2 réponses
Utilisateur anonyme
6 avril 2010 à 16:15
6 avril 2010 à 16:15
bonjour,
je pense qu'il s'agit d'un faux positif, mais on va vérifier tout ceci :
* Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.
http://images.malwareremoval.com/random/RSIT.exe
Tuto : https://forum.pcastuces.com/randoms_system_information_tool_rsit-f31s31.htm
Double clique sur RSIT.exe pour lancer l'outil.
Clique sur ' continue ' à l'écran Disclaimer.
Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
Une fois le scan fini, 2 rapports vont apparaître. Poste le contenu des 2 rapports séparément. Ils se trouvent sur c :
(log.txt & info.txt)
(CTRL+A Pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
je pense qu'il s'agit d'un faux positif, mais on va vérifier tout ceci :
* Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.
http://images.malwareremoval.com/random/RSIT.exe
Tuto : https://forum.pcastuces.com/randoms_system_information_tool_rsit-f31s31.htm
Double clique sur RSIT.exe pour lancer l'outil.
Clique sur ' continue ' à l'écran Disclaimer.
Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
Une fois le scan fini, 2 rapports vont apparaître. Poste le contenu des 2 rapports séparément. Ils se trouvent sur c :
(log.txt & info.txt)
(CTRL+A Pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
Utilisateur anonyme
7 avril 2010 à 07:44
7 avril 2010 à 07:44
bonjour,
* Télécharge de AD-Remover sur ton Bureau. (Merci à C_XX)
http://pagesperso-orange.fr/NosTools/C_XX/AD-R.exe
Miroir:
https://www.androidworld.fr/
/!\ Ferme toutes applications en cours /!\
- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton « Nettoyer »
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)
(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
* Télécharge de AD-Remover sur ton Bureau. (Merci à C_XX)
http://pagesperso-orange.fr/NosTools/C_XX/AD-R.exe
Miroir:
https://www.androidworld.fr/
/!\ Ferme toutes applications en cours /!\
- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton « Nettoyer »
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.
(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)
(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
6 avril 2010 à 21:04
Logfile of random's system information tool 1.06 (written by random/random)
Run by genevieve at 2010-04-06 20:49:50
Microsoft® Windows Vista(TM) Édition Familiale Basique Service Pack 2
System drive C: has 54 GB (52%) free of 103 GB
Total RAM: 2037 MB (50% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:50:28, on 06/04/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18904)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Program Files\EasySearch\SiteVacuumClient.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Nosibay\VPbubble\Launcher.exe
C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Nosibay\VPbubble\VPbubble.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10d.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\genevieve\Desktop\RSIT.exe
C:\Program Files\trend micro\genevieve.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?fr=fp-yie8
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/?fr=fp-yie8
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=compaq-notebook.msn.com&ocid=HPDHP&pc=CPNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr?cobrand=compaq-notebook.msn.com&ocid=HPDHP&pc=CPNTDF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer fourni par Yahoo!
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Super-Search -Find more of what you need - {0286A85D-CD62-43bb-B7A9-A87D1D027160} - C:\PROGRA~1\EASYSE~1\BHO\13SUPE~1.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: LTIEHelper Class - {905502AB-1987-46cd-9EC5-42B1E087D319} - C:\Program Files\EasyPrediction\2.0\ltie.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SiteVacuum] C:\Program Files\EasySearch\SiteVacuumClient.exe
O4 - HKLM\..\Run: [mobiswing] C:\PROGRA~1\SECURE~1\secp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [VPbubble] "C:\Program Files\Nosibay\VPbubble\launcher.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: Light Mule.lnk = C:\Program Files\Secured eMule\light_mule.exe
O4 - Startup: Outil de détection de support Picture Motion Browser.lnk = C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Plugin Control) - http://appldnld.apple.com/QuickTime/qtactivex/qtplugin.cab
O16 - DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} (Module de délivrance de certificat MINEFI) - https://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
O16 - DPF: {210D0CBC-8B17-48D1-B294-1A338DD2EB3A} (VatCtrl Class) - http://www.normandie-webcam.com/plugins/vatdec10051/VatDec.cab
O16 - DPF: {A93B47FD-9BF6-4DA8-97FC-9270B9D64A6C} (VaPgCtrl Class) - http://www.normandie-webcam.com/plugins/h263ctrl20013/h263ctrl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skyline - {3A4F9195-65A8-11D5-85C1-0001023952C1} - C:\Program Files\Skyline\TerraExplorer\TerraExplorerX.dll
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
6 avril 2010 à 21:09
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\User_Feed_Synchronization-{343AE2A7-42BA-47FE-A029-37E2E0B2C3A6}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28 882416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0286A85D-CD62-43bb-B7A9-A87D1D027160}]
Super-Search -Find more of what you need - C:\PROGRA~1\EASYSE~1\BHO\13SUPE~1.DLL [2010-03-24 315392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{905502AB-1987-46cd-9EC5-42B1E087D319}]
LTIEHelper Class - C:\Program Files\EasyPrediction\2.0\ltie.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-14 259696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll [2009-10-08 762864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-07-14 470512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-03 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28 160496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28 882416]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-14 259696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-08-28 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-08-28 154136]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-08-28 137752]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2007-06-30 159744]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-10-03 178712]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-12-19 468264]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2007-12-06 202032]
"UCam_Menu"=C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2007-09-13 222504]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"HP Health Check Scheduler"=[ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe []
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-10-03 480560]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"SiteVacuum"=C:\Program Files\EasySearch\SiteVacuumClient.exe [2010-02-04 479323]
"mobiswing"=C:\PROGRA~1\SECURE~1\secp.exe []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2007-08-23 455968]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
"HPAdvisor"=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe [2007-10-01 1783136]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-07-14 39408]
"VPbubble"=C:\Program Files\Nosibay\VPbubble\launcher.exe [2009-09-30 239120]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
C:\Users\genevieve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Light Mule.lnk - C:\Program Files\Secured eMule\light_mule.exe
Outil de détection de support Picture Motion Browser.lnk - C:\Program Files\Sony\Sony Picture Utility\VolumeWatcher\SPUVolumeWatcher.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-08-20 200704]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-04-06 20:49:51 ----D---- C:\Program Files\trend micro
2010-04-06 20:49:50 ----D---- C:\rsit
2010-04-06 12:39:22 ----D---- C:\ProgramData\Avira
2010-04-06 12:39:22 ----D---- C:\Program Files\Avira
2010-04-04 08:51:58 ----D---- C:\Program Files\Windows Portable Devices
2010-04-04 08:35:41 ----A---- C:\Windows\system32\UIAnimation.dll
2010-04-04 08:35:40 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-04-04 08:35:40 ----A---- C:\Windows\system32\UIRibbon.dll
2010-04-04 08:35:08 ----A---- C:\Windows\system32\WMPhoto.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\dxdiagn.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\d3d10warp.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\d2d1.dll
2010-04-04 08:35:07 ----A---- C:\Windows\system32\cdd.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\xpsservices.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\XpsPrint.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-04-04 08:35:06 ----A---- C:\Windows\system32\OpcServices.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\FntCache.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\dxdiag.exe
2010-04-04 08:35:06 ----A---- C:\Windows\system32\DWrite.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\d3d10level9.dll
2010-04-04 08:35:06 ----A---- C:\Windows\system32\d3d10core.dll
2010-04-04 08:35:05 ----A---- C:\Windows\system32\dxgi.dll
2010-04-04 08:35:05 ----A---- C:\Windows\system32\d3d11.dll
2010-04-04 08:35:05 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-04-04 08:35:05 ----A---- C:\Windows\system32\d3d10_1.dll
2010-04-04 08:35:05 ----A---- C:\Windows\system32\d3d10.dll
2010-04-04 08:34:44 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-04-04 08:34:44 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-04-04 08:34:44 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-04-04 08:34:41 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\WPDSp.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\wpdshext.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\WpdMtp.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\WpdConns.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\wpd_ci.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-04-04 08:34:39 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-04-04 08:33:47 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-04-04 08:33:47 ----A---- C:\Windows\system32\oleaccrc.dll
2010-04-04 08:33:47 ----A---- C:\Windows\system32\oleacc.dll
2010-04-03 21:20:44 ----A---- C:\Windows\system32\gameux.dll
2010-04-03 21:20:44 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-04-03 21:20:43 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-04-03 11:36:08 ----D---- C:\Windows\system32\eu-ES
2010-04-03 11:36:08 ----D---- C:\Windows\system32\ca-ES
2010-04-03 11:36:07 ----D---- C:\Windows\system32\vi-VN
2010-04-03 10:48:26 ----D---- C:\ProgramData\Sun
2010-04-03 10:47:52 ----A---- C:\Windows\system32\javaws.exe
2010-04-03 10:47:52 ----A---- C:\Windows\system32\javaw.exe
2010-04-03 10:47:52 ----A---- C:\Windows\system32\java.exe
2010-04-03 10:47:52 ----A---- C:\Windows\system32\deploytk.dll
2010-04-02 11:05:15 ----A---- C:\Windows\system32\avaC43A.tmp
2010-04-02 11:05:13 ----A---- C:\Windows\system32\aswBC1E.tmp
2010-03-31 12:32:52 ----A---- C:\Windows\system32\mshtml.dll
2010-03-31 12:32:51 ----A---- C:\Windows\system32\ieframe.dll
2010-03-31 12:32:50 ----A---- C:\Windows\system32\wininet.dll
2010-03-31 12:32:50 ----A---- C:\Windows\system32\urlmon.dll
2010-03-31 12:32:50 ----A---- C:\Windows\system32\occache.dll
2010-03-31 12:32:50 ----A---- C:\Windows\system32\msfeeds.dll
2010-03-31 12:32:50 ----A---- C:\Windows\system32\iertutil.dll
2010-03-31 12:32:50 ----A---- C:\Windows\system32\iedkcs32.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\mstime.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\msfeedssync.exe
2010-03-31 12:32:49 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\jsproxy.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\ieUnatt.exe
2010-03-31 12:32:49 ----A---- C:\Windows\system32\ieui.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\iesysprep.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\iesetup.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\iernonce.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\iepeers.dll
2010-03-31 12:32:49 ----A---- C:\Windows\system32\ie4uinit.exe
2010-03-11 10:58:52 ----D---- C:\Program Files\Microsoft Silverlight
2010-03-09 04:00:35 ----A---- C:\Windows\system32\browserchoice.exe
======List of files/folders modified in the last 1 months======
2010-04-06 20:50:11 ----D---- C:\Windows\Prefetch
2010-04-06 20:50:03 ----D---- C:\Windows\Temp
2010-04-06 20:49:51 ----RD---- C:\Program Files
2010-04-06 15:52:28 ----D---- C:\Windows\System32
2010-04-06 15:52:28 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-04-06 15:52:27 ----D---- C:\Windows\inf
2010-04-06 12:39:25 ----D---- C:\Windows\system32\drivers
2010-04-06 12:39:22 ----HD---- C:\ProgramData
2010-04-06 12:36:23 ----SHD---- C:\System Volume Information
2010-04-06 12:36:05 ----SHD---- C:\Windows\Installer
2010-04-04 10:08:57 ----D---- C:\Windows\Microsoft.NET
2010-04-04 10:06:37 ----RSD---- C:\Windows\assembly
2010-04-04 09:13:59 ----D---- C:\Windows\rescache
2010-04-04 08:56:21 ----D---- C:\Windows\system32\Tasks
2010-04-04 08:52:04 ----D---- C:\Windows
2010-04-04 08:51:59 ----D---- C:\Windows\system32\fr-FR
2010-04-04 08:51:58 ----D---- C:\Windows\system32\wbem
2010-04-04 08:51:57 ----D---- C:\Windows\system32\zh-TW
2010-04-04 08:51:57 ----D---- C:\Windows\system32\zh-HK
2010-04-04 08:51:57 ----D---- C:\Windows\system32\zh-CN
2010-04-04 08:51:57 ----D---- C:\Windows\system32\uk-UA
2010-04-04 08:51:57 ----D---- C:\Windows\system32\tr-TR
2010-04-04 08:51:57 ----D---- C:\Windows\system32\th-TH
2010-04-04 08:51:57 ----D---- C:\Windows\system32\sv-SE
2010-04-04 08:51:57 ----D---- C:\Windows\system32\sr-Latn-CS
2010-04-04 08:51:57 ----D---- C:\Windows\system32\sl-SI
2010-04-04 08:51:57 ----D---- C:\Windows\system32\sk-SK
2010-04-04 08:51:57 ----D---- C:\Windows\system32\ru-RU
2010-04-04 08:51:57 ----D---- C:\Windows\system32\ro-RO
2010-04-04 08:51:57 ----D---- C:\Windows\system32\pt-PT
2010-04-04 08:51:57 ----D---- C:\Windows\system32\pt-BR
2010-04-04 08:51:57 ----D---- C:\Windows\system32\pl-PL
2010-04-04 08:51:57 ----D---- C:\Windows\system32\nl-NL
2010-04-04 08:51:57 ----D---- C:\Windows\system32\nb-NO
2010-04-04 08:51:57 ----D---- C:\Windows\system32\lv-LV
2010-04-04 08:51:57 ----D---- C:\Windows\system32\lt-LT
2010-04-04 08:51:57 ----D---- C:\Windows\system32\ko-KR
2010-04-04 08:51:57 ----D---- C:\Windows\system32\ja-JP
2010-04-04 08:51:57 ----D---- C:\Windows\system32\it-IT
2010-04-04 08:51:57 ----D---- C:\Windows\system32\hu-HU
2010-04-04 08:51:57 ----D---- C:\Windows\system32\hr-HR
2010-04-04 08:51:57 ----D---- C:\Windows\system32\he-IL
2010-04-04 08:51:57 ----D---- C:\Windows\system32\fi-FI
2010-04-04 08:51:57 ----D---- C:\Windows\system32\et-EE
2010-04-04 08:51:57 ----D---- C:\Windows\system32\es-ES
2010-04-04 08:51:57 ----D---- C:\Windows\system32\en-US
2010-04-04 08:51:57 ----D---- C:\Windows\system32\el-GR
2010-04-04 08:51:57 ----D---- C:\Windows\system32\de-DE
2010-04-04 08:51:57 ----D---- C:\Windows\system32\da-DK
2010-04-04 08:51:57 ----D---- C:\Windows\system32\cs-CZ
2010-04-04 08:51:57 ----D---- C:\Windows\system32\bg-BG
2010-04-04 08:51:57 ----D---- C:\Windows\system32\ar-SA
2010-04-04 08:51:56 ----D---- C:\Windows\AppPatch
2010-04-04 08:35:57 ----D---- C:\Windows\winsxs
2010-04-04 08:35:56 ----D---- C:\Windows\system32\catroot
2010-04-04 08:35:31 ----D---- C:\Windows\system32\catroot2
2010-04-03 11:46:46 ----SHD---- C:\boot
2010-04-03 11:36:41 ----D---- C:\Program Files\Windows Sidebar
2010-04-03 11:36:41 ----D---- C:\Program Files\Windows Mail
2010-04-03 11:36:41 ----D---- C:\Program Files\Windows Calendar
2010-04-03 11:36:41 ----D---- C:\Program Files\Movie Maker
2010-04-03 11:36:40 ----D---- C:\Program Files\Windows Photo Gallery
2010-04-03 11:36:40 ----D---- C:\Program Files\Windows Media Player
2010-04-03 11:36:40 ----D---- C:\Program Files\Windows Collaboration
2010-04-03 11:36:40 ----D---- C:\Program Files\Internet Explorer
2010-04-03 11:36:40 ----D---- C:\Program Files\Common Files\System
2010-04-03 11:36:35 ----D---- C:\Windows\servicing
2010-04-03 11:36:35 ----D---- C:\Program Files\Windows Defender
2010-04-03 11:36:32 ----D---- C:\Windows\system32\XPSViewer
2010-04-03 11:36:32 ----D---- C:\Windows\system32\oobe
2010-04-03 11:36:32 ----D---- C:\Windows\system32\migration
2010-04-03 11:36:32 ----D---- C:\Windows\system32\fr
2010-04-03 11:36:32 ----D---- C:\Windows\IME
2010-04-03 11:36:30 ----D---- C:\Windows\system32\AdvancedInstallers
2010-04-03 11:36:29 ----D---- C:\Windows\system32\setup
2010-04-03 11:36:28 ----D---- C:\Windows\system32\SLUI
2010-04-03 11:36:28 ----D---- C:\Windows\system32\manifeststore
2010-04-03 11:36:26 ----D---- C:\Windows\system32\migwiz
2010-04-03 11:36:12 ----RSD---- C:\Windows\Fonts
2010-04-03 11:36:07 ----D---- C:\Windows\system32\Boot
2010-04-03 10:57:58 ----SD---- C:\Users\genevieve\AppData\Roaming\Microsoft
2010-04-03 10:48:22 ----D---- C:\Program Files\Common Files\Java
2010-04-03 10:47:10 ----D---- C:\Program Files\Java
2010-03-28 14:15:34 ----HD---- C:\Windows\system32\GroupPolicy
2010-03-15 08:53:57 ----D---- C:\Program Files\Google
2010-03-12 19:24:30 ----D---- C:\Windows\Tasks
2010-03-11 04:04:25 ----D---- C:\ProgramData\Microsoft Help
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2009-11-25 56816]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2007-06-25 155136]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2007-05-30 735232]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-02-27 201728]
R3 ezplay;VSO Software ezplay; C:\Windows\System32\Drivers\ezplay.sys [2009-04-16 94208]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-08-20 1790976]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-04-16 47360]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2007-04-23 50176]
R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-10-11 176640]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw3v32;Pilote de carte Intel(R) PRO/sans fil 3945ABG pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x32.sys [2006-11-02 429056]
S3 SymIMMP;SymIMMP; C:\Windows\system32\DRIVERS\SymIM.sys []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-09-19 65536]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2007-12-05 144688]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-10-03 358936]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-08-23 79136]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-01-09 272024]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-12 135664]
S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-03-05 110592]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 GameConsoleService;GameConsoleService; C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe [2007-07-24 181800]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-07-14 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------