~1\KHALED~1\LOCALS~1\Temp\Alcohol.exe:*:Enabled:Windows Messanger"
"C:\Program Files\Internet Download Manager\IDMan.exe"="C:\Program Files\Internet Download Manager\IDMan.exe:*:Disabled:Internet Download Manager (IDM)"
"C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe"="C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe:*:Disabled:Foxit PDF Editor, the first REAL editor for PDF files!"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
======List of files/folders created in the last 1 months======
2009-12-19 17:55:36 ----D---- C:\Program Files\trend micro
2009-12-19 17:55:35 ----D---- C:\rsit
2009-12-19 17:36:23 ----D---- C:\Program Files\InternetSecurity2010
2009-12-19 17:36:23 ----D---- C:\Program Files\Google
2009-12-19 17:36:23 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Google
2009-12-19 15:56:59 ----A---- C:\WINDOWS\TECHINFO.GABES 98660560 ANTI COPIE.EXE Setup Log.txt
2009-12-19 15:42:53 ----D---- C:\WINDOWS\BDOSCAN8
2009-12-19 15:14:06 ----D---- C:\Program Files\USB Disk Security
2009-12-18 21:33:06 ----D---- C:\Downloads
2009-12-18 21:32:18 ----D---- C:\Program Files\BitComet
2009-12-14 21:15:26 ----A---- C:\WINDOWS\unin040c.exe
2009-12-08 19:15:04 ----RSHD---- C:\Feast
2009-12-06 15:44:42 ----D---- C:\Program Files\MSECache
2009-12-06 15:32:37 ----A---- C:\WINDOWS\system32\BASSMOD.dll
2009-12-06 00:56:36 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Ford Street Racing
2009-12-06 00:25:27 ----D---- C:\Program Files\UHARC for Windows
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\vorbisenc.dll
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\vorbis.dll
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\OggDS.dll
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\ogg.dll
2009-12-01 22:09:50 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2009-12-01 21:59:35 ----A---- C:\WINDOWS\system32\pndx5032.dll
2009-12-01 21:59:34 ----A---- C:\WINDOWS\system32\pndx5016.dll
2009-12-01 21:58:25 ----D---- C:\Program Files\Fichiers communs\xing shared
2009-12-01 21:53:12 ----A---- C:\WINDOWS\system32\msvcr71.dll
2009-12-01 21:53:12 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-12-01 21:53:11 ----A---- C:\WINDOWS\system32\pncrt.dll
2009-12-01 21:52:42 ----D---- C:\Program Files\Real
2009-12-01 21:52:02 ----D---- C:\Program Files\Fichiers communs\Real
2009-12-01 21:50:47 ----D---- C:\Documents and Settings\All Users\Application Data\Real
2009-12-01 21:49:24 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Real
2009-12-01 11:12:25 ----D---- C:\WINDOWS\system32\NtmsData
2009-11-30 22:02:51 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Foxit
2009-11-30 22:02:50 ----D---- C:\Program Files\Foxit Software
2009-11-30 21:01:03 ----D---- C:\Program Files\Microsoft Works
2009-11-30 21:00:35 ----D---- C:\Program Files\Microsoft Visual Studio
2009-11-30 21:00:35 ----D---- C:\Program Files\Fichiers communs\DESIGNER
2009-11-30 20:53:43 ----D---- C:\WINDOWS\SHELLNEW
2009-11-30 20:52:45 ----D---- C:\Program Files\Microsoft Office
2009-11-30 20:52:39 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2009-11-30 12:48:45 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Macromedia
2009-11-30 12:48:44 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Adobe
2009-11-30 11:39:20 ----D---- C:\Program Files\SuperCopier2
2009-11-30 11:36:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-11-30 11:36:36 ----D---- C:\Program Files\Windows Live
2009-11-30 10:49:42 ----D---- C:\Program Files\CodeRouteMarocMP3
2009-11-30 09:38:48 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\IDM
2009-11-30 09:38:48 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\DMCache
2009-11-30 09:38:41 ----D---- C:\Program Files\Internet Download Manager
2009-11-30 09:36:38 ----SHD---- C:\RECYCLER
2009-11-30 09:36:35 ----A---- C:\WINDOWS\BricoPackUninst.cmd
2009-11-30 09:31:10 ----A---- C:\WINDOWS\BricoPackUninst.txt
2009-11-30 09:31:10 ----A---- C:\WINDOWS\BricoPackFoldersDelete.cmd
2009-11-30 09:30:57 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-11-30 09:30:21 ----D---- C:\WINDOWS\BricoPacks
2009-11-30 09:30:13 ----A---- C:\WINDOWS\ModemLog_LGE EVDOM USB Modem.txt
2009-11-30 09:30:07 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\WinRAR
2009-11-30 09:28:58 ----D---- C:\Program Files\WinRAR
2009-11-30 09:26:54 ----D---- C:\Program Files\LG Electronics
2009-11-30 09:26:18 ----D---- C:\LG Electronics
2009-11-30 00:04:49 ----A---- C:\WINDOWS\system32\igfxres.dll
2009-11-30 00:03:48 ----A---- C:\WINDOWS\system32\chtbrkr.dll
2009-11-30 00:03:48 ----A---- C:\WINDOWS\system32\chsbrkr.dll
2009-11-30 00:03:47 ----A---- C:\WINDOWS\system32\korwbrkr.dll
2009-11-30 00:03:46 ----A---- C:\WINDOWS\system32\msir3jp.dll
2009-11-30 00:03:14 ----A---- C:\WINDOWS\system32\c_g18030.dll
2009-11-30 00:03:13 ----A---- C:\WINDOWS\system32\kbd101a.dll
2009-11-30 00:03:02 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdnec95.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbdibm02.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbdax2.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbd106n.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbd101.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
2009-11-30 00:02:38 ----A---- C:\WINDOWS\system32\c_is2022.dll
2009-11-30 00:02:34 ----A---- C:\WINDOWS\system32\uniime.dll
2009-11-30 00:02:27 ----A---- C:\WINDOWS\system32\imjp81k.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbdkor.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbdjpn.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbd106.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbd103.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbd101c.dll
2009-11-30 00:02:20 ----A---- C:\WINDOWS\system32\kbd101b.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdarme.dll
2009-11-30 00:02:19 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdintel.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
2009-11-30 00:02:17 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
2009-11-30 00:02:17 ----RA---- C:\WINDOWS\system32\kbdintam.dll
2009-11-30 00:02:17 ----RA---- C:\WINDOWS\system32\kbdindev.dll
2009-11-30 00:02:17 ----A---- C:\WINDOWS\system32\c_iscii.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbdfa.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbda3.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbda2.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbda1.dll
2009-11-30 00:02:13 ----A---- C:\WINDOWS\system32\kbdusa.dll
2009-11-30 00:02:07 ----RA---- C:\WINDOWS\system32\kbdheb.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth3.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth2.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth1.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth0.dll
2009-11-30 00:01:59 ----A---- C:\WINDOWS\system32\ftlx041e.dll
2009-11-30 00:01:31 ----D---- C:\Program Files\Kaspersky Lab
2009-11-30 00:01:31 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-11-30 00:00:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-11-29 23:59:53 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2009-11-29 23:59:53 ----A---- C:\WINDOWS\system32\SMMedia.dll
2009-11-29 23:59:51 ----A---- C:\WINDOWS\SynthCoreA.Dll
2009-11-29 23:59:51 ----A---- C:\WINDOWS\SynCor.exe
2009-11-29 23:59:50 ----A---- C:\WINDOWS\system32\SynthCore11Resources.dll
2009-11-29 23:59:50 ----A---- C:\WINDOWS\system32\Syncor11.dll
2009-11-29 23:59:50 ----A---- C:\WINDOWS\system32\S11thk32.dll
2009-11-29 23:59:49 ----D---- C:\Program Files\Analog Devices
2009-11-29 23:59:49 ----A---- C:\WINDOWS\system32\DSndUp.exe
2009-11-29 23:59:49 ----A---- C:\WINDOWS\system32\CleanUp.exe
2009-11-29 23:59:49 ----A---- C:\WINDOWS\system32\a3d.dll
2009-11-29 23:59:48 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-29 23:59:48 ----A---- C:\WINDOWS\system32\msssc.dll
2009-11-29 23:59:45 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-11-29 23:59:09 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-11-29 23:58:13 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Identities
2009-11-29 23:58:12 ----HD---- C:\Program Files\Uninstall Information
2009-11-29 23:58:04 ----ASH---- C:\Documents and Settings\KhaLed_SofT\Application Data\desktop.ini
2009-11-29 23:58:03 ----SD---- C:\Documents and Settings\KhaLed_SofT\Application Data\Microsoft
2009-11-29 23:57:01 ----D---- C:\WINDOWS\SoftwareDistribution
2009-11-29 23:57:00 ----D---- C:\WINDOWS\Prefetch
2009-11-29 23:56:59 ----SD---- C:\WINDOWS\system32\Microsoft
2009-11-29 23:56:59 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-29 23:34:36 ----D---- C:\WINDOWS\system32\xircom
2009-11-29 23:34:36 ----D---- C:\Program Files\xerox
2009-11-29 23:34:36 ----D---- C:\Program Files\microsoft frontpage
2009-11-29 23:34:13 ----A---- C:\WINDOWS\control.ini
2009-11-29 23:34:13 ----A---- C:\AUTOEXEC.BAT
2009-11-29 23:33:56 ----A---- C:\WINDOWS\OEWABLog.txt
2009-11-29 23:33:51 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-11-29 23:32:55 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-11-29 23:32:55 ----RD---- C:\WINDOWS\Offline Web Pages
2009-11-29 23:32:55 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-11-29 23:32:49 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-11-29 23:32:45 ----HD---- C:\Program Files\WindowsUpdate
2009-11-29 23:32:40 ----D---- C:\Program Files\Services en ligne
2009-11-29 23:32:22 ----D---- C:\WINDOWS\system32\DirectX
2009-11-29 23:32:02 ----A---- C:\WINDOWS\system32\atrace.dll
2009-11-29 23:32:00 ----A---- C:\WINDOWS\system32\desktop.ini
2009-11-29 23:32:00 ----A---- C:\WINDOWS\desktop.ini
2009-11-29 23:31:52 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-11-29 23:31:51 ----A---- C:\WINDOWS\system32\acctres.dll
2009-11-29 23:31:50 ----D---- C:\Program Files\Fichiers communs\Services
2009-11-29 23:31:48 ----SD---- C:\WINDOWS\Tasks
2009-11-29 23:31:48 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-11-29 23:31:47 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-11-29 23:31:43 ----D---- C:\WINDOWS\srchasst
2009-11-29 23:31:42 ----D---- C:\WINDOWS\system32\Macromed
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wups.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuauclt.exe
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-11-29 23:31:34 ----D---- C:\Program Files\Movie Maker
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-11-29 23:31:26 ----D---- C:\WINDOWS\system32\Restore
2009-11-29 23:31:26 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-11-29 23:31:26 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-11-29 23:31:26 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\srsvc.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\srclient.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\ils.dll
2009-11-29 23:31:24 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-11-29 23:31:24 ----A---- C:\WINDOWS\system32\msconf.dll
2009-11-29 23:31:24 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-11-29 23:31:21 ----D---- C:\Program Files\NetMeeting
2009-11-29 23:31:21 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-11-29 23:31:21 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-11-29 23:31:20 ----A---- C:\WINDOWS\system32\inetres.dll
2009-11-29 23:31:20 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-11-29 23:31:18 ----D---- C:\Program Files\Outlook Express
2009-11-29 23:31:18 ----A---- C:\WINDOWS\system32\schedsvc.dll
2009-11-29 23:31:18 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-11-29 23:31:18 ----A---- C:\WINDOWS\system32\mstask.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\isign32.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-11-29 23:31:11 ----D---- C:\Program Files\Fichiers communs\System
2009-11-29 23:31:10 ----D---- C:\Program Files\Internet Explorer
2009-11-29 23:30:29 ----A---- C:\WINDOWS\vbaddin.ini
2009-11-29 23:30:29 ----A---- C:\WINDOWS\vb.ini
2009-11-29 23:30:24 ----D---- C:\WINDOWS\Registration
2009-11-29 23:30:16 ----D---- C:\Program Files\Windows Media Player
2009-11-29 23:30:16 ----D---- C:\Program Files\Online Services
2009-11-29 23:30:10 ----D---- C:\Program Files\Messenger
2009-11-29 23:30:06 ----D---- C:\Program Files\MSN Gaming Zone
2009-11-29 23:30:06 ----A---- C:\WINDOWS\system32\write.exe
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\hticons.dll
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\avwav.dll
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-11-29 23:29:56 ----A---- C:\WINDOWS\system32\winchat.exe
2009-11-29 23:29:49 ----A---- C:\WINDOWS\system32\getuname.dll
2009-11-29 23:29:49 ----A---- C:\WINDOWS\system32\charmap.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\winmine.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\sol.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\calc.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tskill.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tscon.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\shadow.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\reset.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\freecell.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\regini.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\msg.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\logoff.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\stclient.dll
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-11-29 23:29:38 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-11-29 23:29:29 ----D---- C:\Program Files\MSN
2009-11-29 23:29:28 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-11-29 23:29:27 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-11-29 23:29:27 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-11-29 23:29:27 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-11-29 23:29:26 ----D---- C:\Program Files\Windows NT
2009-11-29 23:29:26 ----A---- C:\WINDOWS\system32\spider.exe
2009-11-29 23:29:26 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-11-29 23:29:26 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-11-29 23:29:25 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-11-29 23:29:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-11-29 23:29:25 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\termsrv.dll
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-11-29 23:29:23 ----D---- C:\WINDOWS\system32\MsDtc
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-11-29 23:29:21 ----D---- C:\WINDOWS\system32\Com
2009-11-29 23:29:21 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-11-29 23:29:21 ----A---- C:\WINDOWS\system32\colbact.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-11-29 23:29:19 ----A---- C:\WINDOWS\system32\comuid.dll
2009-11-29 23:29:19 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-11-29 23:29:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-11-29 23:28:00 ----A---- C:\WINDOWS\system32\h323log.txt
2009-11-29 23:25:30 ----A---- C:\WINDOWS\system32\usbui.dll
2009-11-29 23:24:25 ----SHD---- C:\WINDOWS\Installer
2009-11-29 23:24:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-11-29 23:24:24 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-11-29 23:24:24 ----A---- C:\WINDOWS\ODBCINST.INI
2009-11-29 23:24:20 ----RD---- C:\Program Files
2009-11-29 23:24:20 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2009-11-29 23:24:20 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-11-29 23:24:20 ----D---- C:\Program Files\Fichiers communs
2009-11-29 23:24:16 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-11-29 23:24:16 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-11-29 23:24:16 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-11-29 23:24:14 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-11-29 23:24:01 ----A---- C:\WINDOWS\system32\irclass.dll
2009-11-29 23:24:01 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-11-29 23:24:00 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-11-29 23:24:00 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-11-29 23:24:00 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-11-29 23:23:57 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-11-29 23:23:56 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-11-29 23:23:56 ----A---- C:\WINDOWS\system32\batt.dll
2009-11-29 23:23:55 ----A---- C:\WINDOWS\notepad.exe
2009-11-29 23:23:54 ----A---- C:\WINDOWS\system32\storprop.dll
2009-11-29 23:23:46 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-11-29 23:23:40 ----RA---- C:\WINDOWS\SET8.tmp
2009-11-29 23:23:36 ----RA---- C:\WINDOWS\SET4.tmp
2009-11-29 23:23:33 ----RA---- C:\WINDOWS\SET3.tmp
2009-11-29 23:23:27 ----D---- C:\WINDOWS\system32\CatRoot2
2009-11-29 23:23:27 ----D---- C:\WINDOWS\system32\CatRoot
2009-11-29 23:23:21 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-11-29 23:22:53 ----A---- C:\WINDOWS\setuplog.txt
2009-11-29 23:22:49 ----SHD---- C:\System Volume Information
2009-11-29 23:22:49 ----D---- C:\Documents and Settings
2009-11-29 23:22:07 ----SH---- C:\boot.ini
2009-11-29 23:16:48 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-11-29 23:16:48 ----RSD---- C:\WINDOWS\Fonts
2009-11-29 23:16:48 ----RD---- C:\WINDOWS\Web
2009-11-29 23:16:48 ----HD---- C:\WINDOWS\inf
2009-11-29 23:16:48 ----D---- C:\WINDOWS\WinSxS
2009-11-29 23:16:48 ----D---- C:\WINDOWS\twain_32
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Temp
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\wins
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\wbem
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\usmt
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\spool
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\ShellExt
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\Setup
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\ras
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\oobe
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\npp
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\mui
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\inetsrv
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\IME
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\icsxml
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\ias
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\export
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\drivers
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\dhcp
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\config
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\3com_dmi
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\3076
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\2052
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1054
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1042
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1041
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1037
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1036
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1033
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1031
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1028
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1025
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system
2009-11-29 23:16:48 ----D---- C:\WINDOWS\security
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Resources
2009-11-29 23:16:48 ----D---- C:\WINDOWS\repair
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Provisioning
2009-11-29 23:16:48 ----D---- C:\WINDOWS\PeerNet
2009-11-29 23:16:48 ----D---- C:\WINDOWS\pchealth
2009-11-29 23:16:48 ----D---- C:\WINDOWS\mui
2009-11-29 23:16:48 ----D---- C:\WINDOWS\msapps
2009-11-29 23:16:48 ----D---- C:\WINDOWS\msagent
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Media
2009-11-29 23:16:48 ----D---- C:\WINDOWS\java
2009-11-29 23:16:48 ----D---- C:\WINDOWS\ime
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Help
2009-11-29 23:16:48 ----D---- C:\WINDOWS\ehome
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Driver Cache
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Debug
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Cursors
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Connection Wizard
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Config
2009-11-29 23:16:48 ----D---- C:\WINDOWS\AppPatch
2009-11-29 23:16:48 ----D---- C:\WINDOWS\addins
2009-11-29 23:16:48 ----D---- C:\WINDOWS
======List of files/folders modified in the last 1 months======
2009-11-30 09:36:34 ----A---- C:\WINDOWS\system32\uxtheme.dll
2009-11-30 00:04:35 ----A---- C:\WINDOWS\system.ini
2009-11-29 23:34:12 ----A---- C:\WINDOWS\win.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-05 40320]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2009-11-30 315408]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-05 12032]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2004-08-05 9600]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2009-10-02 19472]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-05 12288]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-05 26624]
R3 UsbEvdomAtc;LGE EVDOM USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgevdomatc.sys [2008-08-26 19840]
R3 usbevdombus;LGE EVDOM Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgevdombus.sys [2008-08-26 13696]
R3 UsbEvdomDiag;LGE EVDOM USB Serial DM Port; C:\WINDOWS\system32\DRIVERS\lgevdomdiag.sys [2008-08-26 19840]
R3 USBEVDOmModem;LGE EVDOM USB Modem; C:\WINDOWS\system32\DRIVERS\lgevdommodem.sys [2008-08-26 21632]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-05 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-05 20480]
S3 RkHit;RkHit; \??\C:\WINDOWS\system32\drivers\RKHit.sys []
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S4 mchInjDrv;mchInjDrv; \??\C:\DOCUME~1\KHALED~1\LOCALS~1\Temp\mc22.tmp []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVP;Kaspersky Anti-Virus; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe [2009-10-20 340456]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------
Mon ordianteur est depuis peu infesté de virus détéctés par avast j'ai fais un scan hijackthis qui donne ça:
Logfile of random's system information tool 1.06 (written by random/random)
Run by KhaLed_SofT at 2009-12-19 17:55:35
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 30 GB (79%) free of 38 GB
Total RAM: 503 MB (24% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:56:02, on 19/12/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\USB Disk Security\USBGuard.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\REVAService.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\IEUM.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\KhaLed_SofT\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\KhaLed_SofT\Mes documents\Downloads\RSIT.exe
C:\Documents and Settings\KhaLed_SofT\Mes documents\Downloads\RSIT.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\KhaLed_SofT.exe
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.wana.ma/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [winupdate86.exe] C:\WINDOWS\system32\winupdate86.exe
O4 - HKLM\..\Run: [USB Antivirus] C:\Program Files\USB Disk Security\USBGuard.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [REVAService] C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\REVAService.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [USB Threat Defender] C:\Program Files\ArzooSoft Solutions\USB Threat Defender\utdefender.exe /b
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe" /tray
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/fr/scan8/oscan8.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{9E1D1189-5CA8-4620-A326-54317822CC77}: NameServer = 192.168.60.55 192.168.50.55
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7044 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\12-19-2009_150956.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2009-09-09 173488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-12-01 329312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll [2009-10-20 68112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll [2009-10-20 268816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"DrvLsnr"=C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe [2003-05-08 69632]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe [2009-10-20 340456]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-05 208952]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-05 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-05 455168]
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-12-01 198160]
"winupdate86.exe"=C:\WINDOWS\system32\winupdate86.exe []
"USB Antivirus"=C:\Program Files\USB Disk Security\USBGuard.exe [2008-09-23 798720]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 15360]
"REVAService"=C:\Program Files\LG Electronics\LG EV-DO Rev.A USB Modem\Modem Software\REVAService.exe [2008-12-02 23040]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2009-09-09 3118512]
"SuperCopier2.exe"=C:\Program Files\SuperCopier2\SuperCopier2.exe [2006-07-07 1052672]
"USB Threat Defender"=C:\Program Files\ArzooSoft Solutions\USB Threat Defender\utdefender.exe /b []
"BitComet"=C:\Program Files\BitComet\BitComet.exe /tray []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2009-10-20 219664]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=149
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=
"NoSetActiveDesktop"=
"NoActiveDesktopChanges"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\DOCUME~1\KHALED~1\LOCALS~1\Temp\Alcohol.exe"="C:\DOCUME~1\KHALED~1\LOCALS~1\Temp\Alcohol.exe:*:Enabled:Windows Messanger"
"C:\Program Files\Internet Download Manager\IDMan.exe"="C:\Program Files\Internet Download Manager\IDMan.exe:*:Disabled:Internet Download Manager (IDM)"
"C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe"="C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe:*:Disabled:Foxit PDF Editor, the first REAL editor for PDF files!"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
======List of files/folders created in the last 1 months======
2009-12-19 17:55:36 ----D---- C:\Program Files\trend micro
2009-12-19 17:55:35 ----D---- C:\rsit
2009-12-19 17:36:23 ----D---- C:\Program Files\InternetSecurity2010
2009-12-19 17:36:23 ----D---- C:\Program Files\Google
2009-12-19 17:36:23 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Google
2009-12-19 15:56:59 ----A---- C:\WINDOWS\TECHINFO.GABES 98660560 ANTI COPIE.EXE Setup Log.txt
2009-12-19 15:42:53 ----D---- C:\WINDOWS\BDOSCAN8
2009-12-19 15:14:06 ----D---- C:\Program Files\USB Disk Security
2009-12-18 21:33:06 ----D---- C:\Downloads
2009-12-18 21:32:18 ----D---- C:\Program Files\BitComet
2009-12-14 21:15:26 ----A---- C:\WINDOWS\unin040c.exe
2009-12-08 19:15:04 ----RSHD---- C:\Feast
2009-12-06 15:44:42 ----D---- C:\Program Files\MSECache
2009-12-06 15:32:37 ----A---- C:\WINDOWS\system32\BASSMOD.dll
2009-12-06 00:56:36 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Ford Street Racing
2009-12-06 00:25:27 ----D---- C:\Program Files\UHARC for Windows
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\vorbisenc.dll
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\vorbis.dll
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\OggDS.dll
2009-12-05 22:40:19 ----A---- C:\WINDOWS\system32\ogg.dll
2009-12-01 22:09:50 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2009-12-01 21:59:35 ----A---- C:\WINDOWS\system32\pndx5032.dll
2009-12-01 21:59:34 ----A---- C:\WINDOWS\system32\pndx5016.dll
2009-12-01 21:58:25 ----D---- C:\Program Files\Fichiers communs\xing shared
2009-12-01 21:53:12 ----A---- C:\WINDOWS\system32\msvcr71.dll
2009-12-01 21:53:12 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-12-01 21:53:11 ----A---- C:\WINDOWS\system32\pncrt.dll
2009-12-01 21:52:42 ----D---- C:\Program Files\Real
2009-12-01 21:52:02 ----D---- C:\Program Files\Fichiers communs\Real
2009-12-01 21:50:47 ----D---- C:\Documents and Settings\All Users\Application Data\Real
2009-12-01 21:49:24 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Real
2009-12-01 11:12:25 ----D---- C:\WINDOWS\system32\NtmsData
2009-11-30 22:02:51 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Foxit
2009-11-30 22:02:50 ----D---- C:\Program Files\Foxit Software
2009-11-30 21:01:03 ----D---- C:\Program Files\Microsoft Works
2009-11-30 21:00:35 ----D---- C:\Program Files\Microsoft Visual Studio
2009-11-30 21:00:35 ----D---- C:\Program Files\Fichiers communs\DESIGNER
2009-11-30 20:53:43 ----D---- C:\WINDOWS\SHELLNEW
2009-11-30 20:52:45 ----D---- C:\Program Files\Microsoft Office
2009-11-30 20:52:39 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2009-11-30 12:48:45 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Macromedia
2009-11-30 12:48:44 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Adobe
2009-11-30 11:39:20 ----D---- C:\Program Files\SuperCopier2
2009-11-30 11:36:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-11-30 11:36:36 ----D---- C:\Program Files\Windows Live
2009-11-30 10:49:42 ----D---- C:\Program Files\CodeRouteMarocMP3
2009-11-30 09:38:48 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\IDM
2009-11-30 09:38:48 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\DMCache
2009-11-30 09:38:41 ----D---- C:\Program Files\Internet Download Manager
2009-11-30 09:36:38 ----SHD---- C:\RECYCLER
2009-11-30 09:36:35 ----A---- C:\WINDOWS\BricoPackUninst.cmd
2009-11-30 09:31:10 ----A---- C:\WINDOWS\BricoPackUninst.txt
2009-11-30 09:31:10 ----A---- C:\WINDOWS\BricoPackFoldersDelete.cmd
2009-11-30 09:30:57 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-11-30 09:30:21 ----D---- C:\WINDOWS\BricoPacks
2009-11-30 09:30:13 ----A---- C:\WINDOWS\ModemLog_LGE EVDOM USB Modem.txt
2009-11-30 09:30:07 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\WinRAR
2009-11-30 09:28:58 ----D---- C:\Program Files\WinRAR
2009-11-30 09:26:54 ----D---- C:\Program Files\LG Electronics
2009-11-30 09:26:18 ----D---- C:\LG Electronics
2009-11-30 00:04:49 ----A---- C:\WINDOWS\system32\igfxres.dll
2009-11-30 00:03:48 ----A---- C:\WINDOWS\system32\chtbrkr.dll
2009-11-30 00:03:48 ----A---- C:\WINDOWS\system32\chsbrkr.dll
2009-11-30 00:03:47 ----A---- C:\WINDOWS\system32\korwbrkr.dll
2009-11-30 00:03:46 ----A---- C:\WINDOWS\system32\msir3jp.dll
2009-11-30 00:03:14 ----A---- C:\WINDOWS\system32\c_g18030.dll
2009-11-30 00:03:13 ----A---- C:\WINDOWS\system32\kbd101a.dll
2009-11-30 00:03:02 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdnec95.dll
2009-11-30 00:03:01 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbdibm02.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbdax2.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbd106n.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\kbd101.dll
2009-11-30 00:03:00 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
2009-11-30 00:02:38 ----A---- C:\WINDOWS\system32\c_is2022.dll
2009-11-30 00:02:34 ----A---- C:\WINDOWS\system32\uniime.dll
2009-11-30 00:02:27 ----A---- C:\WINDOWS\system32\imjp81k.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbdkor.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbdjpn.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbd106.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbd103.dll
2009-11-30 00:02:23 ----A---- C:\WINDOWS\system32\kbd101c.dll
2009-11-30 00:02:20 ----A---- C:\WINDOWS\system32\kbd101b.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
2009-11-30 00:02:19 ----RA---- C:\WINDOWS\system32\kbdarme.dll
2009-11-30 00:02:19 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdintel.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
2009-11-30 00:02:18 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
2009-11-30 00:02:17 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
2009-11-30 00:02:17 ----RA---- C:\WINDOWS\system32\kbdintam.dll
2009-11-30 00:02:17 ----RA---- C:\WINDOWS\system32\kbdindev.dll
2009-11-30 00:02:17 ----A---- C:\WINDOWS\system32\c_iscii.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
2009-11-30 00:02:14 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbdfa.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbda3.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbda2.dll
2009-11-30 00:02:13 ----RA---- C:\WINDOWS\system32\kbda1.dll
2009-11-30 00:02:13 ----A---- C:\WINDOWS\system32\kbdusa.dll
2009-11-30 00:02:07 ----RA---- C:\WINDOWS\system32\kbdheb.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth3.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth2.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth1.dll
2009-11-30 00:01:59 ----RA---- C:\WINDOWS\system32\kbdth0.dll
2009-11-30 00:01:59 ----A---- C:\WINDOWS\system32\ftlx041e.dll
2009-11-30 00:01:31 ----D---- C:\Program Files\Kaspersky Lab
2009-11-30 00:01:31 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-11-30 00:00:13 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-11-29 23:59:53 ----A---- C:\WINDOWS\system32\wdmioctl.dll
2009-11-29 23:59:53 ----A---- C:\WINDOWS\system32\SMMedia.dll
2009-11-29 23:59:51 ----A---- C:\WINDOWS\SynthCoreA.Dll
2009-11-29 23:59:51 ----A---- C:\WINDOWS\SynCor.exe
2009-11-29 23:59:50 ----A---- C:\WINDOWS\system32\SynthCore11Resources.dll
2009-11-29 23:59:50 ----A---- C:\WINDOWS\system32\Syncor11.dll
2009-11-29 23:59:50 ----A---- C:\WINDOWS\system32\S11thk32.dll
2009-11-29 23:59:49 ----D---- C:\Program Files\Analog Devices
2009-11-29 23:59:49 ----A---- C:\WINDOWS\system32\DSndUp.exe
2009-11-29 23:59:49 ----A---- C:\WINDOWS\system32\CleanUp.exe
2009-11-29 23:59:49 ----A---- C:\WINDOWS\system32\a3d.dll
2009-11-29 23:59:48 ----HD---- C:\Program Files\InstallShield Installation Information
2009-11-29 23:59:48 ----A---- C:\WINDOWS\system32\msssc.dll
2009-11-29 23:59:45 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-11-29 23:59:09 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-11-29 23:58:13 ----D---- C:\Documents and Settings\KhaLed_SofT\Application Data\Identities
2009-11-29 23:58:12 ----HD---- C:\Program Files\Uninstall Information
2009-11-29 23:58:04 ----ASH---- C:\Documents and Settings\KhaLed_SofT\Application Data\desktop.ini
2009-11-29 23:58:03 ----SD---- C:\Documents and Settings\KhaLed_SofT\Application Data\Microsoft
2009-11-29 23:57:01 ----D---- C:\WINDOWS\SoftwareDistribution
2009-11-29 23:57:00 ----D---- C:\WINDOWS\Prefetch
2009-11-29 23:56:59 ----SD---- C:\WINDOWS\system32\Microsoft
2009-11-29 23:56:59 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-29 23:34:36 ----D---- C:\WINDOWS\system32\xircom
2009-11-29 23:34:36 ----D---- C:\Program Files\xerox
2009-11-29 23:34:36 ----D---- C:\Program Files\microsoft frontpage
2009-11-29 23:34:13 ----A---- C:\WINDOWS\control.ini
2009-11-29 23:34:13 ----A---- C:\AUTOEXEC.BAT
2009-11-29 23:33:56 ----A---- C:\WINDOWS\OEWABLog.txt
2009-11-29 23:33:51 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-11-29 23:32:55 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-11-29 23:32:55 ----RD---- C:\WINDOWS\Offline Web Pages
2009-11-29 23:32:55 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-11-29 23:32:49 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-11-29 23:32:45 ----HD---- C:\Program Files\WindowsUpdate
2009-11-29 23:32:40 ----D---- C:\Program Files\Services en ligne
2009-11-29 23:32:22 ----D---- C:\WINDOWS\system32\DirectX
2009-11-29 23:32:02 ----A---- C:\WINDOWS\system32\atrace.dll
2009-11-29 23:32:00 ----A---- C:\WINDOWS\system32\desktop.ini
2009-11-29 23:32:00 ----A---- C:\WINDOWS\desktop.ini
2009-11-29 23:31:52 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-11-29 23:31:51 ----A---- C:\WINDOWS\system32\acctres.dll
2009-11-29 23:31:50 ----D---- C:\Program Files\Fichiers communs\Services
2009-11-29 23:31:48 ----SD---- C:\WINDOWS\Tasks
2009-11-29 23:31:48 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-11-29 23:31:47 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-11-29 23:31:43 ----D---- C:\WINDOWS\srchasst
2009-11-29 23:31:42 ----D---- C:\WINDOWS\system32\Macromed
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-11-29 23:31:39 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wups.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuauclt.exe
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-11-29 23:31:38 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-11-29 23:31:34 ----D---- C:\Program Files\Movie Maker
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-11-29 23:31:30 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-11-29 23:31:26 ----D---- C:\WINDOWS\system32\Restore
2009-11-29 23:31:26 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-11-29 23:31:26 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-11-29 23:31:26 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\srsvc.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\srclient.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-11-29 23:31:25 ----A---- C:\WINDOWS\system32\ils.dll
2009-11-29 23:31:24 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-11-29 23:31:24 ----A---- C:\WINDOWS\system32\msconf.dll
2009-11-29 23:31:24 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-11-29 23:31:21 ----D---- C:\Program Files\NetMeeting
2009-11-29 23:31:21 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-11-29 23:31:21 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-11-29 23:31:20 ----A---- C:\WINDOWS\system32\inetres.dll
2009-11-29 23:31:20 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-11-29 23:31:18 ----D---- C:\Program Files\Outlook Express
2009-11-29 23:31:18 ----A---- C:\WINDOWS\system32\schedsvc.dll
2009-11-29 23:31:18 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-11-29 23:31:18 ----A---- C:\WINDOWS\system32\mstask.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\isign32.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-11-29 23:31:17 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-11-29 23:31:11 ----D---- C:\Program Files\Fichiers communs\System
2009-11-29 23:31:10 ----D---- C:\Program Files\Internet Explorer
2009-11-29 23:30:29 ----A---- C:\WINDOWS\vbaddin.ini
2009-11-29 23:30:29 ----A---- C:\WINDOWS\vb.ini
2009-11-29 23:30:24 ----D---- C:\WINDOWS\Registration
2009-11-29 23:30:16 ----D---- C:\Program Files\Windows Media Player
2009-11-29 23:30:16 ----D---- C:\Program Files\Online Services
2009-11-29 23:30:10 ----D---- C:\Program Files\Messenger
2009-11-29 23:30:06 ----D---- C:\Program Files\MSN Gaming Zone
2009-11-29 23:30:06 ----A---- C:\WINDOWS\system32\write.exe
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\hticons.dll
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\avwav.dll
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-11-29 23:29:57 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-11-29 23:29:56 ----A---- C:\WINDOWS\system32\winchat.exe
2009-11-29 23:29:49 ----A---- C:\WINDOWS\system32\getuname.dll
2009-11-29 23:29:49 ----A---- C:\WINDOWS\system32\charmap.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\winmine.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\sol.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-11-29 23:29:48 ----A---- C:\WINDOWS\system32\calc.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tskill.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\tscon.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\shadow.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\reset.exe
2009-11-29 23:29:47 ----A---- C:\WINDOWS\system32\freecell.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\regini.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\msg.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\logoff.exe
2009-11-29 23:29:46 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-11-29 23:29:45 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\stclient.dll
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-11-29 23:29:44 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-11-29 23:29:38 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-11-29 23:29:29 ----D---- C:\Program Files\MSN
2009-11-29 23:29:28 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-11-29 23:29:27 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-11-29 23:29:27 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-11-29 23:29:27 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-11-29 23:29:26 ----D---- C:\Program Files\Windows NT
2009-11-29 23:29:26 ----A---- C:\WINDOWS\system32\spider.exe
2009-11-29 23:29:26 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-11-29 23:29:26 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-11-29 23:29:25 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-11-29 23:29:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-11-29 23:29:25 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\termsrv.dll
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-11-29 23:29:24 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-11-29 23:29:23 ----D---- C:\WINDOWS\system32\MsDtc
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-11-29 23:29:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-11-29 23:29:22 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-11-29 23:29:21 ----D---- C:\WINDOWS\system32\Com
2009-11-29 23:29:21 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-11-29 23:29:21 ----A---- C:\WINDOWS\system32\colbact.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-11-29 23:29:20 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-11-29 23:29:19 ----A---- C:\WINDOWS\system32\comuid.dll
2009-11-29 23:29:19 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-11-29 23:29:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-11-29 23:29:12 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-11-29 23:28:00 ----A---- C:\WINDOWS\system32\h323log.txt
2009-11-29 23:25:30 ----A---- C:\WINDOWS\system32\usbui.dll
2009-11-29 23:24:25 ----SHD---- C:\WINDOWS\Installer
2009-11-29 23:24:25 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-11-29 23:24:24 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-11-29 23:24:24 ----A---- C:\WINDOWS\ODBCINST.INI
2009-11-29 23:24:20 ----RD---- C:\Program Files
2009-11-29 23:24:20 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2009-11-29 23:24:20 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-11-29 23:24:20 ----D---- C:\Program Files\Fichiers communs
2009-11-29 23:24:16 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-11-29 23:24:16 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-11-29 23:24:16 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-11-29 23:24:14 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-11-29 23:24:13 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-11-29 23:24:11 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-11-29 23:24:08 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-11-29 23:24:04 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-11-29 23:24:01 ----A---- C:\WINDOWS\system32\irclass.dll
2009-11-29 23:24:01 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-11-29 23:24:00 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-11-29 23:24:00 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-11-29 23:24:00 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-11-29 23:23:57 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-11-29 23:23:56 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-11-29 23:23:56 ----A---- C:\WINDOWS\system32\batt.dll
2009-11-29 23:23:55 ----A---- C:\WINDOWS\notepad.exe
2009-11-29 23:23:54 ----A---- C:\WINDOWS\system32\storprop.dll
2009-11-29 23:23:46 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-11-29 23:23:40 ----RA---- C:\WINDOWS\SET8.tmp
2009-11-29 23:23:36 ----RA---- C:\WINDOWS\SET4.tmp
2009-11-29 23:23:33 ----RA---- C:\WINDOWS\SET3.tmp
2009-11-29 23:23:27 ----D---- C:\WINDOWS\system32\CatRoot2
2009-11-29 23:23:27 ----D---- C:\WINDOWS\system32\CatRoot
2009-11-29 23:23:21 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-11-29 23:22:53 ----A---- C:\WINDOWS\setuplog.txt
2009-11-29 23:22:49 ----SHD---- C:\System Volume Information
2009-11-29 23:22:49 ----D---- C:\Documents and Settings
2009-11-29 23:22:07 ----SH---- C:\boot.ini
2009-11-29 23:16:48 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-11-29 23:16:48 ----RSD---- C:\WINDOWS\Fonts
2009-11-29 23:16:48 ----RD---- C:\WINDOWS\Web
2009-11-29 23:16:48 ----HD---- C:\WINDOWS\inf
2009-11-29 23:16:48 ----D---- C:\WINDOWS\WinSxS
2009-11-29 23:16:48 ----D---- C:\WINDOWS\twain_32
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Temp
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\wins
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\wbem
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\usmt
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\spool
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\ShellExt
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\Setup
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\ras
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\oobe
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\npp
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\mui
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\inetsrv
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\IME
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\icsxml
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\ias
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\export
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\drivers
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\dhcp
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\config
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\3com_dmi
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\3076
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\2052
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1054
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1042
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1041
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1037
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1036
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1033
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1031
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1028
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32\1025
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system32
2009-11-29 23:16:48 ----D---- C:\WINDOWS\system
2009-11-29 23:16:48 ----D---- C:\WINDOWS\security
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Resources
2009-11-29 23:16:48 ----D---- C:\WINDOWS\repair
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Provisioning
2009-11-29 23:16:48 ----D---- C:\WINDOWS\PeerNet
2009-11-29 23:16:48 ----D---- C:\WINDOWS\pchealth
2009-11-29 23:16:48 ----D---- C:\WINDOWS\mui
2009-11-29 23:16:48 ----D---- C:\WINDOWS\msapps
2009-11-29 23:16:48 ----D---- C:\WINDOWS\msagent
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Media
2009-11-29 23:16:48 ----D---- C:\WINDOWS\java
2009-11-29 23:16:48 ----D---- C:\WINDOWS\ime
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Help
2009-11-29 23:16:48 ----D---- C:\WINDOWS\ehome
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Driver Cache
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Debug
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Cursors
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Connection Wizard
2009-11-29 23:16:48 ----D---- C:\WINDOWS\Config
2009-11-29 23:16:48 ----D---- C:\WINDOWS\AppPatch
2009-11-29 23:16:48 ----D---- C:\WINDOWS\addins
2009-11-29 23:16:48 ----D---- C:\WINDOWS
======List of files/folders modified in the last 1 months======
2009-11-30 09:36:34 ----A---- C:\WINDOWS\system32\uxtheme.dll
2009-11-30 00:04:35 ----A---- C:\WINDOWS\system.ini
2009-11-29 23:34:12 ----A---- C:\WINDOWS\win.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-05 40320]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2009-11-30 315408]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-05 12032]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-13 100224]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2004-08-05 9600]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2009-10-02 19472]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-05 12288]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-05-27 578304]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-05 26624]
R3 UsbEvdomAtc;LGE EVDOM USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgevdomatc.sys [2008-08-26 19840]
R3 usbevdombus;LGE EVDOM Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgevdombus.sys [2008-08-26 13696]
R3 UsbEvdomDiag;LGE EVDOM USB Serial DM Port; C:\WINDOWS\system32\DRIVERS\lgevdomdiag.sys [2008-08-26 19840]
R3 USBEVDOmModem;LGE EVDOM USB Modem; C:\WINDOWS\system32\DRIVERS\lgevdommodem.sys [2008-08-26 21632]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-05 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-05 20480]
S3 RkHit;RkHit; \??\C:\WINDOWS\system32\drivers\RKHit.sys []
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S4 mchInjDrv;mchInjDrv; \??\C:\DOCUME~1\KHALED~1\LOCALS~1\Temp\mc22.tmp []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVP;Kaspersky Anti-Virus; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe [2009-10-20 340456]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------
Configuration: Windows XP Safari 530.5
A voir également:
- Infecté de virus
- Virus mcafee - Accueil - Piratage
- Comment détruire un virus informatique - Guide
- Impossible de terminer l'opération car le fichier contient un virus ✓ - Forum Virus
- Filezilla virus ✓ - Forum Virus
- Powershell.exe virus - Guide
3 réponses
Bonjour
Ton rapport montre quelques infections.
télécharge ComboFix (par sUBs)
[http://download.bleepingcomputer.com/sUBs/Beta/KittyFix.exe
et enregistre le sur le Bureau.
Déconnecte toi d'Internet et ferme toutes tes applications.
désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)
double-clique sur l'icône qui a été créée et suis les instructions
en particulier installe la Console de récupération.
à la fin, il va produire un rapport C:\ComboFix.txt
réactive ton parefeu, ton antivirus, la garde de ton antispyware
copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.
Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.
Tu as un tutoriel complet ici :
http://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Ne t'inquiète pas pour les problèmes de nom, c'est normal.
Ton rapport montre quelques infections.
télécharge ComboFix (par sUBs)
[http://download.bleepingcomputer.com/sUBs/Beta/KittyFix.exe
et enregistre le sur le Bureau.
Déconnecte toi d'Internet et ferme toutes tes applications.
désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)
double-clique sur l'icône qui a été créée et suis les instructions
en particulier installe la Console de récupération.
à la fin, il va produire un rapport C:\ComboFix.txt
réactive ton parefeu, ton antivirus, la garde de ton antispyware
copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.
Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.
Tu as un tutoriel complet ici :
http://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Ne t'inquiète pas pour les problèmes de nom, c'est normal.